Privacy Policy
Last updated: 22 June 2026 · TMH Group Australia Pty Ltd · ABN: 37 617 571 936
1. Who we are
Gold Reviews is a trading name of TMH Group Australia Pty Ltd (ABN 37 617 571 936). We provide automated reputation management services for Australian businesses. This policy explains how we collect, use, and protect personal information.
2. Information we collect
We collect the following types of personal information:
- From our clients (businesses): Business name, owner name, phone number, email address, Google Business Profile URL.
- From our clients' customers: First name, mobile phone number, email address (if provided for testimonial approval), satisfaction rating (1-10), and any written feedback voluntarily submitted through our forms.
- Testimonial consent records: When a customer approves a testimonial for publication, we record their consent decision, the date and time, the method of consent (email approval, one-tap confirmation, or public review), and their email address (used for the approval process only).
We do not collect financial information, dates of birth, government identifiers, or sensitive personal information.
Analytics and usage data
We use privacy-focused analytics tools to understand how people use the Gold Reviews website and dashboard. This helps us improve the product and identify issues. These tools do not identify you personally, and we never combine analytics data with your account information — no email addresses, names, business names, or review content are sent to analytics providers. Analytics only run on our production website (goldreviews.com.au) and dashboard (app.goldreviews.com.au).
- Plausible Analytics collects aggregate, anonymised usage data such as pages visited, session duration, device type, and browser. Plausible uses no cookies, collects no personal information, and does not track individuals across websites. Data is processed in the EU. See Plausible's data policy.
- Microsoft Clarity records anonymised session replays and click heatmaps to help us understand how the dashboard is used. Clarity uses first-party functional cookies, automatically masks sensitive content (including text entered into forms), and does not collect personal data such as passwords or payment details. See Clarity's privacy FAQ.
Health-related information
If you're a registered health practitioner using Gold Reviews, some of the Google reviews your customers leave may contain references to health conditions, treatments, or outcomes. This is content your customers post publicly on Google's platform — Gold Reviews does not solicit, collect, or store health records.
Here's how we handle health-related content in reviews:
- AI-generated responses. When Gold Reviews drafts a reply to a Google review for an AHPRA-regulated practitioner, the AI is designed to exclude any reference to health conditions, treatments, diagnoses, or clinical outcomes — even if the customer mentioned them in their review. This helps protect your compliance with AHPRA advertising guidelines.
- Compliance scanning. Our weekly compliance monitor scans posted review responses and approved testimonials for health-related language. If something is flagged, you'll be notified through your dashboard. This scanning is performed solely for compliance purposes and the results are not shared with third parties.
- Testimonial restrictions. For AHPRA-regulated practitioners, testimonial publishing features (including the "use in marketing" option and the public Wall of Love) are restricted as described in our Terms of Service §9.5. These restrictions are enforced automatically by the platform.
- Data handling. Health-related content that appears in Google reviews is processed by our AI solely for the purpose of generating draft responses and performing compliance scans. We do not extract, categorise, or store health information separately from the review content, and we do not use health-related content for marketing, analytics, or any purpose beyond delivering the Gold Reviews service to you.
For more information about AHPRA compliance and how Gold Reviews supports it, see our AHPRA Compliance guide in the Help Centre.
3. How we collect information
Customer information is provided to us by our clients (the business) after a service has been completed. Satisfaction ratings and feedback are collected directly from customers via SMS-linked forms.
4. How we use information
We use personal information to:
- Send a one-time SMS to customers requesting feedback on a completed service
- Present customers with the option to leave a Google review or share private feedback directly with the business
- Generate AI-drafted review responses for the business to approve
- Compile weekly performance reports for our clients
- Facilitate the testimonial approval process — sending approval requests to customers and recording their consent decisions
- Display approved testimonials on Gold Reviews-hosted pages (Wall of Love, website widget) showing the customer's first name or display name as specified by the business
We do not use personal information for marketing, advertising, or any purpose unrelated to the service feedback process.
5. SMS messaging
Customers receive between one and three SMS messages per completed job. All messages include opt-out instructions. Customers can reply STOP at any time to cease receiving messages. We honour all opt-out requests immediately.
Message frequency: 1-3 messages per service event. Message and data rates may apply.
6. Information sharing
We do not sell, rent, or share personal information with third parties for marketing purposes. Information is shared only with:
- The business that provided the service (their own customer data only)
- Our technology service providers, who process data solely to deliver our service: Twilio (SMS delivery), Airtable (data storage), Make.com (workflow automation), Netlify (application hosting), Tally (customer feedback forms), and Anthropic (AI-generated review response drafts — receives review text only, not customer contact details). These providers operate under their own privacy policies and terms of service. We select providers that maintain appropriate data security standards.
- Public testimonial display: Approved customer testimonials are displayed publicly on Gold Reviews-hosted pages (Wall of Love, embedded widget) and may be visible to anyone who visits those pages. Only the customer's first name (or a display name chosen by the business) and their testimonial text are shown publicly. Contact details are never displayed publicly.
7. Overseas data transfer
Some of our service providers are based outside Australia. By using Gold Reviews, you acknowledge that your personal information may be transferred to, stored, and processed in the following countries:
- United States: Airtable, Twilio, Anthropic, Netlify, Make.com
- European Union: Tally
We take reasonable steps to ensure that overseas recipients handle personal information in accordance with the Australian Privacy Principles. However, overseas recipients may not be subject to the Privacy Act 1988 or a comparable privacy scheme.
If you have concerns about overseas data transfer, please contact us before using our service.
8. Data storage and security
Personal information is stored securely using industry-standard cloud platforms with encryption at rest and in transit. We retain customer data for 12 months after the last interaction, after which it is deleted. Client data is retained for the duration of the service agreement. Our primary data storage is in the United States via Airtable. All data is transmitted over encrypted connections (HTTPS/TLS).
9. Your rights
Under the Australian Privacy Act 1988, you have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Request deletion of your information
- Opt out of SMS communications at any time by replying STOP
If you are a customer whose testimonial has been published through the Service, you may request its removal by contacting support@goldreviews.com.au. We will remove the testimonial from Gold Reviews-hosted pages within 48 hours of receiving a valid request.
10. Contact us
For privacy enquiries or to exercise your rights, contact us at:
Email: privacy@goldreviews.com.au
Phone: Contact details available on request
11. Changes to this policy
We may update this policy from time to time. The latest version will always be available at this URL.