This Privacy Policy defines the principles of processing and protecting personal data provided by users in connection with their use of services offered by the SOFRA website (hereinafter: the Service)
The administrator of personal data contained in the Service is Instytut Zdrowia Sofra, Mielno 76-032, Chełmońskiego 2 entered in the business register under the number NIP: PL4990188920 (hereinafter: the Data Controller).
In order to ensure the security of entrusted personal data, the Data Controller operates based on internal procedures and recommendations, compliant with relevant legal acts on personal data protection, in particular Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC.
The Data Controller takes special care to protect the interests of the persons whose data is concerned and in particular ensures that personal data are:
processed lawfully,
collected for specified, lawful purposes and not further processed in a manner incompatible with those purposes,
factually accurate and adequate in relation to the purposes for which they are processed,
stored in a form allowing identification of the persons concerned no longer than necessary to achieve the processing purpose.
The Data Controller performs functions of obtaining information about users and their behaviors through voluntary submission of information in forms, for the purpose of:
responding to user inquiries submitted via the contact form based on Article 6(1)(f) GDPR,
accepting reservations using the online booking system based on Article 6(1)(b) GDPR,
providing services offered by the Data Controller based on Article 6(1)(b) GDPR,
marketing, including sending commercial information to the email address if the Client consents by checking the appropriate box during the reservation process based on Article 6(1)(a) GDPR. Consent to data processing for marketing purposes and sending commercial information may be withdrawn by clicking the appropriate link in the received message or sending such a request to the Data Controller's email address,
realizing the legitimate interests of the Data Controller in special cases based on Article 6(1)(f) GDPR, e.g. debt collection,
Upon first visit to the SOFRA website, the user is informed about the use of cookies. By remaining on the website, the user accepts the use of cookies on the website. Failure to change the browser settings on the user's side is equivalent to consenting to the use of cookies.
Changes to cookie settings will take effect after restarting or refreshing the session on the Data Controller's website.
The installation of "cookies necessary for the basic functionality of the Service" is required for its proper operation, especially for authorization.
Cookies necessary for the operation of the website can be changed by changing browser settings, bearing in mind that changing these settings may cause improper operation of the website.
More information about cookies is available in the "Help" section in the user's web browser menu.
Users who, after reading the information available on the Service, do not want cookies to be stored in their device’s web browser, should delete them from their browser after finishing their visit to the Service. The following types of cookies are used on the Service:
session - remain in the browser until it is closed or logged out from the Service,
persistent - remain in the device’s web browser until deleted by the user or until a predetermined time specified in the cookie parameters.
In terms of functionality, cookies can be divided into:
analytical cookies, which help improve the comfort of using the site by understanding how users use and convert on it,
marketing cookies, used for personalizing ad content, proper targeting, and analyzing the performance of marketing and sales channels,
necessary cookies, fundamental for the basic functionality of the Service.
Cookies we use allow us to develop our website.
Some cookies may be placed by the Online Booking System provider only for the purpose of:
improving and supporting the booking process,
analyzing and collecting statistical data concerning website and online booking system usage to improve them,
the Online Booking System provider informs about installed cookies in the user interface of that system
The Data Controller may use automated decision-making, including profiling, for marketing purposes (including automated ad matching to your interests and measuring their effectiveness), and adapting the offer based on Article 6(1)(a) GDPR.
Recipients of personal data may be authorities, institutions, and entities authorized under legal provisions, as well as entities providing services to the Data Controller (e.g., legal, IT, marketing, accounting services, and other entities participating in the fulfillment of the ordered service).
We use the following analytical tools:
We use the following marketing tools:
Users of the Service who provide data to the Data Controller have the right to access their data. Users also have the right to modify that data, request its deletion, limit or stop the processing of their personal data at any time. Users may also request deletion of their personal data from the service at any time. The right to data portability does not apply because no data exchange standard has been established between hotel facilities.
To exercise the rights indicated above, the user should contact the Data Controller using the same email address or phone number provided to the Service, contacting: rodo@sofra.com.pl
Users have the right to withdraw consent at any time without affecting the lawfulness of processing based on consent before its withdrawal by direct contact with the Data Controller or, in the case of technology, by changing the cookie settings.
Every user of the Service may lodge a complaint with the Personal Data Protection Office.
The Service may contain links to other websites that operate independently and are not supervised in any way by the Service. These sites may have their own privacy policies and regulations, which we recommend reading carefully.
The Data Controller reserves the right to change the privacy policy of the Service, which may be caused by the development of internet technology, possible changes in data protection law, and the development of the Service. We will inform users of any changes in a visible and understandable way.
In order to provide services at the highest level, the Website uses cookies saved in the browser's memory. Detailed information about the purpose of their use, including processing of user activity data and advertising personalization, as well as the possibility to change cookie settings, can be found in the Privacy Policy. By clicking ACCEPT ALL, you consent to the use of technologies such as cookies and to the processing by Instytut Zdrowia Sofra, Chełmońskiego 2, 76-032, Mielno, of your personal data collected on the Internet, such as IP addresses and cookie identifiers, for analytical and marketing purposes (including automated ad targeting, measuring their effectiveness, and processing user data for analytical purposes). You can change cookie settings and detailed consent preferences in .