Privacy and Credit Reporting Policy – PepsiCo
1 Who is covered by this policy
PepsiCo, Inc., together with all its operating divisions, subsidiaries and affiliates in Australia (including but not limited to PepsiCo Australia Holdings Pty Ltd, The Smith’s Snackfood Company Limited, Sakata Rice Snacks Australia Pty Ltd and Quaker Oats Australia Pty Ltd) (collectively “PepsiCo”, “we” or “us”) respects and is committed to protecting your privacy.
This document is our combined Privacy and Credit Reporting Policy and describes how we will comply with our obligations under the Privacy Act 1988 (Cth) (Privacy Act) in relation to the handling of your personal information and also how we comply with the credit reporting obligations contained in the Privacy Act and the Credit Reporting Code as registered under section 26S(1) of the Privacy Act.
2 What is covered by this policy
This policy sets out how we manage your “personal information”. Certain parts of this policy also apply specifically to “credit-related information”. Section 5 of this policy sets out these credit-specific obligations in more detail.
When used in this policy, the term “personal information” has the meaning given to it in the Privacy Act. In general terms, it is any information that can be used to personally identify you. This may include your name, address, telephone number, email address and profession or occupation. If the information we collect personally identifies you, or you are reasonably identifiable from it, the information will be considered personal information.
In this policy, the term “credit-related information” means credit information, credit eligibility information and CRB derived information as those terms are defined in the Privacy Act. Generally speaking, credit-related information will include your name and address, your contact details, your date of birth and gender, details of your credit history (including any repayments missed or late repayments that you have made), information about any credit provided to you by credit providers (such as financial institutions, utilities or telecommunications providers), any credit rating or credit assessment score that we have derived or that is provided to us by a credit reporting body and details of any credit-related court proceedings or insolvency applications that relate to you.
We collect personal information in the course of our business dealings with you. Generally, and as appropriate, we will tell you why we are collecting personal information, when we collect it and how we plan to use it, or these things will be obvious when we collect the information. We usually collect personal information such as name, email and street address, telephone number, and records of your communications and interactions with us.
We may collect your personal information through our website, by phone, email, or through your participation in a promotion, competition, or survey. Such promotions, competitions or surveys may be conducted through third party websites, such as Facebook.
If you do not provide us with the personal information described above, some or all of the following may happen:
• we may not be able to provide any products or services to you, either to the same standard or at all;
• we may not be able to provide you with information about products or services that you may want, including information about special promotions; or
• we may be unable to tailor the content of our website to your preferences and your experience of our website may not be as enjoyable or useful.
As a general rule we do not collect sensitive information (as defined in the Privacy Act). However, if we do, it will usually be for the purposes of facilitating our business dealings with you and, if the law requires us to, we will seek your consent to collect your sensitive information.
If you provide us with personal information about another person, you should tell that person about this policy and let them know that their information has been provided to us.
We may also collect some information that is not personal information because it does not identify you or anyone else. For example, we may collect anonymous answers to surveys or aggregated information about how users browse our website.
4 Use and Disclosure
We use your information to provide and market our products to you and to fulfil administrative functions associated with our business activities. This can include processing payments, delivering orders, managing promotions, providing refunds and discounts, verifying your identity, communicating with you (including direct marketing), conducting product and market research, maintaining and updating our records, dealing with enquiries from you, and working with our service providers and other PepsiCo group companies in Australia.
We may also use and disclosure your personal information:
• to answer enquiries and provide information or advice about existing and new products and services;
• to provide you with access to protected areas of our website;
• to assess the performance of our website and to improve the operation of our website;
• to conduct business processing functions including providing personal information to our related bodies corporate, contractors, service providers or other third parties;
• for the administrative, marketing (including direct marketing), planning, product or service development, quality control and research purposes of us and our related bodies corporate, contractors or service providers;
• to provide your updated personal information to our related bodies corporate, contractors or service providers;
• to update our records and keep your contact details up to date;
• to process and respond to any complaint made by you;
• to comply with any law, rule, regulation, lawful and binding determination, decision or direction of a regulator, or in co-operation with any governmental authority; and
• to protect our lawful interests and facilitate purchases and potential purchases of our businesses.
We may provide marketing communications and targeted advertising to you on an ongoing basis by telephone, electronic messages (e.g. email) and other means. You can call us on 1800 500 502 at any time to opt out of electronic and telephone direct marketing communications.
We may disclose your information to
• service providers, contractors and strategic partners from time to time to help us provide and market our products to you;
• our employees, related bodies corporate, contractors or service providers for the purposes of operation of our website or our business, fulfilling requests by you, and to otherwise provide services to you including, without limitation, web hosting providers, IT systems administrators, mailing houses, couriers, payment processors, data entry service providers, electronic network administrators, debt collectors, and professional advisors such as accountants, solicitors, business advisors and consultants;
• suppliers and other third parties with whom we have commercial relationships, for business, marketing, and related purposes; and
• any organisation for any authorised purpose with your express consent.
If we do this, we will take steps to ensure those parties protect your information in the same way we do. From time to time, we may share your information with our business partners who will use your information to tell you about products or services which we think may be of interest to you.
We may also combine or share any information that we collect from you with information collected by any of our related bodies corporate (within Australia).
5 Credit Reporting Policy
This section 5 is our credit reporting policy. We may provide consumer credit and/or commercial credit to individuals, and this policy will apply in such circumstances. We may conduct a credit check on you, any joint account holders (or for corporate customers, any directors, partners or other authorised representatives) before credit is provided to you (or your related entity).
The Privacy Act and this policy do not apply to commercial credit provided to companies or other entities. However, this policy will apply where an individual applies for commercial credit or we request that a director or other authorised individual guarantees the commercial credit to be provided by us to a company or other entity. This policy will only apply in respect of any uses of individuals’ credit-related information as part of any assessment of the creditworthiness of that individual that we undertake and any consideration that we undertake in relation to an individual’s suitability as a guarantor.
5.2 Collection of credit-related information
We may collect the following particular types of credit-related information about you:
• your name, residential address (including previous addresses), contact details (including telephone and email addresses) and other identity verification emails;
• your date of birth and gender;
• your credit history (including any repayments missed or late repayments that you have made)
• details of any credit provided to you by other credit providers (such as other financial institutions, utilities or telecommunications providers);
• any credit rating or credit assessment score that we have derived or that is provided to us by a credit reporting body; and
• details of any credit-related court proceedings or insolvency applications that relate to you.
We may obtain this information from you or from third parties, including from credit reporting bodies and other credit providers, in order to assist us in determining whether we will provide any credit to you (or to your related company or other entity) or accept you as a guarantor of that credit.
5.3 Our use and disclosure of your credit-related information
We may use the credit-related information that is collected and held by us to help us decide whether or not to provide credit to you (or to your related company or other entity). We may also use this information to derive or calculate a credit assessment score in relation to you, which we may use to help in conducting an assessment of your creditworthiness or the creditworthiness of your related company or other entity.
The credit-related information that we hold about you may be used by us in accordance with Part IIIA of the Privacy Act and the Credit Reporting Code. The purposes for which we use your credit-related information may include:
• using your credit-related information to assess any application that you make to us for credit (or which is made by your related company or other entity);
• using your credit-related information to collect payments that are owed to us in respect of any credit that we have previously provided to you (or to your related company or other entity);
• disclosing your credit-related information to any of our related companies that are also are considering whether to provide credit to you (or to your related company or other entity);
• where you have offered to guarantee credit that we have offered to provide to your related company or entity, to assess your suitability as a guarantor of that credit and to enforce that guarantee if required;
• disclosing your credit-related information to a third party that you or we ask to act as a guarantor of any credit provided to you;
• disclosing your credit-related information to the credit reporting bodies that we deal with, including Dun & Bradstreet and Veda. Credit reporting bodies collect different types of credit-related information about individuals and use that information to provide a credit-related service to their customers (including to us);
• disclosing your credit-related information to other third parties that provide services to us (or to you on our behalf). These might include debt collectors, credit management agencies and other third parties that process applications for credit made to us;
• disclosing your credit-related information to other credit providers which provide, or are considering providing, credit to you (or to your related company or other entity);
• using and disclosing credit-related information that we hold about you to assess and respond to any access or correction requests that you make to us;
• where we are consulted by a credit reporting body or another credit provider about an access or correction request that you have made to those entities, to respond to that consultation request;
• where you complain to the Information Commissioner or any provider of a recognised external dispute resolution scheme about our treatment of your credit-related information, to respond to that complaint and to seek legal or other professional advice in relation to your complaint;
• using and disclosing credit-related information that we hold about you as required by law or the order of a court or tribunal; and
• where you otherwise expressly consent to the use or disclosure.
5.4 Other matters relating to your credit-related information
Where required by law, we will make a written note (which may be kept in electronic form) of any use or disclosure that we make relating to your credit-related information.
• you (or your related company or other entity) make an application for credit to us; or
• you offer to guarantee credit that we propose to provide to your related company or other entity,
and we subsequently refuse your application or offer based on information provided to us by a credit reporting body about you, we will inform you of this and provide you with the name and contact details of that body and any other information required by law to be provided to you.
5.5 Access and correction
You have a right to request access to, or the correction of, any credit-related information that we hold about you. You may request access to or the correction of, any credit-related information that we hold about you in accordance with section 11 of this policy.
You may complain about any failure by us to comply with Part IIIA of the Privacy Act or the Credit Reporting Code. If your complaint relates to our failure to provide access to or to correct any credit-related information that we hold about you, you may lodge a complaint directly with the Office of the Australian Information Commissioner (for more information, please see http://www.oaic.gov.au) or with a provider of an external dispute resolution scheme (if we are required by law to be a member of such a scheme), If this applies, we notify you of this and the identity of external dispute resolution provider at the time that you make a credit-related complaint.
If you make a complaint in relation to correction of your credit-related information, we will notify each other credit provider and credit reporting body to which we have previously disclosed that information that you have made a correction complaint in relation to that information and the outcome of that complaint, unless it is impracticable or illegal for us to do so.
6 Our website
6.1 Application of this policy
This policy also applies to our websites at www.pepsico.com.au, www.pepsimax.com.au, www.pepsinext.com.au, www.gatorade.com.au, www.smiths.com.au, www.doritos.com.au, www.redrockdeli.com.au, www.grainwaves.com.au, www.sakata.com.au and www.quakeroats.com.au, including any personal and credit-related information you provide to us using our website.
As our website is linked to the internet, and the internet is inherently insecure, we cannot provide any assurance regarding the security of transmission of information you communicate to us online. We also cannot guarantee that the information you supply will not be intercepted while being transmitted over the internet. Accordingly, any personal information or other information which you transmit to us online is transmitted at your own risk.
Our website may contain links to other websites operated by third parties. We make no representations or warranties in relation to the privacy practices of any third party website and we are not responsible for the privacy policies or the content of any third party website. Third party websites are responsible for informing you about their own privacy practices.
7 Direct marketing materials
We may send you direct marketing communications and information about our products and services that we consider may be of interest to you. These communications may be sent in various forms, including mail, SMS, fax and email, in accordance with applicable marketing laws, such as the Spam Act 2003 (Cth). If you indicate a preference for a method of communication, we will endeavour to use that method whenever practical to do so. In addition, at any time you may opt-out of receiving marketing communications from us by contacting us (see the details below) or by using opt-out facilities provided in the marketing communications and we will then ensure that your name is removed from our marketing list.
We may provide your personal information to other organisations, for example our marketing agencies, for the purposes of direct marketing.
8 Do we disclose your information to anyone outside Australia?
We may disclose personal information and credit-related information to our related bodies corporate and our third party suppliers and service providers located overseas for some of the purposes listed above.
We take reasonable steps to ensure that the overseas recipients of your personal and credit-related information do not breach the privacy obligations relating to your information.
We may disclose your personal and credit-related information to entities located outside of Australia, including the following:
• our related bodies corporate, located in the United States of America and New Zealand;
• our data hosting and other IT service providers, located in the United States of America, Singapore and India; and
• other third parties located in the United States of America and New Zealand.
9 Security and data quality
We hold personal and credit-related information electronically and in hard copy form, both at our premises and with the assistance of our service providers. We use a variety of physical and electronic security measures including restricting physical access to our offices, firewalls and secure databases to keep personal information secure from misuse interference and loss and from unauthorised access, modification or disclosure
We take reasonable steps to ensure that the personal information and credit-related information that we collect, use and disclose about you is accurate, complete and up-to-date and, in relation to the purpose of our use or disclosure, relevant. Personal information and credit-related information is destroyed or de-identified when no longer needed or where we are no longer required by law to retain it (whichever is the later).
We are bound by the Australian Privacy Principles in the Privacy Act. Where appropriate we will handle personal information relying on the related bodies corporate exemption in sharing your information within PepsiCo and the employee records exemption in the Privacy Act when dealing with the personal information of any PepsiCo employee.
11 Access and correction
You may request access to any personal information or credit-related information that we hold about you at any time by contacting us (see the details below). Where we hold information that you are entitled to access, we will try to provide you with suitable means of accessing it (for example, by mailing or emailing it to you). We may charge you a reasonable fee to cover our administrative and other reasonable costs in providing the information to you. We will not charge for simply making the request and will not charge for making any corrections to your personal information.
There may be instances where we cannot grant you access to the personal information or credit-related information that we hold about you. For example, we may need to refuse access if granting access would interfere with the privacy of others or if it would result in a breach of confidentiality. If that happens, we will give you written reasons for any refusal.
If you believe that any personal information or credit-related information that we hold about you is incorrect, incomplete or inaccurate, then you may request that we amend it. We will consider if the information requires amendment and notify you of our decision.
For any personal information that we hold about you, we will:
• respond to your request that for the correction of your personal information within a reasonable time (usually within 30 days);
• if we agree to your request, promptly correct any personal information that we hold about you that we are satisfied is inaccurate, out-of-date, incomplete, irrelevant or misleading; and
• if we do not agree that there are grounds for amendment, then we will not correct your personal information. However, you may request then we add a note to the personal information stating that you disagree with it.
For any credit-related information that we hold about you, we will:
• respond to your request that for the correction of your credit-related information within 30 days (or such longer period as you may agree or we may request). If we cannot respond to your correction request without consulting with other credit providers or credit reporting bodies in relation to your request, we may do so and these bodies are permitted by law to assist us in resolving your correction request;
• if we agree to your request, promptly correct any credit-related information that we hold about you that we are satisfied is inaccurate, out-of-date, incomplete, irrelevant or misleading. If we do correct your credit-related information at your request, we will inform you and each other credit provider and credit reporting body to which we have previously disclosed that information that we have corrected your information. Where we disclosed your credit-related information after you made a complaint but before it was resolved, we will tell the recipient that you have made such a complaint and we will subsequently inform that entity of the outcome of your correction request; and
• if we have any other reasons for suspecting that the credit-related information that we hold about you has become inaccurate, out-of-date, incomplete, irrelevant or misleading, independently correct this information without consulting you. If we do this, we will take reasonable steps to notify that correction to you and to any other entities to which we have previously disclosed that credit-related information (unless it is impracticable for us to do so).
12 What is the process for complaining about a breach of privacy?
If you believe that your privacy has been breached, please contact us using the contact information below and provide details of the incident so that we can investigate it.
If your complaint relates to our failure to provide access to or to correct any credit-related information that we hold about you, you may lodge a complaint directly with the Office of the Australian Information Commissioner (for more information, please see http://www.oaic.gov.au).
If we are required by law to be a member of an external dispute resolution scheme, you can also lodge a complaint relating to credit-related information with that organisation. If this applies, we notify you of this and the identity of external dispute resolution provider at the time that you make a credit-related complaint.
Otherwise, if you have a complaint in relation to our handling of your credit-related information that is not mentioned above or if you complaint relates to your Personal Information, you must first lodge your complaint with us using the details in section 13 (Contact us) below and provide us with details of the incident so that we can investigate it.
We will treat your complaint confidentially. Our representative will contact you within a reasonable time after receipt of your complaint to discuss your concerns and outline options regarding how they may be resolved. We will aim to ensure that your complaint is resolved in timely and appropriate manner.
if you are not satisfied with our handling of your complaint or our proposed resolution, you have a right to lodge a further complaint with the Office of the Australian Information Commissioner (for more information, please see www.oaic.gov.au). The Office of the Australian Information Commissioner can provide you with further information about the next steps in its complaints process.
If your complaint relates to credit-related information that we hold about you and we notify you that we are required by law to be a member of an external dispute resolution scheme, you may instead lodge your complaint with that organisation. If this applies, we notify you of this and the identity of external dispute resolution provider at the time that you make a credit-related complaint.
Where your complaint relates to the correction of your credit-related information and the resolution of your complaint requires us to correct your information, we will inform each other credit provider and credit reporting body that we have previously disclosed your information to that that you have made a correction complaint in relation to that information and that we have corrected your information as a result of the outcome of that complaint. However, if it is impracticable or illegal for us to do so we are not required by law to give this notification.
13 Contact Us
If you have any questions about this policy, any concerns or a complaint regarding the treatment of your personal or credit-related information or want to notify us of a possible breach of your privacy, please contact the PepsiCo Privacy Officer as follows:
Phone: 1800 025 789 Email: firstname.lastname@example.org Post: Tower A, Level 8 799 Pacific Highway Chatswood NSW 2067 Australia
14 Changes to our privacy and credit reporting policy
We may change this privacy and credit reporting policy from time to time. Any updated versions of this policy will be posted on our website and will be effective from the date of posting.
This policy was last updated in March 2014.
16. View our Terms of Sale Conditions here.