Effective Date: 30 January 2026
USL Medical (Universal Specialities Limited, referred to as “we”, “us”, or “our”) is committed to protecting your privacy. We comply with the Privacy Act 2020 and the Information Privacy Principles (IPPs) when collecting, holding, using, and disclosing personal information.
This Privacy Policy explains how we handle personal information through our websites, customer interactions, and related services as a distributor of medical, healthcare and other products.
1. What personal information we collect
We may collect personal information including:
- Contact and identification details: Name, email address, phone number, postal address, company/organisation name, job title/position.
- Account and order information: Username, password (encrypted), billing/shipping details, purchase history, payment information (processed securely via third-party providers; we do not store full card details).
- Business/credit-related information: For account applications – identification, credit history, trade references, repayment details (where relevant for credit terms).
- Website usage and tracking data: IP address, browser type and version, device type, operating system, pages visited, time/date of access, referral sources, click/stream/scroll behaviour, email interaction (e.g., opens/clicks if applicable).
- Other information: Details provided in enquiries, forms, support requests, feedback, or marketing preferences.
We collect only what is necessary for the purposes described below (IPP 1 – Purpose of collection).
2. How we collect personal information
We collect personal information:
- Directly from you (e.g., when you create an account, place an order, submit a form, contact us, or apply for credit).
- Automatically via our website and technologies (e.g., cookies, similar tracking technologies such as pixels and web beacons, server logs, analytics tools).
- From third parties (e.g., with your consent: payment processors, credit reporting agencies for credit checks, or publicly available sources where lawful).
Where possible, we collect directly from you (IPP 2 – Source of information). Collection is by lawful and fair means that do not unreasonably intrude on your affairs (IPP 3 – Collection from the individual concerned).
When we collect personal information (directly or indirectly), we take reasonable steps to ensure you are aware of: the fact of collection, the purpose, intended recipients, your rights to access/correct, consequences of not providing it, and our contact details (IPP 3 notification requirements). For cookies and tracking, we use a consent banner/tool on first visit for non-essential uses.
3. Purposes for which we collect, use, and hold personal information
We use personal information for purposes connected to our functions as a medical distributor and e-commerce provider, including:
- Processing orders, delivering products, managing accounts, and providing customer support.
- Administering credit applications, invoicing, payments, and debt recovery (where applicable).
- Communicating with you about orders, products, services, promotions, or updates (with your consent where required for marketing).
- Analysing website usage and traffic to improve user experience, site functionality, content, and services (e.g., understanding visitor behaviour, measuring advertising success).
- Tracking email interactions (e.g., delivery, opens, link clicks) for service improvement and communication effectiveness.
- Complying with legal obligations, preventing fraud, and enforcing our terms.
- Other purposes you consent to or that are reasonably related to the above.
We do not use or disclose information for unrelated purposes without your consent or another lawful exception (IPP 10 – Use limitation; IPP 11 – Disclosure limitation).
4. Disclosure of personal information
We may disclose personal information to:
- Service providers/contractors (e.g., payment gateways, shipping couriers, IT/hosting providers, analytics/marketing tools like Hotjar) who assist our operations (under strict confidentiality).
- Related entities or business partners where necessary for service delivery.
- Credit reporting agencies or referees (for credit assessments).
- Authorities or third parties as required/permitted by law (e.g., fraud prevention, legal requirements).
We do not sell personal information. Disclosures overseas may occur (e.g., cloud storage, analytics providers in other countries). We take reasonable steps to ensure overseas recipients comply with NZ privacy standards or equivalent protections (IPP 12 – Cross-border disclosure considerations).
5. Cookies and similar technologies
We and our partners use cookies and similar tracking technologies (e.g., pixels, web beacons) to collect and store information when you use our website. Cookies are small text files stored on your device/browser that help the site recognise you on return visits and enable certain features.
Types and purposes:
- Essential cookies: Strictly necessary for core site functions (e.g., session management, security, shopping cart). These do not require consent.
- Performance/analytics cookies: To understand how visitors interact (e.g., pages visited, clicks, scrolls, device/browser details, time on site). We use tools like Hotjar for anonymous insights into user experience improvements (device type, browser, navigation patterns; no name/contact details collected).
- Tracking technologies: Pixels/web beacons in emails or site content to track opens, clicks, IP address, browser/email client, and usage/traffic patterns for reports and service enhancement.
- These technologies do not read your hard drive but may store modest data (including some personal info like IP) specific to our site.
Consent and management:
- For non-essential cookies/tracking, we request your consent via a banner on first visit (or when using purchase/order features).
- You can withdraw consent or manage preferences at any time through your browser settings (e.g., delete cookies, block categories, or use private browsing).
- To opt out of Hotjar specifically: Visit https://www.hotjar.com/policies/do-not-track/.
- Disabling cookies may limit some site features (e.g., personalised experience, saved preferences).
We use these technologies lawfully and only for the purposes outlined.
6. Security of personal information
We take reasonable security safeguards (technical, physical, administrative) to protect personal information from loss, misuse, unauthorised access, disclosure, alteration, or destruction (IPP 5 – Storage and security). Transactions use SSL encryption. Data is stored securely with limited access. No internet transmission is 100% secure.
7. Access to and correction of your personal information
You have the right to:
- Request access to your personal information we hold (subject to exceptions under the Privacy Act).
- Request correction if inaccurate, incomplete, or outdated.
Requests should be in writing to our Privacy Officer (details below). We may charge reasonable fees for access/processing. We will respond promptly (usually within 20 working days) and verify identity before action (IPP 6 – Access; IPP 7 – Correction).
8. Retention of personal information
We retain personal information only as long as necessary for the purposes collected or required by law (IPP 9 – Retention limitation). Once no longer needed, we securely destroy or de-identify it.
9. Marketing communications
If we send marketing (e.g., newsletters, product updates), you can opt out at any time via unsubscribe links or by contacting us. We respect your preferences.
10. Changes to this Privacy Policy
We may update this policy to reflect changes in practices or law. Updates will be posted here with the effective date. Continued use of our site/services after changes constitutes acceptance.
11. Contact us / complaints
For questions, access/correction requests, concerns, or complaints about our privacy practices (including cookies):
The Privacy Officer
USL Medical
PO Box 15-645
New Lynn
Auckland 0640
Email: privacy@uslmedical.co.nz
Phone: 09 914 6575
We will investigate complaints promptly and fairly. If unsatisfied, you may contact the Office of the Privacy Commissioner (www.privacy.org.nz).
By using our website or providing personal information, you acknowledge that your personal information will be handled in accordance with this Privacy Policy.
Thank you for trusting USL Medical with your information.