We respect your privacy. We strive to protect your Personal Data and give you full control over it, which is why our Privacy Policy is a set of simple and transparent rules.
This Privacy Policy sets out the rules for processing Personal Data in connection with the use of our Website. You will learn from it what Personal Data we process, learn the purposes and methods of processing, the principles of personal data security and your rights related to their processing.
By using the Website, you consent to the processing of your Personal Data as described in this Privacy Policy. It is an integral part of the Terms of Service.
Table of Contents
- Privacy Policy summary
- Definitions used in this Privacy Policy
- Data protection principles we follow
- Personal Data Controller – contact information
- Types of data processed, purposes and legal basis
- Who do we share your Personal Data with
- What are your rights regarding your Personal Data?
- Cookies
- Other useful information
- Updates to our Privacy Policy
1. Privacy Policy summary
Below we have provided for you a brief summary of how we process Personal Data.
Who is the collector of Personal Data? We are, NESTEC technologie Marcin Baranski, with headquarters in Koszalin, 24 Franciszkanska Street, Koszalin, 75-254, Poland, European Union, EU VAT PL6692303517. We process Personal Data of our Customers and Users of our Website.
Why do we process Personal Data? We process Personal Data for various reasons. For example, to prepare an answer to your inquiry, to enable you to use all functionalities of the Website, or when you give us permission to receive our newsletter.
Who do we share your personal data with? We provide your Personal Data only to third parties that provide us with assistance or support as processors or separate administrators, e.g. providers providing hosting services or systems providing traffic analysis on the Website.
Your rights. You have the right to access, correct or delete your Personal Data and submit a complaint to the supervisory authority related to its processing. In some cases, you also have other rights, for example, to withdraw consent, object to the use of your Personal Data, or to transfer it, as explained in detail below.
Remember that you are subject to the entire Privacy Policy. We encourage you to read its content.
2. Definitions
Below are the basic concepts that will help you better understand this Privacy Policy:
Personal Data – Information relating to an identified or identifiable natural person. In other words, our Customers’ data and Users’ data processed in connection with the use of the Website and/or placing orders.
Customer – A person buying our products and/or using our services to conduct their business or professional activities, regardless of the legal form of such activities.
Nestec (we) – NESTEC technologie Marcin Baranski, with headquarters in Koszalin, 24 Franciszkanska Street, Koszalin, 75-254, Poland, European Union, EU VAT PL6692303517.
Processing – Operations performed on Personal Data such as collecting, recording, storing, developing, changing, sharing, making backup copies and other necessary to use the Website.
GDPR – Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Protection Regulation data).
Website – Web pages belonging to Nestec, located in particular at www.nestec.pl.
User – A person using the Website.
3. Data protection principles
We process Personal Data in accordance with the requirements of the GDPR. In particular, we act according to the following data protection principles:
- Processing is lawful, fair and transparent. Our processing activities have lawful grounds. We always consider your rights before processing Personal Data.
- Processing is limited to the purpose. Our processing activities fit the purpose for which Personal Data was gathered.
- Processing takes place with a minimum amount of data. We gather and process only the minimum amount of Personal Data required for a given purpose.
- Processing is limited by time. We will not store your personal data for longer than necessary.
- We strive to ensure the accuracy, integrity and confidentiality of data.
4. Personal Data Controller
The Website owner and also the controller of personal data is Nestec. We process the Personal Data of our Customers and Users of our Website.
Our address details: NESTEC technologie Marcin Baranski, 24 Franciszkanska Street, Koszalin, 75-254, Poland, European Union.
To facilitate your contact with us in order to exercise your rights, express or withdraw consents and any other issues related to the protection of personal data, we have created a special email address: privacy@nestec.pl.
5. Types of data processed, purposes and legal basis
The rules of processing your Personal Data differ depending on whether you are our Customer or what functionalities of the Website you use. The purposes and scope of the Personal Data we process are different. Below we present information about the Data processed in relation to the individual purposes for which we need them.
5.1. In order to answer inquiries
When you contact us, we process your Personal Data to answer your queries. We process the following Data:
- Name and surname,
- Email adress,
- Phone number,
- Data contained in the inquiry and any documents attached to it.
Legal basis: the legitimate interest pursued by the controller (art. 6 par.1 letter f GDPR) in answering your queries. We assume that the processing of Data in this situation is beneficial to you, because it allows us to properly help and answer your questions.
5.2. To handle purchase orders
When you place an order, we process your Personal Data to perform the sales contract. We process the following Data:
- Name and surname,
- Email adress,
- Phone number,
- Company name, address, tax identification number,
- Other Data provided by you in the order and any documents attached to it.
Legal basis: Necessity to perform the sales contract (art. 6 par.1 letter b GDPR).
5.3. In order to send marketing messages
When you subscribe to our newsletter, web push notifications, or consent to marketing communications, we process your Personal Data in order to send messages to you:
- Email address (newsletter, email messages),
- Browser ID (web push),
- Phone number (if you wish to receive information by phone).
Legal basis: Your voluntary consent (art. 6 par.1 letter a GDPR).
5.4. When you comment on the blog or sign up for an event
When you post a comment on the blog on our Website, or use a form on the Website to subscribe to a webinar, course, or other type of event organized by us or with our participation, we process your Personal Data in order to post your comment or registration for the event.
We process the following Data:
- Email adress,
- Name and surname,
- Other Data contained in the form only if it is necessary to organize an event.
Legal basis: Your voluntary consent (art. 6 par.1 letter a GDPR).
If you use the Gravatar service your public avatar (picture), which you have connected to your email address, will be displayed next to your blog comment. If you do not want it to be displayed, change the settings of your Gravatar service.
5.5. For analytical purposes
In order to keep statistics on the use of the Website, improve and facilitate the use of the Website, as well as to ensure IT security, we process the following Data:
- Information concerning activity within the Website, in particular: your IP address, type of browser, access time, type of operating system.
Legal basis: the legitimate interest pursued by the controller (art. 6 par.1 letter f GDPR). We believe that we have a legitimate interest in analyzing the operation of the Website in order to better understand how Customers and Users use it, or what problems they encounter. We recognize that the processing of this Data is also beneficial for Customers and Users, because our goal is to improve the operation of the Website and ensure IT security.
5.6. In order to survey the satisfaction of Customers and Users
In order to conduct a survey of the level of satisfaction with products, services or the Website, in order to be able to improve them and facilitate their use, we process the following Data:
- Data provided in the order or inquiry,
- Answers to our questions contained in surveys and forms used in the study.
Legal basis: the legitimate interest pursued by the controller (art. 6 par.1 letter f GDPR) consisting in testing whether our clients and users are satisfied and which could help improve the quality of our products, services or the Website itself.
Remember, you do not have to participate in such a study. However we will be extremely grateful if you help there develop products and services so that they serve you best.
5.7. To exercise legal claims
In order to establish, exercise, or defend legal claims, we process the following Data:
- Data regarding the use of the product, service or Website to the extent necessary to establish the claim,
- Other data necessary to prove the existence of a claim, including the extent of damage suffered.
Legal basis: the legitimate interest pursued by the controller (art. 6 par.1 letter f GDPR) consisting in the estabilishing and exercising of legal claims and defense against legal claims in proceedings before courts and other authorities. Please, be aware that Nestec is subject to Polish and European Union law.
6. Who do we share your Personal Data with
Your Personal Data may be transferred to our service providers that we use to operate the Website. Service providers to whom Personal Data are transferred, depending on contractual arrangements and circumstances, are either subject to our instructions as to the purposes and methods of processing this data (processors) or define the purposes and methods of their processing (other controllers).
6.1. Processors
We use suppliers who process Personal Data only on our instructions. They provide for us e.g. hosting services, systems for displaying web push notifications, for sending newsletter, provide marketing systems, systems for analyzing traffic on the Website, systems for analyzing the effectiveness of marketing campaigns.
6.2. Other controllers
We also work with entities that do not act solely on our instructions and set the purposes and methods of processing your personal data themselves. We use them to carry out remarketing campaigns and to conduct statistical analysis.
6.2. Service providers location
Service providers are based mainly in Poland and other countries of the European Economic Area (EEA). Some of them are based outside the EEA. In connection with the transfer of your data outside the EEA, we have ensured that recipients of data provide a guarantee of a high level of personal data protection. They result from participation in the “Privacy Shield” program established by Commission Implementing Decision (EU) 2016/1250 of 12 July 2016 on the adequacy of protection provided by the EU-US Privacy Shield, pursuant to Art. 45 item 1 GDPR.
7. What are your rights regarding your Personal Data?
We ensure that our Customers and Users can exercise their rights regarding their data.
You can exercise your rights by reporting to privacy@nestec.pl. All you have to do is inform us about the reason for the application and the law you want to use.
In accordance with the provisions of the GDPR, you are entitled to:
7.1. The right to express and withdraw consents
If we ask you for consent, it is always voluntary. We always inform you about the right to withdraw your consent before you give us your consent. On our Website, we never ask for one consent for various purposses of personal data processing.
You have the right to withdraw any consent you have given us.
Withdrawal of your consent is effective upon execution, and it does not affect the lawfulness of processing based on the consent before you withdraw it.
Withdrawal of consent does not entail any negative consequences for you. However, it may prevent you from continuing to use the services or functionalities that, according to the law, Nestec can only provide with your consent (e.g. sending a newsletter).
You can easily withdraw your consent:
- By clicking “unsubscribe” in the newsletter you received,
- If you agree to the use of cookies – in your browser settings,
- By writing to us.
7.2. Right to object
You have the right to object at any time – for reasons related to your specific situation – to the processing of your Personal Data, if we process your data based on our legitimate interest, e.g. direct marketing of our products and services, including profiling, creating statistics of the use of individual Website functionality and facilitating the use of the Website, as well as satisfaction surveys.
Opting out of receiving marketing communications regarding our products or services will mean your objection to the processing of your Data for direct marketing purposes, including profiling for these purposes.
If your objection turns out to be legitimate and we have no other legal basis to process your Personal Data, we will remove the Data you don’t want us to process.
7.3. Right to erasure (“right to be forgotten”)
On the grounds described by the law, you have the right to request that we delete all or some Personal Data about you.
You have the right to have us erase your Personal Data if:
- Personal data are no longer necessary for the purposes for which they were collected or otherwise processed;
- You have withdrawn consent to the processing of your Data;
- You have objected to the processing of your Data for marketing-related purposes;
- Data Processing is in violation of the law or we must erase Data to comply with legal obligations;
- You have objected to the processing of your Data for statistical purposes of using the Website and surveying customer satisfaction, and the objection has been considered legitimate.
Despite the request to erase Personal Data, we may keep some of your data if it is necessary for us to comply with a legal obligation or to establish, pursue or defend claims. This applies in particular to Personal Data including: name, surname, email address, which we store for the purposes of examining complaints and claims related to sales service, rendering services or using the Website.
7.4. Right to restriction of processing
You have the right to request a restriction on the processing of your Personal Data. Submission of a request, until its consideration, prevents the use of certain functionalities or services, the use of which will involve the processing of Data covered by the request. We will also not send you any communications, including marketing messages.
You have the right to request a restriction on the use of your Personal Data if:
- You contest the accuracy of your Data;
- The processing of your Data is unlawful, and you request the restriction of its use instead of erasing it;
- Your personal data has ceased to be necessary for the purposes for which we processed it, but you need it to establish, exercise or defend legal claims;
- You object to the processing of your Data.
7.5. Right of access
You have the right to obtain information from us whether we process your Personal Data, and if this is the case, you have the right to:
- Get access to your Personal Data;
- Get information about the rules for processing your Personal Data;
- Receive a copy of your Personal Data.
We do not charge for the first copy of data. For further requests for a copy of the Data, we may charge a fee based on the administrative costs associated with preparing this information.
7.6. Right to rectification
You have the right to rectify (if incorrect) and complete (if incomplete) the Personal Data you have provided.
7.7. Right to data portability
You have the right to receive your Personal Data that you provided to us, and then send it to another personal data administrator of your choice. You also have the right to request that Personal Data be sent by us directly to such an administrator, if it is technically possible.
In this case, we will send Personal Data in the form of a file in CSV format, which is a commonly used, machine-readable format that allows you to send the received data to another personal data administrator.
7.8. Right to lodge a complaint with a supervisory authority
You have the right to lodge a complaint regarding the processing of your data to the supervisory authority, which in the case of Poland is the President of the Personal Data Protection Office, contact details:
Personal Data Protection Office
Stawki 2, 00-193 Warsaw, Poland
phone: +48 606 950 000 (available during working days 10 a.m. – 1 p.m.)
fax. +48 22 532 03 01
kancelaria@uodo.gov.pl
Working hours of the office: 8.00 – 16.00
8. Cookies
Our website uses cookies. These are small text files sent to your browser if your browser allows it. The browser can store them on your device.
We use two categories of cookies:
- Session cookies – which are automatically deleted when you close your browser. They are used to store information about the product configuration selected by you, thus facilitating the submission of inquiries or orders.
- Persistent cookies – which remain after closing the browser until they expire or are manually deleted. They are used to create anonymous statistics that help understand how Users use the Website, which allows improving its structure and content. They also allow you to remember your preferences, e.g. the language of your choice.
We use internal cookies to:
- Limit notification of the use of cookies when you close such notification,
- Redirect you to the language that is most appropriate for the country you are visiting from, or to the language of your choice,
- Show you popup notifications with the option to subscribe to receiving messages about new content and materials.
The website uses Google Analytics, which uses cookies located on your device to produce anonymous statistics on the volume of traffic on the Website and how the Website is being used. We also put YouTube videos on our pages to provide additional educational material.
Nestec may use Google AdWords, which uses cookies placed on your device to advertise the Website, products offered and services it provides. Also, we use the Moosend and PushPushGo tools for marketing communications that you can agree to.
If you do not agree to the use of cookies by Nestec, you can block them by selecting the appropriate option in your browser settings. Please remember, however, that if you decide not to accept our cookies, some of the Website’s functionalities may not work properly.
Below you will find information on how to change cookie settings in the most popular web browsers:
Internet Explorer – see instructions
Microsoft Edge – see instructions
Mozilla Firefox – see instructions
Chrome – see instructions
Safari – see instructions
Opera – see instructions
We use Google Analytics to measure the traffic on our site. Google has its own privacy policy, which you can check here. If you’d like to opt out of Google Analytics tracking, please visit the Google Analytics opt-out page.
We use a server that collects Users’ IP addresses, device and browser type, date and time of entry, textual description of the event, event classification in its logs. These data are not associated with specific people browsing the Website.
Access to files with logs is available only to persons authorized to administer the IT system. These data are used to diagnose technical problems with the server, create statistical analysis, as well as for security purposes and possible identification of server-consuming, unwanted automatic programs to view the content of the Website.
9. Other useful information
9.1. Do I have to provide Nestec with my Personal Data?
Sometimes we ask you to provide us with your Personal Data. Providing:
- data needed to process the order or to service your inquiry
- some data marked as mandatory in the contact or registration forms
is essential for us to be able to do for you what you want, e.g. newsletter subscription, order processing. Providing data other than mandatory is voluntary.
9.2. How long do we store your data?
We will process Personal Data of people subscribed to our newsletters or people who have agreed to receive marketing materials from us until they unsubscribe from receiving the newsletter or materials.
We store Personal Data of persons who send us their inquiries as long as it is necessary to answer.
Personal Data of our Customers are processed as long as it is necessary to perform the contract.
We will keep this data for the period necessary for the purpose of considering complaints, compliance with tax and accounting regulations and handling claims.
9.3. Do we process children’s personal data or special categories of personal data?
We do not process children’s personal data and do not collect specific categories of personal data.
Our Website, products and services are addressed to adults (18 years or older) who conduct business or professional activity. Minors are requested not to provide us with any information, in particular personal data.
9.4. How do we protect your personal data?
We have implemented appropriate measures to ensure the security of your personal data. The website uses encrypted data transmission (SSL, secure socket layer), which provides Users with a secure and encrypted connection when sending personal data.
9.5. Links to other sites
Website pages may contain links to other websites. We cannot be responsible for the privacy practices of other sites. After moving to another website, we encourage you to read its privacy policy.
10. Updates to our Privacy Policy
Depending on the needs, we can change and update the Privacy Policy, e.g. when required by changes in the law, or new or changed functionality of our Website. We will inform you about any changes or updates by posting relevant information on the Website, and in the event of significant changes we can also send you separate notifications to the email address provided.
The Privacy Policy does not restrict any of your rights under the Terms of Service or applicable provisions of the law.
Last modification was made: 2019-October-08.