Privacy policy

Pri­va­cy Pol­i­cy – Risk Hub Ser­vices Ltd.

1. Gen­er­al Infor­ma­tion

This Pri­va­cy Pol­i­cy sets out the prin­ci­ples of per­son­al data pro­cess­ing and the use of cook­ies on the web­site oper­at­ed by Risk Hub Ser­vices Ltd., head­quar­tered in Katow­ice, 3 Maja 22/2c, Tax Iden­ti­fi­ca­tion Num­ber (TIN): 6343042509, Nation­al Busi­ness Reg­istry Num­ber (REGON): 529239697, con­tact: contact@riskhubservices.com

The Admin­is­tra­tor applies par­tic­u­lar care in pro­tect­ing the pri­va­cy of per­sons using the web­site and secur­ing the per­son­al data processed in accor­dance with applic­a­ble law, includ­ing Reg­u­la­tion (EU) 2016/679 of the Euro­pean Par­lia­ment and of the Coun­cil of 27 April 2016 on the pro­tec­tion of nat­ur­al per­sons with regard to the pro­cess­ing of per­son­al data (GDPR).

2. Per­son­al Data – Basic Web­site Ser­vices

Cat­e­gories of Per­son­al Data Col­lect­ed

Through con­tact forms and newslet­ter sub­scrip­tion forms, the Admin­is­tra­tor col­lects the fol­low­ing per­son­al data:

  • First name,
  • Email address.

Pur­pos­es of Data Pro­cess­ing

These data are processed for the fol­low­ing pur­pos­es:

  1. To enable con­tact in con­nec­tion with an inquiry sub­mit­ted (Arti­cle 6(1)(f) GDPR – legit­i­mate inter­est of the Admin­is­tra­tor);
  2. To send com­mer­cial, mar­ket­ing, and report infor­ma­tion (includ­ing audit reports) – only if con­sent has been pro­vid­ed by the data sub­ject (Arti­cle 6(1)(a) GDPR).

Data Reten­tion Peri­od

Per­son­al data are retained:

  • For the peri­od nec­es­sary to han­dle the inquiry,
  • Until con­sent is with­drawn in the case of mar­ket­ing activ­i­ties.

Recip­i­ents of Data

Per­son­al data may be shared with enti­ties pro­cess­ing data on behalf of the Admin­is­tra­tor, includ­ing but not lim­it­ed to:

  • Host­ing ser­vice providers (e.g., OVH, LH.pl),
  • Mail­ing ser­vice providers (e.g., Mail­er­Lite, Bre­vo, Mailchimp),
  • Ana­lyt­ics and sta­tis­tics providers (e.g., Google Ana­lyt­ics),
  • Ser­vices secur­ing forms (e.g., Google reCAPTCHA).

Each of the afore­men­tioned enti­ties process­es per­son­al data sole­ly on the basis of a data pro­cess­ing agree­ment and in com­pli­ance with GDPR.

Data Sub­ject Rights

Data sub­jects have the right to:

  • Access their per­son­al data,
  • Rec­ti­fy their per­son­al data,
  • Delete or restrict the pro­cess­ing of their per­son­al data,
  • Data porta­bil­i­ty,
  • Object to the pro­cess­ing of their per­son­al data,
  • With­draw con­sent at any time,
  • Lodge a com­plaint with the Pres­i­dent of the Per­son­al Data Pro­tec­tion Office.

3. Per­son­al Data – Reg­is­tra­tions for Free Train­ings and Webi­na­rs

Cat­e­gories of Per­son­al Data Col­lect­ed

For the pur­pose of reg­is­tra­tion for free train­ings and webi­na­rs, the Admin­is­tra­tor col­lects the fol­low­ing per­son­al data:

  • Full name,
  • Email address,
  • Place of res­i­dence,
  • Age range,
  • Answers to ques­tions regard­ing cur­rent knowl­edge and expe­ri­ence in cyber­se­cu­ri­ty.

Pur­pos­es of Data Pro­cess­ing

These data are processed for the fol­low­ing pur­pos­es:

  1. Orga­ni­za­tion and con­duct of train­ings and webi­na­rs, includ­ing enabling reg­is­tra­tion, send­ing orga­ni­za­tion­al infor­ma­tion, and post-train­ing mate­ri­als (Arti­cle 6(1)(b) GDPR – per­for­mance of a contract/service);
  2. Analy­sis of par­tic­i­pants’ needs in order to tai­lor train­ing con­tent to their knowl­edge and expe­ri­ence (Arti­cle 6(1)(f) GDPR – legit­i­mate inter­est of the Admin­is­tra­tor);
  3. Send­ing com­mer­cial and mar­ket­ing infor­ma­tion – only if con­sent is pro­vid­ed (Arti­cle 6(1)(a) GDPR).

Data Reten­tion Peri­od

Per­son­al data of par­tic­i­pants reg­is­ter­ing for train­ings and webi­na­rs are retained:

  • For the peri­od nec­es­sary to orga­nize and con­duct the train­ing or webi­nar,
  • Until con­sent is with­drawn in the case of mar­ket­ing activ­i­ties,
  • For peri­ods required by law for archival or account­ing pur­pos­es, if applic­a­ble.

Recip­i­ents of Data

Per­son­al data may be shared only with enti­ties pro­vid­ing ser­vices nec­es­sary for the orga­ni­za­tion of train­ings and webi­na­rs, includ­ing:

  • Plat­forms host­ing train­ings and webi­nar record­ings,
  • Mail­ing ser­vice providers (e.g., Mail­er­Lite, Bre­vo, Mailchimp),
  • Ana­lyt­ics and sta­tis­tics providers (e.g., Google Ana­lyt­ics),
  • Ser­vices secur­ing forms (e.g., Google reCAPTCHA).

Data may also be shared with enti­ties pro­vid­ing inte­gra­tion and automa­tion ser­vices (e.g., Zapi­er), sole­ly to the extent nec­es­sary for the pur­pos­es of data pro­cess­ing and based on a data pro­cess­ing agree­ment in com­pli­ance with GDPR.

Data Sub­ject Rights

Par­tic­i­pants reg­is­ter­ing for train­ings and webi­na­rs have the right to:

  • Access their per­son­al data,
  • Rec­ti­fy their per­son­al data,
  • Delete or restrict the pro­cess­ing of their per­son­al data,
  • Data porta­bil­i­ty,
  • Object to the pro­cess­ing of their per­son­al data,
  • With­draw con­sent at any time,
  • Lodge a com­plaint with the Pres­i­dent of the Per­son­al Data Pro­tec­tion Office.

Con­sent

By reg­is­ter­ing for free train­ings or webi­na­rs, the par­tic­i­pant con­sents to the pro­cess­ing of per­son­al data as described above. With­draw­al of con­sent does not affect the law­ful­ness of pro­cess­ing car­ried out pri­or to its with­draw­al.

4. Cook­ies and Oth­er Tech­nolo­gies

Def­i­n­i­tion of Cook­ies

Cook­ies are small text files stored on the user’s device, enabling, among oth­ers, the reten­tion of web­site set­tings or traf­fic analy­sis.

Types of Cook­ies Used

  • Essen­tial – nec­es­sary for prop­er web­site func­tion­ing,
  • Ana­lyt­i­cal – e.g., Google Ana­lyt­ics,
  • Mar­ket­ing – e.g., Google Ads remar­ket­ing, Face­book Ads,
  • Func­tion­al – e.g., ses­sion cook­ies, reten­tion of user pref­er­ences.

Tools poten­tial­ly using cook­ies include:

  • Google Ana­lyt­ics,
  • Google Ads,
  • Face­book Pix­el,
  • Mail­er­Lite / Bre­vo,
  • Google reCAPTCHA.

Dis­abling Cook­ies

Users can change brows­er set­tings at any time to block some or all cook­ies. Block­ing cook­ies may affect the func­tion­al­i­ty of the web­site.

5. Secu­ri­ty

The web­site oper­ates under a secure HTTPS pro­to­col. Access to data is restrict­ed to autho­rized per­son­nel trained in per­son­al data pro­tec­tion.

6. Changes to the Pri­va­cy Pol­i­cy

This Pri­va­cy Pol­i­cy may be updat­ed. Users are advised to review its con­tent reg­u­lar­ly.

7. Con­tact

For any ques­tions regard­ing the pro­cess­ing of per­son­al data, please con­tact us at: contact@riskhubservices.com

Twoje bezpieczeństwo to nasza misja

Twój audyt bezpieczeństwa

You create the future. We secure the present

Your Security Audit