Last updated: 18. 4. 2026

This Privacy Policy describes how Tutorial Stack (“we”, “us”, “our”) collects, uses, and protects personal information when you visit tutorialstack.io (the “Website”). We are committed to handling your data transparently and in compliance with the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable privacy laws.

By using the Website, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Website.

1. Who we are

The Website is owned and operated by Stepan Chysky, a sole trader registered in the Czech Republic (IČO: 19618735), with a registered address at Kupkova 774/6, Prague, Czech Republic. For the purposes of GDPR, we are the data controller for the personal information collected through the Website.

For any privacy-related inquiries, contact us at info@tutorialstack.io.

2. Information we collect

2.1 Information you provide to us

We collect personal information you voluntarily provide when you:

  • Submit a contact form: name, email address, and the contents of your message.
  • Subscribe to our newsletter: email address and optionally a first name.
  • Communicate with us directly via email: your email address and any information you choose to include.

2.2 Information collected automatically

When you visit the Website, we (and our service providers) automatically collect certain information, including:

  • Log data: your IP address, browser type and version, operating system, referring URL, pages visited, and timestamps. This is collected by our hosting provider and security plugin for operational and security purposes.
  • Analytics data: anonymized information about how you interact with the Website, including pages viewed, time on page, and general location (country/region). Collected via Google Analytics 4, only if you consent to analytics cookies.
  • Cookies and similar technologies: see Section 4 below.

3. How we use your information

We process your personal information for the following purposes and under the following legal bases (GDPR Art. 6):

  • To respond to your inquiries submitted through our contact form or by email (legal basis: legitimate interest or taking steps at your request).
  • To send you our newsletter and occasional updates about deals and new content, if you have subscribed (legal basis: consent — you can unsubscribe at any time using the link in any newsletter email).
  • To measure and improve our content through aggregated analytics (legal basis: consent for analytics cookies).
  • To protect the Website from spam, abuse, unauthorized access, and security threats (legal basis: legitimate interest).
  • To track affiliate link referrals so that merchants can attribute qualifying purchases to us and pay applicable commissions (legal basis: consent for affiliate/marketing cookies). See Section 6.
  • To comply with legal obligations, including tax and accounting laws applicable in the Czech Republic (legal basis: legal obligation).

We do not use automated decision-making or profiling that produces legal or similarly significant effects on you.

4. Cookies and tracking technologies

The Website uses cookies and similar technologies. Cookies are small text files stored on your device that help websites function, remember preferences, and measure performance.

We categorize cookies as follows:

  • Functional (always active): required for the Website to operate, including session cookies and cookie-consent preferences.
  • Analytics (consent-based): used to measure site usage and improve content.
  • Marketing / Affiliate (consent-based): set by affiliate networks and merchant partners when you click affiliate links on our Website, so that potential purchases can be attributed to us.

For a complete and up-to-date list of the specific cookies used, their durations, and their purposes, please see our Cookie Policy. You can manage your cookie preferences at any time using the cookie settings link in the footer of the Website.

5. Who we share your data with

We do not sell your personal information. We share it only with the following categories of recipients, as necessary to operate the Website and deliver the services described above.

5.1 Service providers (data processors)

We use the following third-party services that process personal data on our behalf under written data processing agreements:

  • Hostinger International Ltd. (Cyprus, EU) — website hosting and server log processing.
  • Google LLC / Google Ireland Ltd. — Google Analytics 4 (site usage analytics), Google Search Console (search performance), and Google Site Kit integration.
  • Microsoft Corporation — Bing Webmaster Tools (search performance data).
  • Defiant, Inc. (Wordfence) — security, firewall, and malware scanning services.
  • LiteSpeed Technologies, Inc. / QUIC.cloud, Inc. — page caching and content delivery network (CDN) services.
  • Automattic, Inc. — if Gravatar profile images are used on the Website.

5.2 Affiliate networks and merchant partners

When you click an affiliate link on the Website (typically links starting with tutorialstack.io/go/), you are redirected to a third-party merchant or affiliate network. These third parties may set their own cookies on your device to track whether you make a purchase, enabling us to earn a commission. We do not control, and are not responsible for, the privacy practices of these third parties. Their own privacy policies govern any data they collect.

Third parties we currently have affiliate relationships with include (but are not limited to):

  • Impact Tech, Inc. (affiliate tracking network)
  • Shopify Inc.
  • Semrush Holdings, Inc.
  • Nord Security (NordVPN)
  • Surfshark B.V.
  • Hostinger International Ltd.
  • Namecheap, Inc.
  • WhaleCo Inc. (Temu)

We recommend reviewing the privacy policies of any third-party merchant you visit via an affiliate link.

5.3 Embedded content from other websites

Articles on this Website may include embedded video content from YouTube (operated by Google LLC). Embedded content behaves exactly as if you have visited the source website. These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that content, particularly if you are logged into an account with that service.

5.4 Legal disclosures

We may disclose your personal information if required to do so by law, court order, or valid request from a public authority (such as a tax or law enforcement authority), or when necessary to protect our rights, property, or safety, or that of others.

6. Affiliate links — additional disclosure

Tutorial Stack participates in affiliate marketing programs. When you click certain links on the Website and subsequently make a purchase, we may earn a commission at no additional cost to you. Affiliate relationships never influence our editorial recommendations. For full affiliate disclosure information, please see our Affiliate Disclosure.

7. International data transfers

Some of the service providers listed above are located outside the European Economic Area (EEA), primarily in the United States. When we transfer personal data outside the EEA, we rely on appropriate safeguards as required by GDPR, including:

  • Standard Contractual Clauses (SCCs) approved by the European Commission;
  • The EU–U.S. Data Privacy Framework, where the recipient is certified under it;
  • Additional supplementary measures where required.

You can request a copy of the specific safeguards applied by contacting us at info@tutorialstack.io.

8. How long we retain your data

We retain personal information only for as long as necessary for the purposes described in this Policy, or as required by law:

  • Contact form submissions: up to 12 months after your inquiry is resolved, then deleted.
  • Newsletter subscriptions: until you unsubscribe, after which your email is removed from active lists within 30 days.
  • Analytics data: 14 months (Google Analytics default retention).
  • Security and server logs: up to 30 days, then rotated.
  • Cookie consent records: up to 12 months from the date consent was given or refused.
  • Tax and accounting records: as required by Czech law (typically 5–10 years).

9. Your rights under GDPR

If you are located in the European Economic Area, United Kingdom, or Switzerland, you have the following rights regarding your personal data:

  • Right of access (Art. 15) — to obtain a copy of the personal data we hold about you.
  • Right to rectification (Art. 16) — to have inaccurate or incomplete data corrected.
  • Right to erasure / “right to be forgotten” (Art. 17) — to have your personal data deleted, subject to legal exceptions.
  • Right to restriction of processing (Art. 18).
  • Right to data portability (Art. 20) — to receive your data in a structured, commonly used format.
  • Right to object (Art. 21) — to processing based on legitimate interests.
  • Right to withdraw consent (Art. 7) — at any time, without affecting the lawfulness of prior processing.

To exercise any of these rights, contact us at info@tutorialstack.io. We will respond within one month as required by GDPR.

You also have the right to lodge a complaint with a supervisory authority. For residents of the Czech Republic, this is the Office for Personal Data Protection (Úřad pro ochranu osobních údajů):

  • Website: www.uoou.cz
  • Address: Pplk. Sochora 27, 170 00 Praha 7, Czech Republic

Residents of other EEA countries may contact their national data protection authority.

10. California privacy rights (CCPA)

If you are a California resident, the California Consumer Privacy Act (CCPA), as amended by the CPRA, provides you with additional rights:

  • Right to know what personal information we collect, use, and share about you.
  • Right to delete personal information we have collected from you.
  • Right to correct inaccurate personal information.
  • Right to opt out of “sale” or “sharing” of personal information. We do not sell personal information. However, some advertising and affiliate cookies may qualify as “sharing” under CCPA; you can opt out by rejecting marketing/affiliate cookies via the cookie banner or by enabling Global Privacy Control (GPC) in your browser, which we honor automatically.
  • Right to non-discrimination for exercising your privacy rights.

To exercise these rights, contact us at info@tutorialstack.io.

11. Children’s privacy

The Website is not directed to children under the age of 16, and we do not knowingly collect personal information from children. If you believe that a child has provided us with personal information, please contact us at info@tutorialstack.io and we will take steps to delete that information promptly.

12. Data security

We implement reasonable technical and organizational measures to protect personal information against unauthorized access, disclosure, alteration, or destruction. These include:

  • HTTPS/TLS encryption across the entire Website.
  • A web application firewall (Wordfence) and brute-force protection.
  • Regular software updates and security scans.
  • Access controls and principle of least privilege for administrative accounts.

However, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.

13. Changes to this Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, services, or applicable law. When we make material changes, we will update the “Last updated” date at the top of this page and, where appropriate, provide additional notice (such as a banner on the Website or an email notification to subscribers). We encourage you to review this Policy periodically.

14. Contact us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact us:

  • Email: info@tutorialstack.io
  • Postal address: Stepan Chysky, Kupkova 774/6, Prague, Czech Republic