Privacy policy

 

WEBSITE PRIVACY POLICY

This Privacy Policy applies to all personal information collected by Clutch Racing (we, us or our) via

the website located at clutchracing.com.au (Website).

What information do we collect?

The kind of Personal Information that we collect from you will depend on how you use the

website. The Personal Information which we collect and hold about you may include:

Name Email Address Phone Number Address Purchase History

Types of information

The Privacy Act 1998 (Cth) (Privacy Act) defines types of information, including Personal

Information and Sensitive Information.

Personal Information means information or an opinion about an identified individual or an

individual who is reasonably identifiable:

whether the information or opinion is true or not; and

whether the information or opinion is recorded in a material form or not.

If the information does not disclose your identity or enable your identity to be ascertained, it will in

most cases not be classified as “Personal Information” and will not be subject to this privacy

policy.

Sensitive Information is defined in the Privacy Act as including information or opinion about

such things as an individual's racial or ethnic origin, political opinions, membership of a political

association, religious or philosophical beliefs, membership of a trade union or other professional

body, criminal record or health information.

Sensitive Information will be used by us only:

for the primary purpose for which it was obtained;

for a secondary purpose that is directly related to the primary purpose; and

with your consent or where required or authorised by law.

with additional safeguards when processing sensitive information, including explicit consent

requirements and enhanced security measures.

How we collect your Personal Information

We may collect Personal Information from you whenever you input such information into

the Website, related app or provide it to Us in any other way.

We may also collect cookies from your computer which enable us to tell when you use the

Website and also to help customise your Website experience. As a general rule, however,

it is not possible to identify you personally from our use of cookies.

We use different types of cookies including essential cookies for Website functionality,

analytical cookies to improve user experience, and marketing cookies that may be set by

third parties. These cookies are retained for up to [DAYS] days and can be managed

through your browser settings. Third-party cookies are subject to their respective privacy

policies, which we encourage you to review.

By using our Website, you consent to cookie usage, though you may withdraw consent at

any time through our cookie preferences center. We provide clear notice of cookie usage

upon your first visit, and you can modify your cookie preferences at any time. Essential

cookies remain active for Website functionality, while you can opt out of analytical and

marketing cookies. We maintain detailed records of consent in compliance with privacy

regulations.

We generally don’t collect Sensitive Information, but when we do, we will comply with the

preceding paragraph.

Where reasonable and practicable we collect your Personal Information from you only.

However, sometimes we may be given information from a third party, in cases like this we

will take steps to make you aware of the information that was provided by a third party.

Purpose of collection

We collect Personal Information to provide you with the best service experience possible

on the Website and keep in touch with you about developments in our business.

We customarily only disclose Personal Information to our service providers who assist us in

operating the Website. Your Personal Information may also be exposed from time to time to

maintenance and support personnel acting in the normal course of their duties.

By using our Website, you consent to the receipt of direct marketing material. We will only

use your Personal Information for this purpose if we have collected such information direct

from you, and if it is material of a type which you would reasonably expect to receive from

use. We do not use sensitive Personal Information in direct marketing activity. Our direct

marketing material will include a simple means by which you can request not to receive

further communications of this nature, such as an unsubscribe button link.

You can manage your marketing preferences through your account settings or by

contacting our Privacy Officer. We will process opt-out requests within [DAYS] business

days and maintain records of your preferences. Marketing communications will not exceed

[NUMBER] messages per month, and each communication will clearly display preference

management options. If you choose to opt-out, we will retain minimal Personal Information

necessary to ensure compliance with your request.

Security, Access and correction

We store your Personal Information in a way that reasonably protects it from unauthorised

access, misuse, modification or disclosure. When we no longer require your Personal

Information for the purpose for which we obtained in, we will take reasonable steps to

destroy and anonymise or de-identify it. Most of the Personal Information that is stored in

our client files and records will be kept for a maximum of seven years to fulfill our record

keeping obligations.

We implement industry-standard security measures including encryption, access controls,

and secure data centers to protect your Personal Information. When deletion is required,

we use secure erasure methods including digital shredding and physical destruction of

storage media. For digital records, we employ thirty day retention periods for active data

and seven years for archived data, after which automated purge protocols permanently

remove the information using government-approved secure deletion standards.

In the event of a data breach or security incident affecting Personal Information, we will

notify affected individuals and the Office of the Australian Information Commissioner

(OAIC) within [DAYS] days as required by the Notifiable Data Breaches scheme. We

maintain a comprehensive Incident Response Plan that includes immediate containment

measures, forensic investigation protocols, and detailed remediation procedures to protect

your Personal Information.

The Australian Privacy Principles:

permit you to obtain access to the Personal Information we hold about you in

certain circumstances (Australian Privacy Principle 12); and

allow you to correct inaccurate Personal Information subject to certain exceptions

(Australian Privacy Principle 13).

Where you would like to obtain such access, please contact us in writing on the contact

details set out at the bottom of this privacy policy.

Complaint procedure

If you have a complaint concerning the manner in which we maintain the privacy of your Personal

Information, please contact us as on the contact details set out at the bottom of this policy. All

complaints will be considered by Matt Smith and we may seek further information from you to

clarify your concerns. If we agree that your complaint is well founded, we will, in consultation with

you, take appropriate steps to rectify the problem. If you remain dissatisfied with the outcome,

you may refer the matter to the Office of the Australian Information Commissioner.

Documentation and Response Timeline

We will acknowledge receipt of your complaint within two business days and provide you with a

reference number. Our privacy team will investigate your complaint and maintain detailed records

of all communications and findings. We aim to resolve all privacy complaints within five business

days. If additional time is required, we will notify you in writing. All complaint documentation will

be retained for twelve months following resolution. If the matter requires escalation, our Privacy

Officer will personally review your case within two business days of the escalation request.

Overseas transfer

Your Personal Information will not be disclosed to recipients outside Australia unless you

expressly request us to do so. If you request us to transfer your Personal Information to an

overseas recipient, the overseas recipient will not be required to comply with the Australian

Privacy Principles and we will not be liable for any mishandling of your information in such

circumstances.

Where overseas transfer is requested, we will: (a) ensure recipients adhere to comparable data

protection standards through binding agreements; (b) obtain your explicit informed consent; (c)

conduct security assessments of overseas recipients; and (d) maintain records of international

transfers. We may transfer data to countries with adequate privacy laws as determined by the

Australian Privacy Commissioner. You have the right to withdraw consent for overseas transfers

at any time by contacting our Privacy Officer.

How to contact us about privacy

If you have any queries, or if you seek access to your Personal Information, or if you have a

complaint about our privacy practices, you can contact us through: hello@clutchracing.com.au.