Protection of personal data
I. Basic provisions
1. The controller of personal data pursuant to Article 4(7) of Regulation (EU) 2016/679 of the European Parliament and of the Council on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (hereinafter referred to as: “ GDPR ”) is Dr. Staněk spol. s ro, Company ID No. 25118048, with its registered office at Karoliny Světlé 1015/11, Prague 1 - Staré Město (hereinafter referred to as: “ controller ”).
2. The contact details of the administrator are
Address: Karoliny Světlé 1015/11, 110 00 Prague 1 - Old Town
Email: info@drstanek.cz
Phone: 731189044
3. Personal data means any information relating to an identified or identifiable natural person; an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
4. The controller has not appointed a data protection officer.
II. Sources and categories of processed personal data
1. The administrator processes personal data that you have provided to him/her or personal data that the administrator has obtained based on the fulfillment of your order.
2. The administrator processes your identification and contact data and data necessary for the performance of the contract.
III. Legal basis and purpose of processing personal data
1. The lawful reason for processing personal data is
- performance of the contract between you and the controller pursuant to Article 6(1)(b) of the GDPR,
- the legitimate interest of the controller in providing direct marketing (in particular for sending commercial communications and newsletters) pursuant to Article 6(1)(f) of the GDPR, via the website ecomail.cz, sro with its registered office at Na Zderaze 1275/15, 120 00 Prague 2, Czech Republic, VAT number CZ02762943
- Your consent to processing for the purposes of providing direct marketing (in particular for sending commercial communications and newsletters) pursuant to Article 6(1)(a) of the GDPR in conjunction with Section 7(2) of Act No. 480/2004 Coll., on certain information society services, in the event that no order for goods or services has been made.
2. The purpose of processing personal data is
- processing your order and exercising the rights and obligations arising from the contractual relationship between you and the administrator; when placing an order, personal data is required that is necessary for the successful processing of the order (name and address, contact), providing personal data is a necessary requirement for concluding and fulfilling the contract, without providing personal data, it is not possible to conclude the contract or for the administrator to fulfill it,
- sending commercial communications and carrying out other marketing activities.
3. The controller makes automated individual decisions within the meaning of Article 22 of the GDPR. You have provided your explicit consent to such processing.
IV. Data retention period
1. The administrator stores personal data
- for the period necessary to exercise the rights and obligations arising from the contractual relationship between you and the administrator and to assert claims from these contractual relationships (for a period of 15 years from the termination of the contractual relationship).
- for the period until consent to the processing of personal data for marketing purposes is revoked, for a maximum of 7 years if personal data is processed on the basis of consent.
2. After the expiry of the personal data retention period, the administrator will delete the personal data.
V. Recipients of personal data (subcontractors of the controller)
1. Recipients of personal data are persons
- participating in the delivery of goods and services ( Balíkovna , Česká Pošta , Zásilkovna , PPL ) and the execution of payments under the contract ( GoPay payment gateway , Komerční banka ),
- providing e-shop operation services ( Shoptet ) and other services related to e-shop operation ( Google ADS , Google Analytics)
- providing marketing services ( Google Reviews , Spolehlivé recenze.cz , Heureka - Verified by customers , Zboží.cz ).
2. The controller does not intend to transfer personal data to a third country (a country outside the EU).
3. Dr. Staněk, spol. s ro, operating the website guareta.cz, hereby informs its customers that it is interested in constantly improving its services and increasing customer satisfaction. In connection with the fulfillment of the above-mentioned goal, we process the personal data that you have provided to us (name, surname, e-mail address, telephone number, transaction date, order ID and information about purchased products). The reason for processing personal data is the legitimate interest in increasing the satisfaction of our customers and the quality of our services.
4. In order to achieve this goal, we will send you satisfaction questionnaires to your email address after purchasing our products. For the purpose of evaluating the satisfaction questionnaires, we cooperate with our partners, to whom we transfer the above-mentioned personal data for this purpose:
- the operator of the web portal spolehliverecenze.cz with its registered office at Sokola Tůmy 743/16, Mariánské Hory, 709 00 Ostrava, Czech Republic, VAT number: CZ19626304 and the company eKomi Holding GmbH with its registered office at Zimmerstr. 11, 10969 Berlin, Germany,
- the operator of statistical and marketing services: Google Reviews , Google ADS , Google Analytics is Google Czech Republic, sro with its registered office at Stroupežnického 3191/17, 150 00 Prague, Czech Republic, Company ID 27604977 and Google Ireland Limited with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland, Company ID: 6388047V,
- the operator of the Heureka web portal - Verified by customers is the company: Heureka Group with its registered office at Karolinská 706/3, 186 00 Prague 8 – Karlín, Czech Republic, VAT number: CZ07822774,
- the operator of the Zbozi.cz web portal is Seznam.cz , as with its registered office at Radlická 3294/10, 150 00 Prague 5, Company ID: 26168685.
- the operator of the web portal Shoptet, as, with its registered office at Dvořeckého 628/8, 169 00 Prague 6, Czech Republic, VAT number: CZ28935675.
5. If you do not agree to sending the satisfaction questionnaire and transferring your personal data to the above-named companies, you have the right to object to this processing of personal data, either by e-mail to obchod@drstanek.cz, or by following the procedure specified in the satisfaction questionnaire.
VI. Your rights
1. Under the conditions set out in the GDPR, you have
- the right to access your personal data pursuant to Article 15 of the GDPR,
- the right to rectification of personal data pursuant to Article 16 of the GDPR, or restriction of processing pursuant to Article 18 of the GDPR.
- the right to erasure of personal data pursuant to Article 17 of the GDPR.
- the right to object to processing pursuant to Article 21 GDPR and
- the right to data portability pursuant to Article 20 of the GDPR.
- the right to withdraw consent to processing in writing or electronically to the address or email of the administrator specified in Article III of these terms and conditions.
2. You also have the right to file a complaint with the Office for Personal Data Protection if you believe that your right to personal data protection has been violated.
VII. Conditions for securing personal data
1. The Administrator declares that it has taken all appropriate technical and organizational measures to secure personal data.
2. The controller has taken technical measures to secure data repositories and personal data repositories in paper form, in particular …
3. The administrator declares that only persons authorized by him have access to personal data.
VIII. Final provisions
1. By submitting an order from the online order form, you confirm that you are familiar with the terms and conditions of personal data protection and that you accept them in their entirety.
2. You agree to these terms and conditions by checking the consent box via the online form. By checking the consent box, you confirm that you are familiar with the terms and conditions of personal data protection and that you accept them in their entirety.
3. The Administrator is entitled to change these terms and conditions. The Administrator will publish the new version of the personal data protection terms and conditions on its website and will also send you the new version of these terms and conditions to the email address you provided to the Administrator.
These terms and conditions come into effect on December 27, 2021.
