In some cases, RY asks Customers directly for information in order for them to open an account, purchase products or use our services, and, in other cases, information is collected from third party sources or automatically as Customers are using the Website. The main types of personal information RY collects and the main purposes for which personal information is collected, used, stored and disclosed are set out below
1.1 Active Collection
RY collects certain information either voluntarily or as required in order to register an account with RY or use or receive information about certain RY services. This type of information includes:
Order form. Contact information, such as name, mailing address, e-mail address and phone number
Shipping or transaction information, such as billing address and financial information (credit card number and expiration date) if you choose to purchase products offered for sale on the Website. If we have trouble processing an order, the information is used to contact you.
Demographic information such as post code.
Information you enter in forms and optional surveys or contests, such as name and e-mail address.
Information provided in connection with product review forums, discussion groups, bulletin boards, in chat rooms, and in messaging or other interactive services.
Information provided in e-mail requests and communications.
Information from other sources. In order to personalise our service by providing better product recommendations or special offers we may think will interest you, we may receive information about you from other sources and add it to our account information. We also sometimes receive updated delivery and address information from our shippers or other sources so that we can correct our records and deliver your next purchase or communication more easily.
1.2 Passive Collection
Some information is collected automatically while you are using the Website. It is important to note that RY must store this information in order to ensure its Customers receive optimal service while using RY services. This type of information may include:
(a) Log Files
Log file information, such as IP addresses, browser type, domain names, number of page views, login frequency, page or section accesses. Log files are used to track member usage and engagement and to gauge the effectiveness of our different services. We use your IP address and other information to help diagnose problems with our server and to administer the Web site.
RY also uses third parties to provide services to you on behalf of RY, and in doing so they must set cookies on the site.
For example, we use a third party to provide web analytic services which allow RY to track website usage statistics and checkout information. Your use of the site is not affected if you reject this cookie. For information on how to have your browser disable cookies or provide a warning before accepting a cookie, please refer to the cookie options in your browser's Options or Preferences menu.
Cookies are used to:
(i) Store session state information (ii) Authenticate Customers (iii) Help customise content delivery (iv) Provide context-sensitive help (v) Protect Website security and login time-outs (c) Clear Gifs (Web Beacons/Web Bugs).We employ a software technology called clear gifs (also called Web Beacons or Web Bugs), that helps us better manage content on our site by informing us what content is effective. Clear gifs are tiny graphics with a unique identifier, similar in function to cookies, and are used to track the online movements of Web users. The main difference between the two is that clear gifs are invisible on the page and are much smaller, about the size of the full-stop at the end of this sentence. Clear gifs are tied to Customers' personally identifiable information. We use clear gifs in our HTML-based e-mails to let us know which e-mails the recipients have opened. This allows us to gauge the effectiveness of our marketing campaigns. If Customers would like to opt-out of these e-mails, they should see section 9 below.
Also, clear gifs, which may be set by a third party, are used on pages to track sales, which may result from our Internet advertising campaigns and banner advertisements appearing on other web sites. In order to track the effectiveness of our marketing campaigns, aggregate data pertaining to the marketing spend, items purchased, and campaign the customer responded to, is sent to third party servers for the purpose of tracking which sales resulted from specific advertising campaigns and to track conversion sales coming from banner advertisements.
2. What Personal Information does RY Collect and Why?
(a) To contact you about our products and services or about your use of our Website. For example, Customers will receive a welcome e-mail, e-mail newsletters, and customised content, and they may receive updates when RY has new product features or enhancements or other news to relay to our Customers.
(b) For marketing and promotional purposes. RY does not use individually identifiable health information that may be collected in our product review forums, discussion groups, or other interactive forums for marketing purposes.
(c) To respond to your comments or requests or to request feedback regarding our products or services.
(d) For billing purposes, to facilitate transactions and to fill Customer orders in connection with purchases of products offered by RY.
(e) For the specific purpose for which the information was provided.
(f) To improve the products and services we offer.
(g) As you otherwise direct or authorise.3. How does RY communicate with customers?
RY would like to communicate with its Customers when we have new products or services we feel are of special interest to you. When you register an account with RY, purchase products from RY or otherwise request to receive information about our products and services you will receive the following types of communications:
(a) Special Offers and Updates. Customers and those that sign up to receive marketing information will receive information on products, services and special deals or coupons. Out of respect for the privacy of our Customers, you have the option to not receive these types of communications. Please see section 9 below
(b) Customer Service. We communicate with Customers to provide requested services and in regard to issues relating to their account, and we reply via e-mail or phone, in accordance with the Customer's wishes
4. What Information is shared with third parties?
Information about our customers is an important part of our business. RY discloses information you provide to us in connection with the purposes described above as follows:
(a) Third party intermediaries. We will share your information with independent contractors, service providers and consultants who assist us in our business or in providing Customers with goods or services. Such service providers may include, without limitation, product suppliers in order to fulfil orders, credit card processing and shipping companies. However we will only share such personally identifiable information, as we deem necessary for them to carry out their obligations to RY. Third parties are required to only use and/or disclose your personally identifiable information for the purpose for which RY disclosed the information to them, and no other purpose.
(b) We also share aggregated demographic information with independent contractors, service providers, consultants, advertisers and other partners.
(c) RY investors receive reports on number of Customers, items purchased, page views, logins, etc. They do not receive any personally identifiable information.
(d) If you share individually identifiable health information in our product review forums, discussion groups, or through other interactive features, it is not shared with third parties by RY. However, information you may share in a public forum is considered public information if you choose to share it.
(e) Our personnel, including our employees to the extent that they need to access that personal information in connection with their duties. For more information, see section 5 below.
(f) Business transitions. In the event that RY Australia Pty Ltd goes through a business transition, such as a merger, being acquired by another company or selling a portion of its assets, Customers' personal information generally is one of the transferred business assets. For more information, see section 11 below.
(g) RY will also disclose personal information it has collected if necessary to fulfil our service obligations or if we are required to do so by law. We will also disclose personal information if, in our good faith judgement, such action is reasonably necessary to comply with a current judicial proceeding, a court order or legal process served on our Website, to respond to any claims, or to protect the right of RY and its Customers and the public.
(h) Information with your consent. Other than as described above, you will receive notice when information about you may go to third parties, and you will have an opportunity to choose not to share the information.
(i) To related bodies corporate.
The following outlines different types of security procedures RY has in place to protect the loss, misuse or alteration of the personal information we collect.
5.1 Identification an Authentication
5.2 Authorisation and Access Control
Only authorised personnel have access to restricted data. Access to sensitive data such as customer financial information and individually identifiable health information is revoked in a timely manner for employees who change function or resign. Nondisclosure Agreements are in place with contractors and third parties having access to sensitive data.
5.3 Data Confidentiality
RY uses 128-bit encryption and a security firewall to protect the confidentiality of customer information
5.4 Data Integrity and Retention
We implement full database backups by our certified Database Administrator to establish data consistency and integrity. We also grant Customers access to their information in accordance with clause 10 below in order to verify that the data is still accurate and has not been modified or corrupted.
Data is stored on our secure server and backed up to tape. Such data is stored to the extent require by federal, state and local laws. Our web servers are located in a secure and environmentally controlled room/location. Backups are automated and scheduled using industry-standard net backup software and backup tapes are continuously stored in a secure location off-site.
5.5 Data Management and Monitoring
All employees of RY are informed of the company's security policies. RY's new hires are briefed on security and privacy issues and the security policies are also covered in the employee manual. RY's departments review security measures at regular department meetings.
Security and privacy threats, operational and technical vulnerabilities have been assessed and countermeasures have been taken to reduce these vulnerabilities. New threats are consistently evaluated and measures are taken to prevent them from occurring at RY. In addition, a security firewall screens access events and non-valid attempts are denied and logged. More stringent countermeasures are being implemented by RY's security administrator on a continuous basis.
7. Surveys and Contests
From time to time, our Website requests information from Customers via surveys or contests. Participation in these surveys or contests is completely voluntary and the user therefore may choose whether or not to disclose this information. The requested information typically includes contact information (such as name, email address and/or shipping address) and demographic information (postcode). Contact information will be used to notify the winners and to award prizes. Anonymous survey information will be used for purposes of monitoring the use of our Website and improving user satisfaction.
RY does not sell products for purchase by children. We may sell children's products for purchase by adults. If you are under 18, you may use the Website only with involvement of a parent or guardian.
9. Choice to Unsubscribe/Opt-Ou
RY gives Customers the ability to opt our of receiving future communications by calling us at (02) 8311 0770 or via their online account. See our help centre for advise on how to do so. For example, Customers may wish to opt our of having their personal information used in order to receive marketing communications which are directly related to RY's products and services.
10. Accessing and Correcting Information and Complaints Handling
If you wish to make a complaint about the way we have handled your personal information (including if you think we have breached the Privacy Act), you may do so by contacting us using the details set out in section 12. If you make a complaint, please include contact details such as your name, address, telephone number and email address and clearly describe your complaint. We will respond to your complaint within a reasonable period and will endeavour to deal with your complaint in an efficient manner.
11. Notification of Changes
12. Addressing Privacy and Security Concerns
Telephone: (02) 8311 0770 (Monday 7am- Fri Midnight, Closed Sat & Sun)