Your Data is Safe With Us
We take security seriously. Row HQ uses bank-level encryption, modern cloud hosting, and follows industry best practices to protect your club's data - aligned with the Australian Privacy Principles.
256-bit SSL
Encryption
Cloud Hosted
Data Centres
APP Aligned
Privacy Principles
99.9%
Uptime
How We Protect Your Data
Security measures at every level of the platform
Strong Encryption
All data is encrypted in transit using TLS 1.3 and at rest using AES-256 - industry-standard cryptography.
- TLS 1.3 for all connections
- AES-256 database encryption
- Encrypted backups
UK-Based Cloud Hosting
Data is stored on cloud servers in a London data centre under UK GDPR. The Office of the Australian Information Commissioner treats UK GDPR as a comparable framework for cross-border disclosure under APP 8, so transfer paperwork is straightforward. Australian clubs with a constitution-level clause requiring data inside Australia should raise it before signup - we do not operate an Australia-region tenancy today, but we can walk your committee through the standard cross-border safeguards.
- Enterprise cloud data centre in London
- UK GDPR jurisdiction, APP 8 transfer documentation
- Sub-processor list available on request
Robust Access Controls
Role-based access ensures users only see data relevant to their role. Admins, coaches, and members have different permission levels.
- Role-based permissions
- Secure password hashing
- Session management
Automatic Backups
Your data is automatically backed up daily to a separate backup volume, with point-in-time recovery at the database layer. Restoring from yesterday's snapshot is straightforward if a corrupted import or accidental deletion ever needs to be undone.
- Daily automated backups
- 30-day backup retention
- Point-in-time recovery
Australian Privacy Compliance
Row HQ is designed to align with the Australian Privacy Principles (APPs) under the Privacy Act 1988. We support clubs in meeting their obligations under the Notifiable Data Breaches (NDB) scheme, including notification thresholds and procedures aligned with OAIC guidance.
-
Data Subject Rights
Members can access, correct, export, and request deletion of their personal data under APP 12 and APP 13
-
Consent Management
Clear consent mechanisms for data collection and processing under APP 3
-
Data Minimisation
We only collect and store data necessary for club operations
-
Privacy by Design
Privacy controls built into every feature, not bolted on later
Member Privacy Controls
Members control their own privacy settings
Our Policies
Full details of how we handle your data
Questions About Security?
We're happy to discuss our security practices and APP-aligned data handling in more detail