Privacy Policy
Draft structure — legal review required before launch
This page outlines the sections typically required. It is not legal advice and must be completed with company-specific information and reviewed by a qualified lawyer or data-protection specialist for the jurisdictions you operate in (for Germany/EU: TMG/DDG §5, GDPR, TTDSG/TDDDG).
1. Controller
[Legal entity name, e.g. Nexevol Technologies GmbH], [Street and number], [Postal code] [City], [Country]. Email: contact@nexevol.com.
Data protection officer (if appointed): [name and contact, or remove]
2. Hosting and server logs
[Hosting provider, location of servers, data processing agreement, log contents and retention period, legal basis]
3. Contact form and email
When you submit the project inquiry form we process the details you provide (name, business email, company, optional website, project information) to respond to your inquiry.
- Legal basis: [e.g. Art. 6(1)(b) GDPR for pre-contractual steps; Art. 6(1)(f) GDPR otherwise]
- Processors: [email delivery provider, e.g. Resend; CRM or automation tool if a webhook is used]
- Retention: [retention period]
4. Spam protection
The form uses a hidden field, timing checks and rate limiting to block automated submissions. [If Cloudflare Turnstile is enabled: describe the provider, data processed, third-country transfer and legal basis.]
6. Fonts
Fonts are hosted on our own server. No connection to third-party font services is made.
7. Your rights
[Access, rectification, erasure, restriction, portability, objection, withdrawal of consent, right to lodge a complaint with a supervisory authority — including the competent authority]
8. Changes to this policy
[Wording on updates to this policy]