Privacy Policy
Last updated: [[LEGAL_PLACEHOLDER:DATE]]
1. Controller
[[LEGAL_PLACEHOLDER:CONTROLLER_NAME]]
[[LEGAL_PLACEHOLDER:CONTROLLER_ADDRESS]]
[[LEGAL_PLACEHOLDER:CONTROLLER_EMAIL]]
2. Privacy contact
[[LEGAL_PLACEHOLDER:DPO_OR_CONTACT]]
3. Scope
This privacy policy applies to the website, app, and all related WP SmartCare services.
4. Categories of personal data
- Master/account data (email, name, login information, language settings)
- Contract and billing data (plan, payment status, invoice data, PayPal references)
- Usage and telemetry data (log files, events, diagnostics, availability information)
- Communication data (support requests, email communication)
- Cookie and consent data
5. Purposes and legal bases (Art. 6 GDPR)
- Contract performance / pre-contractual measures (Art. 6(1)(b) GDPR)
- Compliance with legal obligations (Art. 6(1)(c) GDPR)
- Legitimate interests (Art. 6(1)(f) GDPR), e.g. IT security, abuse prevention, product improvement
- Consent (Art. 6(1)(a) GDPR) for optional analytics/marketing technologies
6. Recipients and processors
We use external service providers as processors and/or independent controllers.
- [[LEGAL_PLACEHOLDER:HOSTING_PROVIDER]]
- [[LEGAL_PLACEHOLDER:EMAIL_PROVIDER]]
- PayPal (payment processing)
- [[LEGAL_PLACEHOLDER:ADDITIONAL_PROCESSORS]]
7. International transfers
Where data is transferred to third countries outside the EU/EEA, this is done only in compliance with Art. 44 et seq. GDPR (e.g., adequacy decision, standard contractual clauses, additional safeguards).
[[LEGAL_PLACEHOLDER:THIRD_COUNTRY_TRANSFER_DETAILS]]
8. Cookies, consent and tracking
We use a consent banner with a choice between essential cookies and full consent. Essential cookies are used, for example, for authentication and security. Analytics/marketing (e.g., GTM, GA, Ads) is used only with consent.
- Consent Tool: [[LEGAL_PLACEHOLDER:CONSENT_TOOL]]
- Google Tag Manager: [[LEGAL_PLACEHOLDER:GTM_SETUP]]
- Google Analytics: [[LEGAL_PLACEHOLDER:GA_SETUP]]
- Google Ads / Conversion Tracking: [[LEGAL_PLACEHOLDER:GOOGLE_ADS_SETUP]]
- Meta Pixel / Meta Ads: [[LEGAL_PLACEHOLDER:META_PIXEL_SETUP]]
9. Retention periods
We store personal data only as long as necessary for the respective purpose or where statutory retention periods apply.
[[LEGAL_PLACEHOLDER:RETENTION_DETAILS]]
10. Data security
We implement appropriate technical and organizational measures (TOMs) to protect personal data.
[[LEGAL_PLACEHOLDER:SECURITY_MEASURES]]
11. Data subject rights
You have rights of access, rectification, erasure, restriction of processing, data portability, objection, and withdrawal of consent for the future.
12. Right to lodge a complaint
You have the right to lodge a complaint with a data protection supervisory authority.
[[LEGAL_PLACEHOLDER:SUPERVISORY_AUTHORITY]]
13. Obligation to provide data
Where data is required to enter into or perform a contract, providing such data is necessary; without such data the service may not be available.
14. Automated decision-making
No solely automated decision-making within the meaning of Art. 22 GDPR is carried out.
15. Changes to this privacy policy
We reserve the right to update this privacy policy if legal requirements, services, or processing activities change.