Last updated: January 2026
I. GENERAL PRIVACY POLICY
1. Our approach to privacy
We respect the privacy of every person who visits, shops with, or otherwise interacts with Lollipop Shop. We understand that privacy expectations can be heightened given the nature of the products sold on this website. We treat personal information carefully, discreetly, and in a manner designed to minimise unnecessary exposure.
This Privacy Policy explains:
-
what personal information we collect and receive;
-
why we collect it and how we use it;
-
when we share it, and with whom;
-
how we store and protect it;
-
how long we keep it;
-
the choices and rights you may have depending on your location; and
-
how to contact us with questions or requests.
If our privacy practices change, we will update this Policy and revise the “Last updated” date above. The most current version will always be published on our website.
2. Who we are - data controller and operator details
This website is operated by Lollipop Technology (“we”, “us”, “our”) of PO Box 1530, Macquarie Centre NSW 2113, Australia.
For the purposes of applicable privacy and data protection laws, including the UK GDPR and EU GDPR, Lollipop Technology is the data controller for personal information processed through this website (meaning we determine the purposes and means of processing).
We operate from Australia and comply with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). Because we sell and ship internationally, additional rights and obligations may apply depending on your jurisdiction (including the UK, EU/EEA, the USA, Canada, and New Zealand).
Contact: privacy@thelollipop.shop
Mailing address: PO Box 1530, Macquarie Centre NSW 2113, Australia
3. Who this policy applies to
This Policy applies to:
-
visitors to our website;
-
customers who purchase from us;
-
account holders;
-
marketing subscribers;
-
individuals who contact customer support;
-
affiliates and promotional partners; and
-
suppliers and business contacts where personal information relates to an identifiable individual.
4. Age restriction
Our website and products are intended for individuals aged 18 years or older.
We do not knowingly collect personal information from individuals under 18. If we become aware we have collected personal information from a minor, we will take reasonable steps to delete it.
We do not knowingly sell or share personal information of minors under 18.
5. Key privacy principles we follow
We aim to process personal information in line with widely recognised privacy principles, including:
-
lawfulness, fairness, and transparency;
-
collecting information for specific purposes;
-
data minimisation;
-
accuracy;
-
storage limitation;
-
security and confidentiality; and
-
accountability.
II. WHAT WE COLLECT
6. Categories of personal information
The information we collect depends on how you interact with us.
6.1 Identity and contact information
-
name;
-
email address;
-
phone number;
-
billing and shipping address.
6.2 Account information
-
account email address;
-
order history;
-
saved cart/wishlist information (where enabled);
-
customer support interactions and correspondence.
6.3 Transaction and payment information
-
products purchased;
-
order value and dates;
-
payment status, payment confirmation, transaction identifiers;
-
refunds, chargebacks, disputes, and related correspondence.
Important: We do not store full card numbers. Payments are processed by independent payment providers under their own privacy policies. We do not have access to your password - it is stored using secure encryption methods.
6.4 Technical, device and usage information
-
IP address;
-
device type;
-
browser type;
-
operating system;
-
pages visited and site interactions;
-
cookie identifiers and similar technologies;
-
referral sources (e.g., where you came from before visiting our site).
6.5 Marketing and advertising information
-
subscription status and consent preferences;
-
email engagement data (e.g., opens/clicks);
-
campaign attribution (e.g., which ad or channel led to an order);
-
coupon code usage for marketing measurement.
6.6 Customer service and communications
-
emails, forms, chat content (if enabled);
-
order numbers and details needed to resolve enquiries;
-
information you provide when seeking support or a refund.
7. Sensitive nature of products - special category data
The products offered on the Lollipop Shop are adult products intended for private use.
We do not intentionally collect or process “special category” data (such as health data or sexual orientation data). Purchasing an adult product does not automatically reveal any specific personal characteristic. We treat order information as confidential commercial information and aim to minimise unnecessary exposure.
8. Sources of personal information
We collect personal information from:
-
you directly (checkout, account creation, enquiries);
-
automatically through your use of our website (cookies, logs, analytics);
-
payment providers (transaction confirmations and fraud signals);
-
fraud prevention / security providers (risk indicators);
-
advertising platforms (attribution signals, where enabled and lawful).
III. WHY WE COLLECT IT - HOW WE USE IT
9. Primary purposes
We use personal information for purposes including:
9.1 Providing products and services (contract performance)
-
processing orders and payments;
-
shipping and fulfilment;
-
returns and refunds;
-
responding to customer support enquiries;
-
maintaining your account (if created).
9.2 Operating and improving the business
-
fraud prevention and security monitoring;
-
risk management;
-
platform performance and troubleshooting;
-
analytics to improve customer experience;
-
internal reporting and reconciliation;
-
compliance with legal obligations (including tax and accounting).
We may use automated tools to assist with fraud detection and transaction risk assessment. These tools are used to support security and risk processes and do not produce legal or similarly significant effects without appropriate review.
9.3 Marketing, communications and advertising
Where permitted by law, we may use personal information to:
-
send promotional emails or messages (subject to your choices and local law);
-
measure marketing effectiveness;
-
understand campaign performance and conversions;
-
personalise marketing where required consent has been provided.
10. Required vs optional information
Some information is necessary for us to provide services. For example:
-
If you do not provide a shipping address, we cannot deliver products.
-
If you do not provide payment-related details (to the payment provider), we cannot process your order.
Marketing subscriptions and many cookie choices are optional.
IV. LEGAL BASES (UK/EEA)
11. Legal bases for processing
If you are located in the UK or EEA, we process personal information on one or more of the following bases:
-
Contract: to process and fulfil your order.
-
Legitimate interests: to operate our business, keep it secure, and improve our services (balanced against your rights).
-
Consent: for optional cookies, certain tracking technologies, and where required for marketing.
-
Legal obligation: to comply with applicable laws, including tax and accounting rules.
Where processing is based on consent, you may withdraw consent at any time. Withdrawal does not affect processing that occurred before withdrawal.
V. HOW WE SHARE INFORMATION
12. We do not sell personal information
We do not sell personal information for monetary consideration.
Under certain US state privacy laws, some advertising and measurement activities may be treated as “sharing” for targeted advertising purposes. Where applicable, you may have the right to opt out (see US section below).
13. Who we disclose information to
We may disclose personal information to trusted third parties as needed to operate our business, such as:
13.1 Payment providers
To process payments and prevent fraud. Payment providers may act as independent controllers.
13.2 Shipping and fulfilment partners
To deliver orders and provide tracking.
13.3 Store platform, hosting and IT providers
Including BigCommerce and technical service providers that support website operations.
13.4 Marketing and communications providers
Email/SMS platforms and customer messaging providers (for transactional and marketing communications, depending on your settings).
13.5 Analytics and advertising providers (where enabled)
Such as Google Analytics (GA4), Google Ads conversion tracking, Hotjar, and similar tools, where permitted and subject to consent requirements where applicable.
13.6 Fraud prevention and security providers
To protect against fraudulent transactions and malicious activity.
We seek to use providers that protect personal information and restrict use of personal information to what is necessary for service delivery.
14. Legal disclosure and protection of rights
We may disclose personal information where we reasonably believe it is necessary to:
-
comply with applicable law, regulation, legal process or lawful request;
-
enforce our terms or policies;
-
protect our rights, customers, or the public;
-
detect, prevent or address fraud, security or technical issues.
VI. AFFILIATE AND PROMOTIONAL PARTNER PROGRAM
15. Affiliate program overview
We operate an affiliate and promotional partner program through which selected individuals or businesses (“Affiliates”) may promote our products using unique referral codes or links.
15.1 Information we collect from affiliates
If you participate as an Affiliate, we may collect:
-
name and contact details;
-
business name (if applicable);
-
bank account details for commission payment;
-
commission calculations and payout history;
-
communications relating to the affiliate relationship.
15.2 How we use affiliate information
We process affiliate information to:
-
administer affiliate onboarding;
-
track referrals generated via codes/links;
-
calculate and pay commissions;
-
keep financial and tax records;
-
communicate about affiliate performance and program matters.
15.3 Customer privacy in affiliate programs
When a customer uses an affiliate code or link:
-
we attribute the order internally for commission purposes;
-
we do not provide affiliates with customers’ names, addresses, emails or product details;
-
affiliates receive only aggregated commission totals (e.g., total amount earned in a period).
We do not disclose identifiable customer personal information to affiliates unless required by law.
15.4 Legal basis (UK/EEA)
Where applicable, affiliate data is processed based on:
-
contract (affiliate relationship and payments);
-
legitimate interests (operating and growing the business);
-
legal obligations (accounting and taxation requirements).
VII. INTERNATIONAL TRANSFERS
16. Cross-border processing
Some service providers may store or process personal information outside Australia, including in the USA, UK or EU.
Where required by law, we implement safeguards such as:
-
contractual data protection terms;
-
Standard Contractual Clauses (where relevant);
-
reliance on adequacy decisions or similar recognised mechanisms.
VIII. DATA RETENTION
17. How long we keep personal information
We retain personal information only as long as necessary for the purposes set out in this policy, including:
-
order fulfilment and support;
-
financial record keeping;
-
dispute resolution and enforcement;
-
security and fraud prevention;
-
consent and preference records.
Retention periods vary depending on data type and legal requirements. When information is no longer required, we take reasonable steps to delete or de-identify it.
IX. COOKIES, TRACKING AND AD TECHNOLOGIES
18. Cookies and similar technologies
We use cookies and similar technologies to support:
-
essential site functionality (cart, checkout, security);
-
site preferences;
-
analytics (understanding usage);
-
advertising measurement and optimisation.
Where required by law (such as in the UK/EU), non-essential cookies will only be set after you provide preferences via our cookie banner.
You can also control cookies through browser settings, but blocking certain cookies may affect site functionality.
18.1 Analytics and measurement
We may use tools such as Google Analytics to measure website performance and customer behaviour (e.g., page views, session duration, interactions). These tools may use cookies or similar technologies.
18.2 Advertising and attribution
We may use advertising platforms (such as Google Ads) to measure conversion performance and optimise campaigns. These may involve cookies or identifiers, subject to applicable consent requirements.
X. SECURITY
19. Security safeguards
We implement reasonable technical and organisational measures designed to protect personal information, including:
-
HTTPS/TLS encryption;
-
role-based access controls;
-
restricted staff access;
-
platform security controls;
-
periodic review of security practices.
No method of transmission or storage is completely secure. However, we take reasonable steps appropriate to the nature of our business.
19.1 Phishing awareness
“Phishing” is a scam designed to steal personal information. We will never ask you to disclose passwords or full payment card details via email. If you receive a suspicious email claiming to be from us, do not respond and contact us via our published channels.
XI. CORPORATE TRANSACTIONS
20. Business transfers
If we are involved in a merger, acquisition, restructuring, financing, or sale of assets, personal information may be transferred as part of that transaction, subject to appropriate confidentiality and data protection obligations.
XII. YOUR RIGHTS AND CHOICES
21. Marketing preferences
You can opt out of marketing communications at any time by:
-
using the “unsubscribe” link in emails; or
-
contacting us using the details below.
We may still send transactional messages related to orders and service.
22. Access, correction and other rights
Depending on your location, you may have rights to:
-
request access to personal information we hold about you;
-
request correction of inaccurate information;
-
request deletion in certain circumstances;
-
object to processing based on legitimate interests;
-
restrict processing in certain circumstances;
-
request a portable copy of certain data (where applicable);
-
withdraw consent where processing is based on consent.
23. How to submit a privacy request
To make a privacy request, contact us at privacy@analsextoys.shop and include:
-
your name;
-
the email used for orders/account;
-
your request type (access, deletion, correction, etc.);
-
any relevant order number(s) (if applicable).
23.1 Identity verification
To protect your privacy and prevent fraud, we may need to verify your identity before completing certain requests. Verification steps may include asking you to confirm:
-
the email used to place orders;
-
an order number;
-
basic account details.
We will not ask you to provide full card details.
23.2 Response timeframes
We aim to respond within timeframes required by applicable law. Depending on your jurisdiction, requests may take longer where permitted, and we may request additional information to verify identity or clarify the request.
XIII. AUSTRALIA - ADDITIONAL INFORMATION
24. Australia
Australian customers may contact us to access or correct personal information. If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC).
XIV. UNITED STATES - ADDITIONAL INFORMATION
25. US state privacy rights (general)
Depending on your US state, you may have rights to:
-
access personal information;
-
request deletion;
-
correct inaccuracies;
-
opt out of targeted advertising / sharing (as defined by certain laws);
-
appeal certain decisions.
Where required, we will provide an opt-out mechanism and respond in accordance with applicable law.
XV. CHANGES TO THIS POLICY
26. Updates
We may update this Privacy Policy from time to time. The latest version will always be posted on our website with an updated date.
XVI. CONTACT US
27. Contact details
For questions, complaints, or privacy requests:
Email: privacy@thelollipop.shop
Mail: PO Box 1530, Macquarie Centre NSW 2113, Australia

British Pound (GBP)
Canadian Dollar (CAD)
Euro (EUR)
US Dollar (USD)