Privacy Policy
Last updated: 2026-06-07
This Privacy Policy describes how personal data is processed in connection with the website available at https://blog.mziolek.com.
The website is an informational blog. It allows users to read content published by the Controller and voluntarily subscribe to a newsletter. The website does not provide user accounts, online orders, payments or comments.
1. Data Controller
The controller of personal data is: [MICHAŁ ZIÓŁEK / FULL BUSINESS NAME, IF APPLICABLE], [ADDRESS OR REGISTRATION DETAILS, IF APPLICABLE]. Contact email: [EMAIL ADDRESS].
For privacy and data protection matters, you may contact the Controller at: [EMAIL ADDRESS].
2. Categories of data processed
In connection with the use of the website, the Controller may process the following categories of data:
- technical data related to the use of the website, such as IP address, date and time of the request, requested URL, browser information, operating system, device information, server response status and basic diagnostic data;
- data voluntarily provided in email correspondence, if you contact the Controller;
- data related to newsletter subscription, such as email address, selected subscription language, subscription date, confirmation date, subscription status, source of subscription, consent text version and technical data necessary to demonstrate the validity of the subscription;
- data related to unsubscribe handling, such as unsubscribe date, unsubscribe status and technical confirmation of the request.
The website does not collect data for user accounts, purchases, comments or payment processing.
3. Purposes and legal bases of processing
Personal data may be processed for the following purposes:
- ensuring proper operation of the website, security, technical diagnostics, protection against abuse and infrastructure maintenance - based on the Controller's legitimate interest;
- handling email correspondence and responding to user messages - based on the Controller's legitimate interest in communication;
- handling newsletter subscription, confirming the subscription, sending the newsletter and handling unsubscribe requests - based on the user's consent;
- demonstrating that consent to receive the newsletter was given and defending against possible claims - based on the Controller's legitimate interest;
- establishing, pursuing or defending against claims, where necessary - based on the Controller's legitimate interest;
- complying with legal obligations, if such obligations arise - based on a legal obligation imposed on the Controller.
4. Newsletter
You may voluntarily subscribe to the newsletter by providing your email address and consenting to receive electronic messages.
The newsletter may include information about new articles, educational materials, projects, services, initiatives and the Controller's own content. Articles published on the blog may refer to tools, technologies, products or services of third parties; however, the newsletter is not intended to send advertisements of third parties unless this is clearly indicated.
Newsletter subscription may require confirmation of your email address, for example by clicking a confirmation link sent to the email address provided during subscription.
You may unsubscribe from the newsletter at any time by using the unsubscribe link included in each newsletter message or by contacting the Controller.
Withdrawal of consent does not affect the lawfulness of processing carried out before the consent was withdrawn.
5. Hosting, infrastructure and technical providers
The website and technical mechanisms related to its operation may be supported by cloud services provided by Amazon Web Services, in particular Amazon S3, Amazon CloudFront, Amazon Simple Email Service, AWS Lambda, Amazon API Gateway, Amazon DynamoDB and other technical services necessary to maintain the website and newsletter.
In connection with the use of the website and newsletter, infrastructure providers may process technical data such as IP address, HTTP request information, date and time of connection, URL, browser information, diagnostic data, email delivery status and data related to subscription management.
These data are processed to deliver website content, operate the newsletter, ensure security, handle network traffic, diagnose errors, protect infrastructure and prevent abuse.
6. Cookies and similar technologies
As of the last update of this Privacy Policy, the website does not use cookies for advertising, remarketing or user profiling purposes.
The website may use only technically necessary mechanisms required for the proper operation of the service, security handling, remembering basic preferences or handling the newsletter subscription form, where necessary.
If analytics tools, marketing tools, remarketing tools, embedded third-party content or other technologies requiring access to information stored on the user device beyond what is technically necessary are implemented in the future, this Privacy Policy will be updated accordingly and, where required, a consent mechanism will be implemented.
7. Analytics
As of the last update of this Privacy Policy, the Controller does not use Google Analytics, Meta Pixel or other advertising or remarketing tools.
The Controller may analyze basic technical data generated by the hosting infrastructure, in particular to ensure security, detect errors, prevent abuse and evaluate website performance.
8. Recipients of data
Data may be disclosed to entities supporting the Controller in operating the website, maintaining infrastructure, electronic communication, newsletter delivery, security and technical administration.
In particular, data may be processed using Amazon Web Services.
Data may also be disclosed to competent public authorities if required by law.
The Controller does not sell users' personal data and does not provide the newsletter subscriber list to third parties for their own marketing purposes.
9. Transfers outside the European Economic Area
Due to the use of global cloud service providers, in particular Amazon Web Services, data may be transferred or accessed outside the European Economic Area.
In such cases, data transfers are carried out using mechanisms provided for under data protection laws, in particular standard contractual clauses, adequacy decisions or other appropriate safeguards applied by the service provider.
10. Data retention period
Technical data related to the operation of the website are stored for the period necessary to ensure security, diagnostics and proper operation of the website, and are then deleted or anonymized in accordance with the configuration of the services used.
Data contained in email correspondence are stored for the period necessary to handle the matter, and then for the period necessary to secure possible claims or comply with legal obligations.
Data processed for the purpose of sending the newsletter are stored until you unsubscribe from the newsletter or withdraw your consent.
After you unsubscribe from the newsletter, the Controller may retain a limited scope of data, such as email address, subscription date, confirmation date, unsubscribe date, subscription source and consent text version, solely to demonstrate proper handling of consent, unsubscribe requests and to defend against possible claims.
The Controller does not store data longer than necessary for the purposes for which they were collected.
11. User rights
To the extent provided by data protection laws, you have the right to:
- access your personal data;
- rectify your personal data;
- erase your personal data;
- restrict processing;
- data portability;
- object to processing;
- withdraw consent, where processing is based on consent;
- lodge a complaint with a supervisory authority.
To exercise your rights, contact the Controller at: [EMAIL ADDRESS].
12. Right to lodge a complaint
You have the right to lodge a complaint with a competent supervisory authority responsible for personal data protection.
In Poland, the supervisory authority is the President of the Personal Data Protection Office.
13. External links
The website may contain links to external websites, repositories, technical documentation or other resources.
The Controller is not responsible for the privacy practices or security of external websites. Before using an external website, you should review its privacy policy.
14. Changes to this Privacy Policy
This Privacy Policy may be updated if the operation of the website changes, new tools are implemented, service providers change, the newsletter handling process changes or legal requirements change.
The current version of this Privacy Policy is always available on the website.