Privacy Policy

Information pursuant to Art. 13 et seq. GDPR

Controller

Michael Orologas

Email: michael@orologas.dev

Overview of processing

When visiting this website, personal data may be processed depending on usage. This includes in particular:

  • Technical access data/server logs (e.g. IP address, date/time, requested page, user agent, referrer URL) for delivery, stability, and security of the website.
  • Data you actively send to me (e.g. via email).
  • Data when using external links (e.g. LinkedIn/Xing): You only leave this website when clicking; then the respective provider's terms apply.

Hosting (Vercel) & Server Log Files

This website is operated via Vercel Inc. (Vercel, USA). Vercel processes technical log data (server log files) on my behalf that arise when accessing the website. If configured in your deployment, delivery can occur from an EU region (e.g. Frankfurt). Regardless, access/support and processing by Vercel as provider cannot be completely excluded.

A data processing agreement (Art. 28 GDPR) exists with Vercel.

Web Analytics (Umami & Vercel Analytics)

This website uses two web analytics solutions for statistical evaluation of visitor accesses:

- **Umami Analytics** (Umami Software, Inc., USA)

- **Vercel Web Analytics** (Vercel Inc., USA)

Both solutions are designed to work **without third-party cookies**. Umami uses no cookies and does not permanently store personal data (like IP addresses); data is anonymized so no inferences to individuals are possible.

Vercel Web Analytics identifies visits via a **hash** from the incoming request; a visitor session is not permanently stored and is automatically discarded after **24 hours**.

Further information:

- Umami privacy: https://umami.is/privacy

- Vercel Analytics privacy: https://vercel.com/docs/analytics/privacy-policy

Rights of data subjects

If legal requirements are met, you have the following rights:

  • Access (Art. 15 GDPR)
  • Rectification (Art. 16 GDPR)
  • Erasure (Art. 17 GDPR)
  • Restriction of processing (Art. 18 GDPR)
  • Data portability (Art. 20 GDPR)
  • Objection (Art. 21 GDPR)
  • Complaint to a supervisory authority (Art. 77 GDPR)

Security

Appropriate technical and organizational measures are implemented to protect data against loss, misuse, and unauthorized access. Please note that data transmission over the internet (e.g. via email) may have security gaps.

Currency and changes

This privacy policy may be amended if content or technical/legal requirements change. The current version is always available on this page.