Privacy Policy

Last updated: 1 June 2026

This Privacy Policy explains how we collect, use, and protect personal data when you visit aiandshine.com (the "Website"). The AI and Shine platform (app.aiandshine.com) is governed by a separate Privacy Notice and Data Processing Agreement provided to customers.

1. Data Controller

The controller of your personal data is Zofia Żak ROI & Shine, Złota 75A/7, 00-819 Warsaw, Poland · NIP: 5214159338 · REGON: 544359270.

For any privacy matter, contact us at contact@roiandshine.com.

2. What data we collect

When you interact with the Website we may collect the following personal data:

  • Contact and demo requests: name, business email, company name, role, and the content of your message.
  • Readiness Check: answers you provide about your organization and, if you choose to receive results, your email address.
  • Technical data: IP address, browser type, device information, and usage data collected via cookies and similar technologies (see our Cookie Policy).

3. Why we process your data and the legal basis (Art. 6 GDPR)

  • To respond to your enquiries and arrange demos — necessary to take steps at your request before entering a contract (Art. 6(1)(b)).
  • To provide Readiness Check results — your consent (Art. 6(1)(a)) where you ask us to email them.
  • To operate, secure, and improve the Website — our legitimate interest (Art. 6(1)(f)).
  • To send you information about our services — your consent, where required (Art. 6(1)(a)); you may withdraw it at any time.

4. Recipients of your data

We share data only with service providers acting on our behalf under data processing agreements, including: website hosting and infrastructure, web analytics, email and CRM, and form/scheduling tools. We do not sell your personal data.

5. International transfers

Where a provider processes data outside the European Economic Area, we rely on appropriate safeguards such as the European Commission's Standard Contractual Clauses or an adequacy decision.

6. How long we keep your data

  • Enquiry and demo data: up to 24 months after our last contact, unless a contract is concluded.
  • Readiness Check data: up to 12 months.
  • Consent-based marketing data: until you withdraw consent.

Technical and cookie data is retained per our Cookie Policy.

7. Your rights

Under the GDPR you have the right to access your data, rectify it, request erasure, restrict or object to processing, request data portability, and withdraw consent at any time without affecting prior processing. To exercise any right, contact us at contact@roiandshine.com.

8. Right to lodge a complaint

You may lodge a complaint with the President of the Personal Data Protection Office (Prezes Urzędu Ochrony Danych Osobowych, UODO), ul. Stawki 2, 00-193 Warsaw, Poland — or with the supervisory authority in your country of residence.

9. Automated decision-making

We do not make decisions producing legal or similarly significant effects based solely on automated processing on this Website.

10. Changes

We may update this Policy. The current version is always available here, with the date of the last update shown above.