Privacy Policy

Last updated: 25 January 2026

1. Introduction - Purpose and Responsible Party


This privacy policy informs you about the nature, scope, and purpose of the processing of personal data by Vennie Tech UG, Bluntschlistr. 31, 69115 Heidelberg (hereinafter referred to as "we" or "us"). We process personal data for marketing purposes on our website [www.vennie.tech]. The collection of this data serves to optimize our marketing efforts, to show you personalized advertising, and to improve the user experience on our website. If you have questions regarding the processing of your personal data or the exercise of your rights, you can contact us at any time at info@vennie.tech.



2. Data Processing


2.1. Types of Data Collected For our marketing purposes, we collect the following personal data: IP addresses email addresses information about user behavior on our website other personal data to target advertising and analyze user behavior. This includes, for example, your name, interests, preferences, and demographic information that you provide voluntarily or that can be derived from your behavior on our website.

2.2. Purposes of Use The collected data is used to: Target users with advertisements (Ads) track and analyze user behavior on our website.

2.3. Legal Bases The processing of data for marketing purposes is based on your consent in accordance with Art. 6 para. 1 lit. a GDPR. We actively obtain your consent through our cookie banner on your first visit to our website or through an opt-in form when you subscribe to our newsletter. You can revoke your consent at any time with effect for the future by using the revocation link in our newsletters or by sending us an email at info@vennie.tech. The revocation of consent does not affect the lawfulness of processing that has taken place up to the point of revocation.


3. Disclosure of Data We only pass on your personal data to third parties if this is necessary within the framework of contract fulfilment, to meet our legal obligations, or based on your consent.


3.1. Disclosure in Connection with Our Website

Payment providers: Stripe, Inc.
Legal form: Incorporated company under US law
Headquarters: 354 Oyster Point Boulevard, South San Francisco, CA 94080, USA
Purpose: Handling payment transactions.


Marketing platforms: Data is shared with the following providers to target advertising and analyze user behavior on our website:


Google Ads and Google Analytics (operated by Google LLC under Alphabet Inc.)
Headquarters: 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA

Facebook Ads (operated by Meta Platforms, Inc.)
Headquarters: 1 Meta Way, Menlo Park, CA 94025, USA

Twitter Ads (operated by Twitter, Inc., now part of X Corp.)
Headquarters: 1355 Market Street, Suite 900, San Francisco, CA 94103, USA

LinkedIn Ads (operated by LinkedIn Corporation, a subsidiary of Microsoft Corporation)
Headquarters: 1000 West Maude Avenue, Sunnyvale, CA 94085, USA

Google Tag Manager and Google Analytics (operated by Google LLC under Alphabet Inc.)
Headquarters: 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA


Hosting Provider: Our website is hosted by Framer B.V., Singel 258, 1016 AB Amsterdam, Netherlands. Framer uses Amazon Web Services (AWS) as an infrastructure provider. You can find more information about data security at Framer at: www.framer.com.

Amazon Web Services, Inc.
Headquarters: 410 Terry Avenue North, Seattle, WA 98109, USA

3.2. Legal Basis for Disclosure The disclosure of data for marketing purposes is based on your consent in accordance with Art. 6 para. 1 lit. a GDPR. For the disclosure to payment providers (e.g., Stripe, Inc.), we rely on the legal basis of contract fulfilment in accordance with Art. 6 para. 1 lit. b GDPR, as this is necessary for processing your payments.



4. Data Transfer to Third Countries


We transfer personal data to external service providers who partially operate their servers outside of the European Union (EU) or the European Economic Area (EEA). This particularly concerns: Meta Platforms, Inc. (USA) Amazon Web Services, Inc. (USA, with possible server locations worldwide) Stripe, Inc. (USA) Twitter, Inc. / X Corp. (USA) LinkedIn Corporation (USA) Alphabet Inc. (via Google LLC, USA, including Google Cloud) The transfer takes place within the framework of the licensing and data protection measures of these service providers. We rely on their compliance with the GDPR, which is ensured by their privacy policies and mechanisms such as Standard Contractual Clauses (SCCs), Binding Corporate Rules (BCRs), or other legally recognised instruments to ensure an adequate level of data protection. Please note that in countries like the USA, there is no data protection level equivalent to that of the EU, which may pose risks such as access by US authorities (e.g., under the Cloud Act). You have the right to obtain a copy of the Standard Contractual Clauses (SCCs) or other suitable guarantees used. Please contact us at info@vennie.tech for this purpose. Please be aware that we continually monitor developments in data protection law, such as the EU-US Data Privacy Framework (DPF), and adjust our transfer mechanisms accordingly to ensure an adequate level of data protection.



5. Cookies & Tracking


5.1. Use of Tracking Technologies We use tracking pixels on our website for advertising purposes. This technology allows us to analyze user behavior on our website to optimize our advertising strategies and target ads effectively. Purpose of Use: The information collected through tracking pixels helps us measure and improve the effectiveness of our advertising campaigns by better understanding how visitors interact with our ads. Opt-Out Options: You have the option to object to the use of tracking technologies. If you do not wish for tracking pixels to be used during your visit to our website, you can refuse this by making the appropriate selection on your first visit to the site. Your decision not to opt-in will be respected, and no tracking pixels will be loaded. Additionally, you can contact us at any time if you wish for us to cease any tracking. Please send us an email at info@vennie.tech. We will then take all necessary measures to stop the use of tracking technologies for your data.

5.2. Cookies and Similar Technologies Non-essential cookies, such as marketing and analytics cookies, are only set with your explicit consent (Opt-In). Essential cookies, which are necessary for the operation of the website, are set without consent based on our legitimate interest in accordance with Art. 6 para. 1 lit. f GDPR.

Type of Cookies: We use both session cookies, which are automatically deleted when you close your browser, and persistent cookies, which remain on your device until they expire or you delete them. Persistent cookies help us recognize you as a returning visitor.

Purpose of Cookies: Cookies are used to manage your session information, provide personalized content, and analyze and improve our website and services.

Cookie Management: You can adjust your cookie settings at any time by visiting the cookie settings on our website. There you will find options to accept or reject certain types of cookies.



6. Storage & Deletion


6.1. Duration of Storage Marketing data is stored for 12 months unless legal retention obligations (e.g., tax documents according to § 147 AO: 10 years) require longer storage. Upon revocation of your consent, we will delete your marketing data immediately, unless legal retention obligations require longer storage.

6.2. Criteria for Determining Storage Periods The determination of storage periods is based on the necessity of keeping the data available for the duration of the intended processing purposes. At the end of this period or upon cessation of the processing purpose, the data will be deleted unless there are legal retention obligations requiring longer storage.

6.3. Deletion Options You have the right to request the deletion of your personal data at any time. If you would like your data to be deleted before the normal retention period expires, please send an email to info@vennie.tech. We will then promptly review your data and proceed in accordance with the legal provisions. Upon expiration of the retention period, data will be automatically deleted unless there is a manual request. After your data has been deleted, we will inform you via email if you have provided us your email address for this purpose.



7. Rights of Users


As a user of our website, you have various rights regarding the processing of your personal data, which are guaranteed by the General Data Protection Regulation (GDPR):

Right to Access: You have the right to request confirmation of whether personal data concerning you is being processed; if this is the case, you have the right to access this data and further information in accordance with Art. 15 GDPR.

Right to Rectification: You have the right to request the rectification of inaccurate personal data concerning you without undue delay. Taking into account the purposes of processing, you also have the right to request the completion of incomplete personal data.

Right to Deletion ("Right to be Forgotten"): You can request the deletion of your personal data, especially if the data is no longer needed for the original purposes or if the consent to processing has been revoked, provided that there are no other legal obligations for retention.

Right to Data Portability: You have the right to receive the personal data concerning you that you have provided to us in a structured, commonly used, and machine-readable format and to transmit these data to another controller without hindrance from us.
Right to Restriction of Processing: You have the right to request the restriction of the processing of your personal data, especially if you contest the accuracy of the data or if the processing is unlawful, in accordance with Art. 18 GDPR.

Right to Object: You have the right to object to the processing of personal data concerning you at any time on grounds relating to your particular situation, which is processed under Art. 6 para. 1 lit. e or f GDPR.

Exercising Your Rights: To exercise these rights, you can contact us at any time at the address or email provided in the "Contact Information" section. We are obliged to respond to your requests within one month unless there are exceptional circumstances requiring an extension of this period. To verify your identity when making an access request, we ask you to provide your full name, email address, and, if applicable, a copy of your ID card (with sensitive data blacked out).



8. Security of Your Data


8.1. Technical and Organizational Measures We take the protection of your personal data seriously and implement relevant technical and organizational security measures to protect your data against accidental loss, alteration, unauthorized disclosure, or access. For our website, we apply best security practices to ensure the security and integrity of our online services. This includes encryption during data transmission and strict access controls to information systems. We strive to continuously improve our security procedures and adapt them to the latest security technologies and methods. Our technical measures include encrypting data transmissions using SSL/TLS, using firewalls, and implementing two-factor authentication for access to our systems. Organizational measures include regular training of our employees on data protection and restricting access to personal data to authorized individuals.

8.2. Handling of Data Breaches In the event of a data breach, we have established procedures to ensure that such incidents are promptly detected and addressed. We are committed to informing both you and the relevant authorities, according to legal requirements, in the event of a data breach that jeopardizes the security of your personal data. In the event of violations, we inform affected individuals and the Berlin Data Protection Authority within 72 hours in accordance with Art. 33 GDPR. Affected users are informed via email or by a prominent notice on our website, provided we have your contact information and the data breach is likely to pose a high risk to your rights and freedoms.



9. Right to Lodge a Complaint with the Supervisory Authority


Complaint Procedure: If you believe that the processing of your personal data violates data protection law, you have the right to lodge a complaint with a supervisory authority. The contact details of the competent authority can be found here: https://www.datenschutz-berlin.de/. Alternatively, you can contact the data protection authority in your country of residence if this is easier for you. A list of all EU data protection authorities can be found at [https://edpb.europa.eu/about-edpb/about-edpb/members_de].



10. Changes to This Privacy Policy


We reserve the right to update or change this privacy policy at any time. Changes to this privacy policy may be necessary to respond to legal requirements or to reflect changes in our data processing practices. We recommend that you visit this page regularly for updates. Substantial changes will be announced, if possible, before they take effect on our website or through direct communication with you. If you no longer have active consent, we will inform you of substantial changes with a prominent notice during your next visit to our website.



11. Contact Information


If you have any questions regarding this privacy policy or wish to exercise your rights concerning your personal data, you can contact us as follows:

Email: info@vennie.tech

Postal Address: Vennie Tech UG, Bluntschlistr. 31, 69115 Heidelberg


We are obliged to process requests regarding your personal data quickly and in accordance with legal requirements.

vennie

vennie: Europe’s AI chatbot for e-commerce growth.

Made in Germany

Based in Heidelberg

GDPR-compliant

Hosted in Germany

Offizielle Bescheinigung für Forschung und Entwicklung: vennie ist als zukunftsweisende Technologie für wachsende E-commerce Unternehmen zertifiziert.

certified by BSZF

Backed by the German government

vennie

vennie: Europe’s AI chatbot for e-commerce growth.

Made in Germany

Based in Heidelberg

GDPR-compliant

Hosted in Germany

Offizielle Bescheinigung für Forschung und Entwicklung: vennie ist als zukunftsweisende Technologie für wachsende E-commerce Unternehmen zertifiziert.

certified by BSZF

Backed by the German government

vennie

vennie: Europe’s AI chatbot for e-commerce growth.

Made in Germany

Based in Heidelberg

GDPR-compliant

Hosted in Germany

Offizielle Bescheinigung für Forschung und Entwicklung: vennie ist als zukunftsweisende Technologie für wachsende E-commerce Unternehmen zertifiziert.

certified by BSZF

Backed by the German government