Draft: pending the operator’s review
This page must be reviewed by the operator before the site goes live. Until then it is a draft.
Datenschutzerklärung Privacy policy
Last updated: 28 September 2026
This policy explains which personal data Cloudwerks Technology GmbH (“we”) processes when you visit this website or send an inquiry, for what purpose, on which legal basis and for how long (Art. 13 of the General Data Protection Regulation, GDPR). Terms such as “personal data” and “processing” have the meaning given in Art. 4 GDPR.
In short Kurzfassung
- No cookies. This website sets no cookies and stores nothing else in your browser (no local storage, no session storage).
- No tracking and no analytics. We do not measure your visit, build profiles or use advertising services.
- No third-party requests. Fonts, images and scripts come from this website’s own server; your browser does not contact Google Fonts, content delivery networks or any other third party.
- Because there are no cookies and no tracking, this website shows no cookie banner: there is nothing to consent to.
- Apart from the server logs and the protection against abuse described below, we only receive what you type into the inquiry form, and we use it only to answer you.
Controller Verantwortlicher
- Controller
- Cloudwerks Technology GmbHPottenort 1545891 GelsenkirchenGermany
- Represented by
- Markus Niewerth, managing director
- Phone
- +49 176 70526593
We are not required by law to appoint a data protection officer and have not appointed one.
Hosting
This website, including its database, runs on servers of TODO(operator): name and address of the hosting provider. The provider processes data only on our behalf and under our instructions (processor, Art. 28 GDPR).
Server log files Server-Logfiles
When you open a page, the web server automatically records the data your browser sends with every request:
- the page or file requested, with date and time
- the HTTP status code and the amount of data transferred
- the referring page, if your browser sends it
- browser and operating system (user agent)
- the IP address of your device
We need these logs to run the website securely and reliably, for example to detect and investigate attacks; this is our legitimate interest (Art. 6(1)(f) GDPR). The logs are kept for at most 7 days and then deleted. Data needed as evidence of a specific incident is kept until the incident is resolved. The website application itself writes no access log. Its own log records technical events, such as the reference number of an inquiry, but not your IP address or the content of your inquiry; only when an e-mail cannot be delivered may the mail server’s error message in this log contain your e-mail address. The application log is kept no longer than the server logs.
Inquiry form Kontaktformular
If you send an inquiry, for example to invite Markus Niewerth to give a talk, we process the following data:
- the kind of inquiry (talk, workshop, interview, collaboration or other)
- your name and e-mail address
- optionally: your organisation, and for events the date, location and expected audience
- your message
- the time the inquiry was received, its processing status and when the e-mails about it were sent
Purpose and legal basis: we use this data only to answer your inquiry and, where it leads to one, to prepare an agreement, for example about a talk (Art. 6(1)(b) GDPR). For other inquiries the legal basis is our legitimate interest in answering the questions people send us (Art. 6(1)(f) GDPR). You are not obliged to provide the data, but without it we cannot answer you.
Storage: the form is sent encrypted (HTTPS) to this website’s server, which stores the inquiry in its own PostgreSQL database. It is deleted automatically 12 months after it was received (by a daily job, so at the latest one day later).
Forwarding by e-mail: after storing it, the server e-mails the inquiry to us and sends you a short confirmation that repeats nothing you typed. The server connects to TODO(operator): name and address of the e-mail (SMTP) provider over an encrypted connection (TLS) and hands the e-mails to it for delivery; the provider processes them only on our behalf (processor, Art. 28 GDPR). The copy in our mailbox is kept TODO(operator): how long answered inquiries stay in the mailbox.
Protection against abuse: to stop automated spam and floods of inquiries, the server limits the number of inquiries per IP address. For this, your IP address (for IPv6, its network part) is held in the server’s memory only, never written to disk, and removed once your allowance has refilled: with the default settings no later than 70 minutes after your last inquiry. With the inquiry itself we store your IP address only as a salted hash: a value from which the address cannot be read back without our secret key, but which lets us recognise several inquiries from the same address. The hash is still personal data (pseudonymised) and is deleted together with the inquiry. The legal basis is our legitimate interest in protecting the form from abuse (Art. 6(1)(f) GDPR).
We do not pass your inquiry on to anyone else, and we do not use it for advertising or newsletters.
Links to other websites Externe Links
This website links to other websites, mainly GitHub and LinkedIn. Only when you follow such a link does your browser contact that website; its own privacy policy then applies.
Transfers outside the EU Übermittlung in Drittländer
We do not transfer personal data collected on this website to countries outside the European Union or the European Economic Area. TODO(operator): confirm that the hosting and the e-mail provider process data only within the EU/EEA; otherwise name the transfer and its safeguard (Art. 44 ff. GDPR).
Your rights Ihre Rechte
You have the right to access the data we hold about you (Art. 15 GDPR), to have it corrected (Art. 16) or erased (Art. 17), to restrict its processing (Art. 18) and to receive it in a portable format (Art. 20).
Right to object: where we process data on the basis of our legitimate interest (Art. 6(1)(f) GDPR), you may object at any time on grounds relating to your particular situation (Art. 21 GDPR).
You also have the right to lodge a complaint with a data protection supervisory authority (Art. 77 GDPR). The authority responsible for us is the Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen.
Contact for privacy requests Kontakt für Datenschutzanfragen
To exercise your rights, or for any question about this policy, write to markus.niewerth@cloudwerks.de. You can ask us at any time to delete an inquiry you sent.
Changes to this policy Änderungen
We update this policy when the website or the law changes. The version published here applies.