Back to home

Privacy policy

Last updated: September 2026. This is a courtesy translation; the German version is legally binding.

1. Controller

The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is:

Friedhelm Schröer
Pfarrer-Niemann-Str. 5
49733 Haren
Email: info@swimdesk.de

This policy applies to the information website swimdesk.de. Within the SwimDesk application, the respective club is responsible for processing member data; the details are governed by the data processing agreement with the club.

2. Hosting and server log files

This website is hosted by Netlify, Inc., 101 2nd Street, San Francisco, CA 94105, USA. The site consists of static files only, which Netlify delivers via a global content delivery network (CDN); there are no user accounts on this website. See the hosting provider’s privacy policy for details.

Data is also processed on servers in the USA. Netlify is certified under the EU-U.S. Data Privacy Framework; the transfer is based on the European Commission’s adequacy decision of 10 July 2023 (Implementing Decision (EU) 2023/1795, Art. 45 GDPR). Should this decision cease to apply, the data processing agreement with Netlify provides for the EU Standard Contractual Clauses (Art. 46(2)(c) GDPR). Through the global CDN, data may also be processed briefly on servers in other countries; Netlify’s contractual safeguards apply there as well.

When you visit the site, the following information is automatically processed in server log files:

Processing is based on Art. 6(1)(f) GDPR. Our legitimate interest lies in providing the website securely, quickly and reliably. A data processing agreement pursuant to Art. 28 GDPR is in place with Netlify. Server log data is technically required to deliver the website; without it, the site cannot be displayed.

Netlify does not set a fixed retention period. Log files are deleted once they are no longer needed for delivering the website, analysing errors and fending off attacks. We do not analyse them ourselves, do not combine them with other data and have no influence on their deletion.

3. Encryption

This website uses TLS encryption. You can recognise an encrypted connection by “https://” in your browser’s address bar. Data you send us is encrypted in transit and cannot easily be read by third parties.

4. Fonts and cookies

The fonts used are hosted locally on our server. No connection to Google or other font providers is made when you visit the site. This website does not embed any other third-party content either (such as videos, maps or social media plugins). It does not set cookies and does not use analytics or tracking services.

Only if you switch on dark mode do we store this setting in your browser’s local storage (entry “theme”) so that it is kept for your next visit. The entry contains no personal data, is not transmitted to us and is removed when you switch back to light mode or clear the site data in your browser. The legal basis is Section 25(2) no. 2 TDDDG, as storing it is strictly necessary for the function you requested.

We use Google Search Console to view search statistics for our website. No Google code is embedded in this website, and no visitor data is transmitted to Google.

5. Contact form and email

When you write to us via the contact form or by email, we process the details you provide (name, club, email address, message) to answer your request. For the contact form, this also includes the page language and the technical data the form service stores automatically: IP address, browser identifier (user agent), referring page and time of the request.

The contact form is processed by the form service of our hosting provider Netlify, Inc. Netlify stores the request and sends us a notification containing it to info@swimdesk.de. To protect against spam, Netlify checks submissions automatically; form content and technical data such as the IP address may be transmitted to the spam filter service Akismet of Automattic Inc., USA, which Netlify uses as a sub-processor. Netlify is contractually obliged to ensure an adequate level of data protection for this onward transfer as well. Section 2 applies to transfers to the USA.

In addition, the form contains a field that is invisible to humans and checks how quickly it was filled in. Both happen only in your browser; no cookies are set and no further data is collected for this.

The mailbox info@swimdesk.de, and with it any email you send us directly, is hosted by our email provider STRATO GmbH, Otto-Ostrowski-Straße 7, 10249 Berlin, Germany. A data processing agreement pursuant to Art. 28 GDPR is in place with STRATO; processing takes place within the EU.

The legal basis is Art. 6(1)(b) GDPR if your request relates to a contract or pre-contractual measures, such as a demo or a quote. In all other cases, processing is based on our legitimate interest in answering enquiries (Art. 6(1)(f) GDPR). Providing your details is voluntary, but without your name and email address we cannot answer your request.

We delete the submission at Netlify once it has reached our mailbox, at the latest after 30 days. We delete email correspondence at the latest six months after your request has been dealt with. If the request leads to a contract, we keep business correspondence for as long as statutory retention periods require (up to six or ten years under Section 147 AO and Section 257 HGB). Apart from the service providers named above, we do not pass your data on to third parties.

6. Your rights

You have the following rights regarding your personal data:

Where processing is based on consent, you may withdraw it at any time with effect for the future (Art. 7(3) GDPR).

Right to object (Art. 21 GDPR): Where processing is based on Art. 6(1)(f) GDPR, you may object at any time on grounds relating to your particular situation. We will then no longer process the data unless we can demonstrate compelling legitimate grounds which override your interests, rights and freedoms, or the processing serves the establishment, exercise or defence of legal claims.

For all requests, an email to info@swimdesk.de is sufficient.

No automated decision-making, including profiling (Art. 22 GDPR), takes place. We have not appointed a data protection officer, as there is no legal obligation to do so.

You also have the right to lodge a complaint with a data protection supervisory authority (Art. 77 GDPR). The authority responsible for us is:

Der Landesbeauftragte für den Datenschutz Niedersachsen
Prinzenstraße 5
30159 Hannover