Legal
Privacy
In short: no cookies, no tracking, no external services. Here you can read in detail which data is processed and when.
This English version is provided for convenience. The German version is legally binding.
Last updated: 24 September 2026
1. Controller
The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is:
⟨Firma inkl. Rechtsform, z. B. Quell-Code GmbH / Inhaber e. K.⟩⟨Vertretungsberechtigte Person(en) / Geschäftsführer⟩
⟨Straße und Hausnummer⟩
⟨PLZ und Ort⟩
Germany
Email: info@quell-code.com
Phone: ⟨Telefonnummer⟩
2. Overview
- This website sets no cookies and uses no tracking, analytics, advertising or social media services.
- Fonts, scripts, images and 3D graphics are served exclusively from our own server. No data is sent to Google Fonts, content delivery networks or other third parties.
- The contact form sends no data to our server; it opens your own email app instead.
- We process personal data only for the technical operation of the website (server log files) and when you contact us.
3. Legal bases
We process personal data only where one of the following legal bases applies:
- Art. 6(1)(a) GDPR — consent, where you have given it;
- Art. 6(1)(b) GDPR — performance of a contract or pre-contractual measures, e.g. project enquiries;
- Art. 6(1)(c) GDPR — compliance with legal obligations, e.g. commercial and tax retention duties;
- Art. 6(1)(f) GDPR — legitimate interests, such as the secure and stable operation of the website and replying to enquiries.
4. Hosting and server log files
This website is hosted by: IONOS SE, Elgendorfer Str. 57, 56410 Montabaur, Deutschland. A data processing agreement under Art. 28 GDPR is in place; the servers are located in the European Union.
When you visit the website your browser automatically transmits information that is stored in server log files:
- IP address of the requesting device
- date and time of access
- requested page or file and amount of data transferred
- HTTP status code
- referrer URL (the previously visited page)
- browser type, browser version and operating system
Processing is based on Art. 6(1)(f) GDPR. Our legitimate interest lies in the technical provision, stability and security of the website, in particular defending against attacks. Log files are deleted after 14 days at the latest unless they are needed to investigate a specific security incident, in which case they are kept until it is resolved.
5. SSL/TLS encryption
For security reasons this website uses TLS encryption and HTTP Strict Transport Security (HSTS). You can recognise an encrypted connection by “https://” and the padlock icon in your browser’s address bar. With encryption active, data you transmit cannot be read by third parties.
6. No cookies and no tracking
We use no cookies, tracking pixels, fingerprinting or analytics and marketing tools. No usage profiles are created. For this reason no consent banner is required; the notice “No cookies. No tracking.” is purely informative.
7. Local browser storage
The website stores exactly one technically necessary value in your browser. It is not transmitted to us and contains no personal data:
qc-notice-v1in local storage: remembers that you have closed the privacy notice so that it does not reappear on every visit. You can delete it at any time in your browser settings.
This storage is strictly necessary to provide the presentation you have explicitly requested (Section 25(2) no. 2 TDDDG).
8. Fonts and resources
All fonts (JetBrains Mono, Geist), scripts (including GSAP and Three.js) and graphics are stored locally on our server. Visiting the website does not establish any connection to servers of Google, Adobe, CDN providers or other third parties. A strict content security policy also technically prevents loading third-party content.
9. Contact by email
The contact form on this website does not transmit any data to our server. It merely assembles your details into an email in your browser and opens your own email app; all email links likewise open your email app. We only receive your details (in particular name, email address, company if provided and the content of your message) once you send the message yourself.
We process this data solely to handle your enquiry and any follow-up questions. The legal basis is Art. 6(1)(b) GDPR where your enquiry aims at concluding a contract, otherwise Art. 6(1)(f) GDPR (legitimate interest in replying). Our mailbox is operated by: IONOS SE, Elgendorfer Str. 57, 56410 Montabaur, Deutschland; a data processing agreement is in place.
Please note that, depending on the providers involved, emails may not be encrypted end to end in transit. For confidential information we are happy to agree on a secure channel with you.
10. Contact by phone
If you call us we process your phone number and the content of the conversation insofar as necessary to handle your request (Art. 6(1)(b) or (f) GDPR). Calls are not recorded.
11. Recipients of personal data
We do not pass your data on to third parties, except to the processors named above (hosting and email providers), who act on our instructions, and where we are legally obliged to do so (e.g. to authorities) or you have expressly consented.
12. Third-country transfers
Operating this website does not involve any transfer of personal data to countries outside the European Union or the European Economic Area.
13. Retention
We store personal data only as long as necessary for the respective purpose. We delete enquiries once they have been fully handled and no further communication is expected. If a contract is concluded, we retain business correspondence in line with statutory retention periods (generally six years under Section 257 HGB or ten years under Section 147 AO for accounting-relevant documents).
14. Your rights
You have the following rights regarding personal data concerning you:
- Access to the data processed (Art. 15 GDPR)
- Rectification of inaccurate data (Art. 16 GDPR)
- Erasure of your data (Art. 17 GDPR)
- Restriction of processing (Art. 18 GDPR)
- Data portability (Art. 20 GDPR)
- Withdrawal of consent with effect for the future (Art. 7(3) GDPR)
An informal message to info@quell-code.com is sufficient to exercise your rights.
15. Right to object under Art. 21 GDPR
You have the right to object at any time, on grounds relating to your particular situation, to the processing of personal data concerning you that is based on Art. 6(1)(f) GDPR. We will then no longer process the data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves the establishment, exercise or defence of legal claims.
16. Right to lodge a complaint
Without prejudice to any other remedy, you have the right to lodge a complaint with a data protection supervisory authority, in particular in the member state of your habitual residence, place of work or place of the alleged infringement (Art. 77 GDPR). The authority responsible for us is: Bayerisches Landesamt für Datenschutzaufsicht (BayLDA), Promenade 18, 91522 Ansbach.
17. Obligation to provide data
You are under no statutory or contractual obligation to provide us with personal data. Without your contact details, however, we cannot reply to your enquiry.
18. No automated decision-making
No automated decision-making including profiling within the meaning of Art. 22 GDPR takes place.
19. Data protection officer
No data protection officer has been appointed under Section 38 BDSG as the legal requirements are not met. For data protection questions please contact info@quell-code.com directly.
20. External links
On the image credits page we link to the sources of the photos used. Only when you click such a link do you leave our website; the operator of the target page is responsible for data processing there.
21. Changes to this privacy policy
We update this privacy policy when the website, our services or the legal situation change. The version published here applies.