Back to website

VISAN GROUP · DATA PROTECTION

Privacy & Cookie Policy

Updated 27 September 2026

This notice explains how VISAN GROUP Sp. z o.o. handles personal data in connection with visangr.com and business enquiries. It also explains the storage used by the website code.

1. Controller and contact

The controller is VISAN GROUP Sp. z o.o., ul. Józefa Mehoffera 70/13, 03-131 Warszawa, Poland. KRS: 0001186880; NIP: 5243046358; REGON: 542368743. For privacy enquiries and rights requests, contact office@visangr.com or +48 786 135 128.

2. Data and purposes

When you contact us, we receive the information you provide, such as your name, business contact details, company, country, project requirements and correspondence. Website hosting may process IP addresses, access times, browser information and technical logs to deliver and secure the website. Please do not include sensitive personal information in project enquiries.

3. Legal bases

We handle enquiries and requested pre-contractual steps under Article 6(1)(b) GDPR where you are a prospective contracting party. Business-representative correspondence and protecting our systems and legal claims rely on legitimate interests under Article 6(1)(f): handling relevant business communications, security and protecting rights. Records required by law rely on Article 6(1)(c). Where optional tracking is introduced, consent under Article 6(1)(a) and applicable electronic-communications rules is required before activation. Providing enquiry details is voluntary, but without sufficient contact and project information we may be unable to respond.

4. Enquiry form and external links

The enquiry form in this website version prepares a message in your own email application; it does not send the message automatically. We receive it only when you send it. Telephone, WhatsApp and Telegram links open the relevant application or third-party service. Their providers process data under their own terms and privacy notices. You can contact us by email instead of using a messaging service.

5. Recipients and international transfers

Hosting and technical delivery are provided through Tilda. Email, IT support and professional advisers may process information as necessary for their services; authorities may receive it when legally required. A provider's identity, contractual role and processing location depend on the services actually used. Where data is transferred outside the EEA, an applicable GDPR transfer mechanism is required, such as an adequacy decision or standard contractual clauses with additional safeguards where necessary. Contact us for information about applicable recipients and safeguards.

6. Retention

Enquiry data is kept while the request and related discussions remain active, and afterwards only where needed for an applicable record-keeping duty or the establishment, exercise or defence of legal claims. Contract and accounting records follow their statutory retention requirements. Technical logs follow the hosting/security retention settings. Storage is reviewed against these purposes rather than kept indefinitely. The website's cookie-choice record expires after 180 days and is checked on the next page visit.

7. Cookies and local storage

The supplied site code stores your cookie preference in localStorage under visan_consent_v2. This is browser storage, not a cookie, and records the preference and its expiry time. The code itself does not include an analytics or advertising tracker. Optional analytics must stay disabled unless you accept it; you can change your choice using Cookie settings in the footer. Rejecting optional storage does not prevent access to the site. Strictly necessary hosting and security technologies are separate from optional analytics. Browser settings let you clear stored data. Additional integrations enabled in the Tilda account must be assessed and described before use.

8. Your rights

Subject to the applicable conditions, you may request access, rectification, erasure, restriction or portability of your data. You may object to processing based on legitimate interests, and to direct marketing. Consent can be withdrawn at any time without affecting earlier lawful processing. Contact office@visangr.com; we may request proportionate identity verification. Requests are normally answered within one month, with an extension where GDPR permits. You may complain to the President of the Polish Personal Data Protection Office (UODO, uodo.gov.pl), or another competent supervisory authority, including where you habitually reside or work.

9. Security and automated decisions

Appropriate safeguards should protect access to data and limit use to the stated purposes; no transmission method is absolutely secure. The supplied website code does not make automated decisions with legal or similarly significant effects and does not include profiling. Do not send passwords or other secrets through the enquiry form.

10. Updates and website materials

This notice will be updated when the website's processing changes. The date above identifies this version. Website materials may be protected by intellectual-property rights. Reuse requires the relevant permission unless permitted by law; third-party rights remain with their owners.

office@visangr.com · UODO