Last updated: February 17, 2026
1. Data Controller
The controller of your personal data is:
Data Controller
Rosa Venti Sp. z o.o.
Wał Miedzeszyński 399
04-022 Warsaw
Poland
Tax ID: 5252817648
REGON: 385728393
KRS: 0000832586
Contact for data protection matters: E-mail: biuro@rosaventi.pl, Phone: +48 790 275 790
2. Personal Data Processing
2.1. What data do we collect?
We collect the following categories of personal data:
→ Contact data: name and surname, email address, phone number (when you use the contact form)
→ Technical data: IP address, browser type, operating system, device information (via Google Analytics)
→ Behavioral data: browsing history, time spent on site, entry source (via Google Analytics)
2.2. Legal basis for processing
We process your data based on:
→ Art. 6 sec. 1 lit. a GDPR - consent to the processing of personal data (contact forms, cookies)
→ Art. 6 sec. 1 lit. b GDPR - performance of a contract or taking steps prior to entering into a contract
→ Art. 6 sec. 1 lit. f GDPR - legitimate interest of the controller (site analytics, security)
2.3. Purpose of data processing
We process your data for the following purposes:
→ Handling inquiries: responding to messages sent through the contact form
→ Traffic analysis: understanding how users interact with our site (Google Analytics)
→ Service quality improvement: optimizing content and site functionality
→ Security: protecting the site from attacks and abuse
→ Marketing: promoting our services (only with consent)
2.4. Data retention period
| Data type | Retention period |
| Contact form data | Up to 24 months from last contact or until consent is withdrawn |
| Analytical cookies | Up to 26 months (Google Analytics) |
| Essential cookies | Up to 6 months (cookie preferences) |
| Server logs | Up to 12 months |
2.5. Data sharing
Your data may be shared with the following entities:
→ Google LLC - provider of Google Analytics (based in the USA, secured by EU standard contractual clauses)
→ Hosting providers - ensuring the operation of the website
→ IT service providers - technical support and site maintenance
→ Public authorities - if required by law
3. Your Rights
Under GDPR, you have the following rights:
3.1. Right of access
You have the right to obtain confirmation as to whether we process your personal data and access to such data and information about processing.
3.2. Right to rectification
You have the right to request immediate rectification of inaccurate personal data and completion of incomplete data.
3.3. Right to erasure ("right to be forgotten")
You have the right to request the deletion of your personal data if:
→ The data is no longer necessary for the purposes for which it was collected
→ You have withdrawn consent and there is no other legal basis for processing
→ You object to the processing
→ The data was processed unlawfully
3.4. Right to restriction of processing
You have the right to request restriction of processing if:
→ You contest the accuracy of the data
→ Processing is unlawful, but you oppose the deletion of data
→ The controller no longer needs the data, but you need it to establish, exercise or defend legal claims
→ You have objected to processing – pending verification of whether the controller's grounds override yours
3.5. Right to data portability
You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit that data to another controller.
3.6. Right to object
You have the right to object at any time – for reasons related to your particular situation – to the processing of personal data based on the legitimate interest of the controller (Art. 6 sec. 1 lit. f GDPR).
3.7. Right to withdraw consent
If processing is based on consent, you have the right to withdraw it at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before its withdrawal.
3.8. Right to lodge a complaint
You have the right to lodge a complaint with a supervisory authority – in Poland this is the President of the Personal Data Protection Office (PUODO): Address: ul. Stawki 2, 00-193 Warsaw, Website: https://uodo.gov.pl
4. Cookie Policy
4.1. What are cookies?
Cookies are small text files saved on your device (computer, tablet, smartphone) while browsing a website. They enable the site to recognize your device and remember information about your preferences.
More information about cookies can be found at: www.allaboutcookies.org
4.2. Types of cookies
We use the following types of cookies on our site:
4.2.1. Essential cookies
These files are necessary for the proper functioning of the site. They include:
| Name | Provider | Purpose | Duration |
| cookieconsent | Visit PKiN | Stores information about your cookie preferences | 6 months |
4.2.2. Analytical cookies
Help us understand how users interact with the site, allowing us to improve it:
| Name | Provider | Purpose | Duration |
| _ga | Google Analytics | Distinguishes website users | 2 years |
| _ga_35Y5RNRB9P | Google Analytics | Stores session state | 2 years |
4.3. Managing cookies
You can change your cookie preferences at any time by clicking the icon in the lower left corner of the page or by setting your browser to block cookies.
How to manage cookies in popular browsers:
→ Google Chrome: Settings → Privacy and security → Cookies and other site data
→ Mozilla Firefox: Options → Privacy and security → Cookies and site data
→ Safari: Preferences → Privacy → Cookies and website data
→ Microsoft Edge: Settings → Cookies and site permissions
4.4. Third-party cookies
Our site may contain embedded content from external providers (e.g., YouTube videos, Google maps). These services may set their own cookies, over which we have no control.
We recommend reviewing the privacy policies of these providers:
→ Google: policies.google.com/privacy
→ YouTube: policies.google.com/privacy
5. Data Security
We place particular emphasis on protecting your personal data. We apply appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
- •
SSL/TLS encryption – all data transmitted between your browser and our server is encrypted
- •
Regular backups – we protect against data loss
- •
Limited access – only authorized persons have access to personal data
- •
Security monitoring – we constantly monitor our systems for potential threats
- •
Software updates – we regularly update systems and software
Despite using the latest security measures, no method of data transmission over the Internet or data storage method is 100% secure. Therefore, we cannot guarantee absolute data security.
6. Changes to the Privacy Policy
We reserve the right to make changes to this Privacy Policy. All changes will be published on this page along with the date of the last update.
In case of significant changes, we will inform you through a clear notification on the site or via email (if we have your email address).
We encourage you to review this page regularly to stay informed about our data protection practices.
7. Contact
If you have any questions regarding this Privacy Policy, how we process your personal data, or wish to exercise your rights, please contact us:
Rosa Venti Sp. z o.o.
Wał Miedzeszyński 399
04-022 Warsaw
E-mail: biuro@rosaventi.pl
Phone: +48 790 275 790
We will make every effort to respond to your inquiry within 30 days.