1. Who is the data controller
The data controller is Community Advice s.r.o., Jaurisova 4, Praha 4, 140 00, Czech Republic. For privacy questions, contact us at privacy@communityadvice.cz.
2. Data we collect
- Registrant & contact data: name, organisation (if any), postal address, email, and phone number for the registrant, administrative, technical and billing contacts.
- Domain & account data: the domain names you hold, registration/expiry dates, name servers, and account settings.
- Billing data: information needed to process payments and issue invoices (we do not store full card numbers; payments are handled by our payment processor).
- Technical data: IP address, browser/device information and logs generated when you use our services, for security and fraud prevention.
3. Why we use your data (legal bases)
- To provide the service (registration, renewal, transfer, support) — performance of a contract.
- To comply with ICANN policy and law (WHOIS/RDDS obligations, retention, abuse handling, law-enforcement requests) — legal obligation and legitimate interests.
- To secure our systems and prevent fraud and abuse — legitimate interests.
- To communicate service notices, including ICANN-required renewal reminders — legal obligation / contract.
4. WHOIS / RDDS publication
As an ICANN-accredited registrar we must transmit certain registration data to the relevant registry and registration data directory services (RDDS, historically "WHOIS"). In line with ICANN's Registration Data Policy and the GDPR, personal data of natural persons is generally redacted from public WHOIS/RDDS output, while a means to contact the registrant (e.g. a web form or anonymised email) is provided. Non-personal and technical fields may still be published. Access to non-public data may be granted to parties with a legitimate interest under applicable ICANN policy and law.
5. Who we share data with
- Registry operators for the TLDs you register, as required to create and maintain the registration.
- ICANN and escrow providers, to the extent required by the RAA (including data-escrow deposits).
- Service providers (payment processing, hosting, email) under appropriate data-processing agreements.
- Authorities and dispute providers where legally required, or to implement a UDRP/URS decision or court order.
We do not sell your personal data.
6. How long we keep it
We retain registration data for the life of the registration and, after a registration ends, for the periods required by the RAA and applicable law — under the RAA, registration records are generally retained for at least two (2) years following the expiry or termination of the registration. Billing records are kept as required by Czech accounting and tax law.
7. Your rights under the GDPR
Subject to legal limits (including our ICANN obligations), you have the right to:
- access the personal data we hold about you;
- rectify inaccurate data and complete incomplete data;
- erasure ("right to be forgotten"), where applicable;
- restrict or object to certain processing;
- data portability; and
- withdraw consent where processing is based on consent.
To exercise any right, contact privacy@communityadvice.cz. Note that some data must be retained or published to comply with ICANN policy.
8. Security
We apply appropriate technical and organisational measures to protect personal data, including access controls, encryption in transit, and logging. No system is perfectly secure, but we work to minimise risk and respond to incidents promptly.
9. Cookies
This website is a static informational site and uses only strictly necessary cookies (if any) required for its basic operation. We do not use advertising or cross-site tracking cookies on this site.
10. Contact & complaints
For any privacy question, contact privacy@communityadvice.cz. You also have the right to lodge a complaint with the Czech supervisory authority, the Úřad pro ochranu osobních údajů (uoou.cz), or your local EU data-protection authority.