Privacy policy and cookies

Privacy Policy

Thank you for your interest in our online store. Protecting your privacy is very important to us. In this privacy policy you will find detailed information on how we handle your data.

General Statements

The administrator of your data is: Health Group sp. z o.o.

Your personal data is processed in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data and repealing Directive 95/46/EC (hereinafter referred to as RODO).

.

The data controller shall exercise special and due care to protect your rights, and in particular shall ensure that your data are:

a) processed lawfully, fairly and transparently (“lawfulness, fairness and transparency”);

b) collected for specific, explicit and legitimate purposes and not further processed in a way incompatible with those purposes;

c) adequate, relevant and limited to what is necessary for the purposes for which they are processed (“data minimization”);

d) correct and, where necessary, kept up to date; every reasonable step shall be taken to ensure that personal data which are inaccurate in light of the purposes for which they are processed are erased or rectified without delay;

(e) kept in a form which permits identification of the data subject for no longer than is necessary for the purposes for which the data are processed;

f) processed in a manner that ensures adequate security of personal data, including protection against unauthorized or unlawful processing and accidental loss, destruction or damage, by means of appropriate technical or organizational measures.

Scope of data collection and recipients of data.

The controller may process the following categories of your personal data:

a) first name;

b) surname;

c) delivery address;

d) telephone number;

(e) e-mail address;

f) company name;

g) numbers: NIP, REGON, KRS

h) delivery address;

i) device IP;

j) Information collected by cookies: Language, region, product preferences to present advertising content

Basis of data processing

Each time the purpose and scope of the data processed by the Administrator results from the actions taken by you on the Website and is based on the provisions of the law.

Providing your personal data is voluntary, although in many circumstances it is necessary for the execution of a contract, contact or other request. The Administrator processes the data obtained on the grounds indicated below:

a) Article 6(1)(b) of the RODO – in order to establish and perform a sales agreement and a contract for the provision of electronic services (registration and maintaining an account in the online store);

b) art. 6(1)(c) RODO – processing is necessary for the fulfilment of legal obligations arising from the law, e.g. the Accounting Act or the Tax Code;

c) Article 6(1)(f) RODO – processing is necessary for the purposes of the legitimate interests pursued by the controller, such as direct marketing of its own products and services; as well as asserting and defending claims and improving the presentation of products, services and website performance.

Sources of data

We collect personal data only when you provide it to us voluntarily by placing an order, contacting us (e.g. using the contact form or by e-mail) or creating a customer account in the online store as well as through cookies (the rules of use of cookies are described below).

Data storage period

Data retention periods depend on the processes by which personal data are processed.

a) in the case of creating an account in the online store – until the termination of the agreement for electronic provision of services by the Customer (deletion of the account).

b) in the case of purchases – for the period resulting from accounting and tax obligations – resulting from the provisions of law, such as the Accounting Act or the Tax Code; and also for the period of prescription of claims resulting from the Civil Code.

c) in the case of direct marketing – until you object.

Transfer data

The Administrator of personal data reserves that, in accordance with the provisions of RODO and the Act on the protection of personal data, it may make your personal data available to other entities providing services in the field of hosting, administration, newsletter sending, maintenance and management of websites, the execution of orders in online stores, the investigation and establishment of claims and clarification of the circumstances of unauthorized or illegal use of services provided electronically, the implementation of sports events and other events promoting a healthy lifestyle, as well as companies from the capital group of the Administrator, including Nutrifarm sp. z o.o.

.

As part of the entrustment of data processing [https://gsuite.google.com/terms/dpa_terms.html] – on our behalf, an external service provider performs hosting and website presentation services for us. All data which – in the manner described in this privacy policy – are collected in the context of the use of our website or in the forms provided for this purpose in the online store are stored on the servers of this service provider. Processing on other servers takes place only to the extent specified in this privacy policy.

For the purpose of fulfilling the contract, we pass on your data to the delivery service, insofar as this is necessary for the delivery of the ordered goods. Depending on which payment service provider you select in the ordering process, we will transfer the payment data collected for that purpose to the credit or payment institution processing the payment and, if applicable, to the payment service provider selected by us or you. Some payment service providers collect the data themselves if you create an account with them. In such cases, you must log in to the payment service provider with your access data as part of your order. The privacy policy of the respective payment service provider will then also apply.

.

Newsletter

If you subscribe to our newsletter, then we will use the data necessary for this purpose, or provided to us separately by you, in order to send you our newsletter by email on a regular basis.

You can unsubscribe from the newsletter at any time by sending us a message to this effect or by using the corresponding link in the newsletter. After unsubscribing, we will delete your e-mail address unless you have expressly agreed to the further use of your data for other purposes or we reserve the right to further use your data in statutory cases, in which case we will inform you of this statement.

.

The newsletter is sent as part of the entrustment of data processing on our behalf by a service provider, to whom we pass on your email address for this purpose.

The processing of personal data for the purpose of sending newsletters is based on the legal basis, which is the legitimate interest of the administrator – the marketing of its own products and services. The consent you indicate when signing up for the newsletter is based on the Act on the provision of electronic services and the Telecommunications Law and concerns the desire to receive commercial materials and consent to the use of terminal equipment such as telephone or email. This consent is necessary to receive our newsletter, but you can always withdraw it.

.

Solicited mail advertising and your right to object

We also reserve the right to process your name and postal address for our own promotional purposes in relation to our products, e.g. sending you the latest offers and information on our products by post. This is in order to safeguard our legitimate interest in contacting our customers for advertising purposes.

Advertising mailings are delivered under an entrustment of data processing on our behalf by a service provider to whom we transfer your data for this purpose. You may object to the storage and use of your data at any time by sending a message to our contact address: [please enter address].

Rights of data subjects in relation to the processing of personal data

You have the right to obtain from the controller confirmation as to whether or not personal data relating to you are being processed and, if so, to obtain access to that data.

You have the right to request from the controller the immediate erasure of personal data concerning you, and the controller is obliged to erase personal data without undue delay if the circumstances indicated in Article 17(1) of the RODO apply.

You have the right to request the controller to restrict the processing of your personal data.

You have the right to receive in a structured, commonly used, machine-readable format the personal data concerning you that you have provided to the controller, and you have the right to send that personal data to another controller without hindrance.

You have the right to object to the processing of personal data concerning you. If your personal data are processed for direct marketing purposes, you have the right to object at any time to the processing of personal data concerning you for such marketing, including profiling, to the extent that the processing is related to such direct marketing.

.

After you have exercised your right to object, we will not continue to process your personal data unless we demonstrate that there are compelling legitimate grounds for the processing and these override your interests and rights, or the processing is for the purpose of asserting, exercising or defending claims.

The above does not apply if the processing takes place for direct marketing purposes. In this case, we will not continue to process your personal data for the above purpose.

In order to exercise the rights referred to above, you may contact the Data Protection Officer of the Administrator by sending an appropriate message in writing or by e-mail. Exercising your rights is also possible by logging into your user account and changing your data.

Please contact the Administrator’s Data Protection Officer at: E-mail address: contact@healthgroup.com.pl; Mailing address: Wiliama Heerleina Lindleya , for any questions, comments and to make demands on your rights.

The right to lodge a complaint with the competent data protection authority.

You have the right to lodge a complaint with the relevant supervisory authority if you believe that any personal data relating to you is being processed in breach of the RODO. The authority competent for the protection of personal data in the territory of Poland is the President of the Office for Personal Data Protection.

Cookies and Internet tools.

To make our website more attractive and to enable certain functions for the display of relevant products or for market research purposes, we use so-called cookies on our websites. This is used to protect our legitimate interests in the optimal presentation of our offer as part of the analysis and evaluation of our interests. Cookies are small text files that are automatically stored on your terminal device.

Cookies are used to collect information related to the use of the Website by the User. Cookies enable in particular:

  • maintaining a session of the Website User (after logging in), thanks to which a User does not have to re-enter login and password on each subpage of the Website;
  • adaptation of the content of the Website pages to User preferences and optimization of use of the websites; in particular, these files enable recognition of the Website User’s device and appropriate display of the website, adjusted to individual needs;
  • creation of statistics that help to understand how Website Users use the websites, which enables improvement of their structure and content.
.

There are two main types of cookies used within the Service: “session” (session cookies) and “permanent” (persistent cookies). Session” cookies are temporary files that are stored in the final device of the User until logging out, leaving the website or switching off software (web browser). “Permanent” cookies are stored in the User’s end device for the time specified in the parameters of cookies or until they are deleted by the User.

The following types of cookies are used within the Service:

  • “necessary” cookies, enabling use of services available within the Website, e.g. authentication cookies used for services requiring authentication within the Website;
  • “performance” cookies, enabling collection of information about the manner of use of the Website;
  • “functional” cookies, enabling “remembering” the settings selected by the User and personalization of the User’s interface.
.

The storage period is specified in the Cookies settings of your web browser. You can configure your browser to receive information about the use of Cookies and to be able to decide whether to accept or reject them in certain cases or not at all. Browsers manage their cookie settings in different ways. In the help menu of your browser, you will find explanations on how to change your Cookies settings. These are available at the following links:

Internet Explorer™: https://support.microsoft.com/pl-pl/help/17442/windows-internet-explorer-delete-manage-Cookies

Safari™: http://safari.helpmax.net/pl/ochrona-i-prywatnosc/usuwanie-plikow-cookie/

Chrome™: https://support.google.com/chrome/answer/95647?hl=pl&hlrm=en

Firefox™: https://support.mozilla.org/pl/kb/usuwanie-ciasteczek

Opera™: http://help.opera.com/Windows/12.10/pl/Cookies.html

When you do not agree to the use of cookies, the functionality of our website may be limited.

This website also uses so-called DoubleClick Cookies as part of Google Analytics (see below), which enable your browser to be recognised when you use other websites. The information automatically generated by the cookie about your use of this website is transferred to a Google server in the USA and stored there. Due to the IP anonymisation activated on this website, your IP address is truncated before transmission within Member States of the European Union or other States that are parties to the Agreement on the European Economic Area. Only in exceptional cases is the full IP address transmitted to a Google server in the USA and shortened there. The anonymized IP address transmitted by your browser within the scope of Google Analytics is not combined with other Google data.

.

Google will use this information to compile a report on website activity and to provide other services related to website usage. The above – as part of the analysis and evaluation of interests – serves to protect our legitimate interest in the optimal and effective operation of our website in the marketplace. Google will transmit this information to third parties if this is required by law or if third parties process this data on behalf of Google.

Google Double Click is an offering of Google LLC. (www.google.com).

Google LLC is headquartered in the United States and is EU-US-Privacy Shield certified. The current certification is available at this link. As part of an agreement between the US and the European Commission, the latter has determined an adequate level of data protection for companies with Privacy Shield certification.

You can deactivate DoubleClick Cookies by clicking on link. In addition, you may find information about the use of Cookies and relevant settings on the Digital Advertising Alliance website. You may also configure your browser to notify you when you receive cookies, giving you the chance to decide whether to accept them or reject them altogether. If you do not accept the use of Cookies, functionality of our website may be limited.

.

Use of Google (Universal) Analytics for web analytics purposes

Our website uses Google (Universal) Analytics, a web analytics tool from Google Inc. (www.google.com). This – as part of the analysis and evaluation of interests – serves to protect our legitimate interest in the optimal presentation of our offer. Google (Universal) Analytics uses methods that enable an analysis of your use of the website – for example, cookies. The automatically collected information on your use of this website is generally transmitted to and stored by Google on servers in the United States. Due to the IP anonymisation activated on this website, your IP address is truncated before transmission within Member States of the European Union or other States that are parties to the Agreement on the European Economic Area. Only in exceptional cases is the full IP address transmitted to a Google server in the USA and shortened there. The anonymized IP address transmitted by your browser within the scope of Google Analytics is generally not combined with other Google data.

.

Google LLC is headquartered in the USA and is certified by EU-US-Privacy Shield. The current certification is available at this link. As part of an agreement between the US and the European Commission, the latter has determined an adequate level of data protection for companies with Privacy Shield certification.

You can prevent the recording of the data collected by the cookies about your use of our website (including your IP address) by Google as well as the processing of this data by Google if you download and install the browser plug-in under the following link: https://tools.google.com/dlpage/gaoptout?hl=pl

Alternatively – instead of installing the browser plug-in, you can also click on this link to disable data collection by Google Analytics on our website. An opt-out cookie will then be stored on your end device. If you delete your cookies, you will need to click on the above link again.

Advertising with e-marketing tools

Google AdWords Remarketing

With the help of Google Adwords we promote our website in the search results and on third party websites. For this purpose, when you visit our website, a so-called Google remarketing cookie is automatically left on the device of each visitor, which, with the help of a pseudonymous identifier (ID) and based on the pages you have visited, enables interest-based advertising to be displayed. The above – as part of the analysis and evaluation of interests – serves to protect our legitimate interest in optimising the market performance of our website.

Further data processing only takes place if you have consented to Google linking your browsing and application usage history to your account and using information from your Google account to personalize the advertisements that are displayed on the websites. If, in this case, you are logged in when you visit our website on Google, Google will use your data together with Google Analytics data to create and define lists of target groups for remarketing on different devices. For this purpose, Google temporarily combines your personal data with Google Analytics data to create the target groups.

The Google AdWords Remarketing service is an offering of Google LLC (www.google.pl). Google LLC is headquartered in the USA and is EU-US-Privacy Shield certified. The current certificate is available at the link provided. As part of the agreement between the US and the European Commission, the latter has determined an adequate level of data protection for companies with Privacy Shield certification.

You can deactivate cookies used for remarketing by clicking on this link. You can also find out more about the use of cookies and the relevant settings on the Digital Advertising Alliance website.

AdRoll Retargeting

With the help of our advertising partner AdRoll Advertising Limited, Level 6, 1, Burlington Plaza, Burlington Road, Dublin 4, Ireland we promote our website in search results and on third party websites. For this purpose, a cookie from these service providers or their partners is automatically left on your device when you visit our website, which, with the help of a pseudonymous identifier (ID) and based on the pages you have visited, enables interest-based advertising to be displayed. The above – as part of the analysis and evaluation of interests – serves to protect our legitimate interest in optimizing the market performance of our website.

You can deactivate the cookies used for retargeting by clicking on one of the following links: https://app.adroll.com/optout/safari

Alternatively, you may disable the use of Cookies by third-party vendors by visiting the site to make the appropriate deactivation (Network Advertising Initiative).

Social networking plugins

Using social networking plugins

On our website, so-called social plugins (“plugins”) of social networking sites are used.

Displaying our website containing such a plug-in, your browser will establish a direct connection to the servers of Facebook, Google, Twitter or Instagram. The content of the plug-in is transmitted by the respective service provider directly to your browser and integrated into the website. Through this integration, service providers receive information that your browser has viewed our website, even if you do not have a profile with the respective service provider or are not currently logged in with them. This information (including your IP address) is sent by your browser directly to the server of the relevant service provider (some servers are located in the USA) and stored there. If you are logged into one of the social networks, your provider will be able to directly associate your visit to our website with your profile on that social network. If you use the respective plugin, e.g. click on the “Like” button or the “Share” button, the corresponding information will also be transmitted directly to the server of the respective service provider and stored there. This information will also be published on the respective social network and will appear to the people you have added as your contacts.

.

The purpose and scope of data collection and their further processing and use by the service providers, as well as the possibility of contacting you and your rights in this respect and the possibility of making settings to protect your privacy are described in the privacy policy of the service providers.

http://www.facebook.com/policy.php
https://twitter.com/privacy
https://help.instagram.com/155833707900388

If you do not want social networking sites to attribute the data collected during your visit to our website directly to your profile on that site, you must log out of that site before visiting our site. You can also prevent plug-ins from loading on our website altogether by using the appropriate extensions for your browser, such as blocking scripts with “NoScript” (http://noscript.net/).”

.

Video plugins for YouTube

Content from other providers is integrated with this site. The video plugins for YouTube are provided by Google Inc (the “Service Provider”). YouTube is operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).

In the case of YouTube videos available on our website, extended data protection has been activated. This means that YouTube does not collect or save information about visitors to the site unless they enable the video.

The purpose and scope of data collection and further processing and use of data by service providers, as well as your rights in this regard and options for settings to ensure protection of your privacy are described in Google’s privacy policy.