privacy policy.

We, iteratec GmbH, believe that you should have control over your data. We take the protection of your personal data very seriously and strictly adhere to data protection laws. This privacy policy provides you with an overview of how we ensure this protection, the type of data we collect, the purpose for which we collect it, and your rights concerning your personal data.

If you have questions about data protection, you can contact us at any time.

Changes that we make to the "Privacy Policy of iteratec GmbH" in the future will be posted on this page. This privacy policy is effective as of December 11, 2024.

Responsible Party

Company: iteratec GmbH
Address: St.-Martin-Str. 114
Postal Code, City: 81669 Munich
Commercial Register Number: HRB 113519
Managing Directors: Klaus Eberhardt, Jörg-Stefan Rauch, Michael Schulz, Alexander Youssef
Telephone: +49 89 61 45 51 0
Email: office@iteratec.com

Data Protection Officer You can reach our Data Protection Officer at datenschutz@iteratec.com.

1. General Information on Data Processing and Legal Basis

1.1. This privacy policy informs you about the type, scope, and purpose of the processing of personal data within our websites, features, and content (hereinafter referred to collectively as "Website"). The privacy policy applies regardless of the domains, systems, platforms, or devices (e.g., desktop or mobile) used to access the online offering.

1.2. The terms used, such as "personal data" or its "processing," refer to the definitions in Article 4 of the General Data Protection Regulation (GDPR).

1.3. The personal data of users processed within the online offering include usage data (browser type and version, operating system, URL of the previously visited page, IP address of the accessing device, and time of request) and content data (e.g., inputs in the application form).

1.4. The term "user" encompasses all categories of persons affected by the data processing. These include our business partners, customers, prospects, and other visitors to our online offering. The terms used, such as "user," are gender-neutral.

1.5. We process personal data of users only in compliance with the relevant data protection regulations. This means that user data is processed only when legally permitted, especially if the data processing is required by law, if the users have given consent, or based on our legitimate interests (e.g., interest in analyzing, optimizing, and economically operating and securing our online offering in accordance with Art. 6(1)(f) GDPR, particularly for reach measurement, profile creation for advertising and marketing purposes, data access tracking, and the use of third-party services).

1.6. We point out that the legal basis may include consent for processing, the fulfillment of our services and execution of contractual measures, compliance with legal obligations, or protection of our legitimate interests (Art. 6(1)(a) and Art. 7 GDPR).

1.7. Sources and Data Usage: We process personal data from customers, suppliers, prospects, applicants, and employees in the context of business relationships, application procedures, or employment. We also use data from publicly accessible sources where processing is permissible. The legal basis is compliance with (pre-)contractual obligations, legitimate interest, legal requirements, or consent from the data subject.

2. Security Measures

2.1. We implement organizational, contractual, and technical security measures in accordance with the state of the art to ensure compliance with data protection laws and to protect the data we process against accidental or intentional manipulation, loss, destruction, or unauthorized access.

2.2. Security measures include the encrypted transmission of data between your browser and our server.

Found a security vulnerability? Please contact us at security@iteratec.com. We will respond as quickly as possible. For encrypted contact, you can use our certificate.

2.3. As the security team at iteratec, we take care of your safety on the internet. If you experience issues such as the misuse of our or your network access or receive spam from one of our addresses, please contact us at abuse@iteratec.com.

3. Sharing Data with Third Parties and Third-Party Providers

3.1. Data sharing with third parties occurs only within the framework of legal requirements. User data is shared with third parties only if necessary for contractual purposes (Art. 6(1)(b) GDPR) or based on our legitimate interests (Art. 6(1)(f) GDPR) in operating our business efficiently.

3.2. If we use subcontractors to provide our services, we take appropriate legal precautions and adopt suitable technical and organizational measures to ensure the protection of personal data under relevant legal provisions.

3.3. If this privacy policy references content, tools, or other means provided by third-party providers (hereinafter referred to collectively as "third-party providers"), such transfers occur only to countries with an adequate level of data protection or within the GDPR’s jurisdiction.

4. Cookiebot (Cookie Consent Tool)

Our website uses the Cookiebot Consent Tool to obtain and document your consent for storing certain cookies in your browser in compliance with data protection laws. Cookiebot is operated by Cybot A/S, 1058 Copenhagen, Denmark.

When you access our website, a Cookiebot cookie is stored in your browser, documenting the consents you have given or withdrawn.

The use of Cookiebot Consent Technology complies with Art. 6(1)(f) GDPR, based on our legitimate interest in providing a cookie consent management service for website visitors.

Further information about how transferred data is handled can be found in Cookiebot’s privacy policy: https://www.cookiebot.com/de/privacy-policy/

5. Cookies

Further information, including how cookies function, their purpose, scope, legal basis, and withdrawal options, can be found here.

6. User Rights

7. Data Deletion

Stored data will be deleted as soon as it is no longer needed for its intended purpose, and legal retention obligations do not prevent deletion. If data cannot be deleted, its processing will be restricted. This applies, for example, to user data retained for commercial or tax purposes.

8. Right to Object

Users may object to the future processing of their personal data at any time, following legal provisions. This includes objection to processing for direct marketing purposes. Objections should be addressed to the Responsible Party.

9. Changes to the Privacy Policy

We reserve the right to amend this privacy policy to reflect changes in legal requirements, our services, or data processing. Such changes apply only to declarations regarding data processing. Where user consent is required or contractual terms are affected, changes will occur only with user consent.

Users are encouraged to review the privacy policy regularly.

Munich, December 11, 2024
The Management