Controller and contact

Akta by Decision Interface P.S.A. is operated by Decision Interface P.S.A. (Decision Interface Prosta Spółka Akcyjna), NIP: 5214169992, KRS: 0001248975.

For personal data questions, contact us at hi@hi-di.cloud.

Data we process

Account data: email address, display name and hashed password. When you sign in with Apple or Google, we receive the identifier and email address provided by that service.

Materials added to folders: uploaded files, source descriptions, dates, cryptographic hashes (SHA-256/512), file size and file type.

Activity and security history: who added, checked, downloaded, shared or exported a material and when; session identifier, hashed IP address and security events.

Purpose and legal basis

Providing the service: storing and securing materials, calculating hashes, checking integrity, preparing packages and sharing access by role (GDPR Article 6(1)(b) - performance of a contract).

Security and integrity of case materials: operation history, access control and abuse detection (GDPR Article 6(1)(f) - legitimate interest).

Akta does not decide whether materials are true, admissible or legally effective and is not a court portal.

Storage and location

Data is stored on infrastructure in the European Union (Frankfurt region). Materials are kept for as long as the folder or account exists, then deleted or anonymized according to procedure and legal obligations.

Who receives data

We do not sell data and we do not show advertising. Data may be entrusted to infrastructure providers acting on our instructions and to people you intentionally grant access to inside a folder.

Payments are handled by an external provider (Stripe) on the web side. Card details are not entered in the Akta application.

Your rights

You may request access, rectification, erasure, restriction, portability and objection, and you may lodge a complaint with the supervisory authority (the Polish Personal Data Protection Office - PUODO). To exercise these rights, email us.

Some rights depend on the legal basis and context of processing. We will review each request against the applicable GDPR rules.

Security

We use encrypted connections (HTTPS), secure token storage on the device, hashed passwords, role-based access control and an activity history.

Contact and related pages

Questions about data, access in English and related policy pages.