Personal Data Processing Policy

Integriq s.r.o.

1. Introduction

Integriq s.r.o. places a strong emphasis on the responsible, transparent, and secure processing of personal data. All processing is carried out in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR), applicable Czech legislation, and internal security standards. This policy explains what data we process, why we process it, and how we protect the rights of data subjects.

2. Identification of the Data Controller

The controller of personal data is Integriq s.r.o., with its registered office at Chelčického 686, Rosice, 533 51 Pardubice, Company ID No.: 14051842, Tax ID No.: CZ14051842. If you have any questions or wish to exercise your rights, you can contact us at info@integriq.cz.

3. Scope and Purposes of Processing

We process only the personal data necessary for communicating with customers and those interested in our services, and for fulfilling our contractual obligations. This typically includes identification and contact information (name, email, phone number). We use this data primarily to respond to inquiries, schedule meetings, provide services, and manage business opportunities. We do not use personal data for profiling or automated decision-making.

4. Legal Basis for Processing

The processing of personal data is based primarily on the performance of a contract or on steps taken prior to entering into a contract, in accordance with Article 6(1)(b) of the GDPR. In cases of routine business communication, we also rely on a legitimate interest pursuant to Article 6(1)(f) of the GDPR.

5. Data Recipients

Personal data may be disclosed, to the extent necessary, to our contractual partners who provide technical or administrative services on our behalf, particularly in the areas of IT, hosting, and system administration. These processors are always contractually bound by confidentiality and the obligation to comply with GDPR requirements. We do not transfer personal data to third countries outside the European Union.

6. Retention Period

We retain personal data only for as long as is necessary to fulfill the purpose of processing, typically for the duration of the contractual relationship or for a maximum of 12 months from the last communication. After this period has elapsed, the data is securely deleted or anonymized.

7. Rights of Data Subjects

Every data subject has the right to request access to their personal data, to have it corrected or erased, or to restrict its processing. They also have the right to data portability and the right to object to the processing. If you believe your rights have been violated, you may file a complaint with the Office for Personal Data Protection.

8. Exercising Rights

You can exercise your rights by sending an email to info@integriq.cz. We will respond to your request without undue delay, no later than 30 days. In justified cases, we may request additional information to verify your identity.

9. Data Processing Security

We protect personal data using appropriate technical and organizational measures, which include, in particular, access rights management, secure communication, access logging, and regular system updates. The measures we have implemented are commensurate with the nature of the processing and the level of risk.

10. Principles of Processing

When processing personal data, we adhere to the fundamental principles of the GDPR, in particular lawfulness, transparency, data minimization, purpose and retention period limitations, accuracy, and ensuring integrity and confidentiality.

11. Cookies and Online Tools

We use cookies and similar technologies on our website to help ensure that the site functions properly, to analyze traffic, and to improve the user experience. Essential cookies are always used, while we use analytical and marketing cookies only with your consent. You can change your cookie settings at any time via the cookie banner or your browser settings.

To ensure maximum transparency, we provide an overview of cookies in tabular form:

Essential cookies
NameProviderPurposeMaximum storage periodType
1.gifCookiebotTracking Visits (CMP Optimization)SessionPixel
CookieConsentIntegriq s.r.o.Save Cookie Consent1 yearHTTP cookie
PHPSESSIDIntegriq s.r.o.Maintaining a User SessionSessionHTTP cookie
sidCellUser Status1 monthHTTP cookie
test_cookieGoogleVerifying Cookie SupportDay 1HTTP cookie
Statistical Cookies
NameProviderPurposeMaximum storage periodType
1.gifCookiebotTracking Visits (CMP Optimization)SessionPixel
CookieConsentIntegriq s.r.o.Save Cookie Consent1 yearHTTP cookie
PHPSESSIDIntegriq s.r.o.Maintaining a User SessionSessionHTTP cookie
sidCellUser Status1 monthHTTP cookie
test_cookieGoogleVerifying Cookie SupportDay 1HTTP cookie
Essential cookies
NameProviderPurposeMaximum storage periodType
1.gifCookiebotTracking Visits (CMP Optimization)SessionPixel
CookieConsentIntegriq s.r.o.Save Cookie Consent1 yearHTTP cookie
PHPSESSIDIntegriq s.r.o.Maintaining a User SessionSessionHTTP cookie
sidCellUser Status1 monthHTTP cookie
test_cookieGoogleVerifying Cookie SupportDay 1HTTP cookie
test_cookieGoogleVerifying Cookie SupportDay 1HTTP cookie
test_cookieGoogleVerifying Cookie SupportDay 1HTTP cookie
test_cookieGoogleVerifying Cookie SupportDay 1HTTP cookie
test_cookieGoogleVerifying Cookie SupportDay 1HTTP cookie
Unclassified cookies
NameProviderPurposeMaximum storage periodType
1.gifCookiebotTracking Visits (CMP Optimization)SessionPixel
CookieConsentIntegriq s.r.o.Save Cookie Consent1 yearHTTP cookie
PHPSESSIDIntegriq s.r.o.Maintaining a User SessionSessionHTTP cookie

DPA – DATA PROCESSING AGREEMENT

12. Subject Matter and Roles of the Parties

This agreement governs the processing of personal data in accordance with Article 28 of the GDPR between the controller (the client) and the processor, Integriq s.r.o. The processing is carried out solely for the purpose of providing the agreed-upon services.

13. Scope and Responsibilities

The processor undertakes to process personal data only in accordance with the controller’s instructions, to ensure its confidentiality, and to implement appropriate security measures. The processor may engage other processors only with the controller’s consent. Upon termination of the cooperation, the processor shall delete or return the personal data.

14. Security and Incidents

The processor shall take appropriate technical and organizational measures to protect the data and, in the event of a security breach, shall notify the controller without undue delay and provide the necessary cooperation.

15. Final Provisions

These policies and the sample data processing agreement may be updated from time to time in response to changes in legislation or internal processes.

Effective Date: March 1, 2026