top of page
Fold-01---iStock-839389358---Background.jpg

Privacy Policy

Fold-01---iStock-839389358-Cloud02.png

At CoDIY (New Zealand) we respect your privacy and comply with the New Zealand Privacy Act 2020. This policy explains how and why we collect, use, disclose and protect your personal information. In line with the Privacy Act, we are transparent about how, when, and why we collect personal information. You will know when your information is being collected, how we use or share it appropriately, and how we keep it safe and secure. This policy applies to all personal data collected by CoDIY through our website, forms, cookies, analytics tools, and any other contact or service we provide.

​

Information We Collect

​

  • Data you provide directly. When you fill out a form on our website (for example, a contact form, sign-up form, or order form), we collect the information you submit. This may include your name, email address, postal address, phone number, payment details (if you make a purchase), and any other details you choose to provide. You are not required to provide all information, but without some data we may not be able to respond to your request or provide certain services.

  • Automatically collected data (Cookies and Analytics). We use cookies and similar tracking technologies on our website. Cookies are small text files placed in your browser that help the site function and provide us with information about how the site is usedprivacy.org.nz. For example, we use analytics cookies to gather aggregated, non-identifiable statistics about visitors and page views. This helps us improve our website and services. The data collected by analytics cookies does not personally identify you. You can disable or delete cookies through your browser settings, but please note that some features of our website may not work properly if cookies are disabled.

  • Data from other sources. If applicable, we may receive your information from third-party sources or partners (for example, if you connect with us via social media or a CRM integration). When we do, we will have obtained that information with your consent or have a lawful basis for doing so. We will only merge or use that information in compliance with this Privacy Policy.

​

How We Use Your Information

​

We use the personal information we collect for the following purposes:

  • To provide and improve our services. We use your contact and account details to deliver products or services you have requested (such as processing your order, sending quotes or invoices, and providing customer support). We may also use information about your use of our site or services (including analytics data) to analyze trends, improve our website, and enhance our offerings.

  • To process payments. If you make a purchase, your payment details are sent directly to and handled by secure third-party payment processors (such as Stripe or PayPal). We do not store full credit card information on our systems.

  • To communicate with you. We use your contact information to respond to your inquiries and provide you with information or notifications that you request, including account and service-related communications.

  • For marketing communications. If you have opted in, we may send you promotional emails or newsletters about CoDIY updates, new products or services, or other marketing materials. You may unsubscribe or opt out of marketing messages at any time by following the unsubscribe link in any email, or by contacting us directly. We comply with New Zealand’s anti-spam laws (the Unsolicited Electronic Messages Act 2007), so we will not send you marketing messages without your consent.

  • Legal and safety obligations. We may use or disclose your information when required by law, such as to comply with tax and accounting regulations, respond to lawful requests by courts or regulators, or to protect our rights or safety.

​

Cookies and Analytics

​

We use cookies and similar technologies to improve user experience and collect information about site usage. As noted above, cookies are small data files that help the website remember information or analyze how the site is being used. In particular, we use web analytics cookies (for example, Google Analytics) to gather anonymous information about how visitors use our website (such as which pages are visited and how long users stay). This information is used only in aggregate to improve our website and services and cannot personally identify you.

​

You have control over cookies. Most web browsers allow you to block or delete cookies through your settings. If you disable cookies, you may still visit most parts of our website, but some features (like keeping you logged in or remembering your preferences) may not work.

​

Third-Party Services and Data Sharing

​

To operate our business and provide services to you, we work with third-party service providers. When necessary, we share personal information with trusted partners and tools, under strict confidentiality and privacy obligations. The types of third-party services we use include:

  • Payment Processors: We engage secure payment gateways (e.g. Stripe, PayPal) to process your credit card or bank payments. These providers receive and handle payment data to complete transactions.

  • CRM Systems: We may use customer relationship management platforms (e.g. HubSpot, Zoho, etc.) to manage contacts, support inquiries, and communications. These systems help us track interactions and provide better service.

  • Accounting Software: We integrate with cloud accounting platforms (e.g. Xero, QuickBooks) to handle invoicing, payments, and financial records.

  • Hosting and Cloud Services: Our website and data are hosted on secure cloud servers. Hosting providers may store certain information (like backups or logs) on our behalf.

  • Email and Marketing Services: To send emails and newsletters, we use email marketing platforms (for example, Mailchimp or SendGrid). These services process your email address and marketing preferences on our behalf.

  • Website Analytics: We use analytics tools (like Google Analytics) to analyze web traffic. These tools use cookies to collect usage data as noted above.

​

In general, we share your personal information with third-party service providers who assist with billing, support, data hosting, storage, analytics, marketing, and email communications. These providers are under contract to keep your data confidential and secure, and to use it only for the purposes we specify. We will not sell your personal data to any third party.

​

Some third parties we use may be located outside New Zealand. When we transfer your data to overseas providers, we ensure there are appropriate safeguards in place (such as contractual commitments or compliance with privacy standards) to protect your information in accordance with NZ law.

​

We may also disclose personal information if required to do so by law, or if we believe that such disclosure is necessary to protect the rights, property, or safety of CoDIY, our employees, users, or others.

​

Marketing Communications

​

We only send you marketing communications (such as newsletters or promotional emails) if you have expressly agreed to receive them. In each marketing message, you will have a clear option to unsubscribe or opt out. You may opt out at any time, and we will promptly honor your request. We follow all applicable laws, including the Unsolicited Electronic Messages Act 2007 in New Zealand, which governs commercial emails and messages.

​

Even if you have opted out of marketing, we may still send you important administrative messages (for example, transaction or service-related notices). These are not considered marketing messages and are necessary for providing our services to you.

​

Data Security and Storage

​

Protecting your personal information is important to us. We implement appropriate technical and organizational measures to keep your data secure, including secure servers, encryption (where appropriate), and restricted access by our authorized staff. For example, personal data collected on our website is transmitted over HTTPS and stored on secure servers. We regularly review our security processes to safeguard against unauthorized access, loss, or misuse of data. As the Office of the Privacy Commissioner notes, we are committed to keeping your information safe and secure.

​

CoDIY operates only within New Zealand, and our primary data storage is in NZ. When using overseas third-party services, we ensure they are reputable and comply with NZ privacy principles. You have the right to be assured that your data is handled with care.

​

Retention of Personal Information

​

We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy and to meet legal and business requirements. For example, we may keep your contact and transaction records for several years to comply with tax and accounting laws. Once your information is no longer needed, we will securely delete or anonymize it.

​

If you stop being a customer or if you request deletion of your data, we will remove your personal information from our active systems, except where we are required to keep it (for instance, tax regulations or legal obligations). We continually review our retention periods and securely dispose of outdated information.

​

Your Rights and Choices

​

Under the Privacy Act 2020, you have the right to: access the personal information we hold about you; request correction of inaccurate or incomplete information; and, in some cases, ask us to delete or restrict use of your personal data. If you wish to exercise these rights, please contact us (see below) and we will respond promptly. You may also ask us to stop sending you marketing communications at any time.

​

If you have any concerns about our handling of your personal information, we encourage you to contact us first so we can address the issue. You also have the right to lodge a complaint with the New Zealand Privacy Commissioner. The Privacy Act 2020 ensures all New Zealanders have privacy rights and that organizations respect them.

​

Updates to This Policy

​

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or for other operational reasons. If we make significant changes, we will post the updated policy on our website and notify you (for example, by email) if appropriate. The “Last updated” date at the top of this policy indicates when the current version took effect.

​

Contact Us

​

If you have any questions or concerns about this Privacy Policy or our privacy practices, or if you want to exercise your rights, please contact CoDIY at:

We will do our best to address your concerns. For more information about your privacy rights in New Zealand, you may also visit the Office of the Privacy Commissioner’s website.

​

Last updated: August 2025.

​

Fold-01---iStock-839389358-Cloud01.png
Fold-01---iStock-839389358-Cloud02.png

© 2025 CoDIY All rights reserved ™

Thousands of Kiwis already manage their own company compliance — now you can too.

bottom of page