Privacy Policy
Lede Technologies Pty Ltd (ACN 698 337 718)
Last updated: 3 August 2026
Who we are
Lede Technologies Pty Ltd (ACN 698 337 718) (Lede, we, us) is an Australian registered company. We build operational intelligence tools for workforce-facing industries, beginning with Handover — a shift handover platform for teams in aged care, healthcare, cleaning, security, facilities, hospitality, manufacturing, logistics and warehousing, retail, and field services.
We are committed to handling personal information responsibly, transparently, and in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
Contact us at: privacy@workwithlede.com
Who this policy covers
This policy covers three types of people who interact with Lede:
Operators — businesses and organisations that create a Lede account and deploy Handover for their workforce. Operators are our direct customers and agree to our Terms of Service on sign-up.
Workers — the employees and contractors who use the Handover app to record shift notes and receive briefings. Workers use Handover because their employer has deployed it. Workers do not need a direct account with Lede.
Website enquirers — people who submit an enquiry through a form on our marketing website. Enquirers are not Lede account holders and do not need to be; we hold their details only to respond to the enquiry and to follow up about Lede.
Managers and site owners are Workers with elevated access permissions within the Lede platform. This policy applies to them in their capacity as Workers, unless otherwise specified.
What we collect
From operators
- Business name, ABN, and contact details of the account holder
- Name and email address of the account administrator
- Site names and configuration details provided to set up Handover
- Billing information (processed securely by Stripe — we do not store card details)
- Usage data including login activity, feature use, and account settings
- Technical request data, including IP address — used only for security and abuse prevention (for example, rate-limiting sign-in attempts). This is retained only briefly and is not used to profile you.
- Questions you ask the Intelligence "Ask" assistant, and the resulting conversation history — stored against your account and processed by AI to generate answers
- Push notification subscription details — if you enable push notifications, the device or browser push subscription (endpoint and associated keys) needed to deliver them
- Profile photo (optional) — if the account administrator chooses to upload one
From workers
- Shift notes — text and voice-transcribed content entered during a shift
- Clock-in and clock-out times
- Clock-in location check — where your operator has enabled geofencing, whether your device was inside the site boundary at clock-in, and the accuracy of that reading. We do not store your coordinates. Where your operator enforces the boundary and you choose to clock in anyway, we also record the reason you give and the time you did so, which is visible to your managers.
- AI-generated end-of-shift summaries and briefing content derived from shift notes
- The site and shift type the note relates to
- General usage data including session timestamps and device type
- Technical request data, including IP address — used only for security and abuse prevention (for example, rate-limiting sign-in attempts). This is retained only briefly and is not used to profile you.
- Push notification subscription details — if you enable push notifications, the device or browser push subscription (endpoint and associated keys) needed to deliver them
- Name and role, as configured by the operator
- Profile photo (optional) — if the worker chooses to upload one
Workers may, in the course of writing shift notes, include personal information about themselves, colleagues, or clients that was not specifically requested by Lede. We have designed the platform to minimise the collection of sensitive information, but we cannot prevent it from entering freeform note fields. This policy addresses how we handle such information.
We do not collect sensitive information as defined under the Privacy Act (including health information, racial or ethnic origin, or biometric data) intentionally. Where sensitive information is incidentally disclosed in shift notes, it is handled under APP 11 security obligations and is not used for any purpose beyond operational delivery.
From website enquirers
If you submit an enquiry through a form on our marketing website, we collect:
- Your name and email address (both required)
- Your company, role, and industry, if you choose to provide them
- Any message you write in the enquiry
- Which form you used, so we know what you were asking about
We use this only to respond to you and to follow up about Lede. We do not use it for any other purpose, and we do not disclose it to anyone other than HubSpot, our customer relationship management provider, which stores it in Australia. We keep enquiry records until you ask us to delete them — email privacy@workwithlede.com at any time and we will remove your details.
How we classify worker data
Lede applies a three-tier data classification to information in the Lede platform:
| Tier | Description | Examples |
|---|---|---|
| Tier 1 — Operational | Standard operational information about tasks, equipment, and shift status. | Cleaning completed in room 12. Faulty lock on door 3 reported. |
| Tier 2 — Behavioural | Information that, individually or in aggregate, describes patterns of worker behaviour or performance. | Shift note frequency, urgency flag patterns, recurring topics raised. |
| Tier 3 — Sensitive | Health information, personal circumstances, or observations about third-party vulnerability incidentally disclosed in freeform notes. | Worker health disclosures, resident condition observations, personal distress noted during a shift. |
Tier 3 information is handled with the highest level of care. It is secured under APP 11, is not used for AI training or product improvement, is not surfaced in management dashboards at an individual level, and access is restricted to authorised personnel only.
How we use your data
To provide the Lede platform
We use operator and worker data to operate the Lede platform — processing shift notes, generating AI summaries and briefings, enabling manager dashboards, and delivering operational insights. This is the primary purpose for which data is collected.
To deliver AI features
The AI features of Handover — including shift summaries, incoming briefings, pattern detection, and the Manager Dashboard — are powered by large language model processing of shift note content. This processing occurs on a per-session basis and is used to generate outputs for workers and managers.
Lede also provides an interactive "Ask" assistant (part of Intelligence) that lets authorised users type free-text questions about their organisation's data. The questions you ask and the resulting conversation history are stored against your account and processed by our AI provider (Anthropic) to generate answers.
Where AI pattern analysis is available (Free, Starter, Growth and Enterprise tiers), the AI identifies patterns across multiple shifts. This analysis is designed to surface operational signals at a site or team level. AI outputs are framed as patterns for human review — not findings or conclusions. Lede prohibits the use of AI outputs as the sole basis for any employment decision.
To support privacy, fairness, and responsible use of AI, individual worker attribution in AI-generated outputs is restricted. Outputs that identify or name individual workers are subject to human review and appropriate approval controls.
To improve Lede for everyone
AI-generated outputs, system performance metrics, and aggregated usage patterns may be analysed to monitor service quality, evaluate system performance, and improve product functionality. This analysis is conducted at an aggregated level and is not used to identify individual workers or operators, nor is it linked back to specific accounts. Tier 3 (Sensitive) data is excluded from this process.
To communicate with operators
We send product updates, onboarding information, and service notifications to operators via email. Where you have enabled them, we also send operational notifications to operators and workers via push notifications — these are opt-in, and you can turn them off at any time in the app or through your device's notification settings. Operators can opt out of marketing communications at any time by emailing privacy@workwithlede.com.
We do not sell personal data to third parties — ever.
Worker consent and awareness
Workers use Handover because their employer has deployed it as an operational platform. Operators are responsible for ensuring their workers are informed that:
- their shift notes and clock-in data are recorded and stored in the Lede platform;
- managers and site owners can access shift note history for the sites they manage;
- AI features process shift note content to generate summaries, briefings, and operational insights; and
- where paid-tier (Starter, Growth, or Enterprise) AI pattern features are active, note content may be analysed across multiple shifts.
Lede provides suggested worker disclosure language on request. Operators are contractually required to provide this disclosure before workers first use the platform.
Where AI features are upgraded or extended — for example, when an operator moves from Free to a paid tier (Starter, Growth, or Enterprise) — operators must ensure workers receive updated disclosure before those AI features are activated on their account.
Who has access to your data
Your data is accessible to the Lede team. We use the following third-party services to operate the platform, each governed by their own privacy policies:
| Provider | Purpose |
|---|---|
| AWS (Amazon Web Services) | Infrastructure, data storage, and AI processing services. All Lede operational data is hosted in Australian AWS regions (ap-southeast-2) to comply with APP 8. AWS also provides Amazon Transcribe, which converts workers' spoken shift notes into text, and Amazon Bedrock, which may be used to run the AI models that process shift-note Content. |
| WorkOS | Authentication and identity management — user sign-in, SSO, and multi-factor authentication. |
| Anthropic | AI processing of shift note content to generate summaries, briefings, and pattern insights. |
| Stripe | Payment processing. Stripe stores billing details on our behalf. We do not hold card data. |
| Atlassian (Jira Cloud) | Issue and feedback tracking — receives in-app feedback submissions, including the submitter's email address and the feedback text provided. Hosted outside Australia; this is a cross-border disclosure under APP 8. |
| HubSpot | Customer relationship management — receives enquiry and contact-form submissions made through our marketing website, including your name, email address, and any company, role, industry or message you provide. Hosted in Australia; this is not a cross-border disclosure. |
| PostHog | Website and product analytics — captures page views and feature interactions, on both our website and our apps, to understand how people find and use Lede and to monitor and improve the platform. Runs only where you have accepted analytics. Hosted in the European Union; this is a cross-border disclosure under APP 8. |
| SMTP2GO | Transactional email delivery — sends account, verification, and service-notification emails, which include the recipient's name and email address. Hosted in Australia. |
| Browser push services (Google, Apple, Mozilla) | Delivery of push notifications you have opted into. Notifications are routed through your browser vendor's own push infrastructure, hosted outside Australia; this is a cross-border disclosure under APP 8. Notification content is encrypted in transit and cannot be read by the vendor. |
We take reasonable steps to ensure these providers handle personal data securely and in accordance with applicable law. All providers are engaged under data processing terms consistent with APP 8 cross-border disclosure obligations.
Data storage location
All Lede operational data — including shift notes, worker records, and account information — is stored on infrastructure located in Australia (AWS ap-southeast-2, Sydney region). To deliver our AI features, shift-note Content is disclosed to our AI provider, Anthropic, for processing. This processing may occur outside Australia. This is a cross-border disclosure for the purposes of APP 8, and we take reasonable steps to ensure it is handled in accordance with the Australian Privacy Principles. We also use PostHog (hosted in the European Union) for website and product analytics, which receives page-view and feature-interaction data from our website and our apps where you have accepted analytics; this is a further cross-border disclosure for the purposes of APP 8. In-app feedback submissions (including the submitter's email address and feedback text) are disclosed to Atlassian (Jira Cloud) for issue tracking; Atlassian hosts this data outside Australia, a further cross-border disclosure for the purposes of APP 8. We also use WorkOS (hosted in the United States) for authentication and identity management, including sign-in, single sign-on, and multi-factor authentication; this is a further cross-border disclosure for the purposes of APP 8. Where you opt into push notifications, delivery is routed through your browser vendor's push service (Google, Apple, or Mozilla), hosted outside Australia; this is a further cross-border disclosure for the purposes of APP 8. The content of those notifications is encrypted in transit and cannot be read by the vendor, although the delivery endpoint, the timing of delivery, and your device's IP address are disclosed. Enquiries submitted through our marketing website are stored in HubSpot on Australian infrastructure, so that disclosure does not cross a border. Aside from these disclosures, we do not transfer operational data offshore without explicit operator consent.
Data retention
Operator account data is retained for as long as the account is active. If an operator closes their account, we will delete all associated personal data within 30 days, unless we are required by law to retain it (for example, for tax or financial record-keeping purposes).
Raw worker shift notes (the text and voice-transcribed content workers enter) are retained until the operator’s account is deleted, regardless of subscription tier.
Two tier-based limits apply to AI-generated handover summaries and briefings (the end-of-shift content derived from shift notes):
- Visible history window — how far back the AI features analyse and display handover history.
- Storage ceiling — handover summaries older than this are deleted, even while the account is active, subject to the tier-change grace period described below. Raw shift notes are not affected by this ceiling.
| Subscription tier | Visible history window | Handover deletion ceiling |
|---|---|---|
| Free | 7 days | 14 days |
| Starter | 60 days | 90 days |
| Growth and Enterprise | Unlimited | Never deleted |
Operators on the Free and Starter tiers receive an in-app warning before handover summaries are deleted, with the option to upgrade to retain them.
If an operator's subscription tier changes, we apply a short grace period before the new tier's deletion ceiling takes effect, so a downgrade does not immediately delete existing handover summaries.
Operators can request deletion of their site's shift note history at any time by emailing privacy@workwithlede.com. Workers who wish to request deletion of their own records should contact their employer in the first instance, or contact us directly at the same address.
Your rights
Under the Privacy Act 1988 (Cth) and the Australian Privacy Principles, you have the right to:
- request access to the personal information we hold about you;
- ask us to correct information that is inaccurate or out of date;
- ask us to delete your personal information, subject to our legal obligations; and
- make a complaint about how we have handled your personal information.
To make any of these requests, email privacy@workwithlede.com. We will respond within 20 working days.
If you are not satisfied with our response, you have the right to lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.
Data breaches
Lede maintains a written data breach response plan. In the event of an eligible data breach as defined under the Notifiable Data Breaches (NDB) scheme (Privacy Act 1988, Part IIIC), we will:
- assess the breach within 30 days of becoming aware;
- notify the OAIC and all affected individuals as required by law; and
- take immediate steps to contain the breach and prevent recurrence.
To report a suspected security issue or data breach, contact privacy@workwithlede.com immediately.
Operator responsibility
Operators who use Handover are responsible for:
- informing their workers that the Lede platform is in use and that shift notes are recorded, stored, and processed by AI features;
- providing worker disclosure in the form required by this policy and our Terms of Service before workers first use the platform, and again before any AI feature upgrade is activated;
- ensuring workers use pseudonyms or codes (not resident, client, or patient names) when entering notes that reference third parties, particularly in aged care, disability support, and health settings;
- not using Handover data, including AI outputs, as the sole basis for any employment decision; and
- maintaining an internal response protocol for any safety or compliance signals surfaced by the platform.
Lede provides template disclosure language and recommended usage guidelines to all operators on request.
Cookies and tracking
We use one analytics provider, PostHog, on both our website (workwithlede.com) and our apps. It captures page views and feature interactions — such as which pages you view and which features you use — so that we can understand how people find and use Lede. PostHog is hosted in the European Union; this is a cross-border disclosure under APP 8.
Analytics are off until you accept them. On both the website and the apps, nothing is loaded and nothing is collected until you choose to accept. If you decline, no analytics run and no analytics identifier is stored in your browser.
If you accept, browsing on our website can later be linked to your account. When you accept on our website, PostHog stores an identifier in a cookie scoped to .workwithlede.com, so that the same identifier can be read by our apps at app.workwithlede.com. If you then sign in to Lede, having also accepted analytics in the app, that identifier is attached to your Lede user account. The practical effect is that pages you viewed on our website before you had an account — including pages you viewed before you decided to sign up — become linked to you as an identified person from that point onward.
This happens only if you accept analytics in both places. If you decline in the app, we do not make that link and we do not write anything to your browser's analytics storage, so your earlier website browsing is not connected to you.
Changing your mind. On our website, use "Cookie settings" in the footer of any page to change your choice at any time. In our apps, the choice is presented once and there is currently no in-app control to change it afterwards; to change it, clear Lede's cookies in your browser settings, or email us at privacy@workwithlede.com and we will action it for you. You can disable cookies in your browser settings at any time.
What we do not do. We do not record or replay your screen on our website. We do not build a profile of anonymous visitors — no person record is created in PostHog unless and until an account is linked as described above. We do not use third-party advertising or marketing pixels on our website.
Changes to this policy
We may update this policy from time to time as our product and obligations evolve. We will notify operators of any significant changes via email before they take effect. The current version is always available at workwithlede.com/privacy.
This policy is governed by the Privacy Act 1988 (Cth) and the Australian Privacy Principles.
Last updated: 3 August 2026
Lede Technologies Pty Ltd (ACN 698 337 718) — privacy@workwithlede.com — workwithlede.com/privacy