Click here for English version Policy for handling your data.
DATA HANDLING POLICY
We are a business entity, Johanka Hibschová, with a registered address at Litoměřická, Prague 9, 19000,
Company ID No. 22179372, registered in the Trade Register maintained by the Ministry of Industry and Trade.
We operate an online shop at https://www.johankahibschova.com/.
In connection with the sale of our products and the operation of our website, we process certain personal data.
The processing of personal data is primarily governed by Regulation (EU) 2016/679 of the European Parliament
and of the Council of 27 April 2016 (General Data Protection Regulation, “GDPR”).
I. Processing of Personal Data
a. Processing of Personal Data via Contact Form
If you inquire about our products or services, we will process your contact details provided via the inquiry form
or by phone. These include: name, surname, email address, phone number, your product/service inquiries, and
any additional information you provide or share later.
Why?
• We use these details to contact you for further arrangements regarding goods or additional services (e.g.,
shipping).
On what legal basis?
• Processing is based on Article 6(1)(b) of the GDPR – performance of a contract or taking steps prior to
entering into a contract at your request.
How long do we process personal data?
• If cooperation does not proceed, we retain your data for no longer than 3 months from your last contact. We
may process your data under a different legal basis afterward (e.g., if a contract is concluded). If no other
reason arises, we will delete the data.
b. Processing of Personal Data During Purchase
If you make a purchase, we process data you provide, mainly billing information: name, surname,
address/registered office, email address, phone number, and purchase details.
Why?
• We need this data to fulfill our contractual obligation – deliver the goods. We'll also use your contact info to
communicate about your order status, returns, or inquiries.
• Additionally, we process data to meet our legal obligations (especially accounting, taxation, and complaint
handling).
On what legal basis?
• Based on Article 6(1)(b) GDPR – contract performance and Article 6(1)(c) GDPR – legal obligation compliance.
How long do we process personal data?
• For the duration of service provision, and then for 10 years following the last service or goods delivery.
c. Newsletters (Marketing Communications)
If you're a purchasing customer and haven't opted out during purchase, we may use your email address to
send you updates.
On what legal basis?
• Allowed under §7(3) of Act No. 480/2004 Coll., on certain information society services, unless you opted out
during purchase.
How long do we process personal data?
• 2 years from consent or last purchase. You may unsubscribe anytime via email or by contacting:
johanka.hibschovaart@gmail.com
II. Who Can Access Your Data?
Your data remains with us. However, some companies or individuals help us operate our e-shop and may
access your data:
• E-shop platform provider: WIX (WIX com LTD, 40 Namal Tel Aviv, 6350671, Israel, VAT ID EU442008451)
To ensure successful order processing, fulfillment, and delivery, we share your personal data (such as your
name, delivery address, phone number, and email) with trusted third-party logistics and courier companies.
These providers process the data solely for the purpose of delivering your order.
To ensure successful order processing, fulfillment, and delivery, we share your personal data (such as your
name, delivery address, phone number, and email) with trusted third-party logistics and courier companies.
These providers process the data solely for the purpose of delivering your order.
Depending on the destination and shipping method, the carriers may include:
● Zásilkovna s.r.o., Českomoravská 2408/1a, 190 00 Prague
● Česká pošta, s.p., Politických vězňů 909/4, 11000 Prague, IČO: 47114983
● PPL CZ s.r.o., K Borovému 99, Jažlovice, 251 01 Říčany, IČO: 25194798
● GLS General Logistics Systems
● DPDgroup
● DHL Express
● Deutsche Post / DHL Paket
● FedEx Corporation
● United Parcel Service (UPS)
● United States Postal Service (USPS)
● Royal Mail
● Correos
● PostNL
● SEUR
● Asendia
● Canada Post
● Australia Post
● SF Express
!The specific shipping company is selected automatically based on the destination, shipping method, and
product type!
All listed providers are obligated to process your personal data in compliance with applicable data protection
laws and only for the purposes described above.Personal data is processed only within the EU.
III. Other Information
• We do not have a Data Protection Officer.
• No automated decision-making or profiling takes place.
• For any questions, contact us at: johanka.hibschovaart@gmail.com
IV. Use of Cookies
a. What Are “Cookies”?
Cookies are small data files used as unique identifiers. Each cookie is unique to your web browser. It contains
anonymous information and is sent from the website’s server to your computer or mobile phone. Cookies can
be:
• First-party cookies – set by the site you’re visiting
• Third-party cookies – set by other domains (e.g., analytics services or embedded content)
Cookies may be short-term (session cookies) or long-term (persistent cookies).
b. Types of Cookies
• First-party cookies – Limited to the domain you're visiting
• Third-party cookies – Set by scripts from other domains, often used for ad tracking
Our website uses two types:
• Session cookies – Temporarily stored during a browser session and deleted after closing the browser
• Persistent cookies – Stored for a set period (a month, year, or longer), e.g., to save preferences
c. How We Use Cookies
Cookies help improve your experience by:
• Enabling website functionality
• Remembering preferences (language, login, etc.)
• Measuring performance anonymously to improve content
• Delivering personalized ads via third-party ad networks
Some cookies are essential and cannot be disabled individually. By continuing to browse and use our services,
you agree to the use of these cookies. Our site also uses cookies for behavioral advertising, based on visited
content and IP location.
d. Cookies Used on Our Site
• Essential – First-party, short-term, for core functionality
• Marketing – First and third-party, for interest-based ad targeting
• Functional – First-party, short- and long-term, for language and preference storage
e. Changing Cookie Settings
You can adjust your cookie preferences by clicking “Settings” in the cookie banner.
Consent
Upon first visit, a pop-up explains cookies. Clicking “Save settings” confirms your consent for the selected
cookies. Disabling cookies in your browser may affect website functionality.
Enabling/Disabling and Deleting Cookies
Cookies can be deleted or managed via your browser. You may prevent some cookies or be notified when one
is set. Instructions are available in your browser’s Help section.
Note: if all cookies are disabled, the website may not work properly. Cookies will be re-set if you consent again
upon revisiting.
Your Rights Regarding Personal Data
You have the following rights:
• To know why your data is collected, what happens to it, and for how long
• Right of access to your personal data
• Right to rectify, supplement, delete, or block your data
• If you gave consent, you may withdraw it and request data erasure
• Right to data portability to another controller
• Right to object to data processing
To exercise your rights, contact us using the contact info below.
You may also file a complaint with the Data Protection Authority.
Contact Information
Questions or comments regarding these cookie and privacy policies can be sent to:
Website: https://johankahibschova.com
Email: johanka.hibschovaart@gmail.com
Phone: +420 720 630 860
These Cookie and Privacy Policies were last updated on 01.07.2025 and apply to citizens and residents of the
European Economic Area.
Cookies Used by External Services
All below cookies are listed on their respective official websites:
• WIX
Use: Our site is built on www.wix.com
Details: See Wix Cookie Policy
• Instagram
Use: Redirect buttons to our Instagram profile
Details: See Instagram Cookies Policy
• Facebook
Use: Redirect buttons to our Facebook profile
Details: See Facebook Privacy Policy
• TikTok
Use: Redirect buttons to our TikTok profile
Details: See TikTok Cookie Policy
• YouTube
Use: Redirect buttons to our YouTube channel
Details: See YouTube Privacy & Cookies
Note: Third parties (including service providers) may also use cookies and/or access data collected through
cookies on our website.
More Information
You can find more about cookies and their current list in your browser’s Developer Tools.
Consent may also be given by ticking a checkbox in the cookie banner. Cookies can be later refused or
selectively managed via your browser.
Helpful browser-specific links:
• Internet Explorer –
https://support.microsoft.com/en-us/help/17442/windows-internet-explorer-delete-manage-cookies
• Google Chrome –
https://support.google.com/chrome/answer/95647?co=GENIE.Platform%3DDesktop&hl=en
• Firefox – https://support.mozilla.org/en-US/kb/enable-and-disable-cookies-website-preferences
• Safari – https://support.apple.com/en-us/guide/safari/sfri11471/mac
• Opera – https://help.opera.com/en/latest/security-and-privacy/
• Microsoft Edge – https://docs.microsoft.com/en-us/sccm/compliance/deploy-use/browser-profiles
V. Your Rights Related to the Processing of Personal Data
The GDPR grants you, among other things, the right to contact us and request information about which of your
personal data we process, to request access to this data, and to have it updated or corrected. You may also
request restrictions on processing, request a copy of the processed personal data, request deletion of personal
data under certain conditions, and in some cases, you have the right to data portability. You may object to
processing based on legitimate interest.
If you believe that we are not handling your data properly, you have the right to lodge a complaint with the
Office for Personal Data Protection or to pursue your claims in court.
These Terms are valid and effective as of 01.07.2025 and replace the previous version of the Terms dated
07.04.2024.
Technical name | Use of cookies | Duration | Type of cookie | Party |
|---|---|---|---|---|
XSRF-TOKEN | Used for security reasons | Session | Functional | First-party |
hs | Used for security reasons | Session | Essential | First-party |
svSession | Used in connection with user login | 12 months | Essential | First-party |
SSR-caching | Used to indicate the system from which the site was rendered | 1 minute | Essential | |
_wixCIDX | Used for system monitoring/debugging | 3months | Essential | |
_wix_browser_sess | Used for system monitoring/debugging | Session | Essential | |
consent-policy | Used for cookie banner parameters | 12 months | Essential | |
smSession | Used to identify logged in site members | Session | Essential | |
TS* | Used for security and anti-fraud reasons | Session | Essential | |
bSession | Used for system effectiveness measurement | 30 minutes | Essential | |
fedops.logger.X | Used for stability/effectiveness measurement | 12 months | Essential | |
wixLanguage | Used on multilingual websites to save user language preference | 12 months | Functional | |
bSession | Used for system effectiveness measurement | Less than minute | Essential | |
AWSALBCORS | For continued stickiness support with CORS use cases after the Chromium update, we are creating additional stickiness cookies for each of these duration-based stickiness features named AWSALBCORS (ALB). | 7 days | Third-party | |
JSESSIONID | General purpose platform session cookie, used by sites written in JSP. Usually used to maintain an anonymous user session by the server. | Session | Third-party | |
AWSALBCORS | For continued stickiness support with CORS use cases after the Chromium update, we are creating additional stickiness cookies for each of these duration-based stickiness features named AWSALBCORS (ALB). | 7 days | Third-party | |
ssr-caching | Indicates how a site was rendered | 12 seconds | ||
AWSALBTGCORS | 7 days | Other | Third-party |
Technical name | Duration | Type of cookie |
|---|---|---|
reg-store-region | session | Other |
tt_csrf_token | session | Functional |
ttwid | 1 year | Marketing |
tt_chain_token | 5 months 27 days | Other |
ak_bmsc | 2 hours | Essential |
tiktok_webapp_theme | 9 months 26 days | Other |
odin_tt | 1 year | Other |
csrf_session_id | session | Other |
msToken | 10 days | Other |
msToken | 3 months | Other |
passport_csrf_token | 2 months | Other |
passport_csrf_token_default | 2 months | Other |
store-idc | session | Other |
tt-target-idc | session | Other |
store-country-code | session | Other |
Technical name | Use of cookie | Duration | Type of cookie |
|---|---|---|---|
csrftoken | This cookie is associated with the Django web development platform for Python. It is used to protect websites from Cross-Site Request Forgery attacks | 1 year | Essential |
mid | The mid cookie is set by Instagram to personalize the user experience by remembering user preferences and settings | 1 year and 1 month | Functional |
ig_did | Instagram installs this cookie to enable its widgets on the website | 1 year | Functional |
Technical name | Duration | Type of cookie |
|---|---|---|
wd | 7 days | Other |
dpr | 7 days | Other |
datr | 1 year 4 days | Other |