Legal
Privacy Policy
Datenschutzerklärung — Last updated: 31 May 2026
1. Controller / Verantwortlicher
The controller responsible for processing personal data on this platform is: [YOUR NAME / COMPANY], [ADDRESS], Germany. Email: [YOUR EMAIL]. You can reach us at any time with questions about data protection.
2. Data We Collect / Erhobene Daten
We collect and process the following personal data: your email address (required for account creation and authentication); your chosen display name or username; login timestamps and IP addresses (for security purposes via Devise Trackable); and any content you voluntarily submit such as chat messages, event RSVPs, and contact form submissions.
3. Purpose and Legal Basis / Zweck und Rechtsgrundlage
Your data is processed for the following purposes: account management and authentication (Art. 6(1)(b) GDPR — necessary for the performance of a contract); platform security and abuse prevention (Art. 6(1)(f) GDPR — legitimate interest); and responding to contact requests (Art. 6(1)(b) GDPR). We do not process your data for advertising, profiling, or sale to third parties.
4. Cookies / Cookies
This platform uses only strictly necessary session cookies. These are small text files stored in your browser that keep you logged in during your session. No tracking, analytics, or advertising cookies are used. These cookies are set under Art. 6(1)(b)/(f) GDPR and do not require your consent as they are technically essential for the service to function.
5. Data Retention / Datenspeicherung
Your account data is retained for as long as your account is active. Login logs are retained for up to 90 days for security purposes. Contact form submissions are retained for up to 12 months. You may request deletion of your data at any time (see Section 7).
6. Third Parties / Dritte
We do not share your personal data with third parties, except where required by law. The platform is hosted on servers within the EU/EEA. No data is transferred outside the European Economic Area.
7. Your Rights / Ihre Rechte
Under GDPR you have the right to: access the personal data we hold about you (Art. 15); correct inaccurate data (Art. 16); request deletion of your data (Art. 17); restrict processing (Art. 18); data portability (Art. 20); and object to processing (Art. 21). To exercise any of these rights, contact us at [YOUR EMAIL]. You also have the right to lodge a complaint with a supervisory authority — in Germany this is the relevant Landesbeauftragter für Datenschutz.
8. Data Security / Datensicherheit
All data is transmitted over encrypted HTTPS connections. Passwords are stored as bcrypt hashes and are never stored in plain text. We apply technical and organisational measures to protect your data against unauthorised access, loss, or alteration.