What we collect, why, who else sees it, and how to get it back or get rid of it. Written to be read rather than to be survived.
Last updated 5 August 2026
GetPersonnel is an AI consulting and software business operating as SynapseCode, based in Queensland, Australia. We handle personal information under the Privacy Act 1988 (Cth) and the Australian Privacy Principles. If you want to talk to a human about anything on this page, email [email protected].
This policy covers two different groups of people, and it matters which one you are: visitors to this website, and customers using our software — plus the people who call them, which is the case we treat most carefully.
We collect nothing until you do something. Reading the site is anonymous to us.
If you fill in the contact form, we collect your name, email address, business name if you give one, and whatever you write in the message. That enquiry is emailed to us and is not stored in a database — it lives in our inbox like any other email, and we use it to reply to you and to talk about working together. Nothing else. We don't sell it, and we don't add you to a marketing list.
Our servers log the usual technical details — IP address, the page requested, and the time — which are used to rate-limit the contact form so it can't be used to flood our inbox, and to investigate faults and abuse.
We measure our advertising. If you arrive from a Google ad and then submit the form or tap our phone number, Google's conversion tag records that a conversion happened so we can tell which ads are worth paying for. We also use Cloudflare Web Analytics, which is cookieless and reports visitor counts in aggregate, not individuals. You can block both with any standard content blocker and the site will work exactly the same.
To give you an account we hold your name, email address, business details and the settings you configure. Sign-in runs through Google Firebase, so we never see or store your password. Billing runs through Stripe: card numbers go directly to Stripe and never touch our servers. We see that an invoice was paid, not how you paid it.
This is the part worth reading properly. When our AI answers a call on behalf of a business, we process the caller's phone number, a recording of the call, a written transcript, a summary, and any details given during the conversation — a name, an address, an appointment time.
That information belongs to the business you called, not to us. They decide what is collected and how long it is kept; we hold and process it on their instructions. If you called a business and want your information deleted, ask them directly — and if you'd rather come through us, email [email protected] and we'll put you in touch and act on their instruction.
If you run one of those businesses: telling callers that the line is recorded, and having a lawful basis for that recording, is your responsibility. Recording laws differ between states. We'll help you configure a greeting that discloses it — ask us.
We use other companies to run parts of the service. Each one only receives what it needs to do its job, and none of them are permitted to use it for their own purposes.
We don't sell personal information, and we don't share it with anyone for their own advertising. We'd disclose information if the law required it — a court order or similar — and we'd tell you unless we were prohibited from doing so.
Our servers are in Singapore. Several of the services above — OpenAI, Stripe, Twilio, Google, Cloudflare — are based in the United States and process data there. Using this site or our software means your information is handled in those countries, which have different privacy laws to Australia. We choose established providers with contractual privacy obligations, but we can't put them under Australian law.
Account information, call recordings, transcripts and summaries are kept for as long as your account is open, and enquiry emails for as long as they're useful to answer. We don't run an automatic deletion schedule — we're telling you that rather than quoting a tidy retention period we don't actually enforce. Ask us to delete something and we will, and closing your account means we delete your data unless the law requires us to keep records (tax records, for instance, have to be kept for five years).
Traffic to this site and our API is encrypted in transit. Passwords aren't ours to lose — sign-in is handled by Google. API keys are stored hashed, so a copy of our database doesn't yield a working key. Access to customer data is restricted to the people who need it to support you. No system is perfectly secure, and anyone who tells you otherwise is selling something; if we ever have a breach that is likely to cause you serious harm, we'll notify you and the OAIC as the law requires.
You can ask us what personal information we hold about you, ask us to correct it, or ask us to delete it. Email [email protected] and we'll respond within a reasonable time, and always within 30 days. There's no charge for asking.
If you're unhappy with how we've handled your information, tell us first and we'll try to fix it. If that doesn't resolve it, you can complain to the Office of the Australian Information Commissioner at oaic.gov.au.
If we change it, the date at the top changes with it. If a change materially affects how we use information we already hold, we'll tell affected customers directly rather than quietly editing the page.
Ask directly — a privacy question gets a real answer from a person, not a form letter.