Privacy Policy

Last updated: December 11, 2025

🔒 Your Privacy Matters

This Privacy Policy explains how we collect, use, and protect your personal data in compliance with GDPR and Polish data protection laws.

1. Data Controller Information

Data Controller:

Business Entity: HubIT Essentials Hubert Kożuchowski

Tax ID (NIP): 5272999629

REGON: 521842431

Address:
ul. Młynarska 25 lok. 22
01-175 Warszawa
Poland

Email: hubertkozuchowski@gmail.com

Phone: +48 508 180 507

2. Legal Basis for Data Processing

We process your personal data in accordance with:

3. What Personal Data We Collect

3.1 Data Collected Automatically

Data Type Purpose Legal Basis
IP Address Security, fraud prevention Legitimate interest (Art. 6(1)(f) GDPR)
Browser Information Service optimization Legitimate interest (Art. 6(1)(f) GDPR)
Session Data Service functionality Legitimate interest (Art. 6(1)(f) GDPR)
Usage Statistics Service improvement Legitimate interest (Art. 6(1)(f) GDPR)

3.2 Data You Provide

Data Type Purpose Legal Basis
Email Address Account creation, communication Contract performance (Art. 6(1)(b) GDPR)
Name Personalization, invoicing Contract performance (Art. 6(1)(b) GDPR)
Payment Information Transaction processing Contract performance (Art. 6(1)(b) GDPR)
Billing Address Invoice generation, tax compliance Legal obligation (Art. 6(1)(c) GDPR)
User-Generated Content Service provision (presets, projects) Contract performance (Art. 6(1)(b) GDPR)

4. Purpose of Data Collection and Processing

4.1 Primary Purposes

4.2 Secondary Purposes

5. Data Sharing and Third Parties

We share your personal data with the following third parties:

5.1 Payment Processors

PayU S.A.

Address: ul. Grunwaldzka 186, 60-166 Poznań, Poland

Purpose: Processing payments for subscriptions

Data Shared: Email, name, payment method, transaction amount

Privacy Policy: https://www.payu.pl/en/privacy-policy

5.2 Cloud Service Providers

Microsoft Azure

Purpose: Hosting, database, storage

Data Shared: All user data and content

Location: EU data centers (GDPR compliant)

Privacy Policy: https://privacy.microsoft.com

5.3 Email Service

Resend

Purpose: Transactional and notification emails

Data Shared: Email address, name

Privacy Policy: https://resend.com/legal/privacy-policy

5.4 Analytics (Optional)

We may use analytics services to understand service usage. You can opt out through your browser settings.

6. Data Protection and Security

6.1 Security Measures

6.2 Data Breach Notification

In the event of a data breach affecting your personal data, we will notify you and the relevant supervisory authority within 72 hours, as required by GDPR Article 33.

7. Data Retention

Data Type Retention Period Reason
Account Data Duration of account + 30 days after deletion Service provision, recovery period
Payment Records 5 years Tax law requirements (Polish Accounting Act)
Invoices 5 years Tax law requirements
Support Communications 3 years Legal claims period
Usage Logs 90 days Security and troubleshooting
Marketing Consent Until consent withdrawn Legal basis for processing

8. Your Rights Under GDPR

As a data subject, you have the following rights:

8.1 Right of Access (Art. 15 GDPR)

You have the right to obtain confirmation whether your personal data is being processed and access to that data.

8.2 Right to Rectification (Art. 16 GDPR)

You can request correction of inaccurate personal data and completion of incomplete data.

8.3 Right to Erasure / "Right to be Forgotten" (Art. 17 GDPR)

You can request deletion of your personal data when:

8.4 Right to Restriction of Processing (Art. 18 GDPR)

You can request restriction of processing when:

8.5 Right to Data Portability (Art. 20 GDPR)

You can receive your personal data in a structured, commonly used, machine-readable format and transmit it to another controller.

8.6 Right to Object (Art. 21 GDPR)

You can object to processing based on legitimate interests or for direct marketing purposes.

8.7 Right to Withdraw Consent (Art. 7(3) GDPR)

Where processing is based on consent, you can withdraw consent at any time without affecting the lawfulness of processing before withdrawal.

8.8 Right to Lodge a Complaint

You have the right to lodge a complaint with a supervisory authority:

Polish Data Protection Authority (UODO):

Urząd Ochrony Danych Osobowych
ul. Stawki 2
00-193 Warszawa
Poland

Phone: +48 22 531 03 00
Website: https://uodo.gov.pl

9. How to Exercise Your Rights

9.1 Access and Manage Your Data

9.2 Contact Us

To exercise any of your rights, please contact us:

Email: hubertkozuchowski@gmail.com

Phone: +48 508 180 507

Subject Line: "GDPR Request - [Your Right]"

Response Time: Within 30 days (Art. 12(3) GDPR)

Please include:

10. Cookies and Tracking Technologies

10.1 Types of Cookies We Use

Cookie Type Purpose Duration
Essential Cookies Authentication, session management Session / 30 days
Functional Cookies Remember preferences, settings 1 year
Analytics Cookies Usage statistics (anonymized) 2 years
Marketing Cookies Advertising (only with consent) 1 year

10.2 Managing Cookies

You can control cookies through your browser settings. Note that disabling essential cookies may affect service functionality.

11. International Data Transfers

Your data is primarily stored within the European Union (Azure EU data centers). If we transfer data outside the EU, we ensure adequate protection through:

12. Children's Privacy

⚠️ Age Restriction:

HAOS.fm is not intended for users under 16 years of age. We do not knowingly collect personal data from children under 16. If you are a parent or guardian and believe your child has provided us with personal data, please contact us immediately.

13. Automated Decision-Making and Profiling

We do not use automated decision-making or profiling that produces legal effects or similarly significantly affects you, as defined in Article 22 of GDPR.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Significant changes will be communicated via email.

15. Contact Information

Data Controller:

HubIT Essentials Hubert Kożuchowski
ul. Młynarska 25 lok. 22
01-175 Warszawa
Poland

Tax ID (NIP): 5272999629
REGON: 521842431

Email: hubertkozuchowski@gmail.com
Phone: +48 508 180 507

For GDPR requests: Subject line "GDPR Request"