Privacy Policy

Learn how we protect your personal data

Last updated: February 17, 2026

1. Data Controller

The controller of your personal data is:

Data Controller

Rosa Venti Sp. z o.o.

Wał Miedzeszyński 399
04-022 Warsaw
Poland

Tax ID: 5252817648

REGON: 385728393

KRS: 0000832586

Contact for data protection matters: E-mail: biuro@rosaventi.pl, Phone: +48 790 275 790

2. Personal Data Processing

2.1. What data do we collect?

We collect the following categories of personal data:

Contact data: name and surname, email address, phone number (when you use the contact form)

Technical data: IP address, browser type, operating system, device information (via Google Analytics)

Behavioral data: browsing history, time spent on site, entry source (via Google Analytics)

2.2. Legal basis for processing

We process your data based on:

Art. 6 sec. 1 lit. a GDPR - consent to the processing of personal data (contact forms, cookies)

Art. 6 sec. 1 lit. b GDPR - performance of a contract or taking steps prior to entering into a contract

Art. 6 sec. 1 lit. f GDPR - legitimate interest of the controller (site analytics, security)

2.3. Purpose of data processing

We process your data for the following purposes:

Handling inquiries: responding to messages sent through the contact form

Traffic analysis: understanding how users interact with our site (Google Analytics)

Service quality improvement: optimizing content and site functionality

Security: protecting the site from attacks and abuse

Marketing: promoting our services (only with consent)

2.4. Data retention period

Data type Retention period
Contact form data Up to 24 months from last contact or until consent is withdrawn
Analytical cookies Up to 26 months (Google Analytics)
Essential cookies Up to 6 months (cookie preferences)
Server logs Up to 12 months

2.5. Data sharing

Your data may be shared with the following entities:

Google LLC - provider of Google Analytics (based in the USA, secured by EU standard contractual clauses)

Hosting providers - ensuring the operation of the website

IT service providers - technical support and site maintenance

Public authorities - if required by law

3. Your Rights

Under GDPR, you have the following rights:

3.1. Right of access

You have the right to obtain confirmation as to whether we process your personal data and access to such data and information about processing.

3.2. Right to rectification

You have the right to request immediate rectification of inaccurate personal data and completion of incomplete data.

3.3. Right to erasure ("right to be forgotten")

You have the right to request the deletion of your personal data if:

The data is no longer necessary for the purposes for which it was collected

You have withdrawn consent and there is no other legal basis for processing

You object to the processing

The data was processed unlawfully

3.4. Right to restriction of processing

You have the right to request restriction of processing if:

You contest the accuracy of the data

Processing is unlawful, but you oppose the deletion of data

The controller no longer needs the data, but you need it to establish, exercise or defend legal claims

You have objected to processing – pending verification of whether the controller's grounds override yours

3.5. Right to data portability

You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit that data to another controller.

3.6. Right to object

You have the right to object at any time – for reasons related to your particular situation – to the processing of personal data based on the legitimate interest of the controller (Art. 6 sec. 1 lit. f GDPR).

3.7. Right to withdraw consent

If processing is based on consent, you have the right to withdraw it at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before its withdrawal.

3.8. Right to lodge a complaint

You have the right to lodge a complaint with a supervisory authority – in Poland this is the President of the Personal Data Protection Office (PUODO): Address: ul. Stawki 2, 00-193 Warsaw, Website: https://uodo.gov.pl

4. Cookie Policy

4.1. What are cookies?

Cookies are small text files saved on your device (computer, tablet, smartphone) while browsing a website. They enable the site to recognize your device and remember information about your preferences.

More information about cookies can be found at: www.allaboutcookies.org

4.2. Types of cookies

We use the following types of cookies on our site:

4.2.1. Essential cookies

These files are necessary for the proper functioning of the site. They include:

Name Provider Purpose Duration
cookieconsent Visit PKiN Stores information about your cookie preferences 6 months

4.2.2. Analytical cookies

Help us understand how users interact with the site, allowing us to improve it:

Name Provider Purpose Duration
_ga Google Analytics Distinguishes website users 2 years
_ga_35Y5RNRB9P Google Analytics Stores session state 2 years

4.3. Managing cookies

You can change your cookie preferences at any time by clicking the icon in the lower left corner of the page or by setting your browser to block cookies.

How to manage cookies in popular browsers:

Google Chrome: Settings → Privacy and security → Cookies and other site data

Mozilla Firefox: Options → Privacy and security → Cookies and site data

Safari: Preferences → Privacy → Cookies and website data

Microsoft Edge: Settings → Cookies and site permissions

4.4. Third-party cookies

Our site may contain embedded content from external providers (e.g., YouTube videos, Google maps). These services may set their own cookies, over which we have no control.

We recommend reviewing the privacy policies of these providers:

Google: policies.google.com/privacy

YouTube: policies.google.com/privacy

5. Data Security

We place particular emphasis on protecting your personal data. We apply appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

  • SSL/TLS encryption – all data transmitted between your browser and our server is encrypted

  • Regular backups – we protect against data loss

  • Limited access – only authorized persons have access to personal data

  • Security monitoring – we constantly monitor our systems for potential threats

  • Software updates – we regularly update systems and software

Despite using the latest security measures, no method of data transmission over the Internet or data storage method is 100% secure. Therefore, we cannot guarantee absolute data security.

6. Changes to the Privacy Policy

We reserve the right to make changes to this Privacy Policy. All changes will be published on this page along with the date of the last update.

In case of significant changes, we will inform you through a clear notification on the site or via email (if we have your email address).

We encourage you to review this page regularly to stay informed about our data protection practices.

7. Contact

If you have any questions regarding this Privacy Policy, how we process your personal data, or wish to exercise your rights, please contact us:

Rosa Venti Sp. z o.o.

Wał Miedzeszyński 399
04-022 Warsaw

E-mail: biuro@rosaventi.pl

Phone: +48 790 275 790

We will make every effort to respond to your inquiry within 30 days.