1. General Information
  1. This policy applies to the website operating at the following URL: son-of-gun.pl
  2. The service operator and Data Controller is: SON OF GUN LLC WIELKA 21/ 7A 61-775 POZNAŃ
  3. The contact email address of the operator: son@son-of-gun.com
  4. The Operator is the Administrator of your personal data with respect to the data voluntarily provided on the website.
  5. The website uses personal data for the following purposes:
    1. Managing a newsletter
    2. Handling inquiries via the contact form
    3. Preparation, packaging, and shipment of goods
    4. Provision of ordered services
    5. Presentation of offers or information
  6. The website performs functions of obtaining information about users and their behavior in the following ways:
    1. Through data voluntarily entered in forms, which are then entered into the Operator’s systems.
    2. By storing cookies on the end devices (so-called “cookies”).
  1. Selected Data Protection Methods Used by the Operator
  1. Login and data entry areas are protected at the transmission layer (SSL certificate). This ensures that personal and login data entered on the site are encrypted on the user’s computer and can only be read on the target server.
  2. Personal data stored in the database is encrypted in such a way that only the Operator possessing the key can read it. This way, the data is protected in case the database is stolen from the server.
  3. User passwords are stored in a hashed form. The hashing function is one-way – it is not possible to reverse it, which is the current standard for storing user passwords.
  4. The Operator periodically changes its administrative passwords.
  5. To protect data, the Operator regularly makes backups.
  6. An important aspect of data protection is the regular update of all software used by the Operator to process personal data, which particularly includes regular updates of software components.
  1. Hosting
  1. The website is hosted (technically maintained) on servers provided by: cyberFolks.pl
  2. The hosting company, to ensure technical reliability, keeps server-level logs. The logs may include:
    1. Resources identified by URLs (addresses of requested resources – pages, files),
    2. The time of receiving the request,
    3. The time of sending the response,
    4. The name of the client’s station – identification performed by the HTTP protocol,
    5. Information about errors that occurred during the HTTP transaction,
    6. The URL address of the page previously visited by the user (referer link) – if the user accessed the website through a link,
    7. Information about the user’s browser,
    8. Information about the IP address,
    9. Diagnostic information related to the self-ordering process through registrars on the website,
    10. Information related to handling emails sent to and from the Operator.
  1. Your Rights and Additional Information on How Data Is Used
  1. In certain situations, the Administrator has the right to transfer your personal data to other recipients if it is necessary to perform a contract with you or to fulfill obligations imposed on the Administrator. This applies to such groups of recipients:
    1. the hosting company on the basis of entrustment
    2. couriers
    3. postal operators
    4. insurers
    5. law firms and debt collectors
    6. banks
    7. payment operators
    8. public authorities
    9. authorized employees and collaborators who use the data to achieve the website’s purpose
    10. companies providing marketing services to the Administrator
  2. Your personal data processed by the Administrator will not be retained for longer than is necessary to perform related activities specified by separate regulations (e.g., accounting rules). Regarding marketing data, the data will not be processed for longer than 3 years.
  3. You have the right to request from the Administrator:
    1. access to your personal data,
    2. rectification,
    3. deletion,
    4. restriction of processing,
    5. and data portability.
  4. You have the right to object to the processing specified in point 3.2 regarding the processing of personal data for the purpose of performing legitimate interests pursued by the Administrator, including profiling, but the right to object may not be exercised if there are valid legally justified grounds for processing, overriding your interests, rights, and freedoms, in particular, establishing, pursuing, or defending claims.
  5. You have the right to lodge a complaint against the actions of the Administrator with the President of the Personal Data Protection Office, ul. Stawki 2, 00-193 Warsaw.
  6. Providing personal data is voluntary, but necessary to operate the website.
  7. Actions based on automated decision-making, including profiling, may be undertaken concerning you to provide services under the concluded contract and for the purpose of direct marketing conducted by the Administrator.
  8. Personal data is not transferred to third countries within the meaning of data protection regulations. This means we do not send them outside the European Union.
  1. Information in Forms
  1. The website collects information provided voluntarily by the user, including personal data, if provided.
  2. The website may save information about connection parameters (time, IP address).
  3. In some cases, the website may save information that facilitates the connection of data in the form with the email address of the user filling out the form. In this case, the user’s email address appears inside the URL of the page containing the form.
  4. The data provided in the form is processed for the purpose resulting from the function of a specific form, e.g., to process a service request or business contact, service registration, etc. Each time, the context and description of the form clearly inform what it is for.
  1. Administrator Logs
  1. Information about user behavior on the website may be subject to logging. This data is used for the purpose of administering the website.
  1. Important Marketing Techniques
  1. The Operator uses statistical analysis of website traffic through Google Analytics (Google Inc. based in the USA). The Operator does not transmit personal data to the operator of this service, only anonymized information. The service is based on the use of cookies in the user’s end device. Regarding user preferences collected by the Google advertising network, the user can view and edit information derived from cookies using the tool: https://www.google.com/ads/preferences/
  2. The Operator uses remarketing techniques that allow adjusting advertising messages to the user’s behavior on the website, which may create the illusion that the user’s personal data is used for tracking, but in practice, no personal data is transmitted from the Operator to advertising operators. The technological condition for such activities is the enabled support for cookies.
  3. The Operator uses Facebook Pixel technology. This technology makes Facebook (Facebook Inc. based in the USA) aware that a person registered there uses the website. It is based on the data of which it is an administrator; the Operator does not transmit any additional personal data to Facebook. The service is based on the use of cookies in the user’s end device.
  4. The Operator uses a solution to analyze user behavior by creating heat maps and recording behavior on the website. This information is anonymized before being sent to the service operator so that it does not know to which physical person it relates. In particular, passwords and other personal data are not subject to recording.
  5. The Operator uses a solution that automates the functioning of the website concerning users, e.g., it may send an email to a user after visiting a specific subpage if they have agreed to receive commercial correspondence from the Operator.
  1. Information about Cookies
  1. The website uses cookies.
  2. Cookies (so-called “cookies”) are IT data, in particular text files, which are stored on the end device of the Website User and are intended for the use of the website’s pages. Cookies usually contain the name of the website from which they come, the time of their storage on the end device, and a unique number.
  3. The entity placing cookies on the end device of the Website User and accessing them is the website operator.
  4. Cookies are used for the following purposes:
    1. maintaining the session of the Website User (after logging in), thanks to which the user does not have to re-enter the login and password on each subpage of the Website;
    2. achieving the purposes specified above in the “Important Marketing Techniques” section;
  5. Within the Website, two basic types of cookies are used: “session” cookies and “persistent” cookies. “Session” cookies are temporary files stored on the User’s end device until logging out, leaving the website, or turning off the software (web browser). “Persistent” cookies are stored on the User’s end device for the time specified in the parameters of the cookies or until they are deleted by the User.
  6. Web browsing software (web browser) usually allows cookies to be stored on the User’s end device by default. Website users can change these settings. The web browser allows you to delete cookies. It is also possible to automatically block cookies. Detailed information on this topic is provided in the help or documentation of the web browser.
  7. Restrictions on the use of cookies may affect some functionalities available on the website.
  8. Cookies placed on the end device of the Website User may also be used by entities cooperating with the website operator, particularly by companies: Google (Google Inc. based in the USA), Facebook (Facebook Inc. based in the USA), Twitter (Twitter Inc. based in the USA).
  1. Managing Cookies – How to Express and Withdraw Consent in Practice?
  1. If the user does not want to receive cookies, they can change the browser settings. We reserve that disabling cookies necessary for authentication, security, maintaining user preferences processes may hinder, and in extreme cases may prevent the use of websites.
  2. To manage cookie settings, select the web browser you use from the list below and follow the instructions: