Skip to content
PAT-IT
Home
Services
ISO 27001ISMS implementation and readiness auditNIS2Self-assessment, audit and implementationGDPRAudit, DPO, breaches and Privacy by DesignCar codingDiagnostics and customisation with OBDeleven
Industry solutions
ManagementRisk, strategy and reportingIT departmentsProcesses, safeguards and auditsLegal departmentsLaw, compliance and evidence of conformity
About us
PL / EN
Free consultation
Home
Services
View allServicesISO 27001ISMS implementation and readiness auditNIS2Self-assessment, audit and implementationGDPRAudit, DPO, breaches and Privacy by DesignCar codingDiagnostics and customisation with OBDeleven
Industry solutions
View allIndustry solutionsManagementRisk, strategy and reportingIT departmentsProcesses, safeguards and auditsLegal departmentsLaw, compliance and evidence of conformity
About usContact
PL / EN
  1. Home
  2. Privacy policy

Privacy and security

Privacy policy

This policy explains what personal data we process, for what purposes, and what rights are available to users of the PAT-IT website.

Last updated: 16 August 2026

1. Data controller

The controller of personal data is PAT-IT Maciej Patakiewicz, ul. Łąkocińska 12, 03-320 Warsaw, Poland, tax identification number (NIP) 5214148665. Privacy enquiries: rodo@pat-it.pl.

2. Categories of data

Through the contact form, we may process your name, email address, selected topic and message. To protect the form, we temporarily record pseudonymised technical data and proof that the ALTCHA task has been completed.

3. Purposes and legal bases

  • responding to enquiries and protecting the website — Article 6(1)(f) GDPR;
  • taking steps before entering into a contract or performing a contract — Article 6(1)(b) GDPR;
  • compliance with legal obligations — Article 6(1)(c) GDPR.

4. Recipients

Data may be processed on our behalf by Zenbox and by email or IT support providers, solely to the extent necessary. We do not sell personal data. ALTCHA operates locally within the website and does not profile users.

5. Transfers outside the EEA

If a provider requires a transfer outside the EEA, we will use an appropriate safeguard provided for under the GDPR, in particular an adequacy decision or standard contractual clauses.

6. Retention

We retain correspondence while handling the matter and, as a rule, for no longer than three years afterwards. Technical anti-spam records are deleted automatically within 24 hours at the latest.

7. Your rights

You may request access to, rectification or erasure of your data, restriction of processing or data portability, and you may object to processing. You may also lodge a complaint with the President of the Personal Data Protection Office (UODO).

8. Voluntary provision of data

Providing data is voluntary but necessary for us to respond. We do not make decisions based solely on automated processing that produce legal effects concerning you or similarly significantly affect you.

9. Cookies and technologies

The website does not use analytics or marketing cookies. We use only technologies necessary for WordPress, website security and operation of the contact form.

10. Security and changes

We use TLS, access controls, updates, data minimisation and safeguards against abuse. The current version of this policy is available at this address.

PAT-IT

Experts in information security and process compliance. We strengthen your business resilience.

PAT-IT Maciej Patakiewicz
NIP: 5214148665
ul. Łąkocińska 12
03-320 Warszawa
biuro@pat-it.pl
ServicesISO 27001NIS2 complianceGDPRCar coding
CompanyAbout usContactPrivacy policy
© 2026 PAT-IT. All rights reserved.