Privacy Policy
Last updated: 12 December 2025
1. Introduction
Welcome to Staflow ("we", "our", "us"). We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service at staflow.pl.
2. Information We Collect
We collect information that you provide directly to us:
- Account information (name, email address, password)
- Work availability data (dates, times, status)
- Profile information (role, contact details)
- Communications (contact form messages)
3. How We Use Your Information
We use the information we collect to:
- Provide and maintain our service
- Create and manage your account
- Process and display work schedules
- Send you service-related notifications
- Respond to your inquiries and support requests
- Improve and optimize our service
4. Legal Basis for Processing (GDPR)
Under the General Data Protection Regulation (GDPR), we process your data based on:
- Contract: Processing necessary to provide our service to you
- Consent: Where you have given explicit consent
- Legitimate Interests: To improve our service and prevent fraud
5. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including to satisfy legal, accounting, or reporting requirements. When you delete your account, we will delete or anonymize your personal data within 30 days.
6. Your Rights (GDPR)
Under GDPR, you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate personal data
- Right to Erasure: Request deletion of your personal data
- Right to Restriction: Request restriction of processing
- Right to Portability: Receive your data in a structured format
- Right to Object: Object to processing of your data
7. Cookies
We use essential cookies necessary for the operation of our website. These include session cookies for authentication and security. We also use localStorage to remember your cookie consent preference.
8. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. This includes encryption of data in transit and secure storage practices.
9. Third-Party Services
We may use the following third-party services:
- Hosting providers for data storage
- Email service providers for notifications
10. Data Controller
The data controller responsible for your personal data is:
Staflow
Website: staflow.pl
Email: kontakt@staflow.pl
For any data protection inquiries or to exercise your GDPR rights, please contact us using the email above or through our contact form.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
12. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us at:
Email: kontakt@staflow.pl
Contact Us