Privacy Policy
Last updated: 19 May 2026
Roger ("we", "us") provides an operating system for Australian service businesses. This policy explains what personal information we collect, why, and what you can do about it.
1. What we collect
When you (the business operator) sign up, we collect:
- Your business details: legal name, ABN, address, phone, email.
- User accounts for you and your staff (name, email, mobile, role).
- A dedicated phone number we provision for your business.
When your customers contact you through Roger, we collect on your behalf:
- Customer name, phone, email, and address (as they provide it).
- SMS conversations, missed-call records, photos they send.
- Job details: location, urgency, what needs fixing.
- Payment records: amounts, dates, Stripe transaction IDs (we never store card numbers).
2. Why we collect it
To operate Roger for you: receive calls and SMS, route urgent jobs to your on-call technician, take payment, push invoices to your accounting system, request reviews from happy customers. We do not sell your data or your customers' data to third parties.
3. Who we share with
We share data with service providers strictly to deliver Roger:
- Twilio (telephony): for SMS and call handling.
- Stripe (payments): when customers pay callout fees.
- Anthropic (AI): SMS conversation routing.
- Xero (accounting): when you connect your Xero org.
- Clerk (authentication): for sign-in.
- Railway / AWS (hosting): infrastructure.
Each provider operates under their own privacy policy. We do not share your data with anyone for advertising or marketing.
4. Where it lives
Data is stored on Railway-managed Postgres in Singapore for v1; we will migrate primary storage to Australia (AWS Sydney) before serving a larger pilot. Photos sent by customers are stored on Railway volume storage in the same region as the database.
5. How long we keep it
We keep operational data for as long as your account is active. After you close your account (see Section 7), we anonymise customer and user PII immediately but retain financial records for seven years to meet Australian Tax Office requirements.
6. Your rights
Under the Australian Privacy Principles, you and your customers have the right to:
- Access the personal information we hold (use the data-export button in Settings, or email us).
- Correct inaccuracies (edit it in the dashboard, or email us).
- Request deletion (we anonymise; some financial records are retained as required by law).
- Make a privacy complaint to us, and to the OAIC if unresolved.
7. Closing your account
Use the "Close Account" button in Settings. This anonymises all customer and user personal information immediately. Job records, payment history, and the audit log are retained for seven years to meet Australian financial record-keeping requirements; PII fields in those records are scrubbed.
8. Security
Roger uses TLS for all data in transit. The database enforces row-level security so each business sees only its own data. We log every state-changing operation. We do not store payment card details — those go directly to Stripe.
No system is perfect. If we believe a breach has occurred and is likely to result in serious harm, we will notify affected operators and, where required, the Office of the Australian Information Commissioner.
9. Changes
We may update this policy. Material changes will be flagged in the dashboard at next sign-in.
10. Contact
Privacy queries: privacy@roger.app
Mail: Roger Pty Ltd, Sydney, NSW, Australia
This page is a plain-language privacy notice. Operators should review with their own legal counsel before relying on it for live customer-facing pilots.