Legal
Privacy Policy
The protection of your personal data is important to us. This notice informs you about which data we process when you visit this website, for what purpose and on what legal basis. We are deliberately sparing with data: analytics cookies (Google Analytics) are set only with your consent via our cookie notice.
1. Controller
The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is:
dionics media UG (haftungsbeschränkt)
Birkhuhnweg 8
31303 Burgdorf
Deutschland
Represented by: Thilo Krause
Email: websites@dionics.ai
Phone: +49 175 9648764
2. Your rights
With regard to your personal data, you have the following rights vis-à-vis us:
- right of access (Art. 15 GDPR),
- right to rectification (Art. 16 GDPR),
- right to erasure (Art. 17 GDPR),
- right to restriction of processing (Art. 18 GDPR),
- right to data portability (Art. 20 GDPR),
- right to object to processing (Art. 21 GDPR).
Insofar as the processing is based on consent, you may withdraw that consent at any time with effect for the future. The lawfulness of the processing carried out up to the withdrawal remains unaffected.
You also have the right to lodge a complaint with a data protection supervisory authority. The authority responsible for us is:
Die Landesbeauftragte für den Datenschutz Niedersachsen (State Commissioner for Data Protection of Lower Saxony)
Prinzenstraße 5, 30159 Hannover
3. Data collected when visiting the website
When you access this website, our hosting provider automatically collects information in so-called server log files that your browser transmits. These are:
- the IP address (shortened or anonymised where possible),
- the date and time of access,
- the browser type and operating system used (user agent),
- the previously visited page (referrer).
The legal basis is Art. 6 (1) (f) GDPR. Our legitimate interest lies in the technically error-free and secure operation of the website. This data is not merged with other data sources. The log files are stored only for a short period and then deleted, unless they are exceptionally required to investigate a specific security incident.
4. Cookies and consent
We set technically necessary cookies required to operate the website on the basis of Art. 6 (1) (f) GDPR. In addition, we use optional analytics cookies for Google Analytics (see section 9) — these are set only if you have consented via our cookie notice. Your choice is stored in your browser's local storage. You can withdraw or change your consent at any time with effect for the future: the "Cookie settings" link in the page footer reopens the cookie notice. Upon withdrawal, analytics cookies that have been set are deleted.
5. Contacting us
If you contact us by email, telephone or via a form, the details you provide will be stored for the purpose of processing the enquiry and in case of follow-up questions. The legal basis for contract-related or pre-contractual enquiries is Art. 6 (1) (b) GDPR, and otherwise Art. 6 (1) (f) GDPR (legitimate interest in answering your enquiry). Messages sent via the contact form are transmitted through our email service provider Zoho (Zoho Corporation), which processes the data on our behalf. If you cancel a contract via our cancellation form ("Cancel a contract"), we process the details provided there (type of cancellation, contract or service, customer/contract number, name, email address, requested end date, reason where given) to handle the cancellation and to issue the statutory confirmation of receipt (Section 312k of the German Civil Code); the legal basis is Art. 6 (1) (b) and (c) GDPR. We delete this data as soon as it is no longer required to achieve the purpose and no statutory retention obligations conflict with deletion.
6. Appointment booking
To book initial consultations, we use the service of the third-party provider Cal.com (cal.eu). The booking calendar is embedded on our contact page as an iframe; when you open that page, a connection to the provider's servers is therefore established and technical data (in particular your IP address) is transmitted. If you then arrange an appointment via the booking function, the details you enter — in particular your name, email address and preferred appointment — are additionally processed by the provider and transmitted to us. The legal basis is Art. 6 (1) (b) GDPR (performance of pre-contractual measures at your request), and for the technical embedding Art. 6 (1) (f) GDPR (legitimate interest in simple appointment scheduling). A data processing agreement pursuant to Art. 28 GDPR is in place with the provider. For details of the data processing by the provider, please refer to their privacy policy.
7. Hosting
This website is hosted by Vercel Inc., 440 N Barranca Ave #4133, Covina, CA 91723, USA. Vercel processes the data arising in the course of website operation (such as the server log files mentioned above) on our behalf. The basis for this is a data processing agreement pursuant to Art. 28 GDPR. Data may also be processed on servers in the USA; the transfer is based on the EU-US Data Privacy Framework and/or EU standard contractual clauses. For more information, see Vercel's privacy policy.
8. SSL/TLS encryption
For security reasons and to protect the transmission of confidential content, this website uses SSL/TLS encryption. You can recognise an encrypted connection by the fact that the browser's address bar changes from “http://” to “https://”. When encryption is active, the data you transmit to us cannot be read by third parties.
9. Web analytics with Google Analytics
This website uses — only with your consent — Google Analytics 4, a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Google Analytics uses cookies that enable a statistical analysis of your use of the website. Google Analytics 4 does not log or store full IP addresses; IP data is truncated or discarded before processing. The legal basis is your consent pursuant to Art. 6 (1) (a) GDPR in conjunction with Section 25 (1) TDDDG. You give this consent via our cookie notice and can withdraw it at any time with effect for the future via the "Cookie settings" link in the page footer. In this process, data may also be transferred to Google servers in the USA; Google is certified under the EU-US Data Privacy Framework. For more information, see Google's privacy policy.
10. Spam protection with Google reCAPTCHA
To protect our contact form against abusive entries and spam, we use Google reCAPTCHA (v3) provided by Google Ireland Limited. reCAPTCHA analyses various characteristics to distinguish human input from automated access (bots). The service is only loaded once you interact with the contact form— not on merely opening the page. In doing so, data (including IP address, time spent on the page, and device and browser information) is transmitted to Google and may also be processed in the USA; this may involve accessing information on your device (Section 25 TDDDG). The legal basis is our legitimate interest in preventing spam and in the security of our systems pursuant to Art. 6 (1) (f) GDPR; where required, we rely on Section 25 (2) No. 2 TDDDG (necessity for the service you expressly requested — the transmission of your message). Google's privacy policy and terms of service apply.
11. Payment processing via Stripe
To process payments as part of our onboarding (ordering paid services), we use the payment service provider Stripe. For customers in the European Economic Area, the provider is Stripe Payments Europe, Ltd., 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland. When you order a service, you are redirected to Stripe's secure payment page. You enter the data required for payment processing (in particular name, email address, billing address, VAT ID where applicable, and the payment details) directly with Stripe; your full payment-means data (e.g. card number) is processed exclusively by Stripe and does not reach our servers. From Stripe we only receive the confirmation and master data necessary to fulfil the contract and issue invoices (including name, email, company, chosen service, payment status and amount).
The legal basis for the processing is Art. 6 (1) (b) GDPR (performance of the contract or pre-contractual measures) and, with regard to retaining invoice data, Art. 6 (1) (c) GDPR (compliance with tax and commercial retention obligations). Stripe may also transfer data to the USA; the transfer is based on the EU standard contractual clauses and/or the EU-US Data Privacy Framework. For details of the data processing by Stripe, please see Stripe's privacy policy.
Last updated: July 2026