| Sales rep pastes the client list into a free chatbot to tidy up formatting | Discovered weeks later, no rule to point at, knee-jerk ban on everything | Named data class, named tool tier, a fast report path and a proportionate response | That list is personal information. The policy already says where it may go, the incident path decides within hours whether it needs assessing as a breach, and the rep gets retrained instead of made an example of. |
| Bookkeeper uploads a payroll export to summarise leave balances | Nobody knows whether the file is retained, or where it now physically sits | Payroll data banned outright, with the approved tool for that job named instead | Tax file numbers, bank details and salaries in one spreadsheet. This is the upload that turns into an OAIC conversation, so it earns its own explicit line rather than a general warning about sensitive data. |
| Marketing publishes AI-drafted copy containing a fabricated statistic | Goes live, then gets quietly corrected after a customer questions the number | Public content sits in the top review tier, every figure checked to a source | The ACCC has no interest in the fact that a machine wrote it. Misleading claims in your advertising are your problem, so the reviewer has to be able to produce the source for every number. |
| Developer pastes client source code into a free coding assistant | Breaches a confidentiality clause nobody has read since the contract was signed | Code tiered per client, an approved assistant configured, free accounts banned | Client agreements commonly restrict disclosure to third parties and processing outside Australia. In practice that contract clause, not the Privacy Act, is what an AI tool breaks first. |
| HR trials AI shortlisting on a stack of job applications | Candidates filtered by a process nobody in the business can explain or defend | Flagged as a high consequence use: human decides, reasons recorded, no auto-reject | Recruitment carries discrimination and Fair Work exposure, and privacy reforms are tightening transparency around automated decisions. A human decision maker with written reasons is the only defensible position. |
| Support agent sends an AI-written reply promising a refund you do not offer | The customer holds you to it while the team argues about who approved the wording | Customer-facing replies checked against your actual terms before they are sent | The fastest real world loss from AI in a small business is rarely a data breach. It is a confident, wrong, perfectly worded answer going out to a customer under your logo. |