{"id":1268,"date":"2026-04-25T21:59:29","date_gmt":"2026-04-25T21:59:29","guid":{"rendered":"https:\/\/medycyna-gorska.pl\/privacy-policy\/"},"modified":"2026-04-25T21:59:29","modified_gmt":"2026-04-25T21:59:29","slug":"privacy-policy","status":"publish","type":"page","link":"https:\/\/medycyna-gorska.pl\/en\/privacy-policy\/","title":{"rendered":"Privacy Policy"},"content":{"rendered":"\n<p>This Privacy Policy sets out how personal data of visitors to <strong>medycyna-gorska.pl<\/strong> and users of the contact form are processed. The document has been prepared in accordance with Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016 (hereinafter: <strong>GDPR<\/strong>) and the Polish Personal Data Protection Act of 10 May 2018.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">1. Data Controller<\/h2>\n\n\n\n<p>The controller of your personal data is:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>AGNIESZKA WIERNIK Indywidualna Praktyka Lekarska<\/strong> (Individual Medical Practice)<\/li>\n<li>ul. Zawiszy Czarnego 6, 40-872 Katowice, Poland<\/li>\n<li>VAT ID (NIP): 6272721455<\/li>\n<li>Statistical number (REGON): 369664501<\/li>\n<li>e-mail: <a href=\"mailto:rodo@medycyna-gorska.pl\">rodo@medycyna-gorska.pl<\/a><\/li>\n<\/ul>\n\n\n\n<p>For all matters relating to the processing of personal data and the exercise of your rights, you may contact us at the e-mail address indicated above or in writing at the Controller&#8217;s registered address.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">2. Data Protection Officer<\/h2>\n\n\n\n<p>The Controller has not appointed a Data Protection Officer. All personal data protection enquiries should be directed to the Controller at <a href=\"mailto:rodo@medycyna-gorska.pl\">rodo@medycyna-gorska.pl<\/a>.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">3. Purposes and legal bases of processing<\/h2>\n\n\n\n<p>Your personal data is processed for the following purposes:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>Handling enquiries submitted via the contact form<\/strong> \u2014 legal basis: Article 6(1)(b) GDPR (steps taken at the request of the data subject prior to entering into a contract) and Article 6(1)(f) GDPR (legitimate interest of the Controller in responding to enquiries).<\/li>\n<li><strong>Website traffic analytics (Google Analytics 4)<\/strong> \u2014 legal basis: Article 6(1)(a) GDPR (voluntary consent given via the cookie consent banner).<\/li>\n<li><strong>Ensuring the proper operation and security of the website<\/strong> (technical cookies, spam protection, login protection) \u2014 legal basis: Article 6(1)(f) GDPR (legitimate interest of the Controller).<\/li>\n<li><strong>Compliance with legal obligations<\/strong> imposed on the Controller \u2014 legal basis: Article 6(1)(c) GDPR.<\/li>\n<\/ol>\n\n\n\n<h2 class=\"wp-block-heading\">4. Scope of data collected<\/h2>\n\n\n\n<p>The Controller processes only the data necessary to fulfil the purposes set out in section 3:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Contact form:<\/strong> name, e-mail address, subject, message content. Messages are not stored in the website database \u2014 they are sent directly to the Controller&#8217;s mailbox.<\/li>\n<li><strong>Technical data:<\/strong> IP address, browser type, operating system, language, referring page, date and time of visit (server logs).<\/li>\n<li><strong>Google Analytics 4 statistics (after consent):<\/strong> anonymised device identifier, browser data, country\/city, page interaction. The IP address is truncated before storage (IP anonymisation). We do not collect data that would allow direct identification of a natural person.<\/li>\n<\/ul>\n\n\n\n<p>The website <strong>does not collect<\/strong> any health data of its visitors, does not provide online medical consultations, and does not allow appointment booking through the site.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">5. Cookies and similar technologies<\/h2>\n\n\n\n<p>The website uses cookies and localStorage technology. We implement <strong>Google Consent Mode v2<\/strong> \u2014 before consent is given, no analytical or marketing cookies are stored in your browser.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">5.1. Necessary cookies (always active)<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><code>mg_cc_v1<\/code> (localStorage) \u2014 stores your choice from the cookie consent banner. Retention: 365 days.<\/li>\n<li><code>wp-wpml_current_language<\/code> \u2014 remembers your selected language (PL\/EN). Retention: browser session.<\/li>\n<li>WordPress and LiteSpeed Cache session cookies \u2014 only for logged-in users (administrator). Not relevant to regular visitors.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">5.2. Analytical cookies (after consent)<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><code>_ga<\/code> \u2014 Google Analytics 4, anonymous user identifier. Retention: 2 years.<\/li>\n<li><code>_ga_GT31SWG3BZ<\/code> \u2014 Google Analytics 4, session state. Retention: 2 years.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">5.3. Managing your consent<\/h3>\n\n\n\n<p>You may change your choice at any time by clicking the &#8220;Cookie settings&#8221; icon (gear) in the bottom-left corner of the page. You may also delete stored cookies directly in your browser settings. Withdrawal of consent does not affect the lawfulness of processing carried out on the basis of consent before its withdrawal.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">6. Recipients of data<\/h2>\n\n\n\n<p>Your personal data may be transferred to the following categories of recipients:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Hosting provider<\/strong> \u2014 Riomega (server.riomega.pl), to the extent necessary to maintain the website, on the basis of a data processing agreement.<\/li>\n<li><strong>Google Ireland Limited<\/strong> (Gordon House, Barrow Street, Dublin 4, Ireland) \u2014 for Google Analytics 4 services, only after consent is given.<\/li>\n<li><strong>Authorities authorised by law<\/strong> \u2014 to the extent and in cases provided for by applicable law.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">7. Transfers outside the EEA<\/h2>\n\n\n\n<p>When using Google Analytics 4 services, data may be transferred to the United States. The transfer takes place on the basis of <strong>Commission Implementing Decision (EU) 2023\/1795 of 10 July 2023 (Data Privacy Framework)<\/strong> \u2014 Google LLC holds DPF certification, which ensures an adequate level of data protection. Additionally, Google applies <strong>standard contractual clauses<\/strong> approved by the European Commission.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">8. Data retention period<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Contact form messages<\/strong> \u2014 for the period necessary to respond and conduct any further correspondence, no longer than 3 years from the last contact, unless a longer period results from legal obligations.<\/li>\n<li><strong>Server logs<\/strong> \u2014 up to 30 days.<\/li>\n<li><strong>Google Analytics 4 statistics<\/strong> \u2014 by default 14 months (GA4 project-level setting).<\/li>\n<li><strong>Cookies<\/strong> \u2014 in accordance with the periods indicated in section 5.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">9. Your rights<\/h2>\n\n\n\n<p>In connection with the processing of your personal data, you have the following rights:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>right of access<\/strong> to your data and to obtain a copy of it (Article 15 GDPR),<\/li>\n<li><strong>right to rectification<\/strong> of data (Article 16 GDPR),<\/li>\n<li><strong>right to erasure<\/strong> of data (&#8220;right to be forgotten&#8221;, Article 17 GDPR),<\/li>\n<li><strong>right to restriction of processing<\/strong> (Article 18 GDPR),<\/li>\n<li><strong>right to data portability<\/strong> (Article 20 GDPR),<\/li>\n<li><strong>right to object<\/strong> to processing (Article 21 GDPR),<\/li>\n<li><strong>right to withdraw consent<\/strong> at any time (Article 7(3) GDPR) \u2014 when processing is based on consent,<\/li>\n<li><strong>right to lodge a complaint<\/strong> with the supervisory authority \u2014 President of the Personal Data Protection Office (ul. Stawki 2, 00-193 Warsaw, <a href=\"https:\/\/uodo.gov.pl\" target=\"_blank\" rel=\"noopener\">uodo.gov.pl<\/a>).<\/li>\n<\/ul>\n\n\n\n<p>To exercise these rights, contact the Controller at <a href=\"mailto:rodo@medycyna-gorska.pl\">rodo@medycyna-gorska.pl<\/a>.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">10. Voluntary nature of providing data<\/h2>\n\n\n\n<p>Providing personal data is voluntary, but necessary to use the contact form. Failure to provide a name and e-mail address will make it impossible to respond to an enquiry. Consent to analytical cookies is entirely voluntary and does not affect your ability to use the website.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">11. Automated decision-making and profiling<\/h2>\n\n\n\n<p>Your personal data <strong>is not used<\/strong> for automated decision-making that produces legal effects concerning you or similarly significantly affects you. We do not perform profiling.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">12. Embedded content from other websites<\/h2>\n\n\n\n<p>Articles on this website may include embedded content (e.g. YouTube videos, images, Instagram posts). Embedded content from other websites behaves exactly as if the visitor had visited that other website directly. These websites may collect data about you, use their own cookies, and monitor your interactions. We recommend reviewing the privacy policies of those services.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">13. Changes to this Privacy Policy<\/h2>\n\n\n\n<p>The Controller reserves the right to modify this Privacy Policy in the event of changes in legislation, technology, or the scope of services provided. Material changes will be announced via a banner on the homepage.<\/p>\n\n\n\n<p><em>Last updated: 25 April 2026.<\/em><\/p>\n\n","protected":false},"excerpt":{"rendered":"<p>This Privacy Policy sets out how personal data of visitors to medycyna-gorska.pl and users of the contact form are processed. The document has been prepared in accordance with Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016 (hereinafter: GDPR) and the Polish Personal Data Protection Act of 10 May [&hellip;]<\/p>\n","protected":false},"author":0,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-1268","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/medycyna-gorska.pl\/en\/wp-json\/wp\/v2\/pages\/1268","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/medycyna-gorska.pl\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/medycyna-gorska.pl\/en\/wp-json\/wp\/v2\/types\/page"}],"replies":[{"embeddable":true,"href":"https:\/\/medycyna-gorska.pl\/en\/wp-json\/wp\/v2\/comments?post=1268"}],"version-history":[{"count":0,"href":"https:\/\/medycyna-gorska.pl\/en\/wp-json\/wp\/v2\/pages\/1268\/revisions"}],"wp:attachment":[{"href":"https:\/\/medycyna-gorska.pl\/en\/wp-json\/wp\/v2\/media?parent=1268"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}