Privacy Policy

Last updated: [[LEGAL_PLACEHOLDER:DATE]]

1. Controller

[[LEGAL_PLACEHOLDER:CONTROLLER_NAME]]
[[LEGAL_PLACEHOLDER:CONTROLLER_ADDRESS]]
[[LEGAL_PLACEHOLDER:CONTROLLER_EMAIL]]

2. Privacy contact

[[LEGAL_PLACEHOLDER:DPO_OR_CONTACT]]

3. Scope

This privacy policy applies to the website, app, and all related WP SmartCare services.

4. Categories of personal data

  • Master/account data (email, name, login information, language settings)
  • Contract and billing data (plan, payment status, invoice data, PayPal references)
  • Usage and telemetry data (log files, events, diagnostics, availability information)
  • Communication data (support requests, email communication)
  • Cookie and consent data

5. Purposes and legal bases (Art. 6 GDPR)

  • Contract performance / pre-contractual measures (Art. 6(1)(b) GDPR)
  • Compliance with legal obligations (Art. 6(1)(c) GDPR)
  • Legitimate interests (Art. 6(1)(f) GDPR), e.g. IT security, abuse prevention, product improvement
  • Consent (Art. 6(1)(a) GDPR) for optional analytics/marketing technologies

6. Recipients and processors

We use external service providers as processors and/or independent controllers.

  • [[LEGAL_PLACEHOLDER:HOSTING_PROVIDER]]
  • [[LEGAL_PLACEHOLDER:EMAIL_PROVIDER]]
  • PayPal (payment processing)
  • [[LEGAL_PLACEHOLDER:ADDITIONAL_PROCESSORS]]

7. International transfers

Where data is transferred to third countries outside the EU/EEA, this is done only in compliance with Art. 44 et seq. GDPR (e.g., adequacy decision, standard contractual clauses, additional safeguards).

[[LEGAL_PLACEHOLDER:THIRD_COUNTRY_TRANSFER_DETAILS]]

8. Cookies, consent and tracking

We use a consent banner with a choice between essential cookies and full consent. Essential cookies are used, for example, for authentication and security. Analytics/marketing (e.g., GTM, GA, Ads) is used only with consent.

  • Consent Tool: [[LEGAL_PLACEHOLDER:CONSENT_TOOL]]
  • Google Tag Manager: [[LEGAL_PLACEHOLDER:GTM_SETUP]]
  • Google Analytics: [[LEGAL_PLACEHOLDER:GA_SETUP]]
  • Google Ads / Conversion Tracking: [[LEGAL_PLACEHOLDER:GOOGLE_ADS_SETUP]]
  • Meta Pixel / Meta Ads: [[LEGAL_PLACEHOLDER:META_PIXEL_SETUP]]

9. Retention periods

We store personal data only as long as necessary for the respective purpose or where statutory retention periods apply.

[[LEGAL_PLACEHOLDER:RETENTION_DETAILS]]

10. Data security

We implement appropriate technical and organizational measures (TOMs) to protect personal data.

[[LEGAL_PLACEHOLDER:SECURITY_MEASURES]]

11. Data subject rights

You have rights of access, rectification, erasure, restriction of processing, data portability, objection, and withdrawal of consent for the future.

12. Right to lodge a complaint

You have the right to lodge a complaint with a data protection supervisory authority.

[[LEGAL_PLACEHOLDER:SUPERVISORY_AUTHORITY]]

13. Obligation to provide data

Where data is required to enter into or perform a contract, providing such data is necessary; without such data the service may not be available.

14. Automated decision-making

No solely automated decision-making within the meaning of Art. 22 GDPR is carried out.

15. Changes to this privacy policy

We reserve the right to update this privacy policy if legal requirements, services, or processing activities change.