The Privacy Act 1988 serves as the primary framework for data protection in Australia. It governs how agencies and private sector organizations collect, use, and disclose personal information. The law mandates adherence to the 13 Australian Privacy Principles (APPs), which set the standard for ethical data handling. Organizations must ensure personal data is accurate, secure, and used only for its intended purpose.
