Legal

Privacy Policy

Effective Date: 18 June 2026

PoppyLove Creations (ABN 91 439 728 389) is committed to protecting your privacy and handling personal information in accordance with applicable Australian privacy laws.

INFORMATION WE COLLECT

Information We Collect

Account Registration

When you create an account, we collect your name and email address.

If you register using a password, your password is stored as a secure one-way hash and is never stored in plain text.

If you choose to sign in using Google, Google may provide us with certain account information that you authorise, which may include your name, email address, profile image, and unique account identifier. We use this information solely for account authentication and account management purposes.

Storage of Your Information

The personal information described in this section is stored in our secure database and is accessible only to authorised personnel for the purposes described in this Privacy Policy. It is not sold, rented, or made publicly accessible.

Custom Commission Requests

When you submit a Custom Commission request, we collect:

  • Name
  • Email address
  • Phone number (optional)
  • Nail shape and size preferences
  • Design descriptions and requirements
  • Reference images you choose to upload

This information is used to review, communicate about, process, fulfil, and maintain records relating to your Custom Commission request.

Orders

When you place an order, we collect:

  • Name
  • Email address
  • Phone number (optional)
  • Shipping address
  • Product preferences, including nail shape, length, and width selections

This information is required to process and fulfil your order.

Newsletter Subscription

If you subscribe to our newsletter, we collect your email address to send updates regarding new collections, products, promotions, and offers.

By subscribing, you consent to receiving marketing communications from us. You may withdraw your consent at any time by using the unsubscribe link included in our emails.

Cookies

We currently use only essential cookies required for website functionality, account authentication, and maintaining user sessions.

We do not currently use advertising or behavioural tracking cookies.

You may control cookies through your browser settings; however, disabling cookies may affect certain website functionality, including account login.

HOW WE USE YOUR INFORMATION

How We Use Your Information

We may use your personal information to:

  • Process and fulfil orders;
  • Create and manage customer accounts;
  • Provide customer support;
  • Communicate regarding orders and Custom Commission requests;
  • Send shipping and delivery updates;
  • Send promotional emails where you have subscribed;
  • Improve our products, services, and website;
  • Detect, investigate, and prevent fraud, misuse, or unauthorised activity;
  • Comply with legal, regulatory, tax, and accounting obligations.

PAYMENT INFORMATION

Payment Information

Payments are securely processed through Stripe.

We do not store, collect, or have access to your credit card or payment card details.

Payment information is collected and processed directly by Stripe in accordance with Stripe's privacy policy, security practices, and legal obligations.

UPLOADED IMAGES

Uploaded Images

Reference images uploaded as part of a Custom Commission request are stored using secure cloud storage services provided through our website infrastructure.

These images are accessed only as reasonably necessary to review, communicate about, and fulfil your commission request.

We do not use uploaded images for advertising, marketing, or any purpose unrelated to fulfilling your commission unless you separately provide permission.

By submitting reference images, inspiration images, or other materials, you confirm that you have the right to provide those materials to us for the purpose of reviewing and fulfilling your Custom Commission request.

SHARING YOUR INFORMATION

Sharing Your Information

We do not sell, rent, or trade personal information.

We may share personal information with trusted service providers that help us operate our business, including:

  • Stripe — payment processing;
  • Australia Post and other shipping providers — shipping and delivery services;
  • Vercel — website hosting, and storage of uploaded images via Vercel Blob;
  • Neon — secure database hosting for account, order, and commission records;
  • Resend — delivery of transactional emails (e.g. password reset emails);
  • Upstash — short-term rate-limiting infrastructure used to detect and prevent abusive login attempts;
  • Google — authentication services when you choose to sign in with Google.

These providers receive information necessary to provide their services and process information in accordance with their own privacy policies and legal obligations.

OVERSEAS DISCLOSURE

Overseas Disclosure

Our website infrastructure is hosted in Australia.

However, some third-party service providers, including Google and Stripe, may store, process, back up, or transfer personal information outside Australia.

By using our website and services, you acknowledge that personal information may be processed in countries where privacy protections may differ from those available under Australian law.

DATA SECURITY

Data Security

We implement reasonable technical and organisational safeguards designed to protect personal information against unauthorised access, misuse, loss, disclosure, alteration, and destruction.

Despite these measures, no method of electronic transmission or storage can be guaranteed to be completely secure. Accordingly, we cannot guarantee absolute security of personal information.

DATA RETENTION

Data Retention

We retain personal information only for as long as reasonably necessary to:

  • Fulfil orders and Custom Commission requests;
  • Provide customer support;
  • Maintain business and financial records;
  • Meet legal, tax, accounting, and regulatory obligations;
  • Resolve disputes and enforce our agreements.

When personal information is no longer required, it is securely deleted, de-identified, or anonymised where reasonably practicable.

YOUR RIGHTS

Your Rights

Subject to applicable laws, you may have the right to:

  • Request access to personal information we hold about you;
  • Request correction of inaccurate or incomplete information;
  • Request deletion of personal information;
  • Withdraw consent where consent is relied upon;
  • Make a complaint regarding our handling of personal information.

To exercise any of these rights, please contact us via our Contact page.

PRIVACY COMPLAINTS

Privacy Complaints

If you believe we have breached applicable privacy laws or mishandled your personal information, please contact us via our Contact page.

We will investigate your complaint and respond within a reasonable period.

If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC).

THIRD-PARTY SERVICES

Third-Party Services

Our website may contain links to third-party websites, services, or applications. We are not responsible for the privacy practices, security, or content of those third-party websites or services and encourage you to review their privacy policies directly.

CHILDREN'S PRIVACY

Children's Privacy

Our products and services are not intended for children under 13 years of age.

We do not knowingly collect personal information from children under 13 years of age.

If you believe a child has provided personal information to us, please contact us and we will take reasonable steps to delete the information where appropriate.

CHANGES TO THIS POLICY

Changes to This Policy

We may update this Privacy Policy from time to time.

Any changes will be published on this page together with an updated Effective Date.

We encourage you to review this Privacy Policy periodically to remain informed about how we handle personal information.

CONTACT US

Contact Us

If you have any questions regarding this Privacy Policy or the personal information we hold about you, please contact us via our Contact page.

Get In Touch

Questions about your privacy?

Visit our Contact page and we'll be happy to help.