Privacy policy
Сделал более юридически правильную версию для международного сайта, но с учётом того, что компания зарегистрирована в Польше и как data controller должна соблюдать GDPR. Добавил: правовые основания обработки, категории данных, платежи через third-party processors, международные передачи данных, сроки хранения, права пользователей, жалобы в UODO, cookies и отсутствие ссылок на генераторы. GDPR требует прозрачности обработки и закрепляет права пользователя на доступ, исправление, удаление, ограничение обработки, переносимость, возражение и жалобу в надзорный орган. Для передач данных за пределы EEA применяются специальные правила и гарантии, включая adequacy decisions и Standard Contractual Clauses.
Last Revised: 2026-06-22
PRIVACY POLICY
This Privacy Policy explains how KOKOBOLO SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ (“Company”, “we”, “us”, or “our”) collects, uses, stores, shares, and protects personal data when you visit our website, create an account, place an order, contact us, or otherwise use our services.
This Privacy Policy applies to users and customers worldwide. As a company established in Poland, European Union, we process personal data in accordance with applicable data protection laws, including the General Data Protection Regulation (EU) 2016/679 (“GDPR”), where applicable.
For the purposes of this Privacy Policy, “you”, “your”, and “user” refer to any person, company, or other entity using our website or services.
DATA CONTROLLER
The controller of your personal data is:
KOKOBOLO SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ
Adama Branickiego 21/U 3
02-972 Warsaw
Poland
Email: info@kokobolo.com.pl
Phone: +48 694 909 662
If you have any questions about this Privacy Policy or the processing of your personal data, you may contact us using the contact details above.
PERSONAL DATA WE COLLECT
We may collect and process the following categories of personal data, depending on how you use our website and services:
- Account information
When you create an account, we may collect your name, surname, email address, phone number, username, password, billing address, shipping address, and other information necessary to create and manage your account. - Order and purchase information
When you place an order, we may collect information necessary to process and deliver your order, including your name, surname, email address, phone number, billing address, shipping address, order details, purchased products, payment status, invoice information, tax information where required, delivery details, and purchase history. - Communication information
When you contact us by email, contact form, chat, phone, social media, or any other method, we may collect your contact details, message content, attachments, order information, support history, and any other information you choose to provide. - Payment information
Payments may be processed by third-party payment service providers. We do not store full payment card details on our own systems. Payment processors may collect and process payment card numbers, card expiry dates, billing details, authentication data, transaction identifiers, and other payment-related information required to complete the transaction. - Technical and device information
When you use our website, we may automatically collect technical information such as IP address, browser type and version, device type, operating system, language settings, referring and exit pages, date and time of access, pages viewed, clickstream data, session data, and similar technical information. - Cookies and tracking information
We may collect information through cookies and similar technologies, including cookie identifiers, browsing behavior, session activity, device identifiers, analytics information, source tracking, and item tracking data. - Legal and compliance information
Where necessary, we may process information required to comply with legal obligations, resolve disputes, prevent fraud, respond to lawful requests, maintain accounting records, issue invoices, or enforce our rights.
We do not intentionally collect special categories of personal data, such as information about racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic data, biometric data, health data, or data concerning sex life or sexual orientation. Please do not provide such information to us.
PURPOSES OF PROCESSING
We may process your personal data for the following purposes:
- to create, manage, and maintain your account;
- to process, confirm, ship, and deliver your orders;
- to process payments and prevent payment fraud;
- to provide customer support and respond to your inquiries;
- to send order confirmations, shipping updates, refund updates, and other service-related messages;
- to manage returns, refunds, exchanges, complaints, and warranty claims;
- to issue invoices and maintain accounting and tax records;
- to operate, maintain, secure, and improve our website and services;
- to detect, prevent, and investigate fraud, abuse, security incidents, or unlawful activity;
- to comply with legal, tax, accounting, customs, consumer protection, and regulatory obligations;
- to establish, exercise, or defend legal claims;
- to send marketing communications where permitted by law or where you have provided consent;
- to analyze website performance and improve user experience.
LEGAL BASES FOR PROCESSING
Where GDPR or similar data protection laws apply, we rely on one or more of the following legal bases for processing your personal data:
- Performance of a contract
We process personal data where necessary to perform a contract with you or to take steps at your request before entering into a contract, including processing orders, payments, delivery, returns, refunds, and customer support. - Legal obligation
We process personal data where necessary to comply with legal obligations, including accounting, tax, customs, consumer protection, fraud prevention, and regulatory requirements. - Legitimate interests
We may process personal data where necessary for our legitimate business interests, provided that such interests are not overridden by your rights and freedoms. This may include website security, fraud prevention, business administration, customer support, service improvement, and legal claim management. - Consent
Where required by law, we may process personal data based on your consent, including for certain cookies, marketing communications, or optional services. You may withdraw your consent at any time. Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.
COOKIES AND SIMILAR TECHNOLOGIES
Cookies are small text files stored on your device when you visit a website. We may use cookies and similar technologies to operate our website, remember user preferences, improve website functionality, analyze website traffic, secure our services, and, where applicable, support marketing activities.
We may use the following categories of cookies:
- Strictly necessary cookies
These cookies are required for the website to function properly. They enable core features such as security, checkout, account login, shopping cart functionality, and order processing. - Functional cookies
These cookies help remember your preferences and improve your user experience. - Analytics cookies
These cookies help us understand how users interact with our website, identify errors, measure performance, and improve our services. - Marketing cookies
Where used, these cookies may help us measure advertising performance or show more relevant content. These cookies are used only where permitted by law and, where required, based on your consent.
You can manage cookies through your browser settings or, where available, through our cookie settings tool. Disabling certain cookies may affect the functionality of the website.
PAYMENT PROCESSING
Payments are processed by third-party payment service providers. We do not store full payment card details on our own systems.
Payment providers may process your personal data as independent controllers or processors, depending on the service and applicable law. Their processing of payment data may be subject to their own privacy notices and security standards.
We may receive limited payment-related information, such as payment confirmation, transaction ID, payment status, billing details, and fraud prevention results, where necessary to process your order and maintain our records.
SHARING OF PERSONAL DATA
We may share your personal data with selected third parties where necessary for the purposes described in this Privacy Policy, including:
- payment processors and financial institutions;
- shipping carriers, logistics providers, and customs brokers;
- IT service providers, hosting providers, cloud service providers, and website maintenance providers;
- analytics and cookie service providers;
- customer support, communication, and email service providers;
- accounting, tax, legal, and professional advisers;
- fraud prevention, security, and risk management providers;
- public authorities, courts, regulators, law enforcement bodies, tax authorities, or customs authorities where required by law or necessary to protect our rights.
We do not sell your personal data.
INTERNATIONAL DATA TRANSFERS
Because we operate internationally and may use service providers located in different countries, your personal data may be transferred to, stored in, or accessed from countries outside your country of residence, including countries outside the European Economic Area.
Where personal data protected by GDPR is transferred outside the European Economic Area, we will take appropriate measures required by applicable law. These measures may include transfers to countries recognized as providing an adequate level of protection, use of Standard Contractual Clauses, or other lawful transfer mechanisms.
DATA RETENTION
We retain personal data only for as long as necessary for the purposes for which it was collected, unless a longer retention period is required or permitted by law.
Retention periods may vary depending on the type of data and the purpose of processing, including:
- account data: for as long as your account remains active or as needed to provide services;
- order and transaction data: for as long as required for accounting, tax, consumer protection, and legal compliance purposes;
- communication data: for as long as necessary to handle your request and maintain business records;
- complaint, return, refund, and legal claim data: for as long as necessary to resolve the matter and protect our legal rights;
- technical, analytics, and cookie data: for the period necessary for website security, analytics, and operational purposes, subject to applicable law and cookie settings.
When personal data is no longer needed, we will delete, anonymize, or securely restrict it, unless retention is required by law.
SECURITY
We implement appropriate technical and organizational measures designed to protect personal data against unauthorized access, loss, misuse, alteration, disclosure, or destruction.
These measures may include access controls, secure systems, encryption where appropriate, monitoring, internal procedures, and cooperation with trusted service providers.
However, no method of transmission or storage over the internet is completely secure. We cannot guarantee absolute security of personal data.
YOUR RIGHTS
Depending on your location and applicable law, you may have the following rights regarding your personal data:
- the right to access your personal data;
- the right to receive a copy of your personal data;
- the right to correct inaccurate or incomplete personal data;
- the right to request deletion of your personal data;
- the right to restrict processing of your personal data;
- the right to object to processing based on legitimate interests;
- the right to data portability;
- the right to withdraw consent at any time where processing is based on consent;
- the right to object to direct marketing;
- the right to lodge a complaint with a competent data protection authority.
To exercise your rights, please contact us at info@kokobolo.com.pl.
We may need to verify your identity before responding to your request. We will respond to requests within the timeframe required by applicable law.
SUPERVISORY AUTHORITY
If you are located in the European Union or if GDPR applies to the processing of your personal data, you have the right to lodge a complaint with a competent data protection authority.
In Poland, the supervisory authority is the President of the Personal Data Protection Office.
MARKETING COMMUNICATIONS
We may send you marketing communications where permitted by law or where you have provided consent.
You may opt out of marketing communications at any time by following the unsubscribe instructions included in the message or by contacting us directly.
Even if you opt out of marketing communications, we may still send you service-related messages, including order confirmations, shipping updates, payment notices, return or refund updates, legal notices, and security communications.
MINORS
Our website and services are not intended for persons under the age of 18.
We do not knowingly collect personal data from minors. If we become aware that we have collected personal data from a minor without appropriate authorization, we will take reasonable steps to delete such data.
If you believe that a minor has provided us with personal data, please contact us at info@kokobolo.com.pl.
THIRD-PARTY WEBSITES AND SERVICES
Our website may contain references to third-party services, integrations, or tools. We are not responsible for the privacy practices, security, or content of third-party websites or services.
This Privacy Policy applies only to personal data processed by us in connection with our website and services.
CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy from time to time to reflect changes in our business, legal requirements, technologies, or data processing practices.
The updated version will be published on our website with the revised date. Where required by law, we may notify you of significant changes by additional means.
CONTACT
If you have any questions, concerns, or requests regarding this Privacy Policy or the processing of your personal data, please contact us at:
KOKOBOLO SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ
Adama Branickiego 21/U 3
02-972 Warsaw
Poland
Email: info@kokobolo.com.pl
Phone: +48 694 909 662
