This Privacy Policy explains how personal data is processed on this private personal website.
This website may store the selected language locally in your browser to keep your language preference.
1. General information
This Privacy Policy describes the type, scope and purpose of personal data processing on this website.
2. Controller
Admir Mehic
Zur Spinnerin 40/5/16
1100 Vienna
Austria
Email: [email protected]
Website: https://vzdnur.com
3. Hosting and server log files
- This website is hosted by netcup GmbH, Germany.
- When visiting the website, technically required access data may be processed automatically (for example IP address, date/time, requested URL, referrer, browser, operating system, HTTP status code).
- Processing is required for secure operation, technical delivery, error analysis and abuse prevention.
- Legal basis: Art. 6(1)(f) GDPR (legitimate interest in secure and stable website operation).
- Server log retention: 14 days, then deletion or anonymization unless longer retention is required for security investigations.
4. Contact by email or contact form
- When contacting me by email or through the contact form, the submitted data is processed to handle and respond to the request.
- This may include name, email address, message content and optional details.
- Legal basis: Art. 6(1)(f) GDPR (legitimate interest in handling and responding to requests).
- Contact inquiry retention: 6 months, unless legal obligations require longer retention.
- Data is shared only where necessary to process the request or where legally required.
5. Contact form notice
By submitting the form, the provided data may be processed to respond to your request. More information is available in the Privacy Policy.
6. Cookies
- This website does not use marketing cookies by default.
- No non-essential cookies are set by default.
- If consent-based cookies are introduced in the future, they will only be activated after user consent.
7. Web analytics with self-hosted Umami
- This website uses self-hosted Umami for privacy-friendly analytics and content improvement.
- Data may include visited pages, time of visit, referrer (if provided), browser, operating system, device type, approximate country/region, and generic events such as product or contact button clicks.
- Umami is operated cookieless where technically possible.
- No personal profiling is performed.
- No advertising tracking is used.
- No data is shared with advertising networks.
- Google Analytics and Meta Pixel are not used.
- Legal basis: Art. 6(1)(f) GDPR.
- Legitimate interest: reach measurement, technical optimization, and improvement of the website.
- Analytics data retention: 12 months.
- Form contents, names, email addresses, and message texts are not sent to Umami for tracking purposes.
8. Event and click tracking
- Click events may be measured to evaluate product and content interest (for example product cards, contact CTAs, demo/download CTAs).
- Form input content is not tracked.
- No sensitive data is tracked.
9. Embedded media
- Images and videos may be hosted locally.
- If external media providers are embedded later, data may be transmitted to those providers.
- Privacy-friendly embedding methods (for example click-to-load/privacy mode) are recommended for external videos.
10. Local fonts
Fonts are hosted locally where possible. External Google Fonts loading from Google servers is not used by default.
11. Recipients / processors
- Hosting provider: netcup GmbH, Germany.
- Optional: self-hosted analytics infrastructure, if operated separately.
- Other recipients only where technically necessary or legally required.
12. Retention periods
- Personal data is stored only as long as necessary for the relevant purpose or legal obligations.
- Server logs: 14 days.
- Contact inquiries: 6 months.
- Analytics data: 12 months.
13. Data subject rights
- You have the right to access, rectification, erasure, restriction of processing, data portability, objection and withdrawal of consent.
- You also have the right to lodge a complaint with the supervisory authority:
- Austrian Data Protection Authority, Barichgasse 40-42, 1030 Vienna, https://www.dsb.gv.at
14. Data security
This website uses appropriate technical and organizational measures to protect personal data. Data transmission is secured via HTTPS/TLS.
15. Changes to this Privacy Policy
This Privacy Policy may be updated if technical processes, services, or legal requirements change.
16. Bot protection with Cloudflare Turnstile
- Cloudflare Turnstile is used on the contact form for bot protection.
- Turnstile is used only to protect contact form requests against automated abuse.
- Turnstile response tokens are verified server-side with Cloudflare before a request is accepted.
- Form contents are not tracked by Turnstile. Submitted contact data is processed only to respond to contact requests.