Privacy Policy | Thrive Holistic Health Hub
​
Effective Date: September 2026
Thrive Holistic Health Hub (“Thrive”, “we”, “us” or “our”) is committed to protecting your privacy and handling personal information responsibly.
This Privacy Policy explains how we collect, use, disclose, store and protect personal information in connection with our website, health and wellbeing services, corporate wellbeing programmes, digital resources and other business activities.
We handle personal information in accordance with the Privacy Act 1988 (Cth), the Australian Privacy Principles (APPs) and other privacy and data protection laws that apply to our activities. Where applicable to individuals located in other jurisdictions, additional privacy rights or requirements may apply.
​
1. What Personal Information We Collect
​
The personal information we collect depends on how you interact with Thrive Holistic Health Hub, the products or services you access and the information you choose to provide.
We only collect personal information that is reasonably necessary to provide our services, operate our business, communicate with you, comply with legal obligations, protect our legitimate business interests, or where otherwise authorised or required by law.
Depending on your interaction with us, we may collect the following categories of personal information.
​
Identity and Contact Information
We may collect:
​
-
Name
-
Email address
-
Telephone number
-
Postal or billing address
-
Date of birth, where relevant to the services provided
-
Organisation or business name
-
Job title or position
-
Department or business unit, where relevant
​
Business Information
Where you enquire about or engage our corporate services, we may collect information relating to your organisation, including:
​
-
Organisation name
-
Industry
-
Organisation size or employee numbers
-
Business contact details
-
Programme enquiries
-
Contractual information
-
Billing information
-
Meeting and booking information
​
Health and Wellbeing Information - Individual Services
Where you engage with our coaching, functional health or wellbeing services, we may collect health and wellbeing information that you voluntarily provide and which is reasonably necessary for us to deliver our services, including:
​
-
Symptoms
-
Medical history
-
Diagnoses
-
Pathology and functional test results
-
Medications
-
Supplement use
-
Allergies
-
Lifestyle information
-
Nutrition
-
Sleep
-
Physical activity
-
Stress
-
Health questionnaires and assessments
-
Coaching notes
-
Programme progress
-
Goals and outcomes
​
Where voluntarily disclosed by you and relevant to the services being provided, this may also include sensitive information such as information relating to racial or ethnic origin, religious beliefs, sexual orientation or other health-related information.
​
Corporate Wellbeing Programme Information
Where you participate in a Thrive corporate wellbeing programme, including Total Team Reset, we may collect workforce assessment and survey responses relating to health and wellbeing, including, where relevant:
​
-
Sleep
-
Energy
-
Nutrition
-
Hydration
-
Physical activity
-
Sedentary behaviour
-
Recovery
-
Stress
-
Workload
-
Burnout risk
-
Emotional wellbeing
-
Workplace support
-
Organisational wellbeing
-
Other workforce health and wellbeing measures included within the relevant programme
​
Our corporate workforce assessments are designed to minimise the collection of directly identifying employee information.
​
For the Total Team Reset workforce assessment, Thrive does not request employee names, employee email addresses, employee identification numbers or manager names as part of the assessment.
​
Assessment responses may be recorded against a system-generated participant identifier generated by the assessment platform for processing and administration purposes.
​
Technical information may also be processed automatically by the platforms used to administer the assessment, as described in this Privacy Policy.
​
Thrive analyses workforce assessment information to identify workforce-level patterns, trends, priorities and areas of potential risk.
​
Participating organisations receive aggregated workforce reporting and insights. Individual assessment responses are not provided to an employer as identifiable employee records.
​
Where workforce reporting is produced, Thrive applies reasonable reporting controls designed to minimise the risk of individual employees being identified from the information presented.
​
Marketing and Communication Information
Where you download a resource, subscribe to our newsletter, complete a lead qualification quiz, request information, make an enquiry or otherwise interact with our marketing activities, we may collect:
​
-
Name
-
Email address
-
Organisation name
-
Marketing preferences
-
Quiz responses
-
Quiz results
-
Lead magnet selections
-
Newsletter subscription status
-
Communication preferences
-
Feedback and survey responses
-
Email engagement information, including email opens, clicks and subscription activity
-
Marketing segmentation and automation tags generated through your interaction with our services
Information collected through a marketing or lead qualification quiz is separate from employee workforce assessment information collected as part of a corporate programme.
​
Payment and Transaction Information
Where you purchase products or services, we may collect:
​
-
Billing name
-
Billing address
-
Transaction information
-
Invoice records
-
Purchase history
​
Payment card information is processed by our third-party payment providers and is not directly collected or stored by Thrive.
​
Technical Information
When you visit our website, complete online forms or assessments, access digital services or otherwise interact with our online systems, we and our authorised third-party service providers may automatically collect technical information necessary for operation, security, administration, analytics or functionality, including:
​
-
IP address
-
Browser type and version
-
Device information
-
Operating system
-
Website usage information
-
Cookies and similar technologies
-
Date and time of access
-
Form or assessment submission metadata
-
System-generated identifiers
-
Platform usage information
-
​
Communications
We may retain records of communications with you, including:
​
-
Emails
-
Website enquiries
-
Contact form submissions
-
Discovery call enquiries
-
Meeting bookings
-
Customer support requests
-
Feedback
-
Coaching session notes
-
Meeting recordings where recordings are made, you have been informed and, where required by law, appropriate consent has been obtained
​
Other Information You Choose to Provide
​
We may also collect other personal information that you voluntarily provide where it is reasonably necessary to respond to your enquiry, deliver our services, administer your relationship with Thrive, improve our services or comply with our legal and regulatory obligations.
​
2. How We Collect Personal Information
​
We collect personal information directly from you, automatically through your interaction with our digital services and, where appropriate, from authorised third parties.
The method of collection depends on the products or services you access.
​
Information You Provide Directly
We may collect personal information when you:
​
-
Complete an enquiry form through our website
-
Complete a quiz, assessment, scorecard, questionnaire or survey
-
Download a free resource or lead magnet
-
Subscribe to our newsletter or marketing communications
-
Book a discovery call, consultation or appointment
-
Purchase a product or service
-
Complete onboarding documentation
-
Participate in coaching sessions, consultations or corporate wellbeing programmes
-
Contact us by email, telephone, website enquiry form or another authorised communication channel
-
Provide feedback, testimonials or programme evaluations
-
Otherwise choose to provide information to us
​
Information Collected Through Our Website and Digital Platforms
When you interact with our website or authorised digital platforms, information may be collected through technologies and systems including:
​
-
Website forms
-
Cookies and similar technologies
-
Website analytics
-
Booking systems
-
Payment systems
-
Marketing platforms
-
Assessment platforms
-
Workflow automation platforms
-
Secure cloud-based business systems
​
Some technical information is collected automatically by these systems to support their operation, security, functionality and performance.
​
Corporate Wellbeing Programmes
​
Corporate workforce assessment information is collected through authorised online assessment and survey systems.
Total Team Reset workforce assessments are designed to minimise the collection of directly identifying employee information.
​
Employees completing the workforce assessment are not asked by Thrive to provide their name or email address as part of that assessment. Responses may instead be associated with a system-generated participant identifier.
Assessment information may be securely transferred between authorised systems used by Thrive for assessment administration, workflow automation, analysis and reporting.
​
Thrive uses this information to analyse workforce-level patterns and produce aggregated organisational insights.
Participating organisations receive aggregated workforce reporting. Individual assessment responses are not provided to the organisation as identifiable employee records except where disclosure is required or authorised by law.
​
Third-Party Service Providers
We collect and process personal information using authorised third-party service providers that support our business operations, including providers responsible for:
​
-
Website hosting
-
Online forms and assessments
-
Appointment scheduling
-
Email marketing
-
Customer relationship management
-
Workflow automation
-
Cloud storage
-
Virtual meetings
-
Report generation
-
Payment processing
-
Analytics
-
Business communications
​
These providers may process information on our behalf in accordance with their contractual arrangements, privacy policies and applicable privacy and data protection obligations.
​
Automatically Collected Information
When you use our website or digital services, we and our authorised service providers may automatically collect technical information such as:
​
-
IP address
-
Browser type and version
-
Device type
-
Operating system
-
Website activity
-
Pages viewed
-
Referral information
-
Date and time of access
-
Cookie identifiers
-
Platform-generated identifiers
-
Other technical information reasonably required to operate, administer, maintain and secure our services
-
​
Information from Integrations and Automations
Thrive uses authorised workflow automation and integrations to transfer information between business systems.
These workflows may be used to:
​
-
Administer enquiries
-
Deliver requested resources
-
Manage subscriptions
-
Manage bookings
-
Transfer assessment information
-
Support programme administration
-
Maintain business records
-
Support analysis and reporting
-
Improve operational efficiency
​
For Total Team Reset, this may include transferring workforce assessment responses and system-generated participant identifiers from the assessment platform through an authorised workflow automation provider into Thrive’s authorised business systems for analysis and reporting.
​
Information from Other Sources
Where permitted by law, we may also receive personal information from:
​
-
Your employer or an authorised organisational representative, where relevant to a corporate programme
-
Payment providers
-
Publicly available business information
-
Professional advisers acting on your behalf
-
Other third parties where you have authorised them to share information with us
​
Where we receive personal information from another party, we handle that information in accordance with this Privacy Policy and applicable privacy laws.
​
3. How We Use Personal Information
​
We use personal information where reasonably necessary to operate our business, provide our services, fulfil contractual obligations, comply with legal requirements, protect legitimate business interests or where appropriate consent or another lawful basis applies.
​
Service Delivery
We may use personal information to:
​
-
Provide coaching, education and wellbeing services
-
Deliver corporate wellbeing programmes
-
Administer health assessments, questionnaires and workforce assessments
-
Prepare individual reports where relevant to an individual service
-
Prepare aggregated organisational reports for corporate programmes
-
Develop personalised recommendations, programmes and educational resources
-
Monitor programme progress
-
Provide customer support
-
Communicate with you regarding your services
​
Business Administration
We may use personal information to:
​
-
Create and manage client records
-
Administer bookings and appointments
-
Verify identity where appropriate
-
Process payments and invoices
-
Manage contractual relationships
-
Maintain business records
-
Respond to enquiries
-
Administer our day-to-day business operations
​
Corporate Wellbeing Programmes
Where services are provided to organisations, we may use workforce assessment information to:
​
-
Administer the corporate programme
-
Analyse workforce health and wellbeing responses
-
Identify workforce-level trends, patterns and priority areas
-
Prepare aggregated organisational reporting
-
Inform relevant educational masterclasses and employee resources
-
Inform practical organisational recommendations
-
Support programme planning and delivery
-
Compare workforce-level findings across programme measurement points
-
Measure programme outcomes and changes over time
-
Provide organisations with workforce-level insights
​
We do not use workforce assessment responses for the purpose of identifying individual employees or assisting employers to make employment decisions about individual participants.
​
Marketing and Communications
Where you have provided consent or where otherwise permitted by law, we may use personal information to:
​
-
Send newsletters
-
Deliver requested resources
-
Provide educational content
-
Send service updates
-
Communicate information about products, programmes and events
-
Manage subscriptions
-
Administer marketing campaigns
-
Improve the relevance of our communications
​
You may unsubscribe from marketing communications at any time using the unsubscribe mechanism contained in our emails or by contacting us.
​
Participation in a corporate workforce assessment does not, by itself, subscribe an employee to Thrive marketing communications.
​
Website Operation and Improvement
We may use technical and usage information to:
​
-
Maintain system security
-
Monitor website performance
-
Improve website functionality
-
Understand how visitors interact with our website
-
Diagnose technical issues
-
Improve user experience
-
Measure marketing performance
-
Protect against fraud, misuse and unauthorised access
​
Legal and Regulatory Compliance
We may use personal information where necessary to:
​
-
Comply with applicable laws and regulations
-
Meet taxation and accounting obligations
-
Respond to lawful requests from regulatory authorities
-
Establish, exercise or defend legal claims
-
Investigate suspected fraud, security incidents or unlawful activity
-
Protect the rights, property or safety of Thrive, our clients and others
​
Business Improvement
Where appropriate, we may use aggregated or de-identified information to:
​
-
Evaluate programme effectiveness
-
Improve our products and services
-
Develop programmes and educational resources
-
Conduct internal business analysis
-
Identify trends
-
Support quality assurance
-
Produce statistical or benchmarking insights
Where information has been irreversibly anonymised so that an individual is no longer reasonably identifiable, it may no longer constitute personal information under applicable privacy law.
​
Automated Processing
We use authorised automation platforms to transfer information between business systems for purposes including:
​
-
Administering enquiries
-
Delivering requested resources
-
Managing bookings
-
Managing marketing subscriptions
-
Supporting programme delivery
-
Transferring workforce assessment information
-
Maintaining business records
-
Supporting reporting
-
Improving operational efficiency
​
These automated workflows support administration and programme delivery. Thrive does not use them to make solely automated decisions that produce legal or similarly significant effects on individuals.
​
Lawful Basis for Processing
Where applicable privacy or data protection legislation requires a lawful basis for processing, we rely on one or more lawful bases available under the relevant law, which may include:
​
-
Consent
-
Performance of a contract
-
Compliance with legal obligations
-
Legitimate interests where permitted and appropriately balanced against individual rights
-
Other lawful grounds available under applicable privacy legislation
​
For sensitive or health information, we apply the additional requirements that apply to the collection, use and disclosure of that information.
​
4. Sharing and Disclosure of Personal Information
​
We do not sell or rent personal information.
We disclose personal information only where reasonably necessary to provide our services, operate our business, comply with legal obligations, protect legitimate interests, or where disclosure is otherwise authorised or permitted by law.
​
Service Providers
We may disclose or make personal information accessible to authorised third-party service providers supporting:
​
-
Website hosting
-
Online forms, assessments and surveys
-
Appointment scheduling
-
Email communications and marketing
-
Workflow automation
-
Cloud storage
-
Virtual meetings
-
Report generation
-
Payment processing
-
Analytics
-
Business communications
-
Other technology services reasonably required to operate Thrive and deliver our services
Access is limited to what is reasonably necessary for the relevant service.
Contractors and Professional Advisers
​
Where reasonably necessary, personal information may be disclosed to authorised contractors, consultants or professional advisers engaged by Thrive, including administrative support, legal advisers, accountants, auditors or other professional service providers.
​
Access is limited to information reasonably necessary for the services they provide and is subject to appropriate confidentiality and, where applicable, data protection obligations.
Corporate Wellbeing Programmes
​
Where Thrive provides a corporate wellbeing programme, participating organisations receive aggregated workforce reporting and insights.
​
Thrive does not provide an employer with identifiable individual workforce assessment responses, individual assessment results or individual employee health information unless:
​
-
The individual has provided appropriate explicit consent
-
Disclosure is required or authorised by law
-
Disclosure is otherwise permitted under applicable privacy legislation
​
Thrive applies reasonable reporting controls intended to reduce the risk that an individual employee could be identified from workforce reporting.
​
Open-text responses, where collected, will not ordinarily be provided to an organisation in a form that could reasonably identify the individual who submitted them. Where relevant insights from written responses are included in organisational reporting, Thrive may summarise, paraphrase or combine responses into broader themes.
​
Business Transfers
​
If all or part of Thrive is sold, transferred, restructured or reorganised, personal information may be disclosed to prospective or actual purchasers, professional advisers or successors where reasonably necessary and subject to applicable privacy obligations.
​
Legal and Regulatory Requirements
We may disclose personal information where required or authorised by law, including where reasonably necessary to:
-
Comply with legal obligations
-
Respond to lawful requests from courts, regulators or government authorities
-
Establish, exercise or defend legal claims
-
Investigate suspected unlawful activity, fraud or security incidents
-
Protect the rights, property or safety of Thrive, our clients or others
​
International Service Providers
​
Some authorised service providers and sub-processors operate outside Australia.
Where the handling of personal information involves overseas recipients or international processing, Thrive takes reasonable steps appropriate to the circumstances to address applicable cross-border privacy requirements.
Further information is provided in Section 8.
​
We Will Never
Unless required or authorised by law, Thrive will not:
​
-
Sell personal information
-
Rent personal information to third parties
-
Provide identifiable individual workforce assessment responses to an employer
-
Disclose sensitive health information without an appropriate legal basis
-
Use employee workforce assessment participation to automatically add employees to Thrive’s marketing database
​
5. How We Store, Protect and Retain Personal Information
​
​
Thrive takes reasonable technical, organisational and administrative measures to protect personal information against misuse, interference, loss and unauthorised access, modification or disclosure.
​
Information Security
Personal information is stored and processed using authorised business systems and cloud-based service providers.
Security measures may include, where appropriate:
​
-
Multi-factor authentication for authorised business accounts
-
Password-protected systems and devices
-
Restricted access based on business need
-
Encryption in transit and at rest where provided by the relevant service
-
Secure cloud storage
-
Individual user authentication
-
Secure document-sharing controls
-
Administrative controls designed to minimise unauthorised access
-
Review and management of authorised business systems and service providers
​
Access to personal information is limited to Thrive personnel and authorised providers who reasonably require access to perform their functions.
​
Third-Party Service Providers
​
Thrive uses third-party providers for functions including website hosting, online forms and assessments, appointment scheduling, email communications, workflow automation, cloud storage, report generation, payment processing, virtual meetings and business administration.
​
These providers operate their own infrastructure and security environments. Thrive takes reasonable steps in selecting and managing providers having regard to the nature of the information being processed and the services being provided.
​
Data Minimisation
​
​
Thrive seeks to collect and retain only information reasonably necessary for the relevant purpose.
For Total Team Reset, Thrive does not request employee names or employee email addresses through the workforce assessment.
​
Workforce assessment responses may instead be associated with a system-generated participant identifier, and organisational reporting is provided at an aggregated workforce level.
​
Data Retention
​
​
We retain personal information only for as long as reasonably necessary for the purposes for which it was collected and to meet applicable legal, regulatory, taxation, contractual, insurance and legitimate business record-keeping requirements.
​
Unless a longer period is required or authorised:
​
-
Raw corporate workforce assessment data is generally retained for up to 24 months following completion of the relevant corporate programme, after which it is securely deleted or irreversibly anonymised where reasonably practicable.
-
Individual client health and service records are retained for the period reasonably necessary to meet applicable legal, professional, insurance and business record-keeping requirements.
-
Contracts, invoices and financial records are generally retained for at least seven years, or longer where required by law.
-
Final corporate reports and relevant contractual programme records may be retained as part of Thrive’s business records where reasonably necessary.
-
Marketing information is retained until consent is withdrawn, the individual unsubscribes, deletion is requested where applicable, or retention is no longer reasonably necessary.
-
Temporary working documents are deleted when they are no longer reasonably required.
Where personal information is no longer required to be retained, Thrive takes reasonable steps to securely destroy or de-identify it in accordance with applicable requirements.
​
Confidentiality
​
Personal information handled by Thrive is treated as confidential.
Access is restricted to authorised personnel and approved providers who require access for legitimate business functions and are subject to appropriate confidentiality or contractual obligations.
​
Storage and Processing Locations
​
​
Because Thrive uses cloud-based technology providers, personal information may be stored, processed or accessed in Australia and overseas.
​
The location may vary according to the provider, service configuration and subprocessors used by that provider.
Thrive’s current business systems include services used for online assessments, workflow automation, cloud-based document and data management, website operations, email marketing, appointment scheduling, virtual meetings and payment processing.
​
Total Team Reset workforce assessment information is currently processed through ScoreApp, may be transferred through Zapier as part of Thrive’s authorised workflow automation, and is then transferred into Thrive’s Google Workspace environment for authorised analysis and reporting.
​
These providers may use infrastructure or sub-processors in jurisdictions outside Australia. Thrive does not represent that all information is stored exclusively within Australia.
​
6. Data Breach Response
​
​
Thrive maintains procedures to identify, assess, contain and respond to actual or suspected privacy and security incidents.
​
A data breach may include unauthorised access to, disclosure of or loss of personal information.
​
Responding to a Data Breach
Where we become aware of a suspected or confirmed breach, we will take reasonable steps to:
​
-
Identify and assess the incident
-
Contain it where reasonably practicable
-
Investigate its cause
-
Determine what information has been affected
-
Assess potential harm
-
Take reasonable steps to reduce or prevent further harm
-
Maintain appropriate records
-
Review relevant systems and procedures
​
Notification
​
Where required under applicable privacy legislation, Thrive will notify affected individuals and the relevant privacy regulator or supervisory authority.
​
In Australia, this includes complying with the Notifiable Data Breaches Scheme where an eligible data breach occurs.
Notifications will be made within applicable legal timeframes and may include information about:
​
-
The nature of the incident
-
The types of information affected
-
Potential consequences
-
Steps Thrive has taken or proposes to take
-
Steps affected individuals may take
-
Contact information for further assistance
-
​
Third-Party Service Providers
​
​
Where a breach involves an authorised service provider, Thrive will work with that provider to assess the incident, understand its impact and meet applicable notification obligations.
​
7. Your Privacy Rights
​
​
Your rights depend on applicable privacy laws, your location and the nature of the information Thrive holds about you.
Access
​
You may request access to personal information Thrive holds about you.
Access may be refused in circumstances permitted by law. Where required, we will provide reasons for refusing a request.​
Correction​​
You may request correction of personal information you believe is inaccurate, incomplete, out of date or misleading.
​
Withdrawal of Consent
​
Where Thrive relies on consent, you may withdraw that consent.
Withdrawal does not affect processing that lawfully occurred before withdrawal and may affect Thrive’s ability to provide certain services.
​
Marketing Communications
You may opt out of marketing communications by:
​
-
Using the unsubscribe mechanism in our emails
-
Updating available communication preferences
-
Contacting Thrive directly
Service-related or operational communications may still be sent where necessary.
​
Deletion
​
Where applicable law provides such a right, you may request deletion of personal information.
Thrive may retain information where necessary or required for legal, regulatory, taxation, insurance, accounting, contractual or legitimate record-keeping purposes.
​
Restriction and Objection
​
Where applicable law provides these rights, you may request restriction of certain processing or object to processing carried out on particular legal grounds.
​
Data Portability
​
Where applicable under relevant privacy legislation, you may have a right to receive certain information you provided to Thrive in a structured, commonly used and machine-readable format, or request its transfer where technically feasible.
​
Complaints
​
If you believe Thrive has not handled personal information appropriately, please contact us first so we can investigate and respond.
If you remain dissatisfied, you may have the right to complain to the relevant privacy regulator or supervisory authority.
​
Exercising Your Rights
Contact:
Privacy Officer
Thrive Holistic Health Hub
Email: support@thriveholistichealthhub.com
Business Location: Australia
We may request reasonable information to verify identity before acting on a request.
​
8. International Data Transfers
​
Thrive is based in Australia and uses technology providers that may process, store or access information outside Australia.
​
Depending on the service, configuration and sub-processors involved, information may be processed in jurisdictions including Australia, the United Kingdom, countries within the European Economic Area, the United States and other jurisdictions in which authorised providers or their sub-processors operate.
Providers may support functions including:
​
-
Website hosting
-
Appointment scheduling
-
Online assessments and surveys
-
Workflow automation
-
Email marketing
-
Cloud storage and productivity services
-
Virtual meetings
-
Business communications
-
Report generation
-
Payment processing
-
Analytics
​
Where applicable, Thrive takes reasonable steps appropriate to the circumstances to address its obligations relating to overseas disclosure or international transfer of personal information.
​
These steps may include reviewing provider privacy and security information and, where relevant, relying on contractual data protection obligations, data processing agreements, recognised transfer mechanisms or other appropriate safeguards.
​
For Australian personal information, Thrive considers applicable requirements under APP 8 relating to cross-border disclosure of personal information.
​
Information about the locations and sub-processors used by third-party providers may change over time as those providers modify their infrastructure and services.
​
9. Cookies and Website Analytics
​
Our website and authorised digital platforms may use cookies and similar technologies to operate the website, improve functionality, understand usage and, where permitted, support marketing and advertising activities.
​
Essential Cookies
These may be used to:
​
-
Maintain website security
-
Manage sessions
-
Support website functionality
-
Prevent fraudulent or malicious activity
-
Maintain reliable operation
Functional Cookies
​
These may help remember preferences and provide enhanced website functionality.
​
Analytics Cookies
Analytics technologies may help us:
​
-
Monitor website performance
-
Understand visitor behaviour
-
Identify technical issues
-
Improve website content
-
Improve user experience
-
Evaluate website effectiveness
​
Marketing Cookies
Where permitted, marketing technologies may help us:
​
-
Measure campaign effectiveness
-
Understand website engagement
-
Improve communications
-
Deliver more relevant marketing or advertising content
​
Third-Party Analytics and Marketing Technologies
Thrive may use technologies including:
​
-
Google Analytics
-
Google Tag Manager
-
Meta Pixel
Depending on configuration, these technologies may process information such as:
-
IP address
-
Browser and device information
-
Operating system
-
Pages visited
-
Referral source
-
Date and time of access
-
Website interactions
-
Advertising engagement
-
Cookie or similar identifiers
​
Information may also be handled by the relevant third-party provider in accordance with its own privacy terms.
​
Managing Cookies
​
Most browsers allow you to manage or disable cookies through browser settings.
Blocking cookies may affect the functionality or performance of some website features.
Where required by applicable law, Thrive will obtain appropriate consent before using non-essential cookies or similar technologies.
​
10. Third-Party Websites and Services
​
Our website, emails, resources and communications may contain links to third-party websites, applications, booking systems, payment providers, social media services or other online services not operated by Thrive.
Where you choose to access an independent third-party service, information you provide directly to that provider will be handled under its own privacy policy and terms.
Third-party services may be used for:
​
-
Appointment scheduling
-
Payment processing
-
Online assessments and questionnaires
-
Newsletter subscriptions
-
Educational resources
-
Website services
-
Virtual meetings
-
Social media
-
Analytics and advertising
-
Other systems supporting Thrive’s services
Where a third-party provider processes information on Thrive’s behalf, Thrive takes reasonable steps appropriate to the circumstances to manage the privacy and security risks associated with that provider.
​
11. Children’s Privacy
​
Thrive’s products and services are generally intended for individuals aged 18 years and over, unless otherwise expressly stated.
​
We do not knowingly collect personal information directly from children under 16 without appropriate parental or guardian consent where such consent is required by applicable law.
​
If Thrive becomes aware that personal information has been collected from a child in circumstances where collection was not authorised or appropriate, we will investigate and take reasonable steps consistent with applicable legal obligations.
​
12. Changes to This Privacy Policy
​
Thrive may update this Privacy Policy from time to time to reflect changes to:
​
-
Applicable laws or regulatory requirements
-
Products and services
-
Business operations
-
Technology providers
-
Information-handling practices
-
Security measures
-
Other operational or legal requirements
​
Where material changes are made, the Effective Date at the beginning of this policy will be updated.
Where required by law, Thrive will take reasonable steps to notify affected individuals of material changes.
The current version of this Privacy Policy will be made available through our website.
​
13. Contact Us
​
If you have questions about this Privacy Policy, how Thrive handles personal information, or wish to exercise an applicable privacy right, please contact:
​
Privacy Officer
Thrive Holistic Health Hub
Email: support@thriveholistichealthhub.com
Business Location: Australia
​
You may contact us to:
​
-
Request access to personal information
-
Request correction of inaccurate information
-
Request deletion where applicable
-
Withdraw consent where applicable
-
Update communication preferences
-
Make a privacy enquiry
-
Report a suspected privacy or security incident
-
Lodge a complaint about our handling of personal information
​
We may request reasonable information to verify identity before responding to certain requests.
​
For individuals in Australia, complaints may also be made to the Office of the Australian Information Commissioner (OAIC) where applicable.
​
Individuals in other jurisdictions may have the right to contact the relevant privacy or data protection authority in their jurisdiction.
