polski čeština deutsch english русский

GDPR Clause

INFORMATION ABOUT THE PROCESSING OF PERSONAL DATA OF BUSINESS PARTNERS
(suppliers, buyers, customers)

BIMARO SP. Z O.O.  with its registered office in Cieszyn, ul. Bobrecka 27, entered in the National Court Register at the District Court in Bielsko-Biała, 8th Commercial Division of the National Court Register, under National Court Register (KRS) number: 0000178356, Tax Identification Number (NIP): 5482393353, Statistical Identification Number (REGON): 072883220, as the Controller of personal data, hereby informs you about the method and of personal data processing by the company and about the rights of the data subject, related to the processing of his/her personal data.

BIMARO Sp z o.o. has not appointed the Data Protection Officer.

You may contact the Controller in writing at the e-mail address: rodo@bimaro.pl or at the company’s address:

43-400 Cieszyn ul. Bobrecka 27

BIMARO Sp. z o.o. processes personal data in accordance with the law, i.e. in particular with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (hereinafter referred to as the “GDPR”), and the Act of 10 May 2018 on the protection of personal data.

 

Purpose of the personal data processing

Your data is processed for purposes related to the business activity of the Controller and business cooperation, i.e. establishing and completing commercial transactions, exercising rights and performing duties related to the conclusion, conduct and termination of the legal relationship between BIMARO Sp. z o.o. and the subject of personal data.

 

 

The legal basis of the processing of your personal data in accordance with Article 6(1)(a), (b), (c) and (f) of the GDPR is as follows:

  • your voluntary consent given by contacting us,
  • an agreement between the Controller of personal data and the data subject,
  • fulfilling the legal obligation of the Controller,
  • legitimate interests pursued by BIMARO Sp. z o.o.

Categories of recipients of personal data

Your personal data may be disclosed to entities with which the Controller cooperates, solely in order to perform the duties related to the conclusion, conduct and termination of the legal relationship between BIMARO Sp. z o.o. and the subject of personal data, i.e.: tax advisors, IT system providers, transport companies providing services to you, banks with regard to payments, state institutions in order to fulfil the legal obligation of the Controller, such as the Tax Office, Ministry of Finance, etc

 

Period of personal data retention

Your personal data will be retained for as long as it is necessary to pursue legitimate interests of the company, i.e. in order order to perform all obligations under the agreement, including those specified by law, and to pursue claims or protect your personal data.

The subject of personal data has the right to:

  • request free access to the personal data being processed;
  • request copies of the personal data being processed;
  • request rectification of the personal data if personal data are out of date;
  • request deletion of personal data processed by BIMARO Sp. z o.o. if there are no grounds and purposes for processing or if the data subject withdraws his/her consent or objects to the processing of personal data or if personal data have been processed in violation of the law;
  • request restricting the processing of personal data or the data transfers;
  • file a complaint about the processing of personal data with the supervisory body, i.e. the President of the Office for Personal Data Protection in the event of violation of the provisions of the General Data Protection Regulation (GDPR).

BIMARO Sp. z o.o. does not transfer personal data to third countries or international organisations, and does not use automatic decision-making systems, including profiling.

We would like to inform you that your personal data are protected against unauthorised access by third parties. Access to personal data is available only to authorised persons and only to the extent necessary, and access to the systems is available through a unique identifier secured with a password.