Legal information

    Privacy policy.

    As of: 21 September 2026.

    1. Controller

    The controller responsible for data processing on this website is:

    Dominic Müller

    DOMU.STUDIO – Sole proprietor

    Mainzer Str. 19 – 50678 Cologne

    Germany

    Phone: +49 221 169 295 34

    Email: contact@domu.studio

    2. General information on data processing

    I process personal data only insofar as this is necessary to provide a functional website as well as my content and services, or where another legal basis under Art. 6 (1) GDPR applies.

    Personal data is deleted as soon as the purpose of storage ceases to apply and no statutory retention obligations stand in the way.

    3. Provision of the website and server logs

    When this website is accessed, the hosting provider automatically collects information that your browser transmits. This includes in particular: IP address (shortened where possible), date and time of the request, content of the request, HTTP status code, transferred data volume, referrer URL as well as browser and operating-system information.

    Processing is carried out on the basis of Art. 6 (1) lit. f GDPR to ensure stable, secure and functional operation of the website.

    4. Cookies and similar technologies

    This website uses technically necessary cookies as well as — subject to your consent — cookies and comparable technologies for statistics and marketing purposes.

    Technically necessary cookies are required to provide basic functions of the website (e.g. storing your cookie selection). The legal basis is Art. 6 (1) lit. f GDPR or § 25 (2) TTDSG.

    All other cookies are only set if you actively consent via the cookie banner (Art. 6 (1) lit. a GDPR, § 25 (1) TTDSG). You can revoke your consent at any time via the corresponding button in the footer.

    5. Contact and email delivery (Resend)

    When you contact me by email, phone or via the contact form, your details (name, email address, optionally company, message) are processed to handle the request and any follow-up questions (Art. 6 (1) lit. b or lit. f GDPR).

    For the delivery of the emails generated from the contact form (notification to me as well as confirmation to you), I use the service Resend by Resend, Inc., 2261 Market Street #5039, San Francisco, CA 94114, USA. In doing so, the data entered into the form as well as technical metadata (e.g. IP address, timestamp) is transmitted to Resend and processed there for the purpose of delivery.

    The legal basis is Art. 6 (1) lit. f GDPR (legitimate interest in reliable, secure email delivery). A data processing agreement pursuant to Art. 28 GDPR is in place with Resend. Transfers to the USA take place on the basis of appropriate safeguards under Art. 44 et seq. GDPR (in particular EU standard contractual clauses and — where applicable — the EU-US Data Privacy Framework).

    More information can be found in Resend's privacy policy at https://resend.com/legal/privacy-policy.

    The data is deleted as soon as it is no longer required for processing the request and no statutory retention obligations apply.

    6. Data processing in web and app projects

    When developing and operating web systems as well as iOS and Android apps for clients, additional services and platforms that process personal data may be used, depending on the project.

    These may include in particular: the app store platforms of Apple (App Store Connect) and Google (Google Play Console), push notification services, crash and error reporting, analytics tools as well as backend, database and hosting services.

    Which services are used depends on the respective project and is agreed transparently during the project. The client, as the operator of the finished application, is generally responsible for its data protection compliance towards its end users.

    Where I process personal data on behalf of a client, this takes place on the basis of a data processing agreement pursuant to Art. 28 GDPR.

    7. Hosting

    This website is hosted by a processor located in the EU. A corresponding data processing agreement pursuant to Art. 28 GDPR is in place.

    8. Recipients and transfers to third countries

    Personal data is only passed on to third parties insofar as this is required for contract performance, where a statutory obligation exists, or where you have given consent.

    Should data be transferred to third countries outside the EEA, this will only take place in compliance with appropriate safeguards under Art. 44 et seq. GDPR (in particular EU standard contractual clauses).

    9. Your rights

    You have the right at any time to obtain information (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20), as well as the right to object (Art. 21) and the right to withdraw consents given (Art. 7 (3) GDPR).

    You may lodge complaints with a supervisory authority, for example the State Commissioner for Data Protection and Freedom of Information of North Rhine-Westphalia.

    10. Data security

    This website uses TLS encryption (HTTPS) for the secure transmission of your data. Appropriate technical and organisational measures are taken to protect your data against unauthorised access, loss or manipulation.

    11. Currency of this privacy policy

    This privacy policy is dated 21 September 2026 and will be updated as needed to reflect changed legal or factual circumstances.