Legal
Privacy Policy
This is a translation of our German privacy policy, provided for your convenience. In the event of any discrepancy between the two versions, the German original prevails.
1. Privacy at a glance
General information
The following notes provide a simple overview of what happens to your personal data when you visit this website. Personal data is any data that can be used to identify you personally. For detailed information on data protection, please refer to the privacy policy set out below.
2. Controller
The controller responsible for data processing on this website is:
Cauliflower GmbH & Co. KG
Fischertwiete 2
Chilehaus A
20095 Hamburg
Germany
Managing Director: Lukas Jonathan Waidelich
Email: privacy@cauliflower.ai
The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data (e.g. names, email addresses or similar).
3. Data collection on this website
Server log files
The provider of these pages automatically collects and stores information in so-called server log files, which your browser transmits to us automatically. These are:
- Browser type and browser version
- Operating system used
- Referrer URL
- Host name of the accessing computer
- Time of the server request
- IP address
This data is not merged with other data sources. It is collected on the basis of Art. 6(1)(f) GDPR. The website operator has a legitimate interest in the technically error-free presentation and optimisation of its website — this requires server log files to be recorded.
Cookies
Our website only uses technically necessary cookies. Technically necessary cookies are set on the basis of Art. 6(1)(f) GDPR. We do not use marketing or tracking cookies.
Contacting us and demo requests
If you contact us by email or via our contact or demo form, the details you provide (first and last name, company, email address, role, message, and your optional answer as to how you heard about us) are stored and processed for the purpose of handling your enquiry. Processing takes place on the basis of Art. 6(1)(b) GDPR (steps taken at your request prior to entering into a contract).
Your data is not passed on to third parties for their own purposes. For processing, however, we use carefully selected processors who act exclusively on our instructions (Art. 28 GDPR):
- Amazon Web Services (AWS), Amazon Web Services EMEA SARL — storage of incoming enquiries in a database (Amazon DynamoDB). Processing takes place exclusively in the EU Frankfurt region.
- Amazon Simple Email Service (SES), Amazon Web Services EMEA SARL — sending the confirmation of receipt to you and the internal notification to us. Processing takes place in the EU Frankfurt region.
We process this data until the purpose of processing no longer applies and then delete it, unless statutory retention obligations prevent this.
Appointment booking (Google Calendar)
On our contact page we offer you the option of booking a meeting directly via a link. This link leads to a booking form provided by Google (Google Ireland Limited, Ireland). Data is only transmitted to Google, and processed there under Google's terms, once you follow the link: Google privacy policy. No data is transmitted to Google from our website itself.
4. Hosting
This website is hosted with Amazon Web Services (AWS). For details, please see the AWS privacy notice: https://aws.amazon.com/privacy/. AWS is used on the basis of Art. 6(1)(f) GDPR. We have a legitimate interest in the reliable presentation of our website.
5. Your rights
You have the right at any time:
- To obtain information about the personal data we hold about you (Art. 15 GDPR)
- To request the rectification of inaccurate data (Art. 16 GDPR)
- To request the erasure of the data we hold about you (Art. 17 GDPR)
- To request the restriction of processing (Art. 18 GDPR)
- To object to the processing of your data (Art. 21 GDPR)
- To request data portability (Art. 20 GDPR)
If you believe that the processing of your data infringes data protection law, you have the right to lodge a complaint with a supervisory authority (Art. 77 GDPR). The competent supervisory authority is the Hamburg Commissioner for Data Protection and Freedom of Information.
6. Data protection contact
If you have any questions about data protection, please contact us at:
Email: privacy@cauliflower.ai