Privacy Policy (GDPR)
Effective: January 1, 2025
1. Data Controller
The data controller is Jan Třasák, IČO: 69501165, headquartered at Vítkova 186/28, 186 00 Prague 8, Czech Republic. Email: [email protected]
2. What Data We Process
- Identity data: first and last name
- Contact data: email address, phone number, delivery address
- Transaction data: orders, payment reference (card details processed by payment gateway only)
- Technical data: IP address, cookies, usage analytics
3. Legal Basis for Processing
- Contract performance (Art. 6(1)(b) GDPR): order processing, delivery, warranty claims
- Legal obligation (Art. 6(1)(c) GDPR): tax and accounting records
- Legitimate interest (Art. 6(1)(f) GDPR): direct marketing to existing customers
- Consent (Art. 6(1)(a) GDPR): analytics cookies, newsletter
4. Your Rights
You have the right to access, rectify, erase, restrict processing, data portability, and object to processing. To exercise your rights, contact us at [email protected]. You may also lodge a complaint with the Czech Data Protection Authority (UOOU) at www.uoou.cz.
5. Data Retention
- Order data: 5 years from end of contractual relationship
- Tax documents: 10 years (legal requirement)
- Marketing consent: until withdrawn