Privacy Policy (GDPR) for MRTech online Shop (“Website”)
Last updated: July 10, 2026
1. Introduction
MRTech SK, s.r.o. (“MRTech”, “we”, “our”, “us”) respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and protect personal data when you visit the Website, purchase our products, request quotations, or otherwise interact with us.
MRTech online shop deals exclusively with B2B customers; this document is therefore intended for individuals (Visitor) who visit this website to obtain information for and enter into a contract on behalf of the company (Customer).
We process personal data in accordance with:
- Regulation (EU) 2016/679 (GDPR).
- Act No. 18/2018 Coll. on Personal Data Protection of the Slovak Republic.
- Other applicable Slovak and European data protection legislation
2. Data Controller
MRTech SK, s.r.o.
Registered office: Hasičská ulica 1882/30A, 951 15 Mojmírovce, Slovak Republic
Company ID (IČO): 47 597 372
Website URL: https://shop.mr-technologies.com
For all privacy-related inquiries, requests, or complaints, please contact us at the following email address:
3. Personal Data We Collect
3.1. Information You Provide
When placing an order, requesting a quotation, creating an account, or contacting us, we collect data relating to the Customer:
- Company name
- VAT number or the company ID number
- Company address
- Billing address
- Delivery address
- Full name of company representative
- Email address
- Telephone number
3.2. Payment Information
Payments are processed through Tatrapay+ payment gateway by Tatra bank that is our bank and payment provider. MRTech does not store complete payment card details on its own servers, but we receive transaction confirmation data necessary for accounting and order processing.
4. Website information
4.1 Tools
The MRTech webserver is located in the OVHcloud data center in Germany. We use the WordPress publishing platform as a web content management system and Twenty Twenty-Five Theme as a website design framework.
Website uses SSL or TLS encryption for security reasons and to protect the transmission of personal data and other confidential content. You can recognize an encrypted connection by the character string https:// and the lock symbol in your browser line.
MRTech uses the Wordfence Security plugin for the WordPress platform to protect the website and our visitors against viruses and malware and as a defence against attacks by criminals. We configure the Wordfence plugin so that it locally uses visitor’s IP addresses (but not cookies) from server log files and does not transfer this data outside the EU.
MRTech uses Koko Analytics which is a privacy-friendly WordPress plugin for website user analytics. Koko Analytics plugin is compliant with GDPR by design, and it does not use any external services, so data about website visitors is never shared with any third party. No visitor-specific data is collected, only aggregated counts. This aggregated data older than 5 years is automatically deleted.
4.2. Technical Information
When you visit our website, we may automatically collect:
- Visitor’s IP address
- Browser type and version
- Device information
- Operating system
- Referring website
- Date and time of access
- Pages visited
- Website usage statistics
4.3 Cookies technologies
We use cookies to:
- Ensure website functionality,
- Improve website performance,
- Analyze visitor behavior,
- Remember user preferences.
Visitors can manage cookie preferences through the cookie banner and browser settings.
For more details, please see our Cookie Policy.
5. Purposes and legal bases of processing
5.1. Contract Performance
We process personal data to:
- Process orders.
- Deliver products and services.
- Provide technical support.
- Issue invoices.
Legal basis: Article 6(1)(b) GDPR.
5.2. Legal Obligations
We process personal data to comply with:
- Accounting regulations.
- Tax regulations.
- Consumer protection laws.
- Regulatory requirements.
Legal basis: Article 6(1)(c) GDPR.
5.3. Legitimate Interests
We may process personal data for:
- Fraud prevention.
- Network and information security.
- Internal administration.
- Customer relationship management.
- Protection of legal claims.
Legal basis: Article 6(1)(f) GDPR.
5.4. Marketing Communications
If permitted by law or where consent has been obtained, we may send:
- Product updates.
- Technical newsletters.
- Event invitations.
- Marketing communications.
Legal basis: Article 6(1)(a) GDPR (consent), or Article 6(1)(f) GDPR (legitimate interest where applicable). You may unsubscribe at any time.
6. Recipients of Personal Data
We may share personal data with:
Service Providers:
- Hosting providers.
- Cloud infrastructure providers.
- Email service providers.
- Accounting service providers.
- Payment processors.
Professional Advisors:
- Lawyers.
- Auditors.
- Tax consultants.
Public Authorities: Where required by law, court order, or regulatory obligation.
All processors are using appropriate security and confidentiality measures.
7. International Transfers
Where personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, including:
- European Commission adequacy decisions.
- Standard Contractual Clauses (SCCs).
- Other GDPR-compliant transfer mechanisms.
8. Retention Periods
We retain personal data only for as long as necessary to fulfil the purpose for which it was
collected:
- Contractual and invoicing data: 10 years from the end of the year in which the contract was terminated (Act No. 431/2002 Coll.)
- Marketing contacts (consent-based): until withdrawal of consent, maximum 5 years
- Technical logs: 12 months
- Anti-Money Laundering (AML) records: 5 years from the date of the transaction.
9. Your GDPR Rights
Under GDPR, you have the right to:
- Access your personal data.
- Correct inaccurate data.
- Request deletion of data.
- Restrict processing.
- Object to processing.
- Data portability.
- Withdraw consent at any time.
- Lodge a complaint with a supervisory authority.
To exercise your rights, contact: privacy@mr-technologies.com
10. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of external websites. So, visitors should review the privacy policies of those websites separately.
11. Children’s Privacy
Our products and services are intended for businesses and professional users. We do not knowingly collect personal data from children under 16 years of age. If such data is identified, it will be deleted without undue delay.
12. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. Any changes will be published on this page together with the updated revision date. Continued use of our website after publication constitutes acknowledgement of the updated Policy.
