Privacy policy

1. GENERAL PROVISIONS

  1. The administrator of personal data collected via the wazdan.com website is Wazdan Solutions Sp. z o.o., with headquarters at Melchiora Wańkowicza 3, 40-384 Katowice, entered into the Register of Entrepreneurs of the National Court Register under KRS number 0000432056, NIP 1132858720, REGON 146308621 with share capital of PLN 5,000.00, e-mail address: hr@wazdan.com, hereinafter referred to as the “Administrator”, which is also the Service Provider.
  2. Personal data collected by the Administrator via the website is processed in accordance with Regulation (EU) 2016/679 of the European Parliament and the Council of Europe of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of data and repeal of Directive 95/46/EC (General Data Protection Regulation), hereinafter referred to as the GDPR and the Personal Data Protection Act of May 10, 2018.

2. TYPE OF PROCESSED PERSONAL DATA, PURPOSE AND SCOPE OF DATA COLLECTION

  1. PURPOSE OF PROCESSING AND LEGAL BASIS
    The Administrator processes personal data via

    • using the contact form by the user. Personal data is processed on the basis of art. 6 sec. 1 lit. f) of the GDPR as the Administrators’s legitimate interest.
  2. TYPE OF PROCESSED PERSONAL DATA.
    The Administrator processes the following categories of user’s personal data:

    • Name and surname,
    • Date of birth,
    • Address of residence,
    • E-mail address,
    • Phone number,
  3. PERSONAL DATA RETENTION PERIOD
    Users’ personal data is stored by the Administrator:

    • if the basis for data processing is the performance of the contract – as long as it is necessary to perform the contract, and after that time for a period corresponding to the period of limitation of claims. Unless a special provision provides otherwise, the limitation period is six years, and for claims for periodic benefits and claims related to running a business – three years.
    • if the basis for data processing is consent, as long as the consent is not revoked, and after revocation of consent for a period of time corresponding to the period of limitation of claims that may be raised by the Administrator and which may be raised against him. Unless a special provision provides otherwise, the limitation period is six years, and for claims for periodic benefits and claims related to running a business – three years.
  4. When using the website, additional information may be downloaded, in particular: the IP address assigned to the user’s computer or the external IP address of the Internet provider, domain name, browser type, access time, type of operating system.
  5. Other data that may be collected from the users includes navigation data, including information about links which they decide to click or other activities undertaken on the website. The legal basis for this type of activity is the Administrators’s legitimate interest (Article 6 (1) (f) of the GDPR), consisting of facilitating the use of services provided electronically and improving the functionality of these services.
  6. Providing personal data by the user is voluntary.
  7. Personal data will also be processed in an automated manner in the form of profiling, provided that the user agrees to it pursuant to art. 6 sec. 1 lit. a) of the GDPR. The consequence of profiling will be assigning a profile to a given person in order to make decisions about him or to analyze or predict his preferences, behaviors and attitudes.
  8. The Administrator takes special care to protect the interests of the users’ data, and in particular ensures that the data collected is:
    • processed in accordance with the law,
    • collected for specified, lawful purposes and not subjected to further processing inconsistent with these purposes,
    • factually correct and adequate in relation to the purposes for which they are processed and stored in a form that allows the identification of persons to whom they relate, no longer than it is necessary to achieve the purpose of processing.

3. SHARING OF PERSONAL DATA

  1.  Users’ personal data is transferred to service providers used by the Administrator when running the website. Service providers to whom personal data is transferred, depending on contractual arrangements and circumstances, are either subject to the Administrator’s instructions as to the purposes and methods of data processing (Processors) or independently define the purposes and methods of their processing (Administrators).
  2. Users’ personal data is stored only within the European Economic Area (EEA).

4. RIGHT TO CONTROL, ACCESS AND CORRECT OWN DATA

  1. The data subject has the right to access their personal data and the right to rectify, delete, limit processing, the right to transfer data, the right to object, the right to withdraw consent at any time without affecting the lawfulness of processing, which was made on the basis of consent before its withdrawal.
  2. The data subject has the right to access their personal data and the right to rectify, delete, limit processing, the right to transfer data, the right to object, the right to withdraw consent at any time without affecting the lawfulness of processing, which was made on the basis of consent before its withdrawal.
    • Access to data – art. 15 GDPR.
    • Data rectification – art. 16 GDPR.
    • Deletion of data (the right to be forgotten) – art. 17 GDPR.
    • Restriction of processing – art. 18 GDPR.
    • Data transfer – art. 20 GDPR.
    • Objection – Art. 21 GDPR
    • Withdrawal of consent – art. 7 sec. 3 GDPR.
  3. In order to exercise the rights referred to in point 2, you can send an appropriate e-mail to the following address: hr@wazdan.com.
  4. In the event of the user having the right resulting from the above, the Administrator fulfills the request or refuses to comply with it immediately, but not later than within one month after receiving it. However, if – due to the complexity of the request or the number of requests – the Administrator will not be able to meet the request within one month, it will meet them within the next two months, informing the user in advance within one month of receiving the request – about the intended extension of the deadline and its reasons.
  5. If it is found that the processing of personal data violates the provisions of the GDPR, the data subject has the right to lodge a complaint with the President of the Personal Data Protection Office.

5. “COOKIES”

  1. The Administrator’s website uses “cookies”.
  2.  The installation of “cookies” is necessary for the proper provision of services on the website. The “cookies” files contain information necessary for the proper functioning of the website, and also provide the opportunity to compile general statistics of website visits.
  3. The website uses the following types of “cookies”: session and permanent
    • Session cookies are temporary files that are stored on the user’s end device until logging out (leaving the page).
    • Permanent cookies are stored in the user’s end device for the time specified in the parameters of “cookies” or until they are deleted by the user.
  4. The Administrator uses own cookies in order to better understand how the user interacts with the content of the website. The files collect information on how the user uses the website, the type of page from which the user was redirected, and the number of visits and the duration of the user’s visit to the website. This information does not record specific personal data of the user, but is used to compile statistics on the use of the website.
  5. The user has the right to decide on the access of “cookies” to his computer by selecting them in the window of his browser. Detailed information on the possibilities and methods of handling cookies is available in the software (web browser) settings.

6. FINAL PROVISIONS

  1. The Administrator uses technical and organizational measures to ensure the protection of personal data being processed, appropriate to the threats and categories of data protected, and in particular, protects the data against unauthorized disclosure, removal by an unauthorized person, processing in violation of applicable laws and change, loss, damage or destruction.
  2. The Administrator provides appropriate technical measures to prevent the acquisition and modification by unauthorized persons of personal data sent electronically.
  3. In matters not covered by this Privacy Policy, the provisions of the GDPR and other relevant provisions of Polish law shall apply accordingly.