At Michael Hill, we want your on-line and in-store experience to be enjoyable and we take care to respect your privacy when you visit our website and our stores. We endeavour to handle your personal information responsibly and to act fairly and honestly with all our customer transactions. We do this gladly because we know that if you have a good experience with us, you will want to visit our website and our stores again... and maybe even tell your friends about us.
- how and when we collect personal information;
- how we use and disclose personal information;
- how we keep personal information secure, accurate and up-to-date;
- how an individual can access and correct their personal information; and
- how we will facilitate or resolve a privacy complaint.
If you have any concerns or complaints about the manner in which your personal information has been collected, used or disclosed by us, we have put in place an effective mechanism and procedure for you to contact us so that we can attempt to resolve the issue or complaint.
Please see Section 13 for further details.
We can be emailed at email@example.com or write to us at GPO Box 2922, Brisbane, Australia and our privacy officer will then attempt to resolve the issue. We recommend that you keep this information for future reference.
1. What is personal information?
Private sector privacy legislation defines "personal information" to mean any information or an opinion about an identified individual, including where an individual could be identified through the use of the information, whether alone or in combination with other available information. Personal information does not include the name, title or business address or telephone number of an employee of an organization.
2. The kinds of personal information collected, used and disclosed by Michael Hill
We will only use or disclose your personal information for the primary purposes for which it was collected or as consented to by you.
At or around the time we collect personal information from you, we will endeavour to provide you with a notice which details how we will use and disclose that specific information.
Where appropriate, we will seek your express consent for the applicable use of your personal information, including when we send you commercial electronic messages. Where applicable, you will be able to unsubscribe at any time to the commercial electronic messages that we send to you by following the instructions in the message to unsubscribe, or by contacting us at firstname.lastname@example.org, GPO Box 2922, Brisbane, Australia, or 1800 354 4455
We set out some common collection, use and disclosure instances in the table below.
|Type of Information||Uses||Transfers/Disclosures|
Sales and enquiries (online and in-store)
In summary, we may transfer or disclose this type of personal information to:
Marketing services which includes social media
We may transfer or disclose your personal information to:
3. How Michael Hill collects and holds personal information
3.1 Collection generally
When you engage in certain activities online or in-store, such as entering a contest or promotion, filling out a survey or sending us feedback, we may ask you to provide certain information. It is completely optional for you to engage in these activities.
Depending upon the reason for requiring the information, some of the information we ask you to provide may be identified as mandatory or voluntary. If you do not provide the mandatory data or any other information we require in order for us to provide our services to you, we may be unable to effectively provide our products or services to you.
3.2 Other collection types
We may also collect personal information about you from other sources, such as competitions and also from third parties. Some examples of these alternative collection events are:
- (a) trade promotions, and contests (whether in-store or online), including those run by us or run by third parties who participate with us;
- (b) when we collect personal information about you from someone you know, such as someone who buys a gift for you and your personal information is provided in connection with the purchase of that gift;
- (c) when we use digital devices and applications to automatically collect information about the digital devices you use near our stores or to otherwise interact with us; when we collect personal information about you from a referee provided by you on an application made with us;
- (d) when we collect personal information about you from credit reporting bodies, in connection with any credit applications made with us or through us as an agent for a third party credit provider, including without limitation credit reports;
- (e) where you provide personal information to a third party and consent for that information to be disclosed or transferred to us (e.g. as part of a co-promotion that we participate in;
- (f) when we collect personal information about you from publically available sources including but not limited to court judgments, directorship and bankruptcy searches, Canada Post, and public directories.
3.3 Notification of collection
If we collect details about you from someone else, we will, whenever reasonably possible, make you aware that we have done this and why, unless special circumstances apply. Generally speaking, we will not tell you when we collect personal information about you in the following circumstances:
- (a) where information is collected from third party credit reporting bodies;
- (b) where information is collected from any credit referee, trade referee or personal referee you have listed on any application form with Michael Hill;
- (c) where information is collected from publically available sources including but not limited to bankruptcy searches; or
- (d) as otherwise required or authorised by law.
3.4 Unsolicited personal information
In the event we collect personal information from you, or a third party, in circumstances where we have not requested or solicited that information (known as unsolicited information), and it is determined by Michael Hill (in its absolute discretion) that the personal information is not required, we will destroy the information or ensure that the information is de-identified.
3.5 How we hold your personal information
Once we collect your personal information, we will either hold it securely and store it on infrastructure owned or controlled by us or with a third party service provider who have taken reasonable steps to ensure they comply with the private sector privacy legislation. We provide some more general information on our security measures in Section 11 (Data quality and security).
4. Uses and discloses of personal information
4.1 Use and disclose details
We provide a detailed list at Section 2 of uses and disclosures we make regarding the personal information we collect.
4.2 Other uses and disclosures
We may also use or disclose your personal information and in doing so we are not required to seek your additional consent:
- (a) when it is disclosed or used for a purpose related to the primary purposes of collection detailed above and you would reasonably expect your personal information to be used or disclosed for such a purpose;
- (b) the use is for the purpose of acting in respect of an emergency that threatens the life, health of security of an individual;
- (c) if we have reason to suspect that unlawful activity has been, or is being, engaged in; or
- (d) if it is required or authorised by law.
4.3 Use and disclosure procedures
4.4 Communications opt-outs
5. Sensitive information
5.1 Sensitive information generally
Sensitive information is a subset of personal information and includes medical information, financial information or other types of information that become sensitive, depending on the context.
5.2 Collection and use of sensitive information
In general, we attempt to limit the collection of sensitive information we may collect from you, but depending on the uses you make of our products this may not always be possible and we may collect sensitive information from you in order to carry out the services provided to you.
The type of sensitive information we may collect about you is dependent on the services provided to you by Michael Hill and will be limited to the purpose(s) for which it is collected.
We do not use sensitive information to send you Direct Marketing Communications (as set out in Section 6 below) without your express consent.
We may collect other types of sensitive information where you have consented and agree to the collection of such information. Generally speaking, we will obtain this type of consent from you at (or around) the point in time in which we collect the information.
6. Direct Marketing
6.1 Express informed consent
You may be asked to give your express and informed consent to us using your personal information set out in:
- (a) the “Sales and enquiries (ecommerce and in-store)” row of the table at Section 2 of this document above;
- (b) the “Credit services” row of the table at Section 2 of this document above; and
- (c) the “Marketing services which include Social Media” row of the table at Section 2 of this document above,
to provide you with information and to tell you about our products, services or events or any other direct marketing activity (including third party products, services, and events) which we consider may be of interest to you, whether by post, email, SMS, messaging applications and telephone (Direct Marketing Communications).
6.2 Implied consent and exceptions to consent
Without limitation to paragraph 6.1, if you have provided implied consent or if an exemption to consent under private sector privacy legislation applies, then we may also use your personal information for the purpose of sending you Direct Marketing Communications which we consider may be of interest to you.
If at any time you do not wish to receive any further Direct Marketing Communications from us or others under this Section 6, you may ask us not to send you any further information about products and services and not to disclose your information to other organisations for that purpose. You may do this at any time by using the “unsubscribe” facility included in the Direct Marketing Communication or by contacting us via the details set out at the top of this document.
7. Online Information
7.1 Online information generally
We endeavour to provide clear, complete and up-to-date information online about our business and the products and services we offer. This includes how to get in touch with us. This information helps you to make informed choices.
7.2 Online contracts and ecommerce
We keep complete and accurate records of online contracts when you accept one of our offers. Our system also helps you to keep an accurate record so there is no confusion about the contract.
If you have a problem with any of our products or services that you receive from us, our website provides further information about how to make a complaint, obtain redress or pursue dispute resolution. We can be emailed at email@example.com if there is a problem.
7.3 Collections of personal information via linked websites
7.4 Uses and disclosures for cross border shipments
If you engage in electronic commerce on this website, please be aware that cross border shipments are subject to opening and inspection by customs authorities. In order to facilitate customs clearance and comply with local laws, we may provide certain order, shipment and product information (such as name and titles) to our international carriers and such information may be communicated by the carriers to customs authorities. Customs authorities require the value of the product item to be stated directly on the package.
7.5 Cookies and IP addresses
If you use our website, we may utilise "cookies" which enable us to monitor traffic patterns, trends and to serve you more efficiently if you revisit a Michael Hill website or store. In most cases, a cookie does not identify you personally but may identify your internet service provider or computer.
We may gather your IP address as part of our business activities and to assist with any operational difficulties or support issues with our services. This information does not identify you personally.
You can set your browser to notify you when you receive a cookie and this will provide you with an opportunity to either accept or reject it in each instance. However, if you disable cookies, you may not be able to access certain areas of our web sites or take advantage of the improved web site experience that cookies offer.
8. Google Analytics, Display Advertising and Remarketing
8.1 Persistent cookies
We use persistent cookies to enable basic web traffic analysis using Google Analytics which, for example, shows us which areas of our website are popular against those that are not visited often. This allows us to prioritise our enhancements to our website and increase the productivity of our website. We also use persistent cookies in relation to affiliate marketing with web based traffic through affiliate networks.
8.2 Google features
We undertake and use the following Google features on our website, Google Analytics, Google Adwords, Remarketing and DoubleClick. These use any identifiable personal information.
Google may include in-ads notice labels to disclose interest-based advertising to you. Third-party vendors and search engines, including Google, will show Michael Hill ads on websites and search-results across the Internet. Michael Hill and third-party vendors, including Google, use first-party cookies (such as the Google Analytics cookie) and third-party cookies (such as the DoubleClick cookie) together to inform, optimize, and serve ads based on an individual's past visits to the Michael Hill websites.
We will not facilitate the merging of personal information with non-personally identifiable information previously collected from Display Advertising features that are based on the DoubleClick cookie, unless we notify you and you opt-in to that merger.
8.3 Google Remarketing
We also use Google Remarketing with Google Adwords and Google Analytics to display content specific advertisements to visitors that have previously visited our website when those visitors go to other websites that have implemented the Google Display Network.
8.4 Opt-out via Google
9. Anonymity and pseudo-anonymity
To the extent practicable and reasonable, we will endeavour to provide you with the option of dealing with Michael Hill on an anonymous basis or through the use of a pseudonym. However, there may be circumstances in which it is no longer practicable for Michael Hill to correspond with you in this manner and your personal information may be required in order to provide you with our products and services or to resolve any issue you may have.
10. Cross Border Disclosure
10.1 Cross border disclosures
Any personal information collected and held by Michael Hill may be transferred and held at a destination outside Canada, including but not limited to the jurisdictions set out in our Cross Border Disclosures Table.
Generally speaking this may be because Michael Hill (being part of a global group of organisations) operates in other jurisdictions. Personal information may also be processed by staff or by other third parties operating outside of Canada who work for us or for one of our suppliers, agents, partners or related companies.
In addition we may utilise overseas IT services (including software, platforms and infrastructure), such as data storage facilities or other IT infrastructure (Cross Border IT Services). In such cases, we may own or control such overseas infrastructure or we may have entered into contractual arrangements with third party service providers to assist Michael Hill with providing our goods and services to you.
Notwithstanding paragraph 10.1, as we utilise Cross Border IT Services and platforms which can be accessed from various countries via an Internet connection, it is not always practicable to know where your information may be held. If your information is stored in this way, disclosures may occur in countries other than those listed in the Cross Border Disclosures Table.
10.2 Provision of informed consent
11. Data security and quality
11.1 Michael Hill’s security generally
In this age of internet shopping, we have learned that customers require peace of mind when it comes to the security of using the internet. We have taken technological, physical and organisational steps to help ensure your credit card details and other personal information is safe. For example, we have developed and use a secure server that has the most up-to-date encryption (decoding) methods. You will appreciate, however, that we cannot guarantee the security of all transmissions or personal information, especially where the Internet is involved.
Notwithstanding the above, we will take reasonable steps to:
- (a) make sure that the personal information we collect, use or disclose is accurate, complete and up to date;
- (b) protect your personal information from misuse, loss, unauthorised access, modification or disclosure both physically and through computer security methods; and
- (c) destroy or permanently de-identify personal information if it is no longer needed for its purpose of collection.
We can’t tell you all of the technical details behind our security systems and processes as this may compromise the effectiveness of them.
The accuracy of personal information depends largely on the information you provide to us, so we recommend that you:
- (a) let us know if there are any errors in your personal information; and
- (b) keep us up-to-date with changes to your personal information (such as your name or address).
We provide information about how you can access and correct your information in Section 12.
12. Access to and correction of your personal information
You are entitled to have access to any personal information relating to you which we hold, except in some exceptional circumstances provided by private sector privacy legislation. You are also entitled to edit and correct such information if the information is inaccurate, out of date, incomplete, irrelevant or misleading.
If you would like access to or correct any records of personal information we have about you, you are able to access and update that information (subject to the above) by contacting us via the details set out at the top of this document.
13. Resolving Privacy Complaints
13.1 Complaints generally
We have put in place an effective mechanism and procedure to resolve privacy complaints. We will ensure that all complaints are dealt with in a reasonably appropriate timeframe so that any decision (if any decision is required to be made) is made expeditiously and in a manner that does not compromise the integrity or quality of any such decision.
13.2 Contacting Michael Hill regarding complaints
If you have any concerns or complaints about the manner in which we have collected, used or disclosed and stored your personal information, please contact us by:
- Telephone: 1800 354 44 55
- Email: firstname.lastname@example.org
- Post: GPO Box 2922, Brisbane, Australia 4001
Please mark your correspondence to the attention of the Privacy Officer.
13.3 Steps we take to resolve a complaint
In order to resolve a complaint, we:
- (a) will liaise with you to identify and define the nature and cause of the complaint;
- (b) may request that you provide the details of the complaint in writing;
- (c) will keep you informed of the likely time within which we will respond to your complaint; and
- (d) will inform you of the legislative basis (if any) of our decision in resolving such complaint.
13.4 Register of complaints
We will keep a record of the complaint and any action taken in a Register of Complaints.
14. Consent, modifications and updates
14.1 Interaction of this Policy with contracts
- (a) certain sections or paragraphs in this policy are incorporated into that contract, but in such a way that they do not give rise to contractual obligations onto the Michael Hill entity, but do create contractual obligations on the other party to the contract; and
- (b) the consents provided in this policy become contractual terms provided by the other party to the contract.
By using our website, purchasing a product or service from Michael Hill (whether in store or online) or entering a competition or interacting with us via social media, you are acknowledging and agreeing:
14.3 Modifications and updates
Last Updated: 06/08/2014