This policy describes how we process the personal data of users of the P1 Performance FileService (the “Service”).
The data controller is [Company name / full name], [address], tax ID [tax ID], contact: [email].
The Service uses only essential cookies: keeping the session, login, CSRF protection and remembering your chosen language. We do not use tracking or marketing cookies.
Data may be entrusted to infrastructure providers (hosting, email, payment processor) only to the extent needed to provide the service, under data-processing agreements. [Fill in the list of sub-processors].
Account and order data are kept for the duration of using the Service and the period required by law (incl. tax). Client files are deleted per our retention policy [period to be defined].
You have the right to access, rectify, erase, restrict and port your data, and to object. You may also lodge a complaint with a supervisory authority. For data matters write to: [email].
Passwords are stored as hashes, the connection is encrypted (HTTPS), client files are kept on private storage with authorized access, and admin login is protected by 2FA.
We may update this policy. We will announce material changes in the Service.