Skip to content
Fahey

Legal & policies

Privacy Policy

Last updated: 6 August 2026

Fahey Certification Pty Ltd (ABN 78 699 809 455) ("we", "us", "our") respects your privacy and is committed to protecting the personal information we hold. This Privacy Policy explains how we collect, use, hold and disclose personal information, and how we handle it in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). We follow the APPs as a matter of good practice in all of our dealings.

Personal information we collect

The personal information we collect depends on your dealings with us. It may include:

  • Identity and contact details: your name, company, email address, phone number and postal address;
  • Project information: site and property details, plans, surveys, consents, certificates and other documents you provide;
  • Correspondence: enquiries, instructions and other communications you send us;
  • Account and billing information: details needed to provide a fee proposal, invoice and receive payment;
  • Website and technical information: collected automatically when you use our website (see “Our website: cookies and analytics”).

We do not generally collect sensitive information. Please do not send us sensitive information unless it is necessary for our services.

How we collect personal information

  • Directly from you, when you complete our enquiry form, email or call us, engage us, or provide documents;
  • Automatically, when you visit our website, through standard server logs and limited cookies;
  • From third parties, where relevant to a certification matter, for example from your other consultants, councils, the NSW Planning Portal, or public registers, where you have authorised this or it is otherwise permitted by law.

Why we collect, hold and use your information

We collect, hold and use personal information to:

  • Respond to your enquiry and provide a fee proposal;
  • Provide our certification services and act as Principal Certifier where engaged;
  • Carry out assessments, inspections and determinations, and prepare and issue certificates;
  • Comply with our statutory and professional obligations as a registered certifier;
  • Administer accounts, invoicing and our business records;
  • Improve our website and services; and
  • Send you service updates or information you have asked for (you can opt out at any time).

Certification records and statutory obligations

As a registered building certifier, we are required to create and keep records and to lodge documents through the NSW Planning Portal. Certain information must be provided to, and may be accessed by, councils, the regulator and other bodies as required under the Building and Development Certifiers Act 2018 and the Environmental Planning and Assessment Act 1979. Some certification documents form part of a property's records and may be available to subsequent owners or the public.

Disclosure of personal information

We may disclose personal information to:

  • The regulator (Building Commission NSW), consent authorities and councils, and through the NSW Planning Portal;
  • Your other project consultants where necessary to progress your matter;
  • Our professional advisers, including insurers and legal advisers;
  • Service providers who assist us to operate, such as IT, cloud storage, email and accounting providers, under appropriate confidentiality arrangements; and
  • Any person where required or authorised by law.

We do not sell personal information, and we do not disclose it for third-party marketing.

Overseas disclosure

Some of our service providers (for example cloud storage and software providers) may store or process information on servers located outside Australia. Where this occurs, we take reasonable steps to ensure the information is handled consistently with the APPs.

Storage and security

We take reasonable steps to protect personal information from misuse, interference and loss, and from unauthorised access, modification or disclosure, including through secure systems, access controls and trusted providers. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

How long we keep it

We retain personal information for as long as it is needed for the purposes above and to meet our record-keeping obligations as a certifier, which require certain records to be kept for statutory periods. When information is no longer required, we take reasonable steps to destroy or de-identify it.

Our website: cookies and analytics

Our website is built to be privacy-preserving. Fonts are self-hosted, and we do not use third-party advertising trackers. We use limited, essential cookies and standard server logs to operate the site, and we use Google Analytics 4 to understand general usage of the website (such as pages visited, approximate location and device type). Google Analytics places cookies on your device and processes usage information on our behalf; this information is aggregated and does not identify you personally, and Google's handling of it is described in Google's own privacy policy. You can control or block cookies through your browser settings, and you can opt out of Google Analytics using Google's opt-out browser add-on.

Direct marketing

We will only send you marketing communications where you have consented or where otherwise permitted by law. Every such communication includes a way to opt out, and you can ask us to stop at any time using the contact details below.

Accessing and correcting your information

You may request access to the personal information we hold about you, and ask us to correct it if it is inaccurate, out of date or incomplete. Contact us using the details below. We may need to verify your identity, and in limited circumstances we may decline a request as permitted by law, in which case we will explain why.

Making a privacy complaint

If you believe we have mishandled your personal information, please contact us using the details below so we can investigate and respond. If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

Notifiable data breaches

If a data breach is likely to result in serious harm to affected individuals, we will respond in line with the Notifiable Data Breaches scheme, including notifying affected individuals and the OAIC where required.

Changes to this policy

We may update this Privacy Policy from time to time. The current version is published on this website with the date it was last updated.

Contact us

For privacy questions or requests, contact Fahey Certification Pty Ltd at info@faheycert.com.au, 0456 762 048, or Wallsend NSW 2287.