Privacy Policy
Controller
The controller within the meaning of Art. 4(7) GDPR for the data processing on this website is:
Kromer Lorenz - IT Services & Solutions
Lorenz Kromer
Hohe Straße 185/1
4048 Puchenau, Oberösterreich
Österreich
Email: hallo@kromerlorenz.at
Data Protection Officer
No data protection officer has been designated. A sole proprietorship such as this one does not trigger the obligation to designate a data protection officer under Art. 37(1) GDPR, and a data protection officer cannot, in any case, be identical to the controller under Art. 38(6) GDPR. The controller within the meaning of Art. 4(7) GDPR is Lorenz Kromer, named above.
In case of discrepancies between this translation and the German version, the German version shall prevail.
Hosting and Server Log Files
This website is self-hosted on its own infrastructure (Docker and nginx). When you access the website, the web server automatically processes technical access data (server log files), such as IP address, date and time of access, the page accessed, and the browser and operating system used. This data is used exclusively for the technical provision and security of operations, for example for error analysis and defense against attacks. The legal basis is the legitimate interest in a secure and functional operation of the website pursuant to Art. 6(1)(f) GDPR.
Fonts
This website delivers all fonts used exclusively from its own domain. At no point does a request go out to a third-party font repository (e.g. Google Fonts); no data is transmitted to a third party in the process.
Analytics
This website uses its own self-hosted Matomo instance at matomo.kromerlorenz.at for
anonymous analytics. Collection is explicitly cookieless (disableCookies()): no cookie is
set on your device and no consent is obtained. The legal basis for this cookieless,
non-individualizing analytics is § 165(3) of the Austrian Telecommunications Act 2021 (TKG
2021), under which the collection of usage data without consent is permitted provided that no
cookies or comparable technologies are used to identify the end user. No merging with other
data takes place, no fingerprinting substitute for the omitted cookie is used, and no session
recording or heatmap capture occurs.
Your Rights
You have the following rights under Articles 15 to 21 GDPR: access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20), and objection to processing (Art. 21). To exercise these rights, an informal message to the controller’s email address stated above is sufficient.
Right to Lodge a Complaint
You have the right to lodge a complaint with the Austrian data protection authority if you
believe that the processing of your personal data violates the GDPR. Austrian Data Protection
Authority (Österreichische Datenschutzbehörde), Barichgasse 40–42, 1030 Vienna, Austria,
dsb.gv.at.
Storage Period
Personal data is stored only for as long as necessary for the respective processing purpose, or for as long as a statutory retention obligation applies. After that, the data is deleted.
Transfers to Third Countries
No personal data is transferred to countries outside the EU/EEA (third countries). All processing described in this privacy policy takes place exclusively on the controller’s own infrastructure operated in Austria.