Privacy Policy
Learn how we collect, use, and protect your personal data in accordance with GDPR.
Scope
Version: November 2025
This privacy policy applies to all IDNT online services including websites, customer portals, mobile applications, and online services operated by IDNT Europe GmbH. We collect, process, and protect personal data globally according to the same high standards, in compliance with the GDPR, BDSG, TTDSG, and Digital Services Act.
Data Minimization Principle: We collect only the personal data that is absolutely necessary to provide the requested services. We do not sell personal data for commercial purposes. Information is only shared with third parties when necessary for contract fulfillment or when you have provided explicit consent.
Personal Information We Collect
Technical Information
When accessing our services, we automatically collect technical information required for proper functionality and security:
Information Collected:
Information transmitted by client/browser such as IP address, preferred languages, time zone, and technical parameters for website display and functionality.
Purpose of Collection:
System security, performance optimization, fraud prevention, technical functionality, and error diagnosis.
Legal Basis:
Legitimate business interest (Art. 6(1)(f) GDPR) for security and functionality.
Storage Duration:
As long as required for the stated purposes, subject to legal retention requirements.
Contact Form Submissions
When you contact us through forms on our website, we collect and process the information you provide:
Information Collected:
Contact information you provide, identification details, and content and scope of your communications including time of submission.
Purpose of Use:
Answering your inquiries, customer service, business relationship management, and service improvement.
Legal Basis:
• Contract performance (GDPR Art. 6(1)(b)) for business inquiries
• Your consent (GDPR Art. 6(1)(a)) for newsletter subscriptions
Access Authorization:
Our customer service team and relevant technical departments.
Storage Duration:
As long as required for business purposes and legal requirements. Marketing communications: until consent is withdrawn.
Account Creation
When you create an account with us, we store the information you provide:
Account Information We Store:
Contact information you provide, information for unique identification and security verification, and account settings and preferences.
Why We Need It:
Account management, user authentication, service personalization, security monitoring, and account-related communication.
Security Measures:
• Passwords encrypted with industry-standard methods
• Two-factor authentication available
• Access restricted to account management and security teams
Retention:
Until account deletion or as long as required for business purposes and legal requirements.
After Deletion:
Some information may be retained if required to fulfill legal retention obligations.
Order Processing
When you place an order, we collect information required to fulfill your purchase and comply with legal requirements:
Order Information:
Billing and delivery addresses, encrypted payment details, transaction history, order specifications, invoice data, and VAT information.
How We Use It:
Order processing, payment handling, invoicing, tax compliance, fraud prevention, customer service, and warranty management.
Third-Party Sharing:
We share necessary information with payment providers, banks, tax authorities, and accounting services - all under strict data protection agreements.
Retention:
As long as required for business, legal, and regulatory requirements. Some records may be retained longer if legally required.
Data Protection:
All contractors must comply with our data protection agreements and standards.
Customer Support
When you request support, we collect information needed to resolve your problems and improve our services:
Support Information:
Support ticket details, technical system information, software versions, error logs, configuration data, interaction history, and satisfaction ratings.
How We Use It:
Providing technical support, problem resolution, service improvement, staff training, and quality assurance.
Who Has Access:
Technical support teams, development teams (for bug fixes), and approved external service providers under strict agreements.
Retention:
For the duration of the respective support case including subsequent documentation and proof obligations as well as for billing purposes. In individual cases, storage in anonymized form for training purposes to improve service quality according to Art. 6(1)(f) GDPR.
Job Applications
As part of application processes, we collect and process information required to evaluate your suitability:
Application Documents:
Application materials you submit including CV, certificates, qualification proofs, and information provided during interviews.
Purpose of Processing:
Conducting the application process, suitability assessment, communication during the application process, and fulfilling legal documentation obligations.
Legal Basis:
Art. 6(1)(b) GDPR (pre-contractual measures) and Art. 88 GDPR in conjunction with § 26 BDSG (employment relationship).
Storage Duration:
In case of non-hiring, application documents are deleted after completion of the process, unless further storage has been consented to or legal retention obligations exist.
Additional Privacy Policies
Some products or services may have additional privacy policies with specific conditions. We will notify you of these policies and request your consent before you order or use such products.
Conflict Resolution: In case of conflicts between this general policy and a product-specific policy, this general privacy policy takes precedence.
Simple Contact: For all privacy inquiries, please use exclusively our central email address. We process all requests within legal deadlines without complex procedures.
Your GDPR Rights
Your GDPR Rights
- Right of Access (Art. 15): Information about your processed personal data, including purposes, categories, recipients, and storage duration
- Right to Rectification (Art. 16): Correction of inaccurate or incomplete personal data
- Right to Erasure (Art. 17): Deletion of your personal data ("right to be forgotten") when no longer required
- Right to Restriction (Art. 18): Restriction of processing of your personal data under certain circumstances
- Right to Data Portability (Art. 20): Receive your data in machine-readable format or transfer to another controller
- Right to Object (Art. 21): Object to processing based on legitimate interests or for direct marketing
- Right to Withdraw Consent: Withdraw consent at any time for consent-based processing (does not affect past processing)
Exercising Your Rights
Contact our Data Protection Officer using the details below. We respond within 30 days (may be extended by 60 days for complex requests). Rights may be limited by legal obligations or legitimate interests.
Supervisory Authority
You have the right to file a complaint with the Federal Commissioner for Data Protection and Freedom of Information (BfDI) or your local data protection authority.
Automated Decision Making
We do not use automated decision-making or profiling that produces legal effects or significantly affects you without human oversight and intervention options.
Privacy Contact
Data Controller
IDNT Europe GmbH
Frankfurter Str. 57
35440 Linden
Deutschland