LEGAL

Privacy policy.

Last updated 7 June 2026 · Version 1.1

Summary. Handover stores your data in Australia (Sydney), encrypts sensitive fields at rest with AWS KMS, never sells or rents your data, requests read-only access to your calendar, and complies with both the Australian Privacy Principles and the Google API Services User Data Policy including the Limited Use requirements.

1. Who we are

Handover is a product of Alexandara Digital Studio Pty Ltd, a digital product studio based in Brisbane, Queensland, Australia. When this policy says "we", "us", or "our", it means Alexandara and the Handover product specifically.

Contact: handover@alexandara.com.au

2. What we collect

We collect only what is necessary to provide the service:

3. How we use your data

4. Where your data lives

All primary data is hosted in Australia:

Sensitive fields (calendar tokens, API credentials, encrypted note content where applicable) are encrypted at rest using AES-256-GCM with envelope encryption. All data in transit uses TLS 1.2 or higher.

5. Third parties

We share data with third parties only to operate the service:

We do not sell, rent, or share your data with advertisers, data brokers, credit-reference agencies, or anyone else for purposes outside operating Handover.

6. Google user data — Limited Use compliance

Limited Use disclosure. Handover's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

When you connect your Google Calendar to Handover, we access a narrow, specific subset of your Google account. This section explains exactly what we access, what we do with it, and what we do not do with it.

What Google data we access

We request a single read-only OAuth scope:

https://www.googleapis.com/auth/calendar.readonly

This grants Handover permission to read the events and calendar lists in your Google account. We cannot create, modify, or delete any events. We do not request access to your Gmail, Drive, Contacts, Photos, or any other Google service.

Why we access it

The sole purpose of this access is to display your upcoming and recent shifts inside Handover, so you can tap a shift and write its handover note without retyping the date, time, participant name, or duration. This is the user-facing feature you signed up for.

How we use Google user data

How we do not use Google user data

In line with the Google API Services User Data Policy Limited Use requirements:

How we store Google user data

How to revoke access

You can revoke Handover's access to your Google account at any time. There are two equivalent paths:

Either action immediately stops future calendar sync. Shift records already imported into Handover remain in your account until you delete them (Notes tab → delete, or Settings → Delete account for everything at once).

7. Data retention

8. Your rights

Under the Australian Privacy Principles and applicable law, you can:

9. Security

10. Children

Handover is a professional tool for adult support workers. We do not knowingly collect data from anyone under 16. If you believe a child has created an account, contact us and we will delete it.

11. Changes

We may update this policy as the product evolves. Material changes will be communicated via the app's notification system and by email. The "last updated" date and version number at the top of this page reflect the most recent revision.

12. Contact

For any privacy-related questions or requests:

Email: handover@alexandara.com.au
Postal: Alexandara Digital Studio Pty Ltd, Brisbane QLD, Australia.
Regulator: Office of the Australian Information Commissioner · 1300 363 992