For the visitors of the www.datamagic.hu website.
In effect from 16 September 2025
In fulfilment of its obligations under REGULATION (EU) 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (the “Regulation”), the Controller provides the following information.
This privacy notice provides information about the processing of personal data of visitors to the www.datamagic.hu website and of natural persons who contact the Controller through the website.
The processing of personal data of DataMagic Kft.'s contractual partners and employees is governed by a separate document.
This notice and its later amendments take effect upon publication.
The Controller does not have a data protection officer, but the staff member responsible for data protection matters can be contacted directly:
When planning and carrying out its data processing activities and performing individual processing operations, the Controller observes the following principles:
1. The fact of data collection, the scope of data processed and the purpose of processing:
By filling out the contact form on the website, you have the opportunity to request information or a quote regarding the services and products offered by DataMagic Kft.
| Scope of data processed | Purpose of processing | Duration of processing |
|---|---|---|
| Name | contact, quotation, provision of information, ensuring communication | for 6 months following the contact, quote or information request; if a contract is concluded after the contact based on the quote sent, then for 5 years and 6 months following the termination of the contract |
| E-mail address | ||
| Message | ||
| User IP address | ||
| Date of entry |
2. The scope of data subjects: Persons who contact DataMagic Kft. and request a quote or information.
3. Persons potentially authorised to access the data, recipients of the personal data: The personal data may be handled by the Controller's IT staff with admin rights; and may be accessed by the staff responsible for contact/information/quotation and, where a contracting phase is entered, the staff responsible for contracting, observing the above principles.
4. The source of the personal data: you provide the personal data.
5. Description of the data subjects' rights relating to processing:
6. The data subject can initiate access to, erasure or modification of the personal data, restriction of their processing, data portability and objection to processing in the following ways:
7. Legal basis for the processing: Article 6(1)(f) of the Regulation, the Controller's legitimate interest in selling its products and services and, to that end, providing information, quotations and keeping in contact.
8. Please note that
9. The Controller does not carry out profiling or automated decision-making with the data.
1. The fact of data collection, the scope of data processed and the purpose of processing:
You can apply for the open positions listed on the Careers page of the website and send your application materials to our Company by e-mail as set out in the job posting.
| Scope of personal data processed | Purpose of processing | Duration of processing |
|---|---|---|
| Surname, First name | indispensable for your identification | in the absence of withdrawal of the application, your data are erased on the day after the given position is filled; if you change your mind during the recruitment process and withdraw your application, your data are erased on the day of withdrawal |
| E-mail address | necessary for keeping in contact | |
| Mobile number | necessary for keeping in contact | |
| Qualification | necessary for evaluating your application | |
| Experience | necessary for evaluating your application | |
| Cover letter | necessary for assessing your personal skills and suitability for the role |
2. The scope of data subjects: Persons who contact DataMagic Kft. and apply for a job posting.
3. Persons potentially authorised to access the data, recipients of the personal data: The personal data may be accessed only by the managing director of DataMagic Kft., the head of the department concerned by the application, the staff member responsible for HR tasks and the staff involved in the recruitment process, in accordance with the applicable rules. During recruitment, DataMagic Kft. may also use the following processors: job-advertising companies, e.g. Profession.hu
4. The source of the personal data: you provide the personal data.
5. Description of the data subjects' rights relating to processing:
6. The data subject can initiate access to, erasure or modification of the personal data, restriction of their processing, data portability and objection to processing in the following ways:
7. Legal basis for the processing: Article 6(1)(f) of the Regulation, the Controller's legitimate interest.
8. Please note that
9. The Controller does not carry out profiling or automated decision-making with the data.
1. The fact of processing, the scope, purpose and duration of the data processed: During visits to the website the Controller uses the cookies indicated in the table below:
| Cookie name | Purpose | Product | Duration | Domain |
|---|---|---|---|---|
| __eoi | Security | AdSense, AdSense for Search, Display & Video 360, Google Ad Manager, Google Ads | 6 months | from partner domain |
| NID | Security, Analytics, Functionality, Advertising | AdSense for Search, Google Ads | 6 months | google.com and local variants |
| DSID | Security, Functionality, Advertising | AdSense, Campaign Manager, Google Ad Manager, Google Analytics, Display & Video 360, Search Ads 360 | 2 weeks | doubleclick.net |
| test_cookie | Functionality | AdSense, Campaign Manager, Google Ad Manager, Google Analytics, Display & Video 360, Search Ads 360 | 15 minutes | doubleclick.net |
| __gads | Advertising | AdSense, Display & Video 360, Google Ad Manager, Google Ads | 13 months | from partner domain |
| GED_PLAYLIST_ACTIVITY | Advertising | AdSense, Google Ad Manager, YouTube | session | from partner domain |
| ACLK_DATA | Advertising | AdSense, Google Ad Manager, YouTube | 5 minutes | youtube.com |
| pm_sess | Security, Functionality | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 30 minutes | doubleclick.net, google.com |
| pm_sess_NNN | Security, Functionality | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 30 minutes | doubleclick.net, google.com |
| aboutads_sess_NNN | Security, Functionality | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 30 minutes | doubleclick.net, google.com |
| FPAU | Analytics, Advertising | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 90 days | from partner domain |
| ANID* | Advertising | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 13 months EEA UK / 24 months | google.com and local variants |
| AID* | Analytics, Advertising | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 13 months EEA UK / 540 days | google.com/ads, googleadservices.com |
| ar_debug | Analytics, Advertising | Campaign Manager, Display & Video 360, Google Ads, Google Analytics, Search Ads 360 | 90 days | googleadservices.com, google-analytics.com, doubleclick.net |
| IDE | Advertising | Campaign Manager, Display & Video 360, Google Ad Manager, Google Analytics, Search Ads 360 | 13 months EEA UK / 24 months | doubleclick.net |
| TAID* | Analytics, Advertising | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 14 days | google.com/ads, googleadservices.com |
| _gcl_au | Analytics, Advertising | Campaign Manager, Display & Video 360, Google Ads, Search Ads 360 | 90 days | from partner domain |
| RUL | Advertising | Display & Video 360, Google Ads | 12 months | doubleclick.net |
| FPGCLAW | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| FPGCLGB | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| FPGSID | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| _gcl_gb | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| _gac_gb_<wpid> | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| _gcl_aw | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| GCL_AW_P | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| _gcl_gs | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| _gcl_ag | Analytics, Advertising | Google Ads | 90 days | from partner domain |
| 1P_JAR* | Advertising | Google Ads | 30 days | google.com and local variants |
| Conversion | Advertising | Google Ads | 90 days | googleadservices.com/pagead/conversion/ |
| YSC | Security | Google Ads, YouTube | session | youtube.com |
| VISITOR_INFO1_LIVE | Security, Advertising | Google Ads, YouTube | 180 days | youtube.com |
| VISITOR_INFO1_LIVE__k | Security, Advertising | Google Ads, YouTube | 180 days | youtube.com |
| VISITOR_INFO1_LIVE__default | Security, Advertising | Google Ads, YouTube | 180 days | youtube.com |
| FPLC | Analytics | Google Analytics | 20 hours | from partner domain |
| _ga | Analytics | Google Analytics | 2 years | from partner domain |
| _gac_<wpid> | Advertising | Google Analytics | 90 days | from partner domain |
| _gid | Analytics | Google Analytics | 24 hours | from partner domain |
| _gat[_<custom name>] | Analytics | Google Analytics | 1 minute | from partner domain |
| __utma | Analytics | Google Analytics | 2 years | from partner domain |
| __utmb | Analytics | Google Analytics | 30 minutes | from partner domain |
| __utmc | Analytics | Google Analytics | session | from partner domain |
| __utmt | Analytics | Google Analytics | 10 minutes | from partner domain |
| __utmz | Analytics | Google Analytics | 6 months | from partner domain |
| __utmv | Analytics | Google Analytics | 2 years | from partner domain |
| AMP_TOKEN | Functionality | Google Analytics | from 30 seconds to 1 year | from partner domain |
| FPID | Analytics | Google Analytics | 2 years | from partner domain |
| GA_OPT_OUT | Functionality | Google Analytics | 10 Nov 2030 (all cookies) | from partner domain |
| _dc_gtm_<property-id> | Analytics | Google Analytics, Google Tag Manager | 1 minute | from partner domain |
| _gaexp | Analytics | Google Analytics, Optimize | Set by customer; max 93 days | from partner domain |
| _gaexp_rc | Analytics | Google Analytics, Optimize | 10 seconds | from partner domain |
| _opt_awcid | Analytics | Google Analytics, Optimize | 24 hours | from partner domain |
| _opt_awmid | Analytics | Google Analytics, Optimize | 24 hours | from partner domain |
| _opt_awgid | Analytics | Google Analytics, Optimize | 24 hours | from partner domain |
| _opt_awkid | Analytics | Google Analytics, Optimize | 24 hours | from partner domain |
| _opt_utmc | Analytics | Google Analytics, Optimize | 24 hours | from partner domain |
2. The scope of data subjects: All data subjects visiting the website.
3. Duration of processing, deadline for erasure of the data: the duration of processing is indicated in the table in subsection 1 of point 5.4.
4. Legal basis for the processing: The legal basis for managing essential and functional cookies is Article 6(1)(f) of the Regulation, the Controller's legitimate interest. For advertising (marketing) cookies, it is your consent under Article 6(1)(a) of the Regulation.
5. Data subjects can delete cookies in the Tools/Settings menu of their browsers, usually under the Privacy settings.
6. The Controller does not carry out profiling or automated decision-making with the data.
7. How can you check and disable cookies?
Every modern browser allows the cookie settings to be changed. Most browsers accept cookies automatically by default, but these settings can usually be changed so that the browser can prevent automatic acceptance and offer the choice each time of whether to allow cookies.
You can find out about the cookie settings of the most popular browsers at the following links:
The automatically updated declaration below lists the cookies actually used on the website by category (based on a Cookiebot scan). You can modify or withdraw your consent at any time by clicking the Cookie settings link.
You may lodge a complaint regarding the processing of your personal data with the competent supervisory authority:
Access to your data: you can request information on the purpose for which and the way in which the Controller processes your data.
Rectification of data: you can request at any time that the Controller complete or correct your data (e.g. in case of a typo) and update your new data in its records (e.g. in case of changed contact details).
Erasure of data: you can request at any time that the Controller erase the personal data concerning you without undue delay, where
Even in the above cases, the Controller does not erase the data if the processing is:
Restriction of processing: you can request restriction of processing if:
Please note that the Controller may lift the restriction and continue the processing if you expressly consent to this, or if it is necessary for the assertion of the Controller's legal claim or for an important public interest required by law — in such a case the Controller will inform you of this.
Objection to processing: you have this right only in the case of processing based on the legal basis of public interest or legitimate interest, or processing for direct marketing purposes. In this regard, please note that in the case of legitimate interest the Controller may process your personal data despite your objection if it demonstrates that it inevitably needs to, or that it is indispensable for the assertion of its legal claims — in such a case the Controller will inform you of this.
Right to data portability: you can request that the personal data concerning you that you provided to the Controller be received in a structured, commonly used, machine-readable electronic format, and you also have the right — at your express request — to have the Controller send these data directly to another controller on your behalf. You can request this only if the Controller processes the data in question by automated means.
The Controller is not obliged to release data that it created by derivation/inference from the data you provided (or as a result of your activity). Please note that the Controller can send your data directly to another controller on your behalf only if this is technically feasible in the specific case.
Before fulfilling the data subject's request, the Controller may request additional data in order to identify the data subject.
The Controller responds to data subjects' requests relating to data processing without undue delay, but no later than within one month, and where it does not comply with any request of the data subject, it must give reasons. Where necessary, taking into account the complexity and number of requests, the above deadline may be extended by a further two months. The Controller informs the data subject of any such extension within one month of receipt of the request, indicating the reasons for the delay.
If the data subject submitted the request electronically, the Controller provides the information electronically where possible, unless the data subject requests otherwise. If the Controller does not take action on the data subject's request, it informs the data subject without delay, but no later than within one month of receipt of the request, of the reasons for not taking action.
The Controller undertakes to ensure the security of the personal data it processes. Taking into account the state of the art and the costs of implementation, as well as the nature, scope, context and purposes of processing and the risk of varying likelihood and severity for the rights and freedoms of natural persons, it takes the technical and organisational measures and establishes the procedural rules that ensure that the recorded, stored and processed data are protected, and prevents their destruction, unauthorised use and unauthorised alteration.
The Controller ensures that unauthorised persons cannot access, disclose, transmit, modify or delete the processed data. The processed data may be accessed only by the Controller, its employees and the processor(s) engaged by it, according to authorisation levels, and the Controller does not transfer them to any third party not authorised to access the data. The Controller's employees may access personal data assigned to defined job roles, in a defined manner, according to authorisation levels. Within its organisation the Controller has introduced a data protection policy and applies strict data protection rules.
To ensure the security of its IT systems, the Controller protects them with a firewall and, to prevent external and internal data loss, uses antivirus and virus-removal software and also applies physical protection. The Controller has established different access and confidentiality levels for the data, and the access rights associated with individual employees have been set accordingly, so that individual data are accessible only to authorised persons.
In effect from 16 September 2025