This policy has been drafted having regard to Hardware2u's obligations under Australian privacy legislation.
1.1 Hardware2u will only collect Personal Information where the information is necessary for Hardware2u to perform one or more of its functions or activities. In this context, "collect" means gather, acquire or obtain by any means, information in circumstances where the individual is identifiable or identified.
1.2 Hardware2u collects Personal Information primarily to supply customers with the products and services ordered from it and its related companies. Hardware2u also collects and uses Personal Information for secondary purposes including: billing and account management business planning and product development; and To provide individuals with information about promotions, as well as the products and services of Hardware2u affiliated companies and other organisations.To enhance the online shopping experience by displaying products and/or services that match the personal preferences of individuals based on their previous website browsing history and/or buying activity.
1.3 Hardware2u will not collect Sensitive Information from individuals except with consent and only where it is necessary for Hardware2u to collect such information for an activity or function.
1.4 Hardware2u will not collect Personal Information secretly or in an underhanded way.
1.5 Hardware2u will take steps to ensure that individuals on purchased lists are or have been notified of the information as outlined at 1.3.
2.1 Hardware2u will obtain an individual's consent for Use of non-sensitive Personal Information for Secondary Purposes at the time of collection, unless the Use is a related Secondary Purpose which would be within the relevant individual's Reasonable Expectations.
2.2 Hardware2u Uses Personal Information primarily for the purposes listed in 1.2 above.
2.3 If Hardware2u relies on the Direct Marketing exception to Direct Market to individuals it will ensure that: the individual is clearly notified of their right to Opt Out from further Direct Marketing; there is only one Use of the information before the Opt Out right is given and this Use applies across all Hardware2u Related Bodies Corporate (if the information is shared between those Related Bodies Corporate);
the individual is given an Opt Out in all further instances of Direct Marketing if they have not previously chosen to Opt Out; and If the individual Opts Out of all Direct Marketing the Opt Out will be respected by Hardware2u and all its Related Bodies Corporate.
2.4 Hardware2u will not use Sensitive Information for Direct Marketing.
2.5 Hardware2u may use Personal Information to avoid an imminent threat to a person's life or to public safety. It may also use Personal Information for reasons related to law enforcement or internal investigations into unlawful activities.
2.6 Hardware2u will not use Personal Information without taking reasonable steps to ensure that the information is accurate, complete and up to date.
3.1 Hardware2u may Disclose Personal Information to related or unrelated third parties if consent has been obtained from the individual.
3.2 Hardware2u may Disclose Personal Information between Related Bodies Corporate. Where information is Disclosed to such a Related Body Corporate, that Related Body Corporate is bound by the original Primary Purpose for which the information was collected.
3.3 Hardware2u may Disclose Personal Information to unrelated third parties to enable outsourcing of functions (such as billing, customer relations management and order fulfilment), where that is Disclosure or Use for a related Secondary Purpose and has been notified to individuals or where such Disclosure is within the individual's Reasonable Expectations.
3.4 Hardware2u will take reasonable steps to ensure that its contracts with third parties include requirements for third parties to comply with the Use and Disclosure requirements of Australian Privacy Legislation.
3.5 Hardware2u may Disclose Personal Information to law enforcement agencies, government agencies, courts or external advisers where permitted or required by law.
3.6 If a Disclosure is not for a Primary Purpose; is not for a related Secondary Purpose; or upfront consent has not been obtained, Hardware2u will not Disclose Personal Information otherwise than in accordance with the exceptions set out at 3.1 to 3.6 above.
3.7 Hardware2u does not sell or share its customer lists on a commercial basis with third parties.
4. INFORMATION QUALITY
4.1 Hardware2u will review, on a regular and ongoing basis, its collection and storage practices to ascertain how improvements to accuracy can be achieved.
5. INFORMATION SECURITY
5.1 Hardware2u requires employees and contractors to perform their duties in a manner that is consistent with Hardware2u's legal responsibilities in relation to privacy.
5.2 Hardware2u will take all reasonable steps to ensure that paper and electronic records containing Personal Information are stored in facilities that are only accessible by people within Hardware2u who have a genuine "need to know" as well as "right to know".
5.3 Hardware2u will review, on a regular and ongoing basis, its information security practices to ascertain how ongoing responsibilities can be achieved and maintained.
6. ACCESS AND CORRECTION
6.1 Hardware2u will allow its records containing Personal Information to be accessed by the individual concerned in accordance with Australian Privacy Legislation.
6.2 Hardware2u will correct its records containing Personal Information as soon as practically possible, at the request of the individual concerned.
6.3 Individuals wishing to lodge a request to access and/or correct their Personal Information should either do so through the facilities provided on the website to or by contacting Hardware2u. Hardware2u can charge a fee for processing an access request but will generally not do so unless the request is complex or is resource intensive.
7.1 Hardware2u General Manager will be the first point of contact for inquiries about privacy issues. Individuals wishing to make an inquiry or complaint regarding privacy should do so by contacting Hardware2u General Manager, as per the details on the Hardware2u website.
8. ANONYMOUS TRANSACTIONS
8.1 Hardware2u will not make it mandatory for visitors to its web sites to provide Personal Information unless such Personal Information is required to answer an inquiry or provide a service. Hardware2u may however request visitors to provide Personal Information voluntarily to Hardware2u (for example, as part of a competition or questionnaire).
9. TRANSFERRING PERSONAL INFORMATION OVERSEAS
9.1 Hardware2u will not send Personal Information to unrelated organisations overseas.
9.2 If Personal Information must be sent by Hardware2u overseas for legal reasons, Hardware2u will require the overseas organisation receiving the information to provide a binding undertaking that it will handle that information in line with the Australian privacy legislation, preferably as part of the services contract.