Privacy Policy

Dear Customer,

We make every effort to ensure the security and confidentiality of your data. We care about your privacy, both when you visit our Website, register an account with us and use our services, as well as when you contact us by phone, email or online chat, subscribe to our newsletter or visit our social media channels. We act in compliance with the rule of law, including provisions of the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and the free movement of such data and repealing Directive 95/46/EC (hereinafter the “GDPR”).

In this document, we would like to provide you with essential information about your personal data processing. For the sake of clarity, we have put them together in the form of questions and answers. All of this is to let you know why, on what basis and for how long we process your data, as well as who can access it and what rights you have.

HOW DO WE ACCESS YOUR PERSONAL DATA

Using the website https://navihire.com (hereinafter: “Website”), you may be asked to provide your personal data. The provision of data is voluntary, but in certain situations, it may be necessary. For instance, if you do not provide us with your email address, we will not send you our newsletter, register your account or answer by email your question asked through the contact form.

Some data is collected automatically through cookies during your visit to the Website (e.g. IP address, browser type, operating system type, etc.). They are used to administer the Website, provide hosting services and create relevant marketing content. However, you can freely block and restrict the installation of cookies using your browser settings or the other (free) solutions.

WHO IS THE CONTROLLER OF YOUR PERSONAL DATA?

The administrator of your personal data is MKONDEV with registered office ul. Bajeczna 74, 32-020 Wieliczka, Poland, NIP (tax id): PL6832122113, REGON: 522329530.

If you have any questions or concerns, you can contact us electronically at the following email address: [email protected]

FOR WHAT PURPOSE, ON WHAT LEGAL BASIS AND FOR HOW LONG DO WE PROCESS YOUR DATA?

We process your personal data:

  1. to conclude and perform the contract for the provision of services (registration and maintenance of the Customer account, placing orders for free of charge and chargeable services, execution of the contract):

    • legal basis: the processing is necessary for the performance of the contract or in order to take steps at the request of the data subject before entering into a contract (Article 6(1)(b) of the GDPR),
    • the data will be processed until the end of performing the service (deletion of the Customer account, termination of the contract for the provision of services);
  2. to comply with tax obligations (issuing invoices, keeping accounting records):

    • legal basis: the processing is necessary for compliance with a legal obligation to which we are subject (Article 6(1)(c) of the GDPR),
    • data will be processed until the expiry of the prescription periods for tax obligations;
  3. to comply with personal data protection legal requirements:

    • legal basis: legal obligation incumbent upon us (Article 6(1)(c) of the GDPR),
    • data will be processed until the expiry of the prescription periods for claims due to the breach of data protection legislation;
  4. to determine, pursue and defend possible claims:

    • legal basis: the processing is necessary for the purposes of our legitimate interests in taking actions aimed at protecting our rights in proceedings before the courts and other state authorities (Article 6(1)(f) of the GDPR),
    • the data will be processed until the expiry of the prescription periods for claims under applicable law;
  5. to ensure the proper functioning of the Website and to analyse the activity of Website users:

    • legal basis: the processing is necessary for the purposes of our legitimate interests in conducting analyses and statistics on the use of particular functionalities of the Website (e.g. Google Analytics cookies, Facebook Pixel) (Article 6(1)(f) of the GDPR),
    • data will be processed until an effective objection is raised or the purpose of the processing is achieved
  6. to answer your questions addressed to us by telephone or email, including via the form available on the Website and online chat:

    • legal basis: the processing is necessary for the purposes of our legitimate interests in communicating with our Customers and answering questions from our potential customers or other persons interested in our products and services (Article 6(1)(f) of the GDPR),
    • the data will be processed until the expiry of the prescription periods for claims under applicable law;
  7. for marketing purposes (promotion of our goods and services):

    • legal basis: the processing is necessary for the purposes of our legitimate interests in maintaining business relationships with Customers and surveying their satisfaction, looking after our own interests and image (Article 6(1)(a) of the GDPR), or respectively the processing is based under the voluntary consent of the person who has given it for a specific purpose (Article 6(1)(a) of the GDPR),
    • the data will be processed until an effective objection is raised or the purpose of the processing is achieved, and in the case where the basis for the processing is the consent of the data subject until the consent is withdrawn (whereby withdrawal of the consent does not affect the lawfulness of data processing prior to its withdrawal);

REMEMBER!

We process your personal data, as long as it is necessary to achieve the aforementioned purposes unless you make a valid and proper request for your personal data to be deleted. In addition, the period of the processing may be subject to the content of the legal provisions applicable to us, e.g. in the case of the storage of financial documents or the time limits for pursuing the claims.

SERVICE PROVIDERS WE USE

We use two external services for processing certain data:

  1. GetResponse - Used for managing our early access waitlist. GetResponse processes email addresses, names, and company names solely for the purpose of managing our waitlist and sending email communications you have opted into. GetResponse is based in the European Union (Gdańsk, Poland) and processes data in compliance with GDPR.
  2. Piwik Pro - A privacy-focused analytics platform that helps us understand how users interact with our website. Piwik Pro is based in the European Union and complies with GDPR. Their analytics tools collect data about page views, interactions, and events in a privacy-conscious manner. We use this information to improve our website and user experience.

DO WE PROFILE YOUR PERSONAL DATA?

We use Piwik Pro for analytics purposes, which collects anonymous data to help us understand website usage patterns. The data collected is minimized to what's necessary for improving our services and is used in aggregated form. We do not use this data to identify or make decisions about individual users.

DO WE USE COOKIES?

Yes, our website uses cookies for analytics purposes through Piwik Pro. These cookies help us collect anonymous information about how users interact with our website. You can control cookie settings through your browser preferences. The analytics data we collect includes:

  • Page views and navigation patterns
  • Browser and device information (anonymized)
  • Referral sources
  • Interaction with site elements like buttons and forms

We use this information solely to improve our website and services.

WHAT DATA DO WE COLLECT AND PROCESS?

We collect and process two types of data:

  1. Early Access Registration Data
    • Email address
    • Full name
    • Company name
    • This data is processed by GetResponse for managing our waitlist and communications
  2. Analytics Data (via Piwik Pro)
    • Page views and navigation paths
    • Button clicks and form interactions
    • Referral sources
    • Device type and browser information (anonymized)
    • Country/region of access (anonymized)

HOW DO WE PROTECT YOUR DATA?

To ensure a high and consistent level of protection, we use IT environment safeguards adequate for the processing, as well as technical and organisational measures, which include, among others:

  • TLS protocol encryption,
  • creating backup copies,
  • equipping data centres with data protection mechanisms,
  • conducting regular security level tests,
  • monitoring the security of personal data,
  • mitigating the risk of potential abuses and reacting promptly in case of their occurrence,
  • implementing data protection policies,
  • ensuring continuous confidentiality, integrity, availability and resistance of the processing systems and services,
  • allowing access to personal data only to authorised persons,
  • creating and regularly modifying passwords to access systems where personal data are processed.

WHAT RIGHTS DO DATA SUBJECTS HAVE?

Data subjects whose data we process have the rights to:

  • access to their personal data;
  • change their personal data;
  • remove their personal data;
  • restrict the processing of personal data;
  • object to the processing of personal data;
  • transfer the personal data;
  • withdraw consent to the processing of personal data (provided that the processing is based on the consent of a data subject).

However, the rights listed above are not absolute, and in certain circumstances, after analysis, we may legitimately refuse to exercise them.

Please also be informed that the withdrawal of your consent to data processing will not affect the lawfulness of data processing that took place on the basis of the consent given before its withdrawal.

How to Exercise Your Rights

To exercise any of these rights, you can contact us at [email protected] with the subject line “Data Subject Request”. To ensure your security, we may ask for verification of your identity before processing your request.

We commit to responding to your request without undue delay and at the latest within one month of receipt. For complex requests or in cases where we receive a high volume of requests, this period may be extended by up to two additional months, in which case we will inform you of the delay and the reasons for it.

All requests will be handled free of charge except where requests are manifestly unfounded or excessive, in which case we may charge a reasonable fee based on administrative costs.

CHILDREN'S PRIVACY

NaviHire's services are designed for and directed at professionals in technical teams who are of legal working age (generally 18 years or older). We do not target our services to children or individuals under the age of 18, and we do not knowingly collect personal information from such individuals.

If we become aware that we have inadvertently collected personal information from a person under the age of 18, we will take steps to delete such information promptly. If you believe that we might have any information from or about a person under 18, please contact us at [email protected].

CALIFORNIA PRIVACY RIGHTS

If you are a California resident, the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) provide you with specific rights regarding your personal information. Under these laws, California residents have the right to:

  • Know what personal information is being collected about them
  • Know whether their personal information is sold or disclosed and to whom
  • Say no to the sale of their personal information
  • Access their personal information
  • Request deletion of their personal information
  • Not be discriminated against for exercising their privacy rights

We do not sell personal information as defined by the CCPA/CPRA. We have not sold any personal information in the preceding 12 months.

To exercise your California privacy rights, please contact us using the contact information provided at the beginning of this Privacy Policy. We will respond to verifiable consumer requests within 45 days.

HOW CAN YOU COMPLAINT ABOUT IRREGULARITIES IN THE PROCESSING OF PERSONAL DATA?

If you believe that your personal data is processed by us contrary to the applicable law, you can file a complaint with the President of the Office for Personal Data Protection.

DATA BREACH PROCEDURES

In the event of a data breach that may compromise your personal information, we will notify you and the relevant supervisory authorities without undue delay and no later than 72 hours after becoming aware of the breach, where feasible. The notification will include:

  • A description of the nature of the breach
  • The categories and approximate number of data subjects affected
  • The likely consequences of the breach
  • The measures taken or proposed to address the breach
  • Contact information for our Data Protection Officer or other point of contact

We maintain internal procedures for handling data breaches and conduct regular security assessments to minimize the risk of such incidents.

DOES USING THE WEBSITE INVOLVE SENDING LOGS TO THE SERVER?

The use of the Website involves sending queries to the server on which the Website is hosted. Each query sent to the server is recorded in server logs and stored on the server. The logs include, among others, the IP address, date and time of the server, information about the Internet browser and operating system.

The data stored in the server logs are not associated with specific users of the Website and are not used by us to identify you.

The server logs constitute solely auxiliary material used to administer the Website, and their content is not disclosed to anyone except persons authorised to administer the server.

CAN WE AMEND OUR PRIVACY POLICY?

Yes. Personal data protection is a process that we adapt to meet current needs and changing technology. Therefore, our Privacy Policy may be supplemented or amended, as we will inform you by a post on the Website, and in the event of material changes, we will send separate notices on the amendment to registered service users by email.

Last updated: March 30, 2025