Compliance with Australian Privacy Principles
1.1 Garden Palace (GP) respects and acknowledges the importance of privacy. GP complies with the Australian Privacy Principles (APP) as contained within the Privacy Act 1988 (Cth) (Act), when collecting, using, disclosing and managing your personal information.
1.2 This Privacy Policy contains information in relation to our management of your personal information in accordance with the APP.
1.3 For the purposes of this Privacy Policy, the term “personal information” has the meaning given to it in the Act.
- Collection of personal information
2.1 GP collects personal information through a variety of methods, which may include the following:
(a) directly from you;
(b) through your access and use of GP’s website;
(c) through your access and use of GP’s software or other platforms commissioned by GP for the sale of goods;
(d) through your access of surveys commissioned by GP;
(e) when you subscribe to receive information from GP;
(f) when you communicate with GP, by email, post or otherwise;
(g) through publicly available information; Privacy Policy 3
(h) financing providers with which GP offer financing for purchases, and financial service providers used when processing your payments; or
(i) through a social media account(s) which you use to create or log into GP’s website.
2.2 In the event that GP is unable to obtain personal information from you as outlined above, this may result in CS being unable to provide you with access to website (including any updates) or marketing material.
- Use of personal information
3.1 GP may collect and use your personal information for a variety of reasons, which may include but is not limited to the following:
(a) to process any order you request from GP;
(b) to confirm and track any order you place with GP;
(c) to send you a post-sale request for a review of the product(s) you have purchased from GP or to request feedback on your experience with GP;
(d) to perform/execute your requested purchase/sale from GP;
(e) to add you to the GP mailing list;
(f) to detect security issues and prevent fraud on the GP website;
(g) to share/publish your photo on GP social media channels (with your consent);
(h) to provide you with support in relation to the GP website;
(i) to enable you to access the GP website;
(j) to complete your requested transactions, to verify the existence of and any conditions attached to your accounts or to assist with a transaction;
(k) to process transactions and send notifications about your transactions;
(l) confirming your identity for the purposes of anti-money laundering and counter-terrorism laws;
(m) to manage and minimise risks and identify or investigate fraud and/or other illegal activities;
(n) responding to your enquiries which include the processing of complaints made to GP;
(o) the resolution of disputes, collection of fees and troubleshooting problems;
(p) enforcement of our Terms & Conditions;
(q) deliver targeted marketing and various other notices and promotional communications based on your selected communication preferences;
(r) facilitate contests, sweepstakes, and promotions and process and deliver entries and rewards in relation to same;
(s) in the performance of data analytics to improve our website and your experience with GP;
(t) to analyse trends in your visits to the GP website;
(u) to gather demographic information based on the visits to the GP website;
(v) protecting GP and its assets (including against fraud) and selling GP assets (including any assignment of debts);
(w) enforcing GP’s rights (including undertaking debt collection) in connection with the PP website;
(x) monitoring data, usage, records and statistics derived from your use of the website for the furtherance of GP’s business, for general market research and to be disclosed to third parties in relation to the aforementioned;
(y) to contact you through the use of various means e.g. telephone, text (SMS) or email messaging, advertising through our website, third-party websites, mail, and/or any other means as authorised by our terms and conditions;
(z) GP’s business development, including sending of updates and publications;
(aa) to manage and deliver contextual and behavioural advertising;
(bb) to improve and personalise our website and to learn about your level of satisfaction to ensure client satisfaction throughout the future of the website;
(cc) auditing and managing the use of GP’s website; or
(dd) in order for GP to comply with legal and regulatory obligations.
3.2 You may withdraw your consent to receive marketing materials from GP by using the ‘unsubscribe’ link in the footer of our emails, or by contacting us on store@gardenpalacesyd.com.
- Types of personal information and storage
4.1 The type of personal information that GP may collect, use and hold includes the following:
(a) identification information including your name, date of birth, gender, phone number, address, email address, and other contact information;
(b) data necessary to process your payment if you make a purchase;
(c) your profile data – interests, favourites, wish lists
(d) registration information including an email address, username for registrations and/or a VIP list, to keep updated on our latest news and campaign initiatives.
(e) your approximate physical location of the devices you use to access our website;
(f) your IP address and other device identifiers, including mobile advertising identifiers;
(g) your transaction history, including details of any products purchased from GP, or that you have enquired about;
(h) aggregate, anonymous, or de-identified non-personal data;
(i) any other information provided by you in using GP's websites; and
(j) other information that helps us to identify you or helps us to provide or improve our website.
4.2 The personal information referred to in clause 4.1 above may be held by GP in both hardcopy files and also in an electronic form.
- Disclosure of personal information
5.1 GP may be required to disclose your personal information to the following third parties in order to provide you with access to the website, services or to process your orders from the website:
(a) external service providers so that the third party can carry out the service that they have been engaged by GP for;
(b) our partners and the suppliers and service providers who help with our business operations including in relation to fraud prevention, identity verification, payment collection, marketing, customer service, and technology services;
(c) third parties who have instructed us to provide goods and/or services;
(d) organisations that provide applications, websites, services, goods, software, programs used by GP;
(e) third parties that may provide GP with marketing or analytics reports;
(f) organisations that help identify illegal activities and prevent fraud;
(g) our professional advisors, including our accountants, lawyers, business advisors and consultants;
(h) organisations and/or individuals that GP intends on entering negotiations with for any merger, sale of assets, financing, acquisition of all or a part of GP’s business; or
(i) any legal industry regulatory body in any of the states, territories and jurisdictions that GP operates in
5.2 GP may be required to disclose your personal information in order to respond to subpoenas, court orders, or to investigate, prevent, defend against, or take action regarding violations of our terms and conditions, illegal activities, suspected fraud, or situations involving potential threats to the legal rights or physical safety of any person or the security of our network, customers/users or services.
5.3 If you purchase goods and services from GP using our website, our third-party payment processor will collect the billing and financial information it needs to process your charges. This may include your name, address, e-mail address, and financial information. GP's payment processors do not share your financial information with GP, but they may share non-financial information with us related to your purchases, including your name, address, and the goods purchased.
5.4 When you access our website on a connected third-party application or platform (including, but not limited to, Instagram, Facebook, Apple, or Google), any purchases you make will be processed by that third-party application and subject to that third-party application’s terms of service and privacy policy. For these purchases, GP does not receive your financial information, but may receive non-financial information related to your purchases, including your name, address, the goods purchased and your approximate physical location.
5.5 Where the Act permits, GP may also disclose personal information to third party suppliers and service providers located overseas for some of the purposes listed above.
- Cross-border disclosure of personal information
6.1 GP may, from time to time, have affiliated offices operating in overseas jurisdictions. GP may send your personal information to these offices for one or more of the purposes listed in clause 3.1. If CS’s overseas offices are operated by ‘related body corporates’ of GP, GP will take such steps as a reasonably required to ensure that there is appropriate data handling of your personal information and proper security arrangements are in place.
6.2 From time to time, GP may also send your personal information overseas for the following reasons: (a) to third party service providers who store data or operate outside of Australia; (b) to complete a transaction involving an international financial institution; or (c) as required by laws and regulations of Australia or another country.
6.3 Before GP discloses personal information about you to an overseas recipient who is not a related entity of GP, GP will take such steps as a reasonably required to ensure that there is appropriate data handling of your personal information and proper security arrangements are in place.
- Cookies
7.1 Cookies are used by GP in order to maximise and enhance your experience in accessing the website.
7.2 When accessing GP’s website, small files of data may be placed on your device that enable GP to recognise you as a GP customer each time you return to our website. As a result of these cookies, you avoid the need to keep inputting your information throughout a session and may have these details auto filled when you visit the website. In addition, these cookies enable GP to ascertain information regarding what web pages you visit and how regularly, enabling us to make our websites and platforms increasingly user- friendly and to target advertising to content that you may be interested in.
7.3 You are free to decline the cookies in which GP utilises and can disable them through your web browser.
- Protection of personal information
8.1 GP will take all reasonable steps to ensure that your personal information is properly protected from misuse, loss, unauthorised access, modification or disclosure.
- Access to Privacy Policy
9.1 This Privacy Policy is publicly available, free of charge through GP’s website.
- Change to Privacy Policy
10.1 This Privacy Policy may change from time to time as required by GP in order to reflect legislative and other changes. These changes will be notified to you, by being published on the website.
- Accessing and requesting correction of Personal Information
11.1 To access, seek or request personal information that GP holds about you, please contact us at store@gardenpalacesyd.com.
11.2 In the event that access to personal information is requested, GP will endeavour to respond to that request as soon as reasonably practicable if and to the extent required by the applicable law.
11.3 If GP is unable to give you access, or if GP declines to amend your personal information, GP will issue a written notice that describes our reasoning for doing so. GP notes that before providing you with any personal information GP will be required to verify your identity.
11.4 GP reserves the right to make an administrative charge to you if it is required, to provide you with access to personal information as outlined in clauses 11.1 and 11.2 above.
- Resolving your concerns
12.1 If you wish to make a complaint regarding that way in which GP manages your personal information, or if you feel that GP has fallen short of the required standards set by the Act, please prepare your complaint in writing and submit it to: store@gardenpalacesyd.com.
12.2 A written acknowledgement of your complaint will be provided within 7 days, and GP will attempt to have your concern resolved within 30 days of receipt of your complaint