What personal information do we collect and hold?
The types of information that we collect and hold about you could include:
- identification information such as your name, postal or email address, telephone numbers, and date of birth;
- other contact details such as social media handles;
- financial details such as your tax file number;
- health and biometric information (e.g. fingerprints, voice patterns) with your consent, or as otherwise required or permitted by law;
- your location or activity including IP address and geolocation data based on the GPS of your mobile device (when accessing our services) and whether you’ve accessed third party sites;
- information about how you interact with us when you use internet or mobile banking (such as information about how you use your devices);
- device information, such as which browser you use, your operating system language and how you use your device;
- credit information such as details relating to credit history, credit capacity, and eligibility for credit (‘credit worthiness’) – see our Credit Reporting Policy; and
- other information we think is necessary for the provision and promotion of our products and services and the operation of our businesses.
Over the course of our relationship with you, we may collect and hold additional personal information about you, including transactional information, account or policy information, complaint or enquiries about your product or service.
If you have general enquiry type questions, you can choose to do this anonymously or use a pseudonym. We might not always be able to interact with you this way however as we are often governed by strict regulations that require us to know who we’re dealing with.
What sensitive information do we collect?
Sometimes we need to collect sensitive information^ about you. This could include information about your health or reasons relating to hardship. We will only collect sensitive information with your consent (unless the collection of such information without obtaining your consent is required by law).
^ Sensitive information is information about a person’s racial or ethnic origin, political opinions, membership of a political association, religious beliefs or affiliations, philosophical beliefs, membership of a professional or trade association or trade union, sexual preferences or practices, criminal record, health information, genetic or biometric information.
When the law authorises or requires us to collect information
We may collect information about you because we are required or authorised by law to collect it. There are laws that affect financial institutions, including company and tax law, which require us to collect personal information. For example, we require personal information to verify your identity under Commonwealth Anti-Money Laundering law.
What do we collect via your online activity?
When you use Medfin websites or mobile applications we may collect information about your location or activity including IP address, telephone number and whether you’ve accessed a third party site. If you use our website or any other digital and online platforms to communicate or sign agreements with us, we may monitor your use and interactions with Medfin. This is done to ensure we can verify you and you can receive information from us, to identify ways we can improve our services for you and to understand you better. Some of this website or application information is collected using cookies. For more information on how we use cookies and tracking tags see our Cookies Policy www.nab.com.au/cookies, opens in new window.
If you start but don’t submit an online form we may contact you using any of the contact details you’ve supplied or other contact details we have for you to offer help (unless the use is anonymous).
We also know that some customers like to engage with us through social media channels. We may collect information about you when you interact with us through these channels. For all confidential matters, please interact with us via private messaging if you wish to use social media or by another private channel.
Much of this data collection is done through the use of cookies. This information is used to improve our services and enhance users’ online experience with us (e.g. website statistics), and does not identify individual customers but does identify the internet browser used. Where we do identify you (such as where customers are logged into our online services), we treat any use or disclosure in accordance with this policy and all applicable privacy law.