Privacy policy
Updated: 27.09.2026
This page explains what personal data we process, why, and what rights you have. We comply with the EU General Data Protection Regulation (GDPR).
Data controller
[—], IČO [—], [—]. Email: hello@example.com.
What data we process
- Account data: name, email, password in encrypted form, interface language and, if you provide it, your wedding date.
- Payment data: amount, date and payment reference. We do not receive or store your card number.
- Usage data: favourite vendors, activation and expiry dates of your access.
- Technical data: IP address, browser type and request times in the server logs.
- Messages you send us on Telegram or by email.
Why and on what legal basis
- To create your account, accept payment and provide access: performance of a contract.
- To protect the catalogue from copying and forwarding (watermark, device limits): legitimate interest.
- To answer your questions: performance of a contract or legitimate interest.
- To keep accounting records: compliance with a legal obligation.
How long we keep data
- Account data: while your access is active and for 12 months after it ends, so you can renew with your favourites intact. After that we delete or anonymise it.
- Payment records: as long as accounting law requires.
- Server logs: up to 90 days.
Who we share data with
We do not sell data. It is processed only by providers the website cannot run without: hosting and an email service. Fonts are loaded from Google Fonts and photos from Unsplash, so these services see your IP address when the page loads.
Your rights
You can ask for access to your data, its correction, erasure, restriction of processing and portability, and object to processing based on legitimate interest. Write to us at hello@example.com. You also have the right to lodge a complaint with the Czech Office for Personal Data Protection (www.uoou.gov.cz).
Security
Passwords are stored only in encrypted form and the admin area is protected. Vendor contacts are visible only to users with active access.