Back to home

Privacy policy

Below we explain how personal data is processed when you visit flagmeier.engineering, use the contact form, optional web analytics, and the cookie notice.

1. Controller

Controller within the meaning of the General Data Protection Regulation (GDPR):
Nils Flagmeier · flagmeier.engineering
Dillinger Straße 4a, 86660 Tapfheim, Germany
Email: [email protected]
Phone: +49 176 2330 7802

2. Hosting and provision of the website

This website is operated on servers of a professional hosting provider. Access is provided in part via the consumer-facing domain starto.de and the Starto brand; the technical provider and processor for hosting is STRATO GmbH, Otto-Ostrowski-Straße 7, 10249 Berlin, Germany (Registergericht Berlin-Charlottenburg, HRB 270570B), website: www.strato.de.

STRATO provides infrastructure (web space, computing capacity, databases as per the package) and, when you access this website, automatically processes data in server log files, including:

  • IP address of the requesting device
  • Date and time of the request
  • Requested resource (URL), HTTP method
  • Amount of data transferred, status of successful retrieval
  • Browser type and version, operating system (if transmitted)
  • Referrer URL (previously visited page, if transmitted)

The purpose is secure, stable and error-free operation of the website, system security (e.g. abuse prevention) and technical analysis in case of faults. Legal basis: Art. 6 (1) (f) GDPR (legitimate interest in a secure and functional online presence). Where STRATO acts as a processor, a data processing agreement pursuant to Art. 28 GDPR is in place.

Processing usually takes place in data centres within Germany / the European Union. Details on processing and retention at the host are set out in STRATO’s privacy policy: www.strato.de/datenschutz. Deletion or anonymisation of log data follows technically required periods and the host’s policies.

3. Contact form and email delivery

When you use the contact form we process the data you enter: name, email address, subject, message and optionally your organisation. We use this solely to handle and respond to your enquiry.

Emails from the form are sent via Resend, Inc., based in the USA. Personal data may therefore be transferred to a third country (USA). Resend uses the EU Commission’s standard contractual clauses (SCC) and, where required, additional safeguards (Art. 44 ff. GDPR). Information: resend.com/legal.

Legal basis: Art. 6 (1) (b) GDPR where your enquiry relates to initiating or performing a contract, and additionally Art. 6 (1) (f) GDPR (legitimate interest in handling general contact requests). By submitting the form you confirm that you have read the terms and this privacy policy; storing this confirmation serves as evidence (Art. 6 (1) (c) or (f) GDPR, depending on context).

Contact enquiries are deleted once the purpose no longer applies and no statutory retention periods apply — in practice typically after the correspondence is concluded, at the latest after expiry of tax or commercial retention periods where applicable.

4. Microsoft Clarity (web analytics, opt-out)

To analyse use of this website, services of Microsoft Clarity (Microsoft Corporation, USA) are loaded by default unless you actively disable web analytics in the cookie notice. Clarity may evaluate interactions, clicks, scroll behaviour and technical metadata to improve the website. Data may be transferred to the USA. Microsoft may offer standard contractual clauses and further measures.

Legal basis: Art. 6 (1) (f) GDPR (legitimate interest in statistical analysis and improvement of the online offering). You may object at any time with future effect by disabling web analytics in the cookie notice; your refusal is stored in your browser’s local storage. You may also clear the stored choice (e.g. by clearing site data in your browser) or use tools in your browser’s privacy settings.

Further information: Microsoft privacy statement.

5. Cookies, local storage and the cookie notice

Technically necessary processes may require cookies or your browser’s local storage where essential for displaying the site. We store your choice regarding web analytics (Microsoft Clarity) in local storage on your device so your decision (active opt-out or closing the notice) is remembered until you reset it. The legal basis for Clarity is set out in section 4; storing your choice in local storage is based on Art. 6 (1) (f) GDPR (legitimate interest in reliably implementing your preference).

6. SSL/TLS encryption

This website uses an encrypted connection (HTTPS / SSL or TLS) to protect your data in transit. You can see whether the connection is active from the lock icon in your browser’s address bar.

7. No automated decision-making

We do not use solely automated processing that produces legal effects concerning you or similarly significantly affects you (Art. 22 GDPR).

8. Your rights

Where the statutory requirements are met, you have in particular:

  • Right of access to your data (Art. 15 GDPR)
  • Right to rectification (Art. 16 GDPR), erasure (Art. 17 GDPR), restriction of processing (Art. 18 GDPR)
  • Right to object to processing (Art. 21 GDPR), where applicable
  • Right to data portability (Art. 20 GDPR)
  • Right to withdraw consent with future effect (Art. 7 (3) GDPR), without affecting the lawfulness of processing before withdrawal
  • Right to lodge a complaint with a supervisory authority (Art. 77 GDPR), e.g. the authority for your place of residence or our place of business

9. Obligation to provide data

You may generally use this website for information without actively providing personal data to us (except access data automatically generated by hosting). The fields marked on the contact form are required so we can handle your request.

10. Changes to this privacy policy

We update this policy when legal requirements, technical developments or our services change. The version published on this page at the time of your visit applies.