This policy describes how PartsEZI will use, manage and protect personal information in accordance with the Australian Privacy Principles and all relevant privacy legislation protecting the rights of individuals.
This policy applies to all personal information held or controlled by PartsEZI.
Personal information is information or an opinion (including information or an opinion forming part of a database) whether true or not, and whether recorded in a material form or not, about an individual whose identity is apparent or can reasonably be ascertained, from the information or opinion (section 6). It includes all personal information regardless of its source.
Personal information relates to a natural living person. A natural person is a human being rather than, for example, a company, which may in some circumstances, be recognised as a legal 'person' under the law.
Sensitive information is a subset of personal information. It means information or opinion about an individual's racial or ethnic origin, political opinions, membership of a political association, religious beliefs or affiliations, philosophical beliefs, membership of a professional or trade association, membership of a trade union, sexual preferences or practices, criminal record or health information about an individual.
PartsEZI manages private information in accordance with the Privacy Act 1988.
In particular, PartsEZI's privacy policy implements the thirteen Australian Privacy Principles (APPs) set out in the Privacy Act, which specify how organisations should collect, use, keep, secure and disclose personal information.
The principles also give individuals a right to know what information an organisation holds about them and a right to correct that information if it is wrong, and how to make a complaint in the event of a breach.
For the most part, personal information collected by PartsEZI falls under two categories:
PartsEZI will take such steps as are reasonable in the circumstances to implement practices, procedures and systems relating to PartsEZI functions or activities that will ensure its compliance with the APPs and will enable PartsEZI to deal with inquiries or complaints from individuals about PartsEZI compliance with the APPs. In this respect, PartsEZI will maintain this privacy policy and keep it up to date. Copies are available free of charge upon request.
Wherever it is lawful and practicable, individuals will have the option of not identifying themselves when entering transactions with PartsEZI.
PartsEZI will only collect personal information by lawful or fair means, such as when an individual knowingly provides that information to PartsEZI, and will not collect personal information for inclusion in a record or in a generally available publication unless the information is collected for a lawful purpose that is reasonably necessary for, or directly related to, the function of PartsEZI.
PartsEZI will not collect sensitive information except with consent from the individual or in circumstances permitted by the APPs.
If PartsEZI receives personal information that it did not solicit, it will, within a reasonable period after receiving the information, determine whether or not it could have lawfully collected the information under Principle 3 and if it could not, then it will, as soon as practicable but only if it is lawful and reasonable to do so, destroy the information or ensure that the information is de-identified.
At the time PartsEZI collects personal information (or as soon as practicable thereafter), PartsEZI will take steps as are reasonable in the circumstances to notify the individual of the matters set out in this policy or otherwise ensure they are aware of such matters.
When in possession or control of a record that contains personal information, PartsEZI will only use and disclose the information for the purpose for which the information was collected.
When in possession or control of a record that contains personal information that was obtained for a particular purpose, PartsEZI will not use or disclose the information for any other purpose unless:
PartsEZI may use or disclose personal information for the purposes of direct marketing, including via electronic communications and telephone. By providing personal information directly to PartsEZI, individuals consent to this. PartsEZI will provide a simple means by which an individual can request not to receive direct marketing.
PartsEZI will only transfer personal information about an individual to someone (other than PartsEZI or the individual) who is in a foreign country if that person agrees to treat the information in compliance with the Australian Privacy Principles.
PartsEZI will not adopt as its own identifier of an individual, a government related identifier of the individual.
When PartsEZI has possession or control of a record that contains personal information, it will not use that information without taking steps as are reasonable in the circumstances to ensure the information is accurate, up to date and complete.
When PartsEZI has possession or control of a record that contains personal information, it will take reasonable steps in the circumstances to ensure the following: The record is protected by security safeguards against loss; against unauthorised access, use, modification or disclosure; and against other misuses. It will destroy or permanently de-identify personal information if it is no longer needed for any purpose for which the information may be used or disclosed under Principle 3.
If PartsEZI holds personal information about an individual, it will provide the individual with access to the information on request by the individual, except to the extent of exceptions detailed in the APPs. PartsEZI will provide reasons for denial of access to personal information.
If PartsEZI holds personal information about an individual and the individual requests that the information be corrected, PartsEZI will take reasonable steps to correct the information so that it is accurate, complete and up-to-date.
PartsEZI will provide reasons for any refusal to correct personal information.