Skip to content
Taveno.
AboutBlog
Language
Privacy

Privacy Policy

This policy informs about the type, scope and purpose of personal data processing on this website in accordance with Art. 13 GDPR and § 5 TMG.

As of: May 2026

Note: Until a consent banner is integrated, no analytics or marketing cookies are set.

1. Data Controller

Responsible for data processing on this website within the meaning of Art. 4 No. 7 GDPR is:

Moritz Schiller (sole proprietorship "Taveno Solutions")
Bachstraße 53 e
46149 Oberhausen
Germany
Phone: +49 163 1944884
Email: schiller@taveno.de

2. General information

Personal data is only collected to the extent necessary for providing the website and our services, or where you voluntarily submit it (e.g. via the contact form). Data is only shared with third parties in the cases described below.

3. Hosting

This website is hosted by Vercel Inc., 340 S Lemon Ave #4133, Walnut, CA 91789, USA. Vercel processes personal data (in particular IP addresses) on our behalf and on the basis of a Data Processing Agreement (DPA) under Art. 28 GDPR. Data transfer to the USA is based on EU Standard Contractual Clauses and additional technical safeguards. Vercel is certified under the EU-US Data Privacy Framework.

Legal basis: Art. 6 (1) (f) GDPR (legitimate interest in providing a reliable, performant website).

4. Server log files

When this website is accessed, technically necessary information is temporarily logged in server log files:

  • anonymised IP address
  • date and time of access
  • requested URL
  • referrer URL
  • browser, operating system and device type

This data is not merged with other data sources and is processed for operational and security reasons. It is generally deleted after 30 days. Legal basis: Art. 6 (1) (f) GDPR.

5. Cookies

This website currently sets only technically necessary cookies required for language selection and security (e.g. NEXT_LOCALE). These cookies do not contain personal data and are set under Art. 6 (1) (f) GDPR and § 25 (2) TTDSG.

As soon as analytics or marketing tools are integrated, this will only happen with your explicit consent via a consent banner.

6. Contact form and email

When you contact us via the form or email, the submitted information (in particular name, email, company, message) is stored to handle the request and for any follow-up.

Legal basis: Art. 6 (1) (b) GDPR (contract initiation) or Art. 6 (1) (f) GDPR. Data is deleted once the request is fully resolved and no retention obligations apply, but no later than three years after the last contact.

For transactional email delivery and the contact form, Resend (Resend, Inc., USA) may be used. Data transfer is based on a DPA and EU SCCs.

7. Fonts (next/font)

We use the fonts "Inter" and "Inter Tight" locally via the next/font integration. Font files are served from the same server that hosts the website. No connection to Google servers is established.

8. External links

This website contains links to external sites (e.g. LinkedIn, Instagram). When you click these links you leave our area of responsibility. The privacy policies of the target sites apply.

9. Recipients

Personal data is generally not passed on to third parties. Recipients are exclusively carefully selected processors (hosting, email delivery) under DPAs per Art. 28 GDPR, and authorities where legally required.

10. Third-country transfers

Transfers to third countries (in particular the USA) only occur in the context of the hosting and email services described above and are protected by EU SCCs, the EU-US Data Privacy Framework, and technical and organisational measures.

11. Your rights

You have the following rights under GDPR:

  • Right of access (Art. 15)
  • Right to rectification (Art. 16)
  • Right to erasure (Art. 17)
  • Right to restriction of processing (Art. 18)
  • Right to data portability (Art. 20)
  • Right to object (Art. 21)
  • Right to withdraw consent (Art. 7 (3))
  • Right to lodge a complaint with a supervisory authority (Art. 77)

An informal message to the contact above is sufficient.

12. SSL/TLS encryption

For security reasons, this website uses SSL/TLS encryption. You can recognise an encrypted connection in the browser's address bar.

13. Processing in client projects

In the context of services for our clients we may process personal data on the client's behalf (e.g. when setting up tracking, email tools or AI agents). In such cases we conclude a Data Processing Agreement under Art. 28 GDPR with the client. A template is available upon request.

14. Updates to this policy

We reserve the right to update this policy when new functions are added or legal requirements change. The current version is always available on this page.