Cookie Policy
The following Privacy Policy outlines the principles for storing and accessing data on User Devices using the Service for the purpose of providing electronic services by the Administrator, as well as the rules for collecting and processing Users’ personal data submitted voluntarily by them via tools available in the Service.
This Privacy Policy is an integral part of the Service Regulations, which define the terms, rights, and obligations of Users using the Service.
§1 Definitions
Service – the online service “photoaitagger.com” operating at https://photoaitagger.com
External Service – online services of partners, providers, or clients cooperating with the Administrator
Service/Data Administrator – the company “Cosmosens.pl Kordian Chodorowski”, located at ul. Króla Kazimierza Wielkiego 60, OLKUSZ, with tax ID (NIP) PL6371011254
User – an individual for whom the Administrator provides electronic services via the Service
Device – an electronic device with software through which the User accesses the Service
Cookies – textual data stored as files placed on the User’s Device
GDPR – Regulation (EU) 2016/679 on personal data protection
Personal Data – any information relating to an identified or identifiable natural person
Processing – any operation on personal data
Restriction of Processing – marking data to limit its future processing
Profiling – automated evaluation of personal aspects
Consent – voluntary permission for data processing
Personal Data Breach – security violation resulting in accidental/unlawful access to data
Pseudonymization – transforming data so it can’t be linked to a person without extra info
Anonymization – irreversible process preventing data identification
§2 Data Protection Officer
Pursuant to Article 37 GDPR, the Administrator has not appointed a Data Protection Officer. For matters concerning data processing, including personal data, please contact the Administrator directly.
§3 Types of Cookies
First-party cookies – stored and read by the Service’s system
Third-party cookies – stored and read by scripts from external services
Session cookies – active during a single session only
Persistent cookies – stored until manually deleted
§4 Data Storage Security
Browser-based cookie mechanisms ensure secure communication and do not access other site data or personal information. First-party cookies are safe and contain no harmful scripts. The Administrator works with trusted third parties and strives to verify their security, but cannot guarantee third-party cookie safety.
Users can manage cookie settings in their browsers or delete all cookies via their device tools. Security threats may arise from malware, and Users are advised to use security best practices. Personal data is stored securely using physical and organizational safeguards.
Passwords are encrypted using modern standards and cannot be decrypted.
§5 Objectives of Cookies
- Improving access and usability of the Service
- Personalizing content for Users
- Enabling login functionality
- Marketing and remarketing
- Serving ads
- Affiliate services
- Gathering statistics
- Multimedia services
- Social features
§6 Purposes of Personal Data Processing
Voluntarily provided personal data is processed for:
- Providing services (account registration, newsletter, commenting)
- Communication with Users
- Legal interests of the Administrator
Automatically collected anonymous data is processed for:
- Statistics
- Remarketing
- Tailored advertising
- Affiliate support
- Legal interests
§7 Third-Party Cookies
The Service uses scripts from partners who may place their cookies on User Devices.
These include:
- Social services: Twitter, Facebook, Google+
- Analytics: Google Analytics
- Other: Google Maps
These services may change their policies at any time. Control them via your browser settings.
§8 Types of Collected Data
Automatically collected (anonymous):
- IP address, browser type, screen resolution, OS, time on site, etc.
Provided by User (during registration, comments, newsletter):
- Name/nickname, email, IP address
Some data is stored in cookies or used for analytics (non-identifying).
Type of operating system, including HWID (hardware identifier)
§9 Third-Party Access to Data
In general, only the Administrator has access to User data.
Access may be granted to:
- Hosting providers (e.g. Korbank SA)
- Payment providers (e.g. AutoPay)
- Courier/postal services
These are regulated by data processing agreements.
§10 Personal Data Processing Method
- Data is not transferred outside the EU unless voluntarily published
- No automated decision-making or profiling
- Data is not resold
Anonymous data (without personal identifiers) may be transferred outside the EU
§11 Legal Basis for Processing
Based on:
- GDPR Article 6(1)(a) – Consent
- GDPR Article 6(1)(b) – Contract
- GDPR Article 6(1)(f) – Legitimate interest
Also based on:
- Polish Data Protection Act 2018
- Polish Telecommunications Law 2004
- Copyright and Related Rights Act 1994
§12 Data Retention Period
Personal data is stored only as long as services are provided, and deleted or anonymized within 30 days of termination.
If needed for legal purposes, it may be stored for up to 3 years.
Anonymous data may be stored indefinitely for statistical purposes.
§13 User Rights
Users have the right to:
- Access their data
- Correct their data
- Delete their data
- Restrict processing
- Data portability
- Object to processing
- File a complaint to a supervisory authority
Newsletter users can unsubscribe via email links.
§14 Contact
Cosmosens.pl Kordian Chodorowski
ul. Króla Kazimierza Wielkiego 60, OLKUSZ
Email: cosmosens.pl@gmail.com
Phone: +48 500 288 747
Contact form: https://photoaitagger.com/en/kontakt
§15 Service Requirements
Restricting cookies may disable some site features. The Administrator is not liable for these effects.
§16 External Links
External links may appear in posts or comments. These are not affiliated with the Administrator and may be unsafe.
§17 Privacy Policy Changes
The Administrator may change this Privacy Policy without notice regarding anonymous data and cookies. Changes concerning personal data will be communicated via email within 7 days to registered or newsletter Users. Continued use means acceptance.
Users disagreeing must delete their account or unsubscribe. Changes are effective upon publication.