Back to Home
Language: EN | PL

Privacy Policy

Nexus Observatories
Effective Date: February 11, 2026
Last Updated: February 12, 2026


1. Introduction

Welcome to Nexus Observatories (“we,” “our,” or “us”). We are committed to protecting your personal information and your right to privacy.

This Privacy Policy explains:

  • What information we collect
  • How we use your information
  • Your rights regarding your personal data
  • How we protect your information

By using our website (nexusobservatories.com), you agree to the collection and use of information in accordance with this policy.

Data Controller:
Krzysztof Kwiatkowski
Nexus Observatories
Email: contact@nexusobservatories.com
Location: Poland


2. Information We Collect

2.1 Information You Provide Directly

When you contact us through our contact form, we collect:

  • Full name — To address you properly in our response
  • Email address — To respond to your inquiry
  • Company name (optional) — To understand your business context
  • Message content — Your inquiry, question, or project details

Legal basis for processing (GDPR Article 6(1)):

  • (a) Consent — You provide explicit consent by submitting the contact form
  • (b) Legitimate interests — We have a legitimate interest in responding to business inquiries

2.2 Information Collected Automatically

When you visit our website, we may automatically collect:

  • Technical information: IP address, browser type, device type, operating system
  • Usage information: Pages visited, time spent on site, referring URLs
  • Cookies and similar technologies (see Cookie Policy section)

Legal basis for processing:

  • (f) Legitimate interests — We have a legitimate interest in understanding how visitors use our site to improve our services

3. How We Use Your Information

We use the personal information we collect for the following purposes:

3.1 To Respond to Your Inquiries

  • Answer questions submitted via contact form
  • Provide information about our services
  • Discuss potential project collaboration

3.2 To Improve Our Services

  • Analyze website usage to improve user experience
  • Understand which services are most relevant to visitors
  • Optimize website performance
  • Maintain records required by law
  • Respond to legal requests or court orders
  • Protect our legal rights

We will NEVER:

  • Sell your personal information to third parties
  • Share your email address with marketing companies
  • Send you unsolicited marketing emails without your explicit consent
  • Use your information for purposes other than those stated in this policy

4. Data Retention

We retain your personal information only for as long as necessary for the purposes outlined in this Privacy Policy:

  • Contact form submissions: We retain your inquiry and our response for up to 24 months after the last communication, unless:

    • You request deletion sooner (see Your Rights section)
    • We are required by law to retain it longer
    • You become a client, in which case we retain data as required by contract and applicable law
  • Website analytics data: Anonymized usage data is retained for up to 12 months

  • Cookies: See Cookie Policy section for retention periods

After the retention period expires, we securely delete or anonymize your personal information.


5. Data Security

We take the security of your personal information seriously and implement appropriate technical and organizational measures:

Security Measures:

  • Encryption: All data transmitted via our contact form is encrypted using SSL/TLS
  • Access controls: Only authorized personnel have access to personal data
  • Regular security reviews: We regularly review and update our security practices
  • Third-party security: We only use reputable third-party services that comply with GDPR

However, please note: No method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee absolute security.


6. Third-Party Services

We may use the following third-party services that may process your personal data:

6.1 Email Service Provider

  • Purpose: To send and receive contact form submissions
  • Data processed: Name, email address, message content
  • Provider: Web3Forms (email delivery), Google Workspace (email hosting)
  • Location: EU or EU-adequacy decision country
  • Privacy Policy: Web3Forms Privacy Policy, Google Privacy Policy

6.2 Website Hosting

  • Purpose: To host our website
  • Data processed: IP address, browser information, pages visited
  • Provider: Cloudflare Pages
  • Location: Global CDN with EU presence
  • Privacy Policy: Cloudflare Privacy Policy

6.3 Analytics (if applicable)

  • Purpose: To understand website usage and improve user experience
  • Data processed: Anonymized usage data, IP address (anonymized), device type
  • Provider: Cloudflare Web Analytics (cookie-free, privacy-respecting)
  • Note: We do NOT use analytics that track individual users across websites

Data Processing Agreements: We ensure that all third-party processors have appropriate data processing agreements in place that comply with GDPR requirements.


7. International Data Transfers

Your personal information may be transferred to and processed in countries outside the European Economic Area (EEA).

Safeguards:

  • We only transfer data to countries with an EU adequacy decision, OR
  • We use appropriate safeguards such as Standard Contractual Clauses (SCCs) approved by the European Commission

Current data locations:

  • Contact form data: Stored within EU or with EU-adequate protections
  • Website hosting: Cloudflare global CDN with EU edge nodes
  • Email processing: Google Workspace (EU data processing)

8. Your Rights Under GDPR

As a data subject in the European Union, you have the following rights:

8.1 Right to Access (Article 15)

You have the right to request a copy of the personal information we hold about you.

8.2 Right to Rectification (Article 16)

You have the right to request correction of inaccurate or incomplete personal information.

8.3 Right to Erasure (“Right to be Forgotten”) (Article 17)

You have the right to request deletion of your personal information when:

  • The data is no longer necessary for the purposes for which it was collected
  • You withdraw your consent
  • You object to the processing and there are no overriding legitimate grounds
  • The data has been unlawfully processed

8.4 Right to Restriction of Processing (Article 18)

You have the right to request that we limit the processing of your personal information.

8.5 Right to Data Portability (Article 20)

You have the right to receive your personal information in a structured, commonly used, and machine-readable format.

8.6 Right to Object (Article 21)

You have the right to object to processing of your personal information based on legitimate interests.

8.7 Right to Withdraw Consent (Article 7(3))

Where processing is based on consent, you have the right to withdraw your consent at any time.

8.8 Right to Lodge a Complaint

You have the right to lodge a complaint with your local data protection authority.

Polish Data Protection Authority (UODO):
Urząd Ochrony Danych Osobowych
ul. Stawki 2, 00-193 Warszawa, Poland
Email: kancelaria@uodo.gov.pl
Website: https://uodo.gov.pl/


9. How to Exercise Your Rights

To exercise any of your rights or if you have questions about this Privacy Policy, please contact us:

Email: contact@nexusobservatories.com
Subject line: “Privacy Request - [Your Name]”

Please include in your request:

  • Your full name
  • Your email address (as provided in the contact form)
  • Specific right you wish to exercise
  • Any relevant details

Response time: We will respond to your request within 30 days as required by GDPR. If your request is complex, we may extend this period by an additional 60 days and will notify you.

Verification: To protect your privacy, we may need to verify your identity before processing certain requests.


10. Cookies and Tracking Technologies

10.1 What Are Cookies?

Cookies are small text files stored on your device when you visit a website. They help us recognize your device and remember certain information about your visit.

10.2 Cookies We Use

Essential Cookies (Strictly Necessary):

  • Purpose: Enable basic website functionality (e.g., form submission, language preference)
  • Retention: Session or up to 12 months
  • Legal basis: Legitimate interest (these cookies are necessary for the website to function)
  • Examples:
    • Language preference (PL/EN toggle)
    • Form submission tokens (CSRF protection)

Analytics Cookies (Optional):

  • Purpose: Help us understand how visitors use our website
  • Retention: Up to 12 months
  • Legal basis: Consent (we ask for your permission)
  • Provider: Cloudflare Web Analytics (if enabled)

We DO NOT use:

  • Marketing or advertising cookies
  • Third-party tracking cookies
  • Cross-site tracking technologies

10.3 Managing Cookies

Browser settings: You can control cookies through your browser settings:

  • Chrome: Settings > Privacy and security > Cookies and other site data
  • Firefox: Settings > Privacy & Security > Cookies and Site Data
  • Safari: Preferences > Privacy > Cookies and website data
  • Edge: Settings > Cookies and site permissions

Note: Disabling essential cookies may affect website functionality (e.g., your language preference may not be saved).


11. Children’s Privacy

Our website and services are directed at businesses and professionals. We do not knowingly collect personal information from children under the age of 16.

If you believe we have inadvertently collected information from a child under 16, please contact us immediately at contact@nexusobservatories.com, and we will delete it promptly.


12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements.

When we make changes:

  • We will update the “Last Updated” date at the top of this policy
  • For significant changes, we may notify you via email (if you have contacted us) or by placing a prominent notice on our website
  • We encourage you to review this policy periodically

Previous versions: Upon request, we can provide previous versions of this Privacy Policy.


We process your personal data based on the following legal grounds under GDPR Article 6(1):

Data TypeLegal BasisPurpose
Contact form submissionsConsent (Article 6(1)(a))Respond to inquiries
Contact form submissionsLegitimate interests (Article 6(1)(f))Business correspondence
Website analyticsLegitimate interests (Article 6(1)(f))Improve website and services
Essential cookiesLegitimate interests (Article 6(1)(f))Enable website functionality
Analytics cookiesConsent (Article 6(1)(a))Understand website usage

Our legitimate interests: We have a legitimate interest in:

  • Responding to business inquiries and providing information about our services
  • Understanding how our website is used to improve user experience
  • Protecting our website from security threats and abuse

Your rights: You can object to processing based on legitimate interests at any time by contacting us.


14. Data Protection Officer (DPO)

As a small business, we are not required to appoint a formal Data Protection Officer under GDPR. However, all privacy-related inquiries should be directed to:

Krzysztof Kwiatkowski
Email: contact@nexusobservatories.com
Subject: Privacy Inquiry


15. Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Nexus Observatories
Krzysztof Kwiatkowski
Email: contact@nexusobservatories.com
Website: https://www.nexusobservatories.com

We typically respond within 24 hours during business days.


16. Governing Law

This Privacy Policy is governed by the laws of Poland and the European Union, particularly the General Data Protection Regulation (GDPR) (EU) 2016/679.


17. Exali AG Liability Seal

17.1 Description and Scope of Data Processing

This page uses the Exali AG Liability Seal. The graphic element of the seal is reloaded from the servers of Exali AG. For this purpose, due to the technical design of the Internet, your IP address is processed in order to transmit the graphic to your browser.

If you click on this seal, you leave our website and you will be forwarded to the servers of Exali AG.

Learn more from Exali’s privacy policy: Exali Data Protection Declaration

The legal basis for data processing is Art. 6 para. 1 lit. f) GDPR (legitimate interest).

17.3 Purpose of Data Processing

The data processing serves the purpose of providing evidence of the legally prescribed mandatory information on professional indemnity as per Section 2 (11) DL-InfoV in a visually appealing manner.

17.4 Legitimate Interest

Our legitimate interest in data processing arises from the purpose of offering an appealing online offer and fulfilling our information obligations in an appealing manner.


Last Updated: February 12, 2026
Effective Date: February 11, 2026


© 2026 Krzysztof Kwiatkowski | Nexus Observatories. All rights reserved.