EziShift

EziShift

Privacy

Privacy policy

How EziShift handles information

This policy describes the information EziShift may process when organisations use the platform and the responsibilities that remain with each organisation using it.

Last updated

17 September 2026

Who operates EziShift

EziShift is operated by Brayden Terrence Rouen, ABN 62 144 654 542, trading as EziShift in Queensland, Australia. Privacy and account enquiries can be sent to support@ezishift.au.

Information we may process

  • Account, business and contact details
  • Staff records, access levels, availability, leave and compliance dates
  • Client, participant, site and work-area information entered by your organisation
  • Rosters, shifts, clock-in/out details, optional clock-action location points, kilometres and shift submissions
  • Progress Notes, shift notes or job notes entered as part of supported workflows
  • Uploaded business documents and profile photos used in supported EziShift workflows
  • Invoice, billing, subscription and payroll-summary information
  • Workspace creation date and active-staff count where needed to determine subscription eligibility or pricing
  • Basic platform analytics, diagnostic and security information

How information is used

  • Provide rostering and workforce-management features
  • Show authorised users the records and shifts available to them
  • Support operational notes, document storage, invoicing, exports and payroll estimates
  • Manage authentication, access, account security, subscription eligibility and billing
  • Maintain, troubleshoot and improve EziShift
  • Meet legal, security and contractual obligations where applicable

GPS clocking

An organisation may choose to enable GPS clocking for staff attendance. If enabled, EziShift may request the device's location when a worker presses Clock in or Clock out and store that point, together with the device-reported accuracy, against the shift.

EziShift does not continuously track a worker's location between clock actions. Organisations can leave GPS clocking off, allow clocking when a location is unavailable, or require a location point for a clock action. Workers should be informed by their organisation about how location information is used in the workplace.

Progress Notes and operational notes

EziShift supports Progress Notes for NDIS workflows and operational shift or job notes for other supported business workflows. Those notes may be stored and made available to authorised users according to the workspace configuration and access controls.

EziShift is an operational workforce platform, not a dedicated medical or clinical record system. Organisations should decide what information is appropriate and lawful to enter, keep notes relevant to the work being performed, and avoid unnecessary sensitive or clinical detail.

Information that should generally be kept elsewhere

  • Unnecessary medical or detailed clinical records
  • Medication charts or clinical assessments that belong in a clinical system
  • Behaviour support plans or restrictive-practice records unless your organisation has separately determined EziShift is appropriate and lawful for that purpose
  • Staff bank details or full payment-card details
  • Final PAYG, STP or tax lodgement records that belong in payroll/accounting software
  • Information that is not reasonably needed for the EziShift workflow you are using

Access and security

EziShift uses authentication, organisation-level data separation, user access controls and third-party infrastructure to protect platform data. No online service can guarantee absolute security, and organisations remain responsible for managing staff access, using strong account credentials and removing access when it is no longer required.

Service providers and overseas processing

EziShift may use third-party providers for hosting, database services, authentication, file storage, analytics, email delivery, monitoring and payments. Information may be processed in Australia and in countries where those providers operate, including the United States and other locations used by their global infrastructure. EziShift takes reasonable steps appropriate to the service when selecting and configuring providers.

Payments and subscription pricing

When online payments are used, card details are handled by the payment provider rather than stored directly by EziShift. EziShift may retain transaction identifiers, subscription status, billing history and records reasonably required for support, refunds, disputes and accounting.

EziShift may also use a workspace's creation date and the number of staff records marked Active to determine whether a workspace qualifies for founding pricing or to calculate a staff-based subscription price. Archived staff records are not intended to count as active staff for that pricing calculation.

Exports, retention and deletion

Organisations can export certain operational records from EziShift. The organisation using the workspace is responsible for retaining exported business records for any period required by law, funding arrangements, employment obligations or its own policies.

Customers should export information they need before authorised access ends. Unless a longer period is stated or retention is required for legal, security, dispute-handling or other legitimate purposes, EziShift may delete workspace data from active systems 30 days after paid or authorised access ends. Backup or disaster-recovery copies may remain for a limited period before being overwritten in the ordinary course.

Requests about access, correction or deletion can be sent to EziShift. Some information may need to be retained where required for security, legal, contractual or legitimate business purposes.

Access and correction

Individuals may request access to personal information EziShift holds about them or ask for correction where information is inaccurate, out of date, incomplete, irrelevant or misleading. EziShift may need to verify identity and may refuse a request where Australian law permits or requires it.

Privacy complaints

Privacy complaints can be sent to support@ezishift.au. EziShift will acknowledge and investigate genuine complaints within a reasonable time and explain the outcome or any further information needed. Rights to complain to the Office of the Australian Information Commissioner, where applicable, are not affected.

Data breaches

If a data breach occurs, EziShift will assess and respond to it in accordance with applicable Australian law, including notification obligations that apply to EziShift.

Marketing communications

Account, security and service messages are not marketing. If EziShift sends commercial marketing by email or SMS, it will obtain any consent required by law, identify the sender and provide a clear unsubscribe method. Marketing consent is separate from creating an account or accepting these Terms.

Your organisation’s responsibilities

The organisation using EziShift is responsible for determining that it has authority to collect, enter and use personal information in the platform, configuring appropriate user access, reviewing exported or calculated records, and complying with privacy and record-keeping obligations that apply to its business.