1. General Information
- This policy applies to the Website operating at the URL: systemsmart.pl
- The operator of the website and Administrator of personal data is: SystemSmart Łukasz Waśniewski, ul. Skrzydlata 3
- Operator’s contact email address: info@systemsmart.pl
- The Operator is the Controller of your personal data with respect to data provided voluntarily on the Website.
- The Website uses personal data for the following purposes:
- Conducting a newsletter
- Running online chat conversations
- Handling inquiries via form
- Fulfillment of ordered services
- Presenting the offer or information
- The Website collects information about users and their behavior in the following ways:
- Through data voluntarily entered into forms, which is then stored in the Operator’s systems.
- By saving cookies on the end user’s device.
2. Selected Data Protection Methods Used by the Operator
- Login and data entry areas are protected by SSL. Thus, personal and login data entered on the site are encrypted on the user’s device and can only be read on the destination server.
- Personal data stored in the database are encrypted so that only the Operator with the key can read them. This protects data in the event of database theft.
- User passwords are stored as hashes. Hash functions are one-way—cannot be reversed—meeting current standards for password storage.
- Two-factor authentication is used on the site, adding extra protection to login.
- The Operator regularly changes administrative passwords.
- For data protection, the Operator performs regular backups.
- A key part of data protection is regularly updating all software used by the Operator to process personal data, especially programming components.
3. Hosting
- The Website is hosted on servers of: another company
4. Your Rights and Additional Information on Data Usage
- In certain situations the Controller may transfer your personal data to other recipients if necessary to perform a contract or comply with legal obligations. These recipients include:
- the hosting company (as a data processor)
- mail service providers
- insurers
- online chat operators
- authorized employees and collaborators who use the data to operate the site
- marketing service providers on behalf of the Controller
- Your personal data are processed only as long as necessary to perform related activities under applicable laws (e.g. accounting). Marketing data are not processed longer than 3 years.
- You have the right to request from the Controller:
- access to your personal data,
- correction,
- deletion,
- restriction of processing,
- and data portability.
- You have the right to object to processing under section 3.3(c) (legitimate interests), including profiling, unless the Controller demonstrates compelling legal grounds for processing that override your interests, rights, and freedoms, especially for establishing, asserting, or defending legal claims.
- You may lodge a complaint with the President of the Personal Data Protection Office, ul. Stawki 2, 00-193 Warsaw.
- Providing personal data is voluntary but necessary for using the Website.
- The Controller may engage in automated decision-making, including profiling, to provide services and conduct direct marketing.
- Personal data are not transferred outside the EU.
5. Information in Forms
- The Website collects information voluntarily provided by the user, including personal data if supplied.
- The Website may record connection parameters (timestamp, IP address).
- The site may embed an identifier in the URL to link form data with the user’s email if the user supplies it.
- Form data are processed for the form’s specific purpose, e.g. service requests or sales contact. Each form clearly states its function.
6. Administrator Logs
- User behavior on the site may be logged for administrative purposes.
7. Key Marketing Techniques
- The Operator uses Google Analytics for traffic analysis. No personal data are shared—only anonymized information via cookies. Users can view and edit Google ad preferences at: https://www.google.com/ads/preferences/
- The Operator uses remarketing techniques to tailor ads based on site behavior. No personal data are shared with ad networks—only cookie-based signals.
- The Operator uses the Facebook Pixel. Facebook learns that a registered user visited the site, but the Operator does not share any additional personal data.
- The Operator uses heatmaps and session recordings, anonymized before reaching the service provider. Passwords and personal data are not recorded.
- The Operator may automate site interactions, e.g. sending an email after visiting a specific page, if you consent to marketing communications.
8. Cookies Information
- The Website uses cookies.
- Cookies are text files stored on the user’s device to facilitate website use. They typically include site name, storage duration, and a unique identifier.
- The Operator is the entity placing and accessing cookies on the user’s device.
- Cookies are used for:
- Maintaining user sessions (post-login) so users don’t have to re-enter credentials on each page;
- Marketing techniques described above;
- Two main types of cookies are used: session cookies (deleted after logout or browser close) and persistent cookies (stored until expiry or manual deletion).
- Most browsers accept cookies by default. Users can change settings to block or delete cookies—consult browser help for instructions. Blocking cookies may impair site functionality.
- Cookies may also be used by partners: Google, Facebook, Twitter.
9. Managing Cookies – Granting and Withdrawing Consent
- To reject cookies, adjust your browser settings, though blocking essential cookies may prevent site use.
- To manage cookies, select your browser and follow instructions:
Mobile devices:
This template privacy policy was generated free of charge for informational purposes based on current laws and industry practices as of 2018-08-14. Please review and adapt it to your site’s specifics or seek legal advice. We assume no liability for its use.