Privacy and Cookies Policy for www.ebimarketing.online
Personal Data
The administrator of your personal data, within the meaning of data protection regulations, is EBI – MARKETING Natalia Kostrzewa, NIP: 5532464062, REGON: 243695206, Bielsko-Biała, ul. Gościnna 92 a, 43-316 (hereinafter referred to as the „Data Controller” or „Administrator”).
Legal Basis for Data Processing:
- Regulation (EU) 2016/679 of the European Parliament and of the Council of April 27, 2016, on the protection of natural persons concerning the processing of personal data and on the free movement of such data, repealing Directive 95/46/EC (General Data Protection Regulation – GDPR).
- The Personal Data Protection Act of May 10, 2018 (Journal of Laws 2018, item 1000).
The purposes, legal bases, and retention periods for processing personal data are specified separately for each processing purpose (see descriptions below).
Your Rights Under GDPR:
The GDPR grants you the following rights regarding your personal data processing:
- Right to access personal data
- Right to rectify personal data
- Right to delete personal data
- Right to restrict processing of personal data
- Right to object to data processing
- Right to data portability
- Right to lodge a complaint with a supervisory authority
- Right to withdraw consent for data processing if you have given one
If you believe we have violated data protection laws in processing your personal data, you have the right to lodge a complaint with the supervisory authority (President of the Personal Data Protection Office).
You can also contact us at contact@ebimarketing.online to request information about what data we hold about you and how we process it. We have made every effort to present all relevant information in this Privacy Policy. If you have any further questions, feel free to reach out.
Security
We guarantee the confidentiality of all personal data provided to us. We ensure that all security measures required by data protection laws are implemented. Personal data is collected with due care and adequately protected against unauthorized access.
List of Data Processing Entities
We entrust data processing to the following entities:
- Hosting service provider – for storing personal data on a server.
- Accounting software provider – for invoicing purposes.
- Accounting service provider – for financial and bookkeeping services.
- IT support service provider – for technical support related to data access.
- Newsletter system provider – for sending marketing emails.
All entities entrusted with personal data processing ensure adequate security measures as required by law.
Purposes and Processing Activities
User Account
When creating a user account, you must provide your email address and define a password. Additional details (name, billing address, shipping address) are optional. These data facilitate order processing by automatically filling out order forms.
- Legal basis: Performance of a contract for maintaining the user account (Article 6(1)(b) GDPR).
- Retention period: As long as the account is active. Upon deletion, only order-related data will be retained.
You can modify or delete your data anytime (except for order history). You also have the right to data portability.
Orders
When placing an order, you must provide personal data necessary for order fulfillment, including:
- Name and surname
- Billing address
- Shipping address
- Email address
- Phone number
- Legal basis: Order fulfillment (Article 6(1)(b) GDPR), invoicing (Article 6(1)(c) GDPR), accounting compliance (Article 6(1)(c) GDPR), statistical and archival purposes (Article 6(1)(f) GDPR).
- Retention period: Until claims from the contract expire. Invoices must be stored for five years due to tax regulations.
Once an order is completed, you cannot modify or delete related data until the legal retention period expires.
Complaints & Contract Withdrawal
If you submit a complaint or withdraw from a contract, you provide:
- Name and surname
- Address
- Phone number
- Email address
- Bank account number
- Legal basis: Legal obligations (Article 6(1)(c) GDPR).
- Retention period: Necessary for complaint resolution and legal compliance.
Data from complaints and contract withdrawals cannot be modified or deleted before the expiration of the legal retention period.
Email Contact
When contacting us via email or the contact form, you provide your email address and any other data you include in the message.
- Legal basis: Your consent (Article 6(1)(a) GDPR) and legitimate interest in archiving correspondence (Article 6(1)(f) GDPR).
- Retention period: Indefinite for internal records unless deletion is requested.
Cookies & Tracking Technologies
Our website uses cookies to provide the best user experience.
Types of Cookies:
- First-party cookies – Essential for site functionality and marketing activities.
- Third-party cookies – Used for analytics and advertising.
Cookie Consent
Upon your first visit, you will be asked to accept cookies. You can manage cookie settings at any time via browser settings. Disabling cookies may affect website functionality.
Analytics & Marketing Cookies
- Google Analytics – Tracks website statistics.
- Facebook Pixel – Used for targeted ads.
- Google Ads Remarketing – Helps in showing relevant ads.
You can control these cookies via your browser or our site’s settings.
Server Logs
When using the website, server logs store:
- Your IP address
- Date and time of access
- Browser and operating system details
These logs are used for administrative purposes and are not linked to individual users.
This Privacy and Cookies Policy is subject to updates, and changes will be reflected on this page.
For any questions, please contact us at contact@ebimarketing.online.