1. About this process
SpringFire is a multi-tenant software-as-a-service (SaaS) platform delivered to staff, members, and administrators of organisations (your "Provider") that subscribe to SpringFire. Your account on the SpringFire platform — including the SpringFire mobile app and web portal — is provisioned by your Provider and governed by the SpringFire Privacy Policy.
You may request deletion of your personal data at any time. This page explains exactly how to submit that request, what data is deleted, what data must be retained (and why), and how long the process takes. SpringFire will action all deletion requests in line with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
2. How to request account deletion
SpringFire honours deletion requests through any of the channels below. Use whichever is most convenient — both reach the same deletion process and produce the same outcome.
2.1 Through your Provider organisation (preferred)
Your Provider organisation administers your account day to day and is the fastest route. Contact your Provider's privacy or administrative contact and ask that your SpringFire account be deleted. Most Providers maintain a designated privacy email or in-platform request form. If you don't know who your Provider's privacy contact is, ask the person who originally invited you to SpringFire.
2.2 Directly to SpringFire
Email support@springfire.com.au with the subject line "SpringFire account deletion request". To allow us to verify your identity and locate your account, please include:
- The full name on your SpringFire account
- The email address registered to the account
- The name of your Provider organisation, if known
- Your role on the platform (member, staff, or administrator)
We will acknowledge receipt within 7 business days, verify your identity, and process the deletion under the timeline described in Section 5.
3. What data is deleted
When your deletion request is processed, the following data is permanently removed from active SpringFire systems:
- Profile data — first / middle / last name, date of birth, gender, nationality, marital status, religion, languages, profile photo, account username
- Contact details — email address, phone numbers, physical address (including stored coordinates), emergency and next-of-kin contacts
- Member or staff service records — member type, service preferences, notes, employment fields (department, access level, daily work hours, pay grade)
- Bookings, shifts, claims, and timesheets personally attributed to you, except where retained for the regulatory reasons listed in Section 4
- Forms, flows, comments, and notes you authored or that reference you
- Documents uploaded to your file
- Push notification registrations — your device tokens are deactivated immediately
- Cookies and active sessions — sessions are invalidated; consent records are anonymised
4. What data is retained, and why
Some information must be retained after deletion, either because Australian law requires it or because retention is necessary for ongoing legal, regulatory, or contractual obligations. Where retention is required, your name and direct identifiers are removed wherever this does not impair the legal purpose of retention. Anonymised records cannot be restored to your identity.
| Retained data | Reason | Retention period |
|---|---|---|
| Audit logs of significant data access and mutations | Privacy Act 1988 (Cth); Australian Privacy Principles (APP 6, 11, 12); Notifiable Data Breaches scheme evidence | Indefinite (regulatory) |
| Shift timesheets, including derived street-address strings recorded at clock-in / clock-out | Australian employment record-keeping requirements (Fair Work Act) | Indefinite |
| Member check-in records, including raw clock-in / clock-out coordinates | Service-delivery audit, dispute resolution, and Provider compliance obligations | For the lifetime of the parent check-in record |
| Booking records | Regulatory and dispute-resolution requirements | Indefinite |
| Billing and payment records | Australian taxation and accounting law | 7 years |
| Anonymised consent history | Evidence of valid consent for processing already performed | 7 years |
5. Timeline
- Acknowledgement — within 7 business days of receipt
- Identity verification — typically 2–5 business days; longer if additional verification documents are required
- Deletion processing — within 30 days of verification, in line with the Australian Privacy Principles
- Confirmation — written confirmation issued once deletion is complete
6. Contact
SpringFire Privacy Officer
Spring Fire Pty Ltd
Email: support@springfire.com.au
General enquiries: support@springfire.com.au
Website: https://springfire.com.au
For unresolved concerns, you may also contact the Office of the Australian Information Commissioner (OAIC):
oaic.gov.au · 1300 363 992 · GPO Box 5218, Sydney NSW 2001
This deletion process is governed by the laws of Australia, in particular the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). For full details on data collection, sharing, security, and your rights, see our Privacy Policy. © 2026 Spring Fire Pty Ltd. All rights reserved.