BPO AUDIT TAX privacy statement


I. The purpose of the policies

In this statement, BPO Gazdasági Fejlesztő és Tanácsadó Kft., BPO-AUDIT Könyvvizsgáló és Vezetési Tanácsadó Kft., and BPO-TAX Adó és Könyvviteli Szolgáltató Kft.: 1146 Budapest Zichy Géza utca 5. (hereinafter referred to as BPO) set out the conditions for the protection of user data collected through the site http://www.mgi-bpo.hu they jointly operate.

In developing these rules, BPO in particular took into account the following legislation:

  • Act CXII of 2011 on Informational Self-determination and Freedom of Information
  • Act CXIX of 1995  on the Use of Name and Address Information Serving the Purposes of Research and Direct Marketing
  • Act  VI of 1998  Convention for the Protection of Individuals With Regard to Automatic Processing pf Personal Data
  • Act XLVIII of 2008 on the Basic Requirements and Certain Restrictions of Commercial  Advertising Activities

II. The privacy registration ID of BPO:


III. The scope of personal data managed

3.1 Newsletter registration
On the basis of the user’s decision, the Company manages the following information during the management of data: name and email address provided by the user when registering. The registration and data management takes place through the MailChimp® system.

3.2 Call for proposal
Personal information essential for using the Company’s services are used with the consent of the data subjects and only for a specific purpose.

3.3 Job application
Personal information essential for applying for a job at BPO are used with the consent of and for a length of time chosen by the data subjects, and only for a specific purpose. For details, see >>

IV. The scope of other data managed by the Company

In order to provide customized services, the Company places small data packages (so-called cookies) on the user’s computer. The purpose of cookies is to enhance the highest possible level of quality of the website to enhance user experience. Users can delete cookies from their computer or set their browser to disable the use of cookies. By disabling the use of cookies, users acknowledge that without cookies the site will not be fully functional.
For details, see >>

V. The legal basis, purpose and method of data management

Data management will be based on a voluntary statement of the users of the Company subject to appropriate information, which contains the users’ explicit consent to the use of their personal data they provided or which were generated of them during the use of the site.

The purpose of data management is to provide the services of BPO available through the website, recruitment – job application, compilation of statistics, data collection for marketing purposes, the technical development of the IT system and the protection of users’ rights.
The data controller shall not use the personal information provided for purposes other than those written in these points. Transmission of data between data controllers set out in this Policy may be performed without the users’ specific consent. Unless otherwise specified in a law with binding force, disclosing personal data to third parties or authorities is possible only on the basis of statutory authority measures or with the users’ explicit prior consent.

The data controller will not check the personal information provided to them. The person who provided the data is exclusively responsible for the adequacy of that data.

VI. Data protection directives adopted by the Company

Personal information essential for using the Company’s services are used with the consent of the data subjects and only for a specific purpose.

The Company as data controller undertakes to manage data acquired in accordance with the provisions of Act CXII of 2011, regulations referred to above in point 5.1 and the data protection principles laid down in this Policy and not to disclose them to third parties other than the data controllers specified in this Policy.

Users shall be informed about the purpose of data management and who will manage and process the data acquired. Information about data management is provided by the law providing for the existing data management – collection of data through transmission or interconnection.

In all cases when the Company intends to use the data provided for purposes other than the original purpose of data collection, the Company shall inform the users thereof, acquire the users’ prior explicit consent to do so and provide an opportunity for the users to prohibit it.

During the collection, recording and management of data, the Company as data controller shall always comply with the restrictions imposed by law. 

The Company undertakes to ensure the security of data and take all technical and organizational measures and establish procedural rules that ensure that the data recorded, stored and managed be protected and prevent their destruction, unauthorized use and alteration. The Company also undertakes to draw the attention of any third party to whom the Company forwarded or handed over the data acquired to fulfill their obligation in this regard.

VII. Duration of data management

The management of personal data provided by the users is maintained as long as the users unsubscribe from the service with the given user name and at the same time request the deletion of their data. In this case, data are deleted at all the data controllers specified in this Policy.

VIII. Providing for personal data

You can unsubscribe from the Company’s newsletters by clicking on the unsubscribe link included in the newsletters.

Following the completion of claims for the deletion or modification of personal data, the data previously deleted can no longer be restored.

Users may request information about the management of their personal data from the Company as data controller at any time in writing sending a registered or certified mail to the data controller’s address or an email to info@mgi-bpo.hu. The Company will consider the request for information sent in a letter to be authentic if the user is clearly identifiable based on the request sent.  The data controller considers the request for information sent by email to be authentic only if it was sent from the user’s registered email address. The request for information may include the user’s data managed by the data controller, their source, the purpose and duration of data management, the name and address of the possible data controllers, the activities related to data management and who and for what reason receive or received the user’s personal data if they are forwarded.

The data controller is oblied to respond to questions related to data management within 15 working days of receipt. In case of emails, the first working day following the sending of the email is considered to be the date of receipt.

IX. External service providers

In the provision of certain services, the Company may cooperate with external service providers to facilitate registration (e.g. Google Inc., hereinafter referred to as “External Service Provider”). In the system of External Service Providers the External Service Providers’ own privacy policies prevail in respect of the data provided to them.

In respect of content made available in the framework of certain services and shared on the various social networking sites the External Service Provider which made the sharing of the content available is considered to be the data controller of the personal data; their activities are governed by their own conditions of use and privacy policy. An example for such an external intermediary service is Google.

In respect of content made available in the framework of certain services and shared on the various social networking sites, the Company may transmit certain data provided by the user to the External Service Provider in relation to the operation of a service, but the External Service Provider may only use the data transmitted for the purposes specified in this Policy.

X. Possibility of transmitting data

If the Company, wholly or in part, transfers the operation or utilization of delivery of content and/or hosting of their sites to third parties, the data managed by them can be completely transmitted to these third parties for further management without asking for specific consent. This data transmission may not place the user in a less favorable position than the present rules for data management indicated in this Policy in force at any time.

XI. Amending the Privacy Policy

The Company reserves the right to amend this Privacy Policy at any time by a unilateral decision.

XII. Means of enforcement of rights

If you have any questions or comments related to data management or experience that your rights have been infringed, contact the data controller’s staff via one of the following contact details:
Address: 1146 Budapest, Zichy Géza u. 5.
Email: info@mgi-bpo.hu
Phone number +36 1 422 1339

You may enforce your rights on the basis of  Act CXII of 2011 and Act V of 2013 (Civil Code) before a court, and request the assistance of the National Authority for Data Protection and Freedom of Information in any question relating to personal data  (address: 1125 Budapest Szilágyi Erzsébet fasor 22/C; mailing address: 1530 Budapest, Pf. 5.).

We use HTTP cookies on our sites for better functioning. In our new privacy information, you can check how we protect your data. Please read our Cookie Policy