1. Name and Contact Details of the Controller
The controller within the meaning of the General Data Protection Regulation (GDPR) and national data protection laws is:
Volkmar Hinrichsmeyer
Kurt-Schumacher-Straße 5
48429 Rheine
hi@hinrichsmeyer.eu
2. Data Processing When Visiting the Website
When you visit this website (hosted by Strato AG). This information is temporarily stored in log files. The following data is collected automatically:
- IP address of the requesting device,
- date and time of access,
- name and URL of the accessed file,
- referrer URL,
- browser type and, if applicable, the operating system,
- name of your access provider.
This data is processed for the purposes of:
- ensuring a smooth connection to the website,
- optimizing user experience,
- evaluating system security and stability,
- administrative purposes.
Legal basis: The processing of this data is based on Art. 6(1)(f) GDPR (legitimate interest). In no case is collected data used to identify individuals.
Deletion: Personal data is deleted within 7 days.
Hosting Provider Information:
Hosting is provided by: Strato AG, Otto-Oststraße 7, 10249 Berlin, Germany.
Privacy Policy of Strato: https://www.strato.de/datenschutz/
A data processing agreement (Art. 28 GDPR) has been concluded with Strato AG.
3. Contact and Consultation Inquiries
If you contact us by email, by phone, or through the booking function, we process the personal data involved (e.g. your name, email address, phone number, booked time slot if applicable, subject and content of the inquiry) for the purpose of handling your inquiry as well as for the negotiation and conclusion of a contractual relationship (e.g. consulting, workshops, development).
Legal basis: Art. 6(1)(b) GDPR (pre-contractual measures and contract performance) and Art. 6(1)(f) GDPR (our legitimate interest in processing inquiries and maintaining business relationships).
Retention: We delete personal data arising from an inquiry or a completed engagement six (6) years after the end of the calendar year in which the contractual relationship ended. Where statutory retention obligations or statute-of-limitations periods so require, we may retain the data for longer, for example while we are a party to litigation or have outstanding liability or warranty claims.
4. Appointment booking via Microsoft Cloud Bookings
The "Book an initial consultation" function on our website refers to a service provided by Microsoft Cloud Bookings (provider: Microsoft Ireland Operations Limited, Ballinderry Business Park, 4400 Naas, Co. Kildare, Ireland; for US locations: Microsoft Corporation, One Microsoft Way, Redmond, WA 98052, USA).
If you book an appointment via our website, your browser establishes a direct connection to Microsoft's servers and the data you provide (e.g. your name, email address, chosen time slot) is transmitted directly to Microsoft.
Microsoft is certified under the EU-US Data Privacy Framework (list of certified organisations: https://www.dataprivacyframework.gov/s/participant-search). Microsoft's privacy notice is available at https://www.microsoft.com/de-de/privacy/.
5. Microsoft 365
For handling personal data in the course of our business communications – in particular email correspondence and document processing – we use the services of Microsoft 365 (provider: Microsoft Ireland Operations Limited, and where applicable Microsoft Corporation). Microsoft processes this data as our processor within the meaning of Art. 28 GDPR.
Microsoft is certified under the EU-US Data Privacy Framework (list of certified organisations: https://www.dataprivacyframework.gov/s/participant-search).
6. Recipients and Transfers to Third Countries
We transfer personal data to third parties only where required within the purposes described above. Recipients are:
- Strato AG, Otto-Oststraße 7, 10249 Berlin (hosting, processor under Art. 28 GDPR)
- Microsoft Ireland Operations Limited and Microsoft Corporation (Microsoft Cloud Bookings, Microsoft 365; processor under Art. 28 GDPR)
Transfers to recipients in other jurisdictions take place only in the cases described here. Microsoft Corporation is additionally certified under the EU-US Data Privacy Framework.
Apart from the above, no personal data is transferred to third parties.
7. Cookies and Similar Technologies
This website does not use cookies or similar technologies requiring consent under § 25 para. 1 TDDDG. Only technically necessary cookies are used to ensure the proper operation of the website, based on § 25 para. 2 no. 2 TDDDG and Art. 6(1)(f) GDPR.
8. Data Subject Rights
You have the following rights regarding your personal data:
- Right of access (Art. 15 GDPR),
- Right to rectification (Art. 16 GDPR),
- Right to erasure (Art. 17 GDPR),
- Right to restriction of processing (Art. 18 GDPR),
- Right to data portability (Art. 20 GDPR),
- Right to object (Art. 21 GDPR).
To exercise your rights, please contact the controller mentioned above. You also have the right to lodge a complaint with a supervisory authority (Art. 77 GDPR).
9. Mandatory Data Provision / Automated Decision-Making
The provision of personal data is not legally or contractually required, and no automated decision-making, including profiling, takes place.
Legal