SECTION 1 – WHAT WE DO WITH YOUR INFORMATION?
When you purchase something from Sassy Organics, as part of the buying and selling process, we collect the personal information you provide us such as your name, physical and postal address, email, date of birth and payment details.
When you browse our store, we also automatically receive your computer’s internet protocol (IP) address in order to provide us with information that helps us learn about your browser and operating system. With your permission, we use your email address to email you about our store, new products and other updates.
SECTION 2 - CONSENT
How do you get my consent?
When you provide us with personal information to complete a transaction, verify your credit card, place an order, arrange for a delivery or return a purchase, we imply that you consent to our collecting it and using it for that specific reason only. If we ask for your personal information for a secondary reason, like marketing, we will either ask you directly for your expressed consent, (for example, verification of your email address) or provide you with an opportunity to say no.
How do I withdraw my consent?
If after you opt-in, you change your mind, you may withdraw your consent for us to contact you, for the continued collection, use or disclosure of your information, at anytime, by contacting us at firstname.lastname@example.org or mailing us at: Sassy Organics, PO Box 2665, Dunearn, Vic, 3175.
SECTION 3 - DISCLOSURE
We may disclose your personal information if we are required by law to do so or if you violate our Terms of Service.
SECTION 4 - NETO
Our store is hosted on the Neto Server Farm located in the world class Global Switch Data Centre in Sydney, Australia. Neto provide us with the online e-commerce platform that allows us to sell our products and services to you.
Your data is stored through Neto’s data storage, and databases. Neto stores your data on a secure server behind a firewall. The server is quarterly scanned by the Comodo PCI Certification Service to meet Payment Card Industry Data Security Standard (PCI DSS) security requirements. Scanning of the server consists of a three-step process that includes dynamic port scanning; port-level network services vulnerability testing, and web application vulnerability testing.
Sassy Organics has access to Neto’s web application firewall to monitor and control advanced security settings for its web store. This includes the ability to run security treat reports by accessing Nato’s web application firewall to block suspicious traffic by IP addresses or country. Furthermore, Sassy Organics offers additional website and credit card transactions by using the industry standard Secure Sockets Layer (SSL). SSL is the standard security technology for establishing an encrypted link between a web server and a browser. This link ensures that all data passed between the web server and browsers remain private and integral.
Sassy Organics utilises the National Australia Bank (NAB) Transact Payment Gateway for processing all our online transactions. As such, NAB will hold your credit card details in its database, meaning no credit card data will enter our web server or environment and no card information will be stored on our website.
The NAB Transact payment gateway complies with the Payment Card Industry Data Security Standards (PCI DSS) – the global mandate by the payment card schemes for merchants and payment processors.
SECTION 5 - THIRD-PARTY SERVICES
In general, the third-party providers used by us will only collect, use and disclose your information to the extent necessary to allow them to perform the services they provide to us. However, certain third-party service providers, such as payment gateways and other payment transaction processors, have their own privacy policies in respect to the information we are required to provide to them for your purchase-related transactions. For these providers, we recommend that you read their privacy policies so you can understand the manner in which your personal information will be handled by these providers. You can access this information by clicking on these links, NAB Transact Terms and Conditions.
When you click on links on our store, they may direct you away from our site. We are not responsible for the privacy practices of other sites and encourage you to read their privacy statements.
SECTION 6 - SECURITY
To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed. If you provide us with your credit card information, the information is encrypted using secure socket layer technology (SSL). The site has a valid Comodo SSL certificate, activated at all times.
Furthermore, to ensure our online store’s data is always unharmed; the server where our site resides is backed up automatically. The backups are stored at multiple off-site locations for 30 days allowing Sassy Organics to roll back at any time to view any mysterious activity or catch anyone misusing our site for further criminal investigation. In addition, we utilise NAB’s Payment Gateway, which complies with the Payment Card Industry Data Security Standards (PCI DSS).
SECTION 7 - AGE OF CONSENT
By using this site, you represent that you are at least the age of majority in your state or province of residence, or that you are the age of majority in your state or province of residence and you have given us your consent to allow any of your minor dependents to use this site.
SECTION 9 - GENERAL DATA PROTECTION REGULATION
The European Union General Data Protection Regulation (the GDPR) contains new data protection requirements that impact how businesses process and handle data, effective from 25 May 2018. You can learn more about GDPR here. The GDPR requires every business to allow any EU citizen (whom the business is storing personal data pertaining the EU citizen) to:
- Demand a copy of the data we have on them
- Demand the deletion/anonymisation of this data
Sassy Organics has the ability to both give EU citizens this data and anonymise this data, on request. This request needs to be made to Sassy Organics via email at email@example.com or by mail to Sassy Organics, PO Box 2665, Dunearn, Vic, 3175.
QUESTIONS AND CONTACT INFORMATION
If you would like to: access, correct, amend or delete any personal information we have about you, register a complaint, or simply want more information contact us at firstname.lastname@example.org or by mail to Sassy Organics, PO Box 2665, Dunearn, Vic, 3175.