{"id":1531,"date":"2022-09-06T14:31:44","date_gmt":"2022-09-06T13:31:44","guid":{"rendered":"https:\/\/hexxxa.com\/privacy-policy\/"},"modified":"2025-07-14T16:41:27","modified_gmt":"2025-07-14T15:41:27","slug":"privacy-policy","status":"publish","type":"page","link":"https:\/\/hexxxa.com\/en\/privacy-policy\/","title":{"rendered":"Privacy Policy"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">1. IDENTIFICATION OF THE ADMINISTRATOR<\/h2>\n\n<p><strong>Personal data controller:<\/strong><br\/>STARTxUP s.r.o.<br\/>Prakovce 319, 055 62 Prakovce, Slovak Republic<br\/>ID No.: 52337278<br\/>VAT No.: 2120989046<br\/>VAT No.: SK2120989046<br\/>E-mail: info@hexxxa.com<br\/>Tel.: +421 915 884 175<\/p>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">2. PERSONAL DATA PROCESSING PRINCIPLES<\/h2>\n\n<p>We respect your privacy and are committed to protecting your personal data in accordance with Regulation (EU) 2016\/679 of the European Parliament and of the Council (GDPR) and Act No.18\/2018 Coll. on the protection of personal data. <\/p>\n\n<h3 class=\"wp-block-heading\">2.1 Basic principles<\/h3>\n\n<ul class=\"wp-block-list\">\n<li><strong>Lawfulness<\/strong> &#8211; we process data only on the basis of a valid legal basis<\/li>\n\n\n\n<li><strong>Minimisation<\/strong> &#8211; we collect only the data necessary for the purpose<\/li>\n\n\n\n<li><strong>Accuracy<\/strong> &#8211; we keep the data up to date and correct<\/li>\n\n\n\n<li><strong>Transparency<\/strong> &#8211; we inform you clearly about the processing<\/li>\n\n\n\n<li><strong>Security<\/strong> &#8211; we protect data from unauthorised access<\/li>\n<\/ul>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">3. WHAT PERSONAL DATA WE PROCESS<\/h2>\n\n<h3 class=\"wp-block-heading\">3.1 Identification data<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Name and surname<\/li>\n\n\n\n<li>E-mail address<\/li>\n\n\n\n<li>Phone number<\/li>\n\n\n\n<li>Delivery address and billing address<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">3.2 Business data<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Order history<\/li>\n\n\n\n<li>Payment information (without payment card details)<\/li>\n\n\n\n<li>Communication with customers<\/li>\n\n\n\n<li>Preferences and interests (with your consent)<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">3.3 Technical data<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>IP address<\/li>\n\n\n\n<li>Browser and device information<\/li>\n\n\n\n<li>Cookies and similar technologies<\/li>\n\n\n\n<li>Website traffic data<\/li>\n<\/ul>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">4. PURPOSES AND LEGAL BASES OF PROCESSING<\/h2>\n\n<h3 class=\"wp-block-heading\">4.1 Performance of the contract (Article 6(1)(b) GDPR)<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Order processing and handling<\/li>\n\n\n\n<li>Delivery of goods and services<\/li>\n\n\n\n<li>Communication about the order<\/li>\n\n\n\n<li>Complaints and customer service<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">4.2 Consent of the data subject (Article 6(1)(a) GDPR)<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Sending newsletters and marketing messages<\/li>\n\n\n\n<li>Personalisation of content<\/li>\n\n\n\n<li>Analysing web behaviour to improve services<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">4.3 Compliance with a legal obligation (Article 6(1)(c) GDPR)<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Bookkeeping<\/li>\n\n\n\n<li>Archiving of documents<\/li>\n\n\n\n<li>Fulfilling tax obligations<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">4.4 Legitimate interest of the controller (Article 6(1)(f) GDPR)<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Protection against fraud<\/li>\n\n\n\n<li>IT systems security<\/li>\n\n\n\n<li>Debt recovery<\/li>\n\n\n\n<li>Analysis and statistics (anonymised data)<\/li>\n<\/ul>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">5. DATA RETENTION PERIOD<\/h2>\n\n<h3 class=\"wp-block-heading\">5.1 Contractual data<\/h3>\n\n<ul class=\"wp-block-list\">\n<li><strong>Accounting documents:<\/strong> 10 years from the end of the accounting period<\/li>\n\n\n\n<li><strong>Order history:<\/strong> 5 years since last order<\/li>\n\n\n\n<li><strong>Communication:<\/strong> 3 years from the end of the contractual relationship<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">5.2 Marketing data<\/h3>\n\n<ul class=\"wp-block-list\">\n<li><strong>Newsletter:<\/strong> until withdrawal of consent or 3 years of inactivity<\/li>\n\n\n\n<li><strong>Analytical data:<\/strong> 26 months (Google Analytics)<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">5.3 Technical data<\/h3>\n\n<ul class=\"wp-block-list\">\n<li><strong>Server logs:<\/strong> 12 months<\/li>\n\n\n\n<li><strong>Cookies:<\/strong> depending on type and settings (1 month to 2 years)<\/li>\n<\/ul>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">6. RECIPIENTS OF PERSONAL DATA<\/h2>\n\n<h3 class=\"wp-block-heading\">6.1 Internal beneficiaries<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Staff and associates to the extent necessary<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">6.2 External intermediaries<\/h3>\n\n<ul class=\"wp-block-list\">\n<li><strong>Courier services<\/strong> &#8211; for delivery of orders<\/li>\n\n\n\n<li><strong>Payment gateways<\/strong> &#8211; for payment processing (TatraPay, PayPal, etc.)<\/li>\n\n\n\n<li><strong>Hosting provider<\/strong> &#8211; for website operation<\/li>\n\n\n\n<li><strong>Email marketing<\/strong> &#8211; for sending newsletters<\/li>\n\n\n\n<li><strong>Analytics tools<\/strong> &#8211; Google Analytics, Facebook Pixel<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">6.3 Transfer to third countries<\/h3>\n\n<p>Some of our intermediaries may transfer data outside the EU. We ensure that such transfers are protected by appropriate safeguards (e.g. EU standard contractual clauses). <\/p>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">7. YOUR RIGHTS<\/h2>\n\n<h3 class=\"wp-block-heading\">7.1 Right to information (Article 15 GDPR)<\/h3>\n\n<p>You have the right to know what personal data we process about you and for what purpose.<\/p>\n\n<h3 class=\"wp-block-heading\">7.2 Right to rectification (Article 16 GDPR)<\/h3>\n\n<p>You can ask for incorrect or incomplete data to be corrected.<\/p>\n\n<h3 class=\"wp-block-heading\">7.3 Right to erasure (Article 17 GDPR)<\/h3>\n\n<p>In certain cases, you may request that your data be deleted.<\/p>\n\n<h3 class=\"wp-block-heading\">7.4 Right to restriction of processing (Article 18 GDPR)<\/h3>\n\n<p>You can request a restriction of processing in specific situations.<\/p>\n\n<h3 class=\"wp-block-heading\">7.5 Right to portability (Article 20 GDPR)<\/h3>\n\n<p>You have the right to receive your data in a structured format.<\/p>\n\n<h3 class=\"wp-block-heading\">7.6 Right to object (Article 21 GDPR)<\/h3>\n\n<p>You can object to processing on the basis of a legitimate interest.<\/p>\n\n<h3 class=\"wp-block-heading\">7.7 Right to withdraw consent<\/h3>\n\n<p>You may withdraw your consent at any time without giving any reason.<\/p>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">8. DATA SECURITY<\/h2>\n\n<h3 class=\"wp-block-heading\">8.1 Technical measures<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>SSL communication encryption<\/li>\n\n\n\n<li>Regular security updates<\/li>\n\n\n\n<li>Data backup<\/li>\n\n\n\n<li>Monitoring security incidents<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">8.2 Organisational arrangements<\/h3>\n\n<ul class=\"wp-block-list\">\n<li>Staff training on data protection<\/li>\n\n\n\n<li>Access permissions for authorised persons only<\/li>\n\n\n\n<li>Contracts with intermediaries containing GDPR clauses<\/li>\n\n\n\n<li>Data handling rules<\/li>\n<\/ul>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">9. COOKIES AND SIMILAR TECHNOLOGIES<\/h2>\n\n<h3 class=\"wp-block-heading\">9.1 Types of cookies<\/h3>\n\n<ul class=\"wp-block-list\">\n<li><strong>Necessary<\/strong> &#8211; for site functionality (always active)<\/li>\n\n\n\n<li><strong>Analytics<\/strong> &#8211; for traffic analysis (Google Analytics)<\/li>\n\n\n\n<li><strong>Marketing<\/strong> &#8211; to personalise ads (with your consent)<\/li>\n\n\n\n<li><strong>Functional<\/strong> &#8211; to improve the user experience<\/li>\n<\/ul>\n\n<h3 class=\"wp-block-heading\">9.2 Managing cookies<\/h3>\n\n<p>You can manage cookies:<\/p>\n\n<ul class=\"wp-block-list\">\n<li>In the cookie banner on our site<\/li>\n\n\n\n<li>In your browser settings<\/li>\n\n\n\n<li>By contacting us at info@hexxxa.com<\/li>\n<\/ul>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">10. CONTACT AND COMPLAINTS<\/h2>\n\n<h3 class=\"wp-block-heading\">10.1 Contact to the Administrator<\/h3>\n\n<p><strong>E-mail:<\/strong> info@hexxxa.com<br\/><strong>Phone:<\/strong> +421 915 884 175<br\/><strong>Address:<\/strong> STARTxUP s.r.o., Prakovce 319, 055 62 Prakovce<\/p>\n\n<h3 class=\"wp-block-heading\">10.2 Supervisory authority<\/h3>\n\n<p>If you have any doubts about the processing of your data, you can contact:<\/p>\n\n<p><strong>Office for Personal Data Protection of the Slovak Republic<\/strong><br\/>Hrani\u010dn\u00e1 12, 820 07 Bratislava<br\/>Tel: +421 2 32 31 32 14<br\/>E-mail: statny.dozor@pdp.gov.sk<br\/>Website: www.dataprotection.gov.sk<\/p>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">11. CHANGES TO THE RULES<\/h2>\n\n<p>We may update this policy due to changes in legislation or our processes. We will notify you of significant changes by email or notice on the website. <\/p>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<h2 class=\"wp-block-heading\">12. FINAL PROVISIONS<\/h2>\n\n<p>This policy is valid from 01.06.2025. By using our website and services, you agree to this privacy policy. <\/p>\n\n<p>For any questions regarding privacy, please contact us at info@hexxxa.com.<\/p>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<p><strong>STARTxUP s.r.o.<\/strong><br\/><strong>Prakovce 319, 055 62 Prakovce<\/strong><br\/><strong>info@hexxxa.com<\/strong><\/p>\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n<p><em>Last update: 01.06.2025<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>1. IDENTIFICATION OF THE ADMINISTRATOR Personal data controller:STARTxUP s.r.o.Prakovce 319, 055 62 Prakovce, Slovak RepublicID No.: 52337278VAT No.: 2120989046VAT No.: SK2120989046E-mail: info@hexxxa.comTel.: +421 915 884 175 2. PERSONAL DATA PROCESSING PRINCIPLES We respect your privacy and are committed to protecting your personal data in accordance with Regulation (EU) 2016\/679 of the European Parliament and of [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"footnotes":""},"class_list":["post-1531","page","type-page","status-publish","hentry"],"acf":[],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/pages\/1531","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/comments?post=1531"}],"version-history":[{"count":3,"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/pages\/1531\/revisions"}],"predecessor-version":[{"id":2050,"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/pages\/1531\/revisions\/2050"}],"wp:attachment":[{"href":"https:\/\/hexxxa.com\/en\/wp-json\/wp\/v2\/media?parent=1531"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}