Privacy Policy
Last updated: June 2026
1. Controller
The controller responsible for data processing on this website is:
Florian Maier
Scale-smart
Hofbauernstr. 13
83700 Rottach-Egern, Germany
Email: consulting@scale-smart.de
2. General information
We take the protection of your personal data seriously. We process personal data in accordance with the EU General Data Protection Regulation (GDPR), the German Federal Data Protection Act (BDSG), and the German Telecommunications Digital Services Data Protection Act (TDDDG).
"Personal data" means any information relating to an identified or identifiable natural person. This policy explains what data we process, for what purposes, and on what legal basis.
3. Hosting (Wix)
This website is hosted by Wix.com Ltd. ("Wix"), Nemal Tel Aviv St. 40, Tel Aviv 6350671, Israel. When you visit our website, Wix automatically collects and stores information transmitted by your browser in server log files (see section 4).
Wix processes this data on our behalf as a processor under a data processing agreement pursuant to Art. 28 GDPR. The legal basis is our legitimate interest in a secure and efficient provision of our website (Art. 6 (1) (f) GDPR). Israel benefits from an EU adequacy decision; where Wix uses sub-processors outside the EU, transfers are safeguarded by appropriate measures such as Standard Contractual Clauses.
Further information: https://www.wix.com/about/privacy
4. Server log files
When you access our website, the following data is automatically collected and stored in log files: browser type and version, operating system, referrer URL, host name of the accessing device, time of the server request, and IP address.
This data is not merged with other data sources. Processing is based on Art. 6 (1) (f) GDPR; we have a legitimate interest in the technically error-free presentation and security of our website.
5. Cookies and consent
Our website uses cookies and similar technologies. Some are technically necessary for the website to function; others are only used with your consent (e.g. analytics and marketing tools).
When you first visit our website, you can decide via our cookie banner which categories you wish to allow. You can change or withdraw your selection at any time with effect for the future via the cookie settings.
The legal basis for storing technically necessary cookies is Art. 6 (1) (f) GDPR and § 25 (2) TDDDG. For all other cookies and technologies, the legal basis is your consent pursuant to Art. 6 (1) (a) GDPR and § 25 (1) TDDDG.
6. Contact and appointment scheduling
If you contact us via our contact form or by email, the data you provide (e.g. name, company, email address, phone number, and your message) will be processed for the purpose of handling your request and any follow-up communication.
If we subsequently arrange an appointment with you by phone or email, we process the contact data required for that purpose (e.g. name, email address, phone number, requested time).
The legal basis is Art. 6 (1) (b) GDPR where your request relates to the performance or initiation of a contract, and otherwise our legitimate interest in responding to your enquiry (Art. 6 (1) (f) GDPR). We retain this data until your request has been fully dealt with, unless statutory retention periods apply.
7. Online meetings (Google Meet)
We use Google Meet, a service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland ("Google"), to conduct online meetings and video calls. When you take part in a meeting, Google processes the data required to provide the service (e.g. name, email address, and the audio, video and any chat content you share during the call).
Data may be transferred to Google servers, including in the USA; such transfers are safeguarded via the EU-US Data Privacy Framework and/or Standard Contractual Clauses. Participation is voluntary and based on steps taken prior to or during the performance of a contract (Art. 6 (1) (b) GDPR) and our legitimate interest in efficient remote communication (Art. 6 (1) (f) GDPR).
Further information: https://policies.google.com/privacy
8. Newsletter
If you subscribe to our newsletter, we use the email address you provide to send you information and updates. We use the double opt-in procedure: after registering, you receive a confirmation email and your subscription only becomes active once you confirm it.
The legal basis is your consent pursuant to Art. 6 (1) (a) GDPR. You can unsubscribe and withdraw your consent at any time, e.g. via the unsubscribe link in each newsletter.
9. Google Analytics
This website uses Google Analytics, a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland ("Google"). Google Analytics uses cookies to help us analyse how visitors use our website (e.g. pages visited, time on site, approximate location based on a shortened IP address).
This data may be transferred to and stored on Google servers, including in the USA. Transfers are safeguarded via the EU-US Data Privacy Framework and/or Standard Contractual Clauses.
We only use Google Analytics if you have given your consent via our cookie banner. The legal basis is Art. 6 (1) (a) GDPR and § 25 (1) TDDDG. You can withdraw your consent at any time via the cookie settings.
Further information: https://policies.google.com/privacy
10. LinkedIn Insight Tag
This website uses the LinkedIn Insight Tag, a service provided by LinkedIn Ireland Unlimited Company, Wilton Plaza, Wilton Place, Dublin 2, Ireland ("LinkedIn"). It enables us to obtain statistical, pseudonymised reports on website usage and the performance of our LinkedIn activities.
Data may be transferred to LinkedIn servers, including in the USA, safeguarded via the EU-US Data Privacy Framework and/or Standard Contractual Clauses.
We only use the LinkedIn Insight Tag if you have given your consent via our cookie banner. The legal basis is Art. 6 (1) (a) GDPR and § 25 (1) TDDDG. You can withdraw your consent at any time via the cookie settings.
Further information: https://www.linkedin.com/legal/privacy-policy
11. Google Fonts
This website may use Google Fonts to display text consistently. If fonts are loaded directly from Google servers, your browser transmits your IP address to Google (Google Ireland Limited; servers may be located in the USA).
Where fonts are loaded externally, this only occurs with your consent (Art. 6 (1) (a) GDPR and § 25 (1) TDDDG). To avoid this transfer, fonts can alternatively be hosted locally. Further information: https://policies.google.com/privacy
12. Your rights
Under the GDPR, you have the following rights regarding your personal data:
-
Right of access (Art. 15 GDPR)
-
Right to rectification (Art. 16 GDPR)
-
Right to erasure (Art. 17 GDPR)
-
Right to restriction of processing (Art. 18 GDPR)
-
Right to data portability (Art. 20 GDPR)
-
Right to object to processing (Art. 21 GDPR)
-
Right to withdraw consent at any time with effect for the future (Art. 7 (3) GDPR)
To exercise any of these rights, please contact us using the details in section 1.
13. Right to lodge a complaint
You have the right to lodge a complaint with a data protection supervisory authority. The authority responsible for us is:
Bayerisches Landesamt für Datenschutzaufsicht (BayLDA)
Promenade 18, 91522 Ansbach, Germany
https://www.lda.bayern.de
14. Right to object
Where processing is based on our legitimate interests (Art. 6 (1) (f) GDPR), you have the right to object at any time, on grounds relating to your particular situation. We will then no longer process the data concerned unless we can demonstrate compelling legitimate grounds that override your interests, rights and freedoms, or the processing serves the establishment, exercise or defence of legal claims.
15. Data security
We use SSL/TLS encryption to protect the transmission of data via our website. An encrypted connection is indicated by "https://" in your browser's address bar.
16. Changes to this Privacy Policy
We may update this Privacy Policy to reflect changes in our processing activities or legal requirements. The current version is always available on this website.
