Privacy Policy

Welcome to My Dispensary’s website and thank you for trusting the information displayed.

The below Privacy Policy governs the manner in which collects, uses, stores, uses and shares personal data collected from this site because we understand that it is important for you to know how your personal information is dealt with.

By entering our online store, interacting with our customer service team or calling in with our experienced pharmacists, you acknowledge that your personal information will be treated as described in this statement. 

By placing an order to purchase products from a third-party sell

er via our website, you understand that the personal information that is necessary to fulfil your order will be used to ship your order accordingly and, therefore, handled by trustworthy members of our team.


In this statement, “personal information” means the same as it does in the Privacy Act 2020 (“Privacy Act”). In general terms, this includes any information that can be used to personally identify you. This may include (but is not limited to) your name, age, gender, address, contact details (including phone numbers and email addresses) and financial information, including your payment information. If the information we collect personally identifies you, or you are reasonably identifiable from it (for example, if we combine seemingly anonymous data with other personal information we hold about you), then the information is considered personal information.

  • Account means a unique account created for You to access our Service or parts of our Service.
  • Company (referred to as either “the Company”, “We”, “Us” or “Our” in this Agreement) refers to Henderson Discount Pharmacy Ltd, 383 Great North Road, Henderson, Auckland 0612.
  • Cookies are small files that are placed on Your computer, mobile device or any other device by a website, containing the details of Your browsing history on that website among its many uses (see below sections for further explanations).
  • Country refers to: New Zealand
  • Device means any device that can access the Service such as a computer, a cellphone or a digital tablet.
  • Services refer to the Website – online store or coaching services.
  • Service Provider means any natural or legal person who processes the data on behalf of the Company. It refers to third-party companies or individuals employed by the Company to facilitate the Service, to provide the Service on behalf of the Company, to perform services related to the Service or to assist the Company in analysing how the Service is used.
  • Third-party Social Media Service refers to any website or any social network through which a User can log in or create an account to use the Service.
  • Usage Data refers to data collected automatically, either generated by the use of the Service or from the Service infrastructure itself (e.g. the duration of a page visit).
  • Website refers to My Dispensary, accessible from
  • You means the individual accessing or using the Service, or the company, or other legal entity on behalf of which such individual is accessing or using the Service, as applicable.

When and which Personal Data is collected

We collect:

  • The content that you access including products, services and information that you searched for and browsed for.
  • Whether you have opened, read or engaged with emails or other communications that we have sent you.
  • The internet protocol (IP) address used to connect your computer or device to the internet, your login information, data on your screen settings and device settings, such as the point and scroll settings of your mouse, web browser type and version, time zone settings, and operating system information.
  • We also collect information about your use or visit, including statistical information about visits to pages on the site, page response times, duration of individual page view, page interaction information (such as scrolling, clicks and mouse-overs) and the paths taken by you to, through and from our websites, apps and communication platforms (including date and time).

We collect:

  • Details of the products and services that you have purchased from us.
  • Details of the products that you have not purchased but have shown an interest in.
  • Information necessary to deliver those products to respond to your enquiries, including your name, email address, contact number, mailing or street address, delivery instructions and recipient details. 
  • Payment information in order to facilitate the payment for the goods and/or services.

We collect:

  • Your name and email address, along with the contents of your message.
  • Information regarding why you have engaged with our Customer Service or experienced Pharmacists 
  • Information you provide to us through customer surveys.

We collect:

  • Your social media handle, along with any information that you provide to us.
Why Personal Data is collected

The primary purpose for which we collect your personal data is to enable us to perform our business activities and to provide the best customer service or user experience possible.

We collect, hold, and use your personal information to:

  • provide products and services to you
  • provide you with information or advice about existing and new products and services
  • manage product or service warranties or guarantees, including product or safety recalls
  • communicate with you and process your requests
  • manage and enhance our customer services
  • personalise and customise your experience with us to tailor how we market our products and services to you based on your purchase history and shopping preferences
  • provide you with access to secure areas of our websites and apps
  • provide you with notices regarding updates to your customer experience
  • conduct competitions or promotions, either ourselves or on behalf of selected third parties
  • verify your identity and/or enable you to create and use a payment identity (e.g. through the use of digital wallets)
  • conduct analysis and generate customer behaviour insights
  • for our marketing, promotional, planning, quality control and research purposes
  • to monitor and analyse web traffic or to keep track of user behaviour in order to improve user experience throughout the site.
  • investigate if we have reason to suspect a breach of any of our terms and conditions or any suspected unlawful activity
  • help prevent fraud and unlawful activity
  • undertake activities otherwise required or permitted by any law (including the Privacy Act)
Where Personal Data is collected

When you use our services or open our emails, we may obtain certain information by automated means, such as browser cookies, Flash cookies, local storage, web beacons and pixels, JavaScript, device identifiers, server logs and other technologies. 

The information we obtain in this manner may include your device IP address, domain name, identifiers associated with your devices, device and operating system type and characteristics, web browser characteristics, language preferences, clickstream data, your interactions with our services (such as the web pages you visit, links you click and features you use), the pages that led or referred you to our services, dates and times of access to our services, and other information about your use of our services. We also may receive your device’s geolocation and other information related to your location through GPS, Bluetooth, WiFi signals and other technologies for certain purposes listed above, such as to provide you with our services. Your device may provide you with a notification when the services attempt to collect your precise geolocation.

A “cookie” is a text file that websites send to a visitor’s computer or other Internet-connected devices to uniquely identify the visitor’s browser or to store information or settings in the browser. Cookies may be set either directly by the website a user is visiting (“first-party cookies”), or by a domain other than the website the user is visiting (“third-party cookies”). 

A “Flash cookie,” also known as a local shared object, functions like a web cookie to personalise a user’s experience on sites that use Adobe Flash Player. 

A “web beacon,” also known as an Internet tag, pixel tag or clear GIF, links web pages to web servers and their cookies and may be used to transmit information collected through cookies back to a web server. Our third-party service providers and us may use beacons in emails to help us track response rates, identify when our emails are accessed or forwarded, and for other purposes listed above.

The following types of cookies and similar technologies are used on the Services:


We use necessary cookies to help enable our services to function, including to (1) identify you once you have logged in to your account, (2) keep track of preferences you specify while you use the services, and (3) manage the security of the services.


Our services also use cookies to personalise the content of the services based on your use of the services and support certain third-party services to provide enhanced functionality, such as enabling videos posted on the services from YouTube. These features use third-party cookies (e.g. YouTube cookies) that are placed directly on your device by the third-party services. The privacy practices of these third parties, including details on the information they may collect about you, are subject to the privacy notices of these parties, which we strongly suggest you review.


Personal Data processed: Cookies; Usage Data.

Services used for analytics purposes: Google Analytics (Google Inc.)

Google Analytics is a web analysis service provided by Google Inc. (“Google”). Google utilises the Data collected to track and examine the use of this Website, prepare reports on its activities and share them with other Google services. Google may use the Data collected to contextualise and personalise the ads of its own advertising network. 

Place of processing: United States, New Zealand.

To learn more about Google Analytics, please visit: and to opt-out of being tracked by Google Analytics across all websites, please visit:

Personal Data processed: Cookies; Usage Data.

Facebook Ads conversion tracking (Facebook pixel) is an analytics service provided by Meta, Inc. that connects data from the Facebook advertising network with actions performed on their websites or mobile applications. The Facebook pixel tracks conversions that can be attributed to ads on Facebook, Instagram and Audience Network. 

Place of processing: United States, New Zealand.


Through our services, a few third parties and we may collect information about your online activities to provide you with advertising about products and services tailored to your individual interests. You may see our ads on other websites or mobile apps because we participate in advertising networks. Ad networks allow us to target our messaging to users considering demographic data, users’ inferred interests and browsing context. 

These networks track users’ online activities over time by collecting information through automated means, including through the use of browser cookies, web beacons, device identifiers, server logs, web beacons and other similar technologies. The networks use this information to show ads that may be tailored to individuals’ interests, to track users’ browsers or devices across multiple websites and apps, and to build a profile of users’ online browsing and app usage activities. The information our ad networks may collect includes data about users’ visits to websites and apps that participate in the relevant ad networks, such as the pages or ads viewed and the actions taken on the websites or apps. This data collection takes place both on our Services and on third-party websites and apps that participate in the ad networks. This process also helps us track the effectiveness of our marketing efforts.


Personal Data processed: Cookies; Usage Data.

This type of service allows the Owner and its partners to inform, optimise and serve to advertise based on past use of this Website by the User. This activity is facilitated by tracking Usage Data and by using Trackers to collect information which is then transferred to the partners that manage the remarketing and behavioural targeting activity. Some services offer a remarketing option based on email address lists. In addition to any opt-out feature provided by any of the services below, Users may opt out by visiting the Network Advertising Initiative opt-out page.

Users may also opt-out of certain advertising features through applicable device settings, such as the device advertising settings for mobile phones or ads settings in general.

Facebook Remarketing (Meta, Inc.)

Facebook Remarketing is a remarketing and behavioural targeting service provided by Meta, Inc. that connects the activity of this Website with the Facebook advertising network. 

Place of processing: United States

Google AdSense (Google, Inc)

Google AdSense is a program run by Google through which website publishers in the Google Network of content sites serve text, images, video, or interactive media advertisements that are targeted to the site content and audience. These advertisements are administered, sorted, and maintained by Google. 

Place of processing: United States


Our services also use a chatbot to provide automated customer assistance. A chatbot is a computer program that communicates with you using text on a digital message interface and artificial intelligence. If you ask a question through our chatbot, the chatbot will reply to you in human-ish behaviour. 

Our chatbot is supported by Tidio, a third-party chatbot service provider that uses an automated decision-making process when deciding on the correct answer to serve based on your question and will receive message logs and usernames when you interact with the chatbot. Message logs contain information such as details of your account with us, including your username, e-mail address, phone number and address, as well as any other content you choose to submit when you make a customer support inquiry through the chatbot and we will retain the content of those messages, together with responses to those messages and any outcome from those messages. This information will be retained for twelve (12) months and will be used only to provide customer support and improve the quality of the chatbot services. 



Personal Data processed: email address; first name; last name.

By registering on the mailing list for the newsletter, the User’s email address will be added to the contact list of those who may receive email messages containing information of commercial or promotional nature concerning this website. Your email address might also be added to this list as a result of signing up for this website or after making a purchase.

The User’s information will be added to our email database on the Mailchimp server.  This will be used to send you our monthly email newsletter with events and news. You can unsubscribe at any time by clicking on the unsubscribe link at the bottom of each newsletter. This will remove your details from the database.

View the Mailchimp Privacy Policy.


Personal Data processed: email address; first name; last name

By filling in the contact form with their Data, the User authorises My Dispensary representatives to use these details to reply to requests for information or any other kind of request as indicated by the form’s header.


Personal Data processed: various types of data as specified in the previous sections of this Privacy Policy statement. These services have the purpose of hosting and running key components of this website, therefore allowing the provision of this website from within a unified platform. Such platforms provide a wide range of tools to the Owner (My Dispensary Ltd) – e.g. analytics, user registration, commenting, database management, e-commerce, payment processing – that imply the collection and handling of Personal Data. Some of these services work through geographically distributed servers, making it difficult to determine the actual location where the Personal Data are stored.

WooCommerce (WordPress, Auttomatic, Inc)

WooCommerce is an open-source e-commerce plugin for WordPress. It is designed for small to large-sized online merchants using WordPress. It is owned and operated by Automattic, Inc. an American global distributed company. 

Place of processing: United States, New Zealand

Payment gateway 

Online consultation system/appointment

Please note that if you unsubscribe from any of our marketing databases, you may still receive important product and service-related communications from us. 

We will not collect usage data, store or target advertisements based on the following market categories:

  • Political opinions
  • Membership of a political association
  • Religious beliefs or affiliations
  • Philosophical beliefs
  • Membership of a trade union
  • Sexual preferences or practice
  • Criminal record
  • Health information
Retention of Personal Data

Henderson Discount Pharmacy Ltd

383 Great North Road, Henderson, Auckland 0612


The Company will retain Your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use Your Personal Data to the extent necessary to comply with our legal obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes, and enforce our legal agreements and policies.

Unless specified otherwise, all Data requested by this Website is mandatory and failure to provide this Data may make it impossible for this Website to provide its services. In cases where this Website specifically states that some Data is not mandatory, Users are free not to communicate this Data without consequences to the availability or the functioning of the Service.

Users who are uncertain about which Personal Data is mandatory are welcome to contact the Owner.

Any use of Cookies – or of other tracking tools – by this Website or by the owners of third-party services used by this Website serves the purpose of providing the Service required by the User, in addition to any other purposes described in the present document and in the Cookie Policy, if available.

Users are responsible for any third-party Personal Data obtained, published or shared through this Website and confirm that they have the third party’s consent to provide the Data to the Owner.

Transfer of Your Personal Data

Your information, including Personal Data, is processed at the Company’s operating offices and in any other places where the parties involved in the processing are located. It means that this information may be transferred to — and maintained on — computers located outside of Your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from Your jurisdiction.

Your consent to this Privacy Policy followed by Your submission of such information represents Your agreement to that transfer.

The Company will take all steps reasonably necessary to ensure that Your data is treated securely and in accordance with this Privacy Policy and no transfer of Your Personal Data will take place to an organisation or a country unless there are adequate controls in place including the security of Your data and other personal information.

You have the right to delete or request that We assist in deleting the Personal Data that We have collected about You.

Our Service may give You the ability to delete certain information about You from within the Service.

You may update, amend, or delete Your information at any time by signing in to Your Account, if you have one, and visiting the account settings section that allows you to manage Your personal information. You may also contact Us to request access to, correct, or delete any personal information that You have provided to Us.

Please note, however, that We may need to retain certain information when we have a legal obligation or lawful basis to do so. 

We will not keep personal medical information on the server. Any information shared with us will be transferred to our secure system (Toniq system) which is overseen by the Ministry Of Health and it is a closed server. 

Disclosure of Your Personal Data

We may share Your personal information in the following situations:

  • With Service Providers: We may share Your personal information with Service Providers to monitor and analyse the use of our Service to contact You.
  • With Affiliates: We may share Your information with Our affiliates, in which case we will require those affiliates to honour this Privacy Policy. Affiliates include Our parent company and any other subsidiaries, joint venture partners or other companies that We control or that are under common control with Us.
  • With business partners: We may share Your information with Our business partners to offer You certain products, services or promotions.
  • With other users: if You interact with other users or register through a Third-Party Social Media Service, Your contacts on the Third-Party Social Media Service may see Your name, profile, pictures and description of Your activity. Similarly, other users will be able to view descriptions of Your activity, communicate with You and view Your profile. We have no control over and assume no responsibility for the content, privacy policies or practices of any third party sites or services. 
  • With Your consent: We may disclose Your personal information for any other purpose with Your consent.

If the Company is involved in a merger, acquisition or asset sale, Your Personal Data may be transferred. We may share Your personal information in connection with, or during negotiations of, any merger, sale of Company assets, financing, or acquisition of all or a portion of Our business to another company. We will provide notice before Your Personal Data is transferred and becomes subject to a different Privacy Policy.


Under certain circumstances, the Company may be required to disclose Your Personal Data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency).


The Company may disclose Your Personal Data in the good faith belief that such action is necessary to:

  • Comply with a legal obligation
  • Protect and defend the rights or property of the Company
  • Prevent or investigate possible wrongdoing in connection with the Service
  • Protect the personal safety of Users of the Service or the public
  • Protect against legal liability
Security of Your Personal Data

The security of Your Personal Data is important to Us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. While We strive to use commercially acceptable means to protect Your Personal Data, We cannot guarantee its absolute security.

Children’s Privacy

Our Service does not address anyone under the age of 18. We do not knowingly collect personally identifiable information from anyone under the age of 18. If You are a parent or guardian and You are aware that Your child has provided Us with Personal Data, please contact Us. If We become aware that We have collected Personal Data from anyone under the age of 18 without verification of parental consent, We take steps to remove that information from Our servers.

If We need to rely on consent as a legal basis for processing Your information and Your country requires consent from a parent, We may require Your parent’s consent before We collect and use that information.

Links to Other Websites

Our Service may contain links to other websites that are not operated by Us. If You click on a third party link, You will be directed to that third party’s site. We strongly advise You to review the Privacy Policy of every site You visit.

We have no control over and assume no responsibility for the content, privacy policies or practices of any third party sites or services.

Changes to this Privacy Policy

We may update Our Privacy Policy from time to time. We will notify You of any changes by posting the new Privacy Policy on this page. We will let You know via email and/or a prominent notice on Our Service, prior to the change becoming effective and update the “Last updated” date at the top of this Privacy Policy.

You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page. By continuing to engage with us or use our services after any such notice period, you will be deemed to have accepted the updated version of this statement.

Contact Us

If you have any questions about this Privacy Policy or wish to communicate your concerns regarding breaches of the Privacy Act 2020 (“Privacy Act”), You can contact us:

By email:

We will treat your questions, requests or complaints confidentially.

If you consider your query has not been resolved satisfactorily by us, or you wish to obtain more information on privacy requirements, you can contact the New Zealand Office of the Privacy Commissioner via their website or free phone at 0800 803 909. Further information about how to lodge a complaint is available on the Privacy Commissioner’s website.

Close ✕