Privacy policy

The privacy policy describes the principles of processing information about you, including personal data and cookies.


1. General Information

  1. This policy applies to the website operating at the URL: lukasztopa.pl
  2. The website operator and data controller is: Łukasz Topa, os. Osiedle Jagiellońskie 7/16, 32-410 Dobczyce
  3. Operator’s contact email address: info@lukasztopa.pl
  4. The operator is the administrator of your personal data in relation to data voluntarily provided on the website.
  5. The website uses personal data for the following purposes:
    • Handling inquiries via the form
    • Debt collection
    • Presentation of offers or information
  6. The website obtains information about users and their behavior in the following ways:
    1. Through data voluntarily entered in forms, which are entered into the Operator’s systems.
    2. By storing cookies on end devices.

2. Selected Data Protection Methods Used by the Operator

  1. Login and personal data entry areas are protected at the transmission layer (SSL certificate). This ensures that personal data and login data entered on the site are encrypted on the user’s computer and can only be read on the target server.
  2. Personal data stored in the database is encrypted in such a way that only the Operator holding the key can read it. This protects data in case the database is stolen from the server.
  3. User passwords are stored in a hashed form. The hashing function works one-way, making it impossible to reverse its operation, which is the current standard for storing user passwords.
  4. The Operator periodically changes administrative passwords.
  5. To protect data, the Operator regularly performs backups.
  6. An important element of data protection is the regular updating of all software used by the Operator to process personal data, especially updates to programming components.

3. Hosting

  1. The website is hosted (technically maintained) on the servers of another company.
  2. The hosting company, to ensure technical reliability, keeps logs at the server level. The logs may include:
    • Resources identified by URL (addresses of requested resources – pages, files)
    • Request arrival time
    • Response time
    • Client station name – identification carried out by the HTTP protocol
    • Information about errors that occurred during the HTTP transaction
    • URL address of the previously visited page (referer link) – if the transition to the website occurred via a link
    • Information about the user’s browser
    • IP address information
    • Diagnostic information related to the self-ordering process through forms on the site
    • Information related to handling email directed to and sent by the Operator.

4. Your Rights and Additional Information on Data Usage

  1. In certain situations, the Administrator has the right to transfer your personal data to other recipients if necessary to fulfill a contract with you or to meet obligations imposed on the Administrator. This applies to the following recipient groups:
    • Hosting company under an entrustment agreement
    • Authorized employees and collaborators who use the data to achieve the purpose of the website
    • Companies providing marketing services for the Administrator
  2. Your personal data is processed by the Administrator no longer than necessary to perform related activities specified by separate regulations (e.g., accounting). For marketing data, processing does not exceed 3 years.
  3. You have the right to request from the Administrator:
    • Access to your personal data
    • Correction
    • Deletion
    • Processing restriction
    • Data portability
  4. You have the right to object to processing described in section 3.2, including profiling for legally justified interests pursued by the Administrator, unless there are legally justified grounds overriding your interests, rights, and freedoms, particularly for establishing, pursuing, or defending claims.
  5. You can file a complaint about the Administrator’s actions to the President of the Office for Personal Data Protection, ul. Stawki 2, 00-193 Warsaw.
  6. Providing personal data is voluntary but necessary for the operation of the website.
  7. You may be subject to automated decision-making, including profiling, for the purpose of service provision and direct marketing.
  8. Personal data is not transferred outside the European Union.

5. Information in Forms

  1. The website collects information voluntarily provided by the user, including personal data if provided.
  2. The website may store connection parameters (timestamp, IP address).
  3. In some cases, the website may save information facilitating the linking of form data with the user’s email address. In such cases, the user’s email address appears inside the URL of the form page.
  4. Data provided in the form is processed for the function of the specific form, such as handling service requests or business contacts, service registration, etc. The context and description of each form clearly inform what it is used for.

6. Administrator Logs

  1. Information about user behavior on the website may be logged. This data is used for website administration.

7. Important Marketing Techniques

  1. The Operator applies statistical analysis of traffic…