Privacy Policy

Com­puNet s.r.o. pro­tects the per­son­al data of web­site vis­i­tors in accor­dance with Reg­u­la­tion (EU) 2016/679 of the Euro­pean Par­lia­ment and of the Coun­cil (GDPR) and oth­er applic­a­ble data pro­tec­tion laws of the Czech Repub­lic.

Below, we explain what per­son­al data we process in con­nec­tion with your activ­i­ty on this web­site, https://compunet.cz/, why we process it, how long we retain it, and what your legal rights are.

1. Data Controller

The con­troller of your per­son­al data is:

Com­pa­ny Name: Com­puNet s.r.o.
Reg­is­tered Office: Zubatého 295/5, Smí­chov, 150 00 Prague, Czech Repub­lic
Com­pa­ny ID No. (IČO): 27608514
VAT ID No. (DIČ): CZ27608514
Reg­is­tered with: Munic­i­pal Court in Prague, Sec­tion C, File No. 118594
GDPR Con­tact E‑mail: info@compunet.cz
Phone: +420 257 211 846

1.1 Data Protection Officer

The Com­pa­ny has not appoint­ed a Data Pro­tec­tion Offi­cer (DPO).

For any mat­ters relat­ing to the pro­tec­tion of per­son­al data, you may con­tact us direct­ly at info@compunet.cz.

1.2 Statement Regarding Our Role as a Data Processor (Logs, Monitoring, and IT Support)

As part of pro­vid­ing our core ser­vices (IT/OT sup­port, net­work admin­is­tra­tion, log analy­sis, SIEM, inci­dent response, and SLA sup­port), we may process tech­ni­cal and oper­a­tional data such as logs, user account iden­ti­fiers, IP address­es, sys­tem records, and secu­ri­ty event data con­tained with­in our cus­tomers’ infra­struc­ture.

In such cas­es, Com­puNet s.r.o. acts as a Data Proces­sor of per­son­al data. The scope, pur­pose, and con­di­tions of such pro­cess­ing are always strict­ly gov­erned by a sep­a­rate Data Pro­cess­ing Agree­ment (DPA) con­clud­ed with the respec­tive cus­tomer.

2. Scope, Purposes, Legal Bases, and Data Retention Periods

Data sub­mit­ted through the con­tact form is pri­mar­i­ly used to deliv­er your mes­sage to our cor­po­rate e‑mail address.

If our web­site or its secu­ri­ty mech­a­nisms tem­porar­i­ly store tech­ni­cal records, this is done sole­ly to the extent nec­es­sary to ensure the sta­ble oper­a­tion, secu­ri­ty, and pro­tec­tion of the web­site.

As part of your activ­i­ty on the web­site, we process per­son­al data pri­mar­i­ly in con­nec­tion with the fol­low­ing activ­i­ties:

Your Activ­i­ty on the Web­siteScope of Processed DataPur­pose and Legal BasisNature of Pro­vi­sion and Con­se­quencesData Reten­tion Peri­od
Web­site vis­it, tech­ni­cal oper­a­tion, and secu­ri­tyIP address, date and time of access, request­ed URL, sta­tus code, brows­er and device infor­ma­tion, oper­at­ing sys­tem, refer­rer, tech­ni­cal and secu­ri­ty logs, essen­tial tech­ni­cal cook­ies.Ensur­ing the oper­a­tion, sta­bil­i­ty, and secu­ri­ty of the web­site, pre­ven­tion of mis­use, detec­tion of inci­dents, and res­o­lu­tion of tech­ni­cal issues. The legal basis is the Controller’s legit­i­mate inter­est pur­suant to Arti­cle 6(1)(f) GDPR; essen­tial tech­ni­cal stor­age does not require con­sent under cook­ie reg­u­la­tions.Data is processed auto­mat­i­cal­ly when using the web­site. With­out basic tech­ni­cal pro­cess­ing, the web­site can­not be oper­at­ed secure­ly and prop­er­ly.Stan­dard serv­er logs are gen­er­al­ly retained for no longer than 30 days. Secu­ri­ty logs are gen­er­al­ly retained for no longer than 6 months; longer only when required for inves­ti­gat­ing a secu­ri­ty inci­dent, mis­use, or legal claim.
Sub­mis­sion of a non-bind­ing enquiry, con­tact form, or e‑mail mes­sageFirst name, last name, e‑mail address, tele­phone num­ber, com­pa­ny name, mes­sage con­tent, infor­ma­tion pro­vid­ed in the enquiry, and sub­se­quent busi­ness com­mu­ni­ca­tion; in the case of forms, also basic tech­ni­cal data relat­ing to the sub­mis­sion.Respond­ing to enquiries, pro­cess­ing requests, prepar­ing quo­ta­tions, arrang­ing meet­ings, and relat­ed busi­ness com­mu­ni­ca­tion. The legal basis is tak­ing steps at your request pri­or to enter­ing into a con­tract pur­suant to Arti­cle 6(1)(b) GDPR and the Controller’s legit­i­mate inter­est pur­suant to Arti­cle 6(1)(f) GDPR in main­tain­ing records and pro­tect­ing legal claims.Vol­un­tary. How­ev­er, with­out con­tact details, we are unable to respond to your enquiry or pre­pare an offer.Gen­er­al enquiries that do not result in a con­tract are gen­er­al­ly retained for 12 months from the last com­mu­ni­ca­tion. Rel­e­vant busi­ness com­mu­ni­ca­tion may be retained for the peri­od nec­es­sary to pro­tect legal claims, gen­er­al­ly 3 years from the last rel­e­vant com­mu­ni­ca­tion; where a con­trac­tu­al rela­tion­ship is estab­lished, the reten­tion peri­ods spec­i­fied below apply.
Response to a job adver­tise­ment / vacan­cy (Careers sec­tion)First name, last name, e‑mail address, tele­phone num­ber, CV/resumé, cov­er let­ter, infor­ma­tion about edu­ca­tion and pro­fes­sion­al expe­ri­ence, com­mu­ni­ca­tion with the appli­cant, inter­view notes, and any oth­er infor­ma­tion vol­un­tar­i­ly pro­vid­ed dur­ing the recruit­ment process.Inclu­sion in a recruit­ment process for a spe­cif­ic posi­tion, com­mu­ni­ca­tion with appli­cants, assess­ment of suit­abil­i­ty, and poten­tial prepa­ra­tion of an employ­ment con­tract. The legal basis is tak­ing steps at your request pri­or to enter­ing into a con­tract pur­suant to Arti­cle 6(1)(b) GDPR; fol­low­ing the com­ple­tion of the recruit­ment process, the legal basis may be the Controller’s legit­i­mate inter­est pur­suant to Arti­cle 6(1)(f) GDPR in pro­tect­ing legal claims.Vol­un­tary. How­ev­er, with­out the pro­vi­sion of basic infor­ma­tion, we can­not include you in the recruit­ment process.For the dura­tion of the spe­cif­ic recruit­ment process and gen­er­al­ly for no longer than 6 months after its com­ple­tion for the pur­pose of defend­ing legal claims. If you are hired, rel­e­vant data will sub­se­quent­ly be processed as part of per­son­nel records in accor­dance with the employer’s inter­nal poli­cies.

3. Recipients and Sharing of Personal Data

Your per­son­al data is acces­si­ble only to indi­vid­u­als who require it for the pur­pos­es described above. We do not trans­fer or sell your per­son­al data to third par­ties for their own mar­ket­ing pur­pos­es.

To the extent nec­es­sary, your per­son­al data may be accessed in par­tic­u­lar by:

  • providers of web host­ing, web­site admin­is­tra­tion, and web­site tech­ni­cal sup­port ser­vices;
  • providers of cloud, com­mu­ni­ca­tion, and e‑mail ser­vices;
  • providers of cook­ie con­sent man­age­ment sys­tems and, where applic­a­ble, ana­lyt­ics ser­vice providers;
  • providers of inter­nal oper­a­tional, secu­ri­ty, CRM, or tick­et­ing sys­tems;
  • tech­nol­o­gy part­ners and sup­pli­ers where nec­es­sary for pro­cess­ing a spe­cif­ic enquiry, deliv­er­ing a ser­vice, or pro­vid­ing sup­port;
  • exter­nal advi­sors in the fields of account­ing, tax­a­tion, audit­ing, and legal ser­vices;
  • pub­lic author­i­ties, courts, or oth­er enti­ties where dis­clo­sure is required by law or nec­es­sary to pro­tect our legal claims.

3.1 Transfers of Data Outside the EEA

We strive to process per­son­al data pri­mar­i­ly with­in the Euro­pean Eco­nom­ic Area (EEA).

In excep­tion­al cas­es, per­son­al data may be trans­ferred out­side the EEA, par­tic­u­lar­ly where this is nec­es­sary for the use of cer­tain cloud, com­mu­ni­ca­tion, secu­ri­ty, or ana­lyt­ics ser­vices. In such cas­es, we only pro­ceed where the require­ments of the GDPR are met, in par­tic­u­lar on the basis of an ade­qua­cy deci­sion issued by the Euro­pean Com­mis­sion, Stan­dard Con­trac­tu­al Claus­es, or oth­er appro­pri­ate safe­guards.

Infor­ma­tion regard­ing the spe­cif­ic safe­guards applied will be pro­vid­ed upon request.

4. Cookies and Technical Storage

We use the Com­pli­anz plat­form to man­age tech­ni­cal stor­age, cook­ies, and user pref­er­ences.

A com­plete and up-to-date list of indi­vid­ual cook­ies, their providers, pur­pos­es, reten­tion peri­ods, and cat­e­gories is avail­able in our sep­a­rate Cook­ie Pol­i­cy and through the cook­ie ban­ner acces­si­ble from the web­site foot­er.

Depend­ing on your pref­er­ences select­ed in the cook­ie ban­ner, we may use the fol­low­ing cat­e­gories of cook­ies:

Nec­es­sary (Tech­ni­cal) Cook­ies:
These cook­ies are essen­tial for the prop­er, secure, and basic tech­ni­cal func­tion­ing of the web­site, includ­ing remem­ber­ing your choic­es with­in the cook­ie ban­ner. They do not require active con­sent; how­ev­er, the oblig­a­tion to pro­vide infor­ma­tion remains applic­a­ble.

Pref­er­ence / Func­tion­al Cook­ies:
These cook­ies are used to remem­ber addi­tion­al user pref­er­ences where such func­tion­al­i­ty is imple­ment­ed on the web­site. Where such stor­age is not strict­ly nec­es­sary for a ser­vice explic­it­ly request­ed by the user, these cook­ies are used only on the basis of con­sent.

Sta­tis­ti­cal Cook­ies:
Sub­ject to your con­sent, these cook­ies are used for inter­nal mea­sure­ment of web­site traf­fic, sta­bil­i­ty, and usabil­i­ty. The results are pri­mar­i­ly used in aggre­gat­ed form.

Mar­ket­ing Cook­ies:
Under our cur­rent con­fig­u­ra­tion, we do not use mar­ket­ing cook­ies or third-par­ty adver­tis­ing tools. Should such tools be imple­ment­ed in the future, they will only be used on the basis of your pri­or con­sent and fol­low­ing an update of the cook­ie ban­ner and Cook­ie Pol­i­cy.

You may mod­i­fy or with­draw your pref­er­ences and grant­ed con­sents at any time via the con­sent man­age­ment link or but­ton avail­able in the web­site foot­er.

Refus­ing or with­draw­ing con­sent for non-essen­tial cook­ies does not affect your abil­i­ty to use the basic func­tions of the web­site.

5. Automated Decision-Making and Profiling

No auto­mat­ed deci­sion-mak­ing with­in the mean­ing of Arti­cle 22 GDPR, nor any pro­fil­ing that would pro­duce legal or sim­i­lar­ly sig­nif­i­cant effects con­cern­ing you, takes place in con­nec­tion with the pro­cess­ing of per­son­al data through this web­site.

6. Technical Data Security

We imple­ment appro­pri­ate tech­ni­cal and orga­ni­za­tion­al mea­sures cor­re­spond­ing to the nature of the pro­cess­ing and the risks asso­ci­at­ed with the web­site:

  • All com­mu­ni­ca­tion between your brows­er and our web­site is encrypt­ed using the HTTPS pro­to­col (SSL/TLS cer­tifi­cate).
  • Access to sub­mit­ted enquiries and e‑mail com­mu­ni­ca­tions is restrict­ed to autho­rized per­sons only and pro­tect­ed by appro­pri­ate tech­ni­cal and orga­ni­za­tion­al secu­ri­ty mea­sures.

7. Your Rights Under the GDPR

The GDPR grants you the fol­low­ing rights in rela­tion to your per­son­al data, which you may exer­cise to the extent and under the con­di­tions set out by applic­a­ble law:

Right of Access: You have the right to obtain con­fir­ma­tion as to whether we process your per­son­al data and, where that is the case, to access such data and relat­ed infor­ma­tion.

Right to Rec­ti­fi­ca­tion: You have the right to request the cor­rec­tion of inac­cu­rate per­son­al data or the com­ple­tion of incom­plete per­son­al data.

Right to Era­sure: You have the right to request the dele­tion of per­son­al data where it is no longer nec­es­sary, con­sent has been with­drawn, a legit­i­mate objec­tion has been raised, or there is no oth­er legal basis for its con­tin­ued reten­tion.

Right to Restric­tion of Pro­cess­ing: You have the right to request the restric­tion of pro­cess­ing in cas­es spec­i­fied by the GDPR.

Right to Data Porta­bil­i­ty: Where pro­cess­ing is based on con­sent or a con­tract and is car­ried out by auto­mat­ed means, you may request the trans­fer of your per­son­al data in a struc­tured, com­mon­ly used, and machine-read­able for­mat.

Right to Object: You have the right to object to pro­cess­ing based on our legit­i­mate inter­ests, includ­ing objec­tions to any relat­ed fol­low-up busi­ness com­mu­ni­ca­tions.

Right to With­draw Con­sent: Where pro­cess­ing is based on con­sent, you may with­draw that con­sent at any time. With­draw­al of con­sent does not affect the law­ful­ness of pro­cess­ing car­ried out before such with­draw­al.

Right Not to Be Sub­ject to Auto­mat­ed Deci­sion-Mak­ing: You have the right not to be sub­ject to a deci­sion based sole­ly on auto­mat­ed pro­cess­ing, includ­ing pro­fil­ing, which pro­duces legal or sim­i­lar­ly sig­nif­i­cant effects con­cern­ing you. We do not car­ry out such pro­cess­ing on this web­site.

Right to Lodge a Com­plaint: You have the right to lodge a com­plaint with the Czech Data Pro­tec­tion Author­i­ty (Úřad pro ochranu osob­ních úda­jů), Pplk. Socho­ra 27, 170 00 Prague 7, Czech Repub­lic, www.uoou.cz.

You may exer­cise your rights by send­ing an e‑mail to info@compunet.cz. We will respond to requests with­out undue delay and no lat­er than one month from receipt of the request. In jus­ti­fied cas­es, this peri­od may be extend­ed by up to an addi­tion­al two months in accor­dance with the GDPR, of which you will be informed.

8. Final Provisions

These Pri­va­cy Pol­i­cy pro­vi­sions are valid and effec­tive as of 28 May 2026.

We reserve the right to update these pro­vi­sions in the event of leg­isla­tive or tech­ni­cal changes. The cur­rent ver­sion of the Pri­va­cy Pol­i­cy is always avail­able on our web­site togeth­er with the effec­tive date.