Privacy Policy
Privacy Statement
The controller places great emphasis on the protection of your personal data. The processing of such data is carried out exclusively in accordance with applicable legislation, in particular Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR) and Act No. 18/2018 Coll. on the Protection of Personal Data.
- Data Controller
The controller processing your personal data is ALPHA Czech Republic s.r.o., with its registered office at V. Opatrného 1050, 51721 Týniště nad Orlicí, ID No.: 04468562, contact: Info.acz@kk-alpha.com (hereinafter referred to as the “controller”).
Contact details of the person responsible for supervising the processing of personal data: acz.hr@kk-alpha.com
If you have any questions or concerns regarding the processing of your personal data, suggestions or complaints, if you believe that we are processing your personal data unlawfully or unfairly, or if you wish to exercise any of your rights, you may contact us at any time by sending an email to the email addresses listed above or in writing to the controller’s address.
- Purposes of Personal Data Processing
The controller processes the personal data of data subjects for the purpose of meeting the company’s legal, organizational, and operational needs. We process personal data, for example, to handle questions, requests, or inquiries submitted via the contact form on the website, to ensure the proper functioning and optimization of the website, including for statistical and analytical purposes through the use of cookies, to prevent unauthorized access and protect property and the safety of persons on company premises via a camera system, to manage and control the entry of visitors and external persons onto company premises, to evaluate job applications and manage personnel records, to manage business relationships, administrative communication, invoicing and fulfilling contractual obligations, ensuring compliance with the controller’s legal obligations and processing data within the scope of legal affairs, receiving and processing reports of suspected unlawful conduct or violations of the company’s internal regulations, including the protection of whistleblowers, and ensuring the integrity, availability, and confidentiality of data, including the prevention of cybersecurity incidents through technical and organizational measures.
- Rights of the Data Subject
As a data subject whose personal data we process, you have the following rights regarding the processing of personal data under the GDPR and the Personal Data Protection Act:
- Right of access to personal data – the right to request from the controller access to the personal data being processed about you
- Right to rectification – the right to request the correction (or supplementation) of personal data
- Right to erasure – the right to request the erasure of personal data under certain conditions
- Right to restriction of processing – the right to request the restriction of the processing of personal data
- Right to object – the right to object to the processing of personal data
- Right to data portability – the right to receive your personal data in a structured, commonly used, and machine-readable format
- Right to object to automated individual decision-making, including profiling
- The right to withdraw consent to the processing of personal data (if the processing is based on consent)
Exercising your rights
If you decide to exercise any of your rights, you may use our request form, which is available upon request. If you are not satisfied with our response or believe that we have violated your rights, or that we are processing your personal data unfairly or unlawfully, you have the option to file a complaint—a request to initiate proceedings—with the supervisory authority, which is the Office for Personal Data Protection of the Slovak Republic.
- Cookies
Cookies are small text files that are stored on your device (computer, tablet, smartphone) when you visit our website. These files help the website recognize your device and remember certain information about your visit.
- Personal Data Security
The controller has implemented appropriate technical and organizational measures to protect personal data against:
- Accidental or unlawful destruction
- Loss, alteration, unauthorized disclosure, or unauthorized access
- Any other form of unlawful processing
Access to personal data is restricted to authorized persons who are bound by a duty of confidentiality.
- Retention period for personal data
We retain personal data only for as long as necessary to fulfill the purpose for which it was collected, or for the period required by law. Once this period has expired, the personal data is securely deleted or anonymized.
