{"id":21464,"date":"2021-02-21T21:43:49","date_gmt":"2021-02-21T21:43:49","guid":{"rendered":"https:\/\/mao.si\/?page_id=21464"},"modified":"2021-03-29T10:24:37","modified_gmt":"2021-03-29T10:24:37","slug":"privacy-policy","status":"publish","type":"page","link":"https:\/\/mao.si\/en\/privacy-policy\/","title":{"rendered":"General Terms and Conditions of Personal Data Protection\u00a0"},"content":{"rendered":"<div id=\"layout-block_6061a975e54c4\" class=\"layout\">\n\n\n\n\t\n\t<div class=\"bta-container container-fluid mb-0 animate-on-visible\">\n\t<div class=\"bta-row row \" style=\"color:inherit\">\n\n\n\n\t\n\t<div class=\"col-12 p-pgpd pb-0 \">\n\t\t<\/div>\n\t\n\n\t<div class=\"col-12 p-pgpd pt-0\">\n\t\t<p>&nbsp;<\/p>\n<p><span style=\"font-weight: 400;\">With these General Terms and Conditions, Museum of Architecture and Design, Rusjanov trg 7, 1000 Ljubljana, company number: 5052106000, e-mail: <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\">, phone no. +386 1 548 42 70 (hereinafter referred to as MAO), as processor and controller of personal data, provides users with information on the processing of personal data in accordance with the provisions of the applicable Slovenian Personal Data Protection Act (hereinafter ZVOP-1) and Electronic Communications Act (hereinafter ZEkom-1), and in accordance with the provisions of EU General Data Protection Regulation (hereinafter GDPR).\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><strong>\u00a01.<\/strong> <\/span><b>GENERAL<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">These General Terms and Condition govern the collection, processing and transfer of personal data, and measures to protect personal data and rights of users to personal data protection.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Personal data obtained through a sign-up form by means of which the user also confirms the acceptance of these General Terms and Conditions will be processed by MAO for the purpose of:\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">distributing e-news,\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">selling tickets,\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">selling products in online store,\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">viewing museum collections.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><strong>2. PERSONAL DATA COLLECTED<\/strong><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>2.1. E-NEWS<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">For the purpose of sending e-news, MAO collects the following obligatory user data through e-news sing-up forms:\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 e-mail address,<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">\u2013 name and surname,<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">\u2013 telephone number,<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">\u2013 occupation.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Personal data collected by the data collector MAO are obtained exclusively by way of voluntarily given information upon signing up to e-news. By giving an unequivocal consent or permission when entering his\/her electronic address, the user agrees to the collecting and processing of personal data for the purpose of receiving e-news. After entering the electronic address for receiving e-news, and giving consent, the user will receive a confirmation message to that same address. By confirming this message and activating the consent, the user will remain subscribed to MAO e-news until cancellation. Personal data for the subscription to e-news will be stored in a data base located on a secure server. Access to this data will be granted only to MAO Data Protection Officer.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>2.2. VIEWING OF MUSEUM COLLECTIONS\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO collects the following data on visitors who want to view museum collections:\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">name and surname,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">permanent\/temporary address,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">e-mail address,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">telephone number.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>2.3. ONLINE STORE OR TICKET SALES \u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>2.3.1. REGISTRATION AT MAO WEBSITE\u00a0<\/b><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Upon registering at MAO web site, you have the right to access specific services offered to you by MAO (online selling).\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">For the purpose of creating a personal account, MAO collects and processes the following personal data:\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">name and surname,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">state \/ region,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">street name and number,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">postal code,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">town\/city,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">telephone number,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">e-mail address,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">company name (option),<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">apartment no., floor, etc. (option).<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">All information shall be treated confidentially and shall be used solely for the purpose of creating a user account. By registering your profile, you have also given us consent to the processing of your personal data and have accepted these General Terms and Conditions.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Access to the provided personal data will be given only to persons duly authorized by MAO, who will use personal data only for the purpose for which the data has been given.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The user may at any time request rectification of inaccurate personal data, request the erasure of personal data or restrict the processing of personal data relating to him\/her.<\/span><b>\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO will store your data until you delete your account or until you request the deletion of individual data (you must send a written request to <\/span><a href=\"mailto:trgovina@mao.si\"><span style=\"font-weight: 400;\">trgovina@mao.si<\/span><\/a><span style=\"font-weight: 400;\">), on the basis of which the individual user is removed from the user interface.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The permission or consent you have given constitutes the legal basis for the processing of your personal data.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Your personal data will be stored on computer equipment located in MAO premises. Access to data will be provided only for duly authorized persons who will receive only the data they need for the execution of a process or activity. The data is stored securely using appropriate software and hardware safeguards.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO hereby informs you that you can withdraw your consent to the collection and processing of your personal data at any time. You can also request the rectification of your personal data, their deletion or restriction of processing of collected personal data.\u00a0\u00a0\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>2.3.2. DELIVERY SERVICE\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">We do not use your telephone number for the purpose of telemarketing. We will only contact you by phone if there is a problem with your order or if you have request additional information about the delivery of your products.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO will provide the delivery service only with the information relating to the delivery, namely name and surname, address, telephone number, apartment floor number. MAO does not transfer or sell personal data nor gives access to buyers&#8217; personal data to unauthorized persons including other partner companies, except companies through which we process our payments (Stripe).\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The delivery service will receive your personal data only for the purpose of delivering the ordered goods; the delivery service will destroy the data as soon as the condition for which it has received personal data has been fulfilled, i.e., the goods have been delivered. MAO will keep a register of personal data transfers. By signing the consent form or by registering a profile on the website, the consumer or buyer gives his\/her consent to the transfer of personal data.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Your personal data can be used in case of a police investigation as we report all cases of payment fraud to the police. We will grant access to your account and other personal data if we consider this necessary to comply with applicable laws and to prevent theft and fraud, such as credit card transactions. Any access we may grant in this regard is based on applicable legislation (Criminal Procedure Act, Prevention of Money Laundering and Terrorist Financing Act, Criminal Code, and others).\u00a0 \u00a0 \u00a0 <\/span><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The processing of your personal data is necessary to complete your order. Your personal data will be stored on our website servers until your profile has been erased. Alternatively, you can request the erasure of your data via e-mail, in which case we recommend that you contact us at <\/span><a href=\"mailto:trgovina@mao.si\"><span style=\"font-weight: 400;\">trgovina@mao.si<\/span><\/a><span style=\"font-weight: 400;\">.\u00a0\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>2.3.3. CREDIT CARD PAYMENT<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">In order to process payments, any data provided while buying with a credit card will be transferred to the third-party provider, Stripe online payments platform. In such cases, the following data will be transferred to Stripe:\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">card number,<\/span><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">card expiry date,<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u2013 <\/span><span style=\"font-weight: 400;\">security code.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">You can read more about the terms and conditions of the platform <\/span><a href=\"https:\/\/stripe.com\/en-si\/privacy\"><span style=\"font-weight: 400;\">here<\/span><\/a><span style=\"font-weight: 400;\"> [https:\/\/stripe.com\/en-si\/privacy]. MAO does not store users&#8217; credit card data.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><strong>3.<\/strong> <\/span><b>COOKIES<\/b><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"font-weight: 400;\">Because we want to offer our users a friendly website with all the relevant information we use technology that enables us to collect, process and classify the data relating to the use of our website. This data is collected using cookies. In order to process this data, we need your consent; if you do not give us your consent while browsing the website, we will not collect and process your data. \u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">A cookie is a small piece of information stored on your computer. This enables the website to remember and recognize you on your next visit. Cookies enable MAO to statistically monitor how you and other visitors use our website.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">We use cookies of several partners. These help us analyse how visitors use the website and which content they view. In the list below, you can see which cookies we use, their duration and description:\u00a0\u00a0\u00a0<\/span><\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<table class=\"table-with-border\">\n<tbody>\n<tr>\n<td><b>Provider<\/b><\/td>\n<td><b>Cookie<\/b><\/td>\n<td><b>Duration<\/b><\/td>\n<td><b>Description<\/b><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">Website<\/span><\/td>\n<td><span style=\"font-weight: 400;\">Cookies with woocommerce_ prefix<\/span><\/td>\n<td><span style=\"font-weight: 400;\">30 days<\/span><\/td>\n<td><span style=\"font-weight: 400;\">These are cookies necessary for the operation of the store. They are used to update the shopping cart and to monitor the number of selected items.\u00a0<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">Website<\/span><\/td>\n<td><span style=\"font-weight: 400;\">Cookies with yith_ prefix<\/span><\/td>\n<td><span style=\"font-weight: 400;\">30 days<\/span><\/td>\n<td><span style=\"font-weight: 400;\">Cookies used to create a wish list<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">Website<\/span><\/td>\n<td><span style=\"font-weight: 400;\">Cookies with wp-wpml prefix<\/span><\/td>\n<td><span style=\"font-weight: 400;\">30 days<\/span><\/td>\n<td><span style=\"font-weight: 400;\">These cookies are used to save preferred language settings to ensure a better user experience.\u00a0<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">Stripe<\/span><\/td>\n<td><span style=\"font-weight: 400;\">__stripe_mid<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1 year<\/span><\/td>\n<td><span style=\"font-weight: 400;\">These cookies are used to save credit card as preferred payment method.\u00a0<\/span><\/td>\n<\/tr>\n<tr>\n<td rowspan=\"3\"><span style=\"font-weight: 400;\">Google Analytics<\/span><\/td>\n<td><span style=\"font-weight: 400;\">__ga<\/span><\/td>\n<td><span style=\"font-weight: 400;\">2 years<\/span><\/td>\n<td rowspan=\"3\"><span style=\"font-weight: 400;\">These cookies are used to follow online statistics and user activity on the website (first visit, page viewed, browsing time, entry and exit point). More about individual cookies and their function, and the purpose for which collected data is used is available here.\u00a0<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">__gid<\/span><\/td>\n<td><span style=\"font-weight: 400;\">24 hours<\/span><\/td>\n<\/tr>\n<tr>\n<td><span style=\"font-weight: 400;\">__gat<\/span><\/td>\n<td><span style=\"font-weight: 400;\">1 minute<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">You can delete cookies at any time (instructions for more popular browsers: Google Chrome:\u00a0<\/span><a href=\"https:\/\/support.google.com\/chrome\/answer\/95647\"><span style=\"font-weight: 400;\">https:\/\/support.google.com\/chrome\/answer\/95647<\/span><\/a><span style=\"font-weight: 400;\">\u00a0, Mozzila Firefox:\u00a0<\/span><a href=\"https:\/\/support.mozilla.org\/sl\/kb\/izbrisite-piskotke-podatke-strani\"><span style=\"font-weight: 400;\">https:\/\/support.mozilla.org\/sl\/kb\/izbrisite-piskotke-podatke-strani<\/span><\/a><span style=\"font-weight: 400;\">, Microsoft Edge: https:\/\/support.microsoft.com\/sl-si\/microsoft-edge\/brisanje-pi%C5%A1kotkov-v-brskalniku-microsoft-edge-63947406-40ac-c3b8-57b9-2a946a29ae09) , however if you set your browser not to accept cookies, you may not be able to use some parts of our website. A part of data collected by MAO may become public but only in anonymous from, e.g., as an information about the number of visitors to the website. Information about customers is an important part of our operations and we do not sell it or exchange it with others. If at any time we need to share your information with a third person, you will have the option to decline this. We will not transfer your personal data to third persons without your explicit consent.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">We hereby also inform you that apart from the rights in the paragraph above you have the explicit right to object to the processing of personal data for the purpose of automated data processing or for the purpose of direct marketing.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><strong>\u00a04.<\/strong> <\/span><b>BASIS FOR THEPROCESSING OF PERSONAL DATA\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The permission or consent given by the user constitutes the fundamental legal basis for the processing of his\/her data.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">MAO hereby ensures that the information obtained from users for the purpose of sending e-news shall not be sold, lent, disclosed, or otherwise forwarded to third persons without users&#8217; permission.<\/span><span style=\"font-weight: 400;\">\u00a0\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>4.1. CONSENT<\/b><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">In the case of obtaining consent from the user, MAO shall process personal data only for the purpose for which the consent has been given. By giving consent, the user agrees for MAO to process personal data or categories of personal data it has on the user and was given upon subscribing.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">When processing personal data, MAO takes care to protect such data and performs relevant data protection activities.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><b>4.1.1. WITHDRAWAL OF CONSENT\u00a0<\/b><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">If personal data processing is based on consent, the user has the right to withdraw this consent at any time. The withdrawal shall have no effect on the lawfulness of data processing based on the consent before it has been withdrawn.\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">The consent can be withdrawn:\u00a0<\/span><\/li>\n<\/ol>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">by writing to MAO at Muzej za arhitekturo in oblikovanje, Rusjanov trg 7, 1000 Ljubljana,\u00a0\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">in person by submitting a written request at the registered office of the museum,\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">by submitting a written request by e-mail to <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\">.\u00a0 <\/span><span style=\"font-weight: 400;\">\u00a0<\/span><\/li>\n<\/ol>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">If the user decides to withdraw the consent by using the sing-up form on the website, then the electronic address used for giving consent must be entered again in order to receive the confirmation message. After confirming the electronic address, the consent withdrawal will be activated.\u00a0<\/span><\/li>\n<\/ol>\n<p><span style=\"font-weight: 400;\">In the case of consent withdrawal, MAO will stop processing personal data collected on the basis of consent and for the purpose for which the consent has been given and shall delete such data.<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.2. DATA PROCESSING\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">MAO collects and processes personal data in accordance with the provisions of ZVOP-1, ZEkom-1, and GDPR.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">MAO shall disclose personal data if there is explicit basis in any of the laws. In other cases, a written consent by the data subject is necessary.<\/span><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO shall protect personal data and prevent any misuse. Personal data shall be used only for the purpose of sending e-news, executing online purchases, viewing of museum collections and for other purposes for which the user has given consent.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Transferring personal data to third parties or institutions without user&#8217;s consent represents is not permitted.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4.3. DATA PROCESSING METHOD<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">MAO has an effective method of anonymising personal data by sending e-news through a web application that provides for a complete anonymisation of personal data of e-news recipients, and, in accordance with the minimization principle, enables access to personal data only for authorized persons on the basis of request for correction, access to, limitation, objection, transfer or deletion of personal data.<\/span><span style=\"font-weight: 400;\">\u00a0\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The web application provides for a complete traceability of authorized application users (access to application is user-name and password protected) as it automatically records access of authorized users and their activities in the application.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO shall, both\u00a0at\u00a0the\u00a0time of the\u00a0determination\u00a0of the\u00a0means\u00a0for processing and at the time of the\u00a0processing itself, implement appropriate\u00a0technical and organisational measures which are designed to implement effective data protection principles, such as data minimisation, and integrate the necessary safeguards into the processing, in order to protect the rights of data subjects.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><strong>\u00a05.<\/strong> <\/span><b>RIGHTS OF USERS<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">MAO shall, upon request by the data subject and without undue delay, enable the exercise of following rights:\u00a0<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to request from controller access to personal data, where an individual has the right to be informed about what kind of data are being collected and processed by the company, about the purpose of processing, the type of personal data, the retention period, and, in case of transmission of personal data, whom the data was transformed to and for what purpose;\u00a0\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to rectification of personal data, where an individual has the right to obtain from the controller without undue delay the rectification of inaccurate personal data concerning him or her;\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to erasure or the right to be forgotten, where an individual has the right to obtain from MAO the erasure of personal data concerning him or her; \u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to restriction of processing of personal data relating to the data subject, where an individual has the right to request MAO to restrict the processing of personal data if the individual disputes the accuracy of the data;\u00a0\u00a0\u00a0\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to object to the processing of personal data;\u00a0\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to data transfer;\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to withdraw the consent for processing;\u00a0\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; right to lodge a complaint with a supervisory authority.\u00a0<\/span><\/li>\n<\/ul>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">When lodging a complaint to exercise his\/her rights, the user must provide suitable identification and clearly state his\/her request.\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Corrections of data can be communicated to MAO in writing:\u00a0<\/span><\/li>\n<\/ol>\n<p><span style=\"font-weight: 400;\">\u2013<\/span> <span style=\"font-weight: 400;\">by mail<\/span> <span style=\"font-weight: 400;\">to Muzej za arhitekturo in oblikovanje<\/span><span style=\"font-weight: 400;\">, <\/span><span style=\"font-weight: 400;\">Rusjanov trg 7, 1000 Ljubljana;<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">\u2013 in person by lodging a written complaint at the registered office of the company;<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">\u2013 by sending a written complaint by e-mail to <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>5.1. EXERCISING OF RIGHTS<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">A request for the exercise of above stated rights must be addressed in writing to MAO through the following e-mail address: <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">A user may lodge his\/her request for the exercise of above stated rights electronically to the e-mail address given in the previous paragraph, by ordinary mail or in person at the seat of MAO. MAO shall accept and process the request without undue delay and act on it within 1 month from its receipt. MAO shall inform the user of its decision as soon as the decision has been made and notify the user whether his\/her request has been granted or, if it has not been granted, state the grounds for refusal and also inform him\/her of measures undertaken and of all important facts influencing the decision.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">If MAO does not act upon or comply with the user&#8217;s request, it shall inform the user within one month of the reasons for not\u00a0taking action, and of\u00a0the possibility of lodging a complaint with the Information Commissioner and seeking a\u00a0judicial remedy.<\/span><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The decision-making period may, where necessary, be extended by a maximum of two additional months, under the consideration of the complexity and number of requests. In this case, too, MAO shall notify the data subject about any deadline extension within one month after the receipt of request and state reasons for the delay.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">The response to the request shall be sent to the user by mail to the address given by the user in his\/request, or to the e-mail address from which the request has been sent. If the response is sent by e-mail, MAO shall take steps that the request is in an encrypted form.<\/span><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>5.1.1. RIGHT TO APPEAL\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">If the user considers that MAO has violated his\/her rights in the course of processing personal data, he\/she may lodge a complaint with MAO. Such complaint shall be:\u00a0<\/span><\/p>\n<ol>\n<li><span style=\"font-weight: 400;\"> sent by mail to Muzej za arhitekturo in oblikovanje, Rusjanov trg 7, 1000 Ljubljana, \u00a0<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">2.\u00a0\u00a0\u00a0 sent by email to <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\">, or<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">3.\u00a0\u00a0\u00a0 delivered in person at MAO office. <\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">Users may also lodge a complaint with the supervisory authority for the protection of personal data. In Slovenia, the supervisory authority for the protection of personal data is the Information Commissioner.<\/span><\/li>\n<\/ol>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>5.2.\u00a0 UNSUBSCRIBING<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">The user may at any time, by writing to the e-mail address <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\"> or by clicking the UNSUBSCRIBE button in e-news, request from MAO, as the personal data controller, to stop using or otherwise processing, either permanently or temporarily, his\/her personal data for the purpose of direct marketing, sending e-news or target marketing. The request for unsubscribing shall be granted within the statutory period of 15 days from the receipt of the request. Within further five days, the user shall receive notification of termination of processing of personal data by e-mail.<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><strong>\u00a06.<\/strong> <\/span><b>PROTECTION OF PERSONAL DATA\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">MAO ensures the safety of personal data by protecting the software used for the processing of personal data. Unauthorized persons have no access to personal data. MAO provides an effective way of blocking, destruction, deletion or anonymisation of personal data.<\/span><span style=\"font-weight: 400;\">\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Security of personal data involves legal, organizational, logistical, and technical procedures and measures, in order to:\u00a0<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; protect premises, devices and system software,\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; protect the application software used for the processing of personal data,\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; ensure safe transmission and transfer of personal data,\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; prevent unauthorized persons from accessing the devices used for the collection and processing of personal data,\u00a0<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">&#8211; allow subsequent determination of the time when personal data were entered into the personal data collection, used or otherwise processed, and by whom &#8211; the personal data were entered, used or processed.<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">Access to personal data is granted to persons authorized by MAO, but only to the extent necessary for the performance of their duties.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Authorized persons may not communicate users&#8217; personal data to third parties, except in cases specified by the law which constituted the basis for collecting the data, or with the consent of the data subject, nor may they use the data themselves or allow third parties to use them.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The obligation to protect the personal data of which employees become aware during their employment at MAO lasts also after the termination of the employment relationship with the company.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO works only with those data processors who are able to provide sufficient guarantee with regard to the execution of organisational measures in such a way that the processing complies with the provisions of GDPR and ZVOP-1 and ensures the protection of data subject&#8217;s rights.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">External natural or legal persons may perform activities associated with processing of personal data only within the scope of the client&#8217;s authorization and may not process or use data for any other purpose.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">External persons are liable to MAO for payment of compensation for any unauthorized sharing or other processing of personal data. In case of detected violation, either intentional or out of gross negligence, of provisions of these Terms and Conditions, General Data Protection Regulation, or Personal Data Protection Act, the external person shall be held fully liable to the injured party.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">MAO may, if this is compatible with the purpose for which personal data are processed under EU and Slovenian law, transfer personal data to persons who carry out specific processing tasks for MAO, such as preparation and sending of invoices or data analytics, maintenance and development of services and including software where these tasks, as far as required for the respective purpose, include the processing of personal data to the extent necessary for such tasks and based on purposes and bases laid down in these General Terms and Conditions. \u00a0 \u00a0 \u00a0 \u00a0 \u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>6.1.\u00a0 RETENTION PERIOD\u00a0<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">MAO shall retain user&#8217;s personal data until the user has withdrawn his\/her consent or unsubscribed from receiving e-news.<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>6.2.\u00a0 DATA DELETION<\/b><\/p>\n<p><span style=\"font-weight: 400;\"><br \/>\n<\/span><span style=\"font-weight: 400;\">After the purpose of processing has been fulfilled or the retention period has expired, personal data shall be deleted, destroyed, blocked, or anonymised, unless they are identified as archival records based on the law governing archives, or unless there is a different legal provision for individual types of personal data.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Personal data collected on the basis of user&#8217;s consent shall also be deleted or destroyed based on user&#8217;s express withdrawal of consent.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Personal data on paper carriers (documents, files, lists, etc.) shall be destroyed in a manner that prevents reading of all or parts of destroyed data, i.e., by shredding.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The deletion of personal data from computer media shall be done in a manner, procedure and method that prevent the restoring of all or parts of deleted data. The deletion of such personal data shall be performed by MAO.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\"><strong>7.<\/strong> <\/span><b>DATA PROTECTION AND PROCESSING OFFICER<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The controller of personal data under these General Terms and Conditions is MAO unless otherwise determined in documents governing individual contractual relationships.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">A secure access to users&#8217; personal data is granted solely to the controller&#8217;s authorized person whose obligation is to treat the data with due diligence in accordance with the applicable legislation of the Republic of Slovenia and the legislation of the European Union.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Access to personal data in the extent necessary for the performance of tasks is with MAO, available at the e-mail address <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\">.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Questions concerning the protection of personal data can be sent to the e-mail address <\/span><a href=\"mailto:info@mao.si\"><span style=\"font-weight: 400;\">info@mao.si<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The sender of e-news and the controller of personal data is: MAO.<\/span><\/p>\n<p>&nbsp;<\/p>\n<p>22. 02. 2021, Ljubljana<\/p>\n\t<\/div>\n\n\t\n\n\t<!-- buttons -->\n\t\n\t\n\n\t<\/div>\n\t<\/div>\n\n\n\n\n\n\n\n<\/div>\n","protected":false},"excerpt":{"rendered":"","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_uf_show_specific_survey":0,"_uf_disable_surveys":false},"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/pages\/21464"}],"collection":[{"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/comments?post=21464"}],"version-history":[{"count":12,"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/pages\/21464\/revisions"}],"predecessor-version":[{"id":22452,"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/pages\/21464\/revisions\/22452"}],"wp:attachment":[{"href":"https:\/\/mao.si\/en\/wp-json\/wp\/v2\/media?parent=21464"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}