|
Internet business taken seriously - we
spend the time and resources doing it right.
The Internet is not just an alternative sales channel for us,
but the primary manner in which we conduct business with our customers. So we
take information security and privacy very seriously, not only online but
offline as well. Our approach may even be considered over the top in some
respects, but every security and risk mitigation process we undertake is
designed to provide us both with a smooth and trustworthy relationship.
We take no short cuts or employ second-rate service providers.
We make the necessary up front investments for yours and our security and
privacy - its better to be safe than sorry.
We have documented below a brief explanation as to how our
systems work so you can be confident when dealing with us that you are not at
unnecessary risk. A detailed explanation of our systems is not possible as we do
not wish to reveal useful information to malicious opportunists, but we hope
this summary provides you with the assurance you need to transact with us.
Online security.
How your sensitive information is managed by our online system. Here are some
important points to note:
|
Our web site is
SECURE.
|
Our web site is certified hacker safe by
McAfee's SECURE. McAfee is an independent technology security organisation
who uses their SECURE technology to test our web site
every day.
McAfee have a rigorous set of security
standards designed to identify web site vulnerabilities to hacking
for malicious purposes.
A web site with vulnerabilities could be
hacked, and leave you and us susceptible to fraud, identity theft,
or malicious activities against your computer. SECURE performs
security scans on our web site and transaction technologies, testing
for hacking vulnerabilities. These scans run every day, and when our
web site successfully passes every test they update the McAfee
SECURE trustmark on our site and stamp it with the test date. If ever a
security vulnerability is identified we must promptly correct the
vulnerability otherwise SECURE certification is removed from our
site. So you are ensured that whenever you see the McAfee SECURE trustmark you know we have just been scanned and cleared of any
security vulnerabilities.
You can click on the McAfee SECURE trustmark
wherever it appears on our site and you will be presented with
McAfee SECURE certification certificate.
For more information on McAfee SECURE, their
security certification and testing processes, please visit
McAfee's SECURE web site. |
|
Our web site servers are located in Australia. |
Our web site
servers are physically located within Australia in a secure data
centre and managed by Australian personnel. Not hosted in off-shore
discount hosting data centres. |
|
Our web site uses 256 bit SSL security.
 |
Our web site
uses 256 bit SSL security certificates to authenticate and encrypt
any pages that may contain sensitive information. Obviously this
includes the checkout pages and transmission of credit card details
to the eWay payment gateway. But we also secure your Home Page
login, support ticket system, order history pages.
Our SSL certificate is
provided by RapidSSL.com, the worlds fastest growing SSL provider.
For more information on RapidSSL.com
click here. |
|
Secure credit card information handling.

Payment Gateway |
If you choose a credit
card payment option, your credit card details and debit amount are
managed by a secure payment gateway. Yet again all information is
encrypted. The provider of the secure payment gateway is
eWay, a reputable and trusted Australian company with its
infrastructure within Australia. eWay is PCI DSS compliant (Payment
Card Industry Data Security Standard) - a set of standards created
by card issuers such as Visa and MasterCard to ensure the security
of credit card details online.
eWay's payment gateway
manages transactions with the credit card companies and the banks.
For more information in eWay,
click here to
visit eWay's web site.
Although we are provided
with a certain amount of information for fraud prevention
management, we are never privy to your credit card number. So there
is no way through technical or process failure we can accidentally
loose or publicly release this sensitive data. If you request of us
to re-bill your credit card we do this via a request of the payment
gateway provider who has your card number. |
|
Secure data transmission.

IOOIIOIOOIO |
In addition, your customer record (name,
address, phone number and email address) are not stored on any
publically accessible server. They are passed by the secure
transaction server to our internal systems via encrypted
transmission. |
Offline security.
Internal information management is just as important as online:
|
We are virus, malware, and spyware
protected.
 |
Every internal computer
and server is equipped with virus, malware and spyware checking
software. This protection software is checked for currency multiple
times per day to ensure it is fully up-to-date. We endeavour to
ensure we are not responsible for being infected by any
virus/malware/spyware, or passing them onto you via email
communications or downloaded files. |
|
With secure information storage.
 |
As mentioned above, we do
not even have your credit card details available to us. And if you
passed them onto us over the phone, we destroy any electronic or
physical copy of them as soon as your order has been processed.
Your customer records (name, address, phone
number and email address) stored on our internal systems are behind
firewalls and physical security under our direct control. Any data
back-ups of our systems are also managed by us and also suitable
secured.
Click here
to view our Privacy Statement. |
Our business credentials.
Offline information management is just as important as online:
|
Our bricks and mortar address.

Williamstown (VIC). |
It is a common
recommendation by consumer advocacy groups to only buy from online
stores that display their physical address on their web site, and
that not to by from online stores that only show a PO Box. It is
good advice, but a bit generalised.
If you look at our contact
page we display our PO Box address beside our fax and 1300 numbers.
We find that if we list our Williamstown physical address on our
contact page we get quite a few unscheduled visits for which we do
not have time reserved for. We do not have a regular retail
environment but a demonstration workshop which we think is better.
We encourage you to visit our demonstration workshop via
appointment. Appointments ensure adequate time reserved for you to
explore our products without interruption. To make an appointment
email
support@idealtools.com.au or call 1300 769 258. |
|
Our business credentials. |
It is important to verify you are dealing
with a legitimate business, to verify our business there are many
checks you can make. Here are a number of resources you can use to
check our credentials:
-
FEIN Australia - See their
link to our online shop. Or call them on 1300 798 688 for
confirmation we are a MultiMaster Dealer.
-
White Pages
- Search for business name "Ideal Tools" in Victoria.
-
ASIC (Australian
Securities and Investments Commission) - To see our registered
company details
click here. |
|