Privacy policy

 

1.     We respect your privacy

1.1.             Mytab Pty Ltd (ACN 639 175 581) (Company, we, our or us) respects your privacy and recognises the trust you are placing in us by providing us with your personal information.  We are committed to safeguarding the privacy of users of our MyTab software applications  (Application), visitors of our websites (www.mytabinfo.com and www.manage.mytabinfo.com)  (Website) and social media, customers and other users of our services.

1.2.             We adhere to the Australian Privacy Principles contained in the Privacy Act 1988 (Cth) (Privacy Act). This Privacy Policy sets out how we collect, hold, use and disclose your personal information that you provide to us (Privacy Policy).

1.3.             ‘Personal information’ is information we hold which is identifiable as being about you.

1.4.             By using our products and services, including our Application and Website, or otherwise providing us with personal information, you agree to the terms of this Privacy Policy and consent to us collecting, holding, using and disclosing information in accordance with this Privacy Policy. Where we disclose your personal information to third parties, we will request that the third party follow this Privacy Policy regarding handling your personal information.

2.     Collection of personal information

2.1.             The Company will, from time to time, receive and store personal information you enter into the Application, Website and our social media, provided to us directly or given to us in other forms.

2.2.             The kinds of personal information we collect and hold about you will depend on the circumstances of our collection.  Generally, we collect the following kinds of personal information, which we have grouped together as follows:

             2.2.1.         Identity Data such as your name, date of birth and profile photo (optional).

             2.2.2.         Contact Data such as your email address and account mobile phone number.

             2.2.3.         Profile Data such as your feedback and opinions, venue suggestions, activities and interests, and any other information you provide us.

             2.2.4.         Technical Data such as your last known location while accessing the Application or Website, mobile unique device ID, internet protocol (IP) address, device identification, your login data, browser type and version, operating system, time zone setting, browser plug-in types and versions and other technology on the devices you use to access the Application or Website.

             2.2.5.         Usage Data such as information relating to how you use the Application, your account preferences, activity details and interactions (including statistics on page views and clicks).

             2.2.6.         Marketing and Communications Data such as your preferences in receiving marketing from us and third parties and your communications preferences.

             2.2.7.         Location Data such as location information from a mobile device using GPS technology (or other similar technology) in order to determine the city you are located within and display a location map with relevant advertisements and venues.

2.3.             We may collect or receive additional information from you at other times, including but not limited to, when you provide feedback, when you provide information about your personal or business affairs, change your content or email preference, respond to surveys and/or promotions, provide financial or credit card information, when you access our Website or communicate with our customer support.

2.4.             We will not collect sensitive information relating to you unless we have your consent and the information is reasonably necessary for one of our functions or activities (unless we are otherwise required or authorised by law to collect that information). Examples of sensitive information include information relating to your health, dietary requirements, location of employment, contact details and credit history.

2.5.             You must only provide us with personal information of another person if that person has given you their consent to share their information with us. If you provide us with personal information of another person, you are responsible for ensuring that such person is made aware of the information contained in this Privacy Policy.

2.6.             If you choose not to provide us with your personal information (excluding optional information), we may not be able to provide you with the information or services you request, including use of the Application or Website.

3.     Application

When you use the Application and Website

3.1.             The Application may collect certain information such as mobile unique device ID, the IP address of your mobile device, mobile operating system, the type of mobile internet browsers you use, and information about the way you use the Application. This information is used to analyse how people use the Application, such that we can improve our service.

3.2.             When you come to our Website we may collect certain information such as browser type, operating system, website visited immediately before coming to our Website, etc. This information is also used in an aggregated manner to analyse how people use our Website, such that we can improve our service.

3.3.             We may use GPS technology (or other similar technology) to determine your current location in order to determine the city you are located within and display a location map with relevant advertisements and venues. We will not share your current location with other users of the Application or third parties.

Cookies and APIs

3.4.             We may from time to time use cookies and application programming interfaces (APIs) in the Application and on our Website. Cookies are very small files used to identify you when you come back to the Application or the Website and to store details about your use of the Application and the Website. Cookies are not malicious programs that access or damage your mobile device or computer. Most web browsers automatically accept cookies but you can choose to reject cookies by changing your browser settings. APIs are software intermediaries which allow applications to interact (for example, MyTab and Facebook and other social media platforms, or MyTab and advertising platforms who have referred you to us). Rejecting cookies and APIs may prevent you from taking full advantage of the Application and the Website.

Third party sites

3.5.             The Application and our Website may have links to other websites not owned or controlled by us. These links are meant for your convenience only. Links to third party websites do not constitute sponsorship or endorsement or approval of these websites. Please be aware that the Company is not responsible for the privacy practices of other such websites. We encourage our users to be aware, when they leave the Application or our Website, to read the privacy statements of each and every website that collects personal identifiable information.

4.     Use of your personal information

4.1.             We use personal information collected for the purposes for which it is collected and for related purposes, and as permitted or required by law. We may use personal information collected to:

             4.1.1.         verify your identity;

             4.1.2.         provide you with our services;

             4.1.3.         respond to your enquiries or requests for information or assistance (including in respect of our services);

             4.1.4.         to communicate with you, including where we are required to do so under our Terms and Conditions (for venues and customers);

             4.1.5.         for marketing purposes, where you have expressly opted-in, to make you aware of new and additional products, services and opportunities available to you, including those offered by Venues and/or Third Party Providers;

             4.1.6.         improve our Application, Website and other products and services;

             4.1.7.         provide updates to you in relation to our Application and Website;

             4.1.8.         to facilitate Premium + Features on the Application; and

             4.1.9.         to otherwise ensure the proper functioning of our business operations and processes including the Application.

4.2.             The Company may contact you by a variety of measures including, but not limited to email, text-message, telephone, by post or in-app.

5.     How we hold your personal information

5.1.             All data is stored with Amazon Web Services (AWS) cloud services.

5.2.             Mytab's data in transit is currently encrypted with SSL/TLS and Mytab’s data at rest is currently encrypted with industry standard AES-256 encryption algorithm.

6.     Disclosure of your personal information

6.1.             We may disclose your personal information to any of our employees, officers, insurers, professional advisers, agents, suppliers, subcontractors or related bodies corporate insofar as reasonably necessary for the purposes set out in this Privacy Policy, including as may be required for the delivery of our services, to comply with our obligations under our Terms and Conditions, or for our business purposes. Personal information is only supplied to a third party when it is required for the delivery of our services or for the functionality of the Application.

6.2.             We may also from time to time need to disclose personal information:

             6.2.1.         to comply with a legal requirement, such as a law, regulation, court order, subpoena, warrant, in the course of a legal proceeding or in response to a law enforcement agency request; and

             6.2.2.         to other parties as we believe to be appropriate to protect our legal rights, property, safety (or the safety of our customers or third parties), privacy (or the privacy of our customers or third parties).

             6.2.3.         to third parties for the purposes of managing any order which you might place with venues (for example, a venue can call or text you if there is a problem with your order), but we require venues not to use that information for the purposes of direct marketing to you, unless you have expressly opted-in.

6.3.             We may also use your personal information to protect the copyright, trade marks, legal rights, property or safety of the Company, its customers or third parties.

6.4.             Information that we collect may from time to time be stored, processed in or transferred between parties located in countries outside of Australia.

6.5.             If there is a change of control in our business or a sale or transfer of business assets, we reserve the right to transfer, to the extent permissible at law, our user databases, together with any personal information and non-personal information contained in those databases. This information may be disclosed to a potential purchaser under an agreement to maintain confidentiality. We would seek to only disclose information in good faith and where required by any of the above circumstances.

6.6.             Some of the third parties who we disclose personal information to may be located in other countries. For instance, the Application’s developers have a global presence in India, USA, Canada, UK, UAE and Australia.  If we disclose personal information to a third party located overseas, we will take reasonable steps to ensure that your personal information will be given adequate protection as required by the Privacy Act.

6.7.             The Terms and Conditions governing your access and use of the Application provides further details about disclosure of your personal information. 

7.     Security of your personal information

7.1.             The Company is committed to ensuring that the information you provide to us is secure. In order to prevent unauthorised access or disclosure, we have put in place suitable physical, electronic and managerial procedures to safeguard and secure information and protect it from misuse, interference, loss and unauthorised access, modification and disclosure.

7.2.             We also take reasonable steps to destroy or de-identify your personal information, when it is no longer needed for any lawful purpose or when requested by you.

7.3.             The transmission and exchange of information is carried out at your own risk. We cannot guarantee the security of any information that you transmit to us or receive from us. Although we take measures to safeguard against unauthorised disclosures of information, we cannot assure you that personal information that we collect will not be disclosed in a manner that is inconsistent with this Privacy Policy.

7.4.             Any breach of our data containing your personal information that is likely to result in serious harm to you will be notified by us in accordance with the Notifiable Data Breaches Scheme.

8.     Correction of your personal information

8.1.             We take reasonable steps to ensure that all information we collect, hold, use or disclose about you in accordance with this Privacy Policy is accurate, complete and up-to-date.

8.2.             If you wish to notify us of any changes to your personal information or would like us to correct any personal information we hold about you, please feel free to contact us at hello@mytabinfo.com. Please note we may ask you to verify your identity to ensure that personal information we hold is not improperly accessed.

9.     Direct marketing

9.1.             As mentioned above, we may use your personal information for marketing purposes to make you aware of new and additional products, services and opportunities, if you have expressly opted-in.

9.2.             If you prefer not to receive these communications, you can opt-out by contacting us.  If you receive electronic marketing communications from us, there will be an unsubscribe or ‘opt-out’ option that you can use to opt-out of receiving these communications.

9.3.             Where you have expressly opted in, Venues and/or Third Party Providers may use your personal information to send you marketing communications (including by electronic means such as email or SMS). Venues and/or Third Party Providers must comply with the Privacy Act 1988 (Cth) and the Spam Act 2003 (Cth) when sending you such communications. 

9.4.             You may withdraw your consent to receive marketing communications at any time by following the unsubscribe instructions provided by the Venue and/or Third Party Provider.

10.  Access to your personal information

10.1.          You may request details of personal information that we hold about you in accordance with the provisions of the Privacy Act. A small administrative fee may be payable for the provision of information. If you would like a copy of the information, which we hold about you or believe that any information we hold on you is inaccurate, out of date, incomplete, irrelevant or misleading, please email us at hello@mytabinfo.com.

10.2.          We reserve the right to refuse to provide you with information that we hold about you, in certain circumstances set out in the Privacy Act. If we deny your request, as permitted or required by law, we will provide you with reasons for your refusal.

10.3.          Further information on your rights is available from the Office of the Australian Information Commissioner(OAIC).

11.  Complaints about privacy

11.1.          If you are dissatisfied with the way we have used your personal information or would like to make a complaint about a breach of this Policy or the Australian Privacy Principles, please feel free to send in details of your complaints to hello@mytabinfo.comPlease provide us with sufficient details regarding your complaint and any supporting documentation.

11.2.          We take complaints very seriously and will respond shortly after receiving written notice of your complaint.

11.3.          If you remain dissatisfied, you have the right to lodge a complaint with the OAIC at Privacy complaints — OAIC.

12.  Changes to Privacy Policy

12.1.          Please be aware that we may change this Privacy Policy in the future. We may modify this Privacy Policy at any time, in our sole discretion and all modifications will be effective immediately upon notifying you through the Application or our posting of the modifications on our Website.

12.2.          You should check the Application and Website regularly to take notice of any changes we may have made to this Privacy Policy. Your continued communication with us (including using our Application, Website or social media accounts) or your provision of further personal information to us once this Privacy Policy has been amended, replaced or varied will constitute your acceptance of the amended, replaced or varied Privacy Policy.

13.  Deletion of Account

13.1.          You can at any time elect to delete your account on the Application by navigating to the settings with the Application and Website (www.manage.mytabinfo.com). Deletion applies only to the personal information of the account holder who requests deletion. It does not require us to delete the personal information of other individuals (e.g., customers or venues) connected to the same transactions.

13.2.          The deletion of your account (whether by termination by you or by the Company)  will:

             13.2.1.         delete or de-identify personal information that identifies you from our active systems. In some cases, your account may be anonymised (for example, by removing your name and replacing it with “Anonymous”) while retaining associated transaction records.

             13.2.2.         permit the Company to retain order records, transaction data, and other business records in a de-identified form for legitimate business purposes, including (without limitation) compliance with legal, tax, accounting, and regulatory obligations; fulfilling contractual commitments; managing disputes, claims, or chargebacks; maintaining transaction and order history; maintaining accurate business and performance records; and producing anonymised or aggregated analytics; and

             13.2.3.         ensure that these retained records will no longer reasonably identify you, and we will not attempt to re-identify such data. Any retained de-identified data will be handled in accordance with this Privacy Policy and applicable laws. 

13.3.          Where an account relates to a business (such as a Venue or Third Party Provider), deletion applies only to Personal Information relating to the identifiable individual associated with that business (such as an account holder). Business information such as a venue name, trading name, ABN/ACN, business address, business contact details (including email addresses used for business operations) and transaction records will generally be retained for legitimate business, legal and operational purposes, including facilitating customer communication in relation to transactions. Where any such information also constitutes Personal Information, we will handle it in accordance with this Privacy Policy and applicable laws.

13.4.          Deletion will occur within a reasonable period. Residual copies of personal information may remain in backup systems for a limited retention period before being securely deleted or overwritten in accordance with our data retention practices and security measures.

13.5.          Where your personal information has been disclosed to third parties (including payment providers such as Stripe, integration providers such as Doshii, or other third party services), those third parties may retain and process your information in accordance with their own privacy policies and legal obligations. We do not control and are not responsible for the data retention or deletion practices of such third parties, and you may need to contact them directly.

13.6.          Accounts can be deleted at the user’s request. Contact hello@mytabinfo.com  for details. Please note, account deletion will result in the deletion or de-identification of personal information from our active systems in accordance with this Privacy Policy and it cannot be recovered.