Privacy Policy
This Privacy Policy explains how Drea Darling Tattoo (“we”, “us”, or “our”), operating at dreadarling.com, collects, uses, stores, and protects your personal information. We are committed to complying with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
By using our website, submitting a booking enquiry, or signing up to our mailing list, you agree to the practices described in this policy.
1. Who We Are
Drea Darling Tattoo is an Australian-based tattoo artist. Our website address is: https://dreadarling.com
2. What Personal Information We Collect
We collect personal information in the following ways:
Tattoo Booking Enquiry Form
When you submit a booking enquiry, we collect:
- First and last name
- Pronouns (optional)
- Email address
- Phone number
- Tattoo details (subject, description, placement, size, colour preference)
- Preferred studio location and appointment dates
- Reference images and body placement photos you upload
Website Comments
If you leave a comment on our website, we collect your name, email address, comment content, IP address, and browser user agent string (to assist with spam detection). An anonymised hash of your email address may be shared with Gravatar to check for a profile picture.
Payments
Monetary deposits are collected via Stripe or Squarespace. These platforms process your payment information directly. We do not store your card details. Please refer to their respective privacy policies for details on how your payment data is handled.
Mailing List
If you subscribe to our mailing list, we collect your email address and any preferences you provide. We use a third-party email marketing platform to manage this list. You can unsubscribe at any time via the link in any email we send you.
Cookies & Technical Data
Our website uses cookies and may collect technical data including your IP address and browser information. See Section 4 for full details.
3. Why We Collect Your Information
We collect and use your personal information to:
- Process and respond to tattoo booking enquiries
- Communicate with you about your appointment
- Collect deposits and process payments
- Manage our mailing list and send you updates (only with your consent)
- Detect and prevent spam or fraudulent activity
- Improve our website and services
We do not sell your personal information to third parties.
4. Cookies
Our website uses cookies in the following ways:
- Comment cookies: If you leave a comment, you may opt in to saving your name, email, and website in cookies for convenience. These last for one year.
- Login cookies: If you log in to our site, cookies will store your login and display preferences for up to two weeks.
- Session cookies: A temporary cookie is set when you visit the login page to check browser compatibility. It contains no personal data and is deleted when you close your browser.
- Article cookies: A short-lived cookie (1 day) may be saved when you edit or publish an article. It contains no personal data.
You can control cookies through your browser settings, though disabling them may affect some website functionality.
5. Google Analytics
We use Google Analytics to understand how visitors use our website. Google Analytics collects information such as your IP address, browser type, pages visited, and time spent on the site. This data is aggregated and anonymised where possible.
Google may use this data in accordance with its own privacy policy. You can opt out of Google Analytics tracking by installing the Google Analytics Opt-out Browser Add-on, available at: https://tools.google.com/dlpage/gaoptout
6. Embedded Content
Pages on our website may include embedded content (such as videos or images) from third-party sites. Embedded content behaves as if you have visited those third-party sites directly, and they may collect data about you, use cookies, or track your interactions. We recommend reviewing the privacy policies of those third-party services.
7. Who We Share Your Information With
We may share your personal information with:
- Stripe and/or Squarespace – for payment processing
- Our email marketing platform – for managing our mailing list
- Google – via Google Analytics for website analytics
- Gravatar (Automattic) – an anonymised email hash may be sent to check for a profile image on comments
All third-party services we use are required to handle your data securely and in accordance with applicable privacy laws.
If you request a password reset on our website, your IP address will be included in the reset email.
8. How Long We Retain Your Data
- Booking enquiry data: retained for as long as necessary to fulfil our services and for reasonable business record-keeping purposes.
- Comments: comments and associated metadata are retained indefinitely so we can recognise and approve follow-up comments automatically.
- User account data: if you register on our website, your profile information is stored until you request deletion. You can view, edit, or delete your personal information at any time (except your username cannot be changed).
- Mailing list data: retained until you unsubscribe or request removal.
- Payment data: managed and retained by Stripe/Squarespace in accordance with their policies.
9. Your Rights Under Australian Privacy Law
Under the Australian Privacy Act 1988 and the Australian Privacy Principles, you have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate or incomplete information
- Request deletion of your personal information (subject to legal obligations)
- Withdraw consent to marketing communications at any time
- Make a complaint if you believe your privacy has been breached
To exercise any of these rights, please contact us using the details below. We will respond within a reasonable timeframe.
10. Data Security
We take reasonable steps to protect your personal information from misuse, interference, loss, and unauthorised access. Our website is hosted on a secure platform, and payment processing is handled by PCI-compliant third-party providers (Stripe and Squarespace).
However, no method of transmission over the internet is completely secure. While we strive to protect your data, we cannot guarantee absolute security.
11. Uploaded Images
If you upload images to our website (for example, reference photos in a booking enquiry), please be aware that images may contain embedded location data (EXIF GPS data). We recommend removing location data from images before uploading if you have privacy concerns. Visitors to the website may be able to download and extract location data from publicly visible images.
12. Contact Us
If you have any questions about this Privacy Policy, wish to access or correct your information, or want to make a privacy complaint, please contact us via our website:
If you are not satisfied with our response to a privacy complaint, you may contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au.
13. Changes to This Policy
This Privacy Policy was last updated on 5 June 2026. We may update it from time to time. Any changes will be posted on this page with a revised date. We encourage you to review this policy periodically.

