Akta Privacy Policy for account data and case materials
How Akta by Decision Interface P.S.A. processes account data, case materials and activity history. Last updated: June 19, 2026.
Controller and contact
Akta by Decision Interface P.S.A. is operated by Decision Interface P.S.A. (Decision Interface Prosta Spółka Akcyjna), NIP: 5214169992, KRS: 0001248975.
For personal data questions, contact us at hi@hi-di.cloud.
Data we process
Account data: email address, display name and hashed password. When you sign in with Apple or Google, we receive the identifier and email address provided by that service.
Materials added to folders: uploaded files, source descriptions, dates, cryptographic hashes (SHA-256/512), file size and file type.
Activity and security history: who added, checked, downloaded, shared or exported a material and when; session identifier, hashed IP address and security events.
Purpose and legal basis
Providing the service: storing and securing materials, calculating hashes, checking integrity, preparing packages and sharing access by role (GDPR Article 6(1)(b) - performance of a contract).
Security and integrity of case materials: operation history, access control and abuse detection (GDPR Article 6(1)(f) - legitimate interest).
Akta does not decide whether materials are true, admissible or legally effective and is not a court portal.
Storage and location
Data is stored on infrastructure in the European Union (Frankfurt region). Materials are kept for as long as the folder or account exists, then deleted or anonymized according to procedure and legal obligations.
Who receives data
We do not sell data and we do not show advertising. Data may be entrusted to infrastructure providers acting on our instructions and to people you intentionally grant access to inside a folder.
Payments are handled by an external provider (Stripe) on the web side. Card details are not entered in the Akta application.
Your rights
You may request access, rectification, erasure, restriction, portability and objection, and you may lodge a complaint with the supervisory authority (the Polish Personal Data Protection Office - PUODO). To exercise these rights, email us.
Some rights depend on the legal basis and context of processing. We will review each request against the applicable GDPR rules.
Security
We use encrypted connections (HTTPS), secure token storage on the device, hashed passwords, role-based access control and an activity history.
Contact and related pages
Questions about data, access in English and related policy pages.

