You agree to the privacy policy below, and the Privacy Policy for Substack, the technology provider.

DukeMed & Inside MedTech Hiring: Consolidated Privacy Policy

Last Modified: February 2026

1. Privacy Commitment

1.1 Dukemed Pty Ltd (ACN 645 211 347) (“the Company”, “us”, or “we”) is committed to keeping your personal data safe and secure. We follow the Australian Privacy Principles in the Privacy Act 1988 (Cth).

1.2 We aim to provide GDPR-standard protection for EU-based citizens and CCPA-standard protection for California residents.

1.3 By using our Website, subscribing to Inside MedTech Hiring, or using our diagnostics (the Services), you consent to our collection and use of information in line with this Policy.

2. Collection & Enrichment

2.1 What We Collect: Name, contact details, CVs, qualifications, work history, and diagnostic results (via ScoreApp).

2.2 Enrichment: We may combine and enrich data with information from publicly available databases (e.g., LinkedIn) or trusted third-party tools (e.g., Sourcewhale) to identify prospective candidates and share relevant insights or roles.

2.3 Conversational Data: We collect video/audio content and AI-generated summaries via VXT, Metaview, Otter.ai, or Odro. These tools process data to ensure note-taking accuracy and generate anonymised aggregate insights.

3. Use & Disclosure

3.1 Recruitment: Processing applications and matching candidates to retained search mandates.

3.2 Business Intelligence: Analysing trends to create anonymised insights (e.g., The Ortho Moves Index). These may be shared with employers or offered as premium reports. No personally identifiable information (PII) is disclosed.

3.3 Direct Outreach: We may contact you via email, SMS, or WhatsApp regarding search mandates or market insights. You can opt out at any time.

4. Sharing Data with Third Parties

4.1 We do not sell your personal data. However, we may share data with:

  • Contractors, consultants, and agents assisting in recruitment or business operations.

  • Cloud service providers for data storage and processing (e.g., JobAdder, Substack).

  • Advertising platforms (Meta, Google, LinkedIn) for remarketing and audience optimisation.

  • Government agencies if required by law.

  • Employers, in the form of anonymised aggregate insights (e.g., market trends, talent pool profiles) to support recruitment needs or industry analysis. No personally identifiable information will be disclosed in these instances.

5. Third-Party Processors & AI

5.1 AI Disclosure: Metaview is SOC2-certified. AI is used for transcription and note-taking; it is not used for automated hiring decisions or “scoring” candidates.

6. Limitation of Liability

6.1 Use of our Services and Content is at your own risk. DukeMed is not liable for special, indirect, or consequential loss, loss of profit, or damage resulting from computer viruses, failure of performance, or the accuracy of third-party material.

7. Your Rights (GDPR/CCPA/APP)

7.1 You have the Right to Access, Rectification, Deletion (”Right to be Forgotten”), and to Object to Processing.

7.2 To exercise these rights, email privacy@dukemed.com.au.

8. Storage & Trans-Border Flows

8.1 Your data may be stored on Australian or overseas servers (e.g., AWS UK/EU for Metaview). We ensure appropriate safeguards (such as Standard Contractual Clauses) are in place.

9. Complaints & Disputes

9.1 If you believe we have breached this Privacy Policy, please email us at privacy@dukemed.com.au. We will respond within 30 days. If unresolved, you may escalate to the OAIC.

10. Changes to this Policy

10.1 We reserve the right to update this policy at any time. Material changes will be communicated via email or website updates.