Definition of personal information
Problems, Complaints or Queries
- For individuals in Australia:
Mail: Privacy Officer
Healesville Distilling Pty Ltd (Trading as Four Pillars), PO Box 467, Healesville, Victoria, Australia 3777
- For individuals in the European Union, please contact our European Union Representative at:
Attn: Joe Worthington
Address: 17 Ashmere Grove, London SW2 5UH
- Please allow 30 days for this request to be processed. On receipt of your query, problem or complaint a review will be conducted and findings will be communicated to you where required. If you do not receive a satisfactory response to your query, problem or complaint within 30 days, you may refer your query, problem or complaint to the Office of the Australian Information Commissioner via the contact details listed at http://www.oaic.gov.au/about-us/contact-us-page, or, for individuals in the EU, to the data protection supervisory authority in your country.
On what basis do we process your data?
Lawful basis of processing
- For individuals in the European Union, Four Pillars may also rely on the lawful bases of contract and legitimate interest. That is, where you enter into a contract with us, Four Pillars will process your personal information because it is necessary for the performance of that contract with you. In some circumstances, such as fraud prevention, Four Pillars may also have a legitimate commercial interest in processing your personal information that is not outweighed by your interests, rights and freedoms. Four Pillars may also request your explicit consent to process your personal data from time to time for various purposes.
- Four Pillars also reserves the right to use, disclose or otherwise process any personal information to satisfy any law, regulation or legal request, or in relation to Four Pillars’s other legitimate interests such as where that personal information is relevant to legal action relating to Four Pillars).
When and how do we collect personal information?
- We (or our subcontractors) collect and combine personal information in a number of ways through the following channels (each, a Collection Channel):
- our websites, including but not limited to www.fourpillarsgin.com.au;
- any related Four Pillars website, social media page, internal website, intranet and any Four Pillars mobile or tablet applications;
- our online properties (here and after, each a “Website”), including:
- our service providers acting on behalf of us (including but not limited to Eventbrite and Pozible), or other legitimate third party sources;
- physical and other ad-hoc channels of collecting personal information in relation to events and the Four Pillars distilleries (such as through paper forms or tablets); and
- any other means through which an individual provides personal information to Four Pillars, including either physically or electronically.
Active Information Collection
- Personal information may be collected and combined via our Collection Channels if you:
- you purchase products either as a “guest” or a “member” through a Collection Channel, or create an account with Four Pillars through a Collection Channel;
- subscribe to any newsletters, updates, alerts or news and media releases, or request launch or event information or information about our products or services or other information services as well as third party products or services;
- complete and submit any forms or surveys provided to Four Pillars, either physically or electronically;
- conspicuously publish or provide on request your personal information to Four Pillars;
- contact us or our clients directly in person or via any medium including mail, telephone, social media and commercial electronic messages (SMS (Short Message Service), MMS (Multimedia Message Service), IM (Instant Messaging) and email) including via the contact details listed on a Website;
- participate in any events, offers, promotions, competitions or marketing activities;
- interact with a Website for a specific purpose; or
- interact with or browse a Website generally.
- We also collect your information through other legitimate third party sources including list brokers, social media organisations, and other data providers or organisations that share data in circumstances where it is lawful and/or you have given permission for them to do so.
What kinds of personal information does Four Pillars collect?
- We may collect personal information including:
- your full name, contact details (such as your email address, phone number, and contact preferences), location, and passwords you create for the Four Pillars website;
- information about your preferences, interests, opinions, feedback and experiences with our products or services. This information is collected in order to tailor our communications to you and continuously improve our products and services;
- financial details, if you have provided them to us, such as your bank account, credit card, Paypal or other online payment system details (where you purchase any products or services from us);
- When you visit the Four Pillars website, we may also collect personal information about you in the following general categories:
- device information: we may collect information about your mobile device such as the hardware model, operating system, preferred language, unique device identifier and mobile network; and
- other information: we may also collect and log information such as your IP address, access dates and times, browser type and pages visited when you interact with a website.
- any other personal information requested or required by a Collection Channel.
- We do not seek to collect sensitive information (or “special categories” of information under the GDPR).
Consequences of not providing personal information
- If you don’t provide us with personal information, we may be unable to provide you with our goods and services or other content, information, upcoming opportunity, promotion, event or product information.
For what purposes does Four Pillars collect, hold, use and disclose your personal information?
- Personal information that Four Pillars collects will be used for the following primary purposes:
Special offers, marketing and advertising
- where you have provided your separate consent, to provide you with early access to new releases, exclusive events, special offers, newsletters, events and promotions either of Four Pillars or its trusted partners, and to otherwise market to you (with direct marketing materials), via any medium including mail, telephone, commercial electronic messages (such as SMS, MMS, instant messaging, email, social media, mobile applications), or any other form of electronic, emerging, digital or conventional communications channel.;
- to provide you with relevant advertising;
Managing our relationship
- to carry out any purchases you make and otherwise manage our commercial and trading relationship with you including identifying you in our system and contacting you, invoicing you correctly, sending you our products and to address your expectations of us in respect of how we conduct our business;
- to ensure that your personal information remains up-to-date and complete;
- to provide you with information about your Four Pillars account, customer account, transactions, content, services and products;
- to fulfil obligations in respect of any contract between you and Four Pillars; to render services related to our Four Pillars and customers (such as after sales services and enquiries); to facilitate payments from you;
- to contact you, including sending you any technical, administrative or legal notices relevant to Four Pillars or the Four Pillars Websites;
- to otherwise maintain our relationship with you;
Four Pillars’ Website
- to maintain the functionality of the Four Pillars website, including the provision of information to you relating to the content available on the website; to improve the website and system administration;
Improving our offerings
- to better understand and meet your needs and interests, to enable us to improve the nature of the goods and services we provide and to more accurately market our goods and services, and research our customers;
- to obtain opinions or comments about products and/or services and to conduct other research and development;
- to record statistical or de-identified data for analysis including marketing analysis;
- to conduct market research including identifying likeminded individuals;
- for any further purposes stated in a particular Collection Channel;
- where explicitly notified to you, to undertake recruitment for Four Pillars;
- to manage your employment with Four Pillars (if applicable);
- any other purpose as may be deemed reasonably necessary by Four Pillars in the circumstances;
- as needed to satisfy any law, regulation or legal request, to protect the rights or property of Four Pillars, any member of the Four Pillars group, or any member of the public, to protect the integrity of the Four Pillars website, to fulfill your requests, or to cooperate in any law enforcement investigation or an investigation on a matter of public safety.
Contact by Four Pillars
- Despite removing your name from the database from receiving future advertising and marketing information, Four Pillars may send you non-commercial “Administrative Emails”. Administrative Emails relate to a Four Pillars user account and may include administrative and transaction confirmations, requests and inquiries or information about a particular Four Pillars user account. If you do not wish to receive such communications from Four Pillars, you may remove your name from the database by contacting Four Pillars’ Privacy Officer. Please allow 30 days for this request to be processed.
- Four Pillars does not make decisions that produce significant effects on you which are solely based on automated decision making.
How do we share your personal information?
- Solely for the purposes described above, personal information may be shared with the entities below including their directors, servants and agents and related bodies corporate:
- our marketing and email sending partners;
- technical service providers, such as mail carriers, hosting providers, IT companies and communications agencies;
- other trusted service providers; and
- Four Pillars group companies (if applicable).
- These recipients may be engaged by Four Pillars to perform a variety of functions, such as legal and accounting services, data storage, support services, conducting market research, processing credit card payments, assisting with promotions and providing technical services for our websites. These companies may have access to personal information if needed to perform such functions. Your credit card details are only used to facilitate your purchase. They are not used for any other purpose and will never be supplied to a third party other than Four Pillars or our relevant service provider. If you are a business we trade with, we may disclose your information to debt recovery agents or credit reporting bodies if necessary.
- Some of the recipients of your personal information may be located overseas. Four Pillars employees, data processors and other trusted third parties are obliged to respect the confidentiality of any personal information held by Four Pillars. However, security of communications over the Internet cannot be guaranteed, and therefore absolute assurance that information will be secure at all times cannot be given. Four Pillars will not be held responsible for events arising from unauthorised access to personal information except to the extent required by the relevant privacy laws.
- The recipients of your personal information are located in countries including Australia, and the United States
- For individuals in the EU, please note that the recipients of your personal information may be located in countries in which the privacy or data protection laws differ from those of the European Union, and which are not the subject of an adequacy decision by the European Commission. For recipients of your personal information in Australia, appropriate or suitable safeguards over your personal data have been put in place by virtue of our compliance with the standard data protection contract clauses approved by the European Commission. Please contact our Privacy Officer for more information.
How do we hold, and how long do we hold your personal information?
- Four Pillars takes appropriate security measures to keep personal information secure and to prevent unauthorised access, disclosure, modification or destruction of personal information. Four Pillars, its employees and its subcontractors are obliged to respect the confidentiality of any personal information held by Four Pillars.
Your privacy rights
- You have a number of rights under the Australian Privacy Law and the GDPR. These include:
- (access) to request access to your personal information from us, in a commonly used electronic format. On a case by case basis, Four Pillars may determine that it is not legally required to give an individual access to personal information, in which case Four Pillars will provide you with a written notice of its refusal to provide access;
- (correction) to request that we correct your personal information;
- (withdrawing consent) to withdraw your consent for us to use your personal information. Please note that you can also opt-out of online marketing communications at any time by using the unsubscribe feature in each electronic commercial message;
- (transparency) to be informed generally about the collection and use of your personal data, including where we intend to further process your personal data for additional purposes other than as discussed above; and
- (complaint) to complain about a breach of the Australian Privacy Principles.
- (deletion) you may also request that we delete your personal information, and all reasonable steps to delete the information will be made, except where it is required for legal reasons. Deletion of information may result in Four Pillars and its service providers or partners being unable to facilitate or provide you with information about certain transactions (including the uploading, access to, and receipt of content on a Website), other product content, or services information, upcoming promotion, competition or event information, and/or provide certain content, goods or services. Unless required by applicable law, we are not responsible for removing your personal information from the lists of any third party who has previously been provided your information in accordance with this policy.
- If you are an individual in the EU, you have additional rights under the GDPR that you can exercise against the “controller” of your data. Where we are the controller of your data, your rights include:
- (access) to request that we transfer your personal information to another service provider of your choosing;
- (erasure) to request that we erase your personal data. All reasonable steps to delete the information will be made, except where it is required for legal reasons. Deletion of information may result in us being unable to facilitate or provide you with information about certain services (including the uploading, access to, and receipt of content on a website or the Four Pillars Application, and purchase transactions undertaken on a website);
- (objection and restriction) in some circumstances, to object to the use of your personal data by us and request that we restrict our use of your personal information; and
- (complaint) to lodge a complaint in relation to our processing of your personal data with a data protection supervisory authority under the GDPR.
Anonymity and Pseudonymity
- Where practicable, Four Pillars will allow you to deal with us on an anonymous or pseudonymous basis. If this is practicable, our collection channels will only seek information in this way. However, where it is not practicable for the purposes for which information is collected, we will seek the personal information identified above. It will not be practicable to deal with you on an anonymous or pseudonymous basis when we wish to send you direct marketing materials or need to provide you with goods or services requested by you.
Sale of the company
- The collection of personal information is neither intended for, nor directed to, persons who are under the age of eighteen (18) years old. Personal information will not be knowingly collected about any person who is known by Four Pillars to be under the age of eighteen (18).
Passive Information Collection
- As with many commercial websites (and mobile and tablet applications), we may also collect information which tells us about visitors to our websites. For example, we may collect information about the date, time and duration of visits and which pages of a website are most commonly accessed. This information is generally not linked to the identity of visitors, except where a website is accessed via links in an email we have sent or where we are able to uniquely identify the device or user accessing a website. By accessing a website via links in an email we have sent and/or by accessing a website generally including when you are logged into an account, you consent to the collection of such information where it is personal information.
- Our websites may use and combine such passively collected anonymous information or personal information and/or information from various third party sources, including as described above, and may combine this anonymous information or personal information with other personal information collected from you to provide better service to website visitors and users, customise a website based on your preferences, compile and analyse statistics and trends, provide you with relevant advertising when you visit a website or a third party website, and otherwise administer and improve a website for your use. We may combine your visitor session information or other information collected through tracking technologies with personally identifiable information from time to time in order to understand and measure your online experiences and to determine what products, promotions and services are likely to be of interest to you. By accessing a website, you consent to information about you being collected, compiled and used in this way.
- For more information about cookies and how you can opt out, you can visit http://www.youronlinechoices.com.au/.
Four Pillars and other websites
- Our websites may, from time to time, contain links to the websites of other organisations which may be of interest to you. Their inclusion cannot be taken to imply any endorsement or validation by us of the content of the third party website. Linked websites are responsible for their own privacy practices and you should check those websites for their respective privacy statements. Four Pillars is not responsible, nor does it accept any liability, for the conduct of companies linked to our websites.
- We may use third party advertisements on our Websites. All third party advertising, if paid for, is paid for by the relevant third party advertisers and are not recommendations or endorsements by Four Pillars or any of its affiliates. Four Pillars is not responsible for the content (including representations) of any third party advertisement on a website. Cookies may be associated with these advertisements to enable the advertiser to track the number of anonymous users responding to the campaign. We do not have access to or control of cookies placed by third parties.
- Four Pillars may provide areas on a Website where you can upload user-generated content, post or provide information about yourself, communicate with other users, provide reviews for content, products and/or services or interact with or vote on particular content. This information may be shared with others and may be publicly posted on our Websites, including without limitation, other social media platforms and other public forums in which you choose to participate. This information may become publicly available and may be read, collected and used by others outside of our Websites. Four Pillars is not responsible for the conduct of others who may read, collect and use this information.