1. General Information.
    1. This Privacy Policy sets out the rules for the processing and protection of personal data of Customers of the Patrycja Marut online store (hereinafter: “Store”), operated by Patrycja Marut with its registered office at Aleje Racławickie 10/27 20-037 Lublin, Poland, NIP: 7123438559, REGON: 522616122 (hereinafter: “Administrator”).
    2. This document contains information on, among other things, the purposes and grounds for processing personal data, the rights of data subjects, and how to secure data in accordance with applicable laws, including the General Data Protection Regulation (GDPR).
    3. Privacy policy is an integral part of the Terms and Conditions. By using the services we offer, you entrust us with your information. This document serves only as an aid to understanding what information and data are collected and for what purpose and for what they are used. This data is very important to us, so please read this document carefully as it sets out the principles and ways of processing and protecting personal data. This document also defines the rules for the use of cookies.
    4. We would like to inform you that we comply with the principles of personal data protection and all legal regulations provided by the Personal Data Protection Act and the Regulation of the European Parliament and of the Council (EU) 2016/679 of April 27, 2016 on the protection of natural persons in relation to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC.
    5. At the request of the person whose personal data is being processed, we provide comprehensive information on how we use his or her personal data. We always make a clear effort to inform you about the data we collect, how we use it, what purposes it is intended to serve and to whom we transfer it, what protection we provide for this data when it is transferred to other entities, and provide information on institutions to contact in case of doubt.

2 Data controller:

Patrycja Marut with registered office Aleje Racławickie 10/27 20-037 Lublin, Poland, NIP: 7123438559, REGON: 522616122
E-mail address for contact: info@patrycjamarut.pl

If you have any questions or requests regarding the Administrator’s processing of your personal data, please contact us.

3 Legal basis for the processing of personal data:
The processing of personal data is carried out on the basis of the provisions of RODO, in particular Article 6 (1) of Regulation (EU) 2016/679, and in the cases specified below:

    • Contract performance: Data processing is necessary for the performance of a sales contract or the provision of services (e.g., personal training, development of training and diet plans, provision of digital content).
    • Consent: The processing of data for marketing activities (e.g., sending newsletters) is based on the Customer’s expressed consent.
    • Legal obligation: Processing is necessary to fulfill the Administrator’s legal obligations (e.g., accounting and tax obligations).
    • Legally legitimate interests: Data processing may also be justified by the legitimate interests of the Controller, such as ensuring system security and fulfilling complaints.

4 Scope of personal data collected:

1.The store collects personal data that the customer voluntarily provides when using the site, in particular:

    • Name,
    • Email address,
    • Phone number,
    • Mailing address,
    • Data necessary for processing orders (e.g., delivery address),
    • Information contained in contact forms, registration forms and when signing up for the newsletter,
    • Data on orders, payments and purchase history.

(2) Provision of the above data by is completely voluntary, but also and necessary for the full implementation of services.

5 Purposes of personal data processing:
Personal data is processed for:

    • Fulfillment of orders and provision of services offered by the Store (e.g. personal training, development of training and diet plans, provision of digital content),
    • To contact the Store on matters related to orders, complaints and customer service,
    • Carry out marketing activities, including sending newsletters (after obtaining the Customer’s consent),
    • Maintain user account and manage order history,
    • To fulfill legal obligations under the law (e.g., accounting, taxation).

6 Recipients of personal data:

1.Personal data may be shared:

    • Entities providing services to the Administrator, such as courier companies, payment operators (e.g. HotPay, Stripe, payment card operators), hosting or service companies, as well as those providing IT support performing maintenance or responsible for the maintenance of IT infrastructure, etc,
    • To public authorities, if the law requires such access,
    • Entities that process data on behalf of the Administrator under data processing entrustment agreements.

(2) We may transfer personal data to servers located outside your country of residence or to affiliated entities, third parties based in other countries including countries in the EEA (European Economic Area, EEA – free trade zone and Common Market, comprising the countries of the European Union and the European Free Trade Association EFTA) for the purpose of processing personal data by such entities on our behalf in accordance with the provisions of this Privacy Policy and applicable laws, customs as well as data protection regulations.

  1. Data retention period:
    Personal data will be retained for the period necessary to fulfill the purposes for which they were collected, or for the period required by law. After this period, the data will be deleted or anonymized.
  1. Rights of Data Subjects:
    Under the RODO, the Customer has the right to:
    • Access to your personal data and receive a copy of it,
    • Correct (rectify) your data,
    • Deletion of data (right to be forgotten) – in cases provided by law,
    • Restrictions on data processing,
    • Transfer data in a structured format,
    • Object to data processing,
    • Withdraw consent to data processing (without affecting the lawfulness of processing carried out on the basis of consent before its withdrawal).

In order to exercise the above rights, the Customer should contact the Administrator using the contact information provided in Section 2. If the processing of personal data is deemed to violate the law, the Customer has the right to file a complaint with the President of the Office for Personal Data Protection (PUODO).

  1. Cookies:
    The store uses cookies for the following purposes:
    • To enable the use of the site and its functionality,
    • Analyze the use of the site in order to improve its functionality and quality,
    • Conduct marketing activities (after obtaining the Customer’s consent).
    • The user can change the cookie settings in his/her web browser. Detailed information on the cookies used can be found in a separate Cookies Policy available on the Store’s website.
  1. Security measures:
    The Administrator shall apply appropriate technical and organizational measures to ensure the protection of processed personal data against accidental or unauthorized access, loss, destruction or other unlawful processing. The safeguards in place include:
    • Encryption of data transmission (e.g. SSL/TLS),
    • Security systems against hacking attacks,
    • Restrict access to personal data to authorized employees only.
  1. Changes to the Privacy Policy
    The Administrator reserves the right to make changes to this Privacy Policy. Customers will be informed of any significant changes by publishing the new version of the Policy on the Store’s website. It is recommended to regularly read the current version of the document.
  1. Contact
    Any questions regarding this Privacy Policy and the processing of personal data should be sent to the e-mail address: info@patrycjamarut.pl or by mail to the Administrator’s registered office address listed in Section 2.
  1. Plug-ins and external tools

Our Store uses a variety of third-party plug-ins and tools that are integrated with our website and may collect usage data. These include, but are not limited to:

    • Google Kit: tools offered by Google, which may include integration with Google Analytics, Google Tag Manager or other Google services. These collect analytical data on site traffic to help us improve site functionality.
    • Facebook and Instagram: Integrations that enable social media-related functionalities, such as “Like” buttons, “Share” buttons and other interactive elements. These solutions may collect user interaction data that can be used for marketing purposes, among other things.
    • Hotjar: A tool for analyzing user behavior that enables us to, among other things, create heat maps, record user sessions and collect other analytical data. This data helps us better understand how users use our site and optimize its performance.

Data collected by these tools is processed in accordance with their own privacy policies. We encourage users to read the privacy policies of the individual services for detailed information on how and for what purposes these entities process data.

Users can change their cookie settings in their web browser at any time, as well as through the Cookie Settings button at the bottom of this page. The change may affect the collection of data by the listed tools. If you have any questions about the processing of data by third-party plug-ins and tools, please contact the Data Controller via the contact information provided in this Privacy Policy