Privacy Policy

1. General Provisions

The Emergency Medical Care Academy website is operated by MLJ, s.r.o., which is the data controller of your personal data. We process personal data in compliance with Regulation (EU) 2016/679 (GDPR) and other applicable laws worldwide. This Privacy Policy explains what information we collect, why we collect it, how we use it, and your rights.

By using this website, you consent to the practices described in this Policy.

2. Categories of Personal Data We Collect

We may process the following types of data:

- Identification data: name, surname, username, title, education.

- Contact data: email address, telephone number (if provided).

- Account data: login credentials, registration details.

- User-submitted content: articles, comments, ratings.

- Device information: browser type, IP address, time zone, operating system, cookies, referral websites, pages visited.

- Optional data: details provided via forms (e.g., newsletter sign-up, contact form, organization, city).

3. Purpose of Processing

Personal data is processed for the following purposes:

- Operation and improvement of the Platform.

- Account management and authentication.

- Content evaluation and publication, including processing by AI tools.

- Communication with users (notifications, support).

- Marketing and newsletters (only with explicit consent).

- Security monitoring and fraud prevention.

- Compliance with legal obligations.

4. Legal Basis

Processing is based on:

- Consent of the user (Art. 6(1)(a) GDPR).

- Performance of a contract (Art. 6(1)(b) GDPR).

- Legal obligations (Art. 6(1)(c) GDPR).

- Legitimate interests of the Operator (Art. 6(1)(f) GDPR).

5. Data Retention

We keep personal data only as long as necessary for the purposes above or as required by law. After account deletion, personal data will be erased or anonymized within 30 days, unless longer retention is legally required.

6. Data Sharing

We do not sell or rent your personal data. Data may be shared with:

- Authorized experts reviewing content.

- IT and hosting providers (Supabase, analytics, email services).

- Authorities if required by law (e.g., court orders, fraud investigations).

7. International Transfers

If personal data is transferred outside the EU/EEA (e.g., to US service providers), we ensure adequate safeguards such as Standard Contractual Clauses.

8. Security of Information

We implement reasonable technical and organizational measures, including encryption, access control, and monitoring, to protect your personal data. However, no data transmission over the internet is completely secure.

9. Links to Third-Party Websites

Our website may contain links to external websites. We are not responsible for the privacy