Privacy
This privacy notice explains how personal data is handled when using the PhenoMon website.
1. Introduction and Controller Contact Details
We are pleased that you are visiting our website and thank you for your interest. Below, we inform you about how your personal data is handled when you use our website. Personal data means any data by which you can be personally identified.
Controller: PhenoDecisions GmbH Laurentiusstr. 54b, 53639 Königswinter, Germany Phone: +49 176 80635792 Email: info@phenodecisions.com
2. Data Collection When Visiting the Website
If you use our website purely for informational purposes, meaning you do not register or otherwise transmit information to us, we only collect data that your browser automatically transmits to the server (so-called server log files). This includes in particular:
- the website accessed
- date and time of access
- amount of data transferred in bytes
- source or referrer from which you reached the page
- browser used and operating system
- IP address, where applicable in anonymized form
Processing is carried out on the basis of Article 6(1)(f) GDPR due to our legitimate interest in ensuring the stability and functionality of the website. This data is not shared or otherwise used unless there are concrete indications of unlawful use.
For security reasons and to protect the transmission of personal data, the website uses SSL/TLS encryption. You can recognize this from the "https://" prefix and the lock symbol in your browser.
3. Hosting
The website is hosted on servers within the European Union. We have concluded a data processing agreement with the hosting provider to ensure the protection of our website visitors' data.
4. Web Analytics with Umami Analytics (Cloud Version)
This website uses the privacy-friendly analytics service Umami Analytics, operated by Umami Software Ltd., Ireland. Processing takes place on servers within the European Union as part of data processing under Article 28 GDPR. A corresponding data processing agreement has been concluded with Umami to ensure the protection of website visitor data.
Umami is used to statistically evaluate website visits. The service works without cookies and does not store personal data such as IP addresses in an identifiable form. Only anonymized usage data is processed, including:
- visited pages and subpages
- time and duration of the visit
- browser type and device, for example desktop or mobile device
- referrer URL
- country from which access took place, in anonymized form
Processing of this data is based on our legitimate interest under Article 6(1)(f) GDPR in anonymously evaluating the use of our website in order to improve content and usability. It is not possible to assign the data to a specific person. No profiles are created, no cookies are set, and no data is passed on to third parties.
Further information on data protection at Umami is available at https://umami.is/docs/privacy.
5. Cookies, Web Fonts, and External Services
This website does not use cookies, external web fonts, content delivery networks, or any other analytics or marketing tools beyond the service described above. No profiling or tracking takes place.
6. Contacting Us
If you contact us via the contact form or by email, the personal data you provide will be used exclusively to process your request.
The legal basis for processing is Article 6(1)(f) GDPR due to our legitimate interest in responding to your inquiry. If your inquiry is aimed at concluding a contract, Article 6(1)(b) GDPR is an additional legal basis. Your data will be deleted after your request has been fully processed unless statutory retention obligations apply.
7. Rights of Data Subjects
- right of access under Article 15 GDPR
- right to rectification under Article 16 GDPR
- right to erasure under Article 17 GDPR
- right to restriction of processing under Article 18 GDPR
- right to notification under Article 19 GDPR
- right to data portability under Article 20 GDPR
- right to withdraw consent under Article 7(3) GDPR
- right to lodge a complaint with a supervisory authority under Article 77 GDPR
Right to object: You may object at any time to the processing of your personal data on grounds relating to your particular situation where that processing is based on legitimate interests under Article 21(1) GDPR. If personal data is processed for direct marketing, you have a right to object at any time under Article 21(2) GDPR.
8. Duration of Personal Data Storage
The duration of storage depends on the respective processing purpose and statutory retention periods. Data collected on the basis of consent is deleted as soon as consent is withdrawn. Data processed for the performance of a contract or on the basis of legitimate interests is deleted as soon as it is no longer required or you exercise your right to object.
