Privacy Policy / Datenschutzerklärung
Operator-configurable policy shell for data processing, retention, rights, and consent.
Version: [TODO: Provide PRIVACY_VERSION]
Effective date: [TODO: Provide PRIVACY_EFFECTIVE_DATE]
Cookie preferences can be reviewed at Cookie settings.
Controller Identity
Controller: [TODO: legal entity (LEGAL_ENTITY_NAME)].
Representative: [TODO: legal representative (LEGAL_REPRESENTATIVE)].
Contact Details
General legal contact: [TODO: legal contact email (LEGAL_CONTACT_EMAIL)].
Support contact: support@kirla-webservices.com.
Postal address: [TODO: postal address (LEGAL_POSTAL_ADDRESS)].
Data protection contact: [TODO: DPO/privacy contact (PRIVACY_DPO_EMAIL)].
Processed Data Categories
We process account identity data, authentication/security metadata, profile preference data, briefing content artifacts, billing ledger metadata, and support communications.
- Account identity: name, email, account role, verification state.
- Authentication/security: session versioning, rate-limit metadata, security event logs.
- Product/profile data: topics, regions, scheduling and preference metadata.
- Briefing operations: generated briefings, delivery records, source archive metadata.
- Billing metadata: wallet movements, references, and reconciliation records.
Processing Purposes
Data is processed to operate the service, secure accounts, deliver briefings, support billing operations, and provide support/compliance responses.
- Account creation, login, password recovery, and account security.
- Briefing generation, email delivery, and user-facing archives.
- Billing balance handling and transaction transparency.
- Service abuse prevention, diagnostics, and incident investigation.
Legal Bases
Processing is generally based on contract performance, legal obligations, and legitimate interests in operating and securing the service.
Where optional technologies are introduced, consent-based processing is used for those categories.
Recipients and Processors
[TODO: subprocessor list (PRIVACY_SUBPROCESSORS)]
- [TODO: Add real subprocessors once finalized.]
International Transfers
[TODO: international transfer safeguards (PRIVACY_INTL_TRANSFER_NOTE)]
Retention and Deletion
[TODO: retention note (PRIVACY_RETENTION_NOTE)]
Deletion requests are handled via support at support@kirla-webservices.com.
- [TODO: account deletion retention exception note (ACCOUNT_DELETION_RETENTION_NOTE)]
- Security and abuse-prevention records may be retained for legitimate interests and legal obligations.
- Anonymization vs deletion policy: [TODO: anonymization policy note (ACCOUNT_DELETION_ANONYMIZATION_NOTE)]
Data Subject Rights
Users may request access, rectification, deletion, restriction, objection, and data portability where applicable under law.
Requests can be submitted via support contact channels listed on the contact page.
Cookies and Consent Categories
Strictly necessary authentication cookies are used for login/session security.
Optional analytics/marketing categories are currently disabled in this deployment.
- Necessary: always enabled for core security and sign-in behavior.
- Analytics: disabled.
- Marketing: disabled.
Security, Logging, Account, Billing, and Email Flows
Security events, account recovery, verification, billing reconciliation, and delivery operations generate operational logs and metadata required to run and secure the service.
- Password reset and account security events.
- Rate-limit and abuse prevention telemetry.
- Billing wallet and reconciliation event metadata.
- Email verification and delivery status records.
Complaints and Supervisory Authority
Supervisory authority: [TODO: supervisory authority (PRIVACY_SUPERVISORY_AUTHORITY)].
You may also contact the controller or support contact first for direct resolution.