Our Privacy Policy


Your privacy is not for sale

We do not and will not sell or rent or provide your personal or business information to anyone, for any reason, at anytime, except when directed to by you or with your prior written agreement. We regard merchant and transaction information as strictly confidential and will not share it with any other merchant whether competing or non-competing.


You own your data

To provide you with the EFTPlus service we collect profile information about your company and eftpos transaction information. This information remains the property of your organisation and we will not use nor make available for use any of this information without your permission.


Your data is stored in the USA

The EFTPlus service is hosted in the Level 1 PCI DSS compliant, ISO 27001 certified, Amazon AWS data centre via the Heroku platform. Any business or personal information provided by you or third parties on your behalf will be stored on computers located in North Virginia, United States of America, or other locations as necessary. Your data and the storage of it may therefore be subject to North Virginia and US law.


You can close your account at any time

You can choose to stop using the EFTPlus service and request to close your account at any time. Your account will be closed, in accordance with our refund policy described in the Terms of Use. Any outstanding charges must be paid at this time. When you close your account you can also have all transaction and member data associated with your account deleted. Copies of your transaction and member data may remain in backups on our servers until deleted by backup cycling. We will continue to hold your business name, address and other billing information for, at least, a period of 7 years as required by tax and other relevant laws.


Your data is deleted when your account is closed

Your data will be permanently removed from our servers, when you request us to close your account. Portions of your data that we are required to keep by law (your address on copies of tax invoices, for example) may remain on our servers indefinitely. Your data may also remain on a backup server or media until it is erased by backup cycling. We keep these backups to ensure our continued ability to provide the EFTPlus service to you in the event of malfunction or damage to our primary production servers.


You can opt out of communications

We will email you reports, billing information, product information, service updates and regular newsletters. At the bottom of these emails are instructions describing how you can stop them being sent to you.


We limit the collection and use of personal information

The only information we will collect about you and your business is that required to provide the EFTPlus service and to comply with the law. We may request further information from you in order to provide any enhanced features of EFTPlus that you request.


We never store complete eftpos or credit card numbers

We store logs of eftpos and credit card transactions which include parts of card numbers. We use this information to identify new and repeat customers. Full cardholder information is not required to be stored or transmitted in any form to provide the EFTPlus service. To identify member transactions EFTPlus stores the mask number (the first six and last four digits) and a unique token representing the member's card(s) only. Each token is a random, unique and irreversible and unrelated to the card number or other card details. No EFTPlus staff member, user or hacker can retrieve complete eftpos or credit card information from our servers.


Account Information will not be disclosed

We may use third party service providers to help us analyse certain online activities. For example, these service providers may help us measure the performance of, or visitor activity on, our website. We may permit these service providers to use cookies and other technologies to perform these services for us. We do not share any personally identifiable information about our customers with these third party service providers, and these service providers do not collect such information on our behalf.


Your contributions to our blogs and forums

If you choose to contribute or comment on one of our blogs or forums, you should be aware that any personally identifiable information you submit there can be read, collected, or used by other users of these pages. This information could then be used to send you unsolicited messages. We are not responsible for the personally identifiable information you choose to submit.


Disclosure of your information to protect our rights or if required by law

We will share or disclose your account information when required to by law.


Your data may be transferred upon acquisition

We may transfer your account information to another company if EFTPlus is acquired by or merged with another company. In this event, we will notify you before information is transferred to the new entity and you will be have the opportunity to close your account and remove your data prior to it being transferred.


We record how EFTPlus is used

We record non-identifying technical, navigational and usage information and transaction volumes in order to better understand how EFTPlus is used. We use this information to improve our service design and functionality and prompt users with suggestions on ways to improve their own use of the system.


This policy may change

We may make changes to this policy so that you are aware of what information we collect, how we use it, and under what circumstances, if any, we disclose it.

Modifications will be made to the policy document on the EFTPlus website and the revision date will be updated. You should check the revision date regularly to make sure you are up-to-date with any changes in our privacy policy.


Please read our Terms of Use

Use of the EFTPlus service is subject to our Terms of Use. Where there is a difference between this policy and the Terms of Use, the Terms of Use will prevail while all other clauses of the privacy policy will remain valid.


Contact Us

If you have questions, comments, concerns or feedback regarding this privacy policy, send an email to [email protected]