OUR COMMITMENT

Privacy Policy

How we collect, use, and protect your personal information.

Draft for legal review

DRAFT, please review by a lawyer before publishing to the live domain. This page is a plain-language template intended as a starting point. It must be reviewed and tailored by a qualified legal practitioner familiar with the Australian Privacy Act 1988, the Australian Consumer Law, and the NDIS Practice Standards before it goes public.

Who we are

Bright Companion Pty Ltd (ABN 81 681 587 244) is a registered NDIS provider based in Deer Park, Victoria. In this policy, "we", "us", and "our" mean Bright Companion. "You" means a participant, family member, carer, support coordinator, or any other person whose information we hold.

We follow the Australian Privacy Principles in the Privacy Act 1988 (Cth), the Health Records Act 2001 (Vic), and the privacy obligations in the NDIS Practice Standards.

What personal information we collect

The information we collect depends on your relationship with us. It can include:

  • Your name, date of birth, gender, and contact details
  • Your address and emergency contact details
  • Your NDIS plan, plan number, and plan management type
  • Health information that helps us deliver safe supports, such as diagnoses, medications, allergies, and mobility needs
  • Cultural background, language, and communication preferences
  • Notes from shifts, incident reports, and feedback
  • Identification documents where the law requires them
  • Payment and billing details

We only collect information that we need to deliver your supports and meet our legal duties.

How we collect your information

We collect information directly from you when we can. We may also collect it from:

  • Family members, carers, or guardians, with your consent
  • Support coordinators or plan managers, with your consent
  • The National Disability Insurance Agency (NDIA) and the NDIS Commission, where allowed by law
  • Health professionals, with your consent
  • Our website forms, phone calls, emails, and in-person conversations

Why we collect your information

We use your information to:

  • Plan and deliver your supports under your NDIS plan
  • Communicate with you and your nominated contacts
  • Roster support workers and arrange shifts
  • Manage payments, invoices, and NDIS claims
  • Meet our reporting obligations to the NDIS Commission
  • Respond to incidents, complaints, and feedback
  • Improve our services
  • Comply with Australian law

We do not sell your information. We do not use it for direct marketing.

How we store and protect your information

We store records in secure systems, both digital and on paper. We use access controls, passwords, and staff training to keep your information safe. Only team members who need your information to do their job can see it.

We keep records for as long as the NDIS Practice Standards and other laws require. After that, we destroy or de-identify them safely.

Who we share your information with

We only share your information when:

  • You ask us to, or give us consent
  • Sharing is needed to deliver your supports (for example, with your support coordinator or rostered support worker)
  • The NDIS Commission or NDIA asks for it under their legal powers
  • We must report a reportable incident under the NDIS Act
  • A court, tribunal, or law requires it
  • A serious threat to a person's life, health, or safety means we must act

We never share your information with third parties for marketing.

Sending information overseas

We aim to keep your information in Australia. Some software providers we use may store data on servers in other countries. Where this happens, we choose providers who meet Australian privacy standards.

Accessing or correcting your information

You can ask to see the information we hold about you. You can also ask us to correct anything that is wrong or out of date. To do this, contact us using the details below. We will respond within 30 days. If we cannot give you access, we will tell you why in writing.

Making a privacy complaint

If you think we have not handled your information properly, please tell us first. We will:

  1. Listen and take notes
  2. Look into what happened
  3. Respond within 30 days

If you are not happy with our response, you can contact the Office of the Australian Information Commissioner (OAIC) on 1300 363 992 or at oaic.gov.au. You can also contact the NDIS Quality and Safeguards Commission on 1800 035 544.

Making a complaint will not affect the supports we provide.

Cookies and our website

Our website uses simple cookies to help pages load and to measure visits. We do not use cookies to track you across other sites. You can turn cookies off in your browser. Some parts of the site may not work as well without them.

Changes to this policy

We may update this policy from time to time. We will post the new version on this page and update the date below.

Contact us

To ask a question, request access, or make a privacy complaint:

  • Phone: 1300 082 233
  • Email: info@brightcompanion.com.au
  • Address:
    Level 1/530 little Collins Street
    Melbourne VIC 3000
    Australia

Last updated: 18 May 2026