Alex is Sprintlaw’s co-founder and principal lawyer. Alex previously worked at a top-tier firm as a lawyer specialising in technology and media contracts, and founded a digital agency which he sold in 2015.
Selling online in Australia is an exciting way to reach new customers, test ideas quickly and scale without the overheads of a traditional shopfront.
But a successful ecommerce store needs more than great products and a slick checkout. You also need the right legal agreements and a clear plan to comply with Australian law, from consumer guarantees to data handling and platform terms.
In this guide, we’ll walk through the essential contracts, the key laws that apply to online retailers, and practical steps to set up your store confidently from day one.
What Does “Legally Compliant” Ecommerce Mean In Australia?
When you sell online, your website acts as your shop floor, signage and sales assistant all at once. Your legal documents do the heavy lifting that staff and in‑store notices would normally do.
Clear, well-drafted terms reduce disputes, set customer expectations and protect revenue. They also show customers you take your legal obligations seriously, which builds trust in a digital environment.
At a practical level, compliance means you:
- Present accurate product descriptions and pricing, and don’t mislead customers (Australian Consumer Law).
- Explain how orders, delivery, risk, returns and refunds work (your website terms and policies).
- Handle personal information transparently and securely (Privacy Act if it applies, and good privacy practice generally).
- Use reputable payment providers and protect payment data (security and fraud controls).
- Set up simple processes for complaints, returns and warranty claims.
If a complaint or chargeback arises, your contracts and records are your first line of defence. Think of them as your store’s “rulebook” that everyone can easily find and understand.
Step-By-Step: Set Up Your Online Store The Right Way
1) Choose A Business Structure And Register
Decide whether you’ll operate as a sole trader, partnership or company. Many sellers start as a sole trader for simplicity, while others choose a company for limited liability and growth potential.
Apply for an ABN, register your business name (if you trade under a name that isn’t your own), and make sure your name is consistent across your site, socials and invoices.
If your GST turnover is at or above the threshold, register for GST and display tax-inclusive pricing. It’s also important to speak with your accountant about your tax and GST obligations for ecommerce, including international orders.
2) Put Your Core Website Contracts In Place
Before you take your first order, publish the key agreements customers will rely on. For most ecommerce businesses, that includes:
- E‑Commerce Terms and Conditions covering orders, pricing, delivery, risk, returns, refunds and liability.
- A transparent Privacy Policy explaining what personal information you collect, why and how you handle it.
- If you use tracking or analytics, a short cookie notice with a link to your Cookie Policy.
- If you ship physical goods, a clear Shipping Policy that matches your operational reality.
Make your terms easy to find (site footer, checkout) and require customers to accept them before paying.
3) Configure Payments And Checkout For Transparency
Connect a reputable payment gateway, avoid storing card details yourself unless absolutely necessary, and surface key terms before purchase. Customers should see accurate prices (including taxes and unavoidable fees), shipping methods and realistic delivery estimates.
Capture consent to your terms, keep order records, and make sure any surcharges or add‑ons are disclosed clearly.
4) Build A Returns, Warranty And Complaints Workflow
Set up simple internal steps for returns and complaints, aligned with the Australian Consumer Law. Train your team (or document your own process) so responses are consistent, timely and well‑recorded.
If you offer your own seller warranty, ensure the wording complies with the ACL using a proper Warranties Against Defects Policy.
5) Protect Your Brand Early
Register your brand name and logo as trade marks to deter copycats and support takedowns on marketplaces and social platforms. You can start this process via Register Your Trade Mark once you’ve chosen a distinctive brand.
6) Keep Privacy And Security Front Of Mind
Only collect the personal information you need, store it securely and limit access to a need‑to‑know basis. Review your platform’s security features and remove unnecessary third‑party apps over time.
If you use overseas service providers (for example, cloud hosting or email tools), consider how and where data is stored and whether additional disclosures are needed.
Which Laws Apply To Australian Online Stores?
Australian Consumer Law (ACL)
The ACL applies to most business‑to‑consumer sales in Australia, including online. Key rules to follow:
- Don’t mislead or deceive in your marketing, pricing or product descriptions. This is captured by section 18 of the ACL.
- Consumer guarantees apply to goods and services. If a product is faulty or not as described, customers may be entitled to a repair, replacement or refund.
- Avoid blanket “no refunds” or “final sale” statements that conflict with consumer guarantees.
- If you provide a seller or manufacturer warranty, ensure it uses the mandatory wording in a compliant Warranties Against Defects Policy.
Privacy And Data Handling
Most online stores collect personal information (names, emails, addresses and purchase history). You should be transparent about what you collect, why and how you use and store it.
In Australia, many small businesses with annual turnover of $3 million or less are exempt from the Privacy Act 1988 (Cth). There are important exceptions (for example, health service providers, businesses that opt in, or specific arrangements like handling tax file numbers). Even if you’re exempt, publishing a clear Privacy Policy and following good privacy practice builds trust and reduces risk.
Cookie banners and consent mechanisms are not universally required under Australian law. However, if you use tracking technologies, it’s good practice to show a short cookie notice and link to your Cookie Policy. If you target customers in jurisdictions that require consent (for example, the EU), you’ll need to meet those local requirements too.
Email And Digital Marketing
When you send marketing emails or texts, the Spam Act 2003 (Cth) requires consent, clear sender identification and a working unsubscribe link. Review your templates and unsubscribes regularly. If you run giveaways or build a mailing list, get across the basics of email marketing laws.
Pricing, Delivery And Surcharges
Be upfront about pricing, including GST (if applicable) and any unavoidable fees. Avoid drip‑pricing that adds unexpected costs late in the checkout flow.
Set honest delivery estimates, explain shipping methods, and state when risk passes to the customer. Keep your product pages, checkout and Shipping Policy consistent to avoid confusion.
Intellectual Property
Protect your brand with trade marks for your name and logo. Only use images, fonts and content you own or are licensed to use. Keep records of licences or attributions in case questions arise later.
Payments And Security
Use PCI‑DSS compliant payment processors and enable tools to detect and prevent fraud. Avoid storing credit card details yourself unless you have a strong business case and the capability to meet the associated security obligations.
Turn on multi‑factor authentication for admin access and restrict sensitive permissions to reduce risk.
What Contracts And Policies Should Your Store Have?
Every online store is different, but most need a core bundle of contracts and policies. These set expectations, reduce risk and help you stay compliant.
- E‑Commerce Terms and Conditions: Your sales contract with customers. It should cover ordering, pricing, delivery, risk, returns, refunds and liability. Start with tailored E‑Commerce Terms and Conditions that reflect your products and delivery model.
- Privacy Policy: Explains what personal information you collect and how you handle it, including storage, access and complaints. Link your Privacy Policy in your footer and at points where you collect data (checkout, newsletter forms, contact page).
- Cookie Policy: Lists the cookies and tracking technologies you use and the purpose of each. Pair with a short notice or banner that links to your Cookie Policy.
- Shipping Policy: Sets delivery timeframes, costs, methods, risk of loss and what happens if an order is delayed or missing. Keep your Shipping Policy aligned with what you can deliver operationally.
- Returns And Refunds Process: While much of this sits in your T&Cs, a separate page written in customer‑friendly language helps people find answers quickly and reduces support tickets.
- Warranties Against Defects Policy: If you offer your own warranty, the ACL requires specific wording and claim details. Set these out in a compliant Warranties Against Defects Policy.
- Supplier/Manufacturing Agreements: Formalise pricing, quality control, lead times, IP ownership and liability with your suppliers and makers to protect your supply chain.
- Website Terms of Use: If your site hosts reviews, forums or user content, add site rules, acceptable use and IP notices to manage risk beyond the sales contract.
Not every business needs every document, but most ecommerce stores benefit from having at least the first four in place before launch.
Practical Tips For Payments, Platforms And Cross‑Border Sales
Payment Gateways, Chargebacks And Subscriptions
Chargebacks are a reality online. Reduce disputes by keeping product descriptions accurate, fulfilment timelines realistic, and terms easy to find. Keep detailed order, delivery and customer communications records so you can respond quickly to chargeback requests.
If you offer subscriptions or “subscribe & save”, make renewal and cancellation terms plain. State billing cycles, notice periods, any minimum terms and how to cancel in both your T&Cs and your checkout flow. Avoid pre‑ticked boxes and “dark patterns.”
Marketplaces, Platforms And Third‑Party Sellers
Running a platform adds complexity. You’ll need seller onboarding terms, acceptable use rules, content moderation processes and a clear approach to returns and refunds when you’re not the direct seller. Align your marketplace rules with consumer law obligations so customers aren’t left in limbo.
International Sales And Duties
Cross‑border sales raise questions about duties, shipping risk, currency display and local consumer laws. Start by setting clear rules for where you ship, who pays duties and realistic delivery timeframes. If you’re targeting specific overseas markets, consider whether local consumer and privacy rules require changes to your terms or consent mechanisms.
Where To Place Your Legal Pages (And Why It Matters)
- Footer: Link to your terms, Privacy Policy, returns page and contact details.
- Checkout: Summarise key terms (pricing, delivery estimates, returns) and link to full terms before the payment button.
- Cookie Notice: A short banner with a link to your Cookie Policy and simple controls if you use tracking.
- Product Pages: Accurate descriptions, key features, total price and clear delivery cost/estimates, especially for bulky, pre‑order or backorder items.
Consistency matters. If your shipping page says 3–5 days but your product page promises “next day,” you’ll invite complaints and potential ACL issues.
Good To Know: Privacy Exemptions And Cookie Consent
It’s common to ask, “Do I legally need a Privacy Policy and cookie banner?” Here’s the short answer:
- Many small businesses under $3 million annual turnover are exempt from the Privacy Act, but numerous exceptions apply. Even if exempt, having a clear Privacy Policy is best practice and expected by customers and payment providers.
- Cookie consent banners are not universally mandated under Australian law. They may be required if you target customers in jurisdictions like the EU, or depending on the type of tracking you use. A simple notice with a link to your policy is a sensible default.
Tax And GST Reminders
Display GST‑inclusive prices if you’re registered, and keep clean records for reporting. If you sell internationally, check how GST and any import rules apply to your products and shipping channels. It’s wise to confirm your approach with your accountant early so your checkout and invoices are configured correctly.
Key Takeaways
- Your ecommerce store needs clear contracts and policies to set expectations, reduce disputes and build trust with customers.
- Publish tailored Terms and Conditions, a transparent Privacy Policy, a practical Shipping Policy and, if you use tracking, a Cookie Policy that matches how your site actually works.
- Comply with the Australian Consumer Law, including accurate marketing and fair returns; if you offer your own warranties, use compliant wording in a Warranties Against Defects Policy.
- Understand privacy basics: small business exemptions exist, but customers still expect transparency and good data security.
- Protect your brand early by registering trade marks via Register Your Trade Mark, and only use content you own or have a licence to use.
- Design your checkout and communications to be clear and consistent, and set up simple internal workflows for refunds, complaints and privacy requests.
If you’d like a consultation on your ecommerce store’s legal agreements and compliance, you can reach us at 1800 730 617 or team@sprintlaw.com.au for a free, no‑obligations chat.







