Privacy policy

Privacy and Cookies Policy

For the industry.cloudsty.io website. This document sets out how personal data is processed and which technologies are used on the site.

Last updated
May 2026
Domain
industry.cloudsty.io

1. General information

This Privacy and Cookies Policy sets out how personal data is processed and which technologies are used on the website available at: https://industry.cloudsty.io (the “Site”).

The Controller takes particular care to protect user privacy and to keep transmitted data secure in line with applicable law, in particular:

  • Regulation (EU) 2016/679 of the European Parliament and of the Council (“GDPR”),
  • the Polish Data Protection Act,
  • regulations on electronic communications and user privacy.

2. Data controller

The website operator and personal-data controller is Cloudsty sp. z o.o., with its registered office in Łomża (18-400), ul. gen. Władysława Sikorskiego 166, room 0.03, Poland; tax ID (NIP) 7182159950, REGON 520973102.

For matters related to personal data, contact us at legal@cloudsty.io.

3. Scope of processed data

The Controller may process data voluntarily provided by the user, in particular:

  • first and last name,
  • email address,
  • phone number,
  • information contained in messages sent via the contact form or by email.

Additionally, the server may automatically record basic technical data related to site use, such as:

  • a shortened or anonymised IP address used solely for technical and security purposes,
  • browser type,
  • operating system,
  • date and time of visit,
  • address of the visited subpage.

This data is used exclusively for technical, security and site-statistics purposes.

4. Purposes and legal bases of processing

Personal data may be processed for the following purposes:

a) Contacting the user

To respond to a message sent via the contact form or email.

Legal basis: Art. 6(1)(f) GDPR — legitimate interest of the Controller in maintaining communication.

b) Performance of services or pre-contractual actions

To present an offer or perform services provided by the Controller.

Legal basis: Art. 6(1)(b) GDPR.

c) Site security

To protect the site from abuse and to ensure the proper operation of the service.

Legal basis: Art. 6(1)(f) GDPR.

d) Technical logs and site analytics

To ensure infrastructure security, diagnose errors and monitor proper operation of the service.

Legal basis: Art. 6(1)(f) GDPR — legitimate interest of the Controller.

5. Contact form

Using the contact form requires providing the data necessary to handle the enquiry. Providing data is voluntary; however, failure to provide it may prevent us from responding.

6. Data recipients

Data may be shared only with entities supporting the operation of the site, in particular:

  • hosting providers,
  • IT service providers,
  • email service operators,
  • entities responsible for infrastructure security.

The Controller does not sell or share user personal data with third parties for marketing purposes.

7. Site analytics

The Site uses Umami Analytics for anonymous traffic analysis and visit statistics. Umami follows the privacy-first principle and:

  • does not use cookies,
  • does not use localStorage or sessionStorage,
  • does not store users' full IP addresses,
  • does not identify users,
  • does not create user profiles,
  • does not track users across websites.

The data collected is purely statistical and anonymous, in particular:

  • number of site visits,
  • visited subpages,
  • browser type,
  • operating system,
  • user country,
  • traffic source.

The data is used exclusively to:

  • analyse site usage,
  • improve service quality,
  • monitor site performance and security.

Because Umami does not identify users and does not use analytical cookies, its use does not require prior consent from the user.

8. Cookies

The Site does not use marketing or analytical cookies to track users. Anonymous traffic analysis is provided by Umami Analytics, which operates without cookies.

Some technical elements of the site or server infrastructure may use solutions necessary for the proper operation of the service.

9. Managing cookies

You can manage cookie settings via your browser. Restricting technical cookies may affect the proper operation of some site elements.

10. Data retention period

Personal data is retained for the period:

  • necessary to fulfil the purpose of processing,
  • required to maintain correspondence,
  • required by law,
  • until an effective objection or deletion request is received, if applicable law allows deletion.

11. User rights

Every data subject has the right to:

  • access their data,
  • rectify their data,
  • erase their data,
  • restrict processing,
  • object to processing,
  • data portability,
  • lodge a complaint with the President of the Polish Personal Data Protection Office.

The Controller does not make automated decisions about users or perform profiling within the meaning of the GDPR.

12. Data security

The Controller applies appropriate technical and organisational measures to protect data from:

  • loss,
  • destruction,
  • unauthorised access,
  • disclosure to unauthorised persons.

The Controller regularly updates its security measures to ensure an appropriate level of data protection.

14. Changes to the privacy policy

The Controller reserves the right to update this Privacy and Cookies Policy in the event of:

  • changes in the law,
  • technological changes,
  • development of site functionality.

The current version of the document is always published on the website.

15. Contact

For matters related to privacy and personal data, contact us at legal@cloudsty.io.