A NSW Government website

SIRA privacy statement

This document explains SIRA and the NSW Privacy Law. Binding privacy standards for the NSW public sector, known as Information Protection Principles and Health Privacy Principles, regulate the way public sector agencies collect, use, store and disclose personal and health information.

  • Print this page
  • Share this page

Context and purpose

This website privacy statement provides an overview of how the State Insurance Regulatory Authority (SIRA) collects, uses and stores information when you visit sira.nsw.gov.au. It also outlines the steps we take to protect your privacy and your rights under NSW privacy laws.

Our obligations

SIRA manages personal information in accordance with the:

These laws and principles govern how SIRA collects information, how it must be stored and secured, what the information is used for, how long it is kept, and how you may access or correct information we hold about you.

How we comply with NSW privacy principles

SIRA aligns its website and analytics practices with the requirements of the PPIP Act and HRIP Act.

Lawful, direct and open collection

We only collect information necessary for website operation and service improvement, and we explain these practices through this Privacy Statement.

Relevance and minimisation

We limit analytics data to usage information and avoid collecting identifying fields.

Security and retention

Information is protected against loss, misuse and unauthorised access and is retained only as long as necessary.

Transparency, access and correction

You may request access to, or amendment of, personal information held about you by SIRA.

Limits on use and disclosure

We use or disclose personal information only for the purpose for which it was collected or as otherwise permitted by law.

Your choices

You can manage your consent for analytics and marketing cookies at any time using the cookie banner or by adjusting your browser settings. This approach aligns with NSW Digital Design System best practices.

Collection and use of names and email addresses

Subscribing to newsletters and bulletins

If you subscribe to SIRA’s newsletters and bulletins, SIRA will collect your email address via Salesforce Marketing Cloud. Your email address will not be used or disclosed for any other purposes unless required or authorised by law.

You can unsubscribe at any time by selecting the ‘unsubscribe’ link in our emails or by contacting us at contact@sira.nsw.gov.au

Return to work coordination online training

If you enrol in SIRA’s Return to work coordination online training, your name and email address will not be used or disclosed for any other purposes unless required or authorised by law.

Feedback widget

If a customer provides an email using SIRA’s feedback widget, that email will only be used to follow up on their feedback and will not be used or disclosed for any other purposes unless required or authorised by law.

Digital data we collect when you use sira.nsw.gov.au

When you browse this website, we may automatically record technical and usage information to help improve the website and services. This includes:

  • the IP (Internet Protocol) address of the machine which has accessed it
  • the top-level domain name (for example .com, .gov, .au, .uk etc.)
  • the date and time of the visit to our site
  • the pages viewed and documents downloaded
  • the type of device, the browser and operating system
  • the search terms used
  • the referring site or link.

This data helps us understand how visitors use the website and is aggregated for reporting and service improvement.

Our cookies

A ‘cookie’ is a small text file stored on your browser that helps our website operate securely, remember your preferences, and understand how people use our pages so we can improve them.

Cookies used on sira.nsw.gov.au do not:

  • personally identify you
  • find out your name or email address
  • read the information on your hard drive
  • make your computer perform any actions
  • make your computer send information to any other computer via the internet

SIRA makes no attempt to associate cookies to your name or identity, though some cookies may contain unique identifiers that recognise your browser or device.

SIRA uses 'persistent' cookies to record your preferences when you use our website and allows us to recognise your browser if you return to this website in the future. Persistent cookies may contain unique identifiers that recognise your browser when you return to the website. This helps SIRA understand what parts of the website users find the most useful, what they access the most, and helps to improve the effectiveness of the website. These cookies are not used to identify you by name but remain on your device for a defined period or until you delete them using your browser settings.

Managing cookies

You can accept, reject or customise non-essential cookies via your browser settings. Blocking all cookies may affect site functionality.

sira.nsw.gov.au uses several types of cookies:

Essential cookies

Essential cookies are required for the website to function properly and securely. These cookies:

  • support security and protection from malicious activity
  • enable core website functionality.
  • maintain session continuity

These cookies are necessary for the operation of the website.

Preference cookies

Used to remember choices such as language or display settings.

Google analytics cookies

Analytics cookies help SIRA understand how visitors use the website so we can improve content, navigation and usability.

We use Google Analytics cookies to collect information such as:

  • pages visited and time spent on pages
  • browser, device and screen information.
  • interactions such as clicks and scrolling

Information is used in an aggregated form and cannot be used to identify an individual.

Hotjar cookies

Hotjar helps us understand which parts of the website are most useful and where users experience friction. SIRA may use Hotjar to collect heatmaps, anonymised session recordings and feedback to improve user experience.

Hotjar collects:

  • Interaction behaviour (clicks, scroll depth, navigation patterns).
  • Feedback provided voluntarily in on‑page survey tools.

Privacy protections:

  • Hotjar supports suppression and masking of form fields.
  • Does not capture sensitive personal information when masking is applied.
  • Respects Do Not Track (DNT) browser settings.

Contact

If you would like to access information held about you as a result of using this website, please contact:

SIRA Privacy Officer 
State Insurance Regulatory Authority 
Locked Bag 2906 
Lisarow NSW 2252

Or email: privacy@sira.nsw.gov.au

Changes to this Privacy statement

We may update this statement to reflect changes to our practices, legislation or technology.

Updated 5 May 2026

Back to top