Privacy Policy

We take the protection of your personal data seriously. This privacy policy informs you pursuant to Article 13 GDPR about the nature, scope, and purpose of the processing of personal data on attec-ai.de. In case of conflict, the German version prevails.

1. Controller

The controller for data processing on this website is:

ATTEC UG (haftungsbeschränkt), Talstraße 15, 57076 Siegen, Germany

Represented by Managing Director Tobias Schmallenbach

E-mail: info@attec-foerderung.de

2. Data collected when visiting the website (server log files)

When you access this website, our hosting provider automatically records technical access data in so-called server log files:

  • IP address of the requesting device (stored in abbreviated form where technically possible)
  • date and time of the request
  • name and URL of the file requested
  • volume of data transferred and indication of successful retrieval
  • browser and operating system used
  • referrer URL (the previously visited page)

2.1 Legal basis and retention

The legal basis is Art. 6(1)(f) GDPR. Our legitimate interest lies in the technical provision, stability, and security of the website and the prevention of abusive access.

Log data is deleted within 30 days at the latest, unless a specific security incident requires longer retention for investigation.

3. Hosting

This website is hosted by Vercel Inc., 340 S Lemon Ave #4133, Walnut, CA 91789, USA. Vercel processes the access data referenced in Section 2 on our behalf under a data processing agreement pursuant to Art. 28 GDPR.

Vercel may transfer data to the United States. Vercel is certified under the EU-U.S. Data Privacy Framework, providing an adequacy decision of the European Commission pursuant to Art. 45 GDPR. EU Standard Contractual Clauses have additionally been concluded. Further information: https://vercel.com/legal/privacy-policy

4. Contact form

If you send us an inquiry via the contact form, we process the data you enter to respond to your inquiry and for any follow-up questions.

Mandatory fields are name, e-mail address, and message; optional fields include company, role, goals, and preferred timeframe.

The legal basis is — where your inquiry is aimed at initiating a contractual relationship — Art. 6(1)(b) GDPR; otherwise our legitimate interest in responding to inquiries pursuant to Art. 6(1)(f) GDPR, and your consent pursuant to Art. 6(1)(a) GDPR, which you may revoke at any time with effect for the future.

Data is deleted as soon as it is no longer required for the purpose of the contact. Mandatory statutory retention periods remain unaffected.

5. E-mail delivery

To deliver your contact inquiry to us, we use the service Resend (Resend Inc., 2261 Market Street #5039, San Francisco, CA 94114, USA). Resend processes the e-mail content and metadata (sender, recipient, timestamp) as a processor pursuant to Art. 28 GDPR.

Resend is certified under the EU-U.S. Data Privacy Framework; EU Standard Contractual Clauses have additionally been concluded. Further information: https://resend.com/legal/privacy-policy

6. Cookies

This website uses only strictly necessary cookies or comparable storage mechanisms required to operate the site. Consent under Section 25(1) TTDSG is not required (Section 25(2)(2) TTDSG). No analytics, tracking, or marketing cookies are used.

7. Fonts

This website uses the typefaces Montserrat and Raleway. The font files are served exclusively from our own server or the Vercel CDN. No connection to Google servers is established, and no data is transmitted to Google.

8. SSL/TLS encryption

For security reasons and to protect the transmission of confidential content, this website uses SSL/TLS encryption. You can recognize an encrypted connection by the "https://" prefix in your browser's address bar.

9. Your rights

As a data subject, you have the following rights with respect to your personal data:

  • right of access (Art. 15 GDPR)
  • right to rectification (Art. 16 GDPR)
  • right to erasure (Art. 17 GDPR)
  • right to restriction of processing (Art. 18 GDPR)
  • right to data portability (Art. 20 GDPR)
  • right to object to processing (Art. 21 GDPR)
  • right to withdraw a granted consent with effect for the future (Art. 7(3) GDPR)

10. Right to lodge a complaint with a supervisory authority

Without prejudice to any other administrative or judicial remedy, you have the right to lodge a complaint with a data protection supervisory authority (Art. 77 GDPR). The competent authority for us is:

Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen, Kavalleriestraße 2-4, 40213 Düsseldorf, Germany; e-mail: poststelle@ldi.nrw.de

11. Currency and changes

This privacy policy is currently valid. As the website continues to develop, or as legal or regulatory requirements change, adjustments may become necessary. The current version can be retrieved at any time from this page.