Effective Date: 31 July 2025
Entity: DRGT Pty Ltd ABN 69 647 964 538 (“we”, “us”, “our”)
Contact: hello@drgreenthumbs.com.au

1. Introduction

We respect your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, store, and disclose your personal information in compliance with the Privacy Act 1988 (Cth) (including the Australian Privacy Principles and anticipated 2025 reforms) and, where applicable, the EU General Data Protection Regulation (GDPR).

By using our website (www.drgreenthumbs.com.au) and our services, you agree to the terms of this Privacy Policy. We regularly review and update our practices to remain compliant with changes to privacy laws.

2. What Information We Collect

We collect personal information that is necessary for us to operate our business and deliver products and services to you.

  • Contact details: name, shipping/billing address, email address, phone number
  • Order and payment details: order history, transaction details, payment method (we do not store full credit/debit card numbers – these are handled by our secure payment providers)
  • Marketing preferences: email subscription choices
  • Device & usage data: IP address, browser type, pages visited, referring websites (Google Analytics and Meta Pixel)
  • Optional data: any additional information you provide voluntarily (e.g., survey responses or customer support inquiries)

We do not collect or store sensitive information (e.g., health data, biometric data, government identifiers).

3. How We Collect Your Information

  • Placing an order through our online store
  • Subscribing to our newsletter or marketing communications (via Klaviyo)
  • Contacting us via email or web forms
  • Interacting with our website and advertisements (Google Analytics and Meta Pixel)

We also use cookies and similar technologies to enhance your website experience and measure performance.

  • In Australia, we rely on implied consent (browser settings and continued use of the website).
  • For visitors from the European Union (EU), we display a cookie consent banner to obtain explicit consent for non-essential cookies.
  • You can disable cookies in your browser, but some features may not work properly.

4. How We Use Your Information

  • Process and deliver orders, refunds, and customer support
  • Send order confirmations, shipping updates, and account notifications
  • Improve our website, products, and services
  • Send marketing communications (you can unsubscribe at any time)
  • Detect and prevent fraudulent or unauthorised activity
  • Comply with legal obligations and resolve disputes

5. Third-Party Services and International Data Storage

We use trusted third-party providers to operate our business:

  • E-commerce platform: Shopify (Canada/US servers)
  • Payments: PayPal, Afterpay, Airwallex (may store data in the US, EU or Asia-Pacific)
  • Email marketing: Klaviyo (US servers)
  • Analytics & advertising: Google Analytics (US servers), Meta Pixel (US servers)

These providers may process data outside Australia. We take reasonable steps to ensure that any overseas recipients comply with Australian privacy laws and, where applicable, implement GDPR safeguards (e.g., Standard Contractual Clauses).

6. Data Retention

We only retain personal information for as long as needed:

  • Order and financial records: 7 years (as required by tax law)
  • Marketing data: retained until you unsubscribe or request deletion, or where we determine there has been no engagement for an extended period (usually 24 months of inactivity)

7. Data Security and Breach Notification

We take reasonable steps to protect your information using encryption, secure servers, and restricted access. If a data breach occurs that is likely to result in serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner (OAIC) as required under the Notifiable Data Breaches Scheme.

8. Your Privacy Rights

Under Australian privacy law, you can:

  • Request access to the personal information we hold about you
  • Request corrections or updates to your personal information
  • Request deletion of your personal information when no longer required
  • Opt out of marketing communications

To make a request, email hello@drgreenthumbs.com.au. We may need to verify your identity before processing requests.

EU/UK Visitors (GDPR)

We do not actively target EU/UK residents. However, if you are located in the EU or UK and contact us, you may also exercise additional GDPR rights, including:

  • Right to data portability
  • Right to restrict or object to processing
  • Right to erasure (in certain circumstances)

9. Complaints

If you have any concerns about your privacy, contact us:
Privacy Contact Person
Email: hello@drgreenthumbs.com.au

If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au.

10. Updates to This Policy

We may update this Privacy Policy from time to time. We will post changes on this page with an updated effective date. We encourage you to review this page periodically.