PRIVACY POLICY
Last updated: June 2026
This Privacy Policy has been prepared to align with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). It applies to Ellë Football Academy (“the Academy”) and governs how personal information is collected, used, stored and disclosed.
1. APP 1 – Open and Transparent Management of Personal Information
The Academy manages personal information in an open and transparent way. This policy outlines the types of information collected, how it is used, and how individuals can access and correct their information or make complaints.
2. APP 2 – Anonymity and Pseudonymity
Where practicable, individuals may interact with the Academy anonymously or using a pseudonym. However, due to the nature of youth sports training and safety obligations, identification is generally required.
3. APP 3 – Collection of Personal Information
The Academy collects personal information that is reasonably necessary for its functions, including delivering training, ensuring safety and administering payments.
Sensitive information (such as health data) is only collected with consent.
4. APP 4 – Unsolicited Information
If unsolicited personal information is received, the Academy will determine if it could have been collected lawfully. If not, it will be destroyed or de-identified.
5. APP 5 – Notification of Collection
At or before collection, the Academy will notify individuals about what information is collected, why it is collected and how it will be used.
6. APP 6 – Use and Disclosure
Personal information is used for training delivery, safety management, communication, and payment processing. Disclosure occurs only where necessary, including to medical providers, regulators or service providers.
7. APP 7 – Direct Marketing
The Academy will not use children’s personal information for direct marketing. Parents may opt out of communications at any time.
8. APP 8 – Cross-Border Disclosure
If personal information is stored or processed overseas (e.g. cloud services), the Academy will take reasonable steps to ensure recipients comply with Australian privacy requirements.
9. APP 10 – Data Quality
The Academy takes reasonable steps to ensure personal information is accurate, complete and up to date.
10. APP 11 – Data Security
The Academy protects personal information through access controls, encryption, secure payment systems and staff training. Financial information is handled through secure third-party platforms and is not retained longer than necessary.
11. Data Breach Response
In the event of a suspected data breach, the Academy will promptly assess the risk and notify affected individuals and the Office of the Australian Information Commissioner (OAIC) where required under the Notifiable Data Breaches scheme.
12. APP 12 – Access
Individuals can request access to their personal information held by the Academy.
13. APP 13 – Correction
Individuals may request correction of inaccurate or outdated information.
14. Retention and Destruction
Personal information is retained only as long as necessary for legal and operational purposes and then securely destroyed or de-identified.
15. Complaints
Privacy complaints should be directed to the Academy. If unresolved, individuals may escalate complaints to the OAIC.