Privacy Policy

TL;DR — No cookie pop-ups here

This site does not use tracking cookies, third-party ads, or invasive profiling.
Analytics are run on my own server, without storing personal data, fully GDPR-compliant.
I only collect information you choose to send (e.g., through a contact form or comments), and I use it solely to respond to you.


Privacy Policy

Effective date (Last updated): 10 August 2025

1. Who I am

Our website address is: https://cechacek.com
Controller: Bohumil Čecháček (Bob Cechacek)
Contact: [email protected] (e-mail address)


2. Comments

When visitors leave comments, we collect the data shown in the comments form, plus the visitor’s IP address and browser user agent string to help spam detection.

An anonymized string (hash) from your email address may be sent to the Gravatar service to see if you use it. The Gravatar privacy policy is here: https://automattic.com/privacy/.
After approval of your comment, your profile picture is visible to the public in the context of your comment.


3. Media

If you upload images, avoid including embedded location data (EXIF GPS). Visitors can download and extract location data from images on the website.


4. Cookies

This site does not use tracking or analytics cookies.
Functional cookies may still be set in these cases:

  • If you leave a comment and opt-in to save your name/email/website (for convenience; expires after 1 year)
  • Temporary cookie on login page (discarded when browser closes)
  • Login/session cookies (expire after 2 days; “Remember Me” keeps for 2 weeks)
  • Screen option cookies (1 year)
  • Edit/publish article cookie (expires after 1 day)

These are strictly necessary for WordPress functionality and do not require a banner under EU law.


5. Embedded content from other websites

Articles may include embedded content (videos, images, articles, etc.). Embedded content behaves exactly as if you visited the other website. Those sites may collect data, use cookies, and track your interaction.


6. Website analytics

We use [Umami/Plausible] Analytics, a privacy-focused, self-hosted analytics tool operated on our own servers in Germany:

  • No cookies are used.
  • IP addresses are anonymized immediately.
  • No personal data is collected for analytics.
    Because no personal data is processed for analytics, no consent banner is required under GDPR/ePrivacy.

7. Contact forms

When you submit a form, we collect the information you provide (name, email, message) solely to respond to your enquiry.
Legal basis: Art. 6(1)(b) GDPR.
Data is stored only as long as necessary for processing or as required by law.

I use the Akismet Anti-spam service to help detect and block spam comments.
When visitors leave comments on the site, Akismet collects information for the purpose of spam detection. This typically includes:

  • Commenter’s IP address
  • Browser user agent string
  • Referrer and site URL
  • Information provided in the comment form (name, username, email address, and the comment text)

This data is sent to Automattic Inc. (the provider of Akismet), located in the United States. Processing is based on Art. 6(1)(f) GDPR (legitimate interest in preventing spam and abuse). For more information, see Automattic’s Privacy Policy.


8. Who I share your data with

I do not share personal data except:

  • If legally required by law

9. How long I retain your data

  • Comments and metadata: indefinitely, to auto-approve follow-ups.
  • Registered user profiles: stored until user edits/deletes them (username can’t be changed).
  • Contact form messages: kept only as long as needed.
  • Analytics: aggregated only; no personal data retained.

10. Your rights under GDPR

You have the following rights:

  • Right to access (Art. 15 GDPR)
  • Right to rectification (Art. 16 GDPR)
  • Right to erasure (Art. 17 GDPR)
  • Right to restriction of processing (Art. 18 GDPR)
  • Right to data portability (Art. 20 GDPR)
  • Right to object to processing (Art. 21 GDPR)
  • Right to lodge a complaint with a supervisory authority (Art. 77 GDPR)

Lead supervisory authority:
Úřad pro ochranu osobních údajů (ÚOOÚ)
Pplk. Sochora 27, 170 00 Praha 7, Czech Republic
https://www.uoou.cz


11. Security

I implement technical and organizational measures to protect your data from unauthorized access, loss, or misuse.


12. Changes to this policy

I may update this Privacy Policy from time to time. The current version is always available on this page.


For Forms:

By submitting this form, you agree that I will process your personal data solely to respond to your enquiry. For details, see my Privacy Policy.