Privacy Policy
This policy describes what happens to personal information in connection with shiftportal.online. The site has no forms, no accounts, no analytics and no cookies, so the honest version of this policy is short and specific rather than long and general.
1. Who is responsible
The publisher and controller of this site is:
Hraždastav s.r.o.
Husitská 107/3, Žižkov
130 00 Praha 3
Czech Republic
Company number: 11866811
VAT: CZ11866811
Email: info@shiftportal.online
Hraždastav s.r.o. decides what appears on this site and how the information described below is handled. All privacy enquiries should go to the email address above.
2. What is collected
Three categories exist, and there is no fourth.
- Nothing collected by the site itself. There is no contact form, no newsletter sign-up, no account, no search box, no quiz and no chat widget anywhere on shiftportal.online. No cookies are set, and no information is stored in a reader's browser through localStorage, sessionStorage or any similar mechanism. No analytics, advertising or measurement script runs on any page.
- Server logs kept by the hosting provider. Like any web server, the machine that serves these pages records ordinary technical entries: the IP address making the request, the user agent string sent by the browser, the URL requested, the response code, and the date and time. These entries are generated automatically by the web server software and are used for security and diagnostics.
- What a reader chooses to send by email. If a reader writes to info@shiftportal.online, the message and its contents — including the sender's address and anything written in the message — reach the publisher's mailbox and stay there while the matter is dealt with.
3. Why each category is handled, and on what basis
Server logs are kept to keep the site available and secure: to identify errors, to diagnose failures, and to detect and respond to attacks such as automated request floods. The basis is the publisher's legitimate interest in operating a secure website. There is no consent basis for anything on this site, because nothing here requires consent: no cookie is set and no tracking takes place.
Email correspondence is handled for the purpose of answering it — a correction to a page, an accessibility problem, a privacy request, a question about the affiliate arrangement. That is the only purpose. Email addresses are never added to a mailing list, never used for marketing, and never shared with any advertiser or affiliate programme.
4. How long each category is kept
- Server logs: retained for 30 days from the date of the request, then deleted by the hosting provider in the ordinary course of log rotation. A log entry preserved because it forms part of a specific security investigation is kept until that investigation closes, and for no more than 12 months in any case.
- Email correspondence: kept while the matter is open and for 12 months after the last message in the exchange, then deleted. Where correspondence concerns a legal claim, it is kept until the claim is resolved and any applicable limitation period has expired.
5. Who information is disclosed to
One recipient exists: the hosting provider engaged by Hraždastav s.r.o. to serve this website, which necessarily processes the server log entries described above because it operates the server that creates them. The provider acts on the publisher's instructions and does not use those logs for its own purposes. Readers who want the provider identified may ask at info@shiftportal.online.
No other third party receives anything. In particular, no analytics provider, no advertising network, no social platform, no content delivery network and no font service receives any information about a reader of this site, because none of them is contacted by any page here. The site loads no external resources of any kind: the stylesheet, the script and the site icon are all served from shiftportal.online.
Cross-border disclosure (Australian Privacy Principle 8). The publisher is established in the Czech Republic and its hosting infrastructure is located outside Australia, in the European Union. Accordingly, where an Australian reader's personal information is handled in connection with this site — in practice, an IP address in a server log, or an email a reader chooses to send — that information is disclosed to and held by recipients outside Australia. Readers in Australia should be aware of that before sending anything they would prefer to keep within Australia.
Affiliate links on this site are ordinary links to a third-party website. Following one means leaving shiftportal.online, and from that point the destination site's own privacy policy applies. This site sends no reader data to that destination: it places no tracking code, sets no cookie, and does nothing to a link beyond writing the address into the page. The affiliate disclosure explains the arrangement.
6. Security
The site is served over HTTPS, so the connection between a reader's browser and the server is encrypted. The site is static: there is no database, no login, no user-generated content and no server-side application, which removes most of the categories of vulnerability a website can have. Access to the hosting account and to the publisher's mailbox is limited to Hraždastav s.r.o. personnel who need it, and is protected by multi-factor authentication.
7. Access, correction and complaints
Under the Australian Privacy Principles, a person may ask what personal information about them is held, may ask for a copy, and may ask for it to be corrected if it is inaccurate. Requests should be sent to info@shiftportal.online and will be answered within 30 days. In practice, the only information likely to exist about a particular reader is an email they have sent and, for a limited period, log entries that cannot ordinarily be connected to a named individual.
If a request or a complaint is not resolved to a reader's satisfaction, a complaint may be made to the Office of the Australian Information Commissioner, the regulator for privacy in Australia, at oaic.gov.au. The OAIC generally expects a complaint to have been raised with the organisation first.
8. Data breaches
If a data breach occurs that is likely to result in serious harm to any individual whose personal information is involved, the publisher will assess it promptly, notify the affected individuals where they can be identified and contacted, and notify the relevant regulator, consistent with the Notifiable Data Breaches scheme under the Privacy Act 1988 (Cth).
9. Children
This site is not directed at children. It is written for adults choosing and using desktop games, it collects nothing from anyone, and it therefore collects nothing from people under 16. No part of the site invites a reader to submit information about themselves. Parents and carers looking for guidance on children and online games will find it at the eSafety Commissioner, and classification information for particular titles at the Australian Classification Board.
10. Readers in the European Union and the United Kingdom
Hraždastav s.r.o. is established in the Czech Republic, so the General Data Protection Regulation applies to its handling of personal information, as does the UK GDPR for readers in the United Kingdom. The legal basis relied on is legitimate interests under Article 6(1)(f) — specifically, the interest in keeping the website secure and diagnosing faults, which is what the server logs serve, and the interest in answering correspondence that a reader has chosen to send. Consent is not relied on anywhere, because the site sets no cookies and performs no tracking.
Readers in those jurisdictions have the rights of access, rectification, erasure, restriction of processing, data portability and objection, exercisable by writing to info@shiftportal.online. They also have the right to lodge a complaint with a supervisory authority — in the Czech Republic, the Úřad pro ochranu osobních údajů; in the United Kingdom, the Information Commissioner's Office — or with the authority in their own country of residence.
11. Changes to this policy
If this policy changes, the new version replaces this one at this address and the effective date at the top changes with it. Where a change is substantive — for example, if the site ever began to collect something, which it does not today — a note describing the change will appear on this page for at least 90 days, and any collection would begin only after the policy describing it was published.