Privacy Policy
The Privacy Policy describes the rules for our processing of information about you, including personal data and cookies.
§ 1. General information
- This policy applies to the www Service, operating at the url: shop.forresttraveldmc.com
- The operator of the website and the Administrator of personal data is: DE Group Sp. z o.o. Sp. K. with its registered office in Tarnowskie Góry 42-600, ul. Gliwicka 35, KRS 0000697644, NIP 6452552899, REGON 368399818,
- Contact address of the operator’s e-mail: hello@forresttraveldmc.com contact tel. +48 730 966 210
- The Operator is the Administrator of your personal data in relation to the data voluntarily provided in the Service.
- Legal basis: The Administrator observes the principles of using appropriate technical-organizational measures specified in: a) Regulation of the European Parliament and of the Council (EU) 2016/679 of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) (OJ EU L of 2016 No. 119, p.1 as amended); (“GDPR”), in particular regarding the appropriate protection of personal data against illegal access, modification or destruction of data by unauthorized persons. b) Act of 18 July 2002 on the provision of services by electronic means (consolidated text: Journal of Laws of 2020, item 344 as amended); c) Act of 24 November 2017 on tourist events and related tourist services (consolidated text: Journal of Laws of 2020, item 2139 as amended); d) Act of 30 May 2014 on consumer rights (consolidated text: Journal of Laws of 2020, item 287 as amended); e) Act of 23 April 1964 Civil Code (consolidated text: Journal of Laws of 2020, item 1740 as amended); f) Act of 10 May 2018 on personal data protection (consolidated text: Journal of Laws of 2019, item 1781).
- The Administrator reserves the right to change this Privacy Policy at any time, in particular due to changes in the functionality of the Service or changes in the applicable legal regulations.
- The Service uses personal data for the following purposes: a) Handling inquiries through the form b) Implementation of ordered services c) Presentation of the offer or information
- The Service performs functions to obtain information about users and their behavior in the following way: a) Through voluntarily entered data in forms, which are entered into the Operator’s systems. b) By saving cookies in end devices (so-called “cookies”).
§ 2. Selected methods of data protection used by the Operator
- Login and data entry places are protected in the transmission layer (SSL certificate). Thanks to this, the personal data and login data entered on the site are encrypted on the user’s computer and can only be read on the target server.
- Personal data stored in the database are encrypted in such a way that only the Operator possessing the key can read them. This protects the data in case the database is stolen from the server.
- User passwords are stored in hashed form. The hash function works one-way – it is not possible to reverse its operation, which is currently a modern standard in terms of storing user passwords.
- The Operator periodically changes its administrative passwords.
- For data protection, the Operator regularly makes backup copies.
- An important element of data protection is regular updating of all software, used by the Operator to process personal data, which in particular means regular updates of programming components.
§ 3. Hosting
The service is hosted (technically maintained) on the servers of the operator AZ.pl Sp. z o.o.
§ 4. Your Rights and Additional Information about Data Use
- In some situations, the Administrator has the right to pass your personal data to other recipients, if it is necessary to execute the agreement concluded with you or to fulfill the obligations imposed on the Administrator. This applies to such groups of recipients: a) insurers b) authorized employees and associates, who use the data to achieve the purpose of the website c) for the proper implementation of the contract,
- Your personal data processed by the Administrator no longer than is necessary to perform related activities specified by separate regulations (e.g. on conducting accounting). With regard to marketing data, the data will not be processed for longer than 3 years.
- You have the right to request from the Administrator: a) access to your personal data, b) their rectification, c) deletion, d) processing restrictions, e) and data portability.
- You have the right to object to processing as specified in point 3.3 c) against the processing of personal data for the purpose of pursuing legitimate interests implemented by the Administrator, including profiling, but the right to object cannot be exercised if there are valid legally justified reasons for processing, overriding your interests, rights, and freedoms, especially the determination, pursuit or defense of claims. The correspondence address in this matter: rodo@dreamevents.pl
- The actions of the Administrator are subject to a complaint to the President of the Personal Data Protection Office, ul. Stawki 2, 00-193 Warsaw.
- Providing personal data is voluntary, but necessary to use the Service.
- Actions may be taken against you consisting of automated decision-making, including profiling to provide services under the concluded contract and for the purpose of direct marketing by the Administrator.
- Personal data is not transferred to third countries within the meaning of personal data protection regulations. This means that we do not send them outside the European Union.
§ 5. Information in Forms
- The Service collects information voluntarily provided by the user, including personal data, a) if they have been provided.
- The Service can save information about connection parameters (time stamp, IP address).
- In some cases, the Service may save information facilitating the linking of data in the form with the e-mail address of the user filling in the form. In this case, the user’s e-mail address appears inside the url of the page containing the form.
- The data provided in the form is processed for the purpose resulting from the function of a particular form, e.g. to perform the service application process or commercial contact, registration of services, etc. Each time the context and description of the form clearly informs what it is used for.
§ 6. Administrator Logs
Information about users’ behavior on the site may be subject to logging. This data is used to administer the service.
§ 7. Relevant Marketing Techniques
- The operator uses traffic analysis on the site through Google Analytics (Google Inc. based in the USA). The operator does not pass personal data to the operator of this service, only anonymized information. The service is based on the use of cookies on the end user’s device. In terms of information about user preferences collected by the Google advertising network, the user can view and edit information resulting from cookies using the tool: https://www.google.com/ads/preferences/
§ 8. Information about Cookies
- The Service uses cookies.
- Cookies (so-called “cookies”) are IT data, in particular text files, which are stored on the Service User’s end device and are intended for using the Service’s websites. Cookies usually contain the name of the website they come from, the storage time on the end device, and a unique number.
- The entity placing cookies on the Service User’s end device and accessing them is the Service operator.
- Cookies are used for the following purposes:
- maintaining the Service user session (after logging in), thanks to which the user does not have to re-enter the login and password on each subpage of the Service;
- implementing the purposes specified above in the part: Relevant marketing techniques
- The Service uses two basic types of cookies: “session” (session cookies) and “permanent” (persistent cookies). “Session” cookies are temporary files that are stored on the User’s end device until logging out, leaving the website or turning off the software (web browser). “Permanent” cookies are stored on the User’s end device for the time specified in the cookie parameters or until they are deleted by the User.
- The web browsing software (web browser) usually by default allows storing cookies on the User’s end device. Service Users can change settings in this respect. The web browser allows deleting cookies. It is also possible to automatically block cookies Detailed information on this topic is contained in the help or documentation of the web browser.
- Restrictions on the use of cookies may affect some functionalities available on the Service’s websites.
- Cookies placed in the Service User’s end device can also be used by entities cooperating with the Service operator, especially it concerns companies: Google (Google Inc. based in the USA), Facebook (Facebook Inc. based in the USA), Twitter (Twitter Inc. based in the USA).
- Managing Cookies – How to Express and Withdraw Consent in Practice
- If the user does not want to receive cookies, they can change the browser settings. We reserve that disabling the handling of cookies necessary for authentication processes, security, maintaining user preferences can hinder, and in extreme cases may prevent the use of www pages
- To manage cookie settings, select from the list below the web browser you are using and follow the instructions: o Edge o Internet Explorer o Chrome o Safari o Firefox o Opera Mobile devices: o Android o Safari (iOS) o Windows Phone