Legal
Privacy Policy
This site collects nothing from you through its own pages. There is no form, no account, no cookie and no tracking script anywhere on it. This policy describes the small amount of information that nevertheless exists, and what happens to it.
1. Who is responsible for your personal information
The entity responsible for personal information handled in connection with this website is:
Ergonomix CZ s.r.o.
Křižíkova 180/28, Karlín
186 00 Praha 8
Czech Republic
Company number: 22146504
VAT number: CZ22146504
Email: info@synergyportal.online
Ergonomix CZ s.r.o. publishes this site under the name Synergy Portal. This policy is written to meet the Privacy Act 1988 (Cth) and the Australian Privacy Principles, because the site is directed at readers in Australia, and it also covers the position under European data protection law, because the publisher is established in the Czech Republic.
2. What is actually collected
Being precise here is more useful than being comprehensive, so this section states plainly what exists and what does not.
Through the website itself: nothing. There is no contact form, no newsletter sign-up, no search box, no account, no comment facility and no input field of any kind on any page. The site sets no cookies and permits no third party to set one through it. It uses no localStorage, no sessionStorage, no IndexedDB and no browser fingerprinting. It runs no analytics, no advertising tag, no conversion pixel, no A/B testing tool and no chat widget. No script or font is loaded from any external host, so visiting a page on this site causes your browser to contact no server other than the one hosting the site. The cookie policy covers this in more detail.
Server logs. The hosting infrastructure that serves this site records ordinary web server logs, as essentially all web servers do. A log entry contains the IP address the request came from, the browser's user agent string, the URL requested, the date and time, the response status code, and, where the browser sends one, the referring page. An IP address can be personal information in some circumstances, which is why it is disclosed here rather than treated as technical detail.
Email you choose to send. If you write to info@synergyportal.online, the publisher receives your email address, whatever you put in the message, and the ordinary technical headers that accompany any email. Nothing obliges you to include any particular information, and an enquiry can be made with as little personal detail as you wish.
That is the complete list. No profile is built, no information is bought or obtained from any other source, and no automated decision-making of any kind is carried out.
3. Why each category is handled, and on what basis
- Server logs
- Kept so the site can be operated securely and diagnosed when it misbehaves — identifying errors, investigating unusual traffic, and defending against attempts to disrupt or misuse the service. The basis is the publisher's legitimate interest in running a secure and functioning website. Logs are not used to profile readers, to measure audiences, or for marketing, and they are not combined with any other information.
- Email correspondence
- Handled for the purpose you sent it: answering a question, acting on a correction, or dealing with a request about personal information. The basis is the publisher's legitimate interest in responding to people who write to it, and, where the enquiry concerns a legal request, compliance with the obligations that apply. Email addresses are never added to a mailing list, because none exists.
4. How long information is kept
Stated as periods rather than as a general assurance:
- Server logs: 30 days from the date of the request, after which they are deleted by the hosting infrastructure in the ordinary course. A specific log entry is kept longer only where it forms part of an active investigation into a security incident or a legal claim, and only for as long as that matter is live.
- Email correspondence: 24 months from the date of the last message in the exchange, after which the correspondence is deleted. Correspondence forming part of a legal or regulatory matter is kept until that matter concludes and any applicable limitation period has passed.
5. Who information is disclosed to, and where it goes
Personal information is not sold, rented, traded or disclosed for anyone's marketing purposes. It is not disclosed to any advertiser, advertising network or affiliate partner. The affiliate arrangement described on the affiliate disclosure page involves no transfer of reader information by this site: a paid link is an ordinary hyperlink, and this site sends nothing about you to the advertiser.
Two categories of recipient exist, and both are service providers acting on the publisher's behalf:
- The hosting provider that operates the servers on which this site runs, which necessarily processes the server logs described above.
- The email provider that operates the mailbox behind info@synergyportal.online, which processes any message you send.
Each is engaged under terms requiring it to handle information only as instructed and to keep it secure. No other third party receives anything.
Cross-border disclosure (Australian Privacy Principle 8). Both providers, and the publisher itself, are located outside Australia. The publisher is established in the Czech Republic, and the hosting and email infrastructure is operated from outside Australia, within the European Union or European Economic Area. If you are in Australia, handling your personal information in connection with this site therefore involves disclosing it to overseas recipients. Ergonomix CZ s.r.o. takes reasonable steps to ensure those recipients handle personal information in a manner consistent with the Australian Privacy Principles, including by engaging providers subject to European data protection law, which imposes comparable obligations.
Information may also be disclosed where the law requires it — for example in response to a valid order from a court or a regulator with jurisdiction over the publisher.
6. How information is protected
The measures are concrete and proportionate to what is held, which is very little:
- The site is served only over HTTPS, so the connection between your browser and the server is encrypted.
- Access to server logs and to the mailbox is limited to the publisher, through accounts protected by unique passphrases and multi-factor authentication.
- Nothing is collected that is not described in section 2, which limits what any incident could expose. There is no database of readers, because no reader information is gathered.
No method of transmission or storage is completely secure, and this policy does not claim otherwise.
7. Your rights, and how to use them
Under the Australian Privacy Principles you may ask for access to the personal information held about you, and ask for it to be corrected if it is inaccurate, out of date, incomplete, irrelevant or misleading.
Write to info@synergyportal.online stating what you are asking for. A response is given within a reasonable period and ordinarily within 30 days. There is no charge for making a request. In practice, unless you have emailed the publisher, the only information likely to exist is a server log entry, which cannot usually be connected to a person without further details from you; if that is the case, the reply will say so.
If you are not satisfied with how a request or a complaint has been handled, raise it with the publisher first at the address above, setting out what you believe went wrong. If it remains unresolved, you may complain to the Office of the Australian Information Commissioner, which has published guidance on how to make a privacy complaint.
8. Notifiable data breaches
If a data breach occurs that is likely to result in serious harm to any individual whose personal information is involved, Ergonomix CZ s.r.o. will assess it promptly and, where the Notifiable Data Breaches scheme under the Privacy Act 1988 applies, notify the affected individuals and the Office of the Australian Information Commissioner as that scheme requires.
9. Children
This site is an informational reference intended for adults. It is not directed at people under 16, it is not designed to appeal to children, and it collects nothing from anyone, including from children. Because no information is gathered through the site, no age is requested and none is inferred. If a parent or guardian believes a child has sent personal information to the contact address, write to info@synergyportal.online and the correspondence will be deleted.
10. Position under the GDPR and UK GDPR
Ergonomix CZ s.r.o. is established in the Czech Republic, so the EU General Data Protection Regulation applies to its handling of personal information. The lawful basis relied on for both categories described above is legitimate interests under Article 6(1)(f) — operating a secure website, and responding to correspondence. No consent basis is relied on, because the site sets no cookies and runs no tracking of any kind; there is nothing to consent to, which is why the site displays no consent banner.
Where the GDPR or the UK GDPR applies to you, you have the rights of access, rectification, erasure, restriction of processing, data portability, and objection to processing carried out on the basis of legitimate interests. Requests go to info@synergyportal.online. You also have the right to lodge a complaint with a supervisory authority — in the Czech Republic, the Office for Personal Data Protection (Úřad pro ochranu osobních údajů), and in other member states or the United Kingdom, the authority for your country of residence or workplace.
11. Changes to this policy
If this policy changes, the revised version is published on this page with a new effective date at the top, and the previous version ceases to apply from that date. Changes are not notified individually, because the publisher holds no reader contact details to notify.
A change that would introduce any new collection — a cookie, an analytics tool, a form, or any third-party script — will be published here, together with the required consent mechanism, before that collection begins rather than after. That commitment is repeated in the cookie policy.