Latest News

Privacy Compliance Sweep 2026: Is Your Business Ready?

The privacy commissioner has launched their first-ever compliance sweep in January 2026.

.

Privacy policies of selected businesses are under the microscope, and businesses with non-compliant policies could receive significant penalties. This article explains the privacy compliance sweep, who is being targeted, and how you can ensure your privacy policy is compliant.

What Is the Privacy Compliance Sweep?

Australian businesses should be transparent about the personal information they collect and how they handle it. The privacy commissioner has identified that customers are especially vulnerable when asked for information face-to-face. This is because, unlike online forms where customers can review privacy policies in their own time, in-person requests often pressure people to respond quickly without having full information about how their data will be used. Therefore, the sweep will initially target businesses that collect information during in-person interactions. 

Here is a common scenario:

Your gym offers free trials and collects information from potential members. Customers fill out forms with their contact details, health information and preferences. They hand over this information quickly without fully understanding how it will be used. Then they receive persistent marketing calls and emails for weeks.

When customers can not properly review privacy policies, you may over-collect personal information and use it in ways customers did not expect or agree to. The privacy commissioner’s goal is to ensure you are transparent about how you use personal information.

Who Is Being Targeted?

All businesses covered by Australian privacy laws must have a compliant privacy policy. However, this initial sweep is targeting six specific sectors.

The privacy commissioner has selected these sectors because they commonly collect personal information in person, including identification documents, and these sectors have experienced many privacy breaches.

The six sectors under review are:

  • rental and property; 
  • chemists and pharmacists;
  • licensed venues;
  • car rental companies;
  • car dealerships; and
  • pawnbrokers and second-hand dealers.

The privacy commissioner will review approximately 60 businesses from these sectors for compliance with privacy policy requirements. This is the first compliance sweep of its kind, and more targeted reviews are likely to follow.

What Do You Need to Do?

If you do not have a privacy policy, you need to have one prepared. If you already have one, now is the time to review it and make sure it is compliant.

What Your Privacy Policy Must Include

Australian privacy laws set out the minimum requirements that a privacy policy must include. This includes that your privacy policy must explain:

  • the personal information you collect and hold;
  • how you collect and hold personal information;
  • why you collect, use and disclose personal information;
  • how customers can access the personal information you hold about them; 
  • how to submit a complaint; and
  • whether you send personal information overseas.

Making Your Policy Clear and Accessible

Your privacy policy must be clearly expressed and up to date. This means the privacy policy:

  • is written in simple language that a 14-year-old could understand;
  • uses headings so people can find information easily;
  • is specific to your business, not a generic template;
  • is not too long or written in vague language;
  • is available free of charge on your website; and
  • is updated regularly when your privacy practices change.

What Happens if Your Privacy Policy Does Not Comply?

The privacy commissioner can issue compliance notices requiring you to fix issues with your policy.

Key Takeaways 

The first privacy compliance sweep is underway as of January 2026, targeting businesses that collect personal information in person. More sweeps are likely to follow as privacy regulation strengthens across Australia. To be compliant, you need to make sure you have a robust and clear privacy policy in place for your business that meets the requirements. Good privacy practices build customer trust by demonstrating you protect their personal information.

 

 

 

Lauren McKee
Updated on January 27, 2026
legalvision.com.au

Lawrence Poletto

Lawrence Poletto, Principal of Poletto accounting is a Fellow of CPA Australia, holds a Bachelor of Commerce (JCU) and has over twenty years’ experience in Commercial and Public Practice.
With this experience, Lawrence can assist with all accounting and taxation needs to help clients start and grow their business. Lawrence deals with clients from all walks of life, working with diverse client base across a wide range of Industries. He builds strong trusted relationships and support clients in their times of need.

Lawrence can assist with all Tax and Accounting for small to medium business including assistance and guidance with setups, ongoing support including cloud-based accounting, budgeting, performance monitoring, support for loan applications and more.

Lawrence enjoys working with business owners who are seeking taxation, accounting, or business advice from a trusted professional. The more certainty he can provide his clients, the more they can focus on their business. Clients appreciate Lawrence’s professional and approachable manner.

At Poletto Accounting you will be one of only a limited group of equally important business clients and will always receive prompt, personal service.

We believe in Fixed price packages with easy payment option’s so you know exactly what you’ll be paying.

Contact Poletto Accounting to get a complimentary tax review, to see how we can help you and to get a second opinion on where you are with your business and taxes.

Business Tax

Poletto Accounting provides a full range of business accounting services for small to medium-sized businesses. We work collaboratively with business owners to meet your reporting requirements and regulatory payments and to help you achieve your financial and business goals.

We can assist through:

  • Income Tax Planning & Strategies
  • Preparation of all Business Income Tax Returns and associate Reporting
  • Goods & Services Tax (GST) review
  • BAS compilation and lodgement
  • Small business concessions calculations and advice
  • Liaising and negotiating with the Australian Taxation Office (ATO)
  • Assistance in formation and set-up of companies, trusts and partnerships
  • Corporate secretarial services – ASIC requirements

All clients are provided with an Annual Tax Planning Meeting opportunity.

Contact Us

Tax Diary

General Calculators

 

Accounting Videos

Secure File Transfer

Secure File Transfer is a facility that allows the safe and secure exchange of confidential files or documents between you and us.

Email is very convenient in our business world, there is no doubting that. However email messages and attachments can be intercepted by third parties, putting your privacy and identity at risk if used to send confidential files or documents. Secure File Transfer eliminates this risk.

Login to Secure File Transfer, or contact us if you require a username and password.