Privacy Policy
1. Data Controller
MeinWeb-Schlegel e.U.
Aspangstraße 12/2/8
1030 Vienna
Austria
Email: office@meinweb.design
2. Hosting and Server Log Data
This website is hosted by easyname. When you visit our website, technically necessary server log data is processed, including in particular your IP address, time of access, requested resource, as well as browser and system information. This processing is performed to ensure the secure and technically flawless provision of the website and is based on our legitimate interest according to Art. 6(1)(f) of the GDPR.
3. Contacting Us via Email or Contact Form
When you contact us by email or via our contact form, we process the data you provide in order to handle your request and, if applicable, to perform pre-contractual measures. Mandatory fields are restricted to what is necessary for processing. Depending on the nature of your request, the processing is based on Art. 6(1)(b) of the GDPR (performance of a contract or pre-contractual measures) or on our legitimate interests according to Art. 6(1)(f) of the GDPR.
4. Technically Necessary Cookies
The website only uses cookies that are technically necessary for the respective requested function. For protected application downloads, a signed cookie may be used to store a successful code activation for a limited period. The MeinWeb application statistics themselves do not require any analytical or advertising cookies.
5. Access Codes and Download Logs
For protected downloads, we may process the access code ID, activation status, expiration date, number of downloads, and the time of the last usage. Access codes are stored as a cryptographic hash for validation and additionally encrypted solely for administrative display purposes. This serves access control and protects provided applications against misuse.
6. Application Statistics
For administratively visible statistics regarding MeinWeb applications, events such as accessing an application page, downloading, opening an online tool, as well as successful, rejected, or blocked access code checks due to too many attempts are logged server-side. Data that may be stored includes the time, the affected application, the associated access code ID (where applicable), the origin domain of the previous page, country and city, as well as the IP address temporarily. These statistics serve technical operational analysis, improvement of the offered applications, detection of misuse, and access security. They are not publicly visible and are accessible only to administrators.
7. IP Address, Location, and Retention Period
In the standard configuration of the MeinWeb application statistics, the full IP address is stored for 7 days and subsequently removed automatically from the statistics events. Administrators can set this period to 0, 1, 7, 14, or 30 days. Statistics events are stored for 365 days by default and deleted automatically thereafter; a shorter or longer preset period can be selected in the backend. An approximate city and country assignment can be derived from the IP address for analytical purposes. IP-based location data can be imprecise, particularly with mobile networks, VPNs, corporate networks, and service providers.
8. Geo-IP Service IPWHOIS.IO
If location detection is enabled in the administrator area, the IP address is transmitted server-side via an encrypted HTTPS connection to the service IPWHOIS.IO to determine the country and city. The determined location data is then stored together with the statistics event; the geo-query is cached to avoid unnecessary repeated transmissions. The Geo-IP service can be deactivated in the WordPress backend at any time. As the provider operates a globally distributed infrastructure, processing outside the European Economic Area cannot be technically ruled out. Further information on the provider's data processing can be found at https://ipwhois.io/privacy.
9. Origin / Referrer
To identify which website a visitor came from, solely the domain name of the previous page may be stored, for example google.com or chatgpt.com. Paths, search terms, and content of the previous page are not stored by the MeinWeb application statistics. If no referrer exists, the access is identified as direct or unknown.
10. Legal Basis and Legitimate Interest
Unless processing is required for the fulfillment of a contract or the performance of pre-contractual measures, it is based on the legitimate interest under Art. 6(1)(f) of the GDPR in ensuring the secure, stable, and economic operation of the website and the provided applications, in preventing misuse, and in maintaining meaningful technical usage statistics. Data subjects may object to the processing in accordance with legal requirements.
11. External Services
In the base configuration, no advertising or marketing trackers are integrated. In addition to technically necessary services, the Geo-IP service described above is used for optional location detection. Should additional external media, analysis tools, or third-party services be added in the future, this privacy policy will be updated accordingly.
12. Your Rights
In accordance with legal requirements, you have the right to access, rectification, erasure, restriction of processing, data portability, and the right to object. Furthermore, you have the right to lodge a complaint with the responsible data protection supervisory authority.
13. Security
We implement appropriate technical and organizational measures to protect the data processed via this website. Data transmission is encrypted via HTTPS, provided this is correctly configured by the hosting provider.