This policy explains how personal data is handled when you visit https://fan-ip.com/ (the “site”) or write to us from it. It follows the EU General Data Protection Regulation (Regulation (EU) 2016/679, “GDPR”), the German Federal Data Protection Act (Bundesdatenschutzgesetz, BDSG) and, for anything stored on your device, § 25 of the German Telecommunications Digital Services Data Protection Act (TDDDG).
Who is responsible
The controller of your data is the provider of the site:
- Name
- Alexis Collin
- Address
- See the Imprint
- contact@fan-ip.com
What the site does not do
- It sets no cookies and stores nothing in your browser.
- It runs no analytics or audience measurement, no advertising, no tracking pixels and no social-media plugins.
- It sends no request to a third party: pages, styles, scripts and fonts are all served from the site’s own address.
- It has no forms and no accounts: you never type anything into it.
Data processed anyway
Technical logs kept by the host
Like any website, the site is delivered by a server, and your browser has to send it some technical data to receive the pages. The host, GitHub, states that it logs and stores visitors’ IP addresses for security purposes.
- Data
- IP address, date and time of the request, page requested, browser identification string.
- Purpose
- Deliver the site and keep it secure.
- Legal basis
- Legitimate interest in running a working, secure website (Article 6(1)(f) GDPR).
- Retention
- Set by the host; see GitHub’s privacy statement.
We do not use these logs to measure audience or to profile anyone.
Emails you send us
When you write to us, for example through “Book a demo”, we receive your message and the data it carries.
- Data
- Your email address, your name and anything you choose to write, such as your company or role.
- Purpose
- Answer you and organise a demo.
- Legal basis
- Steps taken at your request before a possible contract (Article 6(1)(b) GDPR) and, beyond that, our legitimate interest in answering business enquiries (Article 6(1)(f) GDPR).
- Retention
- Until your enquiry and any follow-up are settled; then deleted. Where an email is a business letter that German commercial or tax law requires us to keep (§ 257 HGB, § 147 AO), we keep it for the statutory period, six years from the end of the calendar year in which it was received or sent, and use it for nothing else (Article 6(1)(c) GDPR).
Who receives it
- Alexis Collin, who handles demo requests in person.
- Our technical providers, only for what they do for us: the host, GitHub, Inc. (technical logs), and our email provider, OVHcloud (OVH SAS, France) (the emails you send us).
We do not sell your data, rent it out or share it for advertising.
Transfers outside the EU
The host, GitHub, Inc., is a company based in the United States. The technical data described above is therefore processed in the United States, under the conditions GitHub sets out in its own privacy statement.
Emails you send us are stored by OVHcloud in its data centres in France, within the EU. We do not transfer them outside the EU.
Your rights
Under the GDPR, and where each right applies, you can ask us for:
- Access: to know whether we hold data about you, and to get a copy (Article 15).
- Rectification: to correct data that is wrong or incomplete (Article 16).
- Erasure: to have your data deleted (Article 17).
- Restriction: to have its use suspended for a while (Article 18).
- Portability: to receive the data you gave us in a reusable format (Article 20).
Right to object (Article 21 GDPR). Where we process your data on the basis of our legitimate interest, you can object at any time, on grounds relating to your particular situation. We then stop, unless we can show compelling legitimate grounds or need the data to establish, exercise or defend legal claims.
How to exercise them
Write to contact@fan-ip.com, or by post to the address in the Imprint. We answer within one month. If we have reasonable doubts about who you are, we may ask for information to confirm your identity.
Complaints
You have the right to lodge a complaint with a data protection supervisory authority (Article 77 GDPR), in particular in the EU country where you live or work, or where you think the infringement took place.
The authority responsible for us is the data protection authority of North Rhine-Westphalia: Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen, Kavalleriestraße 2–4, 40213 Düsseldorf, Germany (www.ldi.nrw.de). The German authorities are listed by the Datenschutzkonferenz.
Changes
We may update this policy, for example when the site changes. The date at the top of the page shows the version in force.