Privacy Policy

Last updated: 26 February 2026

1. Introduction

Stability Engineering Pty Ltd ("Stability", "we", "us", or "our") operates the Stability web application at appstabilityengineering.com. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

We are committed to complying with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

2. Information We Collect

Account Information

When you create an account, we collect:

  • Your name and email address (provided via Google OAuth or email sign-in)
  • Your profile picture (if signing in with Google)

Project Data

When you use our engineering calculation tools, we store:

  • Project names, addresses, and descriptions
  • Engineering input data (soil layers, DCP test results, site parameters)
  • Calculation results and generated reports
  • Drawings and annotations added to reports

Payment Information

Payments are processed by Stripe. We do not store your credit card details. Stripe may collect payment card numbers, billing addresses, and transaction history. See Stripe's Privacy Policy for details.

Usage Data

We may collect information about how you access and use the service, including your browser type, pages visited, and timestamps.

3. How We Use Your Information

We use the information we collect to:

  • Authenticate your identity and manage your account
  • Perform engineering calculations and generate reports
  • Process payments for report purchases
  • Send transactional emails (sign-in links, payment confirmations)
  • Improve and maintain our service
  • Comply with legal obligations

4. Third-Party Services

We use the following third-party services to operate Stability:

  • Google OAuth — for account authentication. See Google's Privacy Policy.
  • Stripe — for payment processing. See Stripe's Privacy Policy.
  • Resend — for sending transactional emails (sign-in links).
  • MongoDB Atlas — for data storage (hosted in Australia where available).

We do not sell your personal information to third parties.

5. Google User Data

Stability uses Google OAuth 2.0 for account authentication. This section describes how we handle data received from Google, in accordance with Google's API Services User Data Policy.

Data Accessed

When you sign in with Google, we request only the default OAuth scopes: openid, profile, and email. This gives us access to your name, email address, and profile picture. We do not access your Google Drive, Calendar, Contacts, or any other Google services.

How We Use Google Data

Your Google account data is used solely to create and manage your Stability account:

  • Your name and profile picture are displayed in the app interface
  • Your email address is used as your unique account identifier and for transactional communications (e.g. sign-in links, payment confirmations)

Sharing of Google Data

Your Google user data is not sold or shared with third parties for their own purposes. Your email address is shared with the following service providers solely to operate Stability:

  • Resend — to send transactional emails such as sign-in links
  • Stripe — to process payments when you make a purchase

Storage & Protection

Your Google user data is stored in our MongoDB Atlas database with encrypted connections (TLS/SSL). Access is restricted to authenticated sessions only. We do not store Google OAuth tokens long-term — authentication is handled via secure session cookies.

Retention & Deletion

Your Google user data is retained for as long as your account is active. You can request deletion of your account and all associated data by emailing tim@nambuccaeng.com. Upon request, all your personal information (including Google user data) and project data will be deleted within 30 days.

You can also revoke Stability's access to your Google account at any time via your Google Account permissions page.

6. Data Retention

We retain your account information and project data for as long as your account is active. If you request account deletion, we will delete your personal information and project data within 30 days, except where we are required to retain it by law.

7. Data Security

We implement appropriate technical and organisational measures to protect your information, including encrypted connections (HTTPS), secure authentication, and access controls. However, no method of transmission over the Internet is 100% secure.

8. Your Rights

Under the Australian Privacy Act, you have the right to:

  • Access the personal information we hold about you
  • Request correction of inaccurate information
  • Request deletion of your account and data
  • Complain to the Office of the Australian Information Commissioner (OAIC) if you believe your privacy has been breached

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page and updating the "Last updated" date.

10. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, contact us at:

Stability Engineering Pty Ltd
Email: tim@nambuccaeng.com