Privacy Policy

1. Data Protection
at a Glance

General Information

The following
information provides a simple overview of what happens to your personal data
when you visit this website. Personal data is any data by which you can be
personally identified. Detailed information on data protection can be found in
the privacy policy set out below.

Data Collection on
This Website

Who is responsible
for data collection on this website?

Data processing on this website is carried out by the website operator. You can
find the operator’s contact details in the section “Information on the
Responsible Party” in this privacy policy.

How do we collect
your data?

Your data is collected in part when you provide it to us. This may, for
example, include data you enter into a contact form.

Other data is
collected automatically or after your consent when you visit the website by our
IT systems. This mainly includes technical data (e.g. internet browser,
operating system, or time of page access). This data is collected automatically
as soon as you enter this website.

What do we use your
data for?

Some of the data is collected to ensure error-free provision of the website.
Other data may be used to analyze your user behavior.

What rights do you
have regarding your data?

You have the right at any time to receive information free of charge about the
origin, recipient, and purpose of your stored personal data. You also have the
right to request correction or deletion of this data. If you have given consent
to data processing, you can revoke this consent at any time for the future. You
also have the right, under certain circumstances, to request restriction of the
processing of your personal data. Furthermore, you have the right to lodge a
complaint with the competent supervisory authority.

You may contact us at
any time if you have further questions about data protection.

 

2. Hosting

Host Europe

We host our website
with Host Europe. The provider is Host Europe GmbH, Hansestraße 111, 51149
Cologne, Germany (hereinafter “Host Europe”). When you visit our website, Host
Europe collects various log files including your IP addresses.

For details, please
refer to Host Europe’s privacy policy:
https://www.hosteurope.de/AGB/Datenschutzerklaerung/

The use of Host Europe
is based on Art. 6(1)(f) GDPR. We have a legitimate interest in the most
reliable presentation of our website. If consent has been requested, processing
is carried out exclusively on the basis of Art. 6(1)(a) GDPR and Section 25(1)
TTDSG, insofar as the consent includes the storage of cookies or access to
information on the user’s device (e.g. device fingerprinting). Consent can be revoked at any time.

 

3. General
Information and Mandatory Information

Data Protection

The operators of these
pages take the protection of your personal data very seriously. We treat your
personal data confidentially and in accordance with statutory data protection
regulations and this privacy policy.

When you use this
website, various personal data are collected. Personal data is data that can be
used to identify you personally. This privacy policy explains what data we
collect and what we use it for, as well as how and for what purpose this is
done.

Please note that data
transmission over the Internet (e.g. communication by email) may have security
vulnerabilities. Complete protection of data against access by third parties is
not possible.

 

Information on the
Responsible Party

The party responsible
for data processing on this website is:

Augin Gabriel
Dr.-Gerlich-Straße 14
86356 Neusäß
Germany

Phone: +49 151
17889700
Email: augin.gabriel@mailuxo.io

The responsible party
is the natural or legal person who alone or jointly with others determines the
purposes and means of processing personal data (e.g. names, email addresses,
etc.).

 

Storage Period

Unless a more specific
storage period has been stated within this privacy policy, your personal data
will remain with us until the purpose for data processing no longer applies. If
you assert a legitimate request for deletion or revoke your consent to data
processing, your data will be deleted unless we have other legally permissible
reasons for storing your personal data (e.g. tax or commercial retention
periods). In the latter case, deletion will take place after these reasons
cease to apply.

 

Legal Basis for
Data Processing

If you have given your
consent, we process your personal data on the basis of Art. 6(1)(a) GDPR or
Art. 9(2)(a) GDPR if special categories of data are processed. In the case of
explicit consent to the transfer of personal data to third countries,
processing is also carried out on the basis of Art. 49(1)(a) GDPR.

If you have consented
to the storage of cookies or access to information on your device, processing
is also based on Section 25(1) TTDSG. Consent can be revoked at any time.

If your data is
required for contract fulfillment or pre-contractual measures, we process your
data on the basis of Art. 6(1)(b) GDPR. If processing is necessary to fulfill a
legal obligation, it is carried out on the basis of Art. 6(1)(c) GDPR.
Processing may also be based on our legitimate interest pursuant to Art.
6(1)(f) GDPR.

 

Data Transfers to
the USA and Other Third Countries

We use tools from
companies based in the USA or other countries that are not considered secure
under data protection law. If these tools are active, your personal data may be
transferred to and processed in these countries.

Please note that data
protection levels in these countries may not be comparable to those in the EU.
For example, US companies may be required to disclose personal data to security
authorities without you being able to take legal action against this. We have no influence over these processing activities.

 

Withdrawal of
Consent

Many data processing
operations are only possible with your explicit consent. You can withdraw your
consent at any time. The legality of data processing carried out before the
withdrawal remains unaffected.

 

Right to Object
(Art. 21 GDPR)

If data processing is
based on Art. 6(1)(e) or (f) GDPR, you have the right to object at any time for
reasons arising from your particular situation. This also applies to profiling.

If your personal data
is processed for direct marketing purposes, you have the right to object at any
time. After objection, your data will no longer be used for direct marketing.

Right to Lodge a
Complaint

In case of violations
of the GDPR, you have the right to lodge a complaint with a supervisory
authority.

 

Right to Data
Portability

You have the right to
receive data that we process based on your consent or in fulfillment of a
contract in a commonly used, machine-readable format.

 

Access, Correction,
and Deletion

You have the right at
any time to obtain information about your stored personal data and to request
correction or deletion.

 

Right to
Restriction of Processing

You have the right to
request restriction of processing under certain conditions (accuracy disputes,
unlawful processing, legal claims, pending objection balancing).

 

4. Data Collection
on This Website

Cookies

Our website uses
“cookies.” Cookies are small text files and do not cause damage to your device.
They may be stored temporarily (session cookies) or permanently.

Cookies that are
necessary for website operation are stored based on Art. 6(1)(f) GDPR. If
consent is requested, processing is based on Art. 6(1)(a) GDPR and Section 25
TTDSG.

You can configure your
browser to control cookie usage. Disabling cookies may limit functionality.

 

Consent Tool (Cookie
Notice & Compliance)

We use “Cookie Notice
& Compliance for GDPR” to obtain and document consent.

The tool is hosted
locally and stores a cookie for 1 month to track consent status.

Legal basis: Art.
6(1)(c) GDPR.

 

Contact by Email,
Phone, or Fax

If you contact us,
your data will be stored and processed to handle your request.

Legal basis:

  • Art. 6(1)(b) GDPR (contract/pre-contract)
  • Art. 6(1)(f) GDPR (legitimate interest)
  • Art. 6(1)(a) GDPR (consent, if applicable)

 

Calendly

We use Calendly
(Calendly LLC, USA) for scheduling.

Your data is used for
appointment management and stored on Calendly servers:
https://calendly.com/de/pages/privacy

Legal basis: Art.
6(1)(f) GDPR (legitimate interest in efficient scheduling)
or Art. 6(1)(a) GDPR (consent, if applicable)

Data transfers to the
USA are based on EU Standard Contractual Clauses:
https://calendly.com/pages/dpa

 

Data Processing
Agreement

We have concluded a
Data Processing Agreement (DPA) with the provider to ensure GDPR-compliant
processing.

Some images used on this website are licensed from Adobe Stock.