Privacy policy

This privacy policy of May 23, 2018 sets out the rules for the collection and processing of personal data in accordance with the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and in on the free movement of such data and repealing Directive 95/46/EC (General Data Protection Regulation).

§1 General provisions

  1. The policy applies to the personal data indicated below collected by Lumi Technologist based in Nysa as part of the data processing processes.
  2. The obligation to protect data applies to all persons who have access to it, regardless of their position and place of work, as well as the nature of the employment relationship, including entities cooperating with us.
  3. Any person who is to have access to personal data will be able to process it only on the basis of the authorization received.

§2 Definitions

1. “Personal data” is information about an identified or identifiable natural person. An identifiable natural person is a person who can be identified, directly or indirectly, in particular by name and surname, PESEL number, location data or on the basis of other factors determining the identity of the natural person.
2. “Processing” means any automated or non-automated operation or series of operations performed on personal data. Such operations are; collecting, organizing, modifying, recording, organizing, viewing, downloading, transmitting, disseminating, sharing, deleting, destroying personal data.
3. “Storage restriction” means defining the rules for storing personal data in order to limit their further storage.
4. “Profiling” means an automated process of personal data processing, which involves using personal data to analyze aspects in order to assign a person to specific features such as interests, location data, economic situation.
5. “Administrator” the controller of personal data is an entity that is a natural or legal person, public authority or other entity that, independently or jointly with others, determines the rules for the processing and storage of personal data. Specifies the purpose and method of storing them.
6. “Processor” is an entity that processes personal data, which may be a natural or legal person, public authority, or other entity appointed on behalf of the controller.
7. “Recipient” is a natural or legal person, public authority, entity or other entity, regardless of whether it is a third party, to which personal data are made available. A public authority that receives personal data in the framework of a specific procedure under Union or Member State law is not the recipient. Data processing by this body must be carried out in accordance with the provisions on the protection of personal data.
8. “Third party” is a natural or legal person, public authority or body other than the data subject, which, under the authority of the controller or processor, processes personal data.
9. “Consent” means a freely given, informed and unambiguous expression of will by the data subject. Consent may be expressed in the form of a statement or clear action allowing the processing of personal data.
10. “Personal data breach” means a breach of the security of collected personal data, which may lead to unlawful destruction, modification, unauthorized access or disclosure of data to unauthorized persons.

§3 General information

1. This privacy policy sets out the rules for storing, collecting and protecting personal data of LUMI.PL Users, internet address www.lumi.pl
2. The data administrator is Lumi Technology Katarzyna Bunkowska with its registered office at ul. Baligrodzka 25, 48-303 Nysa, NIP: 7532219990, REGON: 160260783
3. Providing personal data to the administrator by the website user is completely voluntary. Personal data processed by the Administrator is in accordance with the provisions on the protection of personal data and in accordance with the implemented Privacy Policy to the extent and purpose necessary to establish and shape the content of the Agreement, change or terminate it and proper implementation of the Services provided electronically by Lumi Technology.
4. A person providing his or her personal data on our website has the right to access them and, in accordance with the new regulations, also has the right to make changes to them, delete them, freely transfer them, limit their processing, and the right to lodge a complaint.
a) The right of access is the right that allows the person providing his/her personal data to inspect the data provided, information whether and how it is processed, receive a copy and information whether it is transferred to third parties.
b) The right to rectification, the person providing personal data has the right to inspect his or her data and correct it if it is untrue, or supplement it if it is incomplete.
c) The right to delete data, the person providing the data may request the website administrator to permanently delete the data provided if it is no longer necessary for the purposes for which it was collected.
d) The right to transfer data, the user may at any time request the transfer of his or her data to a third party indicated by the user, the administrator is obliged to provide such data in a machine-readable format.
e) The right to limit data processing, the user has the right to ask us to suspend data processing when the data is untrue, when the law on personal data protection has been violated, when the user has objected to data processing.
f) The user has the right to lodge a complaint with the supervisory authority when he/she considers that the provisions of applicable law in connection with the protection of personal data have been violated.
5. In special cases, the data subject has the right to object to their processing. The following are considered special situations in which an objection may be raised:
– data processing for direct marketing purposes
– processing of personal data for scientific research purposes
– processing of personal data for historical purposes
– processing of personal data for statistical purposes pursuant to Art. 89 section 1
In cases of processing of personal data for historical or scientific purposes, a person may object on grounds related to his or her particular situation, unless the processing of such data is necessary to perform a specific task in the public interest.
6. Lumi Technology is responsible for considering submitted requests regarding the rights referred to above
7. We would like to inform you that it is possible to withdraw consent previously expressed to the processing of data at any time.
8. This privacy policy is an information document and may be updated as regulations change.
9. When entrusting data to entities cooperating with us, the Administrator notifies them of any rectification, deletion or limitation of data processing that resulted from the execution of a request received from the data subject.

§4 Types and purposes of data use

1. What data do we collect?
a) Data entered into the form:
– first name and last name
– company name
– e-mail
– address
– Phone number
b) Information about connection parameters:
– we may collect your IP address
– location
– indication of the connection time
– date
c) Data needed to provide the service:
– account number
d) Login details:
– first name and last name
– email address
– login
e) Communication data:
– correspondence with users
f) Information collected automatically
– device information (operating system version)

2. For what purposes do we use the data?
a) We use the data to personalize our website so that it displays content tailored to the user’s preferences, such as search results when using our services.
b) We collect data on how often our website is visited and how long and how the User navigates it in order to adapt it to the User’s preferences.
c) We collect data to analyze and monitor the advertising campaign and our internal business processes.
d) We collect data to support the development of our website.
e) We collect data to administer and maintain an appropriate level of security on our website.
f) We need the data to process the order and ship it.
g) We collect data for the purpose of return contact and analysis of statistics on the website.
h) We collect data to provide marketing services, e.g. sending marketing messages to users subscribed to the Newsletter.

§5 Entities we cooperate with

1. Google AdWords
“We want users to trust that their information is used with the respect and care it deserves. Therefore, our advertising partners should not use it inconsistently with their policies or collect it for unclear purposes or without appropriate security measures.
Examples of user information that require special treatment: name and surname; e-mail adress; Address for correspondence; Phone number; ID card or driving license number, NIP, PESEL, pension number, health insurance card details; in addition to the above information: date of birth or mother’s maiden name; financial status; political connections; sexual orientation; racial or ethnic affiliation; confession
Examples of irresponsible data collection and use: obtaining credit card information through an unsecured server; promotion that suggests the advertiser knows a user’s sexual orientation or financial status, violations of our interest-based advertising and marketing policies
Source

2. Google Analytics
“At Google, we are acutely aware of the trust our users place in us and that we have a responsibility to protect their privacy. That’s why we openly inform users about what information we collect when they use our products and services, why we collect it, and how we use it to improve the experience of using our services. The Google Privacy Policy document describes the processing of personal data of users of Google products and services, including Google Analytics. “
Source
You can prevent the use of your data via Google Analytics, providing detailed information on how to do this

3. Google Maps
jw.
4. Google+
jw.

5. Facebook/Meta
“We collect content and other information we receive from you when you use our Services, such as data you provide when registering a Facebook account, creating and sharing content, and when exchanging messages and other types of communications with others. This may include information contained in or relating to the content you provide, such as where the photo was taken or the date the file was created. We also collect information about how you use the Services, such as the type of content you view and interact with, and the frequency and duration of various activities you engage in.”


Source

§6 Information about forms

1. Information provided in the forms is not collected automatically.
2. The website collects information provided consciously and voluntarily by the user.
3. Data provided in the forms are not transferred to third parties other than with the user’s consent, are treated as confidential and are not visible to unauthorized persons.
4. The data provided in the form may constitute a collection of potential customers of our website.
5. Data collected in forms are used to fulfill the functions resulting from a specific form, e.g.
a) contact phrases in the contact form
b) execution of the order in the order fulfillment form
6. Data collected in the forms may be transferred to partners, service subcontractors or technical entities responsible for the implementation of tasks resulting from the form’s functions, e.g.
a) courier company
b) payment processing service
c) IT support
7. Data may be transferred to law authorities upon explicit request.
8. The data is processed in the European Economic Area.

§7 Security measures

1. We use SSL protocols when necessary.
2. We do not disclose data to unauthorized persons, data are collected with due diligence in accordance with the Act of August 29, 1997. about personal data protection.
3. Users of our website are responsible for protecting their login and password, our company is not responsible for the consequences if these data are made available to third parties.
4. All persons who perform activities related to the processing of personal data as part of their official duties at work stations or commissioned work must have written authorization to process personal data and sign a declaration of confidentiality.
5. Contact with the person supervising the processing of personal data in the Service Provider’s organization is possible electronically at the e-mail address: info@lumi.pl

§8 Data processing period

1. The user’s personal data will be processed by the website administrator from the moment they are provided by the user until the completion of the activities for which they were provided, maintaining the limitation period for claims, or until they are requested to be deleted.
2. The website administrator may refuse to delete data until the end of the period for submitting claims in connection with the service provided, which he may incur, and thus we reserve the right to process data after termination of the Agreement or withdrawal of consent only to the extent for the purpose of pursuing possible claims before a court or if national or EU regulations or international law oblige us to retain data.
3. The Service Provider has the right to share the User’s personal data and other data with entities authorized under applicable law (e.g. law enforcement authorities).
4. The Service Provider does not disclose personal data to entities other than those authorized under applicable law.
5. In matters not regulated in this Policy, the provisions of the GDPR and the Personal Data Protection Act apply.

§9 Cookie policy

  1. 1. What are cookies?
    Cookies are small text information that stores data needed for the proper operation of the website. Cookies are generated by the web browser and saved on the User’s end device. Upon subsequent visits to our website, the browser will recognize that the User has visited us before and will adapt the presented content to the recipient.

2. What cookies do we use?
We use two types of cookies on our website: session cookies and persistent cookies. Session cookies are temporary and are deleted automatically when you turn off or clear your browser. These files are permanently deleted from the memory of the User’s device and do not allow downloading any data from the device.
However, persistent cookies are saved on the User’s device and remain there until they are deleted. They are not deleted by ending the session, but are completely safe and do not share any information from the User’s device.

3. For what purpose do we use cookies?
The main reason we use cookies is to optimize the use of the website and improve configuration. Thanks to cookies, it is possible to authenticate the User’s data and maintain the session. Implementation of processes needed for the proper functioning of the website.

4. Managing cookies.
Each User of our website can independently change cookie settings at any time. The user has the right to specify the conditions for accessing and storing data using cookies. Changes to cookies can be made in the settings of the web browser used by the User. At any time, the User has the right to permanently delete cookies or limit their access to data. Cookies do not collect data automatically.
5. How to change cookie settings in your browser?
a) Changing settings in the web browser:
Changing settings for Google Chrome
Changing settings for Safari
Changing settings for Opera
b)Changing settings for mobile devices:
Changing settings for Android
Changing settings for Safari iOS
Changing settings for Windows Phone

Scroll to Top