This Policy applies to all visitors to our website at www.jicinsider.com (the "Site"), all customers who purchase or activate a membership, and all communications with us. By using the Site or purchasing a membership, you agree to your personal information being handled as described in this Policy.
1. What is personal information?
"Personal information" means information or an opinion about an identified individual, or an individual who is reasonably identifiable, whether the information is true or not and whether recorded in a material form or not. This includes information like your name, email address, mobile number, and any information about how you interact with our service.
2. What information we collect
The personal information we collect depends on how you interact with us. The table below summarises what we collect, when, and why.
| Information | Collected when | Purpose |
|---|---|---|
| Full name | Sign-up, activation | Identification, personalisation, communications |
| Email address | Sign-up, activation, purchase | Account login, transactional and marketing messages, support |
| Mobile phone number | Sign-up, activation, purchase | SMS confirmations, deal alerts, account recovery |
| Date of activation and plan | Activation, purchase | Operating your membership, calculating expiry |
| Activation code (where used) | Physical card activation | Linking your physical card to your account |
| Marketing consent flag | Sign-up | Recording your opt-in or opt-out so we honour it |
| Redemption activity | Each time you redeem an offer | Tracking your usage, fraud prevention, reporting to venues |
| IP address (hashed) and user-agent | Each visit and each activation attempt | Security, abuse detection, fraud prevention, regional analytics |
| Device and browser info | Each visit to the Site | Operating the Site, debugging, security |
| Communication records | When you contact us | Responding to your enquiry, maintaining customer records |
2.1 What we do not collect
JIC Insider does not collect or store:
- Credit or debit card numbers, CVV codes, or expiry dates — all payment data is handled directly by Stripe (see section 5).
- Government-issued identification documents (passport, driver's licence, Medicare card).
- Health information, biometric data, or other sensitive information as defined in the Privacy Act.
- Information about your race, religion, political views, sexual orientation, or trade union membership.
- Information from anyone under 18 years of age (see section 10).
2.2 Anonymous interaction
You may visit and browse the public pages of the Site without providing any personal information. To purchase a membership or access member-only deals, however, you must provide the information described above. Anonymous browsing data (page visits, time on site) may still be collected for analytics — see section 4.
2.3 Member content
If you post a photo, review, or tag through JIC Insider, or send content to us via social media or message, we may collect and store that content. If you have set your social account to public and tag us, we may repost your content on our channels (such as Instagram or TikTok) to promote JIC Insider and participating venues. You can opt out at any time — email info@jicinsider.com with the subject line "UGC opt-out" and we will stop using your content and, where reasonably possible, take it down.
3. How we use your information
3.1 Operating your membership
- Creating and managing your account.
- Activating your membership and tracking its expiry.
- Verifying your active membership status to participating venues.
- Recording offer redemptions in our database.
3.2 Communicating with you
- Sending activation confirmations, payment receipts, and renewal notices (transactional).
- Sending expiry reminders and upgrade offers (lifecycle marketing — only if you have opted in).
- Sending notifications about new venue partners, deals, and service updates (marketing — only if you have opted in).
- Responding to your enquiries when you contact us.
3.3 Improving the service
- Understanding which deals are most popular so we can negotiate better offers.
- Identifying which venues drive the most redemptions.
- Detecting fraudulent activity or misuse of memberships — including logging IP address and user-agent on activation attempts.
- Producing internal reports and analytics.
3.4 Legal and compliance
- Meeting our obligations under Australian tax law, consumer law, and other applicable legislation.
- Cooperating with law enforcement requests where legally required.
- Defending against legal claims or disputes.
3.5 Marketing consent
Marketing consent is opt-in, not opt-out. We will only send you direct marketing messages under the Spam Act 2003 (Cth) if you have ticked the marketing opt-in box at sign-up or activation. We do not pre-tick that box. You can withdraw your consent at any time using any method in section 8.3. Transactional messages (receipts, renewal notices, account security, changes to these policies) are not marketing and will continue even if you withdraw marketing consent — the Spam Act permits this.
4. Cookies, local storage and analytics
4.1 Cookies and local storage
The Site uses cookies — small text files stored on your device — and browser local storage for the following purposes:
- Essential cookies: maintaining your login session, remembering your cart, and securing the Site.
- Functional cookies and local storage: remembering your preferences (such as dismissed banners and the cooldown timer on the upgrade prompt).
- Analytics cookies: helping us understand how visitors use the Site so we can improve it.
You can control cookies and clear local storage through your browser settings. Disabling essential cookies will prevent you from logging in or completing purchases. Disabling analytics cookies does not affect functionality.
4.2 Analytics services
We may use third-party analytics services to understand how visitors use the Site. These services may collect anonymous information such as pages visited, time on site, and browser type. They do not collect information that identifies you personally unless you have provided it through the Site itself.
5. Third parties who handle your information
We use the third-party service providers listed below to operate JIC Insider. Each is contractually required to handle your personal information securely and only for the purposes we direct. JIC Insider is the entity that decides what information is collected and why. We remain accountable to you for ensuring our service providers handle your information in line with this Policy and the Australian Privacy Principles. Where we send personal information to a recipient overseas, we take reasonable steps under Australian Privacy Principle 8 to ensure they handle it consistently with the APPs.
We do not sell your personal information. Ever.
5.1 Stripe — payment processing
All payments are processed by Stripe Payments Australia Pty Ltd ("Stripe"). When you make a payment, you enter your card details directly into Stripe's secure payment interface. JIC Insider does not see, receive, or store your card number, CVV, or expiry date. Stripe is certified to PCI DSS Level 1, the highest payment security standard. Stripe is an independent payment provider governed by its own terms and privacy policy. We do not control Stripe's systems. Nothing in this Policy is intended to limit your rights against us under the Australian Consumer Law, the Privacy Act, or any other law that cannot be excluded by contract.
5.2 Supabase — database hosting
Our member database is hosted on Supabase, a managed database platform that acts as our data processor. JIC Insider remains the data controller. Supabase stores your name, email, phone number, membership records, and redemption history in encrypted databases. Data may be stored in Supabase data centres located outside Australia.
5.3 Lovable — website hosting and email
Our website is built and hosted on the Lovable platform, which also provides our email delivery infrastructure for transactional and marketing emails. We may move to a dedicated email provider (such as Resend or Postmark) for improved deliverability. If we do, we will update this section.
5.4 SMS and voice services
Voice services (including our support voicemail line) are provided by Twilio Inc. Twilio receives your phone number and call recordings solely for the purpose of delivering and transcribing voicemail messages. We do not currently send SMS notifications. If we introduce SMS in future, we will update this section to name the provider before any messages are sent.
5.5 Participating venues
When you redeem an offer at a participating venue, the venue is shown limited information necessary to verify your membership: your first name, confirmation that you have an active membership, and the specific offer you are redeeming. Venues do not have direct access to our member database.
5.6 Other situations
We may also share your personal information:
- With our professional advisors (lawyers, accountants, IT consultants) where reasonably necessary.
- With law enforcement or government agencies where legally required.
- With a buyer or successor entity if JIC Insider is sold or merged.
- Where you have given us specific consent.
We do not sell your personal information to advertisers, data brokers, or anyone else.
6. Where your information is stored
Your personal information is primarily stored on servers operated by our third-party providers, located in Australia, Singapore, the United States, or other countries depending on the provider. Where personal information is transferred outside Australia, we take reasonable steps under Australian Privacy Principle 8 to ensure the overseas recipient handles the information consistently with the APPs. We remain accountable to you for the handling of your information by overseas providers we engage.
7. How we protect your information
7.1 Technical security
- HTTPS encryption for all data transmitted between your device and the Site.
- Encryption-at-rest for stored personal information.
- Role-based access controls limiting who can see member data.
- Strong password policies and multi-factor authentication for administrative access.
- Regular security updates of all underlying software and infrastructure.
7.2 Organisational measures
- Only authorised personnel have access to personal information, and only for the purposes described in this Policy.
- All staff and contractors handling personal information are bound by confidentiality obligations.
- We maintain logs of administrative access to detect any unauthorised activity.
7.3 Limits on security
While we use reasonable measures to protect your information, no method of transmission over the internet or electronic storage is completely secure. We cannot guarantee absolute security but we will respond promptly and openly to any incident affecting your information.
7.4 Data breach response
In the unlikely event of a data breach that is likely to result in serious harm to you, we will notify you and the Office of the Australian Information Commissioner (OAIC) in accordance with the Notifiable Data Breaches scheme under Part IIIC of the Privacy Act.
8. Your rights
8.1 Access to your information
You can ask for a copy of the personal information we hold about you at any time. We will respond within 30 days. Email info@jicinsider.com with the subject line "Privacy Access Request".
8.2 Correction of your information
If any information we hold is inaccurate, out of date, incomplete, or misleading, you can ask us to correct it through your account page or by emailing info@jicinsider.com.
8.3 Withdrawing marketing consent
- Click the unsubscribe link at the bottom of any marketing email.
- Reply STOP to any marketing SMS.
- Email info@jicinsider.com with the subject line "Unsubscribe".
You will still receive transactional messages (receipts, renewal notices, account security).
8.4 Deletion of your account
You can request deletion of your account by emailing info@jicinsider.com with the subject line "Delete My Account". We will delete or de-identify your information within 30 days, subject to records we are legally required to retain (see section 9).
8.5 Complaints
If you believe we have mishandled your personal information, contact us first at info@jicinsider.com with the subject line "Privacy Complaint". If you are not satisfied with our response, you can lodge a complaint with the Office of the Australian Information Commissioner (OAIC):
- Website: www.oaic.gov.au
- Phone: 1300 363 992
- Post: GPO Box 5288, Sydney NSW 2001
8.6 Right to sue for serious privacy invasions
Since June 2025, Australians have had a direct right to sue in court for serious invasions of privacy under a statutory tort. Nothing in this Policy limits that right or any other right you have under the Privacy Act or Australian Consumer Law.
9. How long we keep your information
- Active member records: for the duration of your membership and 12 months after expiry.
- Inactive member records: de-identified or deleted after 12 months of inactivity.
- Payment and transaction records: 7 years, to meet Australian tax law requirements.
- Redemption logs: identifiable for 24 months, then aggregated and anonymised.
- Communication records: 2 years from the last contact.
- Marketing consent and opt-out records: indefinitely, so we honour your preferences.
10. Age of members
JIC Insider is for adults aged 18 and over. You must be 18 or older to purchase a membership or create an account, and you confirm this at sign-up. We do not knowingly collect personal information from anyone under 18. If we become aware that we have, we will delete it without delay. If you believe we have collected information from a person under 18, contact us at info@jicinsider.com.
11. Links to third-party sites
The Site may contain links to third-party websites, including websites of participating venues and other services. We are not responsible for the privacy practices or content of those external sites. We encourage you to review the privacy policy of any third-party site before providing personal information to it.
12. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. The current version will always be available at www.jicinsider.com/privacy with the "Last updated" date shown at the top. For material changes — anything that affects how we collect, use, or share your information — we will notify you by email and provide at least 14 days' notice before the changes take effect.
13. Contact us
If you have any questions about this Privacy Policy or about how we handle your personal information:
Email: info@jicinsider.com
Phone: 0480 847 180
Post: 17/115 Shingley Drive, Airlie Beach, Queensland 4802, Australia
Subject lines for specific requests:
- "Privacy Access Request" — to see what data we hold about you.
- "Unsubscribe" — to stop marketing messages.
- "Delete My Account" — to request deletion.
- "Privacy Complaint" — to raise a concern.
- "UGC opt-out" — to ask us to stop using your content on our channels.
Business: JIC Global Pty Ltd (ACN 660 593 537), trading as JIC Insider.
JIC Insider is committed to handling your personal information responsibly, transparently, and in full compliance with Australian privacy law.