This Privacy Policy is written in plain English. It applies to your use of the Your Staff Room website and services located at yourstaffroom.com.au. By using our services, you agree to the collection and use of information in accordance with this policy.

1. Who we are

Your Staff Room is operated by an individual educator under ABN 38 234 407 780. We are subject to the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

We provide a suite of AI-assisted planning tools for Australian educators, including lesson planning, term planning, report writing, behaviour support, and related resources. Our registered business operates in Australia and our primary audience is Australian educators.

2. Information we collect

Information you provide directly

When you create an account or use our services, we may collect:

  • Your name and email address (for account registration via Memberstack)
  • Payment details (processed securely by Stripe; we never see or store your card number)
  • Information you enter into our tools, including class context, year levels, subject areas, and descriptions of student needs (for example, noting that a student has ADHD or school anxiety when using the Lesson Builder)
  • Your email address if you subscribe to our fortnightly research digest

Information we collect automatically

When you visit our site, we may collect:

  • Standard web server logs (IP address, browser type, pages visited, time of access)
  • Anonymous usage data such as which tools you use and how many generations you make per day (stored locally in your browser via localStorage)
⚠ Guidance for entering information about students
Several of our tools (Learner Profiles, Behaviour Support Plans, Social Stories) are designed for teachers to describe individual students in detail. Please follow this guidance every time:

Do use: First names, year levels, general descriptors (e.g. "a Year 3 student with school anxiety"), and functional descriptions of needs.
Do not enter: Full names combined with any other identifying detail, student ID numbers, dates of birth, residential addresses, parent contact details, Medicare numbers, or detailed psychiatric diagnoses that could identify a specific individual.

Content you enter into our tools is transmitted to Anthropic's AI for processing (see section 5). It is not stored by Your Staff Room on any server. However, you remain responsible — as the educator — for the appropriateness of the information you choose to share. If in doubt, use a descriptor rather than a name.

3. How we use your information

We use the information we collect for the following purposes:

Providing and improving the service

  • Creating and managing your account
  • Processing your subscription and payments
  • Generating AI-assisted content in response to your requests
  • Enforcing daily usage limits appropriate to your account tier
  • Improving the tools, prompts, and features we offer

Communication

  • Sending transactional emails (account confirmations, receipts, password resets)
  • Sending fortnightly research digest emails to Inner Sanctum subscribers (you may unsubscribe at any time)
  • Responding to support enquiries

Legal and safety

  • Complying with applicable laws and regulations
  • Detecting and preventing fraud or abuse of our platform

We do not sell your personal information to third parties. We do not use your personal information for advertising or marketing purposes beyond communicating with you about our own services.

4. Third-party services

We use a small number of trusted third-party services to operate Your Staff Room. Each of these has their own privacy policy.

Memberstack

We use Memberstack to manage user accounts, authentication, and subscription tiers. When you create an account, your name and email address are stored with Memberstack. Their privacy policy is available at memberstack.com/privacy.

Stripe

Subscription payments are processed by Stripe. Your Staff Room never receives or stores your credit card details. Stripe processes your payment information under their own security standards. Their privacy policy is available at stripe.com/au/privacy.

Netlify

Our website is hosted on Netlify's infrastructure, which processes standard web traffic data including IP addresses. Netlify's privacy policy is available at netlify.com/privacy.

Google Analytics

We use Google Analytics 4 (via Google Tag Manager) to understand how visitors use our site — for example, which pages are visited most and how long sessions last. Google Analytics uses cookies (including _ga and _ga_*) to collect this data anonymously. We do not pass personally identifying information to Google Analytics. You can opt out using the Google Analytics Opt-out Browser Add-on. Google's privacy policy is at policies.google.com/privacy.

Google Fonts

We use Google Fonts to display our site typography. Google may collect technical data such as your IP address when font files are loaded. See Google's privacy policy at policies.google.com/privacy.

5. AI processing and Anthropic

The AI-powered tools on Your Staff Room are built using Anthropic's Claude AI model. When you submit a request through any of our tools, the content of your request (including any class context you have described) is sent to Anthropic's API for processing.

What this means in practice: The text you type into our tools passes through Anthropic's servers in the United States to generate a response. This is similar to how any AI assistant works. Anthropic's data handling practices are governed by their privacy policy at anthropic.com/privacy.

We do not knowingly send personally identifying student information to Anthropic. We encourage all users to follow our guidance in section 2 and avoid entering identifying details about students. You, as the educator, remain responsible for the information you choose to submit through our tools.

Anthropic processes API requests under their commercial API terms. Anthropic does not use data submitted through the API to train their AI models, unless you separately opt in to a data sharing programme. This is different from Anthropic's consumer-facing products (claude.ai), which have separate data handling terms. Our tools use only the API.

For more detail, see Anthropic's usage policy at anthropic.com/legal/privacy.

6. Data storage and security

Your account data is stored by Memberstack on servers located in the United States. Payment data is stored by Stripe. Your Staff Room itself does not maintain a separate database of user personal information.

Usage counters are stored locally in your browser using localStorage. Daily usage counters (for tools like the Report Writer) clear automatically at midnight each day. Lifetime usage counters (for tools like the Term Planner, Learner Profiles, Behaviour Support Plans, and Social Stories) persist in your browser until you clear your browser data. This data never leaves your device and is not accessible to Your Staff Room or any third party.

We take reasonable steps to protect your personal information from misuse, interference, loss, and unauthorised access. These steps include:

  • HTTPS encryption for all data in transit
  • Using established, security-audited third-party services (Memberstack, Stripe, Netlify) rather than building our own authentication or payment infrastructure
  • Never logging the content of tool inputs or AI-generated outputs on our own servers
  • Not maintaining a database of user-generated content — what you build stays in your browser

No method of transmission over the internet is completely secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee absolute security.

Data breach notification

In the event of a data breach that is likely to result in serious harm to affected individuals, we will notify the Office of the Australian Information Commissioner (OAIC) and affected individuals as required under the Notifiable Data Breaches scheme (Part IIIC of the Privacy Act 1988).

Data retention

We retain your account information for as long as your account is active. If you close your account, you may request deletion of your personal data by contacting us at the address below. We will action deletion requests within 30 days. Note that we may retain certain records for legal or administrative purposes for a limited period after account closure.

7. Your rights under Australian law

Under the Privacy Act 1988 (Cth) and the Australian Privacy Principles, you have the right to:

  • Access the personal information we hold about you
  • Correct personal information that is inaccurate, out of date, incomplete, or misleading
  • Request deletion of your personal information (subject to any legal retention obligations)
  • Withdraw consent to receiving marketing emails at any time (by using the unsubscribe link in any email we send)
  • Make a complaint to us, and if unresolved, to the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au

To exercise any of these rights, please contact us using the details in section 10 below. We will respond to all requests within 30 days.

8. Cookies and tracking

Your Staff Room uses the following types of browser storage and cookies:

  • Memberstack session cookies — essential cookies used to keep you logged in to your account. Without these, you cannot access your account or premium features.
  • localStorage — used to store your usage counts locally in your browser only. This data never leaves your device.
  • Google Analytics cookies (_ga, _ga_*) — analytics cookies placed by Google Analytics 4. These collect anonymous data about how visitors use our site (pages visited, session duration, general location). We use this to understand how our tools are being used and improve them. You can opt out via the Google Analytics Opt-out Browser Add-on.

We do not use advertising cookies, retargeting cookies, or third-party tracking pixels for marketing purposes.

You can control or delete cookies through your browser settings. Disabling essential Memberstack cookies will prevent you from logging in. Disabling Google Analytics cookies will not affect your ability to use any feature of the service.

9. Children's privacy and student data

Your Staff Room is designed for and directed at educators and education professionals. Our service is not intended for direct use by anyone under the age of 18, and we do not knowingly collect personal information directly from minors. All account holders must be adults.

Tools that process information about students

Several of our tools — specifically the Learner Profile builder, Behaviour Support Plan generator, and Social Story builder — are designed for teachers to enter contextual information about individual students, which is then processed by our AI to generate a planning document. In this context, personal information about students (who are minors) is involved.

To be clear about how this works:

  • Your Staff Room does not collect or store student data. Content you enter into a tool is sent directly to Anthropic's API to generate a response. Neither the input nor the output is stored on our servers, in our databases, or associated with any user account.
  • The generated document is delivered to your browser and stays there. It is your responsibility to save, handle, and protect any document you generate about a student.
  • You are the data handler. As an educator entering information about a student, you are acting as a professional exercising your professional judgement. Your school or employer's own privacy and data handling policies will apply to how you use documents generated through our tools.

Upcoming Children's Online Privacy Code

The Privacy and Other Legislation Amendment Act 2024 (which received Royal Assent on 10 December 2024) establishes a framework for a Children's Online Privacy Code in Australia. We are monitoring developments under this Code and will update our practices accordingly as the Code is finalised and takes effect.

What to do if a minor has created an account

If you believe a minor has created an account on Your Staff Room without appropriate consent, please contact us immediately using the details in section 10. We will take steps to verify and, where confirmed, remove that account and any associated personal information.

A note for school leaders and IT administrators: If your school or system is considering enabling staff access to Your Staff Room, we are happy to discuss our data handling practices and provide any documentation you need to conduct a privacy impact assessment. Contact us via the details in section 10.

10. Contact us

If you have a question, concern, or request related to this Privacy Policy or your personal information, please contact us:

Your Staff Room Privacy Contact

Business name: Your Staff Room

ABN: 38 234 407 780

Website: yourstaffroom.com.au

Please use the contact form on our website or reach us via the email address associated with your account. We aim to respond to all privacy enquiries within 30 days.

If we are unable to resolve your concern, you have the right to lodge a complaint with the Office of the Australian Information Commissioner (OAIC):
oaic.gov.au/privacy/privacy-complaints or by calling 1300 363 992.

This Privacy Policy was last updated in April 2026, following the commencement of certain provisions of the Privacy and Other Legislation Amendment Act 2024. We may update this policy from time to time. Material changes will be communicated to registered members by email. Continued use of the service after any changes constitutes your acceptance of the updated policy.