Legal

Privacy Policy

Last updated: [Date]

1. Data Controller

Gerrit Grotewold
Ringelnatzweg 17
Germany 82256 Fuerstenfeldbruck
Email: hello@thermalship.app

2. Collection and storage of personal data

a) When visiting the website

When you visit our website, the hosting provider automatically processes technical data (e.g. IP address, date and time of access, browser type). The legal basis is Art. 6 (1) lit. f GDPR (legitimate interest in the secure and stable operation of the website).

b) When signing up for the waitlist (early access)

When you sign up for the waitlist via the form on our website, we process the following data:

We use this data exclusively to inform you about the launch and your waitlist spot. The legal basis is your consent pursuant to Art. 6 (1) lit. a GDPR, which you can withdraw at any time with effect for the future (e.g. by email to hello@thermalship.app).

c) No obligation to provide data

Providing your data is neither legally nor contractually required. However, without an email address we cannot inform you about the launch.

3. Disclosure of data

Your data is never sold. To operate the waitlist we use service providers (e.g. a form or email service) that process data on our behalf (data processing agreement pursuant to Art. 28 GDPR). Transfers to third countries only occur where appropriate safeguards exist (e.g. EU Standard Contractual Clauses).

⚠️ Once the form provider is chosen (Formspree/Netlify or similar), name it here specifically: provider, purpose, country of establishment.

4. Storage duration

We store waitlist data only for as long as necessary for the purpose. It will be deleted no later than 6 months after the public launch, unless statutory retention obligations apply.

5. Cookies and analytics tools

This website currently uses no cookies and no analytics tools. If this changes, this policy will be updated accordingly.

6. Your rights

You have the following rights with regard to your personal data:

To exercise your rights, an email to hello@thermalship.app is sufficient.

7. Right to complain to a supervisory authority

You have the right to lodge a complaint with a data protection supervisory authority if you believe that the processing of your personal data violates the GDPR (Art. 77 GDPR). The supervisory authority of your place of residence or the place of the alleged infringement is responsible.

8. SSL/TLS encryption

For security reasons, this website uses SSL/TLS encryption. You can recognize an encrypted connection by the lock symbol in your browser's address bar and by "https://" in the address line.