effective from 01.05.2018
For the purposes of the information which you provide to us, ATEX s.r.o. acts as the data controller. Therefore we would like to inform users of our websites eshop.atexsport.cz how we process your personal data. We will at all times comply with the General Data Protection Regulations so called ‘GDPR’ that came into force by regulation of European Parliament and Council (EU) 2016/679.
We can always contact us with any of your queries via web form that can be found on our websites or by email. Our email address is firstname.lastname@example.org.
ATEX process your private data in order to:
Above all we collect you data to be able to conclude a business contract and to legally offer you our services.
Legal justifications for collecting your data are:
We collect all of the information which enable us to manage customer service with you.
This information will include: name, surname, address, telephone, e-mail address, gender, password, username, order details and company name. This information help us to manage your order, reply to your questions, loyality program matters, preference setting and with your agreement, we can also contact you electronically with marketing notifications.
We will also collect information when you buy goods from us on our website to manage your order. This will include: name, surname, address, telephone, email address, information on the product, the time and date of your purchase, the goods you purchased, how happy you were with the service, changes in your order or complaints.
Your payment details are not collected directly by us but through our partenrs. Geolocation information is collected in order to provide you with better service and goods and for statistic reasons.
Regarding newsletters and advertisement notifications we can process this data: email address, name and surname.This information is only collected with your agreement.
Much of information is collected by cookies and it is used to secure good working order of our websites and its personalisation. We can collect: username and password, order history, geolocation info, IP address, browser and device details and other information for statistic purposes. All these are important tools in improvement of our websites and give us statistic information about our customers.
In order to set a good communication with our customers especially when it is to answer their enquiries, we can process: name, surname, telephone, e-mail address.
Unless we have this data, we cannot provide you with service as they are essential for our business contract.
We will not retain your data for longer than necessary for the purposes set out in this Policy. However the longest we will normally hold any personal data is 10 years from your order. In case the order was not completed, all your personal data will be deleted within 12 months in case our mutual relation will come into force again.
In some cases we can keep you personal data longer but only if we are legally entitled to and especially in terms of taxes, accountancy and archives.
We use your data to fulfil any orders you place with us. If you DID NOT tick a box: 'I don’t want to receive marketing communication’, we will send them to you. Your decision to receive or not receive marketing communication does not have any impact on our mutual business agreement. These notifications will include information on our services, products and offers that you may be interested in.
We can also send you marketing communication if you pre-approved it regardless whether you made a contract with us or not.
Either way, you can cancel this service at any time on our email address, online form or through cancellation link in every email.
Our company is striving to provide you with individually tailored offers and services. Therefore, based on your agreement, we profile your personal data. In order to do that we use automatic information system, web applications and calculators based on which we send you individualised notifications and offers, goods or services of ATEX s.r.o. This system allows us to meet your needs better, to estimate future trends and adjust our products adn services accordingly.
You also agreed to pass your personal data to our selected third parties partners when agreeing to receive marketing communication. Our partners follow the same regulation in protecting personal data and we signed contract on processing personal data with them. You can get a list of our business partner at request.
For marketing purposes, we share your data with third party service providers who help us to do this and to generally operate our business effectively. For example, to improve the level of services which we provide you with, your data may be shared with third parties, so-called mediators. ATEX s.r.o. signed a legal contract with these parties on using personal data based on which they have to follow strict rules of dealing with personal data. We only share information that is necessary for their job. Third parties can be IT companies, hosting services and companies that secure HW running, external marketing agencies, external graphic designers and programmers. External companies providing payment portals.
We do not collect data of people under 16 years of age.
Our subcontractors or processors of personal data have access to your personal data. These can be people we closely cooperate with based on trade certificate or it can be our external IT administrator or companies that provide cloud or online marketing services or email services.
In order to process personal data we can use online services such as Google LLC or Microsoft Corporation or e-mail services of The Rocket Science Group, LLC (publicly known as MailChimp). These companies are based in the USA and are registered within so called EU-USA privacy shield. You can access it on: https://www.privacyshield.gov. European Commission published an agreement on privacy setting related to the shield, Art. 45 par 9 GDPR therefore no other permission is needed.
If we process your private data, you have the following rights:
You also have a right to object at supervisory office which is Office for Personal Data Protection. The website is: https://www.uoou.cz/.
Right of access personal data means that you are entitled to get a confirmation whether your data is processed or not and you have a right to access this personal data including information on processing it, based on Art.15 GDPR.
Right of rectification means that upon your request we have to correct inaccurate information or complete it in accordance with Art. 16 GDPR.
Right of erasure means that upon your request we have to erasure your personal data in accordance with Art. 17 GDPR. We can do so given that:
Right to restrict processing means that upon your request we have to restrict processing your data in accordance with Art. 18 GDPR.
Further you have a right to data portability which means that upon your request we have to give your your information in machine-readable form in case the processing is based on agreement or on a contract ( fulfilment of the contract ). In the same time the processing is done in automatized way in accordance wiht Art. 20 GDPR.
We explicitly draw your attention to right to raise an objection. This means that you have a right to raise an objection against any direct marketing. If you do so we cease direct marketing straight away.
Right to raise an objection can be also generally applied against processing of your personal data based on a legal justification so called ‘authorised interest’or ‘fulfilment of a task in public interest or discharge of duties in public interest including profiling based on these legal resonings’.
You can raise your objection on our email address email@example.com.