Medibank
Health & Wellness
No relevant claims found in policy. Overall: Good with minor gaps.
10 dimensions · 74 claims · assessed 11 May 2026 · methodology · source policy ↗
Score Breakdown
Transparency
Good with minor gaps
7.17/107.17/10
Transparency
Good with minor gaps
Transparency & Clarity
8/10Comprehensive policy with clear scope statement, detailed contents structure, glossary of terms, specific contact information, and current effective date. Strong introductory summary and commitment to notify significant changes.
Purpose Limitation & Use
6/10Comprehensive list of use purposes but includes broad catch-all clauses like 'general functions and activities.' Marketing consent and opt-out mechanisms are well-defined, though some purposes remain vague.
Policy Maintenance & Accountability
7/10Clear privacy officer contact details, formal complaint process, and commitment to review policy when appropriate. Good notification mechanisms for significant changes and external escalation pathway to OAIC.
Data Protection
Room for improvement
6.11/106.11/10
Data Protection
Room for improvement
Data Collection Disclosure
7/10Detailed enumeration of personal information types including sensitive data, multiple collection methods specified, and clear legal basis. Good coverage of biometric data, health information, and automated collection methods with opt-out options.
Third-Party Sharing & Disclosure
7/10Specific categories of third parties identified with clear purposes, named countries for overseas disclosure, and consent requirements for certain sharing. Good coverage of health insurance, wellbeing programs, and government disclosure scenarios.
Data Security
4/10Limited security measures disclosed - mainly identity verification methods and fraud prevention activities. Lacks specific technical safeguards, encryption details, or comprehensive security framework beyond basic authentication.
Cross-Border Data Flows
5/10Comprehensive list of 14 countries specified for overseas disclosure with clear purposes, but lacks details on adequacy mechanisms, binding corporate rules, or specific safeguards to protect data overseas.
Your Rights
Significant gaps
4.4/104.4/10
Your Rights
Significant gaps
Consumer Rights & Control
8/10Strong coverage of access and correction rights with specific timeframes (30 days), detailed contact mechanisms, formal complaint process, and clear escalation to OAIC. Marketing opt-out rights are comprehensive with multiple methods.
Automated Decision-Making
not assessedNo relevant claims found in policy.
No specific findings.
Children's Data
6/10Clear age threshold of 16 years with specific consent requirements and disclosure restrictions for health insurance claims. Includes family violence protections but limited to health insurance context.
Sector Comparison
Health & Wellness comparison