Privacy Policy

PRIVACY NOTICE

the https://kaava.hu for visitors to the website https://kaava.hu

INTRODUCTION

 The service provider / data controller processes the data of persons registered on the website in the course of its operation, in order to provide them with an appropriate service.

The service provider intends to fully comply with the legal requirements for the processing of personal data, in particular Regulation (EU) 2016/679 of the European Parliament and of the Council.

This Privacy Notice has been prepared pursuant to Regulation (EU) 2016/679 of the European Parliament and of the Council on the protection of personal data of natural persons and on the free movement of such data, taking into account the content of Act CXII of 2011 on the right to information self-determination and freedom of information.

NAME OF THE SERVICE PROVIDER, DATA CONTROLLER:

Name/Company name: Káva építő, Vállalkozó és Szolgáltató Kft.

Registered office: 1162 Budapest, Diófa utca 61.

Tax number: HU10358380

E-mail:                        kaava@kaava.hu

Phone: +36302215205

DEFINITIONS

  • the GDPR (General Data Protection Regulation) is the European Union's new Data Protection Regulation;
  • processing: any operation or set of operations which is performed upon personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure, transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction;
  • processora natural or legal person, public authority, agency or any other body which processes personal data on behalf of the controller;
  • personal data: any information relating to an identified or identifiable natural person (data subject); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person;
  • controller: the natural or legal person, public authority, agency or any other body which, alone or jointly with others, determines the purposes and means of the processing of personal data; where the purposes and means of the processing are determined by Union or Member State law, the controller or the specific criteria for the designation of the controller may also be determined by Union or Member State law;
  • consent of the data subjecta freely given, specific, informed and unambiguous indication of the data subject's wishes by which he or she signifies his or her agreement to the processing of personal data concerning him or her by means of a statement or an unambiguous act of affirmation; - a personal data breach: a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data transmitted, stored or otherwise processed.
  • a personal data breacha breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data transmitted, stored or otherwise processed.
  • recipienta natural or legal person, public authority, agency or any other body to whom or with which personal data are disclosed, whether or not a third party. Public authorities which may have access to personal data in the context of an individual investigation in accordance with Union or Member State law are not recipients; the processing of those data by those public authorities must comply with the applicable data protection rules in accordance with the purposes of the processing;
  • third partya natural or legal person, public authority, agency or any other body other than the data subject, the controller, the processor or the persons who, under the direct authority of the controller or processor, are authorised to process personal data. 

PRINCIPLES OF DATA MANAGEMENT

The data controller declares that it will process personal data in accordance with the provisions of the Privacy Notice and will comply with the applicable laws, in particular with regard to:

The processing of personal data shall be lawful, fair and transparent for the data subject.

The collection of personal data must be carried out for specified, explicit and legitimate purposes.

The purposes for which personal data are processed must be adequate, relevant and limited to what is necessary.

Personal data must be accurate and kept up to date. Inaccurate personal data must be deleted without delay.

Personal data must be stored in a form which permits identification of data subjects for no longer than is necessary. Personal data may be stored for longer periods only if the storage is for archiving purposes in the public interest, scientific and historical research purposes or statistical purposes.

Personal data shall be processed in such a way as to ensure adequate security of personal data, including protection against unauthorised or unlawful processing, accidental loss, destruction or damage, by appropriate technical or organisational measures.

The principles of data protection shall apply to any information relating to an identified or identifiable natural person.

IMPORTANT INFORMATION ABOUT DATA MANAGEMENT

The purpose of data processing is to enable the service provider / data controller to provide appropriate additional services to visitors in the operation of the website.

The legal basis for the processing is the consent of the data subject.

Duration of processing and deletion of data. The duration of the processing always depends on the specific purpose of the user, but the data must be deleted without delay once the original purpose has been achieved. The data subject may withdraw his or her consent to the processing at any time by sending an e-mail to the contact e-mail address. If there is no legal obstacle to the deletion, your data will be deleted.

The data controller and its employees are entitled to access the data.

The data subject may request the controller to access, rectify, erase or restrict the processing of personal data relating to him or her and may object to the processing of such personal data and the data subject's right to data portability.

The data subject may withdraw his or her consent to the processing at any time, but this shall not affect the lawfulness of the processing carried out on the basis of the consent prior to its withdrawal.

The data subject may exercise the right to lodge a complaint with the supervisory authority.

If the data subject wishes to benefit from the advantages of registration, i.e. to use the services of the website in this respect, he or she must provide the requested personal data. The data subject is not obliged to provide personal data and will not suffer any disadvantage if he/she does not provide such data. However, it is not possible to use certain functions of the website without registration.

The data subject shall have the right to obtain, upon request and without undue delay, the rectification or integration by the controller of inaccurate personal data relating to him or her.

The data subject shall have the right to obtain from the controller, at his or her request and without undue delay, the erasure of inaccurate personal data relating to him or her and the controller shall be obliged to erase personal data relating to him or her without undue delay, unless there is another legal basis for the processing.

The amendment or deletion of personal data may be initiated by e-mail, telephone or letter using the contact details provided above.

COOKIES

Cookies are placed on the user's computer by the websites visited and contain information such as the page settings or login status.

Cookies are therefore small files created by the websites visited. They improve the user experience by saving browsing data. Cookies help the website remember your site settings and offer you locally relevant content.

A small file (cookie) is sent by the provider's website to the computer of the website visitor in order to establish the fact and time of the visit. The provider informs the website visitor of this.

The data subject of the processing are the visitors of the website.

The purpose of the processing is to provide additional services, identification and tracking of visitors.

Legal basis for processing. The consent of the user is not required if the use of cookies is strictly necessary for the provider.

Az adatok köre: egyedi azonosítószám, időpont, beállítási adatok.

The user has the possibility to delete cookies from the browsers at any time in the Settings menu.

The data can be accessed by the data controller. By using cookies, no personal data is processed by the data controller.

The data are stored electronically.

Google Analytics

Our website does not use Google Analytics.

DATA PROCESSORS

Hosting provider name: Sybell Informatika Kft.
Address of the hosting provider: 1158 Budapest, Késmárk u. 7/B 2. em. 206.
Phone: +36 1 707 67 27
E-mail: info@sybell.hu
Web: www.sybell.hu

The data you provide is stored on the server operated by the hosting provider. The data can only be accessed by our staff or by the staff operating the server, but each of them is responsible for the secure handling of the data.

The name of the activity: hosting service, server service.

Purpose of processing: to ensure the functioning of the website.

Data processed: personal data provided by the data subject

Duration of processing and time limit for deletion of data. Data processing until the end of the operation of the website or in accordance with the contractual agreement between the website operator and the hosting service provider. If necessary, the data subject may request the deletion of his/her data by contacting the hosting provider.

The legal basis for processing is the consent of the data subject or processing based on law.

RIGHTS IN RELATION TO DATA PROCESSING

Right to request information

You may request information from us, via the contact details provided, about what data our company processes, on what legal basis, for what purpose, from what source and for how long. Upon your request, we will send you information without delay, but within 30 days at the latest, to the e-mail address you have provided.

Right to rectification

You may ask us to correct any of your data using the contact details provided. Upon your request, we will do so without delay, but within 30 days at the latest, by sending you an e-mail to the e-mail address you have provided. 

Right to erasure

You can ask us to delete your data using the contact details provided. At your request, we will do so without delay, but within 30 days at the latest, by sending you an e-mail to the e-mail address you have provided. 

Right to blocking

You can ask us to block your data using the contact details provided. The blocking will last as long as the reason you have given us makes it necessary to store the data. Upon your request, we will do so without delay, but within a maximum of 30 days, by sending you an email to the email address you have provided. 

Right to object

You may object to the processing of your personal data using the contact details provided. We will examine the objection within the shortest possible time from the date of the request, but no later than 15 days, decide whether it is justified and inform you of our decision by e-mail.

Enforcement possibilities in relation to data processing

If you experience unlawful processing, please notify us so that we can remedy the situation within a short period of time. We will do our utmost to resolve the problem in your interest.

 

If, in your opinion, the lawfulness cannot be restored, you should notify the authority using the contact details below:

National Authority for Data Protection and Freedom of Information

Postacím: 1530 Budapest, Pf.: 5.

Address: 1125 Budapest, Szilágyi Erzsébet fasor 22/c. 
Phone: +36 (1) 391-1400 
Fax: +36 (1) 391-1410 
E-mail: ugyfelszolgalat@naih.hu 
URL https://naih.hu 
coordinates: N 47°30'56''; E 18°59'57'' 

LEGISLATION ON WHICH THE PROCESSING IS BASED

  • - REGULATION (EU) No 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Regulation (EC) No 95/46/EC (General Data Protection Regulation).
  • - Act CXII of 2011 on the Right to Informational Self-Determination and Freedom of Information.
  • - Act LXVI of 1995 on public records, public archives and the protection of private archival material.
  • - Government Decree No 335/2005 (XII. 29.) on the general requirements for the management of records by public bodies.
  • - Act CVIII of 2001 on certain aspects of electronic commerce services and information society services.
  • - Act C of 2003 on Electronic Communications.