2. Data Controller
The Data Controller is SPORTIS S.A. with its registered office in Bojano (84-207 Koleczkowo), ul. na Dambnik 22, entered into the register of entrepreneurs of the National Court Register kept by Regional Court Gdańsk-Północ in Gdańsk, 8th Commercial Division of the National Court Register under KRS no. 0000067475, share capital PLN 2,058,170, NIP: 588-18-40-279, REGON: 191726929, hereinafter SPORTIS S.A.
3. Legal basis for the collection of personal data and rules for data collection
Personal data collected by SPORTIS S.A. are processed in accordance with the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation), known also as GDPR.
The rules we use when collecting personal data:
4. Rights of the Users
We hereby inform that according to the applicable law:
You have the right to access the contents of data you provided and to correct them, remove them or limit their processing, as well as the right to object, to request to stop data processing and the right to data portability, as well as the right to withdraw the consent any time and the right to lodge a complaint to the supervisory authority in this scope that is National Data Protection Authority President.
Any requests concerning personal data processing, as well as those concerning the User’s rights can be sent via email to firstname.lastname@example.org or by mail to the following address: SPORTIS S.A., ul. Na Dambnik 22, Bojano, 84-207 Koleczkowo.
The filed request shall be dealt without undue delay, no later than within one month from its reception. This deadline can be extended if the request turns out to be complex or due to high number of requests by another two months about which we will inform the User.
5. Data collection
We collect personal data of Users when they fill in contact form on our website, when they contact us via e-mail or by phone, when they send us questions or messages via our social media (we can then store information the User’s provided voluntarily by writing or contacting us).
The provision of data is voluntary, but is necessary to send correspondence, place an order and/or enter into an agreement. Not providing us with these data will make it impossible to carry out these services.
6. Personal data security
The security of all data held by us is our top priority. We are fully committed to ensure safety for the processed personal data, and determined to properly secure the IT system used for personal data processing. We make every effort to protect the interests of data subjects, in particular we ensure that the data: are processed in accordance with the law, collected for specific purposes, correct and adequate for the purposes for which they are collected, stored in a manner allowing for data subject identification and we ensure that the lawfulness, purpose, adequacy, correctness, time limit, integrity and confidentiality of data as well as accountability are maintained. The provided personal data are used for the purposes specified in this document or for other purposes always defined the moment they are transferred to SPORTIS S.A.
7. What type of data we process?
Identification data (for example name and surname), contact data (for example telephone number, email address, residence address), data concerning our products, localization data, data concerning Customer’s orders, complaints, and in case of business entities also business name and tax identification number.
8. Data processing
When processing personal data of our Users we ensure that the processing is carried out safely, reliably, according to the provisions of law and is transparent for the User.
The main basis for processing of User’s personal data by SPORTIS S.A. can be:
1. Consent – for one or several purposes (for example when sending commercial or marketing information or when providing marketing information). The consent may be granted as a result of active operation of the User (for example providing data and sending the form) or by way of checking a checkbox.
2. Executing the agreement or activities leading to agreement conclusion.
3. Legitimate interests, except for a situation when the interests of Users or their basic rights have priority over these interests.
4. In some cases the basis for data processing may also be the protection of data subject’s interests or legal obligation to fulfill the legal obligation of the Data Controller.
Personal data provided to us via our website are encrypted and protected with the use of SSL certificate.
9. Consent and consent withdrawal
In case the personal data are processed on the basis of a consent, natural persons can withdraw their consent any time. In general, we do not process personal data on the basis of a consent (usually we act on the basis of other legal bases). To withdraw a consent for data processing, the User must send an email to the following address email@example.com or a written request to the following address: SPORTIS S.A., ul. Na Dambnik 22, Bojano, 84-207 Koleczkowo.
10. Data storage
Period of data storage is defined in accordance with the applicable law. The user has the right to obtain information on the approximate time of storage of their personal data.
11. Data transfer
In accordance with the User’s consent, depending on the purpose behind data processing and the contents of the consent for processing and sharing, User’s personal data can be shared with entities listed in the consent.
Thanks to the support of third parties, we can provide our services as well as ensure, maintain and manage internal IT systems.
These include entities providing courier services, transport, hosting and website management services, backup creation, security and data storage services.
User’s personal data can be processed by third parties only if such an entity agreed to ensure proper technical and organisational measures that guarantee safety of data processing and to keep these data confidential. Each and every employee of SPORTIS S.A. having access to personal data is properly authorized and is obliged to maintain confidentiality.
12. Changes to this Policy
Review date: 15/05/2018