The thirteen principles, one by one.

What each Australian Privacy Principle requires, and what aurii does about it.

The short version.

Five facts first. The principle-by-principle detail follows, each with the mechanism behind it.

  • No clinical record is stored offshore
  • Your content is never used to train AI models
  • Nothing is final, sent or billed until a specialist signs it
  • Purge on request destroys data for good
  • Not a medical device: it drafts, the clinician decides

APP compliance 13 principles mapped Updated 3 July 2026

aurii is designed to comply with the Australian Privacy Principles. It is not "APP certified": no such certification exists, and any vendor claiming one is overreaching. What follows is the honest version, principle by principle: the mechanism behind each, with a link. This is general information, not legal advice.

Open and transparent management

What it requiresHandle personal information openly, with a clear, current privacy policy that is easy to find and read.

What aurii does
  • A plain-language Privacy Policy that maps to each principle and is versioned and dated on change.
  • This page: the principles set out one by one, with the specific mechanism behind each.
  • A named contact for privacy enquiries, answered directly.

Anonymity and pseudonymity

What it requiresGive people the option of not identifying themselves where that is lawful and practicable.

What aurii does
  • aurii is a clinical record system: patients are identified because the clinical and billing record legally requires it.
  • Marketing and general enquiries to aurii do not require an account or identifying detail beyond the email you choose to send from.

Collection of solicited information

What it requiresCollect only information reasonably necessary for your functions, and collect sensitive information with consent.

What aurii does
  • aurii collects only what it needs to draft documentation and record billing: the consult audio, the transcript, the drafts, and the patient identifiers.
  • Health information is handled as sensitive information, collected in the course of care the clinician is already providing.
  • No data-broker purchases, no advertising pixels on the clinical application.

Unsolicited information

What it requiresIf you receive personal information you did not ask for, decide whether you could have collected it, and if not, destroy or de-identify it.

What aurii does
  • Uploaded context files attach to the patient record they were provided for and flow only into background sections of a draft, never the examination or plan.
  • Content that does not belong to an active clinical record is not retained in the working set.

Notification of collection

What it requiresTell people that you are collecting their information, why, and who you might share it with.

What aurii does
  • The Privacy Policy sets out what is collected, why, where it lives, and the short list of sub-processors that can touch it.
  • Patients are informed through the treating clinician and hospital that controls the record, in the ordinary course of care.

Use and disclosure

What it requiresUse or disclose information only for the purpose it was collected, or a directly related purpose the person would expect.

What aurii does
  • Clinical information is used to transcribe the consult, draft the documentation, and record billing for the clinician to review and sign.
  • It is not used for marketing, and it is never sold.
  • Disclosure happens only where the clinician directs it, such as a signed letter to a GP, or where Australian law requires it.

Direct marketing

What it requiresDo not use personal information for direct marketing unless the person would expect it and can opt out.

What aurii does
  • aurii does not use patients' clinical information for marketing, at all.
  • The clinical application carries no third-party advertising or tracking.

Cross-border disclosure

What it requiresBefore sending personal information overseas, take reasonable steps to ensure the recipient handles it consistently with the APPs.

What aurii does
  • Your data is pinned to Australia: a primary region in Sydney, replicated to a backup region in Melbourne.
  • Consult audio is transcribed in Australia, and the documents drafted from it are stored and encrypted in Australia.
  • aurii does not disclose your data to overseas recipients for its own purposes. Where a sub-processor is involved, it is bound by contract to the same residency and confidentiality terms.

Government related identifiers

What it requiresDo not adopt, use or disclose a government identifier as your own identifier for a person.

What aurii does
  • aurii identifies patients by the hospital's own medical record number, not by a government identifier.
  • Where a Medicare number is recorded for billing, it is encrypted at the field level and is not surfaced back into documents; the pharmacist or fund completes it from the physical card where a printed form needs it.

Quality of information

What it requiresTake reasonable steps to ensure the information you hold is accurate, up to date and complete.

What aurii does
  • aurii drafts; the specialist decides. Nothing is final, sent or billed until a doctor has reviewed and signed it, so a human checks accuracy at the point it matters.
  • The examination, impression and plan are dictated, not invented: aurii does not fabricate clinical content the clinician did not say.

Security of information

What it requiresProtect information from misuse, interference, loss, and unauthorised access, with steps reasonable in the circumstances.

What aurii does
  • Clinical information is encrypted in transit and at rest, record by record, each record's data key wrapped by a key in Microsoft Azure Key Vault in Australia.
  • Access is authenticated and least-privilege, with multi-factor authentication and passkeys, and each practice's data is isolated from every other tenant.
  • Every document and every action is written to an append-only, tamper-evident audit retained for seven years.

Access to information

What it requiresGive people access to the personal information you hold about them, on request.

What aurii does
  • A clinician can see the personal information aurii holds for their account.
  • aurii holds patient information on behalf of hospitals and specialists. A patient access request flows through the clinician or hospital that controls the record, and aurii helps them respond.

Correction of information

What it requiresCorrect personal information that is inaccurate, out of date, incomplete, irrelevant or misleading, on request.

What aurii does
  • A signed document can be amended, and the amendment is itself recorded in the tamper-evident audit, so the correction is transparent rather than silent.
  • Account information can be corrected on request, and patient corrections flow through the hospital that controls the record.

Beyond the thirteen.

Notifiable Data Breaches. aurii commits to the Notifiable Data Breaches scheme. An eligible breach likely to cause serious harm is assessed and notified to affected people and the OAIC, per the Privacy Policy and security page.

State health records law. Health records obligations vary by state and territory, and a hospital carries its own. aurii is built to sit inside those obligations rather than replace them, and works to the record-keeping agreement held with your organisation.

My Health Record. aurii does not integrate with My Health Record. If that changes, it will be documented here plainly rather than implied.

Send this page to your privacy officer, or read how the security mechanisms work on the security and trust pages. Questions are welcome at hello@aurii.com.au.

Built to sit inside
your obligations.

aurii drafts; the doctor signs. The compliance work is done in plain sight, principle by principle, so your privacy officer can read it in an afternoon.

hello@aurii.com.au