Privacy policy

1. Introduction

1.1. The company AM Fenix s. r. o., Business ID (IČO): 53317262, with its registered office at Parková 686/28, 922 05 Chtelnica, as the controller of personal data (hereinafter referred to as the "Controller"), hereby provides information on the processing of personal data of natural persons in accordance with the GDPR Regulation and Act No. 18/2018 Coll. on the Protection of Personal Data.

1.2. This document sets out the principles for the processing of personal data of clients, service applicants, suppliers, contractors, cooperation applicants and visitors to the Controller's website.

1.3. The Controller processes personal data only to the extent necessary to fulfil a specific purpose, on the basis of an appropriate legal ground and in compliance with the principles of lawfulness, transparency and data minimisation.

2. Purposes of Processing Personal Data

2.1. The Controller processes personal data for the purpose of handling inquiries and communication via the website, e‑mail or telephone contact.

2.2. The Controller processes personal data for the purpose of preparing price quotations, concluding contracts, confirming orders and carrying out jobs in the field of electrical installations, assembly works and photovoltaic systems.

2.3. The Controller processes personal data for the purpose of maintaining accounting records, invoicing, recording payments and fulfilling statutory obligations under tax, accounting and other legal regulations.

2.4. The Controller processes personal data for the purpose of keeping records of suppliers, contractors, employees and business partners to the extent necessary to ensure cooperation and fulfil jobs.

2.5. The Controller may also process personal data for the purpose of protecting its rights and legitimate interests, in particular when asserting claims, handling complaints, disputes, receivables or protecting property.

3. Legal Grounds for Processing

3.1. The legal ground for processing personal data is the performance of a contract or the taking of steps prior to entering into a contract, in particular when processing inquiries, price quotations, orders and contractual relationships.

3.2. The legal ground for processing personal data is also the fulfilment of a legal obligation, where processing is required by specific legal regulations, in particular in the area of accounting, taxes and documentation records.

3.3. The legal ground for processing personal data may be the legitimate interest of the Controller, in particular when protecting legal claims, keeping records of communications, protecting property and ensuring the proper functioning of the services provided.

3.4. Where necessary, the legal ground for processing personal data is the consent of the data subject, in particular when processing data for voluntary marketing or similar purposes; such consent may be withdrawn at any time.

4. Categories of Processed Data

4.1. The Controller processes identification data, in particular name, surname, business name, Business ID (IČO), Tax ID (DIČ), registered office or residential address.

4.2. The Controller processes contact data, in particular telephone number, e‑mail address and correspondence address.

4.3. The Controller processes data relating to the contractual relationship, in particular data stated in inquiries, orders, contracts, invoices, work statements and other business or accounting documents.

4.4. In the case of contractors, employees or cooperation applicants, the Controller may also process data on professional qualifications, experience, permits, training, certificates and language skills, to the extent necessary for the performance of the cooperation.

4.5. The Controller processes only those personal data that are adequate, relevant and limited to the extent necessary in view of the specific purpose of processing.

5. Recipients and Processors

5.1. Personal data may be disclosed to accountants, tax advisors, legal advisors, IT administrators and other specialist service providers, where this is necessary to fulfil the purpose of processing.

5.2. Personal data may be disclosed to processors who process personal data on behalf of the Controller on the basis of a contract on the processing of personal data and in compliance with appropriate technical and organisational measures.

5.3. Personal data may, to the necessary extent, be provided to business partners or clients of the Controller, where this is necessary to carry out a job, to access the workplace, to coordinate works or to fulfil contractual obligations.

5.4. Personal data may be disclosed to public authorities, courts, supervisory and control bodies or law enforcement authorities, where so provided by law or a binding decision of the relevant authority.

6. Retention Period for Personal Data

6.1. Personal data are stored for the duration of the contractual relationship and subsequently for the period necessary to fulfil legal obligations or to protect the rights and legitimate interests of the Controller.

6.2. Data contained in accounting, tax and invoicing documents are stored for the period prescribed by the relevant legal regulations.

6.3. Personal data processed on the basis of consent are stored for the duration of the consent or until its withdrawal, provided there is no other legal ground for their further processing.

6.4. After the retention period has expired, personal data are deleted, anonymised or otherwise securely destroyed in accordance with the relevant legal regulations.

7. Rights of Data Subjects

7.1. The data subject has the right to request confirmation as to whether the Controller is processing his or her personal data and has the right to obtain access to such data.

7.2. The data subject has the right to have inaccurate or incomplete personal data rectified.

7.3. The data subject has the right to have personal data erased, if the conditions laid down in the GDPR or the Act on the Protection of Personal Data are met.

7.4. The data subject has the right to restriction of processing of personal data in cases provided for by legal regulations.

7.5. The data subject has the right to data portability, if the processing is carried out automatically and on the basis of consent or a contract.

7.6. The data subject has the right to object to the processing of personal data which is carried out on the basis of the legitimate interest of the Controller.

7.7. The data subject has the right to lodge a proposal or complaint with the Office for Personal Data Protection of the Slovak Republic if he or she believes that his or her rights have been violated.

8. Cookies and Website

8.1. The website www.amfenix.sk may use technical and necessary cookies required for the proper functioning of the website, its security and the provision of its basic functions.

8.2. Analytical, preference or marketing cookies may be used only on the basis of the visitor's prior and actively given consent.

8.3. The website visitor must have the option to accept or reject cookies.

8.4. More detailed information on the use of cookies may be provided in a separate document or in the cookie settings on the Controller's website.

9. Security of Personal Data Processing

9.1. The Controller adopts appropriate technical and organisational measures to protect personal data against unauthorised access, loss, damage, alteration or destruction.

9.2. Only authorised persons who have been instructed on their obligations in the processing of personal data and who are bound by confidentiality have access to personal data.

9.3. The Controller continuously evaluates the measures taken and, where necessary, updates them so that they correspond to the risks associated with the processing of personal data.

10. Final Provisions

10.1. These principles for the processing of personal data are published on the Controller's website and are also available on request.

10.2. The Controller reserves the right to appropriately amend or supplement these principles, in particular in the event of changes in legal regulations, business processes or the technical solution of the website.

10.3. The current version of these principles shall become effective on 20 July 2026.