Golden Hours 🌅 are now available!

Privacy Policy of the contentbank.pl 

§1 General Information
This Privacy Policy sets out the rules for processing personal data and using cookies within the website available at https://contentbank.pl, operated by Karo Content, with its registered office at Voermanstraat 12, 1973 VK IJmuiden, the Netherlands, Chamber of Commerce number (KVK) 97439622, hereinafter referred to as the “Controller” or the “Service Provider”.
The Controller makes every effort to ensure the confidentiality, integrity and security of the personal data being processed.
The Controller can be contacted by e-mail at: [contentbank.pl@gmail.com](mailto:contentbank.pl@gmail.com)

§2 Legal Basis for Data Processing
Personal data is processed in accordance with:
Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR),
the Act on Providing Services by Electronic Means,
the Telecommunications Law.

§3 Scope and Purpose of Data Processing
The Controller processes Users’ personal data for the following purposes:
Creating and managing an Account on the Website,
Processing orders and managing Subscriptions,
Handling enquiries and complaints,
Sending marketing information where consent has been granted,
Complying with legal obligations, including tax obligations,
Ensuring security and preventing fraud and misuse.

The scope of processed data includes, among other things:
first name and surname,
e-mail address,
IP address,
billing details,
payment information.

§4 Disclosure of Personal Data
Personal data may be disclosed to:
entities supporting the Controller in providing services, including hosting providers, payment providers and mailing tool providers,
entities authorised under applicable law, including tax authorities.

All entities processing personal data on behalf of the Controller are required to ensure an appropriate level of data protection.

§5 Transfer of Data Outside the EEA
Personal data may be transferred outside the European Economic Area only where the service provider, such as a mailing system or payment gateway provider, ensures an appropriate level of protection compliant with the GDPR, for example based on an adequacy decision or Standard Contractual Clauses.

§6 Data Retention Period
Personal data is stored for the period necessary to fulfil the purpose for which it was collected:
Account-related data – until the Account is deleted,
Accounting data – for the period required by applicable law, usually five years,
Marketing data – until consent is withdrawn or an objection is submitted.

§7 Rights of Data Subjects
Each User has the right to:
Access their personal data,
Rectify their personal data,
Erase their personal data, also known as the “right to be forgotten”,
Restrict the processing of their personal data,
Data portability,
Object to the processing of their personal data,
Withdraw consent at any time,
Lodge a complaint with the supervisory authority, namely the President of the Personal Data Protection Office (UODO).

§8 Data Security
The Controller applies appropriate technical and organisational measures to protect the personal data being processed, including server security measures, SSL connection encryption and access control.

§9 Cookies and Tracking Technologies
The Website uses cookies for the following purposes:
Ensuring the proper operation of the Website,
Analysing visitor statistics, for example through Google Analytics,
Conducting marketing and remarketing activities, for example through Facebook Ads and Meta Pixel.

The User may change their browser’s cookie settings or delete cookies at any time.
Using the Website without changing cookie settings constitutes consent to cookies being stored.

§10 Changes to the Privacy Policy
The Controller reserves the right to amend this Privacy Policy.
Any changes enter into force on the date they are published on the Website.