Privacy Policy

1. Controller

The controller within the meaning of the EU General Data Protection Regulation (GDPR) is:
DripBack GmbH, Werkstr. 12A, 33818 Leopoldshöhe, Germany
Represented by Managing Directors Timo Korte and Ruslan Dzhanbatyrov
Email: info@dripback.de

2. General principles

We process personal data only where it is necessary to provide a functional website along with our content and services. Processing generally takes place with the user's consent (Art. 6 (1) (a) GDPR) or on another legal basis, such as Art. 6 (1) (b), (c), or (f) GDPR.

3. Server log files

When you visit our site, our hosting provider automatically records information transmitted by your browser, including:

Legal basis: Art. 6 (1) (f) GDPR, our legitimate interest in stable, secure operation. Retention is 14 days at most, after which the data is deleted automatically. We do not combine these logs with any other data source.

4. Hosting

This website runs in a data center inside the European Union. A data processing agreement under Art. 28 GDPR is in place with our hosting provider.

5. Contact

If you contact us through the contact form or by email, we store your details in order to handle your inquiry and any follow-up questions. Legal basis: Art. 6 (1) (b) GDPR for pre-contractual steps, or Art. 6 (1) (f) GDPR for our legitimate interest in handling inquiries efficiently. We do not share this data without your consent. We keep it until your inquiry is fully resolved, and delete it earlier if you ask us to.

6. Cookies

This website uses no tracking cookies and no third-party tracking. If we ever introduce non-essential cookies, we will do so only with your explicit consent, collected through a consent tool.

7. Fonts

All typefaces used on this website are hosted on our own servers within the European Union. No font request is made to Google Fonts or to any other external provider, so no IP address is transmitted to a third party in order to render text.

8. Recipients and processors

We share personal data with third parties only where it is needed to perform a contract, where the law requires it, or where you have consented. Every processor we engage is bound by a data processing agreement under Art. 28 GDPR.

9. Transfers to third countries

Transfers to countries outside the EU and EEA take place only where they are necessary, legally required, or based on your consent. Where a US-based service is involved, we rely on the EU-US Data Privacy Framework, Standard Contractual Clauses, and supplementary safeguards.

10. Your rights

Under the GDPR you have the following rights:

11. Data security

Traffic to and from this site is encrypted with TLS. We apply technical and organizational measures to protect your data against manipulation, loss, and unauthorized access.

12. Changes to this policy

This Privacy Policy is current as of August 2026. We will update it as this website changes or as legal requirements change.

← Back to home