Privacy Policy
Last updated: 3 April 2026
1. Data Controller
2. What data we process
| Data | Purpose |
|---|---|
| Email address | Login, weekly recommendations, frost alerts |
| Name (optional) | Personalising the dashboard |
| Location (place name, GPS) | Weather forecasts and localised recommendations |
| Plant selection | Personalising recommendations and emails |
| Diary entries (notes, photos) | Stored as entered voluntarily by the user |
3. Purpose of processing
- Providing the service (dashboard, emails, garden diary)
- Personalising recommendations based on location and selected plants
- Sending weekly summaries and frost alerts by email
- Anonymous usage statistics (number of users, most popular plants)
4. Legal basis
We process your data on the basis of your consent (Article 6(1)(a) GDPR), expressed by registering for the service. Consent may be withdrawn at any time by deleting your account.
5. Sharing with third parties
Open-Meteo
GPS coordinates are sent to obtain weather forecasts. Open-Meteo is a public, registration-free weather service.
Seznam.cz (SMTP)
Emails are sent via the smtp.seznam.cz SMTP server.
Google Analytics
Anonymous usage statistics (page views, user counts). No personal data is shared.
We do not sell or otherwise share your data with any other third parties.
6. Data retention
We retain your data for as long as your account exists. After account deletion (via the unsubscribe link in any email), all data is permanently removed.
7. Your rights under GDPR
Right of access
You may request a copy of the data we hold about you.
Right to rectification
You may correct any inaccurate personal data.
Right to erasure
The right to be forgotten — delete your account to erase all data.
Right to restriction
You may request that we limit the processing of your data.
Right to portability
You may receive your data in a machine-readable format.
Right to complain
You may lodge a complaint with the supervisory authority (Czech: ÚOOÚ).
To exercise any of these rights, contact us at info@cozasadit.cz.
8. Cookies
We use technically necessary cookies required for the service to function:
zahrada_session — login session cookie, valid for 30 days.
We also use Google Analytics for anonymous usage statistics. We do not use advertising cookies.
9. Security
- Data is stored on a secured server.
- All communication uses encrypted HTTPS.
- Passwords are stored in hashed form (bcrypt).