Data protection information

Here you will find information about the handling of such data, which is due to you and processed by 2fink Consulting.

The goal is that you can read this data protection information as pleasantly as a cup of tea. Namely, clear. If something is still incomprehensible or you have questions, please feel free to contact us. 2fink Consulting is of course available without unnecessarily collecting data.

? Responsible & Contact

2fink Consulting
Nicole Fink
Upper Pfaffensteigstr. 19b
91126 Schwabach

Contact:
+49 (0) 151 5845 3180
info@2fink.com

Purposes for which personal data are processed and their legal basis

What is processed?IP address, browser?/OS?Info, referrer?URL, hostname, access time, amount of data transferred, HTTP?Status
Where did the data come from?Automatically during the visit
Why?Technical operation, ensuring system security, troubleshooting, protection against misuse and cyber attacks
legalLegitimate interest in the technical provision and smooth operation of the website (entrepreneurial interest) ? Art.?6?Abs.?1?lit.?f GDPR
recipients1&1?IONOS?SE, Elgendorfer?Str.?57,?56410?Montabaur,?Germany
Third country?transmission?No
Retention period7?days ? automated deletion
What is processed? Email address, phone number, name, message, timestamp
Where did the data come from? Directly indicated by you
Why? Processing inquiries, customer service, establishing a business relationship
legal Legitimate interest in business communication (entrepreneurial interest)?+?in case of pre-contractual enquiries Conclusion of contract? or pre-contractual measures ? Art.?6?Abs.?1?lit.?b/f GDPR
recipients Internal processing + Tutao?GmbH, Deisterstr.?17A,?30449?Hannover (E?Mail?Service) (Processor)
Third country?transmission? No
Retention period 3?years for the documentation of the business relationship, otherwise deletion of the data after completion of the processing
What is processed? E?Mail?address, content, metadata of the e?Mail?communication
Where did the data come from? Incoming and outgoing emails?
Why? Secure business communication, customer support, contract processing
legal Legitimate interest in secure communication (entrepreneurial interest)?+?Contract performance (pre-contractual measures, conclusion of contract, execution of contract) ? Art.?6?Abs.?1?lit.?b/f GDPR
recipients Internal processing + Tutao?GmbH Deisterstr.?17A,?30449?Hannover (E?Mail?Service) (Processor)
Third country?transmission? No
Retention period Corresponds to the respective transaction or purpose of the contract, maximum 10?years

The e-mail _communication is particularly protected by end-to-end encryption, encrypted search index, open source code, ECDH (x25519) Kyber-1024, server in Germany, zero-knowledge architecture, see also https://tuta.com/de/security (external link)

What is processed? Business documents, customer documents, file metadata (file name, change history)
Where did the data come from? Customers & internal creation
Why? Secure storage, audit-proof documentation, traceability of processes
legal Legitimate interest in safe storage and comprehensible documentation (entrepreneurial interest)?+?statutory retention obligations (e.g. GoBD) ? Art.?6?Abs.?1?lit.?c/f GDPR
recipients Internal processing + IONOS?Managed?Nextcloud by IONOS SE, Elgendorfer Str. 57, 56410 Montabaur, Germany (cloud service) (processor)
Third country?transmission? No
Retention period Legal retention periods (up to?10?years), then deletion

Documents that are particularly worthy of protection are first encrypted locally before they are uploaded to the Managed?Nextcloud.

What is processed? Particularly confidential customer data, compliance?Documents
Where did the data come from? Customer care & Consulting
Why? Maximum protection of confidential information
legal Legitimate interest in the protection of confidential data (entrepreneurial interest)?+?Contract performance (encryption obligation) ? Art.?6?Abs.?1?lit.?b/f GDPR
recipients Local encryption (no third parties)
Third country?transmission? No
Retention period Conforms to the purpose of the order and legal requirements (up to?10?years)

As a special protection measure, AES-256 encryption takes place before each storage/transmission. Keys are also managed locally.

Cookies & Tracking

Only session cookies required for WordPress session management are set. These are automatically deleted when the browser is closed.

No tracking cookies or other tracking technologies are used. There is no user tracking.

No user profiles are created and no analysis or profiling activities are carried out.

There is no evaluation of user behavior.

Rights of data subjects

You will receive detailed information about all personal data that 2fink Consulting stores about you.

Incorrect or incomplete data will be corrected immediately.

Also ‘right to be forgotten’. Your data will be deleted as long as there are no legal storage obligations to the contrary.

The processing will be paused as long as you have the accuracy or necessity of the data checked.

You will receive your data in a structured, common format for sharing with third parties.

Possible with a supervisory authority, e.g. via the form under https://www.lda.bayern.de/de/beschwerde.html (external link) at the Bavarian State Office for Data Protection Supervision (BayLDA), Promenade 18, 91522 Ansbach

Consent can be revoked at any time for the future. Just send an e-mail to info@2fink.com. The revocation has no negative consequences.

Right to object

If 2fink Consulting processes your personal data for direct marketing purposes, you have the right to object to this processing at any time without giving reasons. The objection is free of charge and can be sent informally by e-mail to info@2fink.com take place. After receipt of your objection, your data will no longer be used for direct marketing.

If 2fink Consulting processes your data on the basis of legitimate interests, you can also object to ? free of charge and informally at any time for reasons arising from your particular situation. info@2fink.com. The processing will then be discontinued, unless 2fink Consulting can demonstrate compelling legitimate grounds that outweigh your interests, rights and freedoms, or the processing is necessary for the establishment, exercise or defence of legal claims.

Contact for data protection enquiries

?  E?mail: info@2fink.com

Status: October 2025