Real Estate Privacy Risk Scorecard 2026
A 10-minute self-assessment for Australian real estate agencies.
The OAIC launched its first privacy compliance sweep targeting real estate agencies in January 2026. Penalties for non-compliance can reach $66,000 per infringement, and a new statutory tort for serious invasions of privacy is already in force. This scorecard helps you identify your exposure across governance, open homes, applications, marketing and security in 10 minutes.
0 of 30 answeredScore: 0/60
Governance & accountability
Questions 1–6 of 30
1A senior staff member is formally responsible for privacy compliance.
2Privacy risk is reported to owners, directors or partners at least annually.
3There is a documented privacy management plan.
4Staff receive privacy training at least once every 12 months.
5Privacy obligations are included in onboarding for new employees.
6There is a documented data breach response procedure aligned to the Notifiable Data Breaches scheme.
This tool provides general guidance only and is not legal advice.