Privacy Policy
How we collect, use and protect your personal information.
Last updated: May 2026
Who We Are
CAILO&CO is a boutique brow and lash studio operated by Sarah Dennehy (ABN 30 106 850 758), with private studio locations in Morningside, Brisbane and Cotton Tree, Sunshine Coast, Queensland, Australia.
We are committed to protecting your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
Contact: info@cailoandco.com.au | 0431 582 024
What Personal Information We Collect
We only collect information that is reasonably necessary to provide our services and run our business. This may include:
- Your name and contact details (email address, phone number)
- Appointment booking details and service history
- Messages or enquiries you send us via our contact form or email
- Information you voluntarily provide regarding your health or skin sensitivities relevant to treatments
- Website usage data (pages visited, device type, location — collected via Google Analytics and Facebook Pixel)
We do not collect payment card information directly — all payments are processed securely through third-party payment providers.
How We Collect Your Information
We collect personal information in the following ways:
- Directly from you — when you make a booking, complete our contact form, call or email us, or visit our studio
- Through our booking system — via Timely (gettimely.com), our third-party appointment booking platform
- Automatically via your browser — when you visit cailoandco.com.au, cookies and tracking technologies collect data about your visit
Why We Collect Your Information
Your information is used to:
- Confirm and manage your appointments
- Communicate with you about your bookings, questions or enquiries
- Provide safe and appropriate treatments (where health information is provided)
- Send appointment reminders or follow-up messages
- Improve our website and understand how visitors use it
- Show relevant advertisements to you on platforms like Facebook and Instagram (via Facebook Pixel)
- Comply with our legal obligations
We will not use your information for any purpose that you would not reasonably expect.
Cookies & Website Tracking
Our website uses cookies and similar tracking technologies. These help us understand how visitors use our site and allow us to show relevant content and advertisements.
Specifically, our website uses:
- Google Analytics (GA4) — to analyse website traffic and user behaviour anonymously. Data is processed by Google. You can opt out at tools.google.com/dlpage/gaoptout.
- Google Tag Manager — to manage our tracking tags in one place.
- Facebook Pixel — to measure the effectiveness of our advertising and show relevant ads on Facebook and Instagram. Data is processed by Meta. You can manage your ad preferences at facebook.com/settings.
You can disable cookies in your browser settings at any time, though this may affect how some parts of our website function.
Who We Share Your Information With
We do not sell your personal information. We may share it only in the following circumstances:
- Timely (booking platform) — to manage your appointments. Their privacy policy is available at gettimely.com/privacy
- Google — for analytics and advertising services. See Google's Privacy Policy
- Meta (Facebook/Instagram) — for advertising. See Meta's Privacy Policy
- Legal authorities — if required by law, a court order, or to protect the safety of any person
Some of these third parties are based outside Australia. We take reasonable steps to ensure they handle your information in a manner consistent with the Australian Privacy Principles.
How We Store & Protect Your Information
We take your privacy seriously and take reasonable steps to protect your personal information from misuse, loss, and unauthorised access. This includes:
- Secure, password-protected systems for storing client records
- Using reputable, industry-standard third-party platforms (Timely, Google, Meta)
- Limiting access to your information to only those who need it to provide our services
Our website is served over HTTPS, meaning all data transmitted between your browser and our site is encrypted.
We retain your personal information only for as long as necessary to fulfil the purpose it was collected for, or as required by law. When no longer needed, information is securely deleted or de-identified.
Your Rights
Under the Australian Privacy Principles, you have the right to:
- Access the personal information we hold about you
- Correct any personal information that is inaccurate, out of date, or incomplete
- Request deletion of your personal information (subject to legal obligations to retain certain records)
- Opt out of direct marketing communications at any time
- Complain about how we have handled your personal information
To exercise any of these rights, please contact us at info@cailoandco.com.au. We will respond to requests within 30 days.
Sensitive Information
If you voluntarily share health-related information with us (for example, skin sensitivities or allergies relevant to your treatment), we treat this as sensitive information and handle it with additional care. We will only collect this information with your consent, and will only use it for the purpose it was provided — to ensure your treatment is safe and appropriate for you.
We will not disclose sensitive information to any third party without your consent, unless required by law.
Marketing Communications
We may occasionally send you appointment reminders or relevant updates about our services. You can opt out of any marketing communications at any time by:
- Clicking the unsubscribe link in any email we send you
- Contacting us directly at info@cailoandco.com.au
We will never send unsolicited spam or share your contact details with third parties for their marketing purposes.
Complaints
If you believe we have mishandled your personal information, we encourage you to contact us first so we can resolve the matter directly:
Email: info@cailoandco.com.au
Phone: 0431 582 024
Response time: We aim to respond within 30 days.
If you are not satisfied with our response, you have the right to lodge a complaint with the Office of the Australian Information Commissioner (OAIC):
Website: oaic.gov.au/privacy/privacy-complaints
Phone: 1300 363 992
Post: GPO Box 5218, Sydney NSW 2001
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we do, we will update the "Last updated" date at the top of this page. We encourage you to review this policy periodically.
Continued use of our website or services following any changes constitutes your acceptance of the updated policy.
We're happy to help. Get in touch with Sarah directly.
