Privacy policy

As of: June 2026

1. Controller

The controller under the GDPR is:
Eddy Nembélessini-Silué, Schütte-Lanz-Straße 102, 12209 Berlin, Germany.
Email: review.radar.ber@gmail.com

2. Collection and storage of personal data

We process our users' personal data only to the extent necessary to provide a functional website and our content and services (Art. 6(1)(b) GDPR).

Account and subscription

  • Email address and hashed password
  • Stripe customer ID, subscription status, billing data (processed via Stripe)
  • Usage data (scrapes per month, timestamps)

Server logs

On each access, technically required data (IP address, date/time, requested URL) is stored for up to 14 days; legal basis is Art. 6(1)(f) GDPR (legitimate interest in security and troubleshooting).

3. Cookies

We use essential cookies (session, authentication) under § 25(2) TTDSG. Optional cookies are stored only with your explicit consent via our cookie banner. You can withdraw consent at any time by adjusting your browser's cookie settings.

4. Processors / third parties

  • Supabase (database hosting, authentication) — DPA in place.
  • Stripe Payments Europe Ltd. — payment processing.
  • Apify Technologies s.r.o. — running scraping actors on publicly accessible pages.
  • Cloudflare — application delivery (hosting / CDN).

5. Your rights

You have the right to:

  • Access (Art. 15 GDPR)
  • Rectification (Art. 16 GDPR)
  • Erasure (Art. 17 GDPR)
  • Restriction of processing (Art. 18 GDPR)
  • Data portability (Art. 20 GDPR)
  • Objection (Art. 21 GDPR)
  • Complaint to a supervisory authority (Art. 77 GDPR)

Requests can be sent to review.radar.ber@gmail.com.

6. Retention period

Account data is stored for the duration of your subscription and afterwards until the expiry of statutory retention periods (typically 10 years, § 147 AO). Usage and scraping data is anonymised or deleted after 12 months.

7. SSL encryption

The entire application is served exclusively over TLS / HTTPS.