Australian Privacy Principles (APPs) apply to businesses with over A$3M turnover or that handle health records. Mandatory data breach notification under NDB scheme.
Tax & Regulatory // Australia
Entity type: Proprietary Limited (Pty Ltd)
Core Compliance
Regulatory Vectors
APRA regulates banks, insurers, superannuation. Selling to APRA-regulated entities requires your product to pass their third-party risk management assessments.
Any HR, payroll, or workforce management product must implement AU Fair Work Act compliance correctly. Non-compliance is a hard disqualifier.
Government and defence require AU data sovereignty. Regulated financial and health sectors have increasing data localisation pressure. Private sector is generally flexible.
Key Legislation
Governs privacy rights and data handling. Mandatory Notifiable Data Breaches (NDB) scheme applies.
Employment conditions, minimum entitlements, and unfair dismissal provisions.
Open banking and data portability framework. Relevant for fintech and data aggregation products.
Register a Pty Ltd, obtain an ABN and ACN, register for GST. Engage a local AU accountant from day one. Privacy Act compliance is achievable with standard legal documentation.
Regulatory Flashpoints — Evidence Base
Privacy Act handling of personal data and consent controls.
Needs human review