Polityka prywatności

www.aquacosmetics.pl

  1. GENERAL PROVISIONS
    1. The administrator of personal data collected via the website is www.aquacosmetics.pl  Is  Stanisław Gierczyk  performing business activity under the name of   Aqua, adres siedziby: Łowicka 1, 45-324 Opole, adres do doręczeń: , NIP: 7542680839, REGON: , wpisaną do Centralnej Ewidencji i Informacji o Działalności Gospodarczej, adres poczty elektronicznej: biuro@localhost, dalej „Administrator”, będący/a jednoczeście Usługodawcą. , miejsce wykonywania działalności: Łowicka 1, 45-324 Opole, adres do doręczeń: Łowicka 1, 45-324 Opole, NIP: 7542680839, REGON: , adres poczty elektronicznej (e-mail): biuro@localhost, zwany/a dalej “Administratorem”.
    2. Personal data collected by the Controller via the website are processed in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation), hereinafter referred to as the GDPR, and the Personal Data Protection Act of 10 May 2018.
  2. TYPE OF PERSONAL DATA PROCESSED, PURPOSE AND SCOPE OF DATA COLLECTION
    1. PURPOSE OF PROCESSING AND LEGAL BASIS. The Administrator processes personal data via the website www.aquacosmetics.pl  in the case of:  
      1. the user's use of the contact form. Personal data are processed on the basis of Article 6(1)(f) of the GDPR as the Controller's legitimate interest.
      2. the user's subscription to the Newsletter for the purpose of sending commercial information electronically. Personal data are processed after separate consent, pursuant to Article 6(1)(a) of the GDPR.
    2. TYPE OF PERSONAL DATA PROCESSED. The Administrator processes the following categories of user personal data:
      1. Name and surname, 
      2. Address (residence), 
      3. Email address, 
      4. Phone number, 
    3. PERSONAL DATA ARCHIVING PERIOD. Users' personal data are stored by the Administrator: 
      1. where the basis for data processing is the performance of a contract, for as long as necessary to perform the contract, and thereafter for a period corresponding to the limitation period for claims. Unless a specific provision provides otherwise, the limitation period is six years, and for claims for periodic benefits and claims related to running a business – three years.
      2. Where consent is the basis for data processing, until consent is withdrawn, and after consent is withdrawn, for a period corresponding to the limitation period for claims that may be brought by the Controller and against it. Unless a specific provision provides otherwise, the limitation period is six years, and for claims for periodic benefits and claims related to running a business, three years.
    4. When using the website, additional information may be downloaded, in particular: the IP address assigned to the user's computer or the external IP address of the Internet provider, domain name, browser type, access time, type of operating system.
    5. Navigational data may also be collected from users, including information about the links and hyperlinks they choose to click or other actions they take on the website. The legal basis for this type of activity is the Controller's legitimate interest (Article 6(1)(f) of the GDPR), which consists in facilitating the use of services provided electronically and improving the functionality of these services.
    6. Providing personal data by the user is voluntary.
    7. Personal data will also be processed in an automated manner in the form of profiling, provided the user consents pursuant to Article 6(1)(a) of the GDPR. Profiling will result in assigning a profile to an individual for the purpose of making decisions about them or analysing or predicting their preferences, behaviours, and attitudes.
    8. The Controller takes special care to protect the interests of data subjects, and in particular ensures that the data collected by him are:
      1. processed in accordance with the law, 
      2. collected for specified, lawful purposes and not subject to further processing incompatible with those purposes,
      3. factually correct and adequate in relation to the purposes for which they are processed and stored in a form which allows identification of the persons to whom they relate, no longer than is necessary to achieve the purpose of processing.
  3. SHARING PERSONAL DATA
    1. Users' personal data are transferred to service providers used by the Administrator to operate the website. Depending on contractual arrangements and circumstances, service providers to whom personal data are transferred are either subject to the Administrator's instructions regarding the purposes and methods of processing such data (processors) or independently determine the purposes and methods of processing (controllers).
    2. Users' personal data is stored exclusively within the European Economic Area (EEA).
  4. THE RIGHT TO CONTROL, ACCESS AND CORRECT YOUR OWN DATA
    1. The data subject has the right to access the content of his or her personal data and the right to rectify, delete, limit processing, the right to data transfer, the right to object, the right to withdraw consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
    2. Legal basis for your request: 
      1. Access to data – art. 15 RODO
      2. Data rectification – Art. 16 SHOWS.
      3. Data deletion (so-called right to be forgotten) – Art. 17 SHOWS.
      4. Restriction of processing – Art. 18 RODO.
      5. Data transfer – Art. 20 RODO.
      6. Opposition – art. 21 RODO
      7. Withdrawal of consent – Article 7(3) of the GDPR.
    3. In order to exercise the rights referred to in point 2, you can send an appropriate e-mail to the following address: biuro@localhost.
    4. W sytuacji wystąpienia przez użytkownika z uprawnieniem wynikającym z powyższych praw, Administrator spełnia żądanie albo odmawia jego spełnienia niezwłocznie, nie później jednak niż w ciągu miesiąca po jego otrzymaniu. Jeżeli jednak – z uwagi na skomplikowany charakter żądania lub liczbę żądań – Administrator nie będzie mógł spełnić żądania w ciągu miesiąca, spełni je w ciągu kolejnych dwóch miesięcy informując użytkownika uprzednio w terminie miesiąca od otrzymania żądania – o zamierzonym przedłużeniu terminu oraz jego przyczynach.
    5. If it is found that the processing of personal data violates the provisions of the GDPR, the data subject has the right to lodge a complaint with the President of the Personal Data Protection Office.
  5. COOKIES
    1. The Administrator's website uses "cookies".
    2. The installation of cookies is necessary for the proper provision of services on the website. Cookies contain information essential for the proper functioning of the website and also enable the compilation of general website visitor statistics.
    3. The website uses the following types of cookies: session and persistent.
      1. "Session" cookies are temporary files that are stored on the user's end device until logging out (leaving the website). 
      2. “Persistent” cookies are stored on the user’s end device for the time specified in the cookie parameters or until they are deleted by the user.
    4. The Administrator uses its own cookies to better understand how users interact with the website's content. These cookies collect information about how users use the website, the type of website from which the user was redirected, and the number and duration of the user's visits to the website. This information does not record specific personal data about the user, but is used to compile website usage statistics.
    5. Users have the right to control the access of cookies to their computer by selecting them in their browser window. Detailed information about the possibilities and methods of managing cookies is available in the software (web browser) settings.
  6. FINAL PROVISIONS
    1. The Administrator applies technical and organizational measures to ensure the protection of processed personal data appropriate to the threats and categories of data subject to protection, and in particular protects data against disclosure to unauthorized persons, removal by an unauthorized person, processing in violation of applicable regulations, and alteration, loss, damage or destruction.
    2. The Administrator provides appropriate technical measures to prevent unauthorized persons from obtaining and modifying personal data sent electronically.
    3. In matters not covered by this Privacy Policy, the provisions of the GDPR and other relevant provisions of Polish law shall apply accordingly.
Zamknij
Koszyk (0)

No products in the cart. No products in the cart.