Personal Data Protection Policy of Lakšmí s.r.o.

Version: 1
Date: 23 May 2018
Prepared by: M. Nahálka
Approved by: M. Nahálka


Personal Data Protection

If you are our customer participating in the loyalty program, a customer of meal delivery, a customer of healthy meal boxes delivery, a newsletter subscriber, or a visitor to our website, you entrust us with your personal data.
Lakšmí s.r.o. is responsible for their protection and security.
Please familiarize yourself with the personal data protection policy, principles, and your rights in connection with GDPR (General Data Protection Regulation).


Who is the Controller?

We are Lakšmí s.r.o., Company ID: 27752178, with registered office at Vavrečkova 5262, 760 01 Zlín, Czech Republic.
We operate the websites
http://www.prasad.cz and http://www.krabickyprozdravi.cz.

We process your personal data as the controller, meaning that we determine how personal data will be processed, for what purpose, for how long, and we select any additional processors who assist us with processing.


Contact Details

If you wish to contact us during the processing of your personal data, you can reach us by phone at +420 731 523 714 or by e-mail at: info@prasad.cz.


Our Declaration

We declare that as the controller of your personal data, we comply with all legal obligations required by applicable legislation, in particular the Personal Data Protection Act and GDPR, and therefore:

  • we process your personal data only on the basis of a valid legal ground, in particular legitimate interest, performance of a contract, legal obligation, or granted consent,
  • we fulfill the information obligation pursuant to Article 13 of GDPR before starting the processing of personal data,
  • we enable and support you in exercising and fulfilling your rights under the Personal Data Protection Act and GDPR.

Scope of Personal Data and Purposes of Processing

We process personal data that you provide to us for the following purposes:

Provision of services, performance of a contract

Your personal data in the scope of: e-mail address, name, phone number, billing details, and possibly delivery address are necessary for the performance of the contract (e.g. delivery of goods).

Accounting

If you are our customer, your personal data (billing details) are necessary to comply with legal obligations related to issuing and recording tax documents.

Marketing – newsletters

Your personal data (e-mail address and name), gender, age, what you click on in emails, and when you most often open them are used for direct marketing purposes – sending commercial communications.
If you are our customer, this is based on our legitimate interest, as we reasonably assume you are interested in our news, for a period of 5 years from your last order.

If you are not our customer, we send newsletters only based on your consent, for a period of 5 years from granting it.
In both cases, you can withdraw your consent by using the unsubscribe link in each email.


Cookies

When browsing our websites, we record your IP address, how long you stay on the site, and from which page you came.
We consider the use of cookies for measuring website traffic and customizing website display as our legitimate interest, as we believe this allows us to offer better services.

Cookies for targeted advertising are processed only based on your consent.
Our websites can also be browsed in a mode that does not allow the collection of personal data.
You can disable cookies on your computer.


Security and Protection of Personal Data

We protect personal data to the maximum extent possible using modern technologies corresponding to the current state of technical development.
We protect personal data as if they were our own.
We have adopted and maintain all appropriate technical and organizational measures to prevent misuse, damage, or destruction of personal data.


Transfer of Personal Data to Third Parties

Only selected employees have access to your personal data.

To ensure specific processing operations that we cannot provide ourselves, we use services and applications of processors who can protect data even better than we can and specialize in such processing.

These include providers of the following platforms:

  • Agnis s.r.o.
  • Surface s.r.o.
  • Google
  • Accounting firm

In the future, we may decide to use additional applications or processors to facilitate and improve processing. When selecting them, we will place at least the same requirements on security and quality of processing as on ourselves.


Transfer of Data Outside the European Union

Data are processed exclusively within the European Union or in countries that ensure an adequate level of protection based on a decision of the European Commission.


Your Rights in Relation to Personal Data Protection

In connection with personal data protection, you have a number of rights.
If you wish to exercise any of these rights, please contact us at: info@prasad.cz.

  • Right to information – fulfilled through this information page.
  • Right of access – you can request confirmation of what personal data we process and why; we will provide this within 30 days.
  • Right to rectification – if your data are inaccurate or incomplete.
  • Right to restriction of processing – if you believe data are inaccurate, processing is unlawful, or you object to processing but do not want deletion.
  • Right to data portability – data will be provided in a machine-readable format within 30 days.
  • Right to erasure (right to be forgotten) – upon request, we will delete all your personal data from our systems and from all processors and backups (within 100 days), unless retention is required by law (e.g. tax documents).

Complaint to the Data Protection Authority

If you believe that we do not handle your data in accordance with the law, you have the right to file a complaint with the Office for Personal Data Protection.
We would appreciate it if you inform us first so we can address and remedy any potential issue.


Unsubscribing from Newsletters and Commercial Communications

We send emails with menus, information about news, and changes in opening hours to customers based on our legitimate interest.
If you are not a customer, we send them only based on your consent.
In both cases, you can unsubscribe via the unsubscribe link in each email.


Confidentiality

We assure you that our employees and collaborators who process personal data are obliged to maintain confidentiality regarding personal data and security measures.
This obligation continues even after the termination of contractual relationships.
Without your consent, your personal data will not be disclosed to any third party.


These personal data processing principles are valid from 23 May 2018.