Privacy and Cookies Policy
For the industry.cloudsty.io website. This document sets out how personal data is processed and which technologies are used on the site.
- Last updated
- May 2026
- Domain
- industry.cloudsty.io
- Contact
- legal@cloudsty.io
1. General information
This Privacy and Cookies Policy sets out how personal data is processed and which technologies are used on the website available at: https://industry.cloudsty.io (the “Site”).
The Controller takes particular care to protect user privacy and to keep transmitted data secure in line with applicable law, in particular:
- Regulation (EU) 2016/679 of the European Parliament and of the Council (“GDPR”),
- the Polish Data Protection Act,
- regulations on electronic communications and user privacy.
2. Data controller
The website operator and personal-data controller is Cloudsty sp. z o.o., with its registered office in Łomża (18-400), ul. gen. Władysława Sikorskiego 166, room 0.03, Poland; tax ID (NIP) 7182159950, REGON 520973102.
For matters related to personal data, contact us at legal@cloudsty.io.
3. Scope of processed data
The Controller may process data voluntarily provided by the user, in particular:
- first and last name,
- email address,
- phone number,
- information contained in messages sent via the contact form or by email.
Additionally, the server may automatically record basic technical data related to site use, such as:
- a shortened or anonymised IP address used solely for technical and security purposes,
- browser type,
- operating system,
- date and time of visit,
- address of the visited subpage.
This data is used exclusively for technical, security and site-statistics purposes.
4. Purposes and legal bases of processing
Personal data may be processed for the following purposes:
a) Contacting the user
To respond to a message sent via the contact form or email.
Legal basis: Art. 6(1)(f) GDPR — legitimate interest of the Controller in maintaining communication.
b) Performance of services or pre-contractual actions
To present an offer or perform services provided by the Controller.
Legal basis: Art. 6(1)(b) GDPR.
c) Site security
To protect the site from abuse and to ensure the proper operation of the service.
Legal basis: Art. 6(1)(f) GDPR.
d) Technical logs and site analytics
To ensure infrastructure security, diagnose errors and monitor proper operation of the service.
Legal basis: Art. 6(1)(f) GDPR — legitimate interest of the Controller.
5. Contact form
Using the contact form requires providing the data necessary to handle the enquiry. Providing data is voluntary; however, failure to provide it may prevent us from responding.
6. Data recipients
Data may be shared only with entities supporting the operation of the site, in particular:
- hosting providers,
- IT service providers,
- email service operators,
- entities responsible for infrastructure security.
The Controller does not sell or share user personal data with third parties for marketing purposes.
7. Site analytics
The Site uses Umami Analytics for anonymous traffic analysis and visit statistics. Umami follows the privacy-first principle and:
- does not use cookies,
- does not use localStorage or sessionStorage,
- does not store users' full IP addresses,
- does not identify users,
- does not create user profiles,
- does not track users across websites.
The data collected is purely statistical and anonymous, in particular:
- number of site visits,
- visited subpages,
- browser type,
- operating system,
- user country,
- traffic source.
The data is used exclusively to:
- analyse site usage,
- improve service quality,
- monitor site performance and security.
Because Umami does not identify users and does not use analytical cookies, its use does not require prior consent from the user.
10. Data retention period
Personal data is retained for the period:
- necessary to fulfil the purpose of processing,
- required to maintain correspondence,
- required by law,
- until an effective objection or deletion request is received, if applicable law allows deletion.
11. User rights
Every data subject has the right to:
- access their data,
- rectify their data,
- erase their data,
- restrict processing,
- object to processing,
- data portability,
- lodge a complaint with the President of the Polish Personal Data Protection Office.
The Controller does not make automated decisions about users or perform profiling within the meaning of the GDPR.
12. Data security
The Controller applies appropriate technical and organisational measures to protect data from:
- loss,
- destruction,
- unauthorised access,
- disclosure to unauthorised persons.
The Controller regularly updates its security measures to ensure an appropriate level of data protection.
13. External links
The Site may contain links to third-party websites. The Controller is not responsible for the privacy practices of those sites.
14. Changes to the privacy policy
The Controller reserves the right to update this Privacy and Cookies Policy in the event of:
- changes in the law,
- technological changes,
- development of site functionality.
The current version of the document is always published on the website.
15. Contact
For matters related to privacy and personal data, contact us at legal@cloudsty.io.