Myer
Retail & Ecommerce
No relevant claims found in policy. Overall: Room for improvement.
10 dimensions · 72 claims · assessed 14 May 2026 · methodology · source policy ↗
Score Breakdown
Transparency
Good with minor gaps
7.17/107.17/10
Transparency
Good with minor gaps
Transparency & Clarity
7/10Policy provides clear scope statement, specific contact information including dedicated privacy officer and access request emails, and numbered sections for navigation. However, lacks last updated date, definitions section, and table of contents.
Purpose Limitation & Use
8/10Detailed enumeration of primary collection purposes, clear marketing consent mechanisms with multiple opt-out methods, research and analytics uses disclosed, and secondary use conditions specified. Strong commitment to purpose-based processing with consent requirements.
Policy Maintenance & Accountability
6/10Named privacy officer with specific contact details, complaint handling timeframe of 30 days, policy availability disclosed, and staff security training requirements. However, lacks policy review frequency, advance notice of changes, and formal governance framework.
Data Protection
Good with minor gaps
6.89/106.89/10
Data Protection
Good with minor gaps
Data Collection Disclosure
8/10Comprehensive enumeration of specific data types collected, detailed collection methods including automated collection, sensitive data handling, and third-party sources. Strong disclosure of cookies, CCTV, and technical data collection with clear consent mechanisms.
Third-Party Sharing & Disclosure
7/10Clear disclosure of third-party categories and purposes, specific overseas countries named, contractual security obligations for service providers, and government disclosure circumstances. However, some categories remain broad rather than naming specific recipients.
Data Security
5/10Basic security measures disclosed including access controls, service provider requirements, and user responsibilities. However, lacks specific technical measures, encryption details, certifications, or breach notification commitments beyond user reporting obligations.
Cross-Border Data Flows
7/10Specific countries named for data transfers, clear notification of overseas service providers, contractual privacy law compliance requirements for recipients, and purpose disclosure for technology and data storage services.
Your Rights
Significant gaps
3.6/103.6/10
Your Rights
Significant gaps
Consumer Rights & Control
8/10Comprehensive access and correction rights with specific contact methods, detailed opt-out mechanisms across multiple channels, complaint process with 30-day timeframe, and OAIC escalation pathway. Includes verification requirements and fee disclosure.
Automated Decision-Making
1/10No explicit disclosure of automated decision-making, profiling, or AI use despite evidence of customization and targeted advertising activities. Lacks transparency about decision logic, opt-out rights, or human review mechanisms.
Children's Data
not assessedNo relevant claims found in policy.
No specific findings.
Sector Comparison
Retail & Ecommerce comparison