PRIVACY POLICY
The Privacy Policy below sets forth the rules for storing and accessing data on the Devices of Users who use the Website for the purpose of providing electronic services by the Administrator, as well as the rules for collecting and processing Users’ personal data, which they have provided personally and voluntarily through the tools available on the Website.
The Privacy Policy below is an integral part of the Website Terms of Use, which set forth the rules, rights, and obligations of Users of the Website.
§1 Definitions
- Website – the “Mushrooms Borowczyk” website, available at https://www.mushroomsborowczyk.com/wp-content/uploads/2025/01/mushrooms_borowczyk_kuchnia_0028.jpg
- External services – websites of partners, service providers, or service recipients that collaborate with the Administrator
- Website Administrator / Data Controller – The Website Administrator and Data Controller (hereinafter referred to as the “Administrator”) is the company “U BORÓWEK,” operating at the following address: 63-830 Pępowo, ul. Szkolna 26, with tax identification number (NIP): 618 138 79 38, providing services electronically via the Website
- User – a natural person to whom the Administrator provides services electronically through the Website.
- Device – an electronic device, including its software, through which the User accesses the Website
- Cookies – text data collected in the form of files stored on the User’s Device
- GDPR – Regulation (EU) 2016/679 of the European Parliament and of the Council of April 27, 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation)
- Personal data – means information relating to an identified or identifiable natural person (“data subject”); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier, or one or more specific factors specific to the physical, physiological, genetic, mental, economic, cultural, or social identity of a natural person
- Processing—means any operation or set of operations performed on personal data or sets of personal data, whether by automated or non-automated means, such as collection, recording, organization, structuring, storage, adapting or modifying, retrieving, consulting, using, disclosing by transmission, dissemination, or otherwise making available, aligning or combining, restricting, erasing, or destroying;
- Restriction of processing – means marking stored personal data to restrict its future processing
- Profiling—means any form of automated processing of personal data that involves the use of personal data to evaluate certain personal aspects of a natural person, in particular to analyze or predict aspects concerning that natural person’s work performance, their economic situation, health, personal preferences, interests, credibility, behavior, location, or movements
- Consent – the consent of the data subject means a voluntary, specific, informed, and unambiguous expression of will by which the data subject, through a statement or a clear affirmative action, consents to the processing of their personal data
- Personal Data Breach – means a security breach resulting in the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or unauthorized access to personal data that is transmitted, stored, or otherwise processed
- Pseudonymization—means processing personal data in such a way that it can no longer be attributed to a specific data subject without the use of additional information, provided that such additional information is stored separately and is subject to technical and organizational measures that prevent it from being attributed to an identified or identifiable natural person
- Anonymization – Data anonymization is an irreversible data processing operation that destroys or overwrites “personal data,” thereby preventing the identification of, or the linking of, a given record to a specific user or natural person.
§2 Data Protection Officer
Pursuant to Article 37 of the GDPR, the Controller has not appointed a Data Protection Officer.
For matters related to data processing, including the processing of personal data, please contact the Controller directly.
§3 Types of Cookies
- First-party cookies – files stored on and retrieved from the User’s Device by the Website’s IT system
- Third-party cookies – files placed on and read from the User’s Device by the information and communication systems of third-party websites. Scripts from third-party services that may place cookies on the User’s Device have been intentionally included on the Website through scripts and services made available and installed on the Website
- Session cookies – files placed on and read from the User’s Device by the Website during a single session on that Device. Once the session ends, the files are deleted from the User’s Device.
- Persistent cookies – files placed on and read from the User’s Device by the Website until they are manually deleted. These files are not automatically deleted at the end of the Device session unless the User’s Device is configured to delete cookies at the end of the Device session.
§4 Data Storage Security
- Mechanisms for Storing and Reading Cookies – The mechanisms for storing, reading, and exchanging data between cookies stored on the User’s Device and the Website are carried out through the built-in mechanisms of web browsers and do not allow for the retrieval of other data from the User’s Device or data from other websites that the User has visited, including personal data or confidential information. The transfer of viruses, Trojan horses, and other worms to the User’s Device is also practically impossible.
- First-party cookies – The cookies used by the Administrator are safe for Users’ Devices and do not contain scripts, content, or information that could compromise the security of personal data or the security of the Device the User is using.
- Third-party cookies – The Administrator takes all possible measures to verify and select the website’s partners with a view to ensuring User security. The Administrator selects well-known, large partners with global public trust for collaboration. However, the Administrator does not have full control over the content of cookies originating from third-party partners. To the extent permitted by law, the Administrator is not liable for the security of cookies, their content, or their license-compliant use by scripts installed on the website that originate from third-party websites. A list of partners is provided later in this Privacy Policy.
- Cookie Management
- Users can change the settings for saving, deleting, and accessing data stored in cookies by any website at any time on their own
- The User may delete any cookies stored to date at any time using the tools available on the User’s device through which the User accesses the Website’s services.
- Risks on the User’s Part – The Administrator takes all possible technical measures to ensure the security of data stored in cookies. However, it should be noted that ensuring the security of this data depends on both parties, including the User’s actions. The Administrator assumes no liability for the interception of this data, impersonation of the User’s session, or the deletion of such data resulting from the User’s intentional or unintentional actions, viruses, Trojan horses, or other spyware with which the User’s Device may be or may have been infected. To protect themselves against these threats, Users should follow general internet safety guidelines.
- Storage of Personal Data – The Controller ensures that it makes every effort to ensure that the personal data processed—which is voluntarily provided by Users—is secure, that access to it is restricted, and that it is used in accordance with its intended purpose and the purposes of processing. The Controller also ensures that it makes every effort to protect the data in its possession against loss by implementing appropriate physical and organizational security measures.
§5 Purposes for Which Cookies Are Used
§6 Purposes of Personal Data Processing
Personal data voluntarily provided by Users is processed for one of the following purposes:
- Provision of electronic services:
- Services related to the registration and maintenance of a User’s account on the Website and related features
- Communication between the Administrator and Users regarding matters related to the Website and data protection
- To safeguard the Controller’s legitimate interests
User data collected anonymously and automatically is processed for one of the following purposes:
- Statistics, Remarketing
- Serving ads tailored to users' preferences
- To safeguard the Controller’s legitimate interests
§7 Cookies from Third-Party Websites
The Website Administrator uses JavaScript scripts and web components from partners, who may place their own cookies on the User’s Device. Please note that in your browser settings, you can decide for yourself which cookies are allowed to be used by individual websites. Below is a list of partners or their services implemented on the Website that may place cookies:
Services provided by third parties are beyond the Administrator’s control. These third parties may change their terms of service, privacy policies, purposes of data processing, and methods of using cookies at any time.
§8 Types of Data Collected
The Website collects data about Users. Some of this data is collected automatically and anonymously, while other data consists of personal information voluntarily provided by Users when signing up for specific services offered by the Website.
Anonymous data collected automatically:
- IP Address
- Browser type
- Screen resolution
- Approximate location
- Subpages of the website that can be opened
- Time spent on a specific subpage of the website
- Type of operating system
- Address of the previous subpage
- Referring URL
- Browser language
- Internet connection speed
- Internet service provider
Data collected