Privacy Policy
Effective date: 12 May 2026
Last updated: 12 May 2026
This Privacy Policy explains how we collect, hold, use, disclose, store and otherwise handle personal and entity and entity information.
We are committed to handling personal and entity information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs) (to the extent they apply to us), and any other applicable privacy laws.
This policy should be read together with any privacy collection notices we provide at or around the time we collect personal and entity information (for example, on account application forms, order forms, credit account documentation, terms and conditions, or website notices).
1. Definitions
| Term | Meaning |
| Personal and entity information | Information or an opinion about an identified individual, or an individual who is reasonably identifiable (whether true or not, and whether recorded in a material form or not). |
| Sensitive information | A subset of personal and entity information given additional protection under the Privacy Act (e.g. health information, biometric information, political opinions, etc.). |
| Credit-related personal and entity information / credit eligibility information | Terms used in the Privacy Act in relation to credit reporting and credit eligibility. |
| De-identified information | Information that has been processed so that it can no longer be used (reasonably) to identify an individual. |
| You | The individual whose personal and entity information we handle (including customers, prospective customers and representatives of corporate customers, suppliers and other counterparties). |
2. Who this policy applies to
This policy applies to personal and entity information we collect about:
- customers and prospective customers (including individuals and business customers);
- directors, officers, employees, contractors and other representatives of our customers, suppliers and service providers;
- people who contact or communicate with us (including by email, phone, webform or in person);
- visitors to our premises (including where visitor registers and security controls are used); and
- users of any websites, portals or online services we operate (if any).
3. Our identity and contact details
Address Email Phone
57 Westlake Drive,
parts@assetarmour.com.au 1300 781 497
Mount Ommaney QLD 4074, Australia
4. What personal and entity information we collect and hold
The kinds of personal and entity information we may collect and hold depend on how you interact with us. It may include:
4.1 Identity and contact details
- name, title and position;
- employer/business name;
- postal address, delivery address and billing address;
- email address and telephone/mobile numbers.
4.2 Customer account, credit and business relationship information
- customer account details and account history;
- credit account application information and supporting information you provide;
- trade references or referees (where provided);
- credit limits and other account administration information;
- purchase orders, quotes, invoices, statements, delivery instructions, returns and service interactions.
4.3 Payment and financial information
- payment method and transaction details (to the extent necessary to process payments);
- payment status, arrears and collection activity information.
4.4 Communications, support and complaint information
- records of communications with us (including emails and call notes);
- support enquiries and requests;
- feedback, complaints and dispute information (and our responses).
4.5 Website, device and usage information (if applicable)
- IP address, browser type and device identifiers;
- pages visited, session and clickstream data, referring URLs, access times;
- cookie identifiers and preferences (see section 18).
4.6 Security, safety and incident information (if applicable)
- visitor register details (such as name, company, time in/out, person visited);
- security incident information (where relevant);
- CCTV footage (if applicable).
4.7 Sensitive information
We do not generally collect sensitive information. If we need to collect sensitive information for a specific purpose, we will only do so where permitted by law and, where required, with your consent.
5. How we collect personal and entity information
We may collect personal and entity information:
- directly from you, for example when you:
- request a quote, place an order, request information or open an account;
- complete forms (including credit account application forms);
- provide trade references or referee details;
- contact us by email, phone, webform or in person; and/or
- attend our premises or interact with our staff;
- from your employer or organisation, where you are a contact person for a business customer, supplier or service provider;
- from third parties where relevant and lawful, including:
- trade references, referees and business counterparties;
- credit reporting bodies and credit-related service providers (where applicable);
- delivery and logistics providers (for delivery confirmation and tracking);
- IT, software and systems providers (including customer relationship management and accounting platforms);
- professional advisers (for example, legal and accounting advisers);
- automatically, through cookies and similar technologies when you use our websites/online services (if any); and
- from publicly available sources, such as websites, publications and public registers, where appropriate.
- Where it is reasonable and practical, we will collect personal and entity information directly from you.
6. Purposes for which we handle personal and entity information
We collect, hold, use and disclose personal and entity information for purposes including:
6.1 Providing products and services
- responding to enquiries and preparing quotes;
- processing orders, deliveries, returns and related service interactions;
- communicating about orders, deliveries and account matters;
- providing customer support and handling complaints.
6.2 Account establishment and administration
- establishing and administering customer accounts (including credit accounts);
- maintaining customer records and contact lists;
- issuing invoices, statements, credits and reconciliations.
6.3 Credit assessment and credit management (if applicable)
- assessing eligibility for credit and setting credit limits;
- monitoring account performance and managing credit risk;
- collecting overdue amounts and managing disputes.
6.4 Payments, fraud prevention and risk management
- processing payments and refunds;
- detecting and preventing suspected fraud, misuse and unauthorised activity.
6.5 Business operations and improvement
- internal administration, auditing, training and quality assurance;
- analytics, research, planning and improving our products and services;
- managing supplier relationships and procurement.
6.6 Safety, security and incident management
- maintaining the security of our premises, systems and assets;
- preventing, detecting and investigating security incidents and unacceptable conduct.
6.7 Direct marketing and relationship management
- sending product updates and marketing communications where permitted by law;
- managing marketing preferences and opt-outs.
6.8 Legal and regulatory compliance and protection of rights
- meeting legal obligations and responding to lawful requests;
- establishing, exercising or defending legal rights and claims;
- managing disputes, investigations and litigation.
7. Authority for handling personal and entity information and consequences of not providing information
We handle personal and entity information where it is:
- necessary to provide products and services or to take steps at your request;
- necessary to perform or administer a contract with you or your organisation;
- required or authorised by law; and/or
- necessary for our legitimate business functions and activities (where permitted); and/or
- based on consent, where required.
- If you do not provide requested personal and entity information, we may not be able to provide products or services to you (or your organisation), open or administer an account, process orders, assess credit applications, or respond to certain requests.
8. Disclosure of personal and entity information
We may disclose personal and entity information to the following types of recipients, where necessary for the purposes set out in this policy and as permitted by law.
8.1 Our Related Entities
- Amet International Pty Ltd ACN 693 389 623
- Amet Industries Pty Ltd ACN 626 842 322
8.2 Service providers and contractors
- IT and cloud service providers and hosting providers;
- software and platform providers (including CRM, accounting and records systems);
- payment processors and financial institutions;
- freight, shipping, courier and logistics providers;
- contractors providing administrative, customer support, operational or technical services;
- marketing and communications providers (where applicable);
- professional advisers (including legal, accounting and auditors).
8.3 Credit-related recipients (if applicable)
- credit reporting bodies;
- trade references/referees and credit-related service providers;
- debt recovery providers (where applicable).
8.4 Regulators and others required by law
- government agencies, regulators, courts, tribunals and law enforcement, where required or authorised by law.
8.5 Other recipients
- other persons or organisations where you have consented, or where disclosure is otherwise permitted or required by law.
We take reasonable steps to ensure third parties we engage handle personal and entity information appropriately, including by requiring confidentiality and privacy protections where appropriate.
9. Disclosure of personal and entity information to individuals outside your organisation
If you provide us with personal and entity information about another person (for example, a colleague or other authorised contact), you must ensure that you are permitted to provide that information to us and that the person has been made aware of this policy (or otherwise consents where required).
10. Credit-related information (if applicable)
If you apply for, or hold, a credit account with us, we may collect and handle credit-related personal and entity information and/or credit eligibility information to:\
- assess your credit application and creditworthiness;
- administer your credit account and manage credit risk;
- collect overdue payments and manage arrears; and
- deal with disputes and complaints.
- This may involve exchanging information with credit reporting bodies, trade references/referees, and other credit providers, where permitted by law.
11. Overseas disclosure
We may use service providers (including IT or cloud providers) that store or process information outside Australia.
Where we disclose personal and entity information overseas, we take reasonable steps to ensure the overseas recipient does not breach the APPs (unless an exception applies).
12. Using government identifiers
We do not adopt, use or disclose government-related identifiers (such as a driver licence number, Medicare number or passport number) as our own identifier of you, except where required or permitted by law.
13. Data quality
We take reasonable steps to ensure personal and entity information we collect, use and disclose is accurate, up-to-date, complete and relevant.
If you become aware that personal and entity information we hold about you is incorrect or out of date, please contact us (see section 3).
14. Security of personal and entity information
We take reasonable steps to protect personal and entity information from misuse, interference and loss, and from unauthorised access, modification or disclosure.
Our security measures may include:
- access controls, password protections and (where applicable) multi-factor authentication;
- secure physical storage and restricted access to premises;
- network security and monitoring;
- staff training and confidentiality obligations; and
- policies and procedures for secure handling, retention and disposal. No data transmission or storage system can be guaranteed as 100% secure.
- If a data breach occurs that is likely to result in serious harm, we will comply with the Notifiable Data Breaches scheme and any other applicable legal requirements, including notifying affected individuals and the Office of the Australian Information Commissioner (OAIC) where required.
15. Unsolicited personal and entity information
If we receive personal and entity information that we did not request, we will determine whether we could have collected it under the APPs. If not, we will destroy or de-identify it as soon as practicable (unless we are required by law to retain it).
16. Direct marketing
Where permitted by law, we may use your personal and entity information to send you marketing and promotional communications about products and services that may be of interest to you.
You can opt out at any time by:
- using the unsubscribe mechanism in the relevant communication (if provided); or
- contacting us using the details in section 3.
- Opting out will not affect essential service communications (for example, communications about orders, deliveries, important service updates, or account notices).
17. Links to third-party websites and services
Our websites or communications may contain links to third-party websites, platforms or services. We are not responsible for the privacy practices of those third parties. You should review their privacy policies before providing personal and entity information to them.18
18. Cookies, analytics and online services (if applicable)
If we operate a website or online services, we may use cookies and similar technologies to:
- operate and administer the website/online services;
- remember user preferences and session information;
- measure and analyse traffic and usage to improve functionality and user experience; and
- assist with security and fraud prevention.
- You can usually manage cookies through your browser settings. If you disable cookies, some features of the website/online services may not function properly.
19. De-identified and aggregated information
We may create and use de-identified or aggregated information (that does not identify individuals) for legitimate business purposes, including analytics, reporting, auditing, and improving products and services.
20. Retention and disposal
We retain personal and entity information only for as long as reasonably necessary for the purposes set out in this policy, including to:
- provide products and services and administer accounts;
- meet legal, tax, accounting and record-keeping obligations; and
- manage disputes and enforce rights.
- When personal and entity information is no longer needed, we take reasonable steps to destroy or de-identify it in a secure manner, subject to any legal retention requirements.
21. Accessing and correcting personal and entity information
You may request access to personal and entity information we hold about you and request corrections if you believe it is inaccurate, incomplete or out of date.
Request How to request What we may require
Access Contact us using the details in
section 3
Correction Contact us using the details in
section 3
We will respond within a reasonable period.
Information to verify your identity and help us locate relevant records
Details of the correction sought and (if appropriate) supporting information
In some circumstances, we may refuse access or limit access as permitted by law (for example, where granting access would unreasonably impact another person’s privacy, relate to legal privilege, prejudice negotiations, or be otherwise exempt). If we refuse, we will provide reasons (where required) and explain available complaint options.
22. Complaints
If you have a concern or complaint about how we handle personal and entity information, please contact our Privacy contact (see section 3) and provide:
- your name and contact details;
- details of your complaint; and
- any relevant supporting information.
We will acknowledge receipt within a reasonable timeframe, investigate, and respond as soon as practicable.
If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC):
Regulator Website Phone
Office of the Australian Information Commissioner https://www.oaic.gov.au 1300 363 992
23. Changes to this policy
We may update this Privacy Policy from time to time. The updated version will apply from the date it is published or otherwise communicated.
If we operate a website, the current version may be published there. Otherwise, it can be provided on request.

