Privacy policy
WEBSITE PRIVACY POLICY
This Privacy Policy applies to all personal information collected by Clutch Racing (we, us or our) via
the website located at clutchracing.com.au (Website).
What information do we collect?
The kind of Personal Information that we collect from you will depend on how you use the
website. The Personal Information which we collect and hold about you may include:
Name Email Address Phone Number Address Purchase History
Types of information
The Privacy Act 1998 (Cth) (Privacy Act) defines types of information, including Personal
Information and Sensitive Information.
Personal Information means information or an opinion about an identified individual or an
individual who is reasonably identifiable:
whether the information or opinion is true or not; and
whether the information or opinion is recorded in a material form or not.
If the information does not disclose your identity or enable your identity to be ascertained, it will in
most cases not be classified as “Personal Information” and will not be subject to this privacy
policy.
Sensitive Information is defined in the Privacy Act as including information or opinion about
such things as an individual's racial or ethnic origin, political opinions, membership of a political
association, religious or philosophical beliefs, membership of a trade union or other professional
body, criminal record or health information.
Sensitive Information will be used by us only:
for the primary purpose for which it was obtained;
for a secondary purpose that is directly related to the primary purpose; and
with your consent or where required or authorised by law.
with additional safeguards when processing sensitive information, including explicit consent
requirements and enhanced security measures.
How we collect your Personal Information
We may collect Personal Information from you whenever you input such information into
the Website, related app or provide it to Us in any other way.
We may also collect cookies from your computer which enable us to tell when you use the
Website and also to help customise your Website experience. As a general rule, however,
it is not possible to identify you personally from our use of cookies.
We use different types of cookies including essential cookies for Website functionality,
analytical cookies to improve user experience, and marketing cookies that may be set by
third parties. These cookies are retained for up to [DAYS] days and can be managed
through your browser settings. Third-party cookies are subject to their respective privacy
policies, which we encourage you to review.
By using our Website, you consent to cookie usage, though you may withdraw consent at
any time through our cookie preferences center. We provide clear notice of cookie usage
upon your first visit, and you can modify your cookie preferences at any time. Essential
cookies remain active for Website functionality, while you can opt out of analytical and
marketing cookies. We maintain detailed records of consent in compliance with privacy
regulations.
We generally don’t collect Sensitive Information, but when we do, we will comply with the
preceding paragraph.
Where reasonable and practicable we collect your Personal Information from you only.
However, sometimes we may be given information from a third party, in cases like this we
will take steps to make you aware of the information that was provided by a third party.
Purpose of collection
We collect Personal Information to provide you with the best service experience possible
on the Website and keep in touch with you about developments in our business.
We customarily only disclose Personal Information to our service providers who assist us in
operating the Website. Your Personal Information may also be exposed from time to time to
maintenance and support personnel acting in the normal course of their duties.
By using our Website, you consent to the receipt of direct marketing material. We will only
use your Personal Information for this purpose if we have collected such information direct
from you, and if it is material of a type which you would reasonably expect to receive from
use. We do not use sensitive Personal Information in direct marketing activity. Our direct
marketing material will include a simple means by which you can request not to receive
further communications of this nature, such as an unsubscribe button link.
You can manage your marketing preferences through your account settings or by
contacting our Privacy Officer. We will process opt-out requests within [DAYS] business
days and maintain records of your preferences. Marketing communications will not exceed
[NUMBER] messages per month, and each communication will clearly display preference
management options. If you choose to opt-out, we will retain minimal Personal Information
necessary to ensure compliance with your request.
Security, Access and correction
We store your Personal Information in a way that reasonably protects it from unauthorised
access, misuse, modification or disclosure. When we no longer require your Personal
Information for the purpose for which we obtained in, we will take reasonable steps to
destroy and anonymise or de-identify it. Most of the Personal Information that is stored in
our client files and records will be kept for a maximum of seven years to fulfill our record
keeping obligations.
We implement industry-standard security measures including encryption, access controls,
and secure data centers to protect your Personal Information. When deletion is required,
we use secure erasure methods including digital shredding and physical destruction of
storage media. For digital records, we employ thirty day retention periods for active data
and seven years for archived data, after which automated purge protocols permanently
remove the information using government-approved secure deletion standards.
In the event of a data breach or security incident affecting Personal Information, we will
notify affected individuals and the Office of the Australian Information Commissioner
(OAIC) within [DAYS] days as required by the Notifiable Data Breaches scheme. We
maintain a comprehensive Incident Response Plan that includes immediate containment
measures, forensic investigation protocols, and detailed remediation procedures to protect
your Personal Information.
The Australian Privacy Principles:
permit you to obtain access to the Personal Information we hold about you in
certain circumstances (Australian Privacy Principle 12); and
allow you to correct inaccurate Personal Information subject to certain exceptions
(Australian Privacy Principle 13).
Where you would like to obtain such access, please contact us in writing on the contact
details set out at the bottom of this privacy policy.
Complaint procedure
If you have a complaint concerning the manner in which we maintain the privacy of your Personal
Information, please contact us as on the contact details set out at the bottom of this policy. All
complaints will be considered by Matt Smith and we may seek further information from you to
clarify your concerns. If we agree that your complaint is well founded, we will, in consultation with
you, take appropriate steps to rectify the problem. If you remain dissatisfied with the outcome,
you may refer the matter to the Office of the Australian Information Commissioner.
Documentation and Response Timeline
We will acknowledge receipt of your complaint within two business days and provide you with a
reference number. Our privacy team will investigate your complaint and maintain detailed records
of all communications and findings. We aim to resolve all privacy complaints within five business
days. If additional time is required, we will notify you in writing. All complaint documentation will
be retained for twelve months following resolution. If the matter requires escalation, our Privacy
Officer will personally review your case within two business days of the escalation request.
Overseas transfer
Your Personal Information will not be disclosed to recipients outside Australia unless you
expressly request us to do so. If you request us to transfer your Personal Information to an
overseas recipient, the overseas recipient will not be required to comply with the Australian
Privacy Principles and we will not be liable for any mishandling of your information in such
circumstances.
Where overseas transfer is requested, we will: (a) ensure recipients adhere to comparable data
protection standards through binding agreements; (b) obtain your explicit informed consent; (c)
conduct security assessments of overseas recipients; and (d) maintain records of international
transfers. We may transfer data to countries with adequate privacy laws as determined by the
Australian Privacy Commissioner. You have the right to withdraw consent for overseas transfers
at any time by contacting our Privacy Officer.
How to contact us about privacy
If you have any queries, or if you seek access to your Personal Information, or if you have a
complaint about our privacy practices, you can contact us through: hello@clutchracing.com.au.

