Privacy
Information about how we process your personal data.
Responsible entity
SoftwareGenie24 UG (haftungsbeschränkt)
Mauernstraße 33, 38100 Braunschweig, Deutschland
Contact for privacy requests: support@softwaregenie24.de
Data we process
- Account details, sign-in information, and active sessions
- Support cases, replies, and attachments
- Your products, downloads, and notification preferences
- Assigned domains and mailbox, alias, forwarding, and quota details
- Details of managed installations, orders, and their technical status
- Push endpoint, device keys, and browser information when you enable push notifications
- Technical logs used for security and troubleshooting, plus Genius consent records
Purposes and legal bases
We process accounts, products, downloads, domains, email functions, and support to perform the contract under Article 6(1)(b) GDPR. Commercial and tax records are processed under Article 6(1)(c) GDPR. Security logs and abuse prevention are based on Article 6(1)(f) GDPR; our legitimate interest is the secure and traceable operation of the portal. Genius and push notifications are optional and based on your consent under Article 6(1)(a) GDPR.
Art. 6 Abs. 1 lit. a, b, c und f DSGVO; § 25 Abs. 2 TDDDG
The privacy contact above can answer questions about retention and deletion.
We receive data from you, other people with access to your customer account, support emails, and orders placed through softwaregenie24.de. We also process details about licenses, downloads, and managed servers.
Who receives your data
Hosting and data storage; Email delivery; OpenAI Ireland Ltd. for Genius (only with your consent); Stripe for payment processing
Genius and the OpenAI API
Genius is activated only after you consent. We have entered into a data processing agreement under Article 28 GDPR with OpenAI Ireland Ltd. OpenAI receives your message, the conversation needed for follow-up questions, and only the account details relevant to your question. Email addresses in the transferred conversation are removed; mailbox details are masked. Passwords, keys, complete license files, and internal database IDs are not sent.
Requests use OpenAI’s global API endpoint. Processing exclusively within the EEA is not guaranteed. Transfers outside the EEA are subject to: Angemessenheitsbeschluss nach Art. 45 DSGVO, insbesondere das EU-US Data Privacy Framework, oder EU-Standardvertragsklauseln, jeweils soweit einschlägig.
The legal basis for the transfer is your consent under Article 6(1)(a) GDPR. Requests are sent with API storage disabled (store: false). OpenAI states that API data is not used for training unless it is explicitly shared. Abuse-monitoring logs may nevertheless be retained for up to 30 days, or longer where required by law or security needs. Consent applies to the current conversation. You may withdraw it for the future through “New conversation” or by signing out. The time and version of consent are logged without conversation content.
Retention
You are signed out automatically after no more than eight hours. We delete one-time access links after use or expiry. Details identifying who accessed a download are deleted after 90 days, while the download record is kept for 365 days. We redact the original content of incoming emails after 180 days and delete completed help-feature drafts after 90 days. Support attachments are normally deleted 730 days after a request is closed. Revoked push subscriptions are deleted after 30 days. Account, contract, licence, and billing records are retained only while needed for the contract and applicable legal retention and evidence obligations.
Your rights
You may request access, rectification, erasure, restriction, portability, and object where the applicable legal conditions are met. Consent may be withdrawn for the future. Use the privacy contact above for requests.
Supervisory authority: Der Landesbeauftragte für den Datenschutz Niedersachsen
Cookies and tracking
The portal uses essential cookies for sign-in, security, and language preferences. We do not use advertising or audience measurement. Push notifications are configured only after you enable them. The push service used by your browser or operating system then receives the data required for delivery.
Required information
The marked information is required for sign-in and contract administration. Without it, we cannot provide the customer account or relevant service. Genius and push notifications are optional.
Automated decisions
Genius reads account data without changing it and does not make decisions with legal or similarly significant effects under Article 22 GDPR. Genius opens a support case only after you explicitly confirm that the conversation should be sent.
Last updated: 4 September 2026