Privacy Policy

Test mode notice: This website is a private hobby project currently running in test mode. Any data you enter is processed for testing only and may be deleted at any time without prior notice.

1. Overview

General information

This page explains what happens to your personal data when you visit this website. Personal data means any information relating to an identified or identifiable natural person. Detailed information can be found in the policy below.

Data collection on this website

Who is responsible?

Data processing is carried out by the website operator (see Controller below).

How do we collect your data?

Some data is provided directly by you (e.g. tournament registration form, account registration). Other data is collected automatically when visiting the site (e.g. IP address in server logs, technically necessary cookies).

What do we use your data for?

We use data to provide a secure and functional website (sessions, CSRF protection), to process tournament registrations and to operate the restricted user area.

Your rights

You have the rights of access, rectification, erasure, restriction, objection and data portability as provided by the GDPR, and the right to lodge a complaint with a supervisory authority. You can contact us at any time.

2. Hosting

Hetzner

We host this website with Hetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen (“Hetzner”). See Hetzner’s privacy policy: https://www.hetzner.com/legal/privacy-policy/.

Processing is based on Art. 6(1)(f) GDPR (legitimate interest in reliable hosting). If consent is requested (e.g. for storing information on the device), processing is additionally based on Art. 6(1)(a) GDPR and Section 25(1) of the German TDDDG. You can withdraw consent at any time.

Data Processing Agreement

We have concluded a Data Processing Agreement with Hetzner. Hetzner processes personal data only on our instructions and in compliance with the GDPR.

3. General information

Data protection

We handle your personal data confidentially and in accordance with the GDPR and this policy. Please note that data transmission on the internet (e.g. by email) may have security gaps.

Controller

Michael Neumann
Talstraße 75
96523 Steinach
Email: michael.neumann@bogenmichel.de

Storage periods

Unless stated otherwise, personal data is stored only as long as necessary for the respective purpose. Server logs at Hetzner are kept for up to 7 days. In test mode, test registrations and accounts may be cleaned up at any time.

Legal bases

Where you have given consent, processing is based on Art. 6(1)(a) GDPR (and Art. 49(1)(a) GDPR if applicable) and Section 25(1) TDDDG. For contracts or pre-contractual steps (e.g. tournament registration, login/registration) processing is based on Art. 6(1)(b) GDPR. Legal obligations are based on Art. 6(1)(c) GDPR. Otherwise we rely on Art. 6(1)(f) GDPR (legitimate interests in secure operation).

Recipients

We disclose data to third parties only if required to fulfil a contract, if we are legally obliged to do so, if our legitimate interests prevail, or with your consent. As part of processing, our hosting provider Hetzner may receive access to technically necessary data.

Withdrawal of consent

You may withdraw your consent at any time with effect for the future.

Right to object (Art. 21 GDPR)

You have the right to object, on grounds relating to your particular situation, to processing based on Art. 6(1)(e) or (f) GDPR. We do not use your data for direct marketing.

Complaint

You have the right to lodge a complaint with a competent supervisory authority.

Data portability, access, rectification, erasure, restriction

You have the rights to data portability, access, rectification, erasure and restriction under the GDPR.

TLS encryption

This site uses TLS encryption. You can recognise an encrypted connection by “https://” and the lock icon in the browser address bar.

4. Processing in detail

4.1 Technically necessary cookies & sessions

We use only strictly necessary cookies (e.g. session ID, CSRF token) and an optional remember-me cookie for login. No tracking, analytics or marketing cookies are used. Legal basis: Art. 6(1)(f) GDPR in conjunction with Section 25(2) No. 2 TDDDG.

4.2 Server log files

When visiting the site, the server automatically processes data such as IP address, date/time, requested URL, user agent and referrer. Logs are kept at Hetzner for up to 7 days (Art. 6(1)(f) GDPR).

4.3 Tournament registration form

When you register for a tournament, we process the data you provide (e.g. name, email address, age group, bow class, club if applicable). Purpose: organisation and evaluation of the tournament. Legal basis: Art. 6(1)(b) GDPR (contract/steps prior to entering a contract). In test mode, entries may be deleted at any time; test data is regularly cleaned up.

4.4 User account & login

For the user area we process your email address and a password chosen by you. Passwords are stored only in hashed form (no plaintext). Purpose: providing access and account management (Art. 6(1)(b) GDPR). You may request deletion of your account at any time; in test mode we regularly purge test accounts.

4.5 Email communication

If you contact us by email, we process your details to handle the request (Art. 6(1)(b) or (f) GDPR). Emails are kept only as long as required to process the request.

4.6 No external analytics/marketing resources

No analytics or marketing services are used. Libraries such as Bootstrap/Font Awesome are served locally; there is no loading from third-party CDNs.

5. Minors

This service is not directed at children under the age of 16. Minors may only register with consent of their legal guardians.

6. Changes

We may amend this policy to reflect legal requirements or functional changes of this website.

Base structure inspired by eRecht24 (adapted to this specific use case, test mode and services).