Privacy Policy - Layqo.com
Effective: January 1, 2025 | Last updated: March 2026
1. Data Controller
The data controller is Layqo.com (the "Controller").
Contact: hello@layqo.com
2. Data We Collect
- Registration data: first name, last name, email, password (encrypted).
- Order data: company name, tax ID, address, contact details - provided in the personalization form.
- Payment data: processed directly by payment providers (Przelewy24, PayU, PayPal). We do not store card details.
- Technical data: IP address, browser type, OS - collected automatically for security and analytics.
- Uploaded files: logos, photos - voluntarily uploaded for template personalization.
3. Purpose of Processing
- Order fulfillment and Product delivery (GDPR Art. 6(1)(b)).
- Account management (GDPR Art. 6(1)(b)).
- Invoicing and accounting (GDPR Art. 6(1)(c)).
- Complaint handling (GDPR Art. 6(1)(b)).
- Service security and fraud prevention (GDPR Art. 6(1)(f)).
- Analytics and service improvement (GDPR Art. 6(1)(f)).
4. Data Retention
- Account data: until account deletion.
- Order data: 5 years from the end of the tax year (legal obligation).
- Technical logs: 12 months.
- Uploaded files: 90 days after order completion (then automatically deleted).
5. Data Sharing
We may share data with:
- Payment providers: Przelewy24, PayU, PayPal - for transaction processing.
- Hosting providers: hosting company storing Service data.
- Email providers: for sending confirmations and notifications.
- Public authorities: when required by law.
We do not sell personal data to third parties.
6. Your Rights (GDPR)
- Access - right to obtain information about your processed data.
- Rectification - right to correct inaccurate data.
- Erasure - right to request deletion ("right to be forgotten").
- Restriction - right to restrict processing.
- Portability - right to receive data in machine-readable format.
- Objection - right to object to processing.
- Complaint - right to lodge complaint with supervisory authority (UODO in Poland).
To exercise your rights, email: hello@layqo.com
7. Cookies
- Essential: user session, CSRF token, language preference - required for Service operation.
- Analytics: may be used for traffic analysis (e.g., Google Analytics) - only with user consent.
You can manage cookies in your browser settings. Disabling essential cookies may prevent Service use.
8. Data Security
We implement appropriate technical and organizational measures: SSL/TLS encryption, password hashing (bcrypt), CSRF tokens, input validation, regular backups, access restrictions.
9. Policy Changes
The Controller reserves the right to update this Policy. Changes are published on this page with a new effective date.
10. Contact
For data protection inquiries: hello@layqo.com