Privacy Policy
Last updated: June 2026
1. Introduction
Natty Bee is a trading name of NattyBee Trustee Pty Ltd ATF [Name] Family Trust (ABN: 71 501 634 639). We are committed to protecting your privacy and handling your personal information responsibly.
This Privacy Policy explains how we collect, use, disclose, and store your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). By using our website or purchasing from us, you consent to the practices described in this policy.
2. Information We Collect
We may collect the following types of personal information:
2.1 Information you provide directly
- Order information: name, email address, shipping address, phone number (optional), and order details.
- Payment information: processed securely by Stripe. We do not store your credit card number, CVV, or full card details on our servers.
- Email subscription: your email address when you sign up for our newsletter or pre-order notifications.
- Communications: any information you provide when contacting us via email, Instagram DMs, or other channels.
2.2 Information collected automatically
- Device and usage data: browser type, operating system, IP address, referring URLs, pages visited, and time spent on our website.
- Cookies and similar technologies: we use essential cookies for site functionality. We do not use third-party advertising cookies. See Section 7 for details.
3. How We Use Your Information
We use your personal information for the following purposes:
- Processing and fulfilling your orders, including shipping and delivery.
- Communicating with you about your order status, pre-order updates, and shipping notifications.
- Sending marketing emails and newsletters (only if you have opted in; you can unsubscribe at any time).
- Responding to your enquiries, feedback, and support requests.
- Improving our website, products, and customer experience.
- Complying with legal obligations, including tax reporting and food safety record-keeping.
- Detecting and preventing fraud or unauthorised access.
4. Disclosure of Your Information
We may share your personal information with the following third parties, only to the extent necessary:
- Payment processor: Stripe Payments Australia Pty Ltd, for processing your transactions securely.
- Shipping carriers: Australia Post, Sendle, or other carriers, for delivering your order (name, address, phone number).
- Email service providers: for sending order confirmations, shipping updates, and marketing emails you have consented to.
- Analytics providers: for anonymised website usage data to help us improve our site.
- Legal obligations: we may disclose information where required by law, regulation, court order, or governmental authority.
We do not sell, rent, or trade your personal information to any third party for their own marketing purposes.
5. Data Storage & Security
We take reasonable steps to protect your personal information from misuse, interference, loss, unauthorised access, modification, or disclosure, in accordance with APP 11.
- Our website uses TLS/SSL encryption for all data in transit.
- Payment data is handled entirely by Stripe and is never stored on our servers.
- Order and customer data is stored on servers located in Australia (Sydney region).
- Access to personal information is restricted to authorised personnel only.
No method of electronic storage or transmission is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
6. Your Rights Under the Privacy Act
Under the Privacy Act 1988 and the Australian Privacy Principles, you have the right to:
- Access the personal information we hold about you (APP 12).
- Correct any personal information that is inaccurate, out-of-date, incomplete, irrelevant, or misleading (APP 13).
- Opt outof marketing communications at any time by clicking the “unsubscribe” link in any email we send, or by contacting us directly.
- Request deletion of your personal information, subject to any legal obligations that require us to retain it (such as tax or food safety records).
- Complain if you believe we have breached the Australian Privacy Principles by contacting us first, and then the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au if you are not satisfied with our response.
To make a request, email us at hello@nattybee.com.au. We will respond within 30 days.
7. Cookies
Our website uses cookies for the following purposes:
- Essential cookies: required for the website to function correctly (e.g., shopping cart, session management). These cannot be disabled.
- Analytics cookies: help us understand how visitors use our site so we can improve it. These collect anonymised data only.
We do not use third-party advertising or tracking cookies. You can manage cookie preferences through your browser settings.
8. Third-Party Links
Our website may contain links to third-party websites (e.g., Instagram, TikTok, Stripe). We are not responsible for the privacy practices or content of these external sites. We encourage you to read the privacy policies of any third-party sites you visit.
9. Data Retention
We retain your personal information only for as long as necessary to fulfil the purposes for which it was collected, or as required by law. Order records and related financial information are retained for a minimum of 7 years in accordance with Australian tax law. Email subscriber data is retained until you unsubscribe. Upon request, we will delete your personal information within 30 days, subject to any legal retention obligations.
10. Cross-Border Disclosure
Some of our service providers (e.g., Stripe, email platforms) may process or store data outside Australia. Where this occurs, we take reasonable steps to ensure that the overseas recipient handles your personal information in accordance with the Australian Privacy Principles, as required by APP 8.
11. Children's Privacy
Our website and products are not directed at children under 16. We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected information from a child, we will take steps to delete it as soon as possible.
12. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with a revised “Last updated” date. We encourage you to review this policy periodically. If we make material changes that affect how we handle your personal information, we will notify you by email or via a prominent notice on our website.
13. Contact Us
If you have questions about this Privacy Policy, wish to access or correct your personal information, or wish to make a privacy complaint, please contact us:
- Email: hello@nattybee.com.au
- Instagram: @nattybee.au
- Location: Perth, Western Australia
If you are not satisfied with our response to a privacy complaint, you may contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au/privacy/privacy-complaints.