Privacy Policy

Privacy Policy

Privacy Policy

  1. Overview of Data Protection


General Information:
This document provides a clear overview of what happens to your personal data when you visit this website. Personal data includes any information that can personally identify you. For more detailed information, please refer to our full Privacy Policy below.


Data Collection on This Website:

  • The data controller is the website operator, whose contact details can be found in the section titled "Information about the responsible party".

  • Your data is collected either through your direct input (e.g., via contact forms) or automatically by our IT systems (e.g., browser, OS, time of access).

  • Data is used to ensure the error-free operation of the website and to analyze user behavior. If contracts are initiated or completed via the website, data is also used for that purpose.

  • You have rights concerning your data, including access, rectification, deletion, restriction of processing, and the right to lodge complaints with a supervisory authority.

  • Tools for analysis may be used to evaluate your browsing behavior.


  1. Hosting


We are hosting the content of our website at the following provider:


Mittwald


The provider is the Mittwald CM Service GmbH & Co. KG, Königsberger Straße 4-6, 32339 Espelkamp, Germany (hereinafter referred to as Mittwald).

For details, please view the data privacy policy of Mittwald: https://www.mittwald.de/datenschutz.

We use Mittwald on the basis of Art. 6(1)(f) GDPR. We have a legitimate interest in the most reliable depiction of our website possible. If appropriate consent has been obtained, the processing is carried out exclusively on the basis of Art. 6(1)(a) GDPR and § 25 (1) TDDDG, insofar the consent includes the storage of cookies or the access to information in the user’s end device (e.g., device fingerprinting) within the meaning of the TDDDG. This consent can be revoked at any time.


Data processing:

We have concluded a data processing agreement (DPA) for the use of the above-mentioned service. This is a contract mandated by data privacy laws that guarantees that they process personal data of our website visitors only based on our instructions and in compliance with the GDPR.


  1. General and Mandatory Information


Data Protection:
We treat your personal data confidentially and in accordance with legal data protection regulations.
Data transmission over the Internet (e.g., email) may be subject to security risks.

Controller Information:
PLSTR DIGITAL GmbH
Paul Stro
Schanzenstraße 28
68159 Mannheim
Phone: +49 621 490 794 40
Email: info@plstr.digital

The controller determines how and why personal data is processed.

Storage Duration:
Data is stored only as long as necessary. If the purpose no longer applies or upon your request, it will be deleted, subject to legal retention periods.

Legal Basis:
Depending on the case, data is processed based on:

  • Your consent (Art. 6(1)(a) GDPR)

  • Contract performance (Art. 6(1)(b) GDPR)

  • Legal obligations (Art. 6(1)(c) GDPR)

  • Legitimate interests (Art. 6(1)(f) GDPR)


Data Protection Officer:
Paul Stro
Schanzenstraße 28
68159 Mannheim


Phone: +49 621 490 794 40
Email: info@plstr.digital


Recipients of Personal Data:


Data may be shared with external service providers if legally required or based on legitimate interest. Data Processing Agreements ensure GDPR compliance.


Your Rights:

  • Revoke consent at any time.

  • Object to processing based on Art. 6(1)(e/f) GDPR, including profiling.

  • Lodge complaints with a supervisory authority.

  • Request data portability.

  • Access, correct, or delete your data.

  • Request processing restrictions under certain conditions.


Security:
We use SSL/TLS encryption for secure data transmission. Look for "https://" and the lock icon in your browser.

Unsolicited Emails:
We object to the use of contact data for unsolicited advertising. Legal steps may be taken in case of spam.



  1. Data Collection on the Website


Cookies:
Cookies are small text files that store information on your device. They may be session-based or permanent and can be first-party or third-party. Cookies ensure functionality, analyze user behavior, and enable advertising.
They are stored based on Art. 6(1)(f) GDPR or Art. 6(1)(a) GDPR and §25(1) TDDDG if consented.


Contact Form:
Data submitted via contact form is stored and used to respond to inquiries. Based on Art. 6(1)(b/f/a) GDPR.


Email, Phone, Fax:
Inquiries via these channels are stored and used to process requests. Based on Art. 6(1)(b/f/a) GDPR.


Google Calendar:
Used for scheduling appointments. Provider: Google Ireland Limited. Data is stored on Google's servers. Based on Art. 6(1)(f/a) GDPR. Data transfer to the US is secured by Standard Contractual Clauses and the EU-US Data Privacy Framework.


  1. Analysis Tools and Advertising


Google Tag Manager:
Used to manage tags and tools on the website. Does not store cookies. Based on Art. 6(1)(f/a) GDPR.

Google Analytics:
Analyzes user behavior. Data may be transferred to the US. Based on Art. 6(1)(a) GDPR and §25(1) TDDDG. Includes IP anonymization. Browser plugin available to opt out.

Google Ads / AdSense / Remarketing / Conversion Tracking:
Used for targeted advertising. Data may be transferred to the US. Based on Art. 6(1)(a) GDPR and §25(1) TDDDG.


  1. Newsletter


Newsletter Signup:
Email address is required to subscribe. Data is used only for newsletter delivery and analytics.

Brevo (formerly Sendinblue):
Used for sending and analyzing newsletters. Data is stored in Germany. Based on Art. 6(1)(a) GDPR.
You can unsubscribe anytime. A blacklist may be used to prevent future emails if requested.


  1. Plug-ins and Tools


Google Fonts:
Fonts are loaded from Google servers. Based on Art. 6(1)(f/a) GDPR and §25(1) TDDDG.


  1. Online Conferencing Tools


We use online conferencing tools (e.g., Google Meet) for communication. These tools collect metadata, contact information, and content shared during the meeting.


Legal basis:

Art. 6(1)(b/f) GDPR or Art. 6(1)(a) GDPR if consented.


Data from our systems is deleted upon request or when no longer needed. We have no control over how long tool providers store data.


Google Meet:
Provider: Google Ireland Limited. See Google’s privacy policy for details.

All listed Google services comply with the EU-US Data Privacy Framework.



For more information on any specific section or tool, please refer to the full Privacy Policy or contact us directly.