Product: VettiGuard Product owner and provider: Ikemba Tech (ABN 82 565 415 510) Effective date: 25 September 2026 Version: 1.3
1. Primary hosting location
VettiGuard is a product of Ikemba Tech and is administered from Australia, but it is not currently an Australia-only hosted service.
VettiGuard's primary production hosting is provided through Makeitdomain in the United States of America. Customers should not describe VettiGuard as providing Australian data residency unless VettiGuard has expressly supplied a separate Australian-hosted environment in writing.
2. Material providers
| Provider | Purpose | Information involved | Location note |
|---|---|---|---|
| Makeitdomain | Primary VettiGuard hosting and supporting infrastructure | Account, configuration, verification, audit and operational data stored by VettiGuard according to the enabled service | United States of America |
| Ozibus | Transactional/service communications, including email delivery | Recipient details, message content/template variables, delivery identifiers and metadata needed to send the communication | Australian provider; services may involve United States processing |
| Makeitdomain-supported private email infrastructure through Ozibus | Supporting email delivery | Sender/recipient addresses, message content, headers, delivery/bounce and security metadata | May involve United States infrastructure |
| Recipient email systems and internet/network providers | Final delivery and routing | Information required to route and deliver communications | Depends on recipient and network destination |
Customer-selected identity, cloud, analytics or other providers are additional providers for that customer's configuration and must be assessed separately.
3. Data categories
Depending on the enabled service, overseas-hosted infrastructure may hold account information, workspace configuration, application registrations, API credential metadata, privacy-safe telemetry, logs, verification records, consent evidence, review outcomes and identity or biometric information required for active authorised journeys.
VettiGuard designs normal operational interfaces to minimise exposure of raw identity evidence and private credentials.
4. Cross-border safeguards
Where applicable, VettiGuard uses a combination of contractual confidentiality and data-protection terms, access controls, security review, minimisation, encryption, credential separation and provider due diligence to reduce cross-border risk.
Foreign providers may also be subject to lawful disclosure requirements in their jurisdiction.
5. Changes
This Notice will be updated when a material hosting, communications, security, identity or other subprocessor is added, removed or materially changes processing location. The current published version should be treated as the source of truth for the public subprocessor list.
6. Customer responsibility
Customers with contractual, government, healthcare, NDIS, financial or other data-location restrictions must confirm that the VettiGuard deployment model is suitable before submitting restricted information.