Statement

Privacy

Last updated 4 September 2026

Remit holds the names, work email addresses and roles of agency staff who use it, and the descriptions, assessments and evidence agencies record about their AI use cases. This statement explains how that information is handled.

What is collected

Staff account details (name, work email, position, roles), sign-in records, and everything an agency enters about its AI use cases, including uploaded evidence documents.

Why it is collected

To operate the AI use case register and impact assessment workflow the agency uses to meet the DTA Policy for the responsible use of AI in government, and to keep an audit trail of decisions.

Where it is stored

[PLACEHOLDER — replace with the operator's hosting and data residency statement (region, provider, certification) before showing Remit to an agency.]

Who can see it

Only signed-in users of the same agency. Platform operators can see agency names and counts, never an agency's records. Every query is scoped to the agency.

How long it is kept

[PLACEHOLDER — replace with the operator's retention and disposal statement before showing Remit to an agency.]

Your rights and contact

[PLACEHOLDER — replace with the operator's privacy contact, access and correction process, and complaints pathway under the Privacy Act 1988 before showing Remit to an agency.]