Data Protection

Last updated: January 2026

1. Controller

The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is:

NexaCommerce
[ADDRESS]
[CITY]
Germany

Phone: [PHONE]
Email: info@nexacommerce.com

2. Overview of Data Processing

We take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this privacy policy. When you use this website, various personal data is collected. This privacy policy explains what data we collect and what we use it for. It also explains how and for what purpose this is done.

3. Legal Basis for Data Processing

Insofar as we obtain the consent of the data subject for processing operations involving personal data, Art. 6 (1) lit. a GDPR serves as the legal basis. For the processing of personal data required for the performance of a contract to which the data subject is a party, Art. 6 (1) lit. b GDPR serves as the legal basis. This also applies to processing operations required for pre-contractual measures. Insofar as processing of personal data is required to fulfill a legal obligation to which our company is subject, Art. 6 (1) lit. c GDPR serves as the legal basis. If processing is necessary to protect a legitimate interest of our company or a third party and the interests, fundamental rights and freedoms of the data subject do not override the former interest, Art. 6 (1) lit. f GDPR serves as the legal basis for processing.

4. Data Collection on This Website

Server Log Files

The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are: browser type and version, operating system used, referrer URL, host name of the accessing computer, time of the server request, and IP address. This data is not merged with other data sources. The collection of this data is based on Art. 6 (1) lit. f GDPR. The website operator has a legitimate interest in the technically error-free presentation and optimization of their website - for this purpose, the server log files must be recorded.

Contact Form and Email Contact

If you send us inquiries via contact form or email, your details from the inquiry form or email, including the contact data you provide there, will be stored by us for the purpose of processing the inquiry and in case of follow-up questions. We will not share this data without your consent. The processing of this data is based on Art. 6 (1) lit. b GDPR if your request is related to the performance of a contract or is necessary for the implementation of pre-contractual measures. In all other cases, the processing is based on our legitimate interest in the effective processing of inquiries addressed to us (Art. 6 (1) lit. f GDPR) or on your consent (Art. 6 (1) lit. a GDPR) if this has been requested.

Cookies

Our website uses cookies. Cookies are small text files that are stored on your end device and that your browser saves. They serve to make our offer more user-friendly, effective and secure. Some cookies are "session cookies" that are automatically deleted after your visit. Other cookies remain stored on your device until you delete them. These cookies allow us to recognize your browser on your next visit. You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general and activate the automatic deletion of cookies when closing the browser.

5. Your Rights

You have the following rights with respect to your personal data:

  • Right of access (Art. 15 GDPR): You have the right to request confirmation as to whether personal data concerning you is being processed and to request access to this data.
  • Right to rectification (Art. 16 GDPR): You have the right to request the rectification of inaccurate personal data concerning you without undue delay.
  • Right to erasure (Art. 17 GDPR): You have the right to request the erasure of personal data concerning you without undue delay if certain conditions are met.
  • Right to restriction of processing (Art. 18 GDPR): You have the right to request restriction of processing under certain conditions.
  • Right to data portability (Art. 20 GDPR): You have the right to receive the personal data concerning you in a structured, commonly used and machine-readable format.
  • Right to object (Art. 21 GDPR): You have the right to object at any time to the processing of personal data concerning you which is based on Art. 6 (1) lit. e or f GDPR.
  • Right to withdraw consent (Art. 7 (3) GDPR): You have the right to withdraw your consent at any time. The withdrawal of consent does not affect the lawfulness of the processing carried out on the basis of the consent until the withdrawal.
  • Right to lodge a complaint (Art. 77 GDPR): You have the right to lodge a complaint with a supervisory authority if you believe that the processing of personal data concerning you infringes the GDPR.

6. Data Security

We use appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction or against unauthorized access by third parties. Our security measures are continuously improved in line with technological developments. This website uses SSL or TLS encryption for security reasons and to protect the transmission of confidential content.

7. Data Retention

We store personal data only for as long as is necessary to fulfill the purposes for which it was collected or as required by law. After the purpose has been fulfilled or the statutory retention periods have expired, the data will be deleted or blocked in accordance with statutory provisions. The criteria used to determine the retention period include statutory retention obligations, the nature and purpose of the processing, and potential liability claims.

8. Third-Party Services and Data Transfers

In some cases, we use external service providers to process your data. These have been carefully selected and commissioned by us, are bound by our instructions and are regularly monitored. If we transfer personal data to service providers or other third parties, this is done in accordance with the provisions of the GDPR. Data transfers to countries outside the EU/EEA (third countries) only take place if the European Commission has confirmed an adequate level of data protection, appropriate safeguards have been agreed (e.g., EU standard contractual clauses), or you have given your express consent.

9. Changes to This Privacy Policy

We reserve the right to amend this privacy policy to ensure it always complies with current legal requirements or to implement changes to our services in the privacy policy, e.g., when introducing new services. The new privacy policy will then apply to your next visit.

10. Contact for Data Protection Matters

If you have any questions about data protection, please contact us:

NexaCommerce
[ADDRESS]
[CITY]
Germany

Email: info@nexacommerce.com