Effective date: 20 July 2026
NexaFlow is committed to protecting your privacy and handling personal information responsibly.
This Privacy Policy explains how NexaFlow (“NexaFlow”, “we”, “us” or “our”) collects, uses, stores and discloses personal information through our website, enquiries, consultations and services.
The personal information we collect depends on how you interact with us and may include:
When delivering services to a client, we may also process information contained within the client’s business systems, documents, emails, forms or workflows. The types of information involved will depend on the services being provided.
We ask clients not to provide sensitive information unless it is necessary for the agreed service and appropriate safeguards have been discussed.
We may collect personal information when you:
We may also receive information from referrals, business partners, publicly available sources or third-party platforms where appropriate.
We may use personal information to:
You may unsubscribe from marketing communications at any time. We will still send operational or service-related communications where necessary.
Our services may involve artificial intelligence, automation platforms and third-party technology providers.
Depending on the agreed solution, information may be processed automatically to perform tasks such as:
We design our solutions around the client’s approved workflow and agreed instructions. Where appropriate, automated outputs are presented for human review before action is taken.
We do not sell client information. We also do not intentionally use confidential client information to train publicly available AI models. The treatment of information by third-party providers is subject to the applicable service configuration, contractual terms and privacy arrangements.
Clients remain responsible for ensuring they have the authority to provide personal information to us and to use it within their chosen workflow.
We may use trusted third-party providers to operate our business and deliver our services. These may include providers of:
We disclose information to these providers only where reasonably required to operate our business or provide the agreed services.
Some client solutions may also connect with software selected or already used by the client. Information processed through those systems will also be subject to the client’s arrangements with the relevant provider.
Some of our technology and service providers may store or process information outside Australia, including in the United States and other countries in which those providers or their infrastructure operate.
Privacy and data-protection laws in those countries may differ from Australian law. Where reasonably practicable, we select reputable providers and use available contractual, security and account controls to protect information.
The specific providers, hosting arrangements and data locations used for a client solution may vary depending on the project and can be discussed during the design and implementation process.
Our website may use cookies and similar technologies that are necessary for the website to function correctly.
We may also introduce analytics or other optional technologies to understand website usage and improve our services. Where consent is legally required, non-essential technologies will not be used until the visitor has been given an appropriate choice.
You can manage cookies through your browser settings. Disabling some cookies may affect certain website functions.
We take reasonable technical and organisational measures to protect personal information from misuse, interference, loss and unauthorised access, modification or disclosure.
These measures may include:
No electronic transmission or storage method is completely secure. We cannot guarantee absolute security, but we will take reasonable steps to respond appropriately if a security incident occurs.
We retain personal information only for as long as reasonably necessary to:
Retention periods may vary depending on the type of information and the relevant client agreement.
When information is no longer required, we will take reasonable steps to delete it, de-identify it or securely dispose of it, subject to any legal or technical retention requirements.
You may request access to the personal information we hold about you or ask us to correct information that is inaccurate, incomplete or out of date.
We may need to verify your identity before completing a request. In limited circumstances, we may be unable to provide access where permitted or required by law. If this happens, we will explain the reason where appropriate.
If you have a concern about how we have handled your personal information, please contact us using the details below.
We will review your concern and aim to respond within a reasonable period. If you are not satisfied with our response, you may be entitled to contact the Office of the Australian Information Commissioner through the OAIC website .
Our website may contain links to third-party websites or services. We are not responsible for the privacy practices, content or security of those third parties. We recommend reviewing their privacy policies before providing personal information.
We may update this Privacy Policy when our services, technology or legal obligations change.
The latest version will be published on our website with its updated effective date. We encourage you to review this page periodically.
For privacy questions, requests or complaints, please contact:
NexaFlow
Our processes run on autopilot now. We save hours every week and focus on what matters.

Seamless integrations, instant onboarding, and less manual work. The difference is night and day.

Automation paid off fast. Setup was smooth, and support is always there when we need it.

Lead capture is automatic and follow-up is effortless. Our team is more efficient than ever.