GDPR

Privacy policy

What we know about you when you write to us, book a table or simply browse our website. Why we need it, how long we keep it and what your rights are.

In short

  • You give us most of the data yourself: in a form, by email, by phone or when booking a table.
  • We use it to reply to you, hold your table or prepare your event. We never sell it to anyone.
  • No analytics or advertising tracking runs on this website.
  • You can ask at any time what we know about you and have it corrected or deleted.

Who is responsible for your data

The controller of your personal data is COMIX GASTRONOMY s.r.o., company ID (IČO) 09435310, with its registered office at Kubelíkova 1224/42, Žižkov, 130 00 Praha 3, Czech Republic, entered in the Commercial Register kept by the Municipal Court in Prague, Section C, Entry 336306. The company runs the Comix Kitchen & Bar restaurant at Anglické nábřeží 1 in Pilsen, Comix catering and this website.

For anything concerning your data, you can contact us:

When you contact us

This covers the contact form and the catering and corporate event enquiry forms on our website, as well as emails, phone calls and messages on social media. We need the data to reply to you and prepare a quote.

Data
name, email and phone number; for enquiries also company, date, number of guests and type of event — plus anything you tell us yourself
Legal basis
steps prior to entering into a contract you are interested in (Art. 6(1)(b) GDPR); for other questions, our legitimate interest in replying to you (Art. 6(1)(f) GDPR)
How long
until your request has been dealt with, then for one more year in case you come back to it; if an enquiry turns into an order, the periods stated for catering and corporate events apply

The forms on our website are processed by our hosting provider Netlify: it stores the message you send, has it checked for spam by the Akismet service and forwards it to us by email. The box you tick in the form is not consent to processing — you only confirm that you know how we handle your data.

Reservations

You can book a table by phone, by email or online through the Bookio booking system on our Reservations page. We need the data to hold your table and to get in touch if anything changes.

Data
name, phone number, email, date and time, number of guests and any note on the booking
Legal basis
handling the booking you asked for (Art. 6(1)(b) GDPR)
How long
until the date of the booking, then for a maximum of one year

Allergies and health restrictions

If you tell us about an allergy, intolerance or other health restriction, that is information about your health. We use it only to prepare food you can eat, and we delete it together with the booking or enquiry.

We process it with your explicit consent (Art. 9(2)(a) GDPR), which you give by telling us yourself. You can withdraw your consent at any time — just write or call.

Catering, corporate events and vouchers on invoice

When we agree on catering or an event, or issue vouchers to you on invoice, we enter into a contract with you and have to keep records of it.

Data
name, contact details, billing details (for companies: name, company ID, VAT number and address), order and payment details
Legal basis
performance of the contract (Art. 6(1)(b) GDPR), accounting and tax obligations (Art. 6(1)(c) GDPR) and protection of our legal claims (Art. 6(1)(f) GDPR)
How long
the contract and related correspondence for the limitation period, usually three years after the event; invoices and other tax documents for ten years, as required by the Czech VAT Act

Gift vouchers via SmartVoucher

Vouchers bought online are sold, and paid for, through Adaptee Gastro, s.r.o., the company behind SmartVoucher. As the controller, it processes the name, email and payment details you enter when buying, under its own privacy policy.

Orders via Wolt

Food delivery is provided by Wolt (Wolt Oy and Wolt Česko s.r.o.). Wolt handles the order, payment and delivery as an independent controller under its own privacy policy. We receive from Wolt only what we need to prepare your order.

Visiting our website

When you just browse the website, you don't have to fill in anything about yourself. A few technical details are processed every time, though:

  • Our host, Netlify, logs technical details of each visit (IP address, time, page address and browser type) so that it can run the website and protect it from attacks.
  • The headline font loads from Adobe Fonts. Adobe uses no cookies for this and, by its own account, does not store your IP address; for licensing it records only which website used the font.
  • The Reservations page loads the Bookio booking window. Google's map scripts load along with it, so Google learns your IP address.
  • The website remembers your choice in the cookie banner in your browser (cookie comix_souhlas, valid for six months).
Data
IP address, time of access, page address, browser and device type
Legal basis
our legitimate interest in a secure, working website (Art. 6(1)(f) GDPR)
How long
Netlify keeps access logs for as long as its security rules require; we neither store nor review them ourselves

Cookies, map and measurement

No analytics or advertising tracking runs on this website.

The Google map on the Contact page only loads once you allow it in the cookie banner or click Show map. Google then learns your IP address and may store its own cookies. The legal basis is your consent (Art. 6(1)(a) GDPR).

You can change or withdraw your consent at any time; we then delete that service's cookies. A detailed overview of cookies is on a separate page.

Facebook and Instagram

We have profiles on Facebook and Instagram. What you do there (following, comments, messages) is processed mainly by Meta Platforms Ireland Limited under its own rules. For our Facebook page, Meta provides us with aggregated visitor statistics (Page Insights), for which we are jointly responsible with Meta (Art. 26 GDPR); under the agreement between us, Meta bears primary responsibility.

Joint controller agreement with Meta (opens in a new window)

Who we share data with

We never sell your data. It is handled only by the members of our team who need it and by these providers:

  • Netlify (Netlify, Inc., USA) — website hosting and forms, including the Akismet spam filter
  • Bookio (Bookio. s.r.o., Slovakia) — booking system
  • Active24 (ACTIVE 24, s.r.o.) — the rezervace@comixpub.cz mailbox
  • Google (Google Ireland Limited) — the catering mailbox (Gmail) and the map on the Contact page
  • Meta (Meta Platforms Ireland Limited) — our Facebook and Instagram profiles
  • Adobe (Adobe Systems Software Ireland Limited) — the headline font
  • SmartVoucher (Adaptee Gastro, s.r.o.) — sale of gift vouchers
  • Wolt (Wolt Oy and Wolt Česko s.r.o.) — food delivery
  • accountants and legal advisers bound by confidentiality

Providers that process data on our behalf may only do so on our instructions. Where the law requires it, we also pass data to authorities, such as the tax office or a court.

Transfers outside the European Union

Netlify, Google and Meta are based in the USA or have their parent company there, so data may end up there. All three take part in the EU-U.S. Data Privacy Framework, which the European Commission has found to ensure an adequate level of protection.

Your rights

At any time, you can:

  • find out what data we hold about you and get a copy
  • have inaccurate data corrected or completed
  • ask us to delete data we no longer need or are processing unlawfully
  • ask us to restrict processing, for example while we look into your objection
  • receive the data you gave us in a machine-readable format, or have it transferred to another controller
  • object to processing based on our legitimate interest
  • withdraw your consent — for cookies in the cookie settings, for health data by email or phone; withdrawal does not apply retroactively

Just write to rezervace@comixpub.cz or call us on +420 777 66 28 00.

We'll deal with your request free of charge, without undue delay and within one month at the latest. So that we don't hand your data to someone else, we may ask you to confirm your identity.

If you feel we are mishandling your data, you can lodge a complaint with the Czech data protection authority, Úřad pro ochranu osobních údajů (Pplk. Sochora 27, 170 00 Praha 7, uoou.gov.cz), or with the supervisory authority in the EU country where you live or work. We'd appreciate it if you contacted us first, though.

We do not make decisions about you automatically, without human involvement.

Security

The website runs only over an encrypted connection (HTTPS). Only people who need the data for their work have access to it, and we delete data we no longer need.

Changes to this policy

We'll update this policy whenever the way we handle data changes — for example if we add new measurement to the website. You'll always find the current version on this page.

Last updated: