Privacy Policy

Privacy Policy

These Privacy Policy (hereinafter referred to as the “Policy”) describe the method of collecting, using, and further handling of personal data obtained through the web interface www.magsy.shop (hereinafter referred to as the “Web Interface”).

Personal Data Controller

MAGSY, s.r.o.
Registered office: Holešovská 457, 763 16 Fryšták
Company ID: 26230224
VAT ID: CZ26230224
Registered in: Commercial Register maintained by the Regional Court in Brno, File No. C 38124

Contact Details of the Controller

Mailing address: Holešovská 457, 763 16 Fryšták
Phone: +420 577 220 497, Mon–Fri 7:00–15:30
Fax: +420 577 019 097
E-mail: e-shop@magsy.cz, objednavky@magsy.cz

The protection of personal data is very important to us. Please read this Policy carefully, as it contains important information regarding the handling of your personal data and related rights and obligations.

1. INTRODUCTORY PROVISIONS

1.1. What legal framework do we follow when handling personal data?

We process personal data in accordance with the legal order of the Czech Republic and directly applicable regulations of the European Union, in particular Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (General Data Protection Regulation, “GDPR”), Act No. 110/2019 Coll., on the processing of personal data, as amended, Act No. 480/2004 Coll., on certain information society services, as amended, and Act No. 127/2005 Coll., on electronic communications, as amended.

1.2. What is personal data?

Personal data means any information that identifies or may identify a specific natural person. Personal data include in particular (but not exclusively):

  • Identification data (name and surname, identification number, tax ID number, date of birth, gender, login to a user account);
  • Contact data (residential or delivery address, telephone number, e-mail address);
  • Other data (information obtained via cookies, IP address including browser type, device and operating system, time and number of accesses to the web interface, and other similar information).

2. COLLECTION AND USE OF PERSONAL DATA

2.1. How do we collect your personal data?

You provide your personal data in particular when placing an order (or via a contact form), or when creating a user account. If there is any change to your personal data, please inform us accordingly.

When visiting and using the Web Interface, certain personal data may also be collected and stored via cookies. More information on cookies is provided in Article 5 of this Policy.

2.2. On what legal basis and for what purposes do we process your personal data?

  • Data provided during inquiries (especially through the contact form) and when ordering goods may be processed without your explicit consent on the basis of and for the purpose of concluding and performing the contract, i.e. for delivering the goods. We may also process such data to fulfil our statutory obligations (e.g. record-keeping, archiving of tax documents) and based on our legitimate interest to protect our legal claims.
  • Data provided when creating a user account may be processed without your explicit consent on the basis of contract performance and solely to enable access, management, and operation of the user account.
  • Data provided when publishing reviews on the Web Interface may be processed without your explicit consent on the basis of a legal obligation, in particular to verify the authenticity of reviews.
  • Your e-mail address may be used without your explicit consent, based on our legitimate interest, to send commercial communications relating to goods similar to those you ordered. You can refuse such communications at any time (including during the ordering process).
  • If you give your consent on the Web Interface, we may process the personal data you provide there—especially when placing an order or creating a user account—for sending commercial communications and direct marketing, or for other purposes you explicitly agreed to. If you are under 15, your legal guardian must provide consent. In case of doubt, we may request age confirmation.
  • Your satisfaction with your purchase is surveyed via e-mail questionnaires under the “Verified by Customers” program (Heureka.cz). We send them after each purchase unless you opt out. We process your personal data for this on the basis of our legitimate interest to check and improve our services and goods and to determine your satisfaction. For sending the questionnaires, evaluating your feedback, and analysing our market position, we use a processor (the operator of Heureka.cz), to whom we may transmit information about the purchased goods/services and your e-mail address. No personal data are transferred to any third party for its own purposes. You may object at any time via the link in the questionnaire e-mail; in that case we will not send further questionnaires.
  • If you agree to the transfer of personal data for purchase evaluation, we will forward your order information together with your e-mail address to Seznam.cz so it can obtain independent reviews of our products and services. The transferred data will be retained only for the time necessary for this use.
  • Where cookies result in personal data processing, we do so either on the basis of concluding and performing the contract (necessary cookies only) or on the basis of your consent (granted in the cookie banner on the Web Interface), in particular for user support, improving our services including user behaviour analysis, and marketing.

We may use your personal data for a different purpose than that for which they were obtained only with your consent.

2.3. How long do we use the data?

Personal data provided during inquiries, orders of goods or services, or registration are used only for the time necessary to fulfil the contract and legal obligations, or to protect our legal claims.

If you give explicit consent to personal data processing—or if we use your e-mail address for sending commercial communications and/or for checking and improving our services and goods as described above—the data will be used for as long as the Web Interface operates (offering services or goods similar to those you ordered) or for the period stated in the consent.

3. YOUR RIGHTS IN RELATION TO PERSONAL DATA

3.1. Right to withdraw consent

If we process your personal data solely on the basis of your consent (i.e. without another legal ground), you may withdraw that consent at any time. You can withdraw consent via:

  • e-mail sent to our contact e-mail address;
  • phone call to our contact number;
  • a written letter sent to our mailing address;
  • cookie settings — in the Web Interface or your browser;
  • for commercial communications — using the method indicated in each e-mail (unsubscribe link or otherwise).

Withdrawal does not affect the lawfulness of processing based on consent before its withdrawal.

3.2. Right of access

You have the right to request information on whether we process your personal data. If we do, you have the right to access the data and, in particular, the following information: purpose of processing; categories of personal data; recipients or categories of recipients; storage period. Upon request, we will provide a copy of the processed data; we may charge a fee for additional copies not exceeding the administrative costs.

3.3. Right to rectification

If your personal data are inaccurate or incomplete, you have the right to request immediate correction and/or completion.

3.4. Right to object

You have the right to object at any time to processing for direct marketing purposes, including any automated processing. After an objection, we will stop processing your personal data for these purposes.

3.5. Right to erasure (“right to be forgotten”)

You have the right to request that we delete your personal data if they are no longer necessary for the purposes for which they were collected or processed, you have withdrawn consent, you have objected to processing, or the data were processed unlawfully. Unless there are legal grounds to refuse, we will comply.

3.6. Right to restriction of processing

You may request restriction if you contest the accuracy of data, the processing is unlawful and you request restriction instead of erasure, we no longer need the data but you require them for legal claims, or you have objected to processing. During restriction, we may only store the data; further processing is possible only with your consent or for legal reasons.

3.7. Right to data portability

You have the right to obtain personal data you provided to us in a structured, commonly used and machine-readable format and to transmit those data to another controller.

3.8. How to exercise your rights

You can exercise your rights using our contact details. All information and actions will be provided without undue delay. If you are not satisfied with our handling, you may contact the competent authority, in particular the Office for Personal Data Protection (ÚOOÚ) at www.uoou.cz. If your residence, place of work, or the alleged infringement is in another EU Member State, you may contact the competent supervisory authority in that state.

4. DATA MANAGEMENT AND PROCESSING

4.1. Who processes your personal data?

We are the controller within the meaning of the GDPR. To the extent necessary to fulfil the contract or other obligations, we may transmit your personal data to other parties (e.g. carriers, cloud-storage providers, e-mail campaign managers, the “Verified by Customers” certificate provider, external accountants, or others involved in fulfilling the contract/obligations). We may also appoint other processors and recipients. Details are available upon request.

Your personal data will not be transferred outside the EU unless necessary for contract performance or otherwise in accordance with GDPR rules for such transfers.

4.2. How do we process personal data?

All personal and other collected data are fully secured against misuse. Personal data are processed electronically by automated means or in paper form by non-automated means.

5. COOKIES

5.1. What are cookies?

Cookies are text files stored on your computer or other device that enable the Web Interface to function. Not all cookies collect personal data; some only ensure correct functionality. You can refuse cookies in your browser settings; refusal may limit the full use of the Web Interface.

5.2. What cookies does the Web Interface use and for what purposes?

The Web Interface uses session (temporary) cookies, which are automatically deleted after the browsing session ends, and persistent cookies, which remain on your device until they expire or are deleted. The cookies used include:

  • First-party cookies — assigned to our domain; these include necessary and performance cookies used for concluding and performing the contract (mainly necessary cookies) or, where applicable, based on your consent. They may be session or persistent.
    • Necessary cookies — enable navigation and basic functions; they typically do not identify you and are not personal data.
    • Performance cookies — analyse use of the Web Interface (visits, time on site, etc.); data are typically anonymised; collection takes place based on your consent (via the cookie banner).
  • Third-party cookies — assigned to another domain even while you are on our site; based on your consent, they allow us to analyse the site and display tailored ads; these include functional and targeting/advertising cookies.
    • Functional cookies — personalise content by remembering logins, geolocation, etc.; personal data may be collected/processed.
    • Targeting and advertising cookies — display targeted ads on and off the Web Interface; personal data may be collected/processed. We may share information about your use of the site with our social media, advertising, and analytics partners.

5.3. Services using cookies

We use Google Analytics and possibly other services provided by Google LLC (“Google”), Facebook Pixel by Facebook Inc., and Sklik by Seznam.cz, a.s. These services work with information obtained via cookies.

Google Analytics is used to obtain statistical information about your use of the Web Interface. Cookies obtained by this service expire depending on your browser settings, but at most after 2 years, or until you delete them manually.

Google Ads identifies you within Google’s advertising network and enables retargeting/remarketing. Cookies obtained by this service expire depending on the browser settings, but at most after 18 months, or until you delete them manually.

Facebook Pixel identifies you within Facebook Inc.’s advertising network and enables retargeting/remarketing. Cookies obtained by this service expire depending on the browser settings, but at most after 2 years, or until you delete them manually.

Sklik.cz identifies you within Seznam.cz’s advertising network and enables retargeting/remarketing. Cookies obtained by this service expire depending on the browser settings, but at most after 18 months, or until you delete them manually.

If you are interested in how Google uses data it receives from us and how to adjust or disable processing, see: How Google uses data when you use our partners’ sites or apps.

5.4. How to set and possibly refuse cookies

Guides for managing cookies in your browser:

This Policy is valid and effective as of January 1, 2022.