Australian Privacy Principles (APPs)
The 13 Australian Privacy Principles form the cornerstone of the privacy protection framework in the Privacy Act 1988, regulating how organisations and agencies handle personal information.
Australian Privacy Principles (APPs) is a compliance framework from Australia with 5 domains and 13 controls that map to 135 other frameworks. The largest domains are Part 3 - Dealing with Personal Information (4 controls), Part 2 - Collection of Personal Information (3 controls), Part 1 - Consideration of Personal Information Privacy (2 controls). Every control below carries what it requires and what an assessor expects to see.
Get the official standard — this page is an AI-assisted companion tool, not a replacement for the authoritative text.
Visit oaic.gov.auFramework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (5)
Part 1 - Consideration of Personal Information Privacy
APPs that require consideration of the privacy of personal information (APP 1-2).
Part 2 - Collection of Personal Information
APPs governing the collection of personal information (APP 3-5).
| Code | Title |
|---|---|
| APP-3 | APP 3 - Collection of solicited personal information |
| APP-4 | APP 4 - Dealing with unsolicited personal information |
| APP-5 | APP 5 - Notification of the collection of personal information |
Part 3 - Dealing with Personal Information
APPs governing use, disclosure and handling of personal information (APP 6-9).
| Code | Title |
|---|---|
| APP-6 | APP 6 - Use or disclosure of personal information |
| APP-7 | APP 7 - Direct marketing |
| APP-8 | APP 8 - Cross-border disclosure of personal information |
| APP-9 | APP 9 - Adoption, use or disclosure of government related identifiers |
Part 4 - Integrity of Personal Information
APPs on the quality and security of personal information (APP 10-11).
Part 5 - Access to, and Correction of, Personal Information
APPs on access and correction (APP 12-13).
Your Compliance Coverage
If you comply with Australian Privacy Principles (APPs), you already cover:
GDPR
92%
12 controls mapped
Compare →CCPA/CPRA
92%
12 controls mapped
Compare →Australia Consumer Data Right - Banking (CDR)
92%
12 controls mapped
Compare →+ 132 more: APEC Cross-Border Privacy Rules (CBPR) System (85%), APPI (85%)
See all 135 mapped frameworks ↓Maps to 135 other frameworks
What is Australian Privacy Principles (APPs) and who does it apply to?
Australian Privacy Principles (APPs) is a compliance framework from Australia with 5 domains and 13 controls. The 13 Australian Privacy Principles form the cornerstone of the privacy protection framework in the Privacy Act 1988, regulating how organisations and agencies handle personal information. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
What does Australian Privacy Principles (APPs) actually require?
Australian Privacy Principles (APPs) has 13 controls organised across 5 domains. The largest domains are Part 3 - Dealing with Personal Information (4 controls), Part 2 - Collection of Personal Information (3 controls), Part 1 - Consideration of Personal Information Privacy (2 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
If I already comply with another framework, how much of Australian Privacy Principles (APPs) do I already cover?
Australian Privacy Principles (APPs) maps to 135 other compliance frameworks. The top mapping partners are GDPR (92% coverage), CCPA/CPRA (92% coverage), Australia Consumer Data Right - Banking (CDR) (92% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I implement Australian Privacy Principles (APPs)?
Start your Australian Privacy Principles (APPs) compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Australian Privacy Principles (APPs) requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 13 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 686 frameworks.
Get Started Free →Free forever — no credit card required