1. Introduction
Welcome to Xanda Interior Design (“we” / “us” / “our”). We value your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, store and protect personal information in relation to our website and design services, in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
2. Who we are
- Name of business: Xanda Interior Design Pty Ltd
- Business address: Unit 22, 42-46 Wattle Road, Brookvale, NSW 2100
- Contact details: hello@xandainteriordesign.com.au
- Website: www.xandainteriordesign.com.au
3. What personal information we collect
We may collect the following kinds of personal information when you interact with our site or use our services:
- Name, postal address, email address, phone number
- Billing / payment information (e.g. credit card, bank account)
- Information about your home or premises relevant to design work (e.g. address, photos, measurements)
- Preferences and feedback (design style preferences, communications preferences)
- Usage information (e.g. how you use the site, which pages you visit)
- Information you provide when you request a quote, consultation, subscribe to newsletters, or otherwise contact us
4. How we collect personal information
We collect information in several ways:
- Directly from you (when you fill out forms, request quotes, contact us)
- Automatically via the website (cookies, analytics tools)
- From third parties (e.g. contractors, suppliers, referrals) where relevant and as permitted by law
5. Purposes for which we collect, hold, use and disclose personal information
We use personal information for purposes including but not limited to:
- Providing design and project services to you
- Quoting, invoicing and payment processing
- Communicating with you (including responding to enquiries, providing updates)
- Marketing our services (only with your consent or where permitted by law)
- Improving our site, our services, and customer experience
- Meeting legal or regulatory obligations
6. Disclosure of personal information
We may disclose your personal information to:
- Our employees, contractors, suppliers, and subcontractors who help with design, procurement or other project-related work
- Third-party service providers (such as payment processors, analytics providers, hosting services)
- Where required by law, or to protect our legal rights
- With your consent, or as otherwise permitted under the APPs
7. Overseas disclosure
If we send personal information overseas (for example, to cloud servers, analytics providers, or contractors outside Australia), we will take reasonable steps to ensure that the overseas recipient handles your information in a manner consistent with the APPs. We will inform you which countries may be involved, where feasible.
8. Data quality, data security, and retention
- We take reasonable steps to ensure the personal information we collect is accurate, up-to-date, complete and relevant to its purpose.
- We implement appropriate security measures (technical, organisational) to protect personal information from misuse, loss, unauthorised access, modification or disclosure.
- We will retain personal information for as long as needed to fulfill the purposes for which it was collected, or as required by law. Once no longer needed, we will securely destroy or de-identify the data.
9. Access to and correction of your personal information
- You may request access to the personal information we hold about you, subject to permitted exceptions under the Privacy Act.
- If you believe any personal information we hold is inaccurate, incomplete, out of date or misleading, you may ask us to correct it.
- To request access or correction, contact us via the details in Section 2. We may charge a reasonable fee for search, retrieval or copying, but only where permitted by law.
10. Anonymity and pseudonymity
Where practicable, you may interact with us anonymously or under a pseudonym (for example unsubscribing from some services) unless it is impracticable for us to do so or if doing so would prevent us from delivering a service you requested.
11. Direct marketing
- If you have consented, we may send you marketing or promotional materials about our services.
- Each communication will include a clear way for you to opt-out or unsubscribe.
- We will comply with your opt-out requests in a timely manner.
12. Cookies and tracking technologies
- Our website uses cookies, analytics tools, and possibly similar technologies to collect usage data, track browsing behaviour, improve site performance, and personalise user experience.
- You can manage or disable cookies via your browser settings, but this may affect certain site functionality.
13. Breach notification
If a data breach occurs that is likely to result in serious harm, we will take all reasonable steps to notify you and the Office of the Australian Information Commissioner (OAIC), as required by the Notifiable Data Breaches scheme.
14. Complaints and enquiries
- If you have any questions, concerns or complaints about how we handle your personal information, please contact us using the details in Section 2.
- We will investigate your complaint and aim to respond within a reasonable time.
- If you are not satisfied with our response, you may contact the OAIC or other relevant supervisory authority.
15. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal obligations. We will indicate at the top when it was last updated. Continued use of our site or services after changes are made constitutes acceptance of those changes.
16. Effective date
This Privacy Policy is effective as of 19th September 2025.