Privacy Policy

Controller (Data Controller)
Eufonia UG (haftungsbeschränkt)
Rigaer Straße 100A, 10247 Berlin, Germany
Email: hello@eufonia.io

1) Overview

This Privacy Policy explains how we process personal data when you visit our website, contact us via our contact form, or interact with embedded content. We process personal data in accordance with the EU General Data Protection Regulation (GDPR) and applicable German data protection laws.

2) Data we collect

a) Website access data (server/log data)
When you visit our website, technical data may be processed automatically to ensure website operation and security, such as:

  • IP address (and/or truncated/anonymized IP depending on configuration)

  • date and time of access

  • requested pages/files

  • device, browser, and operating system information

  • referrer URL

b) Contact form and email communication
If you contact us via the contact form or email, we process:

  • your name (if provided)

  • your email address

  • the content of your message and any attachments

  • technical metadata related to the communication (e.g., date/time)

3) Purposes and legal bases

We process personal data for the following purposes:

  • Providing and securing the website
    Legal basis: Art. 6(1)(f) GDPR (legitimate interests in operating a secure and functional website)

  • Handling inquiries and communication
    Legal basis: Art. 6(1)(b) GDPR (steps prior to entering into a contract) and/or Art. 6(1)(f) GDPR (legitimate interest in responding to inquiries)

  • Compliance with legal obligations
    Legal basis: Art. 6(1)(c) GDPR

4) Hosting and website platform: Squarespace

Our website is hosted and provided via Squarespace. Squarespace processes personal data on our behalf for hosting, website delivery, security, and technical functionality.

Squarespace may process data in countries outside the EU/EEA. Where required, such transfers are protected by appropriate safeguards under GDPR (e.g., Standard Contractual Clauses or other legally recognized mechanisms).

5) Cookies and consent

Our website may use cookies and similar technologies.

  • Essential cookies are required for the website to function (e.g., security and basic website features). These may be set without consent where permitted by law.

  • Non-essential cookies (e.g., analytics/marketing) are used only if you consent via a cookie banner/consent tool, if such tools are enabled on this website.

You can withdraw or change your consent at any time through the cookie settings (if available) or by adjusting your browser settings.

6) Analytics (Google Analytics) — only with consent (if enabled)

If enabled, we may use Google Analytics to understand how visitors use our website (e.g., page views, time on site, device information). This helps us improve the website.

  • Legal basis: Art. 6(1)(a) GDPR (consent)

  • Data may be processed by Google, potentially including processing outside the EU/EEA.

  • We will activate analytics only after you provide consent (where required).

If you do not consent, Google Analytics will not be used.

7) Marketing/Tracking (Meta Pixel) — only with consent (if enabled)

If enabled, we may use the Meta Pixel (Facebook/Instagram) to measure the effectiveness of marketing campaigns and to understand interactions with our site (e.g., visits and actions after clicking an ad).

  • Legal basis: Art. 6(1)(a) GDPR (consent)

  • Meta may process data outside the EU/EEA.

  • We will activate the Meta Pixel only after you provide consent (where required).

If you do not consent, the Meta Pixel will not be used.

8) Embedded videos and third-party content (YouTube/Vimeo etc.)

Our website may include embedded videos or content provided by third parties (e.g., YouTube, Vimeo). When you load a page containing an embedded video, the third-party provider may receive personal data (such as your IP address, device information, and the page you visited) and may set cookies.

We aim to implement privacy-friendly embedding options where available (e.g., “click-to-play” or enhanced privacy modes). If we use a consent tool, such embedded content may be blocked until you consent.

  • Legal basis (typical): Art. 6(1)(a) GDPR (consent) when the embed sets non-essential cookies or enables tracking; otherwise Art. 6(1)(f) GDPR (legitimate interest in providing content) where lawful.

9) Data sharing

We do not sell personal data. We may share personal data only:

  • with service providers necessary for website operation (e.g., Squarespace),

  • with analytics/marketing providers only if enabled and consented (e.g., Google, Meta),

  • if required by law,

  • or to protect our rights and security.

10) Data retention

  • Log/technical data is retained only as long as necessary for security and operation (often short periods).

  • Contact data is retained as long as necessary to respond to your inquiry and for any follow-up, and longer if required by legal obligations.

11) Your rights under GDPR

You have the right to:

  • access (Art. 15 GDPR)

  • rectification (Art. 16 GDPR)

  • deletion (Art. 17 GDPR)

  • restriction (Art. 18 GDPR)

  • data portability (Art. 20 GDPR)

  • object to processing based on legitimate interests (Art. 21 GDPR)

  • withdraw consent at any time (Art. 7(3) GDPR), where processing is based on consent

To exercise your rights, contact: hello@eufonia.io

12) Right to lodge a complaint

You have the right to lodge a complaint with a supervisory authority. In Berlin, this is typically the Berlin Commissioner for Data Protection and Freedom of Information (Berliner Beauftragte für Datenschutz und Informationsfreiheit).

13) Updates to this Privacy Policy

We may update this Privacy Policy from time to time. The current version is published on this page.