Privacy Policy
This Privacy Policy explains how WEITBLICKA ("WEITBLICKA", "we", "us") collects, uses, and protects personal data when you use our website, platform, and services (the "Service"). It is written with EU/UK General Data Protection Regulation ("GDPR") considerations in mind.
1. Information We Collect
- Account data: email address, password (stored as a salted hash), and optional display name.
- Technical data: IP address, browser and device information, language preference.
- Usage data: pages visited, features used, query metadata, timestamps.
- Billing data (paying customers only): billing address and limited payment metadata, handled by our third-party payment processor.
2. How We Use Information
- To provide, maintain, and improve the Service.
- To authenticate you and protect your account.
- To send transactional communications (e.g. account, billing, security notices).
- To prevent fraud, abuse, and security incidents.
- To analyze aggregate usage to improve the product.
3. Legal Basis (GDPR)
- Performance of a contract — to provide the Service you signed up for.
- Legitimate interest — for security, fraud prevention, and product improvement.
- Consent — for any optional marketing communications. You can withdraw consent at any time.
- Legal obligation — when we must retain or disclose data to comply with law.
4. Sharing of Information
We share personal data only with:
- Service providers acting under contract on our behalf (e.g. cloud hosting, payment processing, transactional email).
- Authorities, when legally required (subpoena, court order, regulatory request).
We do not sell personal data, and we do not share it with third parties for their own marketing.
5. Data Retention
- Account data: retained while the account is active and for up to 12 months after deletion (for legal and audit purposes).
- Authentication events (logins, refreshes, logouts): retained for 90 days for security and abuse investigation.
- Aggregated, anonymized analytics: retained indefinitely.
6. Your Rights (GDPR)
If you are in the EU, UK, EEA, or another jurisdiction with similar protections, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data (rectification).
- Request deletion (erasure / “right to be forgotten”).
- Request a portable copy of your data.
- Object to certain processing or restrict it.
- Withdraw consent at any time where processing is based on consent.
- Lodge a complaint with your local data protection authority.
To exercise these rights, email info@weitblicka.com. We will respond within 30 days.
7. Data Security
We protect personal data with industry-standard measures, including bcrypt password hashing, HTTPS in transit, encryption at rest where applicable, principle-of-least-privilege access controls, and routine review of authentication and authorization logs.
8. International Transfers
Your data may be processed in regions where our servers or service providers operate. Where transfers leave the EU/EEA, we rely on appropriate safeguards such as Standard Contractual Clauses (SCCs) approved by the European Commission.
9. Children's Privacy
The Service is not intended for individuals under 16 years of age, and we do not knowingly collect personal data from children. If we become aware that we have collected such data without verifiable parental consent, we will delete it.
10. Cookies
We use a minimal set of essential cookies and similar technologies, including a session cookie for authentication state and a theme preference. We do not use third-party advertising or cross-site tracking cookies.
11. Changes to this Policy
We may update this Policy from time to time. Material changes will be communicated by email or in-product notice. The "Last updated" date at the top of this page reflects the most recent revision.
12. Contact
Privacy questions or requests: info@weitblicka.com.