1. General Provisions
Details and Contact Information of the Data Controller
- Name/Company Name
- Vipulse Technology Kft.
- Registered Office
- H-1054 Budapest, Szabadsag ter 7. Bank Center Granite tower, 1st floor
- Tax Number
- 32541661-2-13
- Company Registration Number
- 01-09-452175
- D-U-N-S
- 30-132-2002
- info@vipulsetech.com
The operator of the website www.vipulsetech.com, Vipulse Technology Kft. (1065 Budapest, Revay koz) (hereinafter: "Data Controller"), acknowledges the binding nature of this legal notice upon itself and undertakes to ensure that all related data processing activities comply with this Policy and applicable legislation in force.
2. Categories of Personal Data Processed, Purpose, Legal Basis and Duration of Data Processing
The Data Controller applies data processing principles in compliance with applicable data protection legislation, including in particular:
- Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (General Data Protection Regulation - GDPR) on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC.
- Act CXII of 2011 on the Right of Informational Self-Determination and on Freedom of Information (Infotv.).
- Act CVIII of 2001 on Certain Issues of Electronic Commerce Services and Information Society Services.
- Act XLVIII of 2008 on the Basic Requirements and Certain Restrictions of Commercial Advertising Activities.
2.1. Data of Visitors to the Website www.vipulsetech.com
- Purpose of data processing
- To monitor proper functioning of the service and prevent misuse during website visits.
- Legal basis of data processing
- Legitimate interest under Article 6(1)(f) GDPR and Section 13/A (3) of Act CVIII of 2001.
- Categories of personal data processed
- Date and time, IP address, visited page address, previously visited page address, and operating system/browser data.
- Duration of data processing
- 30 days from the date of visiting the website.
Data Processor: H-1054 Budapest, Szabadsag ter 7. Bank Center Granite tower, 1st floor.
2.2. Cookie Management on www.vipulsetech.com
For customized services, the service provider and external service providers may place and read small data files ("cookies") on the user's device. If the browser returns a previously saved cookie, the user's current visit may be linked to previous visits with respect to its own content.
- Purpose of data processing
- User/session identification, user differentiation, prevention of data loss, and tracking of user sessions.
- Legal basis of data processing
- Legitimate interest under Article 6(1)(f) GDPR and Section 13/A (3) of Act CVIII of 2001.
- Categories of personal data processed
- Identification number, date, time, and previously visited page.
Duration of data processing:
- End of session: PHPSESSID
- 10 minutes: _gat
- 1 day: uvc, _gid
- 6 months: NID
- 1 year: __cfduid
- 2 years: _ga
Google Analytics may assist independent measurement and auditing of website traffic and analytics data. Further details are available at www.google-analytics.com. Data Processor registered office: H-1054 Budapest, Szabadsag ter 7. Bank Center Granite tower, 1st floor.
2.3. Other Data Processing
Courts, public prosecutors, investigating authorities, administrative authorities, the National Authority for Data Protection and Freedom of Information, and other authorized bodies may contact the Data Controller for information, disclosure, transfer, or document availability where legally justified.
Personal data are disclosed only to the extent strictly necessary to achieve the request purpose, and only where the requesting authority specifies the exact purpose and scope of requested data.
3. Method of Storage of Personal Data and Security of Data Processing
Taking into account state of the art, implementation costs, and risk characteristics, the Data Controller and its processors implement technical and organizational safeguards appropriate to the level of risk.
Personal data are protected against unauthorized access, alteration, transmission, disclosure, deletion, destruction, accidental loss, damage, and inaccessibility from technology changes.
- Confidentiality: access is limited to authorized persons.
- Integrity: information accuracy and processing completeness are protected.
- Availability: authorized users can access required information and tools when needed.
4. Rights of the Data Subject and Legal Remedies
Data subjects may request information, rectification, erasure (unless mandatory processing applies), withdrawal of consent, restriction of processing, data portability, and may object to processing via the contact details above.
4.1. Right to Information
Articles 13, 14, 15-22, and 34 GDPR information is provided in concise, transparent, intelligible, and accessible language.
4.2. Right of Access
Data subjects can request confirmation, access, and a copy of processed personal data; reasonable fees may apply for additional copies.
4.3. Right to Rectification
Data subjects may request correction of inaccurate data and completion of incomplete data.
4.4. Right to Erasure
Data subjects may request erasure where Article 17 GDPR grounds apply, subject to legal exceptions.
4.5. Right to Restriction of Processing
Data subjects may request processing restriction under Article 18 GDPR conditions.
4.6. Right to Data Portability
Data subjects may receive provided personal data in a structured, commonly used, machine-readable format and transfer it.
4.7. Right to Object
Data subjects may object to processing based on legitimate interests/public authority, including direct marketing and profiling.
4.8. Automated Decision-Making, Including Profiling
Data subjects have rights under Article 22 GDPR regarding solely automated decision-making.
4.9. Right to Withdraw Consent
Consent can be withdrawn at any time without affecting prior lawful processing.
4.10. Procedural Rules
Requests under Articles 15-22 GDPR are handled without undue delay and within one month, extendable by two months when necessary.
Information is generally provided free of charge unless requests are manifestly unfounded or excessive.
5. Legal Remedies
5.1. Right to Judicial Remedy
In case of rights infringement, data subjects may initiate proceedings against the Data Controller before the competent court (registered office of defendant or domicile of data subject). Proceedings are expedited and exempt from fees in personal data protection cases.
5.2. Data Protection Authority Procedure
Complaints may be lodged with the National Authority for Data Protection and Freedom of Information:
- Name: National Authority for Data Protection and Freedom of Information
- Registered Office: 1125 Budapest, Szilagyi Erzsebet fasor 22/C.
- Postal Address: 1530 Budapest, P.O. Box 5.