PRIVACY AND COOKIES POLICY
Hello!
If you’ve found yourself here, it’s a sure sign that you value your privacy. We completely understand this, which is why we’ve prepared this document outlining the principles of processing personal data and the use of cookies in connection with the use of the website https://www.dreweks.eu.
A formal note to start with – the website is managed by DREWEKS sp. z o.o., Białka 642, 34-220 Maków Podhalański. If you have any doubts related to the privacy policy, you can contact us at any time by sending a message to biuro@dreweks.eu.
Short Version – Key Information
We care about your privacy and your time. Therefore, we have prepared a short version of the key principles related to privacy protection.
- User Account: By creating a user account on the website, placing an order, subscribing to the newsletter, making a complaint, withdrawing from a contract, or simply contacting us, you provide us with your personal data. We guarantee that your data will remain confidential, secure, and will not be shared with any third parties without your explicit consent.
- Trusted Partners: We only entrust the processing of personal data to verified and trusted entities that provide services related to personal data processing.
- Analytical Tools: We use Google Analytics, which collects information about your visits to the site, such as pages viewed, time spent on the site, and transitions between subpages. For this purpose, cookies from Google LLC related to the Google Analytics service are used. You can decide whether we can also use marketing functions within Google Analytics through the cookie settings management tool.
- Remarketing Tools: We use Google AdWords remarketing tools, which involve the use of cookies from Google LLC related to the Google AdWords service. You can decide whether we can use Google AdWords for you through the cookie settings management tool.
- Social Media Features: We offer the possibility to use social media features, such as sharing content on social networks and subscribing to a social media profile. Using these features involves the use of cookies from social media administrators like Facebook, Instagram, YouTube, Twitter, Google+, LinkedIn.
- Internal Cookies: We use our own cookies to ensure the proper functioning of the website.
If the above information is not sufficient for you, below you will find further details.
Personal Data
The administrator of your personal data, within the meaning of data protection regulations, is DREWEKS sp. z o.o., Białka 642, 34-220 Maków Podhalański.
The purposes, legal bases, and the period of processing of personal data are indicated separately for each processing purpose (see the description of each purpose of data processing below).
Rights
The GDPR grants you the following potential rights related to the processing of your personal data:
- Right of access to personal data,
- Right to rectify personal data,
- Right to erase personal data,
- Right to restrict the processing of personal data,
- Right to object to the processing of personal data,
- Right to data portability,
- Right to withdraw consent to the processing of personal data if such consent has been given.
The rules related to the exercise of these rights are described in detail in Articles 16-21 of the GDPR. We encourage you to familiarize yourself with these regulations. We consider it necessary to explain that the rights listed above are not absolute and will not apply to all processing activities of your personal data. For your convenience, we have made efforts to indicate the rights you are entitled to within the description of each data processing operation.
You can also request information about what data we have about you and the purposes for which we process it at any time. Just send a message to biuro@dreweks.eu. We have made every effort to ensure that the information you are interested in is exhaustively presented in this privacy policy. The above email address can also be used for any questions related to the processing of your personal data.
Security
We guarantee the confidentiality of all personal data provided to us. We ensure the implementation of all security and data protection measures required by data protection regulations. Personal data is collected with due diligence and properly protected against access by unauthorized persons.
Purposes and Data Processing Activities
User Account
When creating a user account, you must provide your email address and define a password. Providing this information is voluntary but necessary to create an account. In your user profile, you can provide further information, such as your first and last name, billing address, and shipping address. Providing this data is entirely voluntary. You can have an account without providing this additional data. In such a situation, you will need to manually enter this data when placing an order.
The data entered in the user account is processed solely for the purpose of maintaining the account and providing you with the possibility of using it. Providing data in the user account is intended to facilitate placing orders in the store by automatically filling in the order form data.
The legal basis for processing your personal data within the user account is the performance of the account agreement, which you enter into based on the store's regulations – Art. 6(1)(b) GDPR.
Your data will be processed within the account as long as you maintain the user account. After deleting the account, your data will be removed from the database, except for data related to placed orders.
You can access your personal data processed within the account at any time by logging into your user account. After logging in, you can modify your data at any time or delete it, except for data related to placed orders. You can also decide to delete your account at any time.
Regarding the data collected in the user account, you are also entitled to the right to data portability, as described in Art. 20 GDPR.
Orders
When placing an order, you must provide the necessary data for its execution, such as your name, billing address, delivery address, email address, and phone number. Providing this data is voluntary but necessary to place an order.
The data provided to us in connection with an order is processed to execute the order (Art. 6(1)(b) GDPR), issue an invoice (Art. 6(1)(c) GDPR), include the invoice in our accounting records (Art. 6(1)(c) GDPR), and for archival and statistical purposes (Art. 6(1)(f) GDPR).
If you have a user account, your order will be visible within the order history of that account.
Each order is documented with an invoice or receipt.
Orders are also recorded in our internal database for archival and statistical purposes.
Data about orders will be processed for the time necessary to execute the order, and then until the expiration of the limitation period for claims under the concluded contract. Moreover, after this period, the data may still be processed by us for statistical purposes. Remember that we are required to keep invoices with your personal data for 5 years from the end of the tax year in which the tax obligation arose.
In the case of data about orders, you cannot rectify these data after the order has been executed. You also cannot object to data processing or demand the deletion of data until the expiration of the limitation period for claims under the concluded contract. Similarly, you cannot object to the processing or demand the deletion of data contained in invoices. After the expiration of the limitation period for claims under the concluded contract, however, you can object to the processing of your data for statistical purposes and request the deletion of your data from our database.
You also have the right to data portability concerning order data, as described in Art. 20 GDPR.
Newsletter
If you want to subscribe to the newsletter, you must provide us with your email address via the newsletter subscription form.
The data provided to us during the newsletter subscription is used to send you the newsletter, and the legal basis for their processing is your consent (Art. 6(1)(a) GDPR) given during the subscription.
The data will be processed for the duration of the newsletter, unless you unsubscribe from it, which will result in the deletion of your data from the database.
You can correct your data stored in the newsletter database at any time, as well as request their deletion by unsubscribing from the newsletter. You also have the right to data portability as described in Art. 20 GDPR.
Complaints and Withdrawal from the Contract
If you file a complaint or withdraw from a contract, you provide us with personal data contained in the complaint or withdrawal statement, including your name, address, phone number, email address, and bank account number.
The data provided to us in connection with a complaint or withdrawal from a contract is used to carry out the complaint procedure or withdrawal process (Art. 6(1)(c) GDPR).
The data will be processed for the time necessary to carry out the complaint procedure or withdrawal. Complaints and withdrawal statements may also be archived for statistical purposes.
In the case of data contained in complaints and withdrawal statements, you cannot rectify these data. You also cannot object to data processing or demand the deletion of data until the expiration of the limitation period for claims under the concluded contract. However, after the expiration of the limitation period for claims under the concluded contract, you can object to the processing of your data for statistical purposes and request the deletion of your data from our database.
Email Contact
When contacting us via email, including sending an inquiry via the contact form, you naturally provide us with your email address as the sender's address. Additionally, you may include other personal data in the message content.
In this case, your data is processed to contact you, and the legal basis for processing is Art. 6(1)(a) GDPR, i.e., your consent resulting from initiating contact with us. The legal basis for processing after the contact is justified is the legitimate purpose of archiving correspondence for internal purposes (Art. 6(1)(c) GDPR).
The content of correspondence may be archived, and we cannot unequivocally determine when it will be deleted. You have the right to request the history of correspondence you had with us (if it was archived) and request its deletion unless its archiving is justified due to our overriding interests, such as defense against potential claims on your part.
Cookies and Other Tracking Technologies
Our website, like almost all other websites, uses cookies to provide you with the best experience when using it.
Cookies are small text information stored on your end device (e.g., computer, tablet, smartphone) that can be read by our IT system.
Cookies can be divided into own cookies and third-party cookies.
More details can be found below.
Consent to Cookies
During your first visit to the site, you are shown information about the use of cookies along with a request for consent to the use of cookies. With a special tool, you can manage cookie settings from the site. Additionally, you can always change your cookie settings from your browser or delete cookies altogether. However, remember that disabling cookies may cause difficulties in using the website and many other websites that use cookies.
Own Cookies
We use own cookies to ensure the proper functioning of the website, in particular:
- "necessary" cookies, enabling the use of services available on the website,
- "performance" cookies, enabling the collection of information on how the website's pages are used,
- cookies used for security,
- "functional" cookies, enabling the "remembering" of the settings chosen by the user and personalization of the user interface.
Third-Party Cookies
Our website, like most modern websites, uses features provided by third parties, which involves using third-party cookies. The use of these types of cookies is described below.
Analysis and Statistics
We use cookies to track website statistics, such as the number of visitors, the type of operating system and browser used to browse the site, the time spent on the site, visited subpages, etc. In this regard, we use Google Analytics, which involves using cookies from Google LLC. Through the cookie settings management tool, you can decide whether we will also use marketing functions within Google Analytics.
Marketing
We use marketing tools such as Facebook Pixel to target ads to you. This involves using cookies from Facebook. Through the cookie settings, you can decide whether you consent to the use of Facebook Pixel in your case.
We use Google AdWords remarketing tools, which involve using cookies from Google LLC related to the Google AdWords service. Through the cookie settings management tool, you can decide whether we will use Google AdWords in your case.
Social Media Tools
We provide the possibility to use social media features, such as sharing content on social networks and subscribing to a social media profile. Using these features involves using cookies from social media administrators like Facebook, Instagram, YouTube, Twitter, Google+, LinkedIn.
We embed video recordings from YouTube on the site. When you play such recordings, cookies from Google LLC related to the YouTube service are used.
Server Logs
Using the site involves sending queries to the server on which the site is stored. Each query directed to the server is saved in the server logs.
Logs include, among others, your IP address, server date and time, information about the browser and operating system you are using. Logs are saved and stored on the server.
The data stored in server logs is not associated with specific individuals using the site and is not used by us to identify you.
Server logs are only auxiliary material used to administer the website, and their content is not disclosed to anyone except those authorized to administer the server.