top of page
PRIVACY POLICY
This Privacy Policy describes the rules for how we process information about you, including personal data and cookies.
1. General Information
This policy applies to the website operating at: www.formanatura.pl
The website operator and Data Controller is:
FORMA NATURA Tomasz Mizgalski
Jawornik 187, 38-114 Jawornik, Poland
Contact email address: sklep@formanatura.pl
The Operator acts as the Data Controller for your personal data provided voluntarily on the website.
The website uses personal data for the following purposes:
-
Managing the newsletter
-
Conducting online chat conversations
-
Handling inquiries via forms
-
Preparing, packing, and shipping goods
-
Fulfilling ordered services
-
Debt collection
-
Presenting offers or information
The website collects information about users and their behavior in the following ways:
-
Through voluntarily provided data entered in forms, which are stored in the Operator’s systems.
-
By saving cookies on users’ devices.
2. Selected Data Protection Measures Used by the Operator
-
Login pages and data entry points are protected during transmission (SSL certificate), ensuring that personal data and login credentials are encrypted and readable only on the target server.
-
Personal data stored in the database is encrypted so that only the Operator holding the key can access it, protecting data in case of database theft.
-
User passwords are stored as hashed values using one-way hash functions, following modern standards for password storage.
-
Administrative passwords are periodically updated.
-
Software used to process personal data is regularly updated, including program components, to maintain security.
3. Hosting
The website is technically hosted on servers provided by WIX.COM.
4. Your Rights and Additional Information on Data Use
In certain situations, the Data Controller may transfer your personal data to third parties if necessary to fulfill a contract with you or to meet legal obligations. These recipients may include:
-
Hosting companies (as processors)
-
Couriers
-
Postal operators
-
Law firms and debt collection agencies
-
Payment operators
-
Comment system operators
-
Online chat solution providers
-
Marketing service providers acting on behalf of the Operator
Personal data is processed no longer than necessary to perform the activities required by law (e.g., accounting). Marketing-related data is not processed for more than 3 years.
You have the right to request from the Operator:
-
Access to your personal data
-
Correction of your personal data
-
Deletion of your personal data
-
Restriction of processing
-
Data portability
You also have the right to object to processing based on the Operator’s legitimate interests, including profiling, except where legally justified interests override your rights, particularly for establishing, pursuing, or defending claims.
You may file a complaint with the President of the Office for Personal Data Protection: ul. Stawki 2, 00-193 Warsaw, Poland.
Providing personal data is voluntary but necessary to use the website.
Automated decision-making, including profiling, may be applied to provide services under the contract or for direct marketing purposes.
Personal data is not transferred to third countries outside the European Union.
5. Information Provided in Forms
The website collects information voluntarily provided by users, including personal data when submitted.
The website may record connection parameters (e.g., timestamp, IP address).
In some cases, the website may link form data to the user’s email address. Form data is processed only for the purpose defined in the form, e.g., handling service requests, business inquiries, or service registration. The purpose of each form is clearly described.
6. Administrator Logs
User behavior on the website may be logged. This information is used to administer the website.
7. Important Marketing Techniques
-
The Operator uses statistical analysis of website traffic via Google Analytics (Google Inc., USA). No personal data is shared with Google; only anonymized information is used. Cookies are employed for this purpose. Users can manage their preferences here: https://www.google.com/ads/preferences/
-
Remarketing techniques are used to tailor ads based on user behavior. No personal data is shared with advertisers; only cookie-based activity is tracked.
-
The Operator uses Facebook Pixel, allowing Facebook (Facebook Inc., USA) to know when a registered user visits the website. The Operator does not provide additional personal data.
-
Automated solutions may send emails to users after visiting certain pages, if they consented to marketing communications.
8. Cookies Information
The website uses cookies (small text files stored on the user’s device to facilitate website use). Cookies typically contain the website name, storage duration, and a unique number.
The Operator places cookies on users’ devices and can access them. Cookies are used for:
-
Maintaining user sessions (so login is not required on each page)
-
Marketing purposes as described above
Two main types of cookies are used:
-
Session cookies: temporary, deleted after logout, leaving the page, or closing the browser
-
Persistent cookies: stored for a set period or until deleted by the user
Web browsers generally allow cookies by default. Users may change settings to block or delete cookies, but this may limit website functionality.
Cookies may also be used by partners, including Google (USA), Facebook (USA), and Twitter (USA).
9. Managing Cookies – How to Grant or Withdraw Consent
Users can change browser settings to manage cookies. Disabling essential cookies may limit or prevent website functionality.
Instructions for cookie management by browser:
-
Edge
-
Internet Explorer
-
Chrome
-
Safari
-
Firefox
-
Opera
Mobile devices:
-
Android
-
Safari (iOS)
-
Windows Phone
bottom of page