Privacy Policy
§1 General provisions
- This document is attached to the Terms and Conditions. By using our services, you entrust us with your information. This Privacy Policy serves only as an aid to understanding what information and data is collected and for what purpose and for what we use it. This data is very important to us, so please read this document carefully, as it outlines the principles and ways in which we process and protect your personal data. This document also defines the rules for the use of "Cookies".
- We hereby declare that we comply with the principles of personal data protection and all legal regulations provided for by the Personal Data Protection Act and the Regulation of the European Parliament and of the Council (EU) 2016/679 of April 27, 2016 on the protection of natural persons in relation to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC.
- A person whose personal data is being processed has the right to ask us for comprehensive information on how we use his or her personal data. We always make a clear effort to inform you about the data we collect, how we use it, what purposes it is intended to serve and to whom we transfer it, what protection we provide for this data when it is transferred to other entities, and provide information on institutions to contact in case of doubt.
- The Service uses technical measures such as physical protection measures for personal data, hardware measures for IT and telecommunication infrastructure, protection measures within the framework of software tools and databases, and organizational measures to ensure adequate protection of processed personal data, and in particular to protect personal data from being made available to unauthorized third parties, from being obtained by an unauthorized person and used for an unknown purpose, as well as from accidental or intentional alteration, loss, damage or destruction of such data.
- Under the terms of the Regulations and this document, we have exclusive access to the data. Access to personal data may also be entrusted to other entities through which payments are made, which collect, process and store personal data in accordance with their Terms and Conditions, and entities that are tasked with the execution of the order. Access to personal data is granted to the aforementioned entities to the extent necessary and only to the extent that will ensure the performance of services.
- Personal data are processed only for such purposes for which you have given your consent by clicking on the relevant fields of the form provided on the Website or in any other explicit manner. The legal basis for the processing of your personal data is your consent to the processing of your data or the requirement to perform the service (e.g. ordering a Product) that you have ordered from us (pursuant to Article 6(1)(a) and (b) of the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC (General Data Protection Regulation) - RODO.
§2 Privacy rules
- We take privacy seriously. We are characterized by respect for privacy and the fullest possible and guaranteed convenience of our services.
- We value the trust that Users place in us by entrusting us with their personal data for order processing. We always use personal data fairly and in such a way as not to disappoint that trust, only to the extent necessary to fulfill the order including its processing.
- You have the right to receive clear and complete information about how we use your personal data and for what purposes. We always clearly inform you about the data we collect, how and to whom we provide it, and provide information about the entities to contact in case of concerns, questions, comments.
- If you have any doubts about our use of your personal information, we will promptly take steps to clarify and resolve such doubts, and we will fully and completely answer all questions in this regard.
- We will take all reasonable measures to protect Users' data from improper and uncontrolled use and secure it comprehensively.
- Details of the Administrator of your personal data can be found on the "contact" tab located on the website.
- The legal basis for the processing of your personal data is Article 6(1)(b) RODO. The provision of data is not mandatory, but necessary to take the relevant steps prior to the conclusion of the contract and its execution. We will transfer your personal data to other recipients entrusted with the processing of personal data in our name and on our behalf. Your data will be transferred on the basis of Article 6(1)(f) of the RODO, where the legitimate interest is the due performance of contracts/orders. In addition, we will share your personal data with other business partners. We store the collected personal data in the European Economic Area ("EEA"), but it may also be transferred to a country outside the EEA and processed there. Any transfer of personal data is carried out in accordance with applicable law. If data is transferred outside the EEA, we use standard contractual clauses and the Privacy Shield as safeguards for countries where the European Commission has not found an adequate level of data protection.
- Your personal data related to the conclusion and execution of the contract for the execution of contracts will be processed for the period of their execution, as well as for a period no longer than provided by law, including the provisions of the Civil Code and the Accounting Act, i.e. no longer than 10 years, counting from the end of the calendar year in which the last contract was executed.
- Your personal data processed for the purpose of entering into and performing future contracts will be processed until you object.
- You have the right to: access your personal data and receive a copy of the personal data being processed, rectify your inaccurate data; request deletion of your data (right to be forgotten) in the circumstances provided for in Article 17 of the RODO; request restriction of data processing in the cases indicated in Article 18 of the RODO, object to data processing in the cases indicated in Article 21 of the RODO, portability of data provided, processed by automated means.
- If you believe that your personal data is being processed unlawfully, you can file a complaint with the supervisory authority (Office for Personal Data Protection, 2 Stawki Street, Warsaw). If you need additional information related to the protection of personal data or wish to exercise your rights, please contact us by mail at the mailing address.
- We make every effort to protect against unauthorized access, unauthorized modification, disclosure and destruction of information in our possession. In particular:
- We control the methods of collecting, storing and processing information, including physical security measures to protect against unauthorized access to the system.
- We grant access to personal data only to those employees, contractors and representatives who need to have access to it. In addition, they are contractually obligated to maintain strict confidentiality, to allow us to inspect and check how they fulfill their duties, and may face consequences if they fail to fulfill these obligations.
- We will comply with all applicable data protection laws and regulations and cooperate with data protection authorities and authorized law enforcement agencies. In the absence of data protection regulations, we will act in accordance with generally accepted data protection principles, rules of social intercourse as well as established customs.
- The exact way to protect personal data is included in the data protection policy (ODO: security policy, data protection regulations, instruction for management of the information system) For security reasons, due to the procedures described therein, it is for review only by state inspection authorities.
- If you have any questions about how we handle your personal information, you are welcome to contact us using the page from which you were directed to this Privacy Policy. Your request for contact will be promptly forwarded to the appropriate appointed person.
- You always have the right to notify us if:
- no longer wishes to receive information or messages from us in any form;
- wishes to receive a copy of your personal information in our possession;
- correct, update or delete your personal information in our records;
- wishes to report violations, improper use or processing of their personal data.
- To make it easier for us to respond or respond to the information provided, please provide your name and further details.
§3 Scope and purpose of personal data collection
- We process the necessary personal data to provide services and for accounting purposes and only such i.e.:
- in order to place an order,
- For the purpose of entering into a contract, complaints and withdrawal from the contract,
- issuance of a VAT invoice or other receipt.
- Monitoring traffic on our websites;
- Collecting anonymous statistics, for determining how users use our website;
- determining the number of anonymous users of our sites
- Controlling how often the selected content is shown to users and what content is shown most often;
- Controlling how often users select a particular service or from which service the most frequent contact occurs;
- Exploring newsletter sign-ups and contact options;
- Use of a personalized recommendation system for e-commerce;
- Using the tool to communicate both by email and, subsequently, by phone;
- Integration with a community portal;
- possible online payments.
- We collect, process and store the following user data:
- name,
- residential address,
- address for service (if different from the address of residence),
- tax identification number (TIN),
- electronic mail (e-mail) address,
- telephone number (mobile, landline),
- date of birth,
- PESEL,
- information about the web browser you are using,
- other personal data voluntarily provided to us.
- Provision of the above data by is completely voluntary, but also necessary for the full implementation of services.
- Purpose of our data collection and processing or use:
- Direct marketing, archival purposes of advertising campaigns;
- Implementation of obligations imposed by law through the collection of information on adverse reactions;
- We may transfer personal data to servers located outside of your country of residence or to affiliated entities, third parties based in other countries including countries in the EEA (European Economic Area, EEA - free trade zone and Common Market, comprising the countries of the European Union and the European Free Trade Association EFTA) for the purpose of processing personal data by such entities on our behalf in accordance with the provisions of this Privacy Policy and applicable laws, customs as well as data protection regulations.
- We keep your personal data for no longer than it is needed for the proper quality of service and, depending on the mode and purpose of its acquisition, we keep it for the duration of the service and after its termination for purposes:
- To carry out obligations under the law, tax and accounting regulations;
- prevention of abuse or crime;
- statistical and archiving.
- Marketing activities - for the duration of the contract, the granting of a separate consent for the processing of such data - until the completion of transaction processing activities, your objection to such processing or the withdrawal of consent.
- Peri-sales and promotional activities - e.g., contests, promotional actions - for the duration and settlement of such actions.
- Operational activities - until the statute of limitations imposed by the RODO Regulation and relevant national laws, in order to demonstrate reliability in the processing of personal data
- Investigation of any claims related to the executed contract;
- Given the circumstances, many of the countries to which this personal information is transferred do not have the same level of legal protection for your personal information that applies in your country. Your personal information stored in another country may be accessed by, for example, courts, law enforcement and national security authorities in accordance with the laws of that country. Subject to lawful requests for disclosure, we undertake to require those processing personal data outside your country to take measures to protect your data in an adequate manner in accordance with the regulations of their national laws.
§4 "Cookies" Policy
- We automatically collect information contained in cookies to collect User data. A cookie is a small piece of text that is sent to the User's browser and which the browser sends back the next time the User visits the site. They are mainly used to maintain sessions For example, by generating and returning a temporary ID after logging in. We use "session" cookies stored on the User's terminal device until the User logs out, shuts down the website or shuts down the web browser, and "permanent" cookies stored on the User's terminal device for the time specified in the parameters of the cookies or until they are deleted by the User.
- Cookies customize and optimize the site and its offerings for Users through such activities as creating page view statistics and ensuring security. Cookies are also necessary to maintain the session after leaving the website.
- The Administrator processes the data contained in cookies each time the website is visited by visitors for the following purposes:
- Optimizing the use of the site;
- Identification of Service Recipients as currently logged in;
- adaptation, graphics, selection options and any other content of the site to the individual preferences of the Service Recipient;
- remembering completed automatically and manually, posted data from Order Forms or login data provided by the visitor;
- collect and analyze anonymous statistics showing how the site is used in the administration panel and google analytics
- Creating remarketing lists based on information about preferences, behavior, use of interests on the Site, and collection of demographic data, and then making these lists available in AdWords and Facebook Ads.
- Create data segments based on demographic information, interests, preferences in the choice of products/services viewed.
- use of demographic and interest data in Analytics reports.
- The user can completely block and delete the collection of cookies at any time using his browser.
- Blocking by the User the possibility of collecting Cookies on his device may hinder or prevent the use of certain functionalities of the site to which the User is fully entitled, but must be aware of the limitations of functionality in such a situation.
- A user who does not want the use of "cookies" for the purpose described above at any time can delete them manually. For detailed instructions on how to proceed, please visit the website of the manufacturer of the web browser you are using from which the User is currently using.
- More information about Cookies is available in the help menu of each web browser. Examples of web browsers that support the mentioned "Cookies":
- Cookie settings Internet Explorer
- Cookie settings Chrome
- Cookie settings Firefox
- Cookie settings Opera
- Cookie settings Safari
- Cookies in Android
- Cookies in Blackberry
- Cookies in iOS (Safari)
- Cookies in Windows Phone
§5 Rights and obligations
- We have the right and, in cases provided for by law, the statutory obligation to disclose some or all information about your personal data to public authorities or third parties who make such a request for information under the applicable provisions of Polish law.
- The User has the right to access the content of his/her personal data that he/she provides, the User may correct or supplement such data at any time, and has the right to request that it be deleted from his/her databases or cease processing it, without giving any reason. In order to exercise his/her rights, the User may at any time send an applicable message to the e-mail address or by any other means that will provide/transmit such a request.
- The processing of personal data of individuals who are our customers is based on:
- Legitimate interest as a data controller (e.g., for database creation, analytical and profiling activities, including activities concerning the analysis of product usage, direct marketing of own products, securing documentation for the purpose of defense against possible claims or for the purpose of asserting claims)
- consents (including, in particular, consents for e-mail marketing or telemarketing)
- performance of the concluded agreement
- obligations under the law (e.g., tax law or accounting regulations).
- The processing of personal data of individuals who are potential customers is based on:
- The legitimate interest of the data controller (e.g., for the creation of a database, direct marketing of its own products)
- consents (including, in particular, consents for e-mail marketing or telemarketing)
- A request from the User to delete personal data or to stop processing by the User may result in the complete inability of the User to provide services by or severely limit them.
- We pay special attention to the issue of profiling and point out that:
- for profiling purposes, we generally process data that was previously subject to ssl encryption;
- we use typical data for this: e-mail address and IP address or cookies
- we profile in order to analyze or predict the personal preferences and interests of people using our Services or products or services and to tailor the content on our Services or products to those preferences
- we profile for marketing purposes, i.e. to match marketing offers to the above preferences.
- We undertake to act in accordance with applicable laws and rules of social intercourse.
- Information on out-of-court handling of consumer disputes. The authorized entity within the meaning of the Law on Out-of-Court Processing of Consumer Disputes is the Financial Ombudsman, whose website address is: www.rf.gov.pl.
§6 Basic safety rules
- Every user should take care of their own data security and the security of their devices that are used to access the Internet. Such a device should absolutely have an antivirus program with an up-to-date regularly updated database of definitions, types and types of viruses, a secure version of the web browser it uses and a firewall enabled. The user should check that the operating system and programs installed on it have the latest and compatible updates, as attacks take advantage of bugs found in installed software.
- Access data for services offered on the Internet are - e.g., logins, passwords, PINs, electronic certificates, etc., - should be secured in a place inaccessible to others and impossible to hack from the Internet. They should not be disclosed or stored on the device in a form that allows unauthorized access and reading by unauthorized persons.
- Caution when opening strange attachments or clicking on links in emails that we didn't expect, such as from unknown senders or from the spam folder.
- It is advisable to run anti-phishing filters in your browser, i.e. tools that check whether a displayed website is authentic and not used for phishing, such as by impersonating a person or institution.
- Files should be downloaded only from trusted places, services and sites. We do not recommend installing software from unverified sources especially from unknown publishers with an unproven reputation. This also applies to mobile devices, e.g. smartphones, tablets.
- When using a home Wi-Fi network, you should set such a password that it is secure and difficult to break, it should not be any pattern or string of characters that is easy to guess (e.g. street name, host name, birthday, etc.). It is also recommended to use the highest possible Wi-Fi encryption standards that are possible to run on your equipment, such as WPA2.
§7 Using Social Media Plugins
- Plug-ins so-called plug-ins of the social networks facebook.com and X (formerly Twitter) and others, may be found on our pages. The associated services are provided by Facebook Inc. and Twitter Inc. respectively.
- Facebook is operated by Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA Facebook. To view Facebook plugins go to: https://developers.facebook.com/docs/plugins
- X (formerly Twitter) is operated by Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA. To see Twitter plugins go to: https://dev.twitter.com/web/tweet-button
- The plug-in only provides its provider with information about which of our websites you have accessed and at what time. If you are logged into your account located, for example, on Facebook or Twitter, while viewing or staying on our site, the provider is able to combine your interests, information preferences, and other data, obtained, for example, by clicking the Like button or leaving a comment, or entering your profile name in searches. Such information will also be transmitted by the browser directly to the provider.
- For more detailed information on data collection and use by Facebook or Twitter and on privacy, please visit the following pages:
- Data protection/privacy advice issued by Facebook: http://www.facebook.com/policy.php
- Data protection/privacy advice issued by Twitter: https://twitter.com/privacy
- In order to avoid having a visit to your selected user account recorded by Facebook or Twitter on our website, you must log out of your account before browsing our websites.
Copyright notice of the Regulations
The owner of all tangible copyrights to the template of this policy is LEGATO Law Office, which has granted a non-exclusive and non-transferable right to use this document for the purposes of its own commercial activities on the Internet and extends legal protection to the above-mentioned document for the duration of the contract. Copying and distribution of the template of this document without the permission of LEGATO Law Firm is prohibited and may be subject to both criminal and civil liability. Online merchants can learn more about the possibility of using the template privacy and cookies policy at http://www.kancelaria-legato.pl