Privacy policy
Last updated
The short version
This website collects nothing about you. There are no cookies, no analytics, no advertising pixels, no fingerprinting, no tracking scripts and no requests to any third-party server — not even for fonts. Nothing is written to your browser’s storage. The only personal data that exists is the standard access log kept by the web server, described in section 3, which is deleted after 14 days. There is no contact form, because a form would collect data.
1. Who is responsible for your data
The data controller, within the meaning of Article 4(7) of Regulation (EU) 2016/679 (GDPR), is:
- Publisher
- BRANAGROUP s.r.o.
- Registered address
- Za Poříčskou bránou 315/10, Karlín, 186 00 Praha 8, Czech Republic
- Company number (IČO)
- 07194609
- VAT number (DIČ)
- CZ07194609
- Director of publication
- William Baker
- info@brativa.online
- Website
- brativa.online
Given the very limited processing described below, we have not appointed a data protection officer, and we are not required to. Write to the address or email above with any data-protection question and it will reach the responsible person.
2. What this website does not do
Stated positively so that it can be checked, and it can be — the cookie policy tells you how to verify all of this in your own browser in about a minute:
- No cookies of any kind, first-party or third-party. The site sends no
Set-Cookieheader. - No local storage. Nothing is written to
localStorage,sessionStorage, IndexedDB or the cache API. - No analytics. No Google Analytics, no Matomo, no server-side analytics product, no page-view counter.
- No advertising or conversion pixels. No Meta pixel, no Microsoft UET tag, no Google Ads remarketing tag, no tracking image of any kind.
- No fingerprinting. No canvas, font, audio or device enumeration.
- No third-party requests. Every stylesheet, script and image is served from brativa.online itself. There are no web fonts, no CDN, no embedded video, no social widgets and no remote images. Loading a page on this site contacts no server except ours.
- No forms. There is no contact form, no newsletter sign-up, no comment section and no account system. We deliberately offer no way to submit data through the site.
- No profiling and no automated decision-making within the meaning of Article 22 GDPR.
- No data is ever sold, rented or shared for advertising or any other purpose.
3. The one thing that is processed: server access logs
We will not claim zero processing, because it would not be true. Like effectively every web server, ours records a line in an access log for each request it serves. This is a technical necessity, not a choice about you.
- What is recorded
- Your IP address, the date and time of the request, the URL requested, the HTTP status code, the number of bytes sent, the referring URL if your browser sent one, and the user-agent string your browser sent.
- Why (purpose)
- To keep the server running and secure: diagnosing faults, detecting and blocking abuse such as automated scanning or denial-of-service attempts, and confirming that pages are actually being served.
- Legal basis
- Article 6(1)(f) GDPR, our legitimate interest in the security and operation of the service. We have balanced that interest against your rights and consider the intrusion minimal: the logs are not read routinely, not used to build any profile, and not connected to anything else.
- Retention
- 14 days. Logs rotate daily and are deleted automatically after fourteen daily files. Nothing is archived beyond that, except where a specific log has to be preserved longer to investigate an incident or to comply with a legal obligation.
- Recipients
- Nobody. The logs stay on the server. They are not exported to any analytics tool, not shared with advertisers or partners, and not transferred outside the European Union. Our hosting provider acts as a processor with access to the underlying machine, under a contract meeting Article 28 GDPR.
- Is it personal data?
- An IP address can be personal data, so we treat it as such throughout.
4. If you email us
If you write to info@brativa.online, we necessarily receive your email address, your message and whatever you choose to put in it. We use it only to answer you, on the legal basis of Article 6(1)(f) (our legitimate interest in responding to correspondence) or Article 6(1)(b) where your message concerns steps prior to a contract. We keep correspondence only as long as needed to deal with the matter, and no longer than 24 months unless a legal obligation requires otherwise. We never add an address that wrote to us to any mailing list.
5. Partner links and what happens when you leave
This site carries partner links. We do not track your click. There is no click counter here, no logging of which button you pressed and no identifier attached to you.
What does happen is this: when you follow a partner link, the destination URL carries a campaign tag
identifying us as the publisher who sent the visit. That is how the vendor knows to credit any purchase
to us. If you arrived at this site from an advertisement, a small allow-list of campaign parameters that
were already in the URL you arrived on (such as utm_source, gclid or
msclkid) is copied onto that outgoing link. These parameters are handled entirely in your
browser, in the address bar; they are not stored and not sent to us.
Once you follow the link you are on the vendor’s site, and the vendor’s privacy policy applies, not ours. The vendor will very likely set its own cookies and run its own analytics. We have no control over and no visibility into that, and we receive no personal data back from the vendor — only aggregate commission reporting that does not identify individuals.
We set the referrer policy on this site to strict-origin-when-cross-origin, which means
a site you navigate to is told that you came from https://brativa.online but is not told
which page you were reading.
6. Children
This site is not directed at children and we knowingly process no data about them. Since we identify no reader at all, we hold no such data.
7. Your rights
Under Articles 15 to 22 GDPR you have the right of access, rectification, erasure, restriction of processing, data portability, and the right to object to processing based on legitimate interest.
We have to be straightforward about a practical limit here. Because we identify nobody, we normally cannot find your data in order to act on a request. A server log line contains an IP address and nothing else that links to you; Article 11 GDPR covers exactly this situation. If you want to exercise a right over log entries, tell us the IP address and the approximate time and we will do what we can within the 14-day retention window. For email correspondence, which we can identify, your rights apply normally and in full.
Write to info@brativa.online. We respond within one month, as Article 12(3) requires. Exercising these rights is free.
8. Complaints
You may lodge a complaint with a supervisory authority, in particular in the Member State of your residence or place of work. Ours is:
Úřad pro ochranu osobních údajů (Office for Personal Data
Protection)
Pplk. Sochora 27, 170 00 Praha 7, Czech Republic
uoou.gov.cz
We would rather you wrote to us first, but you are not obliged to.
9. Transfers outside the EU
None. The server is in the European Union and nothing is sent anywhere else.
10. Security
The site is served over HTTPS only. It is a set of static files: there is no database, no login, no user accounts and no server-side application handling input, which removes most of the categories of risk that affect sites holding personal data. The simplest protection we offer your data is that we do not have any.
11. Changes
If this policy changes, the revised version is published here with a new date at the top. We will not start collecting data and quietly update this page: any change to the zero-collection position would be announced on the site itself.