Privacy Policy

Last updated: 8 October 2026

This Privacy Policy explains how Joomstore Digital (“Joomstore”, “we”, “us” or “our”) collects, uses, stores and discloses personal information. We are committed to handling personal information in line with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

This policy applies to personal information we collect through our website at joomstore.com.au, when you contact us, and when we provide web design, development, hosting, maintenance, security, digital marketing and AI services to our clients.

1. What personal information we collect

Personal information is information or an opinion about an identified individual, or an individual who is reasonably identifiable. The types of personal information we collect depend on how you deal with us, and may include:

We do not seek to collect sensitive information (such as health, racial or ethnic origin, political or religious information). Please do not include sensitive information in website forms or messages unless we specifically ask for it and you consent.

2. How we collect personal information

We collect personal information directly from you where reasonably practicable, including when you:

We may also collect personal information from third parties, such as your colleagues or organisation when they engage us on your behalf, our clients when we work on their websites and systems, referral partners, and publicly available sources such as business directories and LinkedIn.

3. Why we collect, use and hold personal information

We collect, use and hold personal information so that we can:

We will only use or disclose your personal information for the purpose for which it was collected, for a related purpose you would reasonably expect, with your consent, or where permitted or required by law.

4. Direct marketing

We may send you marketing communications about our services where you have consented or where the law otherwise permits it. Every marketing email we send includes a simple way to unsubscribe, and you can also ask us at any time to stop sending you marketing by contacting us using the details below. We handle electronic marketing in line with the Spam Act 2003 (Cth).

5. Cookies, analytics and third-party services

Our website uses cookies and similar technologies. Some are needed for the website to work and stay secure, and others help us understand how visitors use the site. We use the following third-party services:

These providers may collect information such as your IP address and device details in line with their own privacy policies. If we run online advertising, advertising platforms such as Google Ads may also use cookies to measure the results of our campaigns.

You can block or delete cookies through your browser settings, and you can opt out of Google Analytics using the Google Analytics opt-out browser add-on. Blocking some cookies may affect how parts of our website work.

6. Who we disclose personal information to

We do not sell personal information. We may disclose personal information to:

We require our service providers to handle personal information securely and only for the purposes for which we provide it.

7. Disclosure overseas

Some of our service providers store or process information outside Australia, including in the United States, the European Union and other countries where their data centres are located. Where we disclose personal information overseas, we take reasonable steps to ensure the recipient handles it in a way that is consistent with the Australian Privacy Principles.

8. Personal information we handle for our clients

When we build, host, maintain, secure or market websites and systems for our clients, we may have access to personal information collected by those clients, such as their customer, member or donor records. We handle that information on our clients’ behalf, only as needed to provide our services and in line with our agreements with them. If you have a question about how one of our clients handles your personal information, please contact that organisation directly, and we will assist them as required.

9. Automated decisions and AI

We do not use your personal information to make decisions that significantly affect you using a computer program alone. We use automated tools, including spam filtering and analytics, to protect and improve our website. Where we use AI tools in our work, our team reviews the results and remains responsible for them. If this changes, we will update this policy to explain the kinds of personal information used and the kinds of decisions made.

10. How we keep personal information secure

Security is a core part of what we do. We take reasonable steps to protect personal information from misuse, interference, loss, and unauthorised access, modification or disclosure. These steps include encrypted connections (HTTPS), access controls and strong authentication, restricted access on a need-to-know basis, regular software updates and security monitoring, and secure backups.

No method of transmitting or storing information is completely secure. If a data breach occurs that is likely to result in serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner (OAIC) as required by the Notifiable Data Breaches scheme.

We keep personal information only for as long as we need it for the purposes described in this policy, or as required by law (for example, tax and business records). When it is no longer needed, we take reasonable steps to securely destroy or de-identify it.

11. Dealing with us anonymously

You can browse our website without telling us who you are, and you may use a pseudonym when making a general enquiry. However, we will usually need your name and contact details to respond to an enquiry or provide services.

12. Accessing and correcting your personal information

You can ask for access to the personal information we hold about you, or ask us to correct it if you believe it is inaccurate, out of date, incomplete, irrelevant or misleading. Please contact us using the details below. We will respond within a reasonable time, usually 30 days. We may need to verify your identity first. If we refuse your request, we will tell you why in writing, unless it would be unreasonable to do so.

13. Questions and complaints

If you have a question about this policy, or a complaint about how we have handled your personal information, please contact us:

Privacy Officer, Joomstore Digital
341 Oxford Street, Leederville, Perth WA 6007
Phone: 1300 566 652
Email: [email protected]

We will acknowledge your complaint promptly and aim to resolve it within 30 days. If you are not satisfied with our response, you can contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au, by phone on 1300 363 992, or by post to GPO Box 5288, Sydney NSW 2001.

14. Changes to this policy

We may update this Privacy Policy from time to time to reflect changes in our services, technology or the law. The current version will always be published on this page, with the date it was last updated.