Effective Date: April 2026 | Last Updated: April 2026 | ABN: 35 414 180 295
OziShield is a free public safety initiative operated by Ozinexus Technologies Pty Ltd (ABN 35 414 180 295), Sydney, Australia. This Privacy Policy explains how we collect, use, and protect your information when you use OziShield, including the RealCheck deepfake detection tool and the RealCheck Guardian image registration system.
Your privacy is not a policy checkbox for us — it is the foundation of everything we build.
1. What We Collect
We collect only the minimum data required to run a scan and keep the service secure.
| Data Type | Purpose | Retention |
|---|---|---|
| Link or message content you submit | To analyse for phishing, malware, or scam patterns | Deleted immediately after scanning |
| Screenshot or image (optional) | OCR text extraction and deepfake forensic analysis via RealCheck | Not stored — processed in memory, discarded immediately |
| Scan metadata (timestamp, hashed IP, country code) | Service usage monitoring and abuse prevention | Retained ≤ 90 days, then anonymised |
| RealCheck Guardian — image hash fingerprint only | Cryptographic registration record for misuse evidence | Retained for the duration of registration |
2. What We Never Collect or Store
- Personal emails, names, or login credentials
- Full IP addresses (only one-way hashed, never stored in plain form)
- Original images submitted through RealCheck or RealCheck Guardian
- Facial recognition data or biometric profiles — ever
- Payment details, advertising cookies, or tracking pixels
- Any data for profiling, advertising, or commercial sale
3. RealCheck Guardian — Image Data Handling
RealCheck Guardian generates a cryptographic SHA-256 hash fingerprint of your uploaded image. The following applies:
- Your original image is never stored on OziShield servers
- Image files are processed in memory and discarded immediately after hashing
- Only the following metadata is retained: hash values, image dimensions, file size, registration timestamp (UTC), and country code
- No facial data, biometric information, or visual image data is stored at any time
- Generated forensic certificates constitute a timestamped record only — they are not legal title documents
For full RealCheck Guardian terms, see our Terms of Use.
4. How We Use Your Data
- To generate your scan result and display your OziShield threat analysis
- To improve detection algorithms using anonymised, aggregated data only
- To monitor for abuse and protect the service
- To provide aggregated transparency statistics — never individual records
We do not share raw scan inputs with any third party, under any circumstances.
5. Security & Encryption
- All connections use HTTPS + HSTS with TLS 1.3 encryption
- Data in transit and at rest is AES-256 encrypted
- System credentials and security tokens are encrypted using industry-standard practices
- Access is restricted to authorised Ozinexus Technologies staff under a least-privilege principle
- Our infrastructure is hosted on Cloudways with automated daily backups
6. Third-Party Services & APIs
OziShield integrates only with trusted providers for threat intelligence:
- Google Safe Browsing — phishing and malware database lookups
- WhoisXML — domain age and registration verification
These APIs receive only the URL being scanned — never your personal information, email, IP address, or identity.
OziShield does not use Google Analytics, Facebook Pixel, or any advertising network tracking on this site.
7. Your Rights & Control
Under the Australian Privacy Act 1988 and GDPR (for EU users), you have the right to:
- Request access to any anonymised scan record linked to your session
- Request permanent deletion of any stored record
- Opt out of analytics — we respect Do Not Track browser settings
- Lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au
To exercise any right, email: privacy@ozishield.com.au
8. Compliance & Jurisdiction
- Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth)
- GDPR Articles 6 & 17 for EU users
- Consumer Data Right (CDR) transparency guidelines
All data is processed in Sydney, Australia. This policy is governed by the laws of New South Wales.
9. Our Products Covered by This Policy
- OziShield Scam Checker — free URL, link and message threat scanner
- OziShield RealCheck — AI deepfake and image manipulation detection
- RealCheck Guardian — forensic image hash registration and misuse reporting
- OziShield for Organisations — business threat monitoring
For website engineering and AI clarity services for your business, visit Ozinexus Technologies.
10. Contact
OziShield Privacy Team
Ozinexus Technologies Pty Ltd
Sydney, New South Wales, Australia
ABN: 35 414 180 295
📧 privacy@ozishield.com.au
We review this policy every 90 days to keep it accurate and compliant.
In Plain English
- We don't track you, sell your data, or show you ads
- We only check for scams — safely, anonymously, and ethically
- Your images are never stored — only a mathematical fingerprint
- No facial recognition, no biometrics, no cookies for advertising
- If you are in a safety emergency, contact eSafety Commissioner or call 1800 RESPECT — not us