Privacy information for the Zoneo Partner Centre
Privacy notice for partners
Information about the processing of personal data during registration, use of the Zoneo Partner Centre, and management of the shop profile and product feed in ZONEO.
Effective from: 2026-07-03
This document explains how we process personal data during registration and use of the Zoneo Partner Centre, when managing a shop profile and product feeds, communicating with partners and displaying basic performance summaries.
This document applies primarily to individuals acting on behalf of an online shop or business partner, such as directors, employees, contact persons, account administrators or users of the Zoneo Partner Centre.
If we have appointed a data protection officer, their contact details are: Samostatná zodpovedná osoba nie je určená; kontaktujte nás na zoneo@zoneo.sk.
Data controller
- Name
- zoneo s. r. o.
- Registered office
- Veľký Lapáš 1123, 951 04 Veľký Lapáš, Slovenská republika
- Company ID
- 56502966
- IČ DPH / VAT ID:
- SK2122327735
- Tax status
- VAT registration under Section 7a of Act No. 222/2004 Coll.; Zoneo is not a domestic VAT payer.
- Email for the Zoneo Partner Centre
- zoneo@zoneo.sk
- Data protection email
- zoneo@zoneo.sk
- Data protection officer
- Samostatná zodpovedná osoba nie je určená; kontaktujte nás na zoneo@zoneo.sk.
- Website
- https://izoneo.co.uk
1. What personal data we process
In connection with the Zoneo Partner Centre, we may process registration and account data, shop data, product feed data, communications, technical logs and aggregated performance summaries.
Registration and account data mainly include the contact person’s first name and surname, email address, password in securely hashed form, communication language, telephone number if you provide it, confirmation that the email address has been verified, account status, user role, registration date and last login.
Shop and partner data may include the shop name, company’s legal name, website address, domain, contact and support email, country or market, logo, images, public shop descriptions and notes sent by the partner to the ZONEO team. Data relating to a legal entity may not always be personal data, but a contact person’s details, an individual’s email address, telephone number, login details, communications or technical logs may be personal data.
Product feed data may include the product feed URL, feed name and type, feed language, currency and market, technical validation results, error and diagnostic messages, item samples needed to display errors, feed approval or rejection status, and the history of feed validations and runs.
A product feed should not contain personal data relating to the partner’s customers. If a partner includes personal data in a feed, they are responsible for ensuring that they do so lawfully and only to the extent necessary.
For communications and support, we may process the content of messages sent through the Zoneo Partner Centre, email correspondence, reasons for rejection or requests for additional information, internal notes relating to checks of the partner, profile or feed, and the status or history of requests.
Technical and security data may include an IP address or its hash, session identifier, user-agent or its hash, login date and time, security events, error records, audit logs of account changes, and information about the sending of an email or notification. We use this data to protect accounts, prevent misuse, diagnose errors and demonstrate important actions.
If the feature is available, the Zoneo Partner Centre may display aggregated data about clicks and performance, such as the number of clicks, click period, breakdown by category, product, feed or market, and estimated revenue. We do not show partners raw visitor data, such as the IP addresses or user-agents of individual users.
2. Where we obtain data
We mainly obtain personal data directly from you during registration and when using the Zoneo Partner Centre, from data entered into the shop profile, from the product feed, from communications with us, from technical logs generated when using the service, from publicly available sources needed to verify the shop, domain or authority to act on behalf of the shop, and from internal checks and approval processes.
3. How we use data
We use data to register and manage accounts, create partner accounts, verify email addresses, enable sign-in, reset passwords, manage users, secure accounts and provide access to the Zoneo Partner Centre. The legal basis is performance of a contract or steps taken before entering into a contract.
We also use data to assess the shop and profile, verify the domain, approve or reject the profile, and protect against unauthorised use of another party’s brand or shop. The legal basis is performance of a contract, steps taken before entering into a contract, and our legitimate interest in protecting the service, partners and users.
When processing feeds and carrying out technical validation, we use data to receive the feed URL, perform a security check of the URL, technically validate the feed, display errors, prepare imports, approve feeds and resolve technical issues. The legal basis is performance of a contract and our legitimate interest in operating the service securely.
Approved shop data, such as the name, logo, description, website and public offer information, may be displayed on the public ZONEO website. The legal basis is performance of a contract or our legitimate interest in operating a sports aggregator.
We use data to communicate with partners, send system emails, provide information about registration, approval, rejection and feed status, report errors and security notices, and respond to support requests. The legal basis is performance of a contract, our legitimate interest or compliance with a legal obligation, depending on the nature of the communication.
We use technical and audit data for security, auditing and misuse prevention, including protection against unauthorised access, SSRF attacks, malicious uploads, misuse of feeds or manipulation of clicks. The legal basis is our legitimate interest in security and protecting the service.
We may process some data to comply with accounting, tax, legal or other statutory obligations. If optional marketing communications for partners become available, they will be separate from system and transactional messages and will use the appropriate legal basis.
4. Who we may disclose data to
To the extent necessary, we may disclose personal data to providers of hosting and server infrastructure, database, storage and backup services, email services, and analytics or security tools where used; to accounting, legal or tax advisers; to public authorities where required by law; and to authorised ZONEO personnel who manage the Zoneo Partner Centre, feeds and support.
Approved public shop and offer data, such as the shop name, logo, website, description and product data, may be published on the ZONEO website.
5. Transfers of data outside the EEA
If, when providing the service, we use suppliers outside the European Economic Area or suppliers with infrastructure outside the EEA, we will ensure an appropriate legal transfer mechanism, such as an adequacy decision, standard contractual clauses or another mechanism under the GDPR.
Specific suppliers and countries may change depending on the hosting, email, storage or security services used.
6. How long we retain data
We retain data only for as long as necessary for the purposes for which it was obtained, or for the period required by law.
- we retain partner account data for the duration of the account and for a reasonable period after it ends
- we retain registration and consent data for the duration of the account and for as long as needed to demonstrate the legal basis
- we retain audit and security logs for as long as needed for security, incident resolution and protecting legal claims
- we retain feed validation data and technical artefacts in accordance with the service’s retention rules, or for a shorter period in the case of temporary files
- we retain accounting or invoicing data for the period required by accounting and tax regulations
- we retain support communications while the request is being handled and for a reasonable period after it is closed
- we retain data needed for legal claims for the limitation period or for the duration of the dispute
When we no longer need the data, we will delete it, anonymise it or restrict its processing, depending on the nature of the data and our technical capabilities.
7. Automated decision-making
A feed may be checked using automated processes. Automated checks may flag errors, risks, incomplete data or offers that do not meet technical rules. These checks are used for the technical and quality management of the service. Registration, a profile or a feed may also be subject to manual review by the ZONEO team.
We do not carry out solely automated individual decision-making that would produce legal effects concerning the data subject or similarly significantly affect them within the meaning of the GDPR, unless expressly stated otherwise.
8. Cookies and similar technologies
Zoneo Partner Centrum may use necessary cookies or similar technologies for login, security, remembering the session and the basic operation of the service.
If we use analytics or marketing cookies, these are governed by separate cookie rules and consent settings, where available.
9. Your rights
As a data subject, under the GDPR you generally have the right to access your personal data, request the correction of inaccurate or incomplete data, request the deletion of data, request the restriction of processing, object to processing based on legitimate interests, receive your data in a portable format where the conditions are met, withdraw your consent where processing is based on consent, and lodge a complaint with a supervisory authority.
You can exercise your rights by email at: zoneo@zoneo.sk. When handling a request, we may need to verify your identity to protect your data from unauthorised disclosure.
10. Supervisory authority
If you believe that the processing of personal data breaches legal requirements, you have the right to contact a supervisory authority. For the Slovak Republic, the supervisory authority is the Office for Personal Data Protection of the Slovak Republic. Web: https://dataprotection.gov.sk
If you operate in another EU or EEA Member State, you may also contact your locally competent supervisory authority.
11. Data security
We take appropriate technical and organisational measures to protect personal data against unauthorised access, loss, misuse, alteration or destruction.
- access permissions
- separation of partner accounts
- transmission encryption
- password hashing
- audit logs
- upload restrictions
- feed URL security checks
- backups
- error and incident monitoring
However, no system can be considered completely secure. If you detect suspicious activity in your account, contact us without delay.
12. Changes to this document
We may update this document, particularly when there are changes to the service, technologies, suppliers, legislation or processing methods. We may notify you of significant changes by email, by a notice in Zoneo Partner Centre or by another appropriate method. The current version is available on this page.
13. Contact
If you have questions about personal data protection in Zoneo Partner Centre, please contact us. Email for data protection: zoneo@zoneo.sk. Email for Zoneo Partner Centrum: zoneo@zoneo.sk. Controller: zoneo s. r. o..