Privacy Policy
Last updated: October 22, 2025
This Privacy Policy explains how we process personal data when you use en.urbanowiczhaft.pl.
1. General information & Controller
- This Policy applies to the website: en.urbanowiczhaft.pl.
- The website operator and personal data controller (the “Controller”) is:
Sport Fashion Mode Teresa Urbanowicz
Trzebnicka 52, 50-231 Wrocław, Poland. - Support e-mail: pomoc@urbanowiczhaft.pl
- We process data you provide voluntarily on the website as well as data collected automatically during use of the service.
2. Categories of personal data
- Identification & contact: first name, last name, e-mail address, phone number.
- Order & delivery: shipping address, billing address, company name, tax/VAT ID (if provided).
- Transaction details: product names, quantity/size, order value/price, currency, country of order, payment status, order history.
- Newsletter & marketing preferences: consents, subscription status.
- Technical data: IP address, timestamps, device/browser information, cookies and similar identifiers.
3. Purposes & legal bases of processing
Depending on the activity, we process your data under Article 6(1) GDPR on the following bases:
- Performance of a contract or steps prior to entering into a contract — order placement, payment handling, shipping, customer service.
- Legal obligation — accounting and tax regulations, handling complaints/returns according to applicable law.
- Legitimate interests — website security, prevention of abuse/fraud, basic statistics, direct marketing of our own products (where allowed).
- Consent — newsletter subscription, certain analytics/marketing cookies and remarketing (you may withdraw consent at any time without affecting prior processing).
4. Recipients & processors
Where necessary to perform a contract or meet legal duties, we may transfer data to the following categories of recipients:
- Hosting provider (processor): JCHost.
- Couriers / delivery: DPD, DPD Pickup, FedEx, UPS, Poczta Polska.
- Payment operators: payment service providers used in our store (as applicable).
- Newsletter & marketing automation: Benhauer S.A. (SALESmanago).
- Advertising & analytics vendors: Google (Google Analytics / Google Ads), Meta (Facebook Pixel).
- Authorised employees and contractors supporting store operations (IT, fulfilment, marketing) under confidentiality/data processing arrangements.
International transfers
Some vendors may be located outside the EEA. Where such transfers occur, they rely on appropriate safeguards (e.g., Standard Contractual Clauses). Details are available in vendor policies and, for cookies, in the consent interface.
5. Retention periods
- Orders & accounting data: retained for 6 years (or longer if required by law).
- Contact form / enquiries: up to 12 months from the last meaningful interaction.
- Marketing (newsletter): until consent is withdrawn or up to 3 years from the last interaction — whichever occurs first.
- Cookies & similar identifiers: according to browser settings and cookie categories (typically up to 24 months for analytics/ads cookies).
6. Data protection methods
- SSL/TLS for login and personal data entry points.
- Database encryption (access only with Controller-held keys).
- Passwords stored using one-way hashing.
- Periodic rotation of administrative passwords.
- Regular backups.
- Regular updates of all software components used to process personal data.
7. Hosting
The website is hosted on servers of JCHost.
8. Information in forms
- We collect information provided voluntarily by the user, including personal data.
- We may store connection parameters (timestamp, IP address).
- In some cases, for technical reasons, your e-mail may appear within the URL of a page containing a form.
- Data submitted via forms are used solely for the explicit purpose described next to each form (e.g., service request handling, commercial contact, service registration).
9. Administrator logs
Information about user behaviour on the website may be logged and used for administration and security purposes.
10. Analytics & marketing technologies
- Google Analytics: statistical analysis of traffic. We do not provide personal data to Google; cookies may be used on your device. Manage ads preferences at google.com/ads/preferences.
- Google Ads & remarketing: tailoring ads to user behaviour; requires cookies and, where applicable, your consent.
- Meta (Facebook) Pixel: measures effectiveness of ads; Meta may learn that a logged-in user interacted with our site. We do not add extra personal data.
- Marketing automation (SALESmanago): newsletter delivery and campaigns for users who consented to receive commercial communication.
11. Cookies
- Our website uses cookies (small text files stored on your device).
- Cookies typically contain the website name, storage duration, and a unique identifier.
- Cookies are set and accessed by the website operator and, where applicable, by our partners (Google, Meta, etc.).
- We use cookies to:
- maintain user sessions after login, and
- support analytics and advertising features described above (subject to your consent where required).
- Types:
- Session cookies — deleted when you log out/leave the site/close the browser,
- Persistent cookies — stored for a defined period or until you delete them.
- Your browser usually allows cookies by default. You can change settings, delete or block cookies (see vendor help pages).
- Disabling essential cookies may affect certain functionalities of the website.
12. Manage cookies
You can manage cookies in your browser settings. Disabling cookies necessary for authentication, security or preference storage may hinder or prevent use of the website.
Help pages: Edge · Chrome · Safari · Firefox · Opera
Mobile: Android (Chrome) · iOS (Safari)
Open cookie settings (if available).
13. Children’s data
Our website and services are not intended for persons under 16 years of age. We do not knowingly collect data from children under 16.
14. Your rights
You have the right to request: (i) access to your data, (ii) rectification, (iii) erasure, (iv) restriction of processing, and (v) data portability. You may object to processing based on our legitimate interests (including profiling). We will cease such processing unless we demonstrate compelling legitimate grounds overriding your interests, rights and freedoms, or for the establishment, exercise, or defence of legal claims.
Providing personal data is voluntary but necessary to use certain features of the website and to conclude/perform a contract (orders, shipping, invoicing).
15. Supervisory authority & complaints
You may lodge a complaint with the Polish supervisory authority: President of the Personal Data Protection Office (UODO), ul. Stawki 2, 00-193 Warsaw, Poland.
16. Changes to this Policy
We may update this Policy from time to time. The “Last updated” date indicates the latest version. We publish changes on this page (no e-mail notification is required).
17. Contact details
Controller: Sport Fashion Mode Teresa Urbanowicz
Trzebnicka 52, 50-231 Wrocław, Poland
Support: pomoc@urbanowiczhaft.pl
DPO: kamil@urbanowiczhaft.pl
This page is provided for information purposes and should be adjusted to reflect your specific setup (payment providers, cookie categories, retention schedules). Consider obtaining legal review.
