ObjectivoData is committed to providing you with the best possible service while protecting your privacy. ObjectivoData is bound by the Privacy Act 1988 (Cth), which sets out principles concerning the privacy of individuals.
For registration and access to clinical trial services, you are required to submit personally identifiable information including:
Your data is stored using Google Cloud infrastructure:
We collect and log user activity data (including user ID, timestamp, actions performed, and IP address) solely for regulatory compliance purposes as required by 21 CFR Part 11. This audit trail data is used exclusively for:
We do not use this data for marketing, analytics, or any purpose outside regulatory compliance and data integrity protection.
We may share personal information with:
We will never sell your personal data to third parties.
We process your personal information lawfully, fairly and transparently. We collect and use your information where:
We protect your information using commercially acceptable means including encryption, access controls, and regular security audits. However, no method of electronic transmission is 100% secure. If you are uncomfortable with this inherent risk, you should not participate in trials using this platform.
Choice and consent: By providing information, you consent to its collection, use, and disclosure per this policy. Users under 16 must have parental/guardian consent.
Access and portability: You may request details of personal information we hold. We will provide this in CSV or machine-readable format where possible.
Correction: Contact us if information is inaccurate, outdated, or misleading. We will take reasonable steps to correct it.
Restrict or erase: You may request we restrict processing or erase your data, subject to legal and regulatory retention requirements for clinical trials.
Complaints: Contact us with any data protection concerns. You also have the right to contact regulatory authorities.
Clinical trial data must be retained according to regulatory requirements (typically 15-25 years post-trial). Personal account data may be deleted upon request, subject to these regulatory obligations.
We will comply with applicable data breach notification laws and inform affected individuals without undue delay if a breach occurs.
While primary data is stored in Sydney, Australia, some services (Firebase Authentication, Google Cloud infrastructure) may process data internationally. All transfers comply with GDPR and Australian Privacy Principles.
We may update this policy to reflect current practices. Continued use after changes constitutes acceptance of the updated policy.
For questions about this privacy policy: info@objectivodata.com
Last updated: January 2025