§1 General provisions
1. This document is an appendix to the Terms and Conditions. By using our services, you entrust us with your information. This Privacy Policy serves only as an aid to understanding what information and data is collected and for what purpose, and what we use it. This data is very important to us, so please read this document carefully as it sets out the principles and ways in which we process and protect your personal data. This document also sets out the rules for the use of "Cookies".
2. We hereby declare that we comply with the principles of personal data protection and all legal regulations, which are provided by the Personal Data Protection Act and the Regulation of the European Parliament and of the Council (EU) 2016/679 of April 27, 2016 on the protection of natural persons in relation to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC.
3. The person whose personal data is being processed has the right to contact us for comprehensive information on how we use his or her personal data. We always make a clear effort to inform you about the data we collect, how we use it, what purposes it is intended to serve and to whom we transfer it, what protection we provide for this data when it is transferred to other entities, and provide information about the institutions to contact in case of doubt.
4. The Service uses technical measures such as: physical protection measures for personal data, hardware measures for IT and telecommunication infrastructure, protection measures within the framework of software tools and databases, and organizational measures to ensure adequate protection of processed personal data, and in particular to protect personal data from being made available to unauthorized third parties, from being obtained by an unauthorized person and used for an unknown purpose, as well as from accidental or intentional change, loss, damage or destruction of such data.
5. Under the terms of the Regulations and this document, we have exclusive access to the data. Access to personal data may also be entrusted to other entities through which payments are made, which collect, process and store personal data in accordance with their Terms and Conditions, and entities tasked with processing an order. Access to personal data is granted to the aforementioned entities to the extent necessary and only to the extent that will ensure the performance of services.
6. Personal data are processed only for such purposes for which you have given your consent by clicking on the relevant fields of the form provided on the Website or in any other explicit manner. The legal basis for the processing of your personal data is your consent to the processing of data or the requirement to perform the service (e.g. ordering a Product) that you have ordered from us (pursuant to Article 6(1)(a) and (b) of the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC (General Data Protection Regulation) - RODO.
§2 Privacy Principles
1. We take privacy seriously. We are characterized by respect for privacy and the fullest possible and guaranteed convenience in the use of our services.
2. We value the trust that Users place in us by entrusting us with their personal information to fulfill their orders. We always use personal data fairly and in such a way as not to disappoint that trust, only to the extent necessary to fulfill the order including its processing.
3. You have the right to be clearly and fully informed about how we use your personal data and for what purposes. We always clearly inform you about the data we collect, how and to whom we provide it, and provide information about the entities to contact in case of doubts, questions, comments.
4. In case of doubts about our use of your personal data, we will immediately take measures to clarify and resolve such doubts, we will fully and completely answer all questions in this regard.
5. We will take all reasonable measures to protect Users' data from improper and uncontrolled use and secure it comprehensively.
6. Details of the Administrator of your personal data can be found on the "contact" tab located on the website.
7. The legal basis for the processing of your personal data is Article 6(1)(b) RODO. The provision of data is not mandatory, but necessary to take the relevant steps prior to the conclusion of the contract and its execution. We will transfer your personal data to other recipients entrusted with the processing of personal data in our name and on our behalf. Your data will be transferred on the basis of Article 6(1)(f) of the RODO, where the legitimate interest is the due performance of contracts/orders. In addition, we will share your personal data with other business partners. We store the collected personal data in the European Economic Area ("EEA"), but it may also be transferred to a country outside the EEA and processed there. Any transfer of personal data is carried out in accordance with applicable law. If data is transferred outside the EEA, we use standard contractual clauses and the Privacy Shield as safeguards for countries where the European Commission has not found an adequate level of data protection.
8. Your personal data related to the conclusion and performance of the contract for the execution of contracts will be processed for the period of their execution, and for a period no longer than provided by law, including the provisions of the Civil Code and the Accounting Act, i.e. no longer than 10 years, counting from the end of the calendar year in which the last contract was executed.
9. Your personal data processed for the purpose of concluding and performing future contracts will be processed until you object.
10. You are entitled to: to access your personal data and receive a copy of the personal data being processed, to rectify your incorrect data; to request erasure of your data (right to be forgotten) in cases of circumstances provided for in Article 17 of the RODO; to request restriction of data processing in cases indicated in Article 18 of the RODO, to object to data processing in cases indicated in Article 21 of the RODO, to portability of data provided, processed by automated means.
11. If you believe that your personal data is being processed unlawfully, you may file a complaint with the supervisory authority (Office for Personal Data Protection, 2 Stawki Street, Warsaw). If you need additional information related to the protection of personal data or wish to exercise your rights, please contact us by mail at the mailing address.
12. We make every effort to protect against unauthorized access, unauthorized modification, disclosure and destruction of information in our possession. In particular:
a) We control the methods of collecting, storing and processing information, including physical security measures to protect against unauthorized access to the system.
b) We grant access to personal information only to those employees, contractors and representatives who need to have access to it. In addition, they are contractually obligated to maintain strict confidentiality, to allow us to inspect and check how they fulfill their assigned duties, and may face consequences if they fail to fulfill these obligations.
13. We will comply with all applicable data protection laws and regulations and will cooperate with data protection authorities and authorized law enforcement agencies. In the absence of data protection regulations, we will act in accordance with generally accepted data protection principles, rules of social intercourse as well as established customs.
14. The exact manner of protection of personal data is contained in the data protection policy (ODO: security policy, personal data protection regulations, IT system management instruction) For security reasons, due to the procedures described therein, it is only available for inspection by state control authorities.
15. If you have any questions about how to handle your personal data, you are welcome to contact us using the page from which you were redirected to this Privacy Policy. Your request for contact will be promptly forwarded to the appropriate appointed person.
16. The user always has the right to notify us if:
a) no longer wishes to receive information or communications from us in any form;
b) wishes to receive a copy of your personal data in our possession;
c) correct, update or delete your personal information in our records;
d) wishes to report violations, misuse or processing of your personal information.
17. To make it easier for us to respond or respond to the information provided, please provide your name and further details.
§3 Scope and purpose of personal data collection
1. We process necessary personal data in order to provide services and for accounting purposes and only such purposes, i.e. :
a) in order to place an order,
b) for the purpose of concluding a contract, complaints and withdrawal from the contract,
c) to issue a VAT invoice or other receipt.
d) monitoring traffic on our websites;
e) to collect anonymous statistics, for determining how users use our website;
f) determining the number of anonymous users of our sites
g) controlling how often users are shown selected content and what content is shown most often;
h) controlling how often users select a particular service or from which service the most frequent contact is made;
i) studying subscriptions to newsletters and contact options;
j) Using a system of personalized recommendations for e-commerce;
k) Use of a tool for both email and follow-up telephone communication;
l) integration with a social networking site;
m) possible online payments.
2. We collect, process and store the following user data:
a) first and last name,
b) residential address,
c) delivery address (if different from residence address),
d) tax identification number (NIP),
e) electronic mail address (e-mail),
f) telephone number (mobile, landline),
g) date of birth,
h) information about the Internet browser used,
i) other personal data voluntarily provided to us.
3. Provision of the above data by you is completely voluntary, but also necessary for the full implementation of services.
4. Purpose of data collection and processing or use by us:
a) Direct marketing, archival purposes of advertising campaigns;
b) Implementation of obligations imposed by law by collecting information about undesirable activities;
5. We may transfer your personal data to servers located outside your country of residence or to affiliated entities, third parties based in other countries including countries in the EEA (European Economic Area, EEA - free trade zone and Common Market, comprising the countries of the European Union and the European Free Trade Association EFTA) for the purpose of processing personal data by such entities on our behalf in accordance with the provisions of this Privacy Policy and applicable laws, customs as well as data protection regulations.
6. We keep your personal data for no longer than it is needed for the proper quality of service and, depending on the mode and purpose of its acquisition, we keep it for the duration of the service and after its completion for the purposes of:
a) To carry out obligations under the law, tax and accounting regulations;
b) prevention of fraud or crime;
c) statistical and archiving.
d) Marketing activities - for the duration of the contract, the granting of a separate consent to process such data - until the completion of transaction processing activities, your objection to such processing or withdrawal of consent.
e) Surrounding sales and promotional activities - e.g. contests, promotional actions - for the duration and settlement of such actions.
f) Operational activities - until the expiration of the statute of limitations imposed by the RODO Regulation and relevant national laws, in order to demonstrate the fairness of the processing of personal data
g) Investigation of any claims related to the executed agreement;
7. Bearing in mind the circumstances that in many of the countries to which this personal data is transferred, the same level of legal protection for personal data as in your country does not apply. Your personal information stored in another country may be accessed by, for example, courts, law enforcement and national security authorities in accordance with the laws of that country. Subject to lawful requests for disclosure, we undertake to require those processing personal data outside your country to take measures to protect your data in an adequate manner in accordance with the regulations of their national laws.
§4 "Cookies" Policy
1. We automatically collect information contained in cookies for the purpose of collecting User data. A cookie is a small piece of text that is sent to the User's browser and which the browser sends back the next time the User visits the website. They are mainly used to maintain a session, e.g. by generating and sending back a temporary ID when you log in. We use "session" cookies that are stored on the User's terminal device until the User logs out, shuts down the website or shuts down the browser, and "permanent" cookies that are stored on the User's terminal device for the time specified in the parameters of the cookies or until they are deleted by the User.
2. Cookies customize and optimize the website and its offerings for the needs of Users through activities such as creating statistics on page views and ensuring security. Cookies are also necessary to maintain the session after leaving the website.
3. The Administrator processes the data contained in cookies each time the website is visited by visitors for the following purposes:
a) optimization of the use of the site;
b) identifying Service Recipients as currently logged in;
c) adapting graphics, selection options and any other content of the site to the individual preferences of the Service Recipient;
d) remembering completed automatically and manually, posted data from Order Forms or login data provided by the visitor;
e) collecting and analyzing anonymous statistics showing how the site is used in the administration panel and google analytics
f) creating remarketing lists based on information about preferences, behavior, use of interests from the Site and collecting demographic data, and then making these lists available in AdWords and Facebook Ads.
g) creating data segments based on demographic information, interests, preferences in the choice of products/services viewed.
h) use of demographic and interest data in Analytics reports.
4. The User can completely block and delete the collection of Cookies at any time through his/her web browser.
5. Blocking by the User the possibility of collecting Cookies on his/her device may hinder or prevent the use of certain functionalities of the website to which the User is fully entitled, but must be aware of the limitations of functionality in such a situation.
6. A User who does not wish to use cookies for the purpose described above may delete them manually at any time. For detailed instructions on how to proceed, please visit the website of the manufacturer of the web browser you are currently using.
7. More information about cookies is available in the help menu of each web browser. Examples of web browsers that support the aforementioned "Cookies":
a) Internet Explorer cookie settings
b) Chrome cookie settings
c) Firefox cookie settings
d) Opera cookie settings
e) Safari cookie settings
f) Android cookies
g) Cookies in Blackberry
h) Cookies in iOS (Safari)
i) Cookies in Windows Phone
§5 Rights and obligations
1. We have the right and, in cases specified by law, the statutory obligation to disclose some or all information about your personal data to public authorities or third parties who make such a request for information under the applicable provisions of Polish law.
2.The User has the right to access the contents of his/her personal data which he/she makes available, the User may correct and complete the data at any time, and also has the right to demand that the data be deleted from his/her databases or that processing of the data be discontinued, without giving any reason. In order to exercise his/her rights, the User may, at any time, send an applicable message to the e-mail address or any other way that will provide/convey such a request.
3. The processing of personal data of individuals who are our customers is based on:
a) legitimate interest as a data controller (e.g., for database creation, analytical and profiling activities, including activities concerning analysis of product usage, direct marketing of our own products, securing documentation for the purpose of defense against possible claims or for the purpose of asserting claims)
b) consent (including, in particular, consent for e-mail marketing or telemarketing)
c) performance of a concluded contract
d) obligations under the law (e.g. tax law or accounting regulations).
4. The processing of personal data of individuals who are potential customers is based on:
a) the legitimate interest of the data controller (e.g., for the creation of a database, direct marketing of own products)
b) Consent (including, in particular, consent for email marketing or telemarketing)
5. A request from the User to delete personal data or to stop processing by the User may result in the complete inability of the User to provide services by or severely limit them.
6. We pay special attention to the issue of profiling and point out that:
a) for profiling purposes, we generally process data that has previously been subject to ssl encryption;
b) we use typical data for this purpose: email address and IP address or cookies
c) we profile for the purpose of analyzing or forecasting the personal preferences and interests of people using our Services or products or services and tailoring the content on our Services or products to those preferences
d) we profile for marketing purposes, i.e. matching marketing offers to the aforementioned preferences.
7. We undertake to act in accordance with applicable laws and rules of social coexistence.
8. Information on out-of-court handling of consumer disputes. The authorized entity within the meaning of the Law on Out-of-Court Processing of Consumer Disputes is the Financial Ombudsman, whose website address is: www.rf.gov.pl.
§6 Basic safety rules
1. Each user should take care of his own data security and the security of his devices that are used to access the Internet. Such a device should absolutely have an antivirus program with an up-to-date regularly updated database of definitions, types and types of viruses, a secure version of the web browser it uses, and a firewall turned on. The user should check that the operating system and programs installed on it have the latest and compatible updates, as attacks take advantage of bugs found in installed software.
2. Access data for services offered on the Internet are - e.g., logins, passwords, PINs, electronic certificates, etc., - should be secured in a place inaccessible to others and impossible to hack from the Internet. They should not be disclosed or stored on the device in a form that allows unauthorized access and reading by unauthorized persons
3. Be cautious when opening strange attachments or clicking on links in emails that you didn't expect, such as from unknown senders or from the spam folder.
4. It is advisable to run anti-phishing filters in your browser, i.e. tools that check whether a displayed website is authentic and not used for phishing, e.g. by impersonating a person or institution.
5. Files should be downloaded only from trusted sites, services and pages. We do not recommend installing software from unverified sources especially from unknown publishers with an unproven reputation. This also applies to mobile devices, e.g. smartphones, tablets.
6. When using a home Wi-Fi network, you should set such a password so that it is secure and difficult to break, it should not be any pattern or string of characters that is easy to guess (such as street name, host name, birthday, etc.). It is also recommended to use the highest possible Wi-Fi encryption standards that are possible to run on your equipment, such as WPA2.
§7 Use of social media plug-ins
1. Plug-ins so-called plug-ins of social networks facebook.com and Twitter and others, may be found on our sites. The associated services are provided by Facebook Inc. and Twitter Inc. respectively.
2. Facebook is operated by Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA Facebook. To view Facebook plugins go to: https://developers.facebook.com/docs/plugins
3. Twitter is operated by Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA. To see Twitter plug-ins go to: https://dev.twitter.com/web/tweet-button
4. The plug-in only transmits information to its provider about which of our websites you accessed and at what time. If you are logged into your account located, for example, on Facebook or Twitter, while viewing or staying on our site, the provider is able to combine your interests, information preferences, and other data, obtained, for example, by clicking the Like button or leaving a comment, or entering your profile name in searches. Such information will also be transmitted by the browser directly to the provider.
5. For more detailed information on the collection and use of data by Facebook or Twitter and on how to protect your privacy, please visit the following pages:
a) Data protection/privacy advice issued by Facebook: http://www.facebook.com/policy.php
b) Data protection/privacy advice issued by Twitter: https://twitter.com/privacy
6. In order to avoid a visit to your selected user account being recorded by Facebook or Twitter on our website, you must log out of your account before browsing our websites.4.