This is a courtesy translation for convenience only. In case of any discrepancy, the Polish original (prywatnosc.html / prywatnosc.pdf) is the legally binding version.
1. The controller of personal data of Users of the timeguardian.pl website is an individual: Bartosz Wania, residing in Poland, conducting sales under Poland's unregistered-activity regime (hereinafter the "Controller"). The Controller's full address details are provided to the buyer in the email confirming the purchase.
2. Contact with the Controller is via email: kontakt@timeguardian.pl.
1. Performance of the transaction and provision of services (Art. 6(1)(b) GDPR): We process the email address, name, and purchase data in order to generate and send the License Key.
2. Maintaining the Parent Panel account (Art. 6(1)(b) GDPR): We process the email address, a securely hashed password (bcrypt), the name of the child's computer, and the ntfy service token, to enable remote management of the program.
3. License verification and security (Art. 6(1)(f) GDPR — legitimate interest): We process the device hardware identifier (HWID), operating system version, and IP addresses (in server logs for a maximum of 30 days), for the purpose of protecting the software against piracy and IT attacks.
1. The Software allows a parent to remotely view a child's activity (including on-demand screenshots, active-app reports, and text messages) via a notification system running on the Controller's server (ntfy.timeguardian.pl).
2. Text messages (commands and chat) are stored on the Controller's server for a maximum of 7 days, after which they are automatically and permanently deleted. Screenshots and activity reports pass through the server only transiently, solely to be delivered to the parent, and are automatically deleted after at most 1 hour. This data is not used by the Controller for any purpose other than the technical relay of its delivery to the parent.
3. The legal basis for processing is the performance of the remote-management service for the parent/legal guardian (Art. 6(1)(b) GDPR). The sole recipient and decision-maker regarding the use of this content is the parent/legal guardian using the Parent Panel — the Controller does not analyze or use this data for any other purpose.
4. A parent/legal guardian who configures the Software on their child's computer acts as the person exercising parental authority and is responsible for ensuring that their use of the Software complies with applicable law, including the scope of monitoring of their own minor child.
1. Data may be disclosed only to entities necessary for the operation of the service: Paddle.com Market Ltd. (handling payments as Merchant of Record — Paddle processes the data necessary to complete and settle transactions under its own terms, described in Paddle's privacy policy), secure hosting providers within the EU, and the ntfy infrastructure running on the Controller's server (message routing as described in §3). Data is not sold for marketing purposes.
1. Users have the right to access their data, rectify it, erase it ("the right to be forgotten"), restrict its processing, port it, and object to its processing. To exercise these rights, write to: kontakt@timeguardian.pl.
2. Users have the right to lodge a complaint with the President of the Polish Data Protection Authority (Urząd Ochrony Danych Osobowych, uodo.gov.pl).
1. The website uses only technical, strictly necessary cookies to maintain the login session. The connection is fully encrypted with an SSL certificate (HTTPS).