Privacy policy
As of July 2026
Protecting your personal data is important to us. We process your data exclusively on the basis of the applicable legal provisions (General Data Protection Regulation – GDPR, German Federal Data Protection Act – BDSG, German Telecommunications Digital Services Data Protection Act – TDDDG). This privacy policy explains the most important aspects of data processing in connection with this website.
1. Controller
The controller within the meaning of the GDPR is:
Johann Friesen
Almeschlag 4
33154 Salzkotten
Germany
Email: software [at] johannfriesen [dot] com
2. Accessing the website and server log files
When you access our website, your browser automatically sends information to our website server, where it is temporarily stored in server log files. This generally includes the IP address of the requesting device, date and time of access, name and URL of the requested file, amount of data transferred, confirmation of successful retrieval, browser type and version, operating system, and the previously visited page (referrer).
The legal basis for this processing is our legitimate interest in providing a smooth connection, convenient use, and the stability and security of the website (Art. 6(1)(f) GDPR). The log files are deleted as soon as they are no longer needed for the purpose for which they were collected.
3. Hosting
This website is hosted on a virtual server (V-Server) by netcup GmbH, Daimlerstraße 25, 76185 Karlsruhe, Germany. netcup processes the data on our behalf to provide our online service securely and efficiently. This includes data typically generated when operating a website, especially the server log files described in section 2. The servers are located in a data center in Nuremberg, Germany.
The legal basis is our legitimate interest in providing our online service securely and efficiently (Art. 6(1)(f) GDPR). We have entered into a data processing agreement with netcup pursuant to Art. 28 GDPR.
4. Cookies
This website uses only one technically necessary cookie to store your preferred language (tenant_language). This cookie is strictly necessary to provide the function you expressly requested, so consent is not required (§ 25(2)(2) TDDDG, Art. 6(1)(f) GDPR).
We use no analytics, tracking, or marketing cookies and integrate no external advertising or analytics services.
5. Waitlist / pre-launch registration
When you join our waitlist, we process the data you provide: your name, email address, and, if provided, your preferred language. We use this data solely to add you to the waitlist and notify you when the service launches.
The legal basis is the consent you give by submitting the form (Art. 6(1)(a) GDPR). You may withdraw your consent at any time with effect for the future by sending a short message to the email address above. The lawfulness of processing carried out before the withdrawal remains unaffected.
The data is stored in a database on our hosting infrastructure. To send the launch notification, we use the email service provider named in section 7. We do not disclose your data to other third parties. We store your data until the service launches or until you withdraw your consent, and then delete it unless statutory retention obligations apply.
6. Contact by email
If you contact us by email, we process the information you provide, including your email address and the information contained in your message, to handle your request. The legal basis is our legitimate interest in responding to your request (Art. 6(1)(f) GDPR) or, if your request concerns entering into a contract, Art. 6(1)(b) GDPR. We delete the data as soon as it is no longer needed for the purpose for which it was collected and no statutory retention obligations apply.
7. Sending email
We use the Resend service provided by Plus Five Five, Inc., 2261 Market Street #5039, San Francisco, CA 94114, USA ("Resend") to send emails, particularly confirmation and onboarding emails during registration and the waitlist launch notification. On our behalf, Resend processes the recipient's email address and the content of each email, which may include a name and links, to ensure reliable delivery. We use no open or click tracking.
The legal basis is our legitimate interest in reliable and secure email delivery (Art. 6(1)(f) GDPR). Where delivery is based on consent you have given, as with the waitlist, the legal basis is Art. 6(1)(a) GDPR. We have entered into a data processing agreement with Resend pursuant to Art. 28 GDPR.
Resend processes the data in the USA. Plus Five Five, Inc. is certified under the EU-U.S. Data Privacy Framework, for which the European Commission has adopted an adequacy decision pursuant to Art. 45 GDPR. We have also agreed the European Commission's Standard Contractual Clauses with Resend pursuant to Art. 46(2)(c) GDPR. More information is available in Resend's privacy policy (resend.com/legal/privacy-policy) and list of subprocessors (resend.com/legal/subprocessors).
8. Fonts
For consistent font rendering, this website uses fonts served locally from our server. When you use this website, it makes no connection to third-party servers, especially Google servers.
9. Your rights
You have the following rights regarding your personal data:
- Right of access (Art. 15 GDPR)
- Right to rectification (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to object to processing (Art. 21 GDPR)
- Right to withdraw consent with effect for the future (Art. 7(3) GDPR)
To exercise your rights, an informal message to the email address above is sufficient.
10. Right to lodge a complaint with a supervisory authority
Without prejudice to any other administrative or judicial remedy, you have the right to lodge a complaint with a data protection supervisory authority if you believe that the processing of your personal data infringes the GDPR (Art. 77 GDPR). Our competent supervisory authority is:
Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen (LDI NRW)
Kavalleriestraße 2–4
40213 Düsseldorf
11. No automated decision-making
No automated decision-making, including profiling under Art. 22 GDPR, takes place.
12. Data security
During website visits, we use the standard TLS protocol (SSL encryption) with the highest level of encryption supported by your browser. You can tell whether an individual page of our website is transmitted in encrypted form by the key or lock symbol in your browser's status bar.
13. Validity and changes to this privacy policy
This privacy policy is currently valid. Further development of our website or changes to legal or regulatory requirements may make it necessary to amend this privacy policy. The latest version is always available on this page.