Privacy Policy

1. General Information

This policy applies to the website operating at the URL: fabrykalezakow.pl.
The operator of the website and the Data Controller is:
SCHODY Agnieszka Karoń, 42-231 Stary Broniszew, ul. Tartakowa 10, NIP: 5732404604.
Operator’s contact email address: kontakt@fabrykalezakow.pl.

The Operator is the Controller of your personal data with regard to data voluntarily provided on the website.
The website uses personal data for the following purposes:

  • Operation of the comment system

  • Handling inquiries via contact forms

  • Preparation, packaging, and shipment of goods

  • Execution of ordered services

The website collects information about users and their behavior in the following ways:

  • Through data voluntarily entered in forms, which are then entered into the Operator’s systems

  • Through cookies saved on end-user devices (“cookies”)


2. Selected Methods of Data Protection Used by the Operator

  • Login areas and personal data entry points are protected at the transmission layer (SSL certificate). This ensures that personal and login data entered on the website are encrypted on the user’s computer and can only be read on the destination server.

  • User passwords are stored in a hashed form. The hashing function is one-way—its operation cannot be reversed, which is a modern standard in password storage.

  • A key element of data protection is the regular updating of all software used by the Operator for personal data processing, particularly programming components.


3. Hosting

The website is hosted (technically maintained) on servers of the provider: JDM.pl


4. Your Rights and Additional Information on How Data is Used

In certain situations, the Administrator has the right to transfer your personal data to other recipients if necessary to perform the contract concluded with you or fulfill obligations incumbent upon the Administrator. This applies to the following groups of recipients:

  • Hosting provider (based on data processing agreement)

  • Courier companies

  • Postal operators

  • Payment operators (Stripe)

  • BaseLinker tool for invoicing

  • Comment system operators

  • Authorized employees and associates using the data to operate the site

  • Companies providing marketing services to the Administrator

Your personal data is processed by the Administrator no longer than necessary to perform related activities specified by separate regulations (e.g., accounting). For marketing data, the data will not be processed for more than 3 years.

You have the right to request from the Administrator:

  • Access to your personal data

  • Rectification

  • Erasure

  • Restriction of processing

  • Data portability

You have the right to object to processing described in point 3.3(c) regarding the processing of personal data for legitimate interests pursued by the Administrator, including profiling. However, the right to object cannot be exercised if there are legitimate grounds for processing that override your interests, rights, and freedoms, especially in establishing, pursuing, or defending claims.

You have the right to lodge a complaint with the President of the Personal Data Protection Office, ul. Stawki 2, 00-193 Warsaw, Poland.

Providing personal data is voluntary but necessary to use the website.

Automated decision-making, including profiling, may be carried out with regard to you for the purpose of performing services under the contract and for the Administrator’s direct marketing.

Personal data may be transferred to third countries, meaning outside the European Union, in accordance with data protection laws.


5. Information in Forms

The website collects data voluntarily provided by the user, including personal data if entered.
The website may store information about connection parameters (time stamp, IP address).
In some cases, the site may save information facilitating the linking of form data with the user’s email address filling out the form. In such cases, the user’s email address appears in the URL of the page containing the form.
Data provided in the form is processed for purposes arising from the function of the specific form, such as handling service requests, business contact, service registration, etc. Each time, the context and description of the form clearly indicate its purpose.


6. Administrator Logs

Information about user behavior on the site may be subject to logging. These data are used for site administration.


7. Important Marketing Techniques

  • The Operator uses statistical analysis of site traffic via Google Analytics (Google Inc., USA). The Operator does not transmit personal data to Google, only anonymized information. This service uses cookies stored on the user’s end device. Information about user preferences collected by Google’s advertising network can be viewed and edited using this tool:
    https://www.google.com/ads/preferences/

  • The Operator uses remarketing techniques to tailor advertising messages to user behavior on the website. This may give the impression that the user’s personal data is used for tracking, but in reality, no personal data is transferred from the Operator to advertising providers. The technological prerequisite is enabled cookie support.

  • The Operator uses Facebook Pixel. This technology allows Facebook (Facebook Inc., USA) to know that a registered user is using the Website. This is based on data for which Facebook itself is the controller. The Operator does not transmit any additional personal data to Facebook. This service also uses cookies on the user’s end device.

  • The Operator uses a tool to monitor user behavior by generating heatmaps and session recordings. These are anonymized before being sent to the tool provider, who cannot identify the individuals. Passwords and other personal data are not recorded.

  • The Operator uses automation tools, e.g., sending an email to a user who visited a specific subpage, provided that the user has consented to receive marketing emails from the Operator.


8. Cookie Information

The website uses cookies.
Cookies are IT data, especially text files, stored on the User’s end device and used for interacting with the website. Cookies usually include the website name, storage time, and a unique number.

Cookies are placed and accessed by the Website Operator.

Cookies are used for the following purposes:

  • Maintaining a session after login, so that the user does not have to enter their login and password on every subpage

  • Achieving the purposes described in “Important Marketing Techniques”

  • Processing your personal data to handle and fulfill orders, provide customer service, and manage payments

The Website uses two main types of cookies: “session” cookies and “persistent” cookies.
Session cookies are temporary and stored on the user’s device until logout, leaving the site, or closing the browser.
Persistent cookies are stored on the user’s device for the time specified in the cookie parameters or until deleted by the user.

Web browsers typically allow cookies to be stored by default. Users can change their settings. Browsers allow for cookie deletion or automatic blocking. More detailed information can be found in the browser’s help or documentation.

Limiting cookies may affect some functionalities on the Website.

Cookies placed on the User’s device may also be used by the following third parties cooperating with the Operator:
Google (Google Inc., USA), Facebook (Facebook Inc., USA), Twitter (Twitter Inc., USA).


9. Cookie Management – How to Give and Withdraw Consent in Practice?

If you do not want to receive cookies, you can change your browser settings. Please note: disabling cookies necessary for authentication, security, and user preference storage may hinder or, in extreme cases, prevent the use of websites.

To manage cookie settings, choose your browser from the list below and follow the instructions:

    • mobile: