Privacy & Security

PRIVACY POLICY

Millennial Mall Pty Ltd (ABN 40 643 930 090 ), T/A The DOM.com is committed to protecting your personal information.

This Privacy Policy sets out the details relating to your data relationship with The DOM.com and applies to all services and interactions with The DOM.com and other related social media sites and pages.

This Privacy Policy applies to products and services offered by us, and by using our services you agree and consent to the collection, use and disclosure of your information in connection with providing you our services.

What we collect and how we collect it

The personal information we collect about you depends on the dealings you have with The DOM.com. Personal Information includes information about an individual who is reasonably identifiable. You generally have the option of interacting with us anonymously or using a pseudonym, however in some instances this may prevent us from being able to provide you with products and services, for an example where you place an order for products online.The types of personal information we collect and use information depending on your interaction and transactions with us, including:

What Information do we collect?

• contact name and details; • payment and transaction information including type, bank and credit card details etc; • delivery address or collection details; • your location details through your smart phone or device; • certain departments may request sensitive information such as skin type in cosmetics or size details in intimate apparel, in order to provide you with products or services; • transaction, product, services and activity details of purchases, preferences and interactions.

How do we collect information?

When may collect your personal information when you: • use or visit TheDOM.com online store, related websites, social media platforms or Apps; • make a purchase or place an order; • setup a The DOM.com account; • enter a competition or complete a survey; • send us an enquiry or provide us with feedback; • participate in a promotion, competition, or survey; • join a mailing list; • post a review, rating or comment on our website or social media page.

Use of Cookies

Information is automatically collected through your use of the our sites, Affiliates’ websites and Apps, electronic communications, through cookies. Cookies are small text files that websites or Apps may place on your computer or device. Generally, cookies are used to recognise repeat users of websites and remember user preferences. We may collect this information both anonymously and in relation to user accounts. Cookies are also used to allow the website to gain statistical information about your usage behaviour and aggregate data to allow The DOM.com to customise a user's experience on their websites. The information is used and disclosed by us for purposes including statistical analysis and to assist us improving the functionality and usability of the website and related Apps. You can switch off cookies by adjusting the settings on your web browser.

Why we collect personal information

We collect your personal information to provide, administer, improve and personalise our products and services, and to support our business functions, including: • to provide you with products and services; • to improve our service operations to enhance your customer experience; • to manage and work with our service providers to fulfil your request for products and services such as processing transactions and payments, delivering products and services, providing refunds and discounts; • to register and service your account, including any online account with the Site and keeping your information up‐to‐date, and verifying your identity; • promoting and communicating The DOM.com products and services through direct marketing, events and competitions, public relations and social media. We may also make use of third parties who use cookies to serve ads to you based on your past visits and use of our website. This allows us to notify you of products or offers which we think might be of interest to you; • to communicate with you and perform research and statistical analysis, such as customer satisfaction and product and service improvement purposes, tailor products and promotional offers to you, usage behaviour and user experience for online and digital platforms to improve functionality and usability. This may include matching information we collect against other information held by third parties, partners and sellers that you have consented to share your information with (We may also use and disclose de-identified data for these purposes); • to respond to your query, feedback or concerns; • responding to and interacting with regulatory bodies and relevant government agencies; • general planning and administration, and as other required or permitted by law. We may also collect, hold, use and disclose personal information for other purposes explained at the time of collection or which are required or authorised by or under law, and for which you have provided consent.

Digital marketing, advertising and opting out

By providing your address, email address and contact number to The DOM.com or its related parties and partners, you consent to us contacting you. We may send this information in a variety of ways, including by mail, email, social media, SMS, MMS, telephone and via The DOM.com Apps. You may prefer to provide to us your personal email address or mobile number rather than, for example, an email address accessible by your work colleagues. If we send you direct marketing or send you electronic marketing messages based on your consent or as otherwise permitted by applicable law, you may, at any time, withdraw your consent or opt-out by: • Contacting our Customer Service team here: customerservice@thedom.com; or • Using the unsubscribe facility that we include in our electronic messages (eg email, SMS or MMS) to opt out of receiving those messages.

Sharing your personal information

We work with a number of suppliers that provide us with services to fulfil your request or carry out specific functions on our behalf, including: • Contracted or approved third party service providers or contractors to provide you with products or services requested by you or may be of interest to you, to process your payment, to communicate offers and promotions to you, and for product development and product, service and market research. • Our loyalty program partners, suppliers and service providers. • Approved technology services including application and systems, cloud computing facilities, development and technical support, processing, storing, hosting, research and to analyse data. • Business advisors, including lawyers, accountants, insurance, recruitment advisors and agencies, auditors or other professional service providers to the extent reasonably required. • Regulatory, investigative or government bodies to comply with applicable laws or respond to valid legal process such as a search warrant, a court order or a subpoena and fraud management.

Some of our trusted service providers such as technology or data storage providers may be located outside of Australia including Japan, Singapore, India, Hong Kong, the Philippines, the United States of America and other countries or jurisdictions depending on the nature of the services those recipients provide to Millennial Mall Pty Ltd.

Protection of personal information

Personal information we hold will be in electronic form with our trusted service provider. Any trusted service provider must observe and meet our information security requirements to minimise the risk of unauthorised access to, and loss, misuse or unapproved alteration of, personal information.

In addition we have a number of security controls in place and use a range of resources, process and technology controls to protect your personal information. While we endeavour to protect the personal information of users of our website, we cannot guarantee the security of information you disclose online. You disclose that information at your own risk. You should be aware that no method of transmission over the Internet or method of electronic storage is 100% secure. You can also help protect your personal information by keeping your The DOM.com account details confidential, access is limited and we encourage you to use a unique and strong password, limit access to your computer and log out after use. If you become aware of unauthorised access, please contact the The DOM.com Customer service team as soon as practicable using these details: customerservice@thedom.com Third party sites

We may display advertisements from third parties and other content that links to third-party websites. Links to third party sites that are not operated or controlled by us are provided for your convenience. If you click on a third-party advertisement or link, you are leaving The DOM.com and any personal information you provide will not be covered by this Policy. We are not responsible for the privacy or security practices of those sites. Third party websites should have their own privacy and security policies, which we encourage you to read before supplying any personal information to them.

Access and Corrections

Access If you would access to personal information we hold about you, please contact the The DOM.com Customer Service team. When making an access request, please provide as much detail as you can about the particular information you seek, in order to help us retrieve the information. We may ask you to verify your identity before proceeding with any request you make, this includes providing us satisfactory proof of identity as determined by us.

Corrections If you ask us to correct personal information that we hold about you, or if we are satisfied that the personal information we hold is inaccurate, out of date, incomplete, irrelevant or misleading, we will take reasonable steps to correct that information to ensure that, having regard to the purpose for which it is held, the information is accurate, up-to-date, complete, relevant and not misleading. If we correct personal information about you, and we have previously disclosed that information to another agency or organisation that is subject to the Privacy Act, you may ask us to notify that other entity. If so, we will take reasonable steps to do so, unless this would be impracticable or unlawful. You should ensure that all personal information submitted to us is complete, accurate, true and correct. Failure on your part to do so may result in our inability to provide you with the products and services you have requested. A record of the changes made to your personal information may be noted in your account or filing.

Complaints or Questions

If you would like further information about how we manage your personal information, or if you have any queries relating to our Privacy Policy, or wish to lodge a complaint in relation to an alleged breach of the Privacy Act, please contact the Customer Service team using the following contact details: customerservice@thedom.com

We may ask you to submit your complaint in writing. We may discuss and share your complaint with our staff and our service providers and others as required and appropriate.

All complaints received by the Customer Service Team will be dealt with in a timely manner considering all the circumstances of the complaint. In most cases, we expect that complaints will be investigated and a response generally provided within 30 days of receipt of the complaint.

Updates to this Policy

We may amend this Privacy Policy from time to time without notice. You should check this page regularly to take notice of any changes. The current version will be posted on our website and a copy may be obtained by contacting our Customer Service team.

General

This Privacy Policy and your use of our services including the website is governed in all respects by the laws of New South Wales, Australia and you agree to submit to the exclusive jurisdiction of the courts of Australia. For information about privacy generally, you may visit the Office of the Australian Information Commissioner’s website at www.oaic.gov.au.