Privacy Policy

1. Controller

The controller responsible for processing personal data on this website within the meaning of the General Data Protection Regulation (GDPR) is:

Stephan Moschinsky
Lilienstraße 11
20095 Hamburg
Germany
Email: connect@level9-consulting.com

2. General Information on Data Processing

We process personal data of users of this website only insofar as this is necessary to provide a functional website, to ensure its security, and to deliver our content. No tracking, analytics, or marketing technologies are used.

Personal data is processed in accordance with the GDPR, the German Federal Data Protection Act (BDSG), and other applicable laws.

3. Hosting

Our website is hosted by:

Raidboxes GmbH
Hafenstraße 32
48153 Münster
Germany

Raidboxes processes personal data on our behalf in accordance with Art. 28 GDPR. As part of hosting services, Raidboxes may process:

  • IP addresses
  • Request timestamps
  • Referrer URLs
  • Browser types and versions
  • Operating system information
  • Accessed pages/files

These log files are required for security, debugging, and server stability.

Legal basis:
Art. 6(1)(f) GDPR (legitimate interest in secure and reliable website operation).

4. Provision of the Website and Server Log Files

When you access this website, the system automatically collects data and information from your device. This may include:

  • IP address
  • Date and time of access
  • Time zone difference
  • Requested URL
  • HTTP status code
  • Amount of data transferred
  • Browser and operating system
  • Website from which the request originates (referrer)

This data is technically necessary to display the website, to ensure stability and security, and to prevent misuse.

Legal basis: Art. 6(1)(f) GDPR
Retention: Server logs are typically deleted automatically after a short period defined by the hosting provider, unless required for security incidents.

5. Use of Cookies

This website uses only essential cookies required for the operation, security, and performance of the website. These include WordPress functional cookies and hosting-related caching cookies.

We do not use:

  • Analytics cookies
  • Marketing or tracking cookies
  • Third-party cookies from embedded services (e.g., YouTube, Maps)

Detailed information can be found in our separate Cookie Policy.

Legal basis: Art. 6(1)(f) GDPR (legitimate interest in a functional and secure website).

6. Contact Forms and Email Communication

We operate a contact form on this website.

When you submit the contact form, we process the personal data you provide (such as first name, email address, phone number, company name, and message content) solely for the purpose of handling your inquiry and assessing a potential professional engagement.

If you contact us directly via email, your message and the associated personal data will likewise be processed only for the purpose of responding to your inquiry.

The legal basis for this processing is:

Art. 6(1)(b) GDPR (pre-contractual measures taken at the request of the data subject), and

Art. 6(1)(f) GDPR (legitimate interest in responding to inquiries and maintaining professional communication).

We do not operate a newsletter or mailing list.

Personal data submitted via the contact form or email will be retained only for as long as necessary to process the inquiry and in accordance with applicable legal retention obligations.

7. Data Retention

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, in particular to process and respond to inquiries submitted via our contact form or by email.

If a professional relationship does not result from the inquiry, the data will be deleted after the communication has concluded, unless statutory retention obligations require longer storage.

In the case of a subsequent contractual relationship, personal data may be retained in accordance with applicable commercial and tax law retention requirements.

8. Email Delivery and Third-Party Service Providers

To ensure reliable delivery of emails sent from this website (including contact form submissions and confirmation messages), we use an SMTP email delivery service.

Emails generated by the website are transmitted via an SMTP service provider and delivered to our email inbox. In the course of this process, the content of the message and the sender’s email address are technically processed for the sole purpose of email transmission.

No use of this data for marketing or analytics purposes takes place.

The processing is based on:

  • Art. 6(1)(b) GDPR (pre-contractual communication), and
  • Art. 6(1)(f) GDPR (legitimate interest in secure and reliable communication).

We have taken appropriate technical and organizational measures to ensure data security in accordance with GDPR requirements.

9. No Third-Party Integrations

This website does not use external embed services or integrations that would transmit personal data to third parties, such as:

  • Google Analytics
  • Google Maps
  • YouTube or Vimeo
  • Facebook Pixel / LinkedIn Insight Tag / TikTok Pixel
  • Calendly or scheduling tools
  • Live chat systems

If such services are introduced in the future, this Privacy Policy will be updated accordingly and—where required—your consent will be obtained.

10. Data Security

We use technical and organizational measures to protect the data we process against loss, destruction, misuse, and unauthorized access. These measures are continuously improved in accordance with technological developments.

11. Data Subject Rights

You have the following rights under the GDPR:

  • Right of access (Art. 15 GDPR)
  • Right to rectification (Art. 16 GDPR)
  • Right to erasure (Art. 17 GDPR)
  • Right to restriction of processing (Art. 18 GDPR)
  • Right to data portability (Art. 20 GDPR)
  • Right to object (Art. 21 GDPR)
  • Right to withdraw consent (Art. 7(3) GDPR)

To exercise these rights, please contact: connect@level9-consulting.com

You also have the right to lodge a complaint with a supervisory authority, in particular:

Der Hamburgische Beauftragte für Datenschutz und Informationsfreiheit
(competent authority for your place of residence)

12. International Data Transfers

We do not transfer personal data to countries outside the European Union or the European Economic Area.

If this should change due to future integrations (e.g., analytics tools, cloud services), such transfers will only take place in accordance with the legal requirements of Art. 44–49 GDPR.

13. Retention of Personal Data

Personal data is stored only as long as necessary for the respective purpose, or as required by legal retention obligations.
Server log data is typically retained for a short period to ensure security and system stability.

14. Changes to This Privacy Policy

We reserve the right to update or modify this Privacy Policy at any time in order to comply with legal requirements or changes to our website.

The version published on this page at the time of your visit applies.