Privacy policy
Privacy Policy
Effective Date: 18-09-2025
Last Updated: 18-09-2025
Company Information
This Privacy Policy describes how www.goldfieldandbanks.com (the "Site" or "we") collects, uses, and discloses your Personal Information when you visit or make a purchase from the Site.
COMPANY DETAILS:
-
Legal Name: A Fragrance State of Mind Pty Ltd
-
ABN: 22 613 075 979
-
Trading As: Goldfield & Banks Australia
-
Registered Address: Unit 4/171 William St, Darlinghurst NSW 2010, Australia
-
Phone: +61 404 210 575
-
Privacy Contact: privacy@goldfieldandbanks.com
-
Data Protection Officer: dpo@goldfieldandbanks.com
Collecting Personal Information
When you visit the Site, we collect certain information about your device, your interaction with the Site, and information necessary to process your purchases. We may also collect additional information if you contact us for customer support. In this Privacy Policy, we refer to any information about an identifiable individual (including the information below) as "Personal Information". See the list below for more information about what Personal Information we collect and why.
Device Information
-
Purpose of collection: to load the Site accurately for you, and to perform analytics on Site usage to optimize our Site.
-
Source of collection: Collected automatically when you access our Site using cookies, log files, web beacons, tags, or pixels.
-
Disclosure for a business purpose: shared with our processor Shopify and analytics providers.
-
Personal Information collected: version of web browser, IP address, time zone, cookie information, what sites or products you view, search terms, and how you interact with the Site.
Order Information
-
Purpose of collection: to provide products or services to you to fulfill our contract, to process your payment information, arrange for shipping, and provide you with invoices and/or order confirmations, communicate with you, screen our orders for potential risk or fraud, and when in line with the preferences you have shared with us, provide you with information or advertising relating to our products or services.
-
Source of collection: collected from you.
-
Disclosure for a business purpose: shared with our processor Shopify and payment processors.
-
Personal Information collected: name, billing address, shipping address, payment information (including credit card numbers), email address, and phone number.
Customer Support Information
-
Purpose of collection: to provide customer support.
-
Source of collection: collected from you.
-
Personal Information collected: name, email address, phone number, order information, and any other information you choose to provide.
Sharing Personal Information
We share your Personal Information with service providers to help us provide our services and fulfill our contracts with you. Below is a complete list of our third-party processors:
ECOMMERCE & PAYMENTS:
-
Shopify Inc. (ecommerce platform) - Privacy Policy
-
PayPal (payment processing) - Privacy Policy
-
Afterpay (buy now, pay later) - Privacy Policy
-
Zip - AU (buy now, pay later) - Privacy Policy
-
Airwallex (payment processing & local payment methods) - Privacy Policy
-
Airwallex Klarna (buy now, pay later) - Privacy Policy
MARKETING & COMMUNICATIONS:
-
Klaviyo (email marketing) - Privacy Policy
-
Gorgias (customer support) - Privacy Policy
-
Meta/Facebook (advertising) - Privacy Policy
-
TikTok (advertising) - Privacy Policy
-
Google (advertising & analytics) - Privacy Policy
WEBSITE FUNCTIONALITY & ANALYTICS:
-
Google Tag Manager (tag management) - Privacy Policy
-
Microsoft Clarity (website analytics) - Privacy Policy
-
Stape.io (server-side tracking) - Privacy Policy
-
Replo (page builder) - Privacy Policy
-
Monster Upsells (sales optimization) - Privacy Policy
-
Wishlist King (wishlist functionality) - Privacy Policy
-
Orbe (currency & location functionality) - Privacy Policy
-
Kluvos (email analytics) - Privacy Policy
LOGISTICS:
-
Skutopia (fulfillment - Australia) - Privacy Policy
-
Sympl (fulfillment - Europe/UK) - Privacy Policy
-
ShipHype (fulfillment - USA) - Privacy Policy
Each processor is contractually required to protect your data and use it only for the specified purposes. For detailed information about how each processor handles your data, please refer to their respective privacy policies linked above.
We may also share your Personal Information to comply with applicable laws and regulations, to respond to a subpoena, search warrant or other lawful request for information we receive, or to otherwise protect our rights.
Behavioural Advertising
As described above, we use your Personal Information to provide you with targeted advertisements or marketing communications we believe may be of interest to you. For example:
-
We use Google Analytics to help us understand how our customers use the Site. You can read more about how Google uses your Personal Information here: https://www.google.com/intl/en/policies/privacy/. You can also opt-out of Google Analytics here: https://tools.google.com/dlpage/gaoptout.
-
We share information about your use of the Site, your purchases, and your interaction with our ads on other websites with our advertising partners. We collect and share some of this information directly with our advertising partners, and in some cases through the use of cookies or other similar technologies (which you may consent to, depending on your location).
-
We use Facebook Pixel to help us understand the effectiveness of our advertising campaigns and to deliver targeted advertisements. You can read more about how Facebook uses your Personal Information here: https://www.facebook.com/privacy/explanation. You can opt-out of Facebook advertising here: https://www.facebook.com/settings?tab=ads.
For more information about how targeted advertising works, you can visit the Network Advertising Initiative's ("NAI") educational page at http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work.
You can opt out of targeted advertising by:
-
FACEBOOK - https://www.facebook.com/settings/?tab=ads
-
BING - https://advertise.bingads.microsoft.com/en-us/resources/policies/personalized-ads
Additionally, you can opt out of some of these services by visiting the Digital Advertising Alliance's opt-out portal at: http://optout.aboutads.info/.
Using Personal Information
We use your personal Information to provide our services to you, which includes: offering products for sale, processing payments, shipping and fulfillment of your order, and keeping you up to date on new products, services, and offers.
Lawful Basis
Pursuant to the General Data Protection Regulation ("GDPR"), if you are a resident of the European Economic Area ("EEA"), we process your personal information under the following lawful bases:
-
Your consent;
-
The performance of the contract between you and the Site;
-
Compliance with our legal obligations;
-
To protect your vital interests;
-
To perform a task carried out in the public interest;
-
For our legitimate interests, which do not override your fundamental rights and freedoms.
Data Retention
We retain your personal information for the following periods:
CUSTOMER ACCOUNT DATA:
-
Active accounts: Retained while account is active
-
Inactive accounts: Deleted after 3 years of inactivity
-
Account deletion requests: Processed within 30 days
ORDER AND TRANSACTION DATA:
-
Order history: 7 years (tax and accounting requirements)
-
Payment information: Not stored (processed by payment providers)
-
Shipping information: 2 years after delivery
MARKETING DATA:
-
Email subscribers: Until unsubscribed + 30 days
-
Marketing preferences: 3 years after last interaction
-
Website analytics: 26 months (Google Analytics default)
CUSTOMER SUPPORT DATA:
-
Support tickets: 3 years after resolution
-
Chat transcripts: 1 year after conversation
LEGAL COMPLIANCE DATA:
-
Data subject requests: 3 years after completion
-
Consent records: 3 years after withdrawal
-
Breach incident records: 5 years
You can request deletion of your data at any time by contacting dpo@goldfieldandbanks.com. Some data may be retained longer if required by law or for legitimate business purposes (such as fraud prevention).
Automatic Decision-Making
If you are a resident of the EEA, you have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you.
We may use automated decision-making in the following circumstances:
-
Fraud prevention and security screening
-
Personalized product recommendations
-
Dynamic pricing (where legally permitted)
-
Marketing campaign optimization
You have the right to request human intervention, express your point of view, and contest any automated decision. To exercise this right, please contact us at dpo@goldfieldandbanks.com.
Your Rights
YOUR GDPR RIGHTS:
If you are a resident of the European Economic Area (EEA) or UK, you have the following rights under the General Data Protection Regulation (GDPR):
1. RIGHT OF ACCESS
-
Request a copy of all personal data we hold about you
-
Understand how your data is being processed
-
Response time: Within 30 days
2. RIGHT TO RECTIFICATION
-
Correct inaccurate or incomplete personal data
-
Update your information at any time
-
Response time: Within 30 days
3. RIGHT TO ERASURE ("Right to be Forgotten")
-
Request deletion of your personal data
-
Applies when data is no longer necessary or consent is withdrawn
-
Response time: Within 30 days
4. RIGHT TO RESTRICT PROCESSING
-
Limit how we use your personal data
-
Applies during disputes or verification processes
-
Response time: Within 30 days
5. RIGHT TO DATA PORTABILITY
-
Receive your data in a structured, machine-readable format
-
Transfer your data to another service provider
-
Response time: Within 30 days
6. RIGHT TO OBJECT
-
Object to processing based on legitimate interests
-
Object to direct marketing at any time
-
Response time: Immediate for marketing, 30 days for other objections
7. RIGHT TO WITHDRAW CONSENT
-
Withdraw consent for any consent-based processing
-
Does not affect lawfulness of processing before withdrawal
-
Response time: Immediate
HOW TO EXERCISE YOUR RIGHTS:
-
Email: dpo@goldfieldandbanks.com
-
Subject line: "GDPR Rights Request - [Type of Request]"
-
Include: Full name, email address, specific request details
-
Identity verification may be required for security purposes
COMPLAINTS:
If you are not satisfied with our response, you have the right to lodge a complaint with:
-
Your local data protection authority, or
-
The Irish Data Protection Commission (our lead supervisory authority)
-
Contact details: https://www.dataprotection.ie/en/contact/how-contact-us
CCPA Privacy Rights (Do Not Sell My Personal Information)
If you are a California resident, you are entitled to certain rights under the California Consumer Privacy Act (CCPA). Please see our separate CCPA Compliance page for detailed information about your California privacy rights.
Cookies
We use cookies and similar tracking technologies to enhance your browsing experience and provide our services. We use Consentmo, a GDPR-compliant consent management platform, to give you control over these cookies.
COOKIE CATEGORIES:
STRICTLY NECESSARY COOKIES (Always Active): These cookies are essential for the website to function and cannot be disabled in our systems.
-
Shopping cart functionality
-
Secure login sessions
-
Payment processing
-
Security features
-
Cookie consent preferences
FUNCTIONAL COOKIES (Optional): These cookies enhance website functionality and user experience.
-
Language preferences
-
Currency selection
-
Wishlist functionality
-
Customer support chat
-
Regional settings
ANALYTICS COOKIES (Optional): These cookies help us understand how visitors use our website to improve performance.
-
Google Analytics
-
Microsoft Clarity
-
Shopify Analytics
-
Page performance monitoring
-
Heat mapping and user behavior tracking
MARKETING COOKIES (Optional): These cookies enable personalized advertising and marketing communications.
-
Facebook Pixel
-
Google Ads
-
TikTok Pixel
-
Email marketing tracking
-
Retargeting campaigns
-
Cross-platform advertising
MANAGING YOUR COOKIE PREFERENCES:
CONSENT BANNER: When you first visit our website, you'll see a cookie consent banner where you can:
-
Accept all cookies
-
Reject all non-essential cookies
-
Customize your preferences by category
PREFERENCE CENTER: You can change your cookie preferences at any time by:
-
Clicking the cookie settings icon on our website
-
Accessing the preference center from our cookie banner
-
Managing individual cookie categories
WITHDRAWING CONSENT: You can withdraw your consent at any time through:
-
The cookie preference center
-
Browser settings (though this may affect website functionality)
-
Contacting us directly
CONSENT RECORDS: We maintain records of your consent choices and will re-prompt for consent when:
-
Our cookie policy changes significantly
-
New cookie categories are added
-
Your previous consent expires
For detailed technical information about specific cookies, please see our separate Cookie Policy or contact us at privacy@goldfieldandbanks.com.
Do Not Track
Please note that because there is no consistent industry understanding of how to respond to "Do Not Track" signals, we do not alter our data collection and usage practices when we detect such a signal from your browser.
Changes
We may update this privacy policy from time to time in order to reflect, for example, changes to our practices or for other operational, legal or regulatory reasons.
Contact
For more information about our privacy practices, if you have questions, or if you would like to make a complaint, please contact us:
General Privacy Inquiries: Email: privacy@goldfieldandbanks.com
Data Protection Officer: Email: dpo@goldfieldandbanks.com
Postal Address: A Fragrance State of Mind Pty Ltd Unit 4/171 William St Darlinghurst NSW 2010 Australia
General Customer Service: Email: info@goldfieldandbanks.com
If you are not satisfied with our response to your complaint, you have the right to lodge your complaint with the relevant data protection authority. You can contact your local data protection authority, or our supervisory authority.