Privacy and cookies policy

Last updated: 15 January 2025

1. Controller

The controller of personal data is PROOP, al. Jana Pawła II 43A/37B, 01-001 Warsaw. Contact: kontakt@proop.pl, tel. +48 690 504 074.

2. What data we process

  • Data provided when you contact us: first name and surname, email address, telephone number, message content.
  • Technical and statistical data from cookies and similar technologies.

3. Purposes and legal bases

  • Contact and handling of enquiries – Art. 6(1)(f) or (b) GDPR.
  • Performance of contracts and billing – Art. 6(1)(b) and (c) GDPR.
  • Website analytics (GA4 with IP anonymisation – only with consent) – Art. 6(1)(a) GDPR.
  • Security and abuse prevention – Art. 6(1)(f) GDPR.

4. Cookies and third parties

We use cookies necessary for the website to function and – only with your consent – analytics cookies (Google Analytics 4 with IP anonymisation). Consent may be withdrawn at any time through your browser settings or blocking tools.

4.1. Meeting calendar – Calendly

On our website we use the Calendly service (Calendly LLC, 1315 Peachtree St NE, Atlanta, GA 30309, USA) to enable booking of meeting times. Calendly may use the following cookies:

Cookie nameDomainCategoryPurposeRetention period
_calendly_sessioncalendly.comFunctional/NecessaryStoring the user's session during bookingSession
calendly_preferencescalendly.comFunctional/NecessaryRemembering the user's preferences (time zone, language)1 year
_ga, _ga_*calendly.comAnalyticsAnalytics of widget usage (Google Analytics)2 years

Cookie categories:

  • Functional/Necessary – necessary for the meeting booking feature to work properly. They do not require the user's consent.
  • Analytics – used to analyse how the calendar is used and to optimise the service. They require the user's consent.

More information on Calendly's privacy policy: https://calendly.com/privacy

5. Recipients of data

Providers of IT and analytics services (including Google Ireland Limited and Calendly LLC) – solely on the basis of appropriate agreements and instructions.

6. Transfers outside the EEA

Where data is transferred outside the EEA, we apply appropriate legal safeguards, including standard contractual clauses (SCCs).

7. Retention period

We process data for as long as necessary for the purpose (e.g. the period of correspondence, performance of a contract, legal requirements). Analytics data – in accordance with the GA4 retention settings or until consent is withdrawn.

8. Your rights

You have the right of access, the right to rectification, erasure, restriction of processing and data portability, the right to object, and the right to withdraw consent (without affecting the lawfulness of processing carried out before withdrawal). Complaints: the President of the Personal Data Protection Office (UODO).

9. Requirement to provide data

Providing contact details may be necessary to handle an enquiry or perform a contract. For other purposes (e.g. analytics), providing data is voluntary.

10. Automated decision-making

We do not make automated decisions that produce legal effects or similarly significant effects.

11. Changes to this document

This policy may change. The current version is published on this page.

Technologies we work with

  • Google Workspace
  • Acronis
  • Cloudflare
  • Google Cloud
  • MikroTik
  • Cisco
  • ChatGPT
  • Python
  • Make
  • Apps Script
  • Google Ads
  • ClickUp
  • Retell AI
  • SQL Server
  • Linux