Navigated to LoopSuccess München - Webdesign, Local SEO & KI Automatisierung | Volles Eigentum
HomePrivacy

GDPR-compliant

Privacy Policy

Last updated: January 2025

01

1. Data Controller

02

2. Collection and Processing of Personal Data

We collect and process personal data only in accordance with legal regulations. The following data is collected when using our contact form:

Full name

Email address (business)

Phone number

Website

Company name

Problem description

Urgency level

IP address (for legal security)

Consent timestamp

03

3. Purpose of Data Processing

The processing of your personal data serves the following purposes:

Processing your inquiry through our contact form

Communication regarding our consulting services

Initial consultation and quote preparation

Legal security and proof of consent

Processing is based on your consent according to Art. 6 para. 1 lit. a GDPR. You can revoke this consent at any time with effect for the future.

05

5. Storage Period

Your data will only be stored as long as necessary for the fulfillment of the purposes for which it was collected, but no longer than 3 years after the last contact.

06

6. Your Rights

You have the following rights regarding your personal data:

Right of access

You can request information about stored data concerning you

Right of rectification

You can request correction of incorrect data

Right to erasure

You can request deletion of your data

Right to restriction of processing

You can request restriction of processing

Right to data portability

You can receive your data in a structured format

Right to object

You can object to the processing

Right to withdraw consent

You can withdraw your consent at any time

07

7. Data Security

We use modern technical and organizational measures to protect your data from loss, manipulation and unauthorized access. Data transmission is encrypted.

08

8. Third Parties

Zur Erbringung unserer Dienstleistungen setzen wir folgende Drittanbieter ein, mit denen Auftragsverarbeitungsverträge (AVV) gemäß Art. 28 DSGVO abgeschlossen wurden:

We use the following third-party services:

Supabase (Hosting and Data Storage)

ProviderSupabase Inc., San Francisco, USA
PurposeSecure storage and processing of form data and tracking data
Legal BasisArt. 6(1)(f) GDPR (legitimate interest)
Third Country TransferBased on Standard Contractual Clauses

Google Analytics

ProviderGoogle Ireland Limited, Dublin, Ireland
PurposeAnonymous analysis of user behavior to improve the website
Legal BasisArt. 6(1)(a) GDPR (consent)
09

9. Website Analytics and Cookies

This website uses cookies with your explicit consent. On your first visit, you can set your cookie preferences.

Cookie Categories:

    Your Rights:

    • You can change your cookie settings at any time
    • Your choice is stored for 12 months
    • Without analytics cookies, no behavior tracking occurs

    Cookie Details:

    • Name: cookie_consent
    • Purpose: Storing your cookie preferences
    • Duration: 12 months
    • Type: Local Storage (localStorage)
    10

    Google Analytics 4 & Meta Pixel

    Where you have given your express consent, we use Google Analytics 4 and the Meta Pixel. The legal basis for setting the cookies is your consent, which you can revoke at any time via our cookie settings. Data collected by these tools may be transferred to servers in the USA. The providers are certified under the EU-US Data Privacy Framework, ensuring an adequate level of data protection.

    11

    Automation via Make.com

    To optimize and automate internal processes, we use the service Make.com. Data processing for European users primarily takes place on servers within the European Union (Czech Republic). Use is based on our legitimate interest in efficient administration and for contract fulfillment. To ensure the protection of your data, we have concluded a Data Processing Agreement (DPA) with the provider.

    12

    Internal Workflow Automation via n8n

    For internal workflow management, we use n8n software. We operate this software exclusively on servers within the European Union that we ourselves control (self-hosting), making usage GDPR-compliant. No personal data is transmitted to the n8n software manufacturer. Data processing is performed locally to fulfill our contractual obligations or based on our legitimate interests in process optimization.

    13

    Implementation of the OpenAI API (Artificial Intelligence)

    To provide AI functionalities, we use the OpenAI API. The provider for European users is OpenAI Ireland Limited. When you interact with our AI-powered tools, inputs are encrypted and transmitted to OpenAI servers via the API. OpenAI contractually commits to not using data transmitted via the API for training its own language models (Zero-Data-Retention for training purposes). As data transfer to the USA may occur, OpenAI is certified under the EU-US Data Privacy Framework. Additionally, we have concluded Standard Contractual Clauses (SCC).

    14

    9. Right to Complain

    You have the right to lodge a complaint with a data protection supervisory authority regarding our processing of your personal data.

    15

    10. Contact

    For questions about data protection or to exercise your rights, please contact us at:

    Weitere rechtliche Dokumente

    Contact via WhatsApp