Data protection / dsgvo / gdpr

Privacy Policy

This statement provides information on how we process personal data when you visit our website, use the customer portal or contact us.

Person responsible

VELUNO™ LLC
30 N Gould St Ste N
82801 Sheridan, Wyoming - United States
Phone: +1 (307) 533-6426 - E-Mail: contact@veluno.us
Entity ID: 2025-001650504 - EIN: 98-1852082 - D-U-N-S®: 13-860-8816
Legal form: Limited Liability Company (corporation)
Represented by: Sebastian Geier - Founder & Managing Partner

EU representative pursuant to Art. 27 GDPR

VELUNO LLC - Contact Point (EU)
Kolonnenstrasse 8
10827 Berlin - Germany
Phone: +1 (307) 533-6426 - Fax: +49 30 232570588
E-Mail: contact@veluno.us
Location to support our customers in the EU region.

Key points (summary)

  • No cookies, no tracking, no analytics.
  • Hosting in the EU: Public website and data actively entered by the user are stored on EU servers (Hostinger).
  • Cloudflare only functional: DDoS/Firewall/CDN/TLS; Insights/RUM deactivated (not active for EU).
  • Customer portal: only uses technically necessary session cookies or tokens, no marketing cookies.

Purposes & legal bases

  • Provision of the website, IT security (Art. 6 para. 1 lit. f GDPR)
  • Answering inquiries / contract initiation and fulfillment (Art. 6 para. 1 lit. b GDPR)
  • Statutory retention obligations (in particular tax/trade) (Art. 6 para. 1 lit. c GDPR)

Recipient / processor

  • Hostinger(EU data center): Hosting of the website and the customer portal.
  • Cloudflare, Inc.(USA/EU): CDN/protection/TLS. No marketing tracking; Insights/RUM deactivated.

Server operation & log files

Hosting (Hostinger)

When the website is accessed, technically required data is processed (e.g. IP address, date/time, requested resource, user agent). Purpose: Operation/security, legal basis: Art. 6 para. 1 lit. f GDPR. Log data is only used for error analysis/security and is deleted promptly.

Content delivery & security (Cloudflare)

Cloudflare is used exclusively for DDoS protection, web firewall, CDN and TLS. No marketing tracking; the Cloudflare JS snippet (Browser Insights/RUM) is deactivated or is not loaded for EU visitors.

Customer portal

Password-protected area for offers, contracts, invoices and support.

Registration & Login

Processed are: Name, e-mail, company details/USt-IdNr. if applicable, roles/rights, hashed passwords, security-relevant login logs (time, success/error). Optional: two-factor authentication.

Cookies & web storage

Only technically necessary session cookies or tokens are set in the portal. No tracking, no marketing cookies.

Obligation to provide: Portal master data/authentication data is required to use the portal. Use is not possible without these.

Contact us

When you contact us (form/email/telephone), we process the data you provide to process the request and follow-up questions. Legal basis: Art. 6 para. 1 lit. b or lit. f GDPR. Deletion after completion, provided there are no storage obligations to the contrary.

Invoicing

Invoices are issued by the Veluno LLC created and processed. Only the necessary data is processed (e.g. name, address, VAT ID number if applicable, service details). Billing data is stored in the USA and stored in accordance with legal obligations. In addition, we may also disclose invoice/contract data to authorities in other countries within the scope of legal obligations and international legal assistance (e.g. tax law, money laundering, criminal prosecution).

Cloudflare (CDN, Security & Web Analytics / RUM)

We set Cloudflare to secure and deliver our website (content delivery network, DDoS protection, web application firewall, TLS)Cloudflare Web Analytics inclusive Real User Monitoring (RUM) the Analytics/RUM script is automatically integrated when the page is delivered via the Cloudflare proxy.

Data categories & functionality

  • CDN/Security: IP address, requested resources/URLs, date/time, user agent, technical headers (for the purpose of delivery and protection against attacks).
  • Web Analytics/RUM (cookie-free): Page views, referrers, browser/device information, loading times and performance metrics (e.g. TTFB, LCP, interaction latencies). No cookies are set and no user profiles are created.

Purposes & legal basis

  • Provision, stability, security and performance of our website (CDN/WAF/TLS, DDoS defense).
  • Technical reach and performance analysis to optimize the offer (cookie-free, without tracking profiles).
  • Legal basis:Art. 6 para. 1 lit. f GDPR(legitimate interest in secure operation and technical optimization).

Recipients & third country transfer

The provider is Cloudflare, Inc, 101 Townsend St, San Francisco, CA 94107, USA (with EU locations). Data may be transferred to the USA.Cloudflare is certified according to the EU-U.S. Data Privacy Framework this ensures an adequate level of data protection for any transfers to the USA. Separate consent is not required, as we only use cookie-free analysis and do not use marketing tracking technologies.

Notes

  • There is no cross-device tracking, no cross-site profiling and no identification of individual visitors.
  • If Cloudflare offers additional features that are not technically necessary, we do not use them.

Storage duration

Personal data is only stored for as long as is necessary for the respective purpose. Statutory retention periods (in particular under tax/commercial law) remain unaffected.

No cookies, no third-party analysis

On the public website we use none Cookies and none Analysis/marketing services.

Your rights

  • Information, rectification, erasure, restriction (Art. 15-18 GDPR)
  • Data portability (Art. 20 GDPR)
  • Objection to processing on the basis of legitimate interests (Art. 21 GDPR)
  • Revocation of consents granted (Art. 7 para. 3 GDPR)
  • Right to lodge a complaint with a supervisory authority (Art. 77 GDPR)

Status: 20.09.2025