GDPR

PROTECTION OF PERSONAL DATA

If you are a customer of the kite shop KITEBOARDING.CZ or a visitor to www.kiteboarding.cz, you entrust us with your personal data. Find out how we protect them, our processing policy and the rights you have in relation to the EU General Data Protection Regulation (GDPR).

 

WHO IS THE ADMINISTRATOR?

We are the company Wind and Board s.r.o., ID number: 09472371, a company registered in the Commercial Register of the Regional Court in Ostrava, file number C 83172.

We operate the website www.kiteboarding1.eu. With regard to your personal data, we are in the position of administrator: we determine how personal data will be processed and for what purpose, for how long, and we select any other processors who will help us with the processing.

 

HOW CAN YOU CONTACT US?

If you want to contact us, you can at the e-mail address: ochrana-osobnich-udaju@kiteboarding.cz.

 

SCOPE OF PERSONAL DATA AND PURPOSE OF PROCESSING

We process personal data that you entrust to us yourself for the following reasons (to fulfill these purposes):

 

ORDER OF GOODS AND PROVISION OF SERVICES, FULFILLMENT OF THE CONTRACT

Your e-mail address, name, billing and delivery information incl. tel. (for faster processing of the order and the ability to track your order) we absolutely need to process the order and for the purpose of fulfilling the contract.

 

BOOKKEEPING

If you order a product or service from our offer, we need your personal data (invoice and delivery data, including phone number for faster processing and the possibility of tracking your order) in order to comply with the legal obligation to issue and register tax documents.

 

PUBLIC PROFILE

If you create a public profile on www.kiteboarding1.com, we understand this as a legitimate interest of the administrator. Edit, or you can delete your profile at any time at page or by contacting us.

 

MARKETING - SENDING NEWSLETTERS

We use your personal data (e-mail and name, possibly phone), gender, what you click on in e-mail and when you most often open it, what you click on on our website, your location and IP address for the purpose of direct marketing - sending business messages by email or SMS. In order to provide better and targeted services, we use so-called profiling (segmentation).

If you receive an ebook, a discount voucher or the publication of an ad for free, or by paying for its highlighting, we perceive a legitimate interest in sending you newsletters with the topic of best practices and know-how regarding kiteboarding. We will do this until you unsubscribe (unsubscribe link in the footer of each email).

If you put a product in the basket on our website and do not complete the order or if you put the product in the so-called wish list, based on the administrator's legitimate interest, we will send you commercial messages offering lower prices and better services for a period of 5 years.

In all cases, however, you can unsubscribe from receiving newsletters in every e-mail you receive. We won't be mad at you. It is your right.

 

ADVANCED CONSENT MARKETING

Only based on your consent, we can also send you inspirational offers from third parties or use your e-mail address, for example, for remarketing and targeting advertising on Facebook, for a maximum period of 1 year from the granting of consent. This can of course be revoked at any time via our contact details.

We retain your personal data for the duration of the statute of limitations, unless the law stipulates a longer period for their retention or we have not stated otherwise in specific cases.

 

TRANSFER OF PERSONAL DATA TO 3RD PARTIES

Our employees and collaborators, who are bound by confidentiality and trained in the field of personal data processing security, have access to your personal data.

We manage most of the processing operations ourselves and do not need 3rd parties for them.

In order to ensure some specific processing operations that we are unable to ensure on our own, we use the services and applications of processors who specialize in the given processing and are in compliance with the GDPR.

They are the providers of the following platforms and services: accounting firm and the Pohoda system, transport companies PPL, Česká pošta, DHL, UPS, web hosting Active24, mailing of newsletters Mailchimp, social networks Facebook, Twitter, Google+, web analytics Google Analytics, internet search Google Adwords , Sklik, Heureka.cz, Heureka.sk. It is possible that in the future we will decide to use other applications or processors to facilitate and improve the quality of processing. However, we promise you that in such a case we will place at least the same demands on security and quality of processing on the processor as we do on ourselves.

 

COOKIES

When you browse our website, we record your IP address, how long you stay on the page, which page you come from and if you come thanks to one of our affiliate partners, which pages you view, which products you put in your cart, which files you download . We perceive the use of cookies to measure website traffic, affilaite and customize website display as our legitimate interest as an administrator, as we believe that thanks to this we can offer you even better services.

Cookies for advertising targeting will only be processed based on your consent.

Our website can also be browsed in a mode that does not allow the collection of personal data. You can disable the use of cookies on your computer.

WHO DO WE USE FOR PROCESSING?

Google Analytics, AdWords, Google+ services operated by Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA. The collected cookie files are then used by Google Inc. In accordance with the Privacy Policy, available at https://www.google.com/intl/cs/policies/privacy/#nosharing.

Facebook Pixel Services, operated by Facebook Inc., 1601 Willow Road, Menlo Park, CA 94025, USA. The collected cookie files are then used by Facebook Inc. in accordance with the Privacy Policy, available at https://www.facebook.com/full_data_use_policy

 

SECURITY AND PROTECTION OF PERSONAL DATA

We protect your personal data to the maximum extent possible using modern technologies that correspond to the level of technical development. We protect them as if they were our own. We have adopted and maintain all possible (currently known) technical and organizational measures that prevent misuse, damage or destruction of your personal data.

DATA TRANSFER OUTSIDE THE EU

We process data in the European Union or in countries that ensure an adequate level of protection based on the decision of the European Commission.

Your rights in connection with the protection of personal data

You have a number of rights in connection with the protection of personal data. If you would like to exercise any of these rights, please contact us via e-mail: ochrana-osobnich-udaju@kiteboarding.cz.

You have the right to information, which is already fulfilled by this information page with the principles of personal data processing.

Thanks to the right of access, you can challenge us at any time and we will provide you with evidence within 30 days of what personal data we process and why.

If something changes about you or you find your personal data out of date or incomplete, you have the right to supplement and change your personal data.

You can use the right to restrict processing if you believe that we are processing your inaccurate data, if you believe that we are carrying out the processing illegally, but you do not want to delete all data, or if you object to the processing. You can limit the scope of personal data or processing purposes. (For example, by unsubscribing from the newsletter, you limit the purpose of processing for sending commercial messages.)

Right to portability
If you would like to take your personal data and transfer it to someone else, we will proceed in the same way as when exercising the right of access - with the only difference being that we will deliver the information to you in machine-readable form within 30 days.

Right to erasure (to be forgotten)
Another right you have is the right to erasure (to be forgotten). If you want, we will delete all your personal data from the system and from the system of all partial processors and backups. We need 30 days to ensure the right to erasure. In some cases, we are bound by a legal obligation. E.g. we must register issued tax documents for the period set by law. In this case, we will delete all such personal data that are not bound by another law. We will notify you by email when the deletion is complete.

Complaint to the Office for Personal Data Protection
If you feel that we are not handling your data in accordance with the law, you have the right to contact the Office for Personal Data Protection at any time with your complaint. We will be very happy if you first inform us about this suspicion so that we can do something about it and correct any errors.

Unsubscribing from newsletters and business communications
We send you e-mails with articles, advice, news or products and services if you are our customer based on our legitimate interest. You can unsubscribe using the unsubscribe link in each email.

 

SECRECY

We assure you that our employees and collaborators who will process your personal data are obliged to maintain confidentiality about personal data and about security measures, the disclosure of which would endanger the security of your personal data. Without your consent, your personal data will not be released to any other third party.

 

These personal data processing policies apply from 25/01/2021.