Legal
Privacy Policy
This policy explains how ClientSupply handles personal information submitted through this marketing website. The website does not provide public JobDesk account creation and does not collect payment-card details.
Who handles the information
ClientSupply is operated by Leveriano Habiyambere, ABN 99 286 419 439.
Information we may collect
When you contact ClientSupply by email, we may collect the sender and recipient addresses, message content, attachments you choose to include and ordinary email-delivery metadata. The website host may also process ordinary technical request information such as time, browser type, requested page, network address and security events.
Please do not send passwords, payment information, customer records or sensitive personal information in an access enquiry.
Information collected when you register a JobDesk account
If you register a business on this website we collect the business name, your name, your email address and a password, together with a record that you accepted the applicable terms. We store only a one-way cryptographic hash of your password — never the password itself — so it cannot be read or recovered by ClientSupply.
Registering creates an organisation workspace for that business and an owner account for you. If you are invited to an existing organisation, we record the invited email address, the role offered, who issued the invitation and when it was used or withdrawn.
Authentication and session information
To keep you signed in securely we store a one-way hash of your session and request-verification tokens, when each session was created, last used and expires, which organisation the session is currently working in, and whether it has been signed out. We also store one-way hashes of the single-use links sent for email verification and password reset.
We keep a security audit record of events such as sign-in attempts, verification, password reset, invitations, organisation changes and session revocation. Those records identify the account and the action, and deliberately exclude passwords, tokens and the content of your operational data.
Operational information you enter into JobDesk
JobDesk stores the service-business records you enter, such as jobs, enquiries, customer contact details, scheduling and job outcomes, together with your organisation settings. Information about your customers is entered by you; you are responsible for having a lawful basis to enter it.
JobDesk is not designed to hold sensitive information, and you should not enter health or medical records, government identifiers, biometric data, or information about a person’s racial or ethnic origin, political opinions, religious beliefs, sexual orientation or criminal record.
Payment information
ClientSupply does not collect or store raw payment card numbers, security codes or bank account details. There is no live billing in this phase of the product, and no payment is taken through the website or JobDesk.
How information is collected
The marketing website does not contain an enquiry form and does not send or store the contents of an access request. Selecting an email link asks your email app to open a pre-addressed draft; nothing is sent unless you choose to send it. Technical website information may be generated automatically when pages are requested from the host.
Why we use the information
We use enquiry information to review and respond to your request, discuss whether JobDesk may be suitable for your business, maintain reasonable business records, protect the website from misuse and meet applicable legal obligations. We do not use an enquiry to create a public product account or initiate a payment.
Disclosure and service providers
Information may be processed by service providers used to host the website, deliver business email, maintain security and support ordinary business operations. We do not sell enquiry information. We may disclose information when required by law or where reasonably necessary to protect legal rights or system security.
Service-provider processing locations can change. This policy does not state unverified processor locations; current information may be requested using the contact details below.
Retention and deletion
We retain enquiry information only for as long as reasonably needed to respond, maintain appropriate business records, protect the service and meet applicable legal obligations. The appropriate period depends on the nature of the enquiry and any resulting business relationship. We do not state a fixed period that has not been operationally verified.
Account and organisation records are kept while the organisation is active. If an organisation is closed, or an evaluation period ends without a separate agreement, we keep its records only for as long as needed to meet legal, accounting and dispute-resolution obligations, and then delete or de-identify them.
Session records are short-lived: a session expires automatically, and signing out or revoking a session ends it immediately. Single-use verification and password-reset links expire and cannot be reused. Security audit records are retained longer than operational data because they exist to investigate misuse.
You can ask us to delete your organisation and its operational data by contacting us. We will confirm your identity as the organisation owner before acting.
Access and correction
You may ask to access or correct personal information held about you by emailing leveriano@clientsupply.com.au. We may need to verify the request before responding.
Privacy complaints
Send a privacy complaint to leveriano@clientsupply.com.au with enough information for ClientSupply to understand the concern. We will review the complaint and respond within a reasonable timeframe. Where Australian privacy law applies, you may also have the right to contact the Office of the Australian Information Commissioner.
Security
ClientSupply uses measures intended to reduce unauthorised access, disclosure or misuse. No internet service can be represented as risk-free. See the Data Security Summary for the boundaries of this marketing site.
Access to organisation data is restricted to that organisation. Every request is re-checked on the server against your current membership, so access ends as soon as a membership is removed rather than when a session happens to expire.
You are responsible for keeping your password confidential and not sharing sign-in or invitation links. ClientSupply will never ask you for your password. You can review and end your active sessions at any time from the security page in the application.
Changes
We may update this policy when the website, providers or information-handling practices change. The current version and update date will be published on this page.