Privacy Policy

Data Controller

The operator and controller of your personal data is Profilpol, conducting business at: ul. Leśna 16, 46-300 Olesno. You can contact us by phone at: +48 883 335 994 or by email at: biuro@profilpolsystem.pl. Personal data collected by the Controller is processed in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016

  • on the protection of natural persons with regard to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC (hereinafter referred to as GDPR), the Act of 10 May 2018 on the Protection of Personal Data (Journal of Laws of 2018, item 1000), the Act of 18 July 2002 on the Provision of Electronic Services (consolidated text: Journal of Laws of 2019, item 123) and the Act of 16 July 2004 – Telecommunications Law (consolidated text: Journal of Laws of 2018, item 1954).

Information Collection

The Service performs functions of obtaining information about Users and their behavior in the following way:

  • through information voluntarily entered in the contact form,
  • by storing cookies on Users’ end devices.

The Service may also store information about connection parameters such as IP address, proxy server, session name, device, operating system and browser of the User, location and names of internet service providers or mobile service providers for technical purposes related to server administration, for the performance of a contract to which the data subject is a party (pursuant to Article 6(1)(b) GDPR), and for generating aggregated and statistical information (e.g., about the region from which the connection originates) on the basis of which the User cannot be identified, as well as for security purposes.

Data Processing

As part of submitting data through the form for the purpose of completing the purchasing process, the User receives the information referred to in Article 13(1) and (2) GDPR and gives consent to the collection and processing of personal data by the Controller in the manner and for the purposes described in the relevant consent clauses and this document. The User is responsible for providing false personal data. The Controller does not process Users’ personal data using automated decision-making tools, including profiling.

Purposes of Data Processing

The Controller processes personal data for the purpose of contacting a person interested in services. Personal data processed for other purposes each time require consent given through an active action of the User after prior information about the purpose, duration and scope of processing. In pursuing a legally justified interest, in particular direct marketing of its own products or services, with respect for your rights and freedoms, the Controller may process data within the scope indicated in the form when submitting an inquiry:

  • for the duration of correspondence initiated by the inquiry sent by the User via the form – until its completion;
  • for the period corresponding to the lifecycle of cookies stored on the User’s device – in the case of processing personal data of a User who only browses the content of the Service. The Controller also stores Users’ personal data when it is necessary to fulfill its legal obligations, resolve disputes, enforce the User’s obligations arising from concluded agreements, maintain security and prevent fraud and abuse – until the expiry of the limitation period for claims against the User.

Scope of Processed Data

Processing of Users’ data takes place within the scope of:

  • conducting direct marketing (the scope of data depends on information voluntarily provided by the User and data regarding User activity recorded and stored via cookies) – pursuant to Article 6(1)(f) GDPR, i.e., due to the fact that processing is necessary for the purposes of legitimate interests pursued by the Controller or a third party;
  • sending commercial information by electronic means in accordance with Article 10(2) of the Act on the Provision of Electronic Services of 18 July 2002 (the scope of data voluntarily provided by the User) – on the basis of separate consent;
  • using telecommunications terminal equipment and automatic calling systems for direct marketing purposes in accordance with Article 172 of the Act of 16 July 2004 Telecommunications Law (the scope of data voluntarily provided by the User) – on the basis of separate consent;
  • fulfilling legal obligations incumbent on the Controller in connection with conducting business activity (the scope of data voluntarily provided by the User) – pursuant to Article 6(1)(c) GDPR, i.e., due to the fact that processing is necessary to comply with a legal obligation to which the Controller is subject.

Rights

Each User may request:

  • access to their personal data,
  • rectification of personal data,
  • restriction of personal data processing,
  • erasure of personal data,
  • data portability,
  • withdrawal of consent at any time, whereby withdrawal of consent does not affect the lawfulness of processing carried out on the basis of consent before its withdrawal,
  • lodging a complaint with the supervisory authority, i.e., the President of the Personal Data Protection Office.

In addition, each User may object to the processing of personal data. To exercise the above rights, the User should contact the Controller by sending an email to: biuro@piekarnia-lubowski.pl. The Controller fulfills the User’s request promptly within the scope provided for by applicable law. Erasure, restriction, portability and objection to data processing will affect the services provided and may result in the inability to properly perform these services. The Controller ensures that the User’s data is processed solely for the purpose of contacting a person interested in the offer or for other purposes based on individually granted consents. The Controller considers the submitted request promptly, no later than within 30 days from its receipt. However, if – due to the complex nature of the request or the number of requests – the Controller is unable to consider the request within this period, it will consider it within the next two months, informing the User in advance of the intended extension. The Controller informs each recipient to whom personal data has been disclosed about rectification, erasure or restriction of processing carried out in accordance with the User’s request, unless this proves impossible or requires disproportionate effort.

Cooperating Entities

Depending on the processes related to the type of service provided, the Controller may transfer data to entities necessary for the proper implementation of the process. In the case of customer service (inquiries and claims), data is made available to entities providing support in the indicated scope.

Entrustment of Processing

For the proper functioning of the website, it is necessary for the Controller to use the services of external entities. The Controller uses only such processors that provide sufficient guarantees of implementing appropriate technical and organizational measures so that processing meets the requirements of the Regulation and protects the rights of data subjects. The Controller entrusts the processing of personal data to the following entities: service providers supplying the Controller with technical, IT and organizational solutions (in particular providers of computer software, email and hosting providers) – the Controller makes collected personal data of the User available to a selected provider acting on its behalf only in cases and to the extent necessary to achieve the given purpose of data processing consistent with this privacy policy. All entities to whom the Controller entrusts the processing of personal data guarantee the application of appropriate data protection and security measures required by law. The Controller may be obliged to provide information collected by the Website to authorized authorities on the basis of lawful requests to the extent resulting from the request.

Automated Profiling

We inform you that processed personal data is not subject to automated profiling.

Protection of Personal Data

In order to minimize the risks associated with unauthorized access to personal data sets, we make every effort to ensure an appropriate level of privacy and security of your data. The tools we use have been selected to ensure proper protection of personal data processing in accordance with legal requirements. The Controller exercises due diligence in selecting and applying appropriate technical and organizational measures ensuring protection of processed data appropriate to the risks and categories of data protected, in particular protecting data against disclosure to unauthorized persons, disclosure, loss and destruction, unauthorized modification, as well as against processing in violation of applicable law.

Changes to the Privacy Policy

  • The Controller has the right to amend this document, of which the User will be notified in a manner enabling them to become acquainted with the changes before they enter into force, e.g., by posting appropriate information on the main page of the Service, and in the case of significant changes also by sending a notification to the email address provided by the User.
  • If the User has objections to the introduced changes, they may request deletion of their personal data by the Controller and cease using the Service. Continued use of the Service after publication or sending notification of changes to this document shall be considered as consent to the collection, use and disclosure of the User’s personal data in accordance with the updated content of the document.
  • If the User has objections to the introduced changes, they may request deletion of their personal data by the Controller and cease using the Service. Continued use of the Service after publication or sending notification of changes to this document shall be considered as consent to the collection, use and disclosure of the User’s personal data in accordance with the updated content of the document.

Cookies and Their Use on the Website

Cookies are small text files sent by a web server and stored on the user’s side. They may include data about activities such as clicking specific links or pages, logging into a user profile or reading page content. Our service uses basic cookies to personalize and facilitate the use of the website by its users, e.g., by saving information about the session, user login, preferences set by the user or website language. Our website also uses cookies installed by Google Analytics, which enable us to better understand user preferences. We use a set of cookies (such as “utma” or “utmz”) that enable anonymous collection of information and transmission of data about trends without identifying individual users. All cookies on our website are used with the user’s consent. The User may give consent to the use of cookies through the browser settings used when browsing our service. In the same way, they may refuse such consent. These settings may be changed at any time by blocking the use of cookies and deleting previously installed cookies. Detailed instructions on how to specify storage conditions are available on the website of the software manufacturer or developer. How to disable saving cookies? Cookies are usually stored on the end device by default. You can change your browser settings at any time, blocking automatic saving of cookies. For this purpose, use the help panel of the browser you are using, e.g.:

  • Mozilla Firefox
  • Safari
  • Chrome
  • Internet Explorer

Please note that some types of cookies are necessary for the proper functioning of websites. Disabling cookies may cause some website functions to stop working. For what purpose do we use cookies on www.piekarnia-lubowski.pl? The purpose of using cookies is:

  • displaying a website tailored to the individual needs and preferences of the User,
  • increasing the usability of the website for the User’s convenience,
  • ensuring proper functioning and security of website use,
  • storing session data, obtaining information about User behavior on the website, conducting analyses and statistics,
  • transferring collected data to contractors cooperating with the Controller, including for advertising and marketing purposes. What types of cookies do we use on the website? We use the following cookies:
  • session cookies, which are temporary files and remain on the User’s device only until logging out of the website/closing the browser;
  • persistent cookies, which are stored for a longer, specified period or until manually deleted by the User;
  • cookies enabling the use of services available within the website;
  • cookies used to ensure website security;
  • cookies enabling the collection of information about how the website is used;
  • cookies enabling the “remembering” of settings selected by the User;