PRIVACY POLICY

Dundee Beach Holiday Park Pty Ltd
 Effective date: 22/09/2026
 Last updated: 22/09/2026

  1. Our commitment to privacy

Dundee Beach Holiday Park Pty Ltd, trading as Dundee Beach Holiday Park (“we”, “us” or “our”), respects your privacy and is committed to protecting the personal information we collect and hold.

This Privacy Policy explains how we collect, use, store and disclose personal information, and how you may request access to or correction of your information or make a privacy complaint.

Where applicable, we manage personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles.

This policy applies to information collected through:

  • our website and online booking system;
  • telephone, email and in-person enquiries and bookings;
  • reception and other Park operations;
  • third-party booking platforms;
  • guest Wi-Fi;
  • CCTV security systems;
  • competitions, promotions and marketing activities; and
  • photographs or video recordings taken at the Park.
  1. What personal information we collect

The personal information we collect will depend on your dealings with us and may include:

  • your name, residential address, email address and telephone number;
  • booking, arrival, departure and accommodation details;
  • the names and details of other guests included in your booking;
  • information about children or dependants travelling with you where required for the booking;
  • photographic identification;
  • vehicle registration details;
  • payment and billing information;
  • records of payments, refunds, bonds and charges;
  • membership or loyalty program details;
  • communications, enquiries, feedback and complaints;
  • accessibility, dietary, medical or emergency information you choose to provide where relevant to your stay;
  • details relating to incidents, accidents, property damage, breaches of Park rules or insurance matters;
  • CCTV images and recordings;
  • photographs or video recordings taken with consent or appropriate notice;
  • IP addresses, device details and technical information collected when you use our website or guest Wi-Fi; and
  • any other information you voluntarily provide to us.

We will only collect sensitive information where it is reasonably necessary for our operations and you have consented, or where collection is otherwise permitted or required by law.

  1. Information about other guests

If you provide personal information about another person, including another guest, child or visitor, you must ensure you are authorised to provide that information and, where appropriate, that the person understands how we may handle it under this policy.

The Primary Guest is responsible for ensuring that information provided about other occupants is accurate and complete.

  1. How we collect personal information

We may collect personal information:

  • directly from you when you make an enquiry or booking;
  • through our website or online booking system;
  • by telephone, email or at reception;
  • when you complete a registration form, agreement, survey, competition or incident report;
  • when you use Park facilities or guest Wi-Fi;
  • through CCTV operating within the Park;
  • from third-party booking platforms, including G’day Parks and Airbnb;
  • from travel agents, tour operators or accommodation booking providers;
  • from another person making a booking on your behalf;
  • from payment processors, insurers, emergency services or government authorities; and
  • from publicly available sources where lawful and appropriate.

Where practicable, we will collect personal information directly from you.

  1. Why we collect, use and disclose personal information

We may collect, use and disclose personal information to:

  • respond to enquiries and provide quotes;
  • process, administer and manage bookings;
  • verify guest identity and booking information;
  • allocate accommodation or sites;
  • process payments, refunds, security bonds and additional charges;
  • provide boom-gate access and manage vehicle movements;
  • communicate with guests before, during and after their stay;
  • provide requested services and facilities;
  • manage guest safety, security and emergency responses;
  • administer Park rules, booking terms and conditions;
  • investigate incidents, complaints, damage, unlawful activity or insurance claims;
  • maintain and improve our accommodation, facilities, services and website;
  • conduct accounting, auditing and business administration;
  • prevent fraud, misuse, unauthorised access and other security risks;
  • comply with legal, regulatory, insurance and law-enforcement requirements;
  • send marketing communications where permitted;
  • manage promotions, competitions and guest feedback; and
  • protect the rights, safety and property of guests, visitors, employees, contractors and the Park.

We may also use or disclose information for another purpose with your consent or where permitted or required by law.

  1. If you do not provide the requested information

You may choose not to provide personal information. However, if we cannot collect information that is reasonably required, we may be unable to:

  • confirm or administer your booking;
  • provide accommodation, site access or other services;
  • process a payment or refund;
  • meet safety, security, insurance or legal requirements; or
  • respond properly to your enquiry or request.

Guests may deal with us anonymously or by using a pseudonym where practicable. This may not be possible when we need to verify identity, process a booking or payment, provide access to the Park, respond to an emergency or comply with legal obligations.

  1. Third-party booking platforms

If you make a booking through a third-party platform such as G’day Parks or Airbnb, that provider may collect and handle your personal information under its own privacy policy.

The platform may provide us with information needed to manage your booking, communicate with you, provide your accommodation and meet our legal and operational responsibilities.

We are not responsible for the privacy practices of third-party websites or booking platforms. You should review the privacy policy of the relevant provider before supplying personal information.

  1. Payments and security bonds

Payment information may be collected or processed by us, our booking-system provider, financial institutions or payment-processing providers.

We take reasonable steps to limit access to payment information and use it only for authorised purposes, including processing:

  • booking deposits and balances;
  • refunds;
  • security bonds or pre-authorisations;
  • approved additional services; and
  • charges arising from damage, loss, cleaning or other amounts payable under our booking terms.

Payment providers may have their own privacy policies and security practices.

  1. CCTV surveillance

CCTV cameras operate in selected areas of Dundee Beach Holiday Park for safety, security, incident management, crime prevention and the protection of people and property.

CCTV may record guests, visitors, employees, contractors, vehicles and activities occurring within the camera’s field of view. Cameras are not installed in areas where people would reasonably expect complete privacy, such as bathrooms or inside guest accommodation.

CCTV footage may be reviewed or disclosed:

  • when investigating an accident, incident, complaint or suspected breach of Park rules;
  • to protect the safety or security of a person or property;
  • to insurers, legal advisers or relevant service providers;
  • to police, emergency services, courts or government authorities; or
  • where otherwise permitted or required by law.

Access to CCTV footage is restricted to authorised persons. Footage is retained only for as long as reasonably required for security, operational, evidentiary or legal purposes.

  1. Guest Wi-Fi

When you use our guest Wi-Fi, we or our telecommunications and technology providers may collect technical information such as:

  • your device identifier;
  • IP or network address;
  • connection dates and times;
  • data usage and network activity information; and
  • information needed to maintain network security and performance.

This information may be used to provide the service, diagnose faults, manage network capacity, prevent misuse and respond to security or legal requirements.

Guest Wi-Fi users are responsible for protecting their devices and information. We cannot guarantee that any public or shared Wi-Fi network will be completely secure.

  1. Website information and cookies

When you visit our website, certain technical information may be collected automatically, including your IP address, browser type, device type, pages visited, referring website and the date and time of your visit.

Our website or service providers may use cookies and similar technologies to:

  • operate website functions;
  • remember user preferences;
  • understand how visitors use the website;
  • improve website performance;
  • support booking functions; and
  • measure the effectiveness of advertising or promotions.

You may be able to control cookies through your browser settings. Disabling cookies may affect the operation of some website or booking functions.

  1. Photographs and video recordings

We may take photographs or video recordings for promotional, social media, website or business purposes.

Where an individual is the clear subject of a photograph or recording, we will seek consent where reasonably practicable. Consent from a parent or legal guardian will be sought before knowingly using an identifiable image of a child as the main subject of promotional material.

General images may occasionally be taken at public or communal Park activities. Where reasonably practicable, notice will be provided and guests may advise staff if they do not wish to be photographed or recorded.

We will not intentionally use an identifiable image in a manner that is misleading, offensive or inconsistent with the consent provided.

  1. Direct marketing

Where permitted by law, we may use your contact details to send information about accommodation, services, promotions or special offers that may be relevant to you.

You may unsubscribe at any time by:

  • using the unsubscribe facility included in the communication;
  • contacting us using the details below; or
  • asking our staff to update your communication preferences.

We will not sell or rent personal information to unrelated organisations for their own marketing purposes.

  1. When we disclose personal information

We may disclose personal information to:

  • booking-system operators and third-party booking platforms;
  • payment processors, banks and financial institutions;
  • website, IT, software, cloud-storage and telecommunications providers;
  • accountants, auditors, insurers, legal advisers and debt-recovery providers;
  • tradespeople, contractors and service providers assisting with Park operations;
  • loyalty or membership program providers where relevant;
  • emergency services and medical providers;
  • police, courts, regulators and government authorities;
  • a purchaser or adviser involved in a proposed sale, restructure or transfer of the business; and
  • any other person or organisation where you have consented or disclosure is permitted or required by law.

We take reasonable steps to disclose only the information necessary for the relevant purpose.

  1. Overseas disclosure and storage

Some third-party booking platforms, website operators, payment processors, cloud services, email providers and technology providers may store or process personal information outside Australia.

The countries in which information may be handled can vary depending on the provider, its systems and the location from which a booking is made. Details may be available in the relevant provider’s privacy policy.

Where Australian privacy law applies, we will take reasonable steps in relation to overseas disclosures as required by law. However, overseas recipients may be subject to privacy laws that differ from Australian law.

  1. Security of personal information

We take reasonable steps to protect personal information from misuse, interference, loss, unauthorised access, modification and disclosure.

These steps may include:

  • restricting access to authorised employees and service providers;
  • using passwords and access controls;
  • using reputable booking and payment systems;
  • securing paper and electronic records;
  • staff confidentiality and privacy procedures;
  • maintaining CCTV and physical security controls; and
  • securely destroying or de-identifying information when it is no longer required, subject to legal and business recordkeeping requirements.

No electronic transmission or storage system is completely secure. Guests should avoid sending payment-card details or other sensitive information through unsecured communication channels.

  1. Data breaches

If we become aware of a suspected data breach, we will investigate and take reasonable steps to contain and address it.

Where the Notifiable Data Breaches scheme applies and a breach is likely to result in serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner as required by law.

  1. How long we keep personal information

We retain personal information only for as long as reasonably required for the purpose for which it was collected or to meet legal, taxation, insurance, dispute-management and business recordkeeping obligations.

When personal information is no longer required, we will take reasonable steps to securely destroy or de-identify it.

Different retention periods may apply to booking records, financial records, CCTV footage, incident reports and marketing information.

  1. Accessing and correcting your information

You may request access to the personal information we hold about you or ask us to correct information that is inaccurate, out of date, incomplete, irrelevant or misleading.

Requests should be made using the contact details below. We may need to verify your identity before processing the request.

We will respond within a reasonable period. In some circumstances, access may be refused or limited where permitted by law. If this occurs, we will generally provide written reasons and explain the available complaint options.

We will not charge you for making an access request. A reasonable fee may apply to providing access where permitted by law, and we will advise you of any proposed fee beforehand.

  1. Privacy complaints

If you believe we have not handled your personal information appropriately, please contact us using the details below and provide:

  • your name and contact details;
  • details of your concern;
  • relevant dates, documents or booking information; and
  • the outcome you are seeking.

We will acknowledge and investigate your complaint and aim to respond within a reasonable period.

If you are not satisfied with our response, you may be entitled to contact the Office of the Australian Information Commissioner:

Website: www.oaic.gov.au
 Telephone: 1300 363 992

  1. External websites

Our website may contain links to external websites. We are not responsible for the content, security or privacy practices of those websites. You should review the privacy policy of each external website you visit.

  1. Changes to this policy

We may update this Privacy Policy from time to time to reflect changes to our operations, technology, service providers or legal obligations.

The current version will be published on our website and will show the date it was last updated.

  1. Contact us

For questions, access or correction requests, withdrawal of marketing consent or privacy complaints, please contact:

Privacy Officer
 Dundee Beach Holiday Park Pty Ltd
 Address: 20 Dundee Place, Dundee Beach
 Email: [email protected]
 Telephone: 08 8922 4992
 Website: https://dundeebeachholidaypark.com.au/