TaxCheers is committed to protecting your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). This Policy explains what we collect, why, and how you can access or correct your information.
This Privacy Policy is issued by Adrian Gonzalez, operating as TaxCheers (ABN 64 389 410 766), Sydney, New South Wales, Australia. TaxCheers is an online platform that helps Working Holiday and Student Visa holders understand their Australian tax position. We are committed to protecting your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). Contact: taxcheers.com.au
Information you provide directly: • Full name and email address • Visa subclass (417, 462 or 500) • Income details: gross payments, PAYG tax withheld, ABN/sole trader income • Deductions (travel, tools, home office, etc.) • Employer details (name, amounts) • WhatsApp number (optional, for consultation bookings) • Bank details (BSB, account number, PayID) if you join the referral program Information collected automatically: • Browser type, operating system and IP address • Pages visited and time spent on the platform • Referral codes used during registration We do not collect sensitive information as defined under the Privacy Act (including health, biometric or criminal record information).
We collect personal information through: • Forms you complete on the platform (tax calculator, registration, checkout) • Google OAuth, if you choose to sign in with Google • Cookies and analytics tools that record how you use the platform • Stripe, when you make a payment (Stripe handles card data; we do not receive or store card numbers)
We use your personal information to: • Generate your personalised tax report and estimated result • Create and manage your user account • Process payments securely via Stripe • Book optional consultations via Google Calendar • Send transactional emails (account confirmation, report delivery, appointment reminders) • Operate the referral program and calculate commissions • Improve and calibrate our tax calculation engine • Comply with our legal and regulatory obligations
We share your information only with the third-party service providers necessary to operate the platform: • Stripe — payment processing (PCI DSS compliant) • Supabase — database and authentication (hosted on AWS Australia) • Google — sign-in (OAuth) and appointment booking (Calendar API) • Vercel — platform hosting and deployment We never sell, rent or trade your personal information to any third party for marketing or commercial purposes. We may disclose your information if required to do so by law, court order or a regulatory authority.
Your data is primarily stored and processed in Australia via Supabase on AWS infrastructure in the ap-southeast-2 (Sydney) region. Some data may be processed outside Australia by: • Stripe — United States (payment processing) • Vercel — United States (hosting and edge functions) • Google — United States and other jurisdictions (OAuth, Calendar) Where personal information is disclosed to overseas recipients, we take reasonable steps to ensure it is handled in a manner consistent with the Australian Privacy Principles, as required under APP 8.
We take reasonable steps to protect your personal information from misuse, interference, loss, and unauthorised access, modification or disclosure. Our security measures include: • HTTPS/TLS encryption for all data in transit • Supabase Row Level Security (RLS) so users can only access their own data • Supabase Auth for secure session management • Stripe PCI DSS compliance for payment data • No storage of passwords in plaintext No system is completely secure. In the event of a security incident, we will act promptly in accordance with our obligations under the Privacy Act 1988 (Cth).
If we become aware of an eligible data breach under Part IIIC of the Privacy Act 1988 (Cth) (the Notifiable Data Breaches scheme), we will: • Assess the breach as quickly as possible • Notify the Office of the Australian Information Commissioner (OAIC) as soon as practicable • Notify affected individuals where the breach is likely to result in serious harm We maintain an internal register of data breaches and take corrective action to prevent recurrence.
We retain personal information only for as long as necessary for the purposes for which it was collected, or as required by law: • Account and tax data: up to 5 years after your last activity on the platform • Payment records: 7 years, in accordance with Australian taxation record-keeping requirements • Affiliate and referral data: 3 years after your last transaction When information is no longer required, we securely destroy or de-identify it.
TaxCheers uses an automated tax calculation engine that applies ATO-published tax rates, thresholds and rules to the data you provide. The output is an estimate of your likely tax refund or debt. This is not a final tax determination. You are not legally bound by the result, and it does not constitute a ruling or assessment by the ATO. You may request an explanation of how your result was calculated by contacting us via taxcheers.com.au. Note: From December 2026, additional disclosure requirements relating to automated decision-making may apply under the Privacy and Other Legislation Amendment Act 2024 (Cth). We will update this Policy accordingly.
Under the Australian Privacy Principles, you have the right to: • Access the personal information we hold about you (we will respond within 30 days) • Request correction of inaccurate, incomplete or out-of-date information (we will respond within 30 days) • Request deletion of your personal information, subject to our legal retention obligations To exercise any of these rights, contact us via taxcheers.com.au. If you are not satisfied with our handling of your request or a privacy complaint, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC): • Website: oaic.gov.au • Phone: 1300 363 992
We use two categories of cookies: Essential cookies — required for the platform to function (session management, authentication). These cannot be disabled without affecting core functionality. Analytics cookies — used to understand how users interact with the platform so we can improve it. You may opt out of analytics cookies at any time through your browser settings. Most browsers allow you to view, manage and delete cookies via their privacy or settings menu. Disabling essential cookies may prevent you from using some features of TaxCheers.
TaxCheers is intended for use by individuals aged 18 and over. We do not knowingly collect personal information from anyone under 18. If we become aware that we have inadvertently collected information from a minor, we will delete it promptly. If you believe we may hold information about a minor, please contact us via taxcheers.com.au.
We may update this Privacy Policy from time to time to reflect changes in our practices, technology or legal obligations. For significant changes, we will notify you via a prominent notice on the platform and, where appropriate, by email. The date at the top of this page will always reflect when the Policy was last updated. Continued use of TaxCheers after a change takes effect constitutes your acceptance of the updated Policy.
For privacy-related queries, access requests, correction requests or complaints: Adrian Gonzalez, operating as TaxCheers ABN 64 389 410 766 Sydney, New South Wales, Australia taxcheers.com.au We will acknowledge your request within 5 business days and provide a substantive response within 30 days. If you are not satisfied with our response, you may escalate your complaint to the Office of the Australian Information Commissioner (OAIC): • oaic.gov.au • 1300 363 992
© 2026 TaxCheers — ABN 64 389 410 766 — taxcheers.com.au