Legal
Privacy Policy
This Privacy Policy explains how CloudOrders collects, uses, discloses and protects personal information. We are committed to handling personal information in accordance with the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth).
1. Who we are
CloudOrders is provided by Yade Pty Ltd (ABN 20 669 515 940), trading as CloudOrders (we, us or our). CloudOrders is an international hospitality technology brand with head office and primary operations in Queensland, Australia. This policy applies to our websites, our point-of-sale apps and our related services (the Service).
2. What personal information we collect
The personal information we collect depends on how you interact with us. It includes:
- Merchant account and contact information — names, business name, email address, phone number, billing details and other information you provide when you enquire, sign up or use the Service.
- End-customer information you enter — information that you (our merchant customers) record in the Service about your own customers, such as order history, loyalty membership, bookings and reviews. We process this on your behalf (see section 7).
- Device and usage information — app and device details, log data, IP address, and diagnostics and analytics about how the Service is used, which help us run, secure and improve it.
Payment card data: CloudOrders does not collect or store full payment card numbers. Card payments are processed by PCI-DSS-compliant third-party providers (see section 5).
3. How we collect personal information
We collect personal information directly from you (for example when you fill in a form, create an account or contact support), automatically as you use the Service (for example device and usage data), and occasionally from third parties such as our payment or integration partners.
4. How we use personal information
- to provide, operate, maintain and improve the Service;
- to set up and manage your account, process subscriptions and payments, and provide support;
- to communicate with you about the Service, including service, security and (where permitted) marketing messages you can opt out of;
- to keep the Service secure, prevent fraud and misuse, and meet our legal obligations.
5. Payments
Online and in-person card payments are handled by third-party payment providers, including Stripe (online payments) and our integrated EFTPOS provider (in-person card payments). These providers are responsible for the secure handling of card data under the PCI-DSS standard. We receive limited transaction information (such as amounts and settlement status) but not full card numbers.
6. When we disclose personal information
We do not sell your personal information. We may disclose it to:
- service providers who help us run the Service — for example cloud hosting, payment providers (Stripe and our EFTPOS provider), our CRM and website platform, email and analytics providers, and, where you enable them, integrations such as delivery and review platforms;
- professional advisers and, where required, regulators or law enforcement, or as otherwise required or permitted by law;
- a buyer or successor in the event of a business sale or restructure, subject to appropriate protections.
7. Information you record about your customers
When you use the Service to record information about your own customers, you are responsible for that information and for complying with privacy law in relation to it. We act as your service provider and process that information on your behalf to provide the Service. You should have your own privacy policy in place for your customers.
8. Overseas disclosure
Some of our service providers store or process information outside Australia (for example in the United States or the European Union). Where we disclose personal information overseas, we take reasonable steps to ensure it is handled consistently with the APPs.
9. Security
We take reasonable steps to protect personal information from misuse, interference, loss and unauthorised access, modification or disclosure, including encryption in transit, access controls and use of reputable providers. No system is completely secure, and we cannot guarantee absolute security.
10. Retention
We keep personal information only for as long as needed to provide the Service and for legitimate business or legal purposes, after which we take reasonable steps to delete or de-identify it.
11. Cookies and website analytics
Our websites use cookies and similar technologies to operate the site, remember preferences and understand usage. You can control cookies through your browser settings; disabling some cookies may affect site functionality.
12. Accessing and correcting your information
You may request access to, or correction of, the personal information we hold about you by contacting us at support@cloudorders.co. We will respond within a reasonable time and may need to verify your identity. In some cases we may be permitted to decline a request, and we will explain why.
13. Complaints
If you have a privacy concern or complaint, please contact us first at support@cloudorders.co so we can try to resolve it. If you are not satisfied with our response, you can contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.
14. Children
The Service is intended for businesses and is not directed at children. We do not knowingly collect personal information from children.
15. Changes to this policy
We may update this Privacy Policy from time to time. The "last updated" date above shows when it was last revised. Material changes will be notified by reasonable means.
16. Contact us
For any privacy question or request, contact support@cloudorders.co.
Yade Pty Ltd — ABN 20 669 515 940, trading as CloudOrders.