LeaseAlarm legal information
Privacy policy
This policy explains what personal information LeaseAlarm collects, why we need it, who may see it and the choices you have.
Last updated: 8 October 2026 · LeaseAlarm is operated by Global 22 Pty Ltd.
1. Who we are
LeaseAlarm is operated by Global 22 Pty Ltd (ABN 46 620 610 120) in Victoria, Australia and is available to customers in multiple countries. In this policy, “LeaseAlarm”, “we”, “us” and “our” mean Global 22 Pty Ltd.
We aim to give every customer the protections in this policy. If the law where you live gives you stronger rights, those stronger rights still apply.
2. Who this policy covers
This policy covers website visitors, account holders, invited team members, people who contact support and people whose information is added to LeaseAlarm by an authorised customer.
For account, security, billing and support information, Global 22 Pty Ltd usually decides how the information is used. For records uploaded and controlled by a business customer, that business usually makes those decisions and LeaseAlarm handles the information for it. Privacy laws may call these roles controller, business, processor or service provider.
A customer must have permission or another lawful reason to add information about employees, landlords, tenants, suppliers, contractors or anyone else.
3. What information we collect
We may collect your name, email address, sign-in details, organisation, team role, permissions, support messages, privacy choices and important account activity.
You may add addresses, bills, subscriptions, leases, contracts, insurance, licences, equipment, certificates, dates, tasks, notes, contacts, PDFs and photos. These records may include information about people who do not have a LeaseAlarm account.
We may also collect your reminder choices, email delivery history, plan and purchase history, basic device and browser details, security events, errors and information about how the service is working. LeaseAlarm does not intend to store full card or bank-account details.
4. How and why we use information
We collect information when you create an account, add a record, upload a file, invite someone, contact support, choose a reminder, manage a plan or use LeaseAlarm.
We use it to run and protect your account, organise your records, show dates and tasks, send the emails you ask for, manage team access, provide downloads, manage plans, answer support requests, fix problems, prevent misuse and follow the law.
We may use information with names and other identifying details removed to understand and improve LeaseAlarm. We do not sell personal information or use private customer documents for advertising.
5. Automatic document reading
Where automatic reading is available, it is optional. When you choose it or separately approve future matching supplier updates, selected email or document content and relevant record details may be sent securely to OpenAI to suggest details and dates. Images or scanned PDFs may also be sent to Google to read their text.
Saved storage is switched off for the current OpenAI reading. OpenAI says information sent through its business service is not used to train its models unless we choose to allow that. OpenAI may still keep the selected file and its answer in protected safety records for up to 30 days by default, or longer when required by law or needed to prevent harm. A person must check every suggestion before it can be saved or used for a reminder.
Automatic reading can be wrong or miss something. It is not legal advice and does not replace the original document. Remove information that is not needed, especially sensitive information, before choosing automatic reading.
6. Connecting Gmail
Connecting Gmail is optional. If you choose it, LeaseAlarm asks Google for read-only access to your Gmail messages and settings. LeaseAlarm uses this access only for the Connected Email feature described here and cannot send, change, move or delete your Gmail messages.
LeaseAlarm first searches for likely business records and shows limited details such as the sender, subject, received date and an attachment's name or type. During this discovery step, LeaseAlarm does not open ordinary message bodies or download attachment contents.
LeaseAlarm retrieves the content of an email or a supported attachment only when you select that item, or when you separately approve a clearly identified sender or matching rule. The selected content may be sent securely to OpenAI, or another document-reading provider clearly named in this policy, so LeaseAlarm can return record and date suggestions for you to check. Your Google data is not used to train or improve a general-purpose or shared artificial-intelligence model.
LeaseAlarm encrypts Google connection tokens, limits access to the authorised customer account and approved services, and keeps a safe history of when the connection was used without placing message content in that history. You can pause checks, remove an approved source, delete discovered or saved material, and disconnect Gmail. Disconnecting removes LeaseAlarm's stored Google connection tokens and asks Google to revoke the connection. Protected backups expire under the normal deletion periods explained in this policy.
LeaseAlarm does not sell Google user data, use it for advertising, use it to decide whether someone should receive credit, or transfer it for an unrelated purpose. LeaseAlarm's use and transfer of information received from Google follows the Google API Services User Data Policy, including its Limited Use requirements.
Human access to Google user data is not allowed unless you first agree to access to specific content, access is needed to investigate a security problem, access is required by law, or the information has been combined and de-identified for lawful internal operations.
7. Who we share information with
We share only what is reasonably needed with authorised members of your organisation and approved companies that help us with sign-in, hosting, storage, email, document reading, payments, app stores, support, security, system checks and backups.
We may also share information if the law requires it, a court or government request is lawful, someone faces a serious threat, fraud or misuse must be investigated, or the business is genuinely sold or restructured with suitable privacy protection.
LeaseAlarm does not sell personal information, use advertising trackers or share customer information for unrelated advertising.
8. How information is stored and handled
Customer information is stored using secure AWS cloud services and protected with encryption. You and authorised team members may access it from the countries where you use LeaseAlarm.
Approved services for sign-in, app stores, payments, email, system checks or document reading may handle limited information in countries where those services operate.
When information is handled in another country, we use the protection required by applicable privacy law. Depending on the country, this may include the European Commission Standard Contractual Clauses, the United Kingdom International Data Transfer Addendum or Agreement, another approved contract or valid consent. You may ask the Privacy Officer what protection applies to your information.
9. Team and support access
Account owners choose who joins the team and what each person can see or change. Customers should remove access as soon as it is no longer needed.
Support cannot open a private document through the special support process unless the customer approves the reason and a short time limit, and a second authorised staff member also approves. The request, approval, access and end time are recorded.
10. Service emails and marketing
We may send emails needed to run your account, keep it secure, support your team, manage the trial or plan, and deliver reminders you asked for.
Marketing emails will include a clear way to unsubscribe. Stopping marketing does not stop important account, security, support or reminder emails.
11. Cookies and saved device information
The website or app may save small pieces of information on your device to keep you signed in, protect sign-in, remember an essential choice and prevent misuse. We do not intend to use advertising cookies or track you across other apps or websites.
12. How we protect information
Our protections include private storage, encryption while information is sent and stored where supported, secure sign-in, short-lived links, team permissions, important activity records, limited support access, backups and alerts when something appears wrong.
No online service can promise perfect security. Protect your sign-in method and device, choose team access carefully and tell us quickly if you think someone has entered your account without permission.
13. How long we keep information
We keep information only as long as we reasonably need it to run the service, protect accounts, resolve problems and meet legal, tax, accounting and security duties. When it is no longer needed, we delete it or remove identifying details, subject to protected backup expiry and any records the law requires us to keep.
You can ask for a copy of your information. An account owner can ask for the organisation and its records to be deleted. The deletion process waits seven days so an accidental request can be cancelled.
Some payment, tax, fraud, security, dispute or legal records may need to remain. Deleted information may remain in protected backups until those backups expire, but it will not be returned to normal use.
14. Your privacy rights
Depending on the law where you live, you may be able to ask what information we hold, get a copy, correct it, delete it, move it to another service, limit or object to its use, withdraw consent, opt out of certain uses or appeal a refused request.
LeaseAlarm does not sell personal information, share it for cross-context behavioural advertising or use it for targeted advertising. LeaseAlarm does not make decisions that have a legal or similarly serious effect without meaningful human involvement.
We may need to confirm your identity, authority and location before acting. We will not treat you unfairly for using a privacy right. If we refuse a request, we will explain why and tell you about any complaint or appeal option required by law.
15. Children
LeaseAlarm is for adults and businesses. A person under 18 must not create an account. Customers should not add information about a child unless it is reasonably needed for an authorised business record and they have a lawful reason to do so.
16. Privacy or security problems
We will investigate a suspected privacy or security problem and take reasonable steps to reduce harm. We will notify affected people and the relevant regulator when the law requires it.
Contact the Privacy Officer at leasealarm@gmail.com. Tell us what happened and what you would like us to do. Do not email passwords, sign-in codes or private documents.
We aim to respond to a privacy complaint within 30 days, or sooner if the law requires it. In Australia you may also contact the Office of the Australian Information Commissioner at oaic.gov.au. Other countries have their own privacy regulators.
17. Regional rights and changes
The Regional privacy rights page explains extra rights that commonly apply in Europe, the United Kingdom, Switzerland, the United States, Canada, Brazil and New Zealand. Local law may give people elsewhere similar or stronger rights.
We may update this policy if LeaseAlarm, our providers or the law changes. We will publish the current version and give reasonable notice of an important change. We will ask for fresh consent if the law requires it.
