Privacy Policy for LaunchDirectories

    Last Updated: January 16, 2025

    1. Data Controller Information

    Data Controller:
    Krzysztof Cichy
    Website: https://launchdirectories.com
    Email: hello@launchdirectories.com

    This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website LaunchDirectories. We are committed to protecting your privacy in accordance with the General Data Protection Regulation (GDPR) and Polish data protection laws.

    2. Legal Basis for Processing

    We process your personal data based on the following legal grounds:

    • Consent (Art. 6(1)(a) GDPR): For analytics and marketing communications
    • Contract Performance (Art. 6(1)(b) GDPR): For processing payments and delivering services
    • Legitimate Interests (Art. 6(1)(f) GDPR): For website functionality, security, and improvement
    • Legal Obligation (Art. 6(1)(c) GDPR): For compliance with tax and legal requirements

    3. Personal Data We Collect

    3.1 Information You Provide Directly

    • Contact Information: Name, email address when you contact us or subscribe to our services
    • Payment Information: Billing details, payment method information for sponsorships and paid services (processed through secure third-party providers)
    • Communication Data: Content of emails, support requests, and other communications with us
    • Service-related Data: Information you provide when using our auto-submission or sponsorship services

    3.2 Information We Collect Automatically

    • Website Analytics: Page views, time spent on site, referral sources, user journey (via Simple Analytics - privacy-focused, no personal identification)
    • Technical Data: IP address, browser type, device information, operating system, screen resolution
    • Usage Data: Pages visited, features used, search queries, interaction patterns
    • Security Data: Server logs for security monitoring and fraud prevention

    3.3 Cookies and Tracking Technologies

    We use the following types of cookies:

    • Essential Cookies: Required for website functionality, user authentication, and security
    • Analytics Cookies: Simple Analytics cookies for understanding website usage (anonymized)
    • Functional Cookies: Remember your preferences and settings
    • Third-party Cookies: From integrated services and payment processors

    4. Third-Party Services and Data Sharing

    4.1 Analytics and Performance

    • Simple Analytics: Privacy-focused analytics that collect anonymized visitor statistics without personal identification or tracking
    • Google Search Console: Search performance data to improve our website's visibility and user experience

    4.2 Payment Processing

    • Payment Processors: Secure handling of payment information for sponsorships and services (we do not store payment card details)
    • Stripe/PayPal: Payment processing with industry-standard security measures

    We only share personal data with third parties when necessary to provide our services, comply with legal obligations, or with your explicit consent. All third-party processors are bound by data protection agreements.

    5. How We Use Your Personal Data

    We use your personal data for the following purposes:

    • Service Delivery: Processing sponsorships, auto-submission services, and customer support
    • Communication: Responding to inquiries, sending service updates, and marketing communications (with consent)
    • Website Improvement: Analyzing usage patterns to improve user experience and website functionality
    • Security: Protecting against fraud, unauthorized access, and maintaining system security
    • Legal Compliance: Meeting tax obligations, legal requirements, and regulatory compliance
    • Business Operations: Managing directory listings, processing payments, and maintaining service quality

    6. Data Retention

    We retain personal data only as long as necessary for the purposes outlined in this policy:

    • Contact Data: Until you withdraw consent or request deletion
    • Payment Data: As required by tax and accounting laws (typically 5-7 years)
    • Analytics Data: Anonymized data retained for statistical analysis
    • Communication Records: 3 years for customer service quality and legal purposes
    • Security Logs: 1 year for security monitoring and incident response

    7. Your Rights Under GDPR and Polish Law

    As a data subject, you have the following rights:

    • Right of Access (Art. 15 GDPR): Request information about your personal data we process
    • Right of Rectification (Art. 16 GDPR): Request correction of inaccurate or incomplete data
    • Right of Erasure (Art. 17 GDPR): Request deletion of your personal data ("right to be forgotten")
    • Right to Restrict Processing (Art. 18 GDPR): Request limitation of data processing
    • Right to Data Portability (Art. 20 GDPR): Request transfer of your data to another service
    • Right to Object (Art. 21 GDPR): Object to processing based on legitimate interests
    • Right to Withdraw Consent: Withdraw consent for processing at any time
    • Right to File a Complaint: Lodge a complaint with the Polish Data Protection Authority (UODO)

    To exercise these rights, contact us at hello@launchdirectories.com. We will respond within 30 days as required by law.

    8. International Data Transfers

    Your personal data may be transferred to and processed in countries outside the European Economic Area (EEA). We ensure appropriate safeguards are in place:

    • Adequacy Decisions: Transfers to countries with adequate data protection levels
    • Standard Contractual Clauses: EU-approved contracts for data protection
    • Certification Schemes: Providers certified under privacy frameworks
    • Binding Corporate Rules: For multinational service providers

    9. Data Security

    We implement appropriate technical and organizational measures to protect your personal data:

    • Encryption: Data encrypted in transit and at rest
    • Access Controls: Strict access controls and authentication
    • Regular Updates: Security patches and system updates
    • Monitoring: Continuous monitoring for security threats
    • Incident Response: Procedures for data breach response
    • Staff Training: Regular privacy and security training for personnel

    In case of a data breach affecting your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours as required by GDPR.

    10. Children's Privacy

    Our services are not intended for children under 16 years old. We do not knowingly collect personal data from children under 16 without parental consent.

    If we become aware that we have collected personal data from a child under 16 without parental consent, we will take steps to delete such information and terminate the child's access to our services.

    11. Marketing Communications

    With your consent, we may send you marketing communications about our services, updates, and relevant information. You can:

    • Opt-out at any time by clicking the unsubscribe link in emails
    • Update your communication preferences by contacting us
    • Withdraw consent for marketing communications

    12. Automated Decision Making

    We do not use automated decision-making or profiling that would significantly affect you. Any automated processing is limited to basic functionality like spam filtering and security monitoring.

    13. Changes to This Privacy Policy

    We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or services. We will:

    • Post the updated policy on our website
    • Update the "Last Updated" date
    • Notify you of significant changes via email (if we have your email address)
    • Provide at least 30 days notice for material changes

    14. Contact Information

    For any questions about this Privacy Policy, to exercise your rights, or to report concerns, please contact us at: hello@launchdirectories.com

    15. Acknowledgment and Consent

    By using LaunchDirectories, you acknowledge that you have read and understood this Privacy Policy. For processing activities requiring consent, you provide such consent by using our services or explicitly agreeing to data collection when prompted.