Full compliance with the ETA and equivalent state legislation. Electronic signatures created with SignAndGo meet all validity requirements: consent, identification, intent, and reliability.
Compliant with all 13 APPs under the Privacy Act 1988. Data is collected only as needed, stored securely in Australia, and never sold or shared with third parties.
Designed to support APRA CPS 234 information security requirements. Australian data residency, encryption at rest and in transit, and comprehensive access controls.
Supports ASIC record-keeping requirements with immutable audit trails, document versioning, and long-term storage of signed agreements.
Your documents, metadata, audit trails, and backups are stored in Google Cloud's Sydney region (australia-southeast1) and stay on Australian infrastructure. Operational providers for email, SMS, and payments are disclosed on our Subprocessors page.
Learn more about our data residencyAPRA CPS 234 ready. Australian data residency meets prudential standards for banks, insurers, and super funds.
Supports My Health Records Act requirements. Patient consent forms, referrals, and agreements signed securely.
Court-admissible audit trails. ETA-compliant signatures for contracts, agreements, and legal correspondence.
Meets government data sovereignty requirements. Documents, signatures, and audit trails are stored and processed on Australian soil (Sydney). Operational subprocessors are disclosed in full.
SignAndGo complies with the Electronic Transactions Act 1999 (Cth), Australian Privacy Principles (APPs) under the Privacy Act 1988, and is designed to meet APRA and ASIC requirements for regulated industries.
Yes. SignAndGo is used by financial services, healthcare, legal, and government organisations. Australian data residency in Sydney, comprehensive audit trails, and encryption make it suitable for industries with strict data governance requirements.
Data is protected with AES-256 encryption at rest, TLS 1.3 in transit, and stored exclusively in Sydney (australia-southeast1). Access is controlled via JWT authentication with optional 2FA. All signing events generate tamper-proof audit trails.
Yes. Contact our team for a compliance information pack that covers our security architecture, data residency details, encryption standards, and audit trail specifications. We also provide data processing agreements for enterprise customers.
We carefully select service providers that support Australian data residency where possible.