Privacy Policy

General Provisions

The controller of personal data collected through the following websites:

as well as through electronic correspondence, contact forms, request-for-quotation forms, service request forms, telephone contact and IT systems provided by DIGITEX is DIGITEX Sp. z o.o. Sp. k., with its registered office at ul. Platanowa 2, 81-855 Sopot, Poland, Tax Identification Number (NIP): 5851476863, National Court Register Number (KRS): 0000660257 (hereinafter referred to as the “Controller”).

The Controller processes personal data in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (“GDPR”) and other applicable personal data protection laws.

For matters related to the processing of personal data, you may contact the Controller by e-mail at: ido@digitex.pl

Purpose and Scope of Data Collection

The Controller processes personal data for the purposes of:

  • responding to enquiries submitted via contact forms, e-mail or telephone,
  • preparing and presenting commercial offers,
  • entering into and performing contracts,
  • handling service requests,
  • providing electronic services and enabling the use of IT systems supplied by DIGITEX,
  • fulfilling obligations arising from applicable laws,
  • pursuing or defending against claims,
  • marketing the Controller’s own products and services,
  • ensuring the security of websites and IT systems,
  • conducting statistical analyses regarding the use of websites.

The scope of personal data processed may include:

  • first and last name,
  • e-mail address,
  • telephone number,
  • company or institution name,
  • job title,
  • correspondence address,
  • data contained in messages submitted via contact forms or e-mail,
  • data contained in service requests,
  • data necessary for the performance of a contract,
  • IP address,
  • device and browser data,
  • information stored in cookies.

The Controller may also process usage data relating to the use of websites and IT systems, such as device identifiers, the duration of use of electronic services or information about user activity. Such data is used solely to ensure security, proper operation of the services and to monitor their correct functioning.

Providing personal data is voluntary; however, in many cases it is necessary in order to respond to an enquiry, prepare an offer, perform a contract, provide services or handle a service request.

Legal Basis for Data Processing

Personal data is processed on the basis of:

  • the data subject’s consent (Article 6(1)(a) GDPR),
  • the performance of a contract or taking steps prior to entering into a contract (Article 6(1)(b) GDPR),
  • compliance with legal obligations to which the Controller is subject (Article 6(1)(c) GDPR),
  • the legitimate interests pursued by the Controller (Article 6(1)(f) GDPR), in particular with regard to conducting correspondence, marketing the Controller’s own products and services, ensuring system security, and pursuing or defending against claims.

Data Retention Period

Personal data is stored only for the period necessary to fulfil the purpose for which it was collected, and subsequently for the period required by applicable laws or until any potential claims become time-barred.

In particular:

  • data from contact forms and correspondence – for the duration of the correspondence and for the period necessary to protect against potential claims,
  • data related to the preparation of offers – for the duration of negotiations and until the expiry of the limitation period for claims,
  • data related to the performance of contracts – for the duration of the contract and for the period required by applicable laws,
  • data related to service requests – for the duration of handling the request and for the period resulting from warranty or statutory warranty obligations,
  • accounting documentation – for the period required by tax and accounting regulations,
  • data processed on the basis of consent – until the consent is withdrawn.

Recipients of Personal Data

Personal data may be disclosed to entities cooperating with the Controller only to the extent necessary for the provision of services, in particular to:

  • hosting service providers,
  • IT service providers,
  • e-mail service providers,
  • entities providing IT system support,
  • law firms,
  • accounting firms,
  • postal and courier service providers,
  • providers of analytical and marketing tools used on the websites.

These entities process personal data solely on the basis of appropriate agreements and in accordance with applicable laws.

Data Subject Rights

Each data subject has the right to:

  • access their personal data,
  • rectify their personal data,
  • erase their personal data,
  • restrict the processing of their personal data,
  • data portability,
  • object to the processing of their personal data,
  • withdraw consent at any time where processing is based on consent.

To exercise any of the above rights, please contact the Controller at: ido@digitex.pl.

Data subjects also have the right to lodge a complaint with the President of the Personal Data Protection Office (Prezes Urzędu Ochrony Danych Osobowych – UODO).

Cookies

The Controller’s websites use cookies to ensure the proper functioning of the websites, enhance security, remember user preferences and conduct statistical analyses.

During the user’s first visit, they may manage their consent to the use of cookies via the cookie banner displayed on the website.

Users may withdraw their consent at any time by changing their browser settings or reopening the cookie settings available on the website.

Depending on the functionalities used, the following types of cookies may be used:

  • strictly necessary cookies,
  • functional cookies,
  • analytics cookies,
  • marketing cookies.

Third-Party Cookies

The websites may use services provided by third-party providers, such as Google Analytics, Google Maps, YouTube, LinkedIn or Meta (Facebook), which may store their own cookies on users’ devices.

The Controller has no control over how these services operate. Detailed information on the processing of personal data by individual providers can be found in their respective privacy policies.

Disabling or restricting cookies may affect the proper functioning of certain website features.

E-mail Correspondence

Personal data processed as part of electronic correspondence is used solely for the purposes of conducting correspondence, responding to enquiries, presenting offers, performing contracts or providing services.

Correspondence is stored for the period necessary to fulfil the purpose for which it was conducted and is subsequently archived or deleted in accordance with applicable laws and the Controller’s internal procedures.

Contact Forms, Request-for-Quotation Forms and Service Requests

The Controller processes personal data provided via contact forms, request-for-quotation forms and service request forms solely for the purposes of handling the request, responding to the enquiry, preparing an offer, providing services or performing a contract.

Data is transmitted using an encrypted SSL/TLS connection.

Automated Decision-Making

The Controller does not make decisions concerning users based solely on automated processing, including profiling, which produce legal effects concerning users or similarly significantly affect them.

Final Provisions

The Controller reserves the right to update this Privacy Policy in the event of changes in applicable laws, the implementation of new services, or technological or organisational changes.

The current version of the Privacy Policy is published on the Controller’s websites.

Last updated: 21 August 2026.