Mix and Match

Privacy policy

PRIVACY STATEMENT - UPDATED AS OF JUNE 2023

SECTION 1 - HOW WE HANDLE YOUR INFORMATION

When you make a purchase from our online store, we collect certain personal information that you provide, such as your name, address, and email address. This information is essential for the buying and selling process. While you browse our store, we automatically receive your computer's internet protocol (IP) address to gather details about your browser and operating system, enabling us to enhance your browsing experience. Email Marketing: If you grant us permission, we may send you emails regarding our store, including updates on new products and other relevant information.

SECTION 2 - CONSENT

How do we obtain your consent? By providing us with your personal information to complete a transaction, verify your credit card, place an order, arrange delivery, or process a return, we assume that you consent to us collecting and using your information for that specific purpose only. If we require your personal information for any additional purposes, such as marketing, we will directly ask for your explicit consent or provide you with an opportunity to decline.

How can you withdraw your consent? Should you change your mind after opting in, you can withdraw your consent for us to contact you and for the continued collection, use, or disclosure of your information at any time. Simply contact us at theo@theodoredesigns.com.au or send a mail to: Theodore Designs 356 Victoria Street, Melbourne Victoria, AU 3121

SECTION 3 - DISCLOSURE

We may disclose your personal information if required by law or if you violate our Terms of Service.

SECTION 4 - OUR PARTNERSHIP WITH SHOPIFY

Our online store is hosted on Shopify Inc., which provides us with an e-commerce platform to sell our products and services to you. Your data is stored through Shopify's data storage, databases, and the general Shopify application, all of which are securely managed on servers protected by firewalls.

Payment: If you choose a direct payment gateway to complete your purchase, your credit card data is stored by Shopify. It is encrypted using the Payment Card Industry Data Security Standard (PCI-DSS). Your purchase transaction information is retained only as long as necessary to process your order. Once completed, your purchase transaction data is deleted. All direct payment gateways comply with PCI-DSS standards, overseen by the PCI Security Standards Council, a collaboration among major card brands like Visa, Mastercard, American Express, and Discover. PCI-DSS requirements ensure the secure handling of credit card information by our store and its service providers. For further insight, we recommend reading Shopify's Terms of Service (https://www.shopify.com/legal/terms) and Privacy Statement (https://www.shopify.com/legal/privacy).

SECTION 5 - THIRD-PARTY SERVICES

In general, third-party service providers that we utilize will only collect, use, and disclose your information to the extent necessary to perform the services they provide to us. However, certain third-party service providers, such as payment gateways and transaction processors, have their own privacy policies regarding the information we must provide for your purchase-related transactions. We recommend reviewing their privacy policies to understand how these providers handle your personal information. Please note that some providers may be located in or operate facilities in different jurisdictions than you or us. Therefore, if you choose to proceed with a transaction involving a third-party service provider, your information may be subject to the laws of the jurisdiction(s) in which that service provider or its facilities are located. For example, if you are in Canada and your transaction is processed by a payment gateway located in the United States, your personal information used in completing that transaction may be subject to disclosure under United States legislation, including the Patriot Act. Once you leave our

----