Privacy Policy

Last updated: February 2026

This Privacy Policy explains how Net-Twin ("we", "us", or "our") processes personal data when you use https://net-twin.de.

Net-Twin is operated from Germany (European Union) and processes personal data in accordance with the General Data Protection Regulation (GDPR) and applicable German data protection laws.


1. Data Controller

Andreas Holzer
Burckhardtstraße 44
70374 Stuttgart
Germany

Email: palareas@gmail.com

Responsible supervisory authority:
Landesbeauftragter für den Datenschutz und die Informationsfreiheit Baden-Württemberg
Lautenschlagerstraße 20
70173 Stuttgart
Germany


2. Categories of Personal Data

2.1 Account and Profile Data

When creating an account, we process:

  • Username and display name
  • Email address
  • Encrypted password
  • Optional profile information (avatar, header image, bio)

2.2 User-Generated Content

We process content voluntarily published by users, including posts, comments, messages, uploads, and profile interactions.

2.3 Technical and Log Data

For security and system integrity purposes, we may process:

  • IP address (temporarily stored)
  • Browser type and version
  • Operating system
  • Referrer URL
  • Date and time of access

Log data is retained for a limited period (typically up to 14 days) unless required longer for security investigations or legal obligations.


3. Cookies and Session Technologies

Net-Twin uses essential session cookies necessary for authentication, security verification and platform functionality.

We do not use advertising or behavioral tracking cookies.

Embedded third-party services may set their own cookies in accordance with their respective privacy policies.


4. Purpose and Legal Basis

Personal data is processed for:

  • Operating and maintaining the platform
  • Account authentication and user management
  • Community interaction
  • Security and abuse prevention
  • Technical system stability

Legal bases (Art. 6 GDPR):

  • Art. 6(1)(b) – Contract performance (user account)
  • Art. 6(1)(f) – Legitimate interests (security and system integrity)
  • Art. 6(1)(a) – Consent where required
  • Art. 6(1)(c) – Legal obligations

5. Data Retention

  • Account data: until deletion of the account
  • User content: until deletion by the user or account termination
  • Server logs: typically up to 14 days
  • Backup data: retained for limited periods for disaster recovery purposes

Data required for legal compliance may be retained longer where mandated by law.


6. Third-Party Services and International Transfers

Net-Twin integrates selected third-party services:

  • GIPHY (media integration)
  • Cloudflare Turnstile (spam protection)
  • X (formerly Twitter – optional login)
  • PayPal (if payment features are used)
  • Ko-fi (if donation features are used)

These providers may act as independent data controllers. Their services may involve processing outside the European Union.

Where applicable, international transfers are based on:

  • EU–US Data Privacy Framework certification
  • Standard Contractual Clauses (Art. 46 GDPR)
  • User consent where legally required

Further details are available in the privacy policies of the respective providers.


7. Data Sharing

We do not sell personal data.

Personal data may be shared:

  • With hosting providers and technical processors under Art. 28 GDPR
  • With service providers where technically necessary
  • Where legally required
  • To protect the rights, safety or integrity of the platform

8. Security Measures

We implement appropriate technical and organizational measures to protect personal data.

Data is hosted on servers located within Germany or the European Union.


9. Automated Decision-Making

Net-Twin does not use automated decision-making within the meaning of Art. 22 GDPR that produces legal or similarly significant effects.


10. Your Rights

You have the right to:

  • Access (Art. 15 GDPR)
  • Rectification (Art. 16 GDPR)
  • Erasure (Art. 17 GDPR)
  • Restriction (Art. 18 GDPR)
  • Data portability (Art. 20 GDPR)
  • Objection (Art. 21 GDPR)
  • Withdraw consent at any time

Requests can be sent to: palareas@gmail.com


11. Children

Net-Twin is not intended for individuals under 16 years of age.

If we become aware of personal data from a child under 16, it will be deleted without undue delay.


12. Changes

We may update this Privacy Policy to reflect legal or operational changes.

Significant changes will be communicated via the platform.