Scope
This Privacy Policy explains how personal data may be handled when you visit the FirstConnect website, communicate with us or use the FirstConnect guest and visitor check-in service. A customer organisation may provide additional notices that apply to a particular visit or location.
Roles and responsibilities
When an organisation uses FirstConnect to manage arrivals, that organisation decides what visitor information is required and the purposes for which it is collected. FirstConnect processes that information as necessary to provide and support the service, subject to the applicable agreement and law.
Visitors should direct questions about a specific check-in record to the organisation or location that requested the information.
Information we may process
The information involved depends on how the website and service are used.
- Account and authorised-user details, such as a name, role and business contact information
- Visitor and check-in details entered in a form or by authorised reception staff
- Visit context, such as location, host, purpose, arrival status and relevant timestamps
- Technical, usage and security information needed to operate and protect the service
- Enquiry, support, billing and account-administration communications
How information is used
Personal data may be used to provide and secure the platform, complete configured check-in workflows, support users, administer accounts and billing, troubleshoot issues, improve service performance and meet applicable legal obligations. We do not use visitor records for unrelated advertising.
Notices, choice and consent
Customer organisations configure the information requested in their check-in flows and are responsible for providing appropriate notices and establishing a valid basis for processing. Where consent is used, the workflow should make the request clear and specific to the stated purpose.
Retention and deletion
Retention depends on the customer organisation's configuration, instructions, contractual requirements and applicable law. Information may remain in restricted backups for a limited period after deletion where necessary for security and continuity. Customer organisations should set retention periods appropriate to each visit type and purpose.
Security
FirstConnect uses reasonable technical and organisational measures intended to protect information against unauthorised access, alteration, disclosure or loss. No internet-based service can guarantee absolute security, and customers must also manage user access, devices and internal processes responsibly.
Your rights and choices
Depending on the applicable law and the context in which information was collected, a person may have rights to request access, correction, updating, erasure or grievance redressal. For a visitor record, contact the organisation that collected the information first. For a FirstConnect account or website enquiry, use the contact channel provided in your account, order confirmation or correspondence with us.
International processing
Service providers and technical systems may process information in locations other than the place where it was collected. Where applicable, contractual and other safeguards are used to support lawful handling across locations.
Children's information
FirstConnect is not directed to children for independent use. Organisations that collect information relating to children or people requiring a lawful guardian must configure their processes and permissions in accordance with applicable requirements.
Changes and contact
We may update this policy as the service, our practices or legal requirements change. The date above identifies the latest version. Questions may be raised through the contact details in your FirstConnect account, order confirmation or existing correspondence.