Privacy Policy
We respect the privacy of our Customers and make every effort to protect their personal data in accordance with applicable regulations, including the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (GDPR) and the Act of 10 May 2018 on Personal Data Protection. Below, we present the principles of personal data processing on our website operating under the address https://cotty.pl.
1. Data Controller
The controller of your personal data is AVVIO Maciej Janyska, with its registered office at Kossaka 96, 64-920 Piła, Poland. For matters related to personal data protection, you can contact us by email at hello@cotty.pl or by mail at the company’s registered address.
2. Personal Data We Process
Depending on the purpose of processing, we may collect the following personal data:
a) Full name – for order fulfillment and contact related to its execution.
b) Residential address – necessary for the shipment of the ordered goods.
c) Contact phone number – required for notifications related to order delivery and in exceptional situations (e.g., lack of goods in stock).
d) Email address – used for order confirmation, notifications about its status, and sending marketing offers (with the user’s consent).
e) IP address – collected for statistical and security purposes.
f) Cookies – used for service personalization and user activity analysis (more information in section 7).
3. Legal Basis for Data Processing
Personal data is processed based on:
- Art. 6(1)(b) GDPR – to perform a sales contract or provide services.
- Art. 6(1)(a) GDPR – based on the user’s consent (e.g., when signing up for a newsletter).
- Art. 6(1)(c) GDPR – to fulfill a legal obligation incumbent on the Controller (e.g., retention of accounting documents).
- Art. 6(1)(f) GDPR – to pursue our legitimate interests, such as website traffic analysis or direct marketing.
4. Your Rights
You have the right to:
- Access your personal data – obtain information about the data we process.
- Rectify your data – correct data if it is incorrect or outdated.
- Delete your data (“right to be forgotten”) – if there are no legal grounds for further processing.
- Restrict data processing – in specific cases.
- Data portability – transfer your data to another controller in an electronic format.
- Object – to data processing for marketing purposes or based on our legitimate interest.
- Withdraw consent – to the processing of personal data at any time, if the data is processed based on consent.
- File a complaint with the supervisory authority – the President of the Personal Data Protection Office (PUODO).
To exercise these rights, you can contact us by email at hello@cotty.pl.
5. Recipients of Personal Data
To fulfill your order, we may share your data with the following entities:
a) Courier companies – e.g., DPD Polska sp. z o.o., for order delivery.
b) Payment operators – e.g., PayU S.A., for payment authorization.
In each case, we only share the data necessary to achieve the purpose.
6. Data Retention
We retain personal data for the period:
- Required for order fulfillment and dictated by tax and accounting regulations (5 years from the end of the tax year in which the order was fulfilled).
- Until consent is withdrawn (in the case of data processed based on consent).
7. Cookies and Google Analytics
Our website uses cookies, which enable:
- Customization of website content to user preferences.
- Statistical analysis of website traffic using Google Analytics.
As part of Google Analytics, we use IP address anonymization, which provides an additional level of personal data protection.
You can manage cookie settings in your browser. Full information about cookies can be found in our Cookie Policy.
8. Security Measures
We apply appropriate technical and organizational measures to protect personal data against unauthorized access, loss, or destruction, including:
- SSL encryption during data transmission.
- Database security measures.
- Regular security audits.
9. Changes to the Privacy Policy
We reserve the right to amend this Privacy Policy. Registered users will be informed of any changes via email. The new version of the Privacy Policy will come into force on the date indicated in the notification, no less than 14 days from the date of the notification.
10. Contact
If you have any questions or concerns regarding this Privacy Policy, please contact us at hello@cotty.pl or by mail at the company’s registered address: AVVIO Maciej Janyska, ul. Kossaka 96, 64-920 Piła, Poland.