Skip to content
DeepSoft. Book a demo
Legal & support

Privacy Policy

How DeepSoft collects, uses and protects personal data under the GDPR.

Last updated: 1 September 2026

1. Controller

The controller responsible for the processing of personal data on deepsoft.site is DeepSoft, Brüsseler Str. 6, 51149 Köln, Germany. Email: contact@deepsoft.site. Phone: +49 2203 9095676. For any question about this policy or your rights, contact us at that address; we answer data protection requests within one month.

2. What we collect

We collect only what we need to answer you and to operate our services:

  • Contact form data — name, work email, company, phone number, chosen solution and your message.
  • Server log data — IP address, timestamp, requested URL, referrer and browser user agent, stored for security and abuse prevention.
  • Client platform data — where we host or maintain a system for a business client, we process the data in that system solely as a processor on that client's instructions.

3. Legal bases and purposes

We process enquiry data to respond to your request and to prepare or perform a contract (Art. 6(1)(b) GDPR) and, where you are not yet a client, on the basis of our legitimate interest in business communication (Art. 6(1)(f) GDPR). Server logs are processed on the basis of our legitimate interest in secure, stable operation of the website. Where we ask for consent — for example for an optional newsletter — processing is based on Art. 6(1)(a) GDPR and you may withdraw that consent at any time.

4. Cookies and analytics

This website uses only technically necessary cookies required to deliver pages and protect forms. We do not use advertising trackers or cross-site profiling. If privacy-friendly, aggregate statistics are enabled, they are collected without cookies and without storing full IP addresses.

5. Recipients and hosting

Website hosting, email and infrastructure are provided by processors operating data centres within the European Union, bound by data processing agreements under Art. 28 GDPR. We do not sell personal data. Transfers to third countries take place only where an adequacy decision or appropriate safeguards under Art. 46 GDPR are in place.

6. Retention

Enquiry data is kept for up to 24 months after our last correspondence, unless a contract requires longer retention. Data forming part of accounting records is retained for the statutory periods under German commercial and tax law (generally six to ten years). Server logs are deleted or anonymised within 30 days.

7. Your rights

You have the right to access, rectification, erasure, restriction of processing, data portability and objection, and the right to withdraw consent. You may also lodge a complaint with a supervisory authority — for our registered office this is the Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen. To exercise any right, write to contact@deepsoft.site.

8. Security and changes

We apply encryption in transit, role-based access control and logging appropriate to the risk of the processing. We may update this policy to reflect changes in our services or the law; the version in force is the one published on this page with the date shown above.