CHREOS
← Back to site

Privacy Policy

Last updated 16 September 2026
Draft for legal reviewThis policy is drafted to cover what the Chreos site actually does today. It has not been settled by a lawyer. Have it reviewed before you collect a single application, and update it whenever the site starts collecting or disclosing something new.

Chreos is operated by Folio Finance (ACN [INSERT ACN]) ("we", "us"). We handle personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

01What we collect and why

We collect personal information directly from you, and only where you choose to give it.

InformationWhenWhy we need it
Name, work email, firm, role, stated reason for accessWhen you submit an access applicationTo assess whether you are eligible, to contact you about the outcome, and to administer your access
Work email addressEach time you sign inTo authenticate you. Access is issued per named analyst, so we must be able to tell who is signing in
Access and usage logs (sign-in times, pages viewed, exports)While you use the registerSecurity, enforcing per-seat licensing, and understanding which parts of the register are actually useful
Feedback you give us during a pilotWhen you provide itTo improve the product

We do not collect sensitive information as defined in the Privacy Act. We do not use your information for marketing unrelated to Chreos, and we do not sell it. If you do not provide the information above we will not be able to give you access.

02Company information in the register itself

The Chreos register contains information about companies, drawn from public sources including ASIC lodgements and ASX disclosures. Some of that information identifies individuals — for example director and officeholder names appearing in a lodged document. We collect it from those public sources rather than from the individual, because it is not reasonable or practicable to obtain it directly when the whole point of the record is what was publicly lodged. We hold it for the purpose of corporate research and entity resolution. If you are named in the register and want to know what we hold, contact us using the details below.

03Who we disclose it to

We disclose personal information only to service providers who help us run Chreos, and only so far as they need it:

Some of these providers store data outside Australia, including in the United States. By submitting an application you acknowledge that your information may be disclosed to overseas recipients, and that we may not be able to ensure an overseas recipient complies with the APPs. We take reasonable steps to use providers with appropriate data handling practices.

04Security and retention

We take reasonable steps to protect personal information from misuse, loss, and unauthorised access. Access to the register is authenticated and logged. We keep application details for as long as you hold access and for a reasonable period afterwards, then destroy or de-identify them.

05Accessing, correcting, or complaining

You may ask us for a copy of the personal information we hold about you, or ask us to correct it, by emailing access@chreos.com.au. We will respond within a reasonable period. If we refuse, we will tell you why in writing.

If you think we have breached the APPs, contact us first and we will investigate. If you are not satisfied with our response, you can complain to the Office of the Australian Information Commissioner at oaic.gov.au or on 1300 363 992.

06Cookies

This site sets no advertising or analytics cookies. Signing in sets a session cookie so that you stay authenticated while you use the register. Blocking it will prevent sign-in from working.

07Contact

Privacy enquiries: access@chreos.com.au