Privacy policy
Privacy policy
This privacy policy informs you about the processing of personal data when you use the corporate website of Innovium Technologies GmbH. It does not cover processing on EOAS terminals or other customer systems; those deployments require separate notices from the controller responsible for that site.
Version: 16 September 2026
1. Controller
Innovium Technologies GmbH
Leuenkamp 4
25524 Itzehoe
Germany
Phone: +49 (0)170 7630046
Email: info@innovium-tech.de
If you have questions about data protection on this website, please contact us using the details above. A data protection officer has not been appointed, as this is not required for our current organisation under applicable German law.
2. Scope and definitions
Personal data means any information relating to an identified or identifiable natural person (Article 4(1) GDPR).
This policy applies to the publicly accessible website and to the contact form provided on it. Processing for product operation of EOAS at customer locations is outside the scope of this policy.
3. Website access and server logs
When you visit this website, our systems automatically process technical connection data that your browser transmits. This may include IP address, date and time of the request, requested URL or resource, HTTP status code, amount of data transferred, referrer URL, and information about browser and operating system.
We process this data to deliver the website securely and reliably, to detect and prevent abuse or attacks, and to ensure technical stability. The legal basis is Article 6(1)(f) GDPR (legitimate interests in providing and securing the website).
Log data is retained only as long as necessary for these purposes and is then deleted or anonymised, unless a longer retention is required to investigate security incidents or to meet legal obligations.
4. Contact enquiries
If you contact us by contact form, email or telephone, we process the information you provide (for example name, company, email address, telephone number, subject, message and any optional project details) in order to handle and respond to your enquiry.
Where your enquiry relates to the initiation of a contract or a pre-contractual measure, the legal basis is Article 6(1)(b) GDPR. In other business or general enquiries, the legal basis is Article 6(1)(f) GDPR (legitimate interest in responding to business communications).
Enquiry data is stored for as long as needed to process the correspondence and for a reasonable follow-up period. It is then deleted, unless statutory retention duties (for example under commercial or tax law) or the establishment, exercise or defence of legal claims require longer storage.
Please do not submit copies of identity documents, biometric data, passwords or other particularly sensitive information through the general contact form.
5. Newsletter form
The website may display a newsletter subscription field. At present, entries in that field are not transmitted to a newsletter or marketing system and are not stored on our servers. Until a newsletter service is activated and this policy is updated accordingly, no personal data is processed for newsletter distribution via that form.
7. Recipients
Within Innovium Technologies GmbH, only persons who need the data to perform their tasks receive access.
External recipients may include IT and communications service providers acting as processors under Article 28 GDPR, professional advisers (for example lawyers or tax advisers) where necessary, and public authorities where we are legally obliged to disclose data.
We do not sell your personal data.
8. Transfers to third countries
As a rule, we process personal data within the European Union or the European Economic Area. If a transfer to a third country becomes necessary, we ensure an adequate level of protection, for example through an adequacy decision of the European Commission or appropriate safeguards such as Standard Contractual Clauses, and we will update this policy accordingly.
9. Retention
We retain personal data only for as long as needed for the purposes stated in this policy, or as long as statutory retention or limitation periods require. After the applicable period ends, data is deleted or anonymised in line with our deletion routines, unless further storage is necessary for legal claims.
10. Your rights
Subject to the legal requirements, you have the following rights under the GDPR:
- Right of access (Article 15 GDPR)
- Right to rectification (Article 16 GDPR)
- Right to erasure (Article 17 GDPR)
- Right to restriction of processing (Article 18 GDPR)
- Right to data portability (Article 20 GDPR)
- Right to object to processing based on legitimate interests (Article 21 GDPR)
- Right to withdraw consent for the future, where processing is based on consent (Article 7(3) GDPR)
To exercise your rights, contact us using the controller details above. You also have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work or place of the alleged infringement. For Innovium Technologies GmbH, the competent authority is typically the Independent Centre for Privacy Protection of Schleswig-Holstein (ULD), Holstenstraße 98, 24103 Kiel, Germany, https://www.datenschutzzentrum.de.
11. Obligation to provide data
You are not legally or contractually obliged to provide personal data merely to browse this website. If you choose not to provide data required for a contact enquiry, we may be unable to respond fully.
12. Automated decision-making
We do not use personal data collected via this website for automated decision-making, including profiling, that produces legal effects concerning you or similarly significantly affects you (Article 22 GDPR).
13. Data security
We take appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or access. These measures may include encrypted transmission (HTTPS), access controls, permission management, secure configuration, updates and incident-response procedures. Absolute security cannot be guaranteed for data transmission over the internet.
14. External services and future changes
The public website currently does not use third-party analytics, advertising networks, embedded social-media plugins, map services, external font CDNs, CAPTCHA providers or appointment-booking tools that process personal data on our behalf for those purposes.
If we introduce such services, we will update this privacy policy before they go live and, where required, obtain consent via Cookie settings.
15. Updates to this policy
We may update this privacy policy to reflect legal, technical or organisational changes. The current version is indicated by the date at the top of this page.