Privacy policy

This privacy policy (“Privacy Policy”) describes how Alpargatas Asia Limited CN 1827433, Aqueo Import & Distribution Pty Ltd ACN 098 528 440 and their related bodies corporate (collectively, “Havaianas”, “we”, “our” and “us”) collects, stores, uses, protects, shares and discloses your Personal Information when you visit or make a purchase from https://www.havaianas.com.au (the “Site”).

By visiting the Site, you agree to the collection, storage, usage, protection, sharing and disclosure of your Personal Information by us in the manner described in this Privacy Policy.


Collecting Personal Information

When you visit the Site, we collect certain information about your device, your interaction with the Site, and information necessary to process your purchases. We may also collect additional information if you contact us for customer support. In this Privacy Policy, we refer to any information that can uniquely identify an individual (including the information below) as “Personal Information”. See the list below for more information about what Personal Information we collect and why.


Device information

  • Examples of Personal Information collected: version of web browser, IP address, time zone, cookie information, what sites or products you view, search terms, and how you interact with the Site.
  • Purpose of collection: to load the Site accurately for you, and to perform analytics on Site usage to optimise our Site.
  • Source of collection: collected automatically when you access our Site using cookies, log files, web beacons, tags, or pixels.
  • Disclosure for a business purpose: shared with our processor Shopify International Limited (ACN 608 705 317) and their related bodies corporate.

Order information

  • Examples of Personal Information collected: name, billing address, shipping address, payment information (including credit card numbers, PayPal), email address and phone number.
  • Purpose of collection: to provide products or services to you to fulfill our contract, to process your payment information, arrange for shipping, provide you with invoices and/or order confirmations, communicate with you, verify information for accuracy or completeness, screen our orders for potential risk and/or unlawful acts or omissions (including fraud), product or service development, and when in line with the preferences you have shared with us, provide you with information or advertising relating to our products or services.
  • Source of collection: collected from you when you provide information to us via our Site, in person, by phone or in writing (whether by email or any other electronic or other means).
  • Disclosure for a business purpose: shared with our processor Shopify International Limited (ACN 608 705 317) and its related bodies corporate.

Customer support information

  • Examples of Personal Information collected: name, billing address, shipping address, payment information (including credit card numbers, PayPal), email address, and phone number.
  • Purpose of collection: to provide customer support.
  • Source of collection: collected from you when you provide information to us via our Site, in person, by phone or in writing (whether by email or any other electronic or other means).
  • Disclosure for a business purpose: shared with our processor Shopify International Limited (ACN 608 705 317) and its related bodies corporate.

If you access the Site from a shared device or a device of a third party (such as in an internet café), your Personal Information may also be available to other persons who access that device.In some circumstances, Personal Information may be provided to us by third parties or other organisations conducting activities on your behalf. With your expressed or implied consent, your Personal Information may be used and disclosed to us this way.


Inability to Collect Personal Information

If you do not provide us with the Personal Information described above, some or all of the following may happen:

  • we may not be able to provide the requested products or services to you, either to the same standard or at all;
  • we may not be able to provide you with information about products and services that you may want; or
  • we may be unable to tailor the content of our websites (including the Site) to your preferences and your experience of our websites (including the Site) may not be as enjoyable or useful.

 

Sharing Personal Information

We share your Personal Information with third parties (including service providers) for the purposes contained in this Privacy Policy, including to help us provide our services and fulfill our contracts with you, as described above. For example:

  • We use Shopify to power our online store. You can read more about how Shopify uses your Personal Information here: https://www.shopify.com/legal/privacy.
  • We may share your Personal Information to comply with applicable laws and regulations, to respond to a subpoena, search warrant or other lawful request for information we receive, or to otherwise protect our rights.

    We will take reasonable steps to ensure that anyone to whom we disclose your Personal Information respects the confidentiality of the information and abides by the Australian Privacy Principles (“APP’s”) contained in the Privacy Act 1998 (Cth) (“Privacy Act”) or equivalent privacy regimes. We will not share, sell, rent or disclose your Personal Information in ways different from what is disclosed in this Privacy Policy.

     

    Overseas Disclosure

    Your Personal Information will be initially processed in Australia and then will be transferred outside of Australia for storage and further processing, including to Hong Kong.For more information on how data transfers comply with the APP’s, see https://www.oaic.gov.au/privacy/australian-privacy-principles-guidelines/chapter-8-app-8-cross-border-disclosure-of-personal-information/

     

    Behavioural Advertising

    As described above, we use your Personal Information to provide you with targeted advertisements or marketing communications we believe may be of interest to you. These communications may be sent in various forms (including by email and SMS) in accordance with applicable marketing laws, such as the Spam Act 2003 (Cth). In addition:

    • We use Google Analytics to help us understand how our customers use the Site. You can read more about how Google uses your Personal Information here: https://policies.google.com/privacy?hl=en.You can also opt-out of Google Analytics here: https://tools.google.com/dlpage/gaoptout.
    • We share information about your use of the Site, your purchases, and your interaction with our ads on other websites with our advertising partners. We collect and share some of this information directly with our advertising partners, and in some cases through the use of cookies or other similar technologies (which you may consent to, depending on your location).

      By ordering on the Site, you grant us the right to add your contact details to our database. If you indicate a preference for a method of communication, we will endeavour to use that method whenever practical to do so. From time to time, we may contact you about offers and new products. You may opt-out of receiving marketing communications at any time by either unsubscribing via a link in our email newsletters or contacting our customer service at [email protected] and we will remove you from marketing communications.

      Targeted ads or interest-based offers may be presented to you based on your activities on the Site, our webpages, and other websites, based on the services you receive.

      These offers will display as varying product banners presented to you while browsing. We also partner with third parties to manage our advertising on our webpages and other websites. Our third party partners may use technologies such as cookies to gather information about such activities in order to provide you with advertising based upon your browsing activities and interests, and to measure advertising effectiveness.

      Some third party providers use tracking technology other than cookies to deliver targeted advertisements to you. You can read more about this type of advertising at: http://youronlinechoices.com.au.  

      Our website may contain links to other websites operated by third parties. We make no representations or warranties in relation to the privacy practices of any third party website and we are not responsible for the privacy policies or the content of any third party website. Third party websites are responsible for informing you about their own privacy practices.For more information about how targeted advertising works, you can visit the Network Advertising Initiative’s (“NAI”) educational page at http://www.networkadvertising.org/understanding-online-advertising/how-does-it-work.You can opt out of targeted advertising by:

       

      SMS

      • By signing up to SMS, you consent to receive informational (e.g., order updates) and/or marketing texts (e.g., cart reminders) from Havaianas including texts sent by autodialer. Consent is not a condition of purchase. Msg & data rates may apply. Msg frequency varies. Unsubscribe at any time by replying STOP or clicking the unsubscribe link (where available).
      • Havaiana's website uses cookies to help keep track of items you put into your shopping cart, including when you have abandoned your cart. This information is used to determine when to send cart reminder messages via SMS.
      • The above excludes text messaging originator opt-in data and consent; this information will not be shared with any third parties.

         

        Using Personal Information

        We use your personal Information to provide our services to you, which includes: offering products for sale, processing payments, shipping and fulfillment of your order, and keeping you up to date on new products, services, and offers.

         

        Lawful Basis

        Australian Privacy Principles (“APP’s”)The APP’s establish minimum standards for the private sector in relation to the collection, handling, use, disclosure, management, access, correction and disposal of ‘personal information’ about natural persons. We process your Personal Information in accordance with the APP’s, including for the primary purpose for which the Personal Information was collected and for purposes related to or ancillary to that primary purpose.You should not use the Site or place an order through the Site if you are located outside of Australia. We may collect Personal Information from you if you use the Site in any unauthorised way.

         


        Retention and Security

        When you place an order through the Site, we will retain your Personal Information for our records unless and until you ask us to erase this information. For more information on your right of erasure, please see the ‘Your rights’ section below. We store, protect and process your Personal Information by taking reasonable steps. The reasonable steps we take include protecting the information from misuse or loss and from unauthorised access, modification or disclosure. Where we no longer require your Personal Information for a permitted purpose under the APPs or equivalent privacy regime, we will take reasonable steps to destroy it.We will retain your information for as long as we reasonably need it for the purposes outlined in this Privacy Policy. For example, we may retain your information to prevent fraud, or to maintain systems security. We may also retain your information if required or allowed to by law, regulation or relevant standards and codes of conduct, or to fulfil our contractual obligations to a third party. In certain circumstances, including where we are prevented by technical or systems constraints, we may not be able to remove all of your Personal Information.The transmission and exchange of information is carried out at your own risk. We cannot guarantee the security of any information that you transmit to us, or receive from us. Although we take measures to safeguard against unauthorised disclosures of information, we cannot assure you that Personal Information that we collect will not be disclosed in a manner that is inconsistent with this Privacy Policy.

         


        Notifiable Data Breaches

        In the event that there is a data breach we will take all reasonable steps to contain the suspected or known breach where possible. We will take immediate steps to limit any further access or distribution where possible.If we have reasonable grounds to suspect that the data breach is likely to result in serious harm to any individuals involved, then we will take all reasonable steps to ensure an assessment is completed within 30 days of the breach.If remedial action is successful in making serious harm no longer likely, then no notification or statement will be made.Where we are aware of reasonable grounds to believe serious harm is likely, as soon as practicable, we will provide a statement to each of the individuals whose data was breached or who are at risk. The statement will contain details of the breach and recommendations of the steps each individual should take. We will also provide a copy of the statement to the relevant government body, which in the case of Australia, is the Office of the Australian Information Commissioner.We will review the incident and take action to prevent future breaches.

         


        Automatic Decision-Making

        We do not engage in fully automated decision-making that has a legal or otherwise significant effect using customer data.Our processor Shopify uses limited automated decision-making to prevent fraud that does not have a legal or otherwise significant effect on you.Services that include elements of automated decision-making include:

        • Temporary deny list of IP addresses associated with repeated failed transactions. This deny list persists for a small number of hours.
        • Temporary deny list of credit cards associated with deny listed IP addresses. This deny list persists for a small number of days.

          Your Rights

          APP

          Subject to the Privacy Act, you may request to access the Personal Information we hold about you by emailing us at the address listed under “Contact” below. All requests for access will be processed within a reasonable time.In certain instances, we may not be required or able to provide you with access to your Personal Information. If this occurs, we will give you reasons for our decision not to provide you with such access to your Personal Information in accordance with the Privacy Act.There is no application fee for making a request to access your Personal Information.  However, we may charge an administrative fee for the provision of information in certain circumstances such as if you make repeated requests for information or where the information is held by a third party provider.We endeavour to ensure that the Personal Information we hold is accurate, complete and up-to-date. If you believe the Personal Information we hold is inaccurate, please let us know and generally we will amend it upon request. If we disagree with your request, we will only do so on reasonable grounds and we will let you know the reasons for the refusal.

           


          Cookies

          A cookie is a small amount of information that’s downloaded to your computer or device when you visit our Site. We use a number of different cookies, including functional, performance, advertising, and social media or content cookies. Cookies make your browsing experience better by allowing the website to remember your actions and preferences (such as login and region selection). This means you don’t have to re-enter this information each time you return to the site or browse from one page to another. Cookies also provide information on how people use the website, for instance whether it’s their first time visiting or if they are a frequent visitor.We use the following cookies to optimise your experience on our Site, to provide our services and for security purposes.

          Cookies Necessary for the Functioning of the Store

          Name Function
          _ab Used in connection with access to admin.
          _secure_session_id Used in connection with navigation through a storefront.
          cart Used in connection with shopping cart.
          cart_sig Used in connection with checkout.
          cart_ts Used in connection with checkout.
          checkout_token Used in connection with checkout.
          secret Used in connection with checkout.
          secure_customer_sig Used in connection with customer login.
          storefront_digest Used in connection with customer login.
          _shopify_u Used to facilitate updating customer account information.


          Reporting and Analytics

          Name Function
          _tracking_consent Tracking preferences.
          _landing_page Track landing pages
          _orig_referrer Track landing pages
          _s Shopify analytics.
          _shopify_fs Shopify analytics.
          _shopify_s Shopify analytics.
          _shopify_sa_p Shopify analytics relating to marketing & referrals.
          _shopify_sa_t Shopify analytics relating to marketing & referrals.
          _shopify_y Shopify analytics.
          _y Shopify analytics.

           

          The length of time that a cookie remains on your computer or mobile device depends on whether it is a “persistent” or “session” cookie. Session cookies last until you stop browsing and persistent cookies last until they expire or are deleted. Most of the cookies we use are persistent and will expire between 30 minutes and two years from the date they are downloaded to your device.You can control and manage cookies in various ways. Please keep in mind that removing or blocking cookies can negatively impact your user experience and parts of the Site may no longer be fully accessible.


          Most browsers automatically accept cookies, but you can choose whether or not to accept cookies through your browser controls, often found in your browser’s “Tools” or “Preferences” menu. More information on how to modify your browser settings or how to block, manage or filter cookies can be found in your browser’s help file or through such sites as www.allaboutcookies.org. If you are still unsure, you should check with the software manufacturer, your company’s technology help desk or your internet service provider.


          Additionally, please note that blocking cookies may not completely prevent how we share information with third parties such as our advertising partners. To exercise your rights or opt-out of certain uses of your information by these parties, please follow the instructions in the “Behavioural Advertising” section above.


          You also may encounter cookies used by third parties and placed on certain pages of the Site that we do not control and have not authorised (such as webpages created by another user). We are not responsible nor liable for the use of such cookies.The Site may also include links to third party websites (including links created by users or members) and applications and advertising delivered to the Site by third parties (“Linked Sites”). Organisations who operate Linked Sites may collect Personal Information including through the use of cookies. We are not responsible nor liable for Linked Sites and recommend that you read the privacy policies of such Linked Sites before disclosing your Personal Information. For the avoidance of doubt Linked Sites are not subject to this Privacy Policy.The Site is hosted by an online service provider which may change from time to time. Our service providers’ use of cookies is not covered by our Privacy Policy.

           

          Do Not Track

          Please note that because there is no consistent industry understanding of how to respond to “Do Not Track” signals, we do not alter our data collection and usage practices when we detect such a signal from your browser.

           

          Minors

          The Site is not intentionally designed for or directed to individuals under the age of 18. Where you are under the age of 18 years we presume you have sufficient maturity and understanding to understand and consent to the terms of this Privacy Policy. If you know of or have reason to believe anyone under the age of 18 does not have capacity to consent to the collection, storage and use of Personal Information, please contact us.


          Changes

          We may update this Privacy Policy from time to time in order to reflect, for example, changes to our practices or for other operational, legal, or regulatory reasons.We will notify you about any changes to the Privacy Policy by posting an updated version of the Privacy Policy on the Site.


          Contact

          If you wish to gain access to your Personal Information or make a complaint about a breach of your privacy or if you have any query on how your Personal Information is collected or used or any other query relating to this Privacy Policy, please contact our Privacy Officer:         



          Telephone: (02) 9369 0510         
          Mail: Lower Ground Floor, 85-93 Commonwealth Street Surry Hills NSW 2010       
          Email: [email protected]


          If you receive communications purporting to be connected with us or our products or services that you believe have been sent to you other than in accordance with this Privacy Policy, or in breach of any law, please contact us immediately.If you are not satisfied with our response to any complaint, you have the right to lodge your complaint with your local data protection authority, which in Australia is as follows         

           

          The Office of the Australian Information Commissioner
                    Post: GPO Box 5218 SYDNEY NSW 2001
                    Email: [email protected]
                    Phone: 1300 363 992
                    Website: https://www.oaic.gov.au

           

          For any disputes, we reserve the right of final decision.

           

          Last updated: 4 August 2025