Legal information
Privacy Policy
01
Controller and your rights
Last updated: 26 August 2026. This privacy policy explains which personal data is processed when you visit our website or contact us.
The controller within the meaning of Article 4(7) GDPR is:
ETENAR Technology GmbHWolfsleite 52, 91074 Herzogenaurach, Germany
Phone: +49 172 186 21 25
Email: info@etenar.de
What data do we process?
Technical connection and security data is generated when you access the website. IONOS also creates anonymised usage statistics from this data. If you contact us, we process the information you submit through the contact form, by email or by telephone. The following sections explain the purposes, legal bases, recipients and retention periods. We do not use automated decision-making within the meaning of Article 22 GDPR or profiling. The automated misuse check may only reject an individual form submission; in that case, you can contact us by email or telephone.
Your rights
Where the statutory requirements are met, you have rights of access, rectification, erasure, restriction of processing and data portability (Articles 15 to 20 GDPR). You may withdraw consent at any time with effect for the future (Article 7(3) GDPR). Please contact info@etenar.de.
Right to object
Where we process data on the basis of Article 6(1)(f) GDPR, you may object at any time on grounds relating to your particular situation (Article 21 GDPR). We will then cease processing the data unless compelling legitimate grounds or legal claims require otherwise. You can send your objection to the contact details above.
You may also lodge a complaint with a data protection supervisory authority. Our competent authority is the Bavarian State Office for Data Protection Supervision (BayLDA) (opens in a new tab), Promenade 18, 91522 Ansbach, Germany, phone +49 981 180093-0.
02
Hosting, server logs and audience measurement
This website is hosted by IONOS SE, Elgendorfer Straße 57, 56410 Montabaur, Germany (Webhosting Plus). IONOS processes hosting data on our behalf under an agreement pursuant to Article 28 GDPR. When a page is requested, the requested page or file, date and time, amount of data transferred, previously visited page, browser, operating system, device type and IP address are processed in particular. This data is needed to provide the website securely, reliably and without errors. The legal basis is Article 6(1)(f) GDPR; our legitimate interest is secure and reliable operation. According to IONOS, visitor IP addresses are anonymised immediately and server logs are retained for no longer than eight weeks.
IONOS WebAnalytics
IONOS WebAnalytics is active as part of the hosting service. Audience measurement uses log data or a tracking pixel, but no cookies and no personal visitor profiles. The IP address is anonymised immediately when transmitted to IONOS. The previously visited and requested pages, browser, operating system, device type, request time and only an approximate geographical location are evaluated. The purposes are anonymous audience statistics and technical improvement of the website. The legal basis is Article 6(1)(f) GDPR; our legitimate interest is the needs-based and economical optimisation of our website. According to IONOS, the anonymised analytics data is neither disclosed to third parties nor transferred to third countries. After anonymisation, we cannot relate the statistics to an individual.
Backups
IONOS creates daily backups of the web space for technical recovery and, according to the provider, retains them for up to 14 days. We also create an access-restricted backup on a company-controlled server after relevant website changes; each new backup replaces the previous one. The legal basis is Article 6(1)(f) GDPR. Our legitimate interest is the recoverability and operational security of the website.
03
Contact and email
When using the contact form, name, email address, subject and message are required; company information is voluntary. There is no legal or contractual obligation to provide this data. However, the fields marked as required are technically necessary to transmit and answer your enquiry through the form; without them, the form cannot be submitted. You may contact us by email or telephone instead. We use your information solely to handle the enquiry and necessary follow-up. If your enquiry concerns a contract or pre-contractual steps, the legal basis is Article 6(1)(b) GDPR; for other business enquiries it is Article 6(1)(f) GDPR. Our legitimate interest is the appropriate handling of your enquiry.
The form does not store the complete message in WordPress and sends no automatic acknowledgement. The message is transmitted through IONOS Mail Basic to info@etenar.de. The mailbox is operated with Microsoft 365 Exchange Online. IONOS and Microsoft process the data required for transport and mailbox operation on our behalf pursuant to Article 28 GDPR.
Transfers outside the European Economic Area
For Microsoft 365, Microsoft generally provides for customer data to be stored and processed within its EU Data Boundary. In limited cases, in particular for operation and support, data may be processed outside the EU or European Economic Area. Where no adequacy decision applies, Microsoft relies in particular on the EU Standard Contractual Clauses and supplementary safeguards under Article 46 GDPR. Microsoft publishes its contractual privacy terms in the Products and Services Data Protection Addendum (opens in a new tab); the EU Standard Contractual Clauses (opens in a new tab) are available from the European Commission. You can request further information about the safeguards applicable to your data or a copy through our contact details above.
Retention
We delete general enquiries that are not subject to a statutory retention duty no later than twelve months after final handling. Where a message must be retained as a commercial or business letter or for another statutory reason, the applicable statutory period governs. For business correspondence subject to retention, this is currently generally six years from the end of the calendar year in which the correspondence arose. The legal basis is Article 6(1)(c) GDPR in conjunction with the applicable commercial or tax law. The company mailbox is backed up monthly to an access-restricted company server; each new monthly backup replaces the previous one. Deleted mailbox content therefore normally ceases to exist in this backup when it is next overwritten.
04
Local media and browser settings
Fonts, images, audio files and videos are loaded directly from this website. No external font, media, video or CDN service is contacted for them. Optional map, marketing and external video services are not enabled for ETENAR. Irrespective of this, the IONOS audience measurement described above is active at hosting level.
Welcome effect and website guide
On a new page request or refresh, a short welcome effect without video is shown while the website is built in the background. The effect stores no setting. Only if you expressly collapse the website guide can that state be stored in your browser's session memory for the current tab. The entry ends automatically with the tab session and is not transferred to third parties.
Privacy notice
“Understood” records only for the current tab that you closed the notice. “Do not show again” stores only the current notice version in a technically necessary cookie from this website. The cookie remains valid for no more than 180 days, until the notice materially changes or until you delete it. It contains no visitor ID and does not enable any optional service. A short-lived test entry may be set to check that storage works; it is removed immediately.
These storage operations are necessary to provide the display and session settings you expressly requested (Section 25(2)(2) TDDDG). Where personal data is processed, the legal basis is Article 6(1)(f) GDPR. Our legitimate interest is a functional and data-minimising user interface. You can delete the settings through this website's privacy settings or through your browser; the notice or selected interface will then be displayed again.
05
Contact form protection
To prevent automated misuse, the contact form uses the self-hosted open-source component ALTCHA. The security check runs entirely on this website. No data is transferred to an external CAPTCHA provider and no third-party cookies are set for this purpose. The check has no advertising or tracking function.
For the security check, IP and email references are converted into values that cannot be directly attributed using an installation-specific secret. Raw IP addresses, complete email addresses and message content are not stored in the protection and blocking tables. The form check is valid for no more than 20 minutes; depending on their type, protection values for repeat and delivery limits expire after no more than approximately 25 hours and are then removed automatically. The purely technical status of the most recent email delivery does not contain the complete message. It is used for the status display for seven days. After that, it is no longer displayed and is deleted or overwritten the next time the status is retrieved, an email is sent or the email settings are changed. The legal basis is Article 6(1)(f) GDPR. Our legitimate interest is protecting the form and mail infrastructure from misuse.