Privacy Policy
Last updated: May 2026
NexPhase (“we”, “us”) provides a reliability and maintenance management platform to industrial operators. This page summarises how we handle data. For a copy of our full privacy notice, contact contact@nexphase.biz.
What we collect
Account information (name, email, organisation), customer-uploaded documents and equipment data, and standard server logs (IP, user-agent, request times) for security and reliability.
How we use it
Data is used solely to provide the service to your organisation: extracting maintenance tasks, running analyses and producing reports. Customer data is isolated per tenant and is not used to train third-party models.
Sub-processors
We use vetted infrastructure and AI providers. Current sub-processors include Replit Deployments on Google Cloud Platform (GCE) for hosting and storage, and OpenAI, Anthropic and DeepSeek for analysis. All AI providers are configured not to retain or train on customer data. A current list is available on request.
Hosting & data residency
The platform is hosted on Google Cloud Platform (GCE). Customer data is stored in managed services with encryption at rest. Production-region and regional-alternative details are available from contact@nexphase.biz.
Retention & deletion
Customer data is retained for the subscription. On termination, it is deleted within 30 days unless a longer period is required by contract or law.
International users (GDPR & equivalents)
NexPhase operates from Australia. EEA, UK and equivalent-jurisdiction users have access, correction, deletion and portability rights, and may object to or restrict certain processing. Requests to contact@nexphase.biz are actioned within 30 days. A Data Processing Addendum can be entered into where required.
Security
Traffic is encrypted in transit (TLS 1.2+ with HSTS). Data uses access-controlled managed services with encryption at rest. Authentication is per organisation and administrative actions are logged. Report issues to contact@nexphase.biz or /.well-known/security.txt.
Compliance status
NexPhase is not currently certified to SOC 2, ISO 27001 or equivalent third-party audit standards. Customers may request a security questionnaire response, vendor assessment or Data Processing Addendum at contact@nexphase.biz.
Contact
Questions, data access or deletion requests: contact@nexphase.biz.
