Privacy Policy

Privacy Policy

At nicotatarowicz.com, we value and respect your privacy. This Privacy Policy reflects our commitment to protecting the personal data of our users, visitors, and customers in accordance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). We implement industry-standard practices to ensure that your data is collected, used, and stored securely and transparently.

1. Introduction

We are dedicated to maintaining your trust by protecting your personal information and data privacy rights. This Privacy Policy describes how your data is collected, processed, stored, and disclosed when you interact with our website, nicotatarowicz.com. Our goal is to handle all personal data lawfully, fairly, and transparently.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all users of nicotatarowicz.com and to the processing of personal data carried out by us in our capacity as a Data Controller. The Data Controller responsible for your personal data is Nicotatarowicz.com, and you may contact us at [email protected] with any privacy-related inquiries.

3. Categories of Data Processed

We process various types of data to provide and improve our services. These categories include:

a) Usage Data
Information about how users interact with nicotatarowicz.com, such as IP address, browser type, browsing actions, pages visited, date and time of visits, referral URLs, and session duration.

b) Account Data
Personal information voluntarily provided to create an account or sign up for services, including your full name, physical address, email address, phone number, and authentication credentials.

c) Profile Data
Details relating to your user profile, including preferences, purchase history, content interaction, settings, and behavioral data.

d) Communication Data
Records of communication with us, including support inquiries, feedback messages, and any other interactions via email or contact forms.

e) Technical Data
Device and system information such as device type, operating system, screen resolution, browser configuration, and internet service provider.

f) Transaction Data
Details regarding purchases or purchases intent, including payment methods, billing and shipping information, payment confirmations, and order history.

g) Preference Data
Marketing and communication preferences, tracked product interests, opt-in consents, and language or location preferences.

4. Legal Bases for Processing

We process your data based on one or more of the following lawful bases:

– Performance of a Contract: To deliver services or goods you’ve requested, or respond to your inquiries.
– Consent: For sending marketing materials or collecting certain analytics, where you have explicitly provided consent.
– Legitimate Interests: To improve user experience, ensure website and transaction security, and analyze usage.
– Compliance with Legal Obligations: Where necessary for compliance with a legal mandate, including fraud prevention.

5. Your Rights

Under data protection laws, you have the following rights:

– Right of Access: Request confirmation that we process your personal data and obtain a copy.
– Right to Rectification: Correct incomplete or inaccurate information we hold about you.
– Right to Erasure: Request deletion of your data where appropriate.
– Right to Restriction: Limit processing of your data under defined circumstances.
– Right to Data Portability: Receive a copy of your data in a structured format for transfer to another controller.
– Right to Object: Withdraw consent or object to processing based on legitimate interests or direct marketing.

To exercise these rights, contact us at [email protected]. We may need to verify your identity before responding to a rights request.

6. Security Measures

We maintain industry-standard security controls to safeguard your personal data:

– Encryption of data in transit using secure protocols
– Role-based access controls and permission management
– Secure server environments and network firewalls
– Routine data backups and disaster recovery planning
– Regular privacy and data handling training for staff

Despite these measures, no system is entirely immune to unauthorized access. We advise users to take personal steps to protect their information.

7. International Transfers

Where applicable, your personal data may be transferred to, and processed in, countries outside your jurisdiction. If processed outside the EU, appropriate safeguards such as Standard Contractual Clauses (SCCs) or adequacy decisions will be implemented to ensure compliance with GDPR.

For users in California, data transfers comply with the CCPA and other relevant frameworks ensuring adequate third-country protection levels.

8. Data Retention

We retain data only as long as needed for its original purpose, or as long as required by law. Data retention timeframes include:

– Usage Data: Up to 12 months
– Account and Profile Data: For the duration of your account and up to 5 years post-deactivation
– Communication and Transaction Data: Up to 7 years for compliance and audit
– Preference Data: Until withdrawn or expired (e.g., consent-based preferences)

Data will be anonymized or securely destroyed once the retention period elapses, unless legally obligated to retain it longer.

9. Cookie Policy

Cookies are used to enhance user experience and analyze site performance. We use the following categories of cookies:

– Essential Cookies: Necessary for website functionality (e.g., login, page navigation)
– Functional Cookies: Enable personalization and remembering of user preferences
– Performance Cookies: Aggregate usage metrics to improve site speed and usability
– Analytics Cookies: Collect data on user behavior to optimize content delivery

10. Cookie Management and Compliance with GDPR & CCPA

You can manage cookie preferences through your browser settings or our cookie consent manager. Where required by law, we obtain affirmative opt-in consent before placing non-essential cookies on your device. California residents may also opt out of the sale of personal data if applicable.

11. Special Protections for Children Under 13

We do not knowingly collect personal data from children under the age of 13. If we become aware that a child under 13 has provided personal data, we will promptly delete such data. Parents or legal guardians may contact us at [email protected] to request deletion of any such data.

12. Policy Updates & User Notifications

We may update this Privacy Policy from time to time to reflect changes in applicable laws or our privacy practices. Updated versions will be posted on nicotatarowicz.com with clear notice of any material changes. We encourage users to review this policy periodically.

13. Contact

For questions, concerns, or complaints regarding this Privacy Policy or our handling of your data, please contact us at:

Email: [email protected]
Website: https://nicotatarowicz.com

We are committed to full compliance with global privacy laws and uphold your rights as a user. Please don’t hesitate to reach out if you have any concerns about your privacy or data protection.