Privacy policy
Last updated 28 July 2026 · draft placeholder, not final
1. About this policy
This is a draft privacy policy prepared for legal review — it is not yet a final, lawyer-approved instrument, and it should not be relied on as one until that review is complete. It is written to describe what the Veela platform actually does today, not what a generic template says a company in this position should do. Where a fact needs the reviewing lawyer or Veela’s owner to confirm before this page is finalised, it is marked [REVIEWER: confirm].
This policy describes how Veela AI Pty Ltd (Veela) handles personal information collected through the Veela platform, including officer and member details drawn from your company register, account information for your users, uploaded documents, and content you send to Ask Veela or the drafting agents. We handle personal information in accordance with the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth).
2. What we collect
- Account details: name, email address, password (stored as a hash, never in plain text), role, and the company or companies you act for.
- Company and register data:ACN/ABN, registered office, principal place of business, and officer, member and holding information (name, address, entity type, security class, units held, vesting) mirrored from or entered against your company’s share and option registers.
- Officer and member personal information, which can include date of birth and residential address — most commonly captured when you upload an ASIC company statement for onboarding or register import (see section 5, AI processing, on how that document is handled).
- Uploaded documents, such as constitutions, shareholders’ agreements and ASIC statements, and the text extracted from them for search, drafting context and Ask Veela.
- Usage data: drafts requested, questions asked of Ask Veela, and the resulting agent runs and approvals, kept as part of the immutable minute-book and audit-log record.
- Billing informationprocessed by Stripe, our payment provider — card details go directly to Stripe and never touch Veela’s servers; we hold subscription status and invoice history.
- Document download records:when someone downloads a document from a company you are a member of, Veela records who they were, which document, the seat they held at the time, and when. Every seat is recorded, not only free view-only ones. The company’s owners and admins can see this record, and it is kept for 12 months and then deleted. It exists so a company can answer “who has a copy of this?” about its own minute book and registers — not to monitor individuals, which is why nothing else about a session is logged. If you accept an invitation to a company, the invitation tells you this before you accept.
- Session data: a session cookie that keeps you signed in, and a company-selection cookie that remembers which company you last worked on. See section 10 (Cookies).
3. Why we collect it, and our legal basis
We collect and use this information to provide the company secretarial, drafting and register-keeping services you sign up for, to route drafting and Ask Veela requests to the underlying AI model provider, to maintain your minute book and compliance calendar, to bill you, and to communicate with you about your account. Our legal basis for collecting register-derived personal information is that it is reasonably necessary for our functions as a provider of company secretarial services under the Corporations Act 2001 (Cth), and for account and billing information, that it is necessary to perform the contract between you (or your company) and Veela.
4. Disclosure to subprocessors
We share personal information with the third-party service providers who help us run the platform. The full list — what each one is used for, what it can see, and where it runs — is set out on our subprocessors page. In summary: Anthropic (AI model calls), Vercel (hosting and document storage), Neon (our database), Stripe (billing), Resend (transactional email, including your signing links) and Sentry (error telemetry, when enabled). We do not sell personal information. We also share information with the registered agent or company secretary you engage through Veela, with e-signature and register providers you connect (such as Tokeniser, or a bring-your-own e-signature provider), and with partner legal/accounting firms only where you have consented to a referral.
5. AI processing
Veela is built around AI agents that draft resolutions, check drafts, extract register data from documents, and answer questions in Ask Veela. Every one of these calls is sent to Anthropic, our AI model provider. What is sent varies by feature, and we want to be specific about it rather than describe AI processing in the abstract:
- Resolution drafting and the independent Checker send officer and member name, role and email, together with relevant register and constitution extracts — not full addresses or dates of birth.
- ASIC statement import (used during onboarding and register import) sends the entire uploaded ASIC company statement PDF to the model, so it can extract officeholder and member details automatically. ASIC company statements routinely contain officer dates of birth and residential addresses, and this full document — not a redacted or partial extract — is what the model receives.
- Ask Veelaanswers from your constitution, registers and any document you have marked “use as context”. Marked documents are summarised by the model, and that summary is used to ground Ask Veela’s answers to you.
We have contracted our AI model provider for zero data retention on model calls and no use of your data to train their models. [REVIEWER: confirm the Anthropic commercial terms currently in force actually specify zero-retention and no-training — this claim needs to match the executed agreement, not the general capability of the API]. Model calls are not region-pinned in our code (the client is instantiated without a region option), so processing location depends on the provider’s own infrastructure and routing rather than anything Veela configures. See section 6 for how this interacts with our data residency practices, and the subprocessors page for the full disclosure.
6. Data residency and security
Scope of this claim: our production database is provisioned in Sydney, and statutory register, minute-book and company data at rest in that database stays onshore. This residency claim covers storage — it does not cover AI processing. As described in section 5, drafting, checking, extraction and Ask Veela requests are sent to a third-party AI model provider that is not region-pinned in our infrastructure, so the content of those requests (which can include register data, and for ASIC statement import, officer dates of birth and residential addresses) leaves Australian-hosted storage for that call. If you need a stricter data residency posture than this, tell us before relying on Veela for that purpose — [REVIEWER: confirm whether Veela should offer, or currently can offer, an AI-processing opt-out or region-restricted mode, and whether any customers have contracted for one].
Beyond residency, access to your data is role-based, sign-ins and security-relevant events are recorded to an audit log, sensitive secrets you give Veela (such as your ASIC corporate key or an e-signature provider’s API key) are encrypted at rest with a dedicated encryption key separate from the keys that sign sessions, and two-factor authentication (TOTP) is available from Settings. All traffic runs over TLS in transit. See our security page for more detail on these controls.
7. Retention and deletion
Minute book and register records are retained in line with Corporations Act record-keeping obligations (including the general seven-year records posture for company records), with legal-hold support where required.
The minute book is immutable by design: once a resolution passes, its entry is sealed and cannot be edited or deleted by anyone, including Veela staff, because it is the evidentiary record of a corporate decision. This means a request to delete personal information contained in a passed minute-book entry (for example, an officer’s name in a resolution) cannot be actioned by directly editing or removing that entry — the record stays, as the statutory and evidentiary record requires. Where deletion is legally required and cannot be achieved by editing the minute book itself, we will consider what other steps are available (for example, removing personal information from account records, upload documents, or Ask Veela context that are not part of a passed minute-book entry) and explain to you what can and cannot be done. [REVIEWER: confirm this position against actual deletion requests received, and whether Veela needs a documented deletion/redaction procedure beyond what is described here].
8. Access, correction and complaints
You can request access to, or correction of, personal information we hold about you by contacting us using the details in section 12. Where information forms part of a statutory company register or minute book, correction may require a passed resolution or equivalent register movement rather than a direct edit, for the same reason set out in section 7.
If you have a complaint about how we have handled your personal information, contact us first so we can try to resolve it. If you are not satisfied with our response, you can complain to the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au or on 1300 363 992.
9. Notifiable data breaches
If we experience a data breach that is likely to result in serious harm to individuals whose personal information is involved, we will comply with the Notifiable Data Breaches scheme under Part IIIC of the Privacy Act 1988 (Cth), including notifying affected individuals and the OAIC where required.
10. Cookies
Veela uses two cookies, both functional: a session cookie that keeps you signed in, and a company-selection cookie that remembers which company you last worked on when you belong to more than one. Both are HttpOnly and used only to operate the service. We do not currently use analytics or advertising cookies, and there is no cookie-consent banner on the site because there is nothing beyond these two functional cookies to consent to. [REVIEWER: revisit this section if an analytics or marketing cookie is ever added — it would change the consent posture described here].
11. Children
Veela is a business product for company officers, members and their advisers, and is not directed at or intended for use by children.
12. Changes to this policy
We may update this policy from time to time. Material changes will be notified in-product before they take effect.
13. Contact
Privacy questions or requests can be sent to support@tokeniser.com. Veela AI Pty Ltd. [REVIEWER: add ABN/ACN and registered address for the entity notice — not present in the codebase].