Privacy Policy
Last updated 26 August 2026. This policy covers timbrfield.com.au and the TIMBR Field app during its private beta.
The short version. This website collects nothing about you. It has no analytics, no tracking pixels and no cookies. If you fill in the beta form it opens your own email app, so nothing reaches us until you press send. Tree assessment data captured in the TIMBR Field app is written into your own Microsoft 365 tenant, not into a database we own.
1. Who we are
TIMBR Field is made by SG Arboricultural Consulting, an arboricultural consultancy based in Melbourne, Victoria, Australia. You can reach us at hello@timbrfield.com.au or on 0400 777 395.
We handle personal information in line with the Australian Privacy Principles under the Privacy Act 1988 (Cth).
2. This website
What we collect
Nothing automatically. This site runs no analytics software, sets no cookies, embeds no tracking pixels, and loads no third party fonts or scripts. There is no advertising on it and we do not sell or share anything, because there is nothing to sell or share.
Our hosting provider, GitHub Pages, keeps standard server logs which may include your IP address and browser type. We do not have access to those logs. GitHub's own privacy statement covers how they handle them.
The beta enquiry form
The form on the home page does not send anything anywhere by itself. When you press the button it opens your own email application with a draft addressed to us. You choose whether to send it. If you do send it, we receive the name, organisation, email address, team size and message you typed.
We use that information only to contact you about beta access and to have a conversation about whether TIMBR Field suits your practice. We do not add you to a mailing list. We do not send newsletters. If you ask us to delete your enquiry we will delete it.
3. The TIMBR Field app
Where your tree data lives
This is the part that matters most and it is the reason the product is built the way it is. Assessments, photographs, project records and reports created in TIMBR Field are written directly into your organisation's own Microsoft 365 tenant, as SharePoint list items and files. There is no TIMBR database sitting in the middle holding a copy.
That means your organisation remains the custodian of that data. Your permissions, retention rules, disposal schedules, auditing and backups apply to it exactly as they apply to everything else you keep in SharePoint. If your tenant is provisioned in Australia, the data sits in Australia.
Sign in
TIMBR Field authenticates using your existing Microsoft 365 account. We never see or store your password. Authentication is handled by Microsoft.
Location data
If you allow it, the app records the GPS position of photographs and tree records so that field evidence can be tied to a place. That location data is stored with the record in your own tenant. It is not sent to us and it is not used to track a person's movements. You can decline location access and continue using the rest of the app.
What we can see during the beta
We may receive technical diagnostic information such as crash reports and error messages so that we can fix defects. Where we work directly with a beta consultancy to set up or troubleshoot their tenant, we may see project data in the course of doing that, with their knowledge and at their request. We do not extract, copy or retain your client data for our own purposes.
4. Disclosure to others
We do not sell personal information and we do not disclose it to third parties for marketing. The infrastructure providers involved in delivering the service are Microsoft, whose platform your data resides on under your own agreement with them, and GitHub, who host this website. We would disclose information if required to by Australian law.
5. Security
Because assessment data lives in your Microsoft 365 tenant, its security is governed by the controls your organisation already applies there, including multi factor authentication, conditional access and whatever else you have configured. Data in transit between the app and Microsoft is encrypted. Enquiry emails we receive are held in a standard business mailbox.
No system is perfectly secure. If we ever became aware of a data breach affecting your information we would notify you and the Office of the Australian Information Commissioner as required under the Notifiable Data Breaches scheme.
6. Your rights
You can ask us what personal information we hold about you, ask us to correct it, or ask us to delete it. Email hello@timbrfield.com.au and we will respond within a reasonable time and at no charge.
For data held inside your own Microsoft 365 tenant, you already have full control and do not need to ask us for anything.
If you are unhappy with how we have handled your information, contact us first and we will try to sort it out. If you are still unsatisfied you can complain to the Office of the Australian Information Commissioner at oaic.gov.au.
7. Changes to this policy
TIMBR Field is in private beta and the product is still developing. If this policy changes in a way that materially affects you, we will update the date at the top of this page and tell beta participants directly.