Legal

Privacy Policy

As of: June 2026 · Jafinity, Germany

1. Controller

The controller within the meaning of the General Data Protection Regulation (GDPR) is:

Jafinity
[Full address — see Imprint]
Germany
Email: [email protected]

2. What Data We Collect

We process personal data only to the extent necessary to provide a functional website as well as our content and services. Processing is carried out on the basis of the following legal grounds (Art. 6 GDPR):

  • Art. 6 (1) lit. a — with your consent
  • Art. 6 (1) lit. b — for the performance of a contract
  • Art. 6 (1) lit. f — on the basis of legitimate interests (e.g. security, operation of the website)

3. Server Log Files

The hosting provider of this website automatically collects and stores information in server log files that your browser automatically transmits. This includes:

  • Browser type and browser version
  • Operating system used
  • Referrer URL (previously visited page)
  • Hostname of the accessing computer
  • Date and time of the server request
  • IP address (anonymized or full, depending on the hosting configuration)

Legal basis: Art. 6 (1) lit. f GDPR (legitimate interest in security and stable operation). This data is not merged with other data sources and is deleted after no later than 30 days.

4. Contact & Popup Form

When you submit an inquiry via the contact form on our website, the data you enter (e.g. name, email address, project description) is stored by us in order to process your request. We do not pass on this data without your consent.

Legal basis: Art. 6 (1) lit. b GDPR (initiation of a contract) or Art. 6 (1) lit. f GDPR (legitimate interest). Data from contact inquiries is deleted once the request has been fully processed and no statutory retention obligation applies (generally after 3 years).

5. Cookies and LocalStorage

This website uses only technically necessary cookies as well as local browser storage (LocalStorage). Specifically, the following are stored:

  • jafinity-theme (LocalStorage): Stores your color scheme preference (light/dark). No third party involved, remains local in your browser.
  • CMS session cookies: Technically required for the secure operation of the content management system. Deleted when the browser is closed.

Since these are exclusively technically necessary measures, no consent is required pursuant to Section 25 (2) TTDSG.

6. Fonts (locally hosted)

To ensure a consistent display of fonts, this website uses the "Inter" font family. The font files are delivered locally from our own server and are permanently embedded in the website.

There is no connection to servers operated by Google or other third parties. No personal data is transmitted to third parties for this purpose; in particular, your IP address is not passed on to external font services.

7. Hosting

This website is hosted by an external hosting provider. The personal data collected on this website is stored on the host's servers. A data processing agreement (DPA) pursuant to Art. 28 GDPR has been concluded with the hosting provider.

Hosting provider: [Enter the host's name and address]

8. Your Rights as a Data Subject

You have the following rights with regard to the personal data concerning you:

  • Access (Art. 15 GDPR) — You may request information about the data we process.
  • Rectification (Art. 16 GDPR) — You may request the correction of inaccurate data.
  • Erasure (Art. 17 GDPR) — You may request the deletion of your data, provided no statutory retention obligation applies.
  • Restriction (Art. 18 GDPR) — You may request the restriction of processing.
  • Data portability (Art. 20 GDPR) — You may receive your data in a machine-readable format.
  • Objection (Art. 21 GDPR) — You may object to processing based on legitimate interests.
  • Withdrawal (Art. 7 (3) GDPR) — You may withdraw consent you have given at any time with effect for the future.

To exercise your rights, please contact: [email protected]

We will process your request without undue delay, and at the latest within one month (Art. 12 (3) GDPR).

9. Right to Lodge a Complaint with the Supervisory Authority

If you believe that the processing of your personal data violates the GDPR, you have the right under Art. 77 GDPR to lodge a complaint with a data protection supervisory authority — in particular in the Member State of your habitual residence, your place of work, or the place of the alleged infringement.

Competent supervisory authority in Germany (depending on the federal state): www.bfdi.bund.de

10. SSL/TLS Encryption

For security reasons and to protect the transmission of confidential content, this website uses SSL/TLS encryption. You can recognize an encrypted connection by the "https://" in your browser's address bar and the padlock icon. When SSL encryption is active, the data you transmit to us cannot be read by third parties.