Privacy Policy

Lede Technologies Pty Ltd (ACN 698 337 718)

Last updated: 3 August 2026

Who we are

Lede Technologies Pty Ltd (ACN 698 337 718) (Lede, we, us) is an Australian registered company. We build operational intelligence tools for workforce-facing industries, beginning with Handover — a shift handover platform for teams in aged care, healthcare, cleaning, security, facilities, hospitality, manufacturing, logistics and warehousing, retail, and field services.

We are committed to handling personal information responsibly, transparently, and in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

Contact us at: privacy@workwithlede.com

Who this policy covers

This policy covers three types of people who interact with Lede:

Operators — businesses and organisations that create a Lede account and deploy Handover for their workforce. Operators are our direct customers and agree to our Terms of Service on sign-up.

Workers — the employees and contractors who use the Handover app to record shift notes and receive briefings. Workers use Handover because their employer has deployed it. Workers do not need a direct account with Lede.

Website enquirers — people who submit an enquiry through a form on our marketing website. Enquirers are not Lede account holders and do not need to be; we hold their details only to respond to the enquiry and to follow up about Lede.

Managers and site owners are Workers with elevated access permissions within the Lede platform. This policy applies to them in their capacity as Workers, unless otherwise specified.

What we collect

From operators

From workers

Workers may, in the course of writing shift notes, include personal information about themselves, colleagues, or clients that was not specifically requested by Lede. We have designed the platform to minimise the collection of sensitive information, but we cannot prevent it from entering freeform note fields. This policy addresses how we handle such information.

We do not collect sensitive information as defined under the Privacy Act (including health information, racial or ethnic origin, or biometric data) intentionally. Where sensitive information is incidentally disclosed in shift notes, it is handled under APP 11 security obligations and is not used for any purpose beyond operational delivery.

From website enquirers

If you submit an enquiry through a form on our marketing website, we collect:

We use this only to respond to you and to follow up about Lede. We do not use it for any other purpose, and we do not disclose it to anyone other than HubSpot, our customer relationship management provider, which stores it in Australia. We keep enquiry records until you ask us to delete them — email privacy@workwithlede.com at any time and we will remove your details.

How we classify worker data

Lede applies a three-tier data classification to information in the Lede platform:

TierDescriptionExamples
Tier 1 — OperationalStandard operational information about tasks, equipment, and shift status.Cleaning completed in room 12. Faulty lock on door 3 reported.
Tier 2 — BehaviouralInformation that, individually or in aggregate, describes patterns of worker behaviour or performance.Shift note frequency, urgency flag patterns, recurring topics raised.
Tier 3 — SensitiveHealth information, personal circumstances, or observations about third-party vulnerability incidentally disclosed in freeform notes.Worker health disclosures, resident condition observations, personal distress noted during a shift.

Tier 3 information is handled with the highest level of care. It is secured under APP 11, is not used for AI training or product improvement, is not surfaced in management dashboards at an individual level, and access is restricted to authorised personnel only.

How we use your data

To provide the Lede platform

We use operator and worker data to operate the Lede platform — processing shift notes, generating AI summaries and briefings, enabling manager dashboards, and delivering operational insights. This is the primary purpose for which data is collected.

To deliver AI features

The AI features of Handover — including shift summaries, incoming briefings, pattern detection, and the Manager Dashboard — are powered by large language model processing of shift note content. This processing occurs on a per-session basis and is used to generate outputs for workers and managers.

Lede also provides an interactive "Ask" assistant (part of Intelligence) that lets authorised users type free-text questions about their organisation's data. The questions you ask and the resulting conversation history are stored against your account and processed by our AI provider (Anthropic) to generate answers.

Where AI pattern analysis is available (Free, Starter, Growth and Enterprise tiers), the AI identifies patterns across multiple shifts. This analysis is designed to surface operational signals at a site or team level. AI outputs are framed as patterns for human review — not findings or conclusions. Lede prohibits the use of AI outputs as the sole basis for any employment decision.

To support privacy, fairness, and responsible use of AI, individual worker attribution in AI-generated outputs is restricted. Outputs that identify or name individual workers are subject to human review and appropriate approval controls.

To improve Lede for everyone

AI-generated outputs, system performance metrics, and aggregated usage patterns may be analysed to monitor service quality, evaluate system performance, and improve product functionality. This analysis is conducted at an aggregated level and is not used to identify individual workers or operators, nor is it linked back to specific accounts. Tier 3 (Sensitive) data is excluded from this process.

To communicate with operators

We send product updates, onboarding information, and service notifications to operators via email. Where you have enabled them, we also send operational notifications to operators and workers via push notifications — these are opt-in, and you can turn them off at any time in the app or through your device's notification settings. Operators can opt out of marketing communications at any time by emailing privacy@workwithlede.com.

We do not sell personal data to third parties — ever.

Worker consent and awareness

Workers use Handover because their employer has deployed it as an operational platform. Operators are responsible for ensuring their workers are informed that:

Lede provides suggested worker disclosure language on request. Operators are contractually required to provide this disclosure before workers first use the platform.

Where AI features are upgraded or extended — for example, when an operator moves from Free to a paid tier (Starter, Growth, or Enterprise) — operators must ensure workers receive updated disclosure before those AI features are activated on their account.

Who has access to your data

Your data is accessible to the Lede team. We use the following third-party services to operate the platform, each governed by their own privacy policies:

ProviderPurpose
AWS (Amazon Web Services)Infrastructure, data storage, and AI processing services. All Lede operational data is hosted in Australian AWS regions (ap-southeast-2) to comply with APP 8. AWS also provides Amazon Transcribe, which converts workers' spoken shift notes into text, and Amazon Bedrock, which may be used to run the AI models that process shift-note Content.
WorkOSAuthentication and identity management — user sign-in, SSO, and multi-factor authentication.
AnthropicAI processing of shift note content to generate summaries, briefings, and pattern insights.
StripePayment processing. Stripe stores billing details on our behalf. We do not hold card data.
Atlassian (Jira Cloud)Issue and feedback tracking — receives in-app feedback submissions, including the submitter's email address and the feedback text provided. Hosted outside Australia; this is a cross-border disclosure under APP 8.
HubSpotCustomer relationship management — receives enquiry and contact-form submissions made through our marketing website, including your name, email address, and any company, role, industry or message you provide. Hosted in Australia; this is not a cross-border disclosure.
PostHogWebsite and product analytics — captures page views and feature interactions, on both our website and our apps, to understand how people find and use Lede and to monitor and improve the platform. Runs only where you have accepted analytics. Hosted in the European Union; this is a cross-border disclosure under APP 8.
SMTP2GOTransactional email delivery — sends account, verification, and service-notification emails, which include the recipient's name and email address. Hosted in Australia.
Browser push services (Google, Apple, Mozilla)Delivery of push notifications you have opted into. Notifications are routed through your browser vendor's own push infrastructure, hosted outside Australia; this is a cross-border disclosure under APP 8. Notification content is encrypted in transit and cannot be read by the vendor.

We take reasonable steps to ensure these providers handle personal data securely and in accordance with applicable law. All providers are engaged under data processing terms consistent with APP 8 cross-border disclosure obligations.

Data storage location

All Lede operational data — including shift notes, worker records, and account information — is stored on infrastructure located in Australia (AWS ap-southeast-2, Sydney region). To deliver our AI features, shift-note Content is disclosed to our AI provider, Anthropic, for processing. This processing may occur outside Australia. This is a cross-border disclosure for the purposes of APP 8, and we take reasonable steps to ensure it is handled in accordance with the Australian Privacy Principles. We also use PostHog (hosted in the European Union) for website and product analytics, which receives page-view and feature-interaction data from our website and our apps where you have accepted analytics; this is a further cross-border disclosure for the purposes of APP 8. In-app feedback submissions (including the submitter's email address and feedback text) are disclosed to Atlassian (Jira Cloud) for issue tracking; Atlassian hosts this data outside Australia, a further cross-border disclosure for the purposes of APP 8. We also use WorkOS (hosted in the United States) for authentication and identity management, including sign-in, single sign-on, and multi-factor authentication; this is a further cross-border disclosure for the purposes of APP 8. Where you opt into push notifications, delivery is routed through your browser vendor's push service (Google, Apple, or Mozilla), hosted outside Australia; this is a further cross-border disclosure for the purposes of APP 8. The content of those notifications is encrypted in transit and cannot be read by the vendor, although the delivery endpoint, the timing of delivery, and your device's IP address are disclosed. Enquiries submitted through our marketing website are stored in HubSpot on Australian infrastructure, so that disclosure does not cross a border. Aside from these disclosures, we do not transfer operational data offshore without explicit operator consent.

Data retention

Operator account data is retained for as long as the account is active. If an operator closes their account, we will delete all associated personal data within 30 days, unless we are required by law to retain it (for example, for tax or financial record-keeping purposes).

Raw worker shift notes (the text and voice-transcribed content workers enter) are retained until the operator’s account is deleted, regardless of subscription tier.

Two tier-based limits apply to AI-generated handover summaries and briefings (the end-of-shift content derived from shift notes):

Subscription tierVisible history windowHandover deletion ceiling
Free7 days14 days
Starter60 days90 days
Growth and EnterpriseUnlimitedNever deleted

Operators on the Free and Starter tiers receive an in-app warning before handover summaries are deleted, with the option to upgrade to retain them.

If an operator's subscription tier changes, we apply a short grace period before the new tier's deletion ceiling takes effect, so a downgrade does not immediately delete existing handover summaries.

Operators can request deletion of their site's shift note history at any time by emailing privacy@workwithlede.com. Workers who wish to request deletion of their own records should contact their employer in the first instance, or contact us directly at the same address.

Your rights

Under the Privacy Act 1988 (Cth) and the Australian Privacy Principles, you have the right to:

To make any of these requests, email privacy@workwithlede.com. We will respond within 20 working days.

If you are not satisfied with our response, you have the right to lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

Data breaches

Lede maintains a written data breach response plan. In the event of an eligible data breach as defined under the Notifiable Data Breaches (NDB) scheme (Privacy Act 1988, Part IIIC), we will:

To report a suspected security issue or data breach, contact privacy@workwithlede.com immediately.

Operator responsibility

Operators who use Handover are responsible for:

Lede provides template disclosure language and recommended usage guidelines to all operators on request.

Cookies and tracking

We use one analytics provider, PostHog, on both our website (workwithlede.com) and our apps. It captures page views and feature interactions — such as which pages you view and which features you use — so that we can understand how people find and use Lede. PostHog is hosted in the European Union; this is a cross-border disclosure under APP 8.

Analytics are off until you accept them. On both the website and the apps, nothing is loaded and nothing is collected until you choose to accept. If you decline, no analytics run and no analytics identifier is stored in your browser.

If you accept, browsing on our website can later be linked to your account. When you accept on our website, PostHog stores an identifier in a cookie scoped to .workwithlede.com, so that the same identifier can be read by our apps at app.workwithlede.com. If you then sign in to Lede, having also accepted analytics in the app, that identifier is attached to your Lede user account. The practical effect is that pages you viewed on our website before you had an account — including pages you viewed before you decided to sign up — become linked to you as an identified person from that point onward.

This happens only if you accept analytics in both places. If you decline in the app, we do not make that link and we do not write anything to your browser's analytics storage, so your earlier website browsing is not connected to you.

Changing your mind. On our website, use "Cookie settings" in the footer of any page to change your choice at any time. In our apps, the choice is presented once and there is currently no in-app control to change it afterwards; to change it, clear Lede's cookies in your browser settings, or email us at privacy@workwithlede.com and we will action it for you. You can disable cookies in your browser settings at any time.

What we do not do. We do not record or replay your screen on our website. We do not build a profile of anonymous visitors — no person record is created in PostHog unless and until an account is linked as described above. We do not use third-party advertising or marketing pixels on our website.

Changes to this policy

We may update this policy from time to time as our product and obligations evolve. We will notify operators of any significant changes via email before they take effect. The current version is always available at workwithlede.com/privacy.

This policy is governed by the Privacy Act 1988 (Cth) and the Australian Privacy Principles.

Last updated: 3 August 2026

Lede Technologies Pty Ltd (ACN 698 337 718) — privacy@workwithlede.comworkwithlede.com/privacy