Privacy Policy

Table of contents

General Information

Inaccordance with Articles 13 and 14 of the GDPR, I inform you about the collection, storage, and processing of your personal data when you use my website. I reserve the right to update this statement as needed to ensure ongoing compliance with current legal requirements.

Contact Details of the Data Controller

The person responsible for this website is:

Stanley Okoro
Petersburger Str. 39
10249 Berlin
Germany

Email: info@stanley-rubyn.com
Mobile: +49 (0) 172 755 44 56

Data Processing on My Website
Contact Form

I use the „Fluent Forms“ plugin to create contact and other forms. Your entries are stored directly in my database. Since my website is hosted on a German server, no data is forwarded to external cloud services.

Summary of Data Processing:

  • Purpose: Answering your inquiries, processing booking requests, ensuring secure email delivery, and preventing spam/abuse.
  • Personal Data Collected: Name, email address, phone number (if provided), message content, and any other information you choose to share.
  • Technical Data Automatically Collected: IP address, timestamp, browser and operating system details, and the referring URL.
 

All data is protected during transmission via SSL/TLS encryption. Technical data is collected solely to secure email delivery, filter spam, and manage messages. No profiling or marketing analysis takes place.

Legal Basis: Processing is based on the performance of pre-contractual measures or contract fulfillment (Art. 6(1)(b) GDPR), particularly for bookings. For general inquiries, it is based on my legitimate interest in effectively answering you and preventing abuse (Art. 6(1)(f) GDPR). If you have given explicit consent (e.g., for a newsletter), this serves as an additional legal basis (Art. 6(1)(a) GDPR).

Appointment Booking

For appointments, I use the „FluentBooking“ plugin. This is a locally hosted service that saves booking entries directly to my database; data is not sent to external cloud services or the plugin provider’s servers.

Summary of Data Processing:

  • Purpose: Arranging initial calls, booking studio sessions (e.g., audio recordings), confirming/changing appointments, and managing/billing services.
  • Personal Data Collected: Name, email, phone number, desired time/duration, service type, and any special requests.
  • Technical Data Automatically Collected: IP address, timestamp, browser/OS info, email headers for delivery, and session cookies.
 

All data is protected via SSL/TLS encryption. Technical data is used only to secure delivery, filter spam, and manage messages. No profiling or marketing analysis takes place.

Legal Basis: Processing is based on contract fulfillment or pre-contractual steps (Art. 6(1)(b) GDPR). Technical data collection is based on my legitimate interest in ensuring system security and preventing abuse (Art. 6(1)(f) GDPR). Explicit consent (Art. 6(1)(a) GDPR) applies if given.

Email Delivery

To ensure secure and reliable email delivery, I use the „FluentSMTP“ plugin. This ensures your messages reach my inbox directly. As I use my German web host’s SMTP server, no content is forwarded to external cloud services.

Summary of Data Processing:

  • Purpose: Secure delivery of emails and notifications, improving deliverability, technical error analysis, and preventing spam/abuse through logging.
  • Personal Data Collected: Sender’s email (and recipient if applicable), name, message content, and subject line.
  • Technical Data Automatically Collected: Sender’s IP address, sending timestamp, delivery status, browser/OS info, and server headers.
 

All data is protected via SSL/TLS encryption. Technical data is used only to secure delivery, filter spam, and manage messages. No profiling or marketing analysis takes place.

Legal Basis: Processing is based on contract fulfillment or pre-contractual steps (Art. 6(1)(b) GDPR). Technical processes are based on my legitimate interest in ensuring communication functionality and preventing abuse (Art. 6(1)(f) GDPR).

Newsletter

I use the „FluentCRM“ plugin to create newsletters and manage subscribers. It is a locally hosted service that stores data directly in my database; no data is sent to external cloud services or the plugin provider.

Summary of Data Processing:

  • Purpose: Sending regular updates on news/offers, communicating with subscribers, and providing exclusive content.
  • Personal Data Collected: Email address, name, registration date/time, IP address at registration, confirmation status, unsubscription date/time, and any other provided info.
  • Technical Data Automatically Collected: IP address on opens/clicks, timestamps, browser/OS info, referring URL, and delivery/error logs.
  •  

All data is protected via SSL/TLS encryption. Technical data is used only to secure delivery, filter spam, and manage messages. No profiling or marketing analysis takes place.

Legal Basis: Processing is based on contract fulfillment for requested services (Art. 6(1)(b) GDPR). General inquiries are based on my legitimate interest (Art. 6(1)(f) GDPR). Explicit consent (Art. 6(1)(a) GDPR) applies for the newsletter.

Cookies and Other Integrated Services
Consent Tool

I use the plugin „Real Cookie Banner“ on my website to obtain your consent for cookies before they are set. The plugin runs entirely on my own server. All data is stored directly in my database or as small files (cookies) on your device. Since my website is hosted on a German server, no data is sent to external companies or the plugin provider’s servers.

Summary of Data Processing:

  • Purpose:To obtain your consent before setting cookies, remember your choices (accepted/rejected), keep a record of your consent as proof, and ensure my website meets legal requirements.
  • Personal Data Collected:Consent status (per category), date and time of consent, version number of settings (for update records), and a session ID to link consent to your visit.
  • Technical Data Automatically Collected:IP address (briefly, for the consent decision), browser and device info, timestamp of settings access, cookie names set, and the referrer URL (page you came from).

All data is encrypted during transmission (SSL/TLS). Technical data is used solely to securely store your consent and keep the system running smoothly. No profiling takes place, and your data is not used for marketing purposes.

Legal Basis: Processing is based on your explicit consent (Art. 6(1)(a) GDPR). The plugin stores this consent so I can prove you agreed to the data processing. This also serves my legitimate interest in keeping my website legally compliant (Art. 6(1)(f) GDPR).

You can withdraw your consent at any time through the cookie banner or change your settings whenever you like. I store your decision for as long as you’ve consented or as required by law (typically up to 2 years as proof). If you withdraw your consent or the retention period expires, I will delete the data.

For a detailed breakdown of which services are used on my site and which cookies they set, please see my Cookie Policy.

Website Builder

I use the plugin „Elementor Pro“ to design and build my website. It is hosted entirely on my server in Germany. To ensure everything works properly (for example, for page previews), the plugin stores only temporary data directly in your browser. No personal data—including your IP address—is sent to external companies or Elementor’s servers. All information stays within the European Union.

I process this data solely to ensure my website runs smoothly and displays correctly on all devices. I do not collect any personal data from you, only the technical information about your browser needed for the website to display correctly. All connections are encrypted, and no profiles are created about you or used for advertising.

The legal basis for this processing is my legitimate interest in maintaining a fully functional website. Temporary browser data is automatically deleted when you close your browser. You can also remove this data at any time by clearing your browser cache.

External Links to Social Networks

I use embedded social media logos as external hyperlinks. Merely visiting my website does not transmit data to these services (e.g., Instagram, TikTok). Data is only transferred to the respective platform when you actively click a link, redirecting you to a new tab. At that point, the platform may collect behavioral data (interests, purchasing habits) for personalized advertising.

Note: I do not store data regarding your clicks on these links. This is based on my legitimate interest (Art. 6(1)(f) GDPR). Since I cannot influence how providers collect your data, please review their privacy policies:

 

Third Countries: If you are logged into a social platform, the provider may link your visit to your account. For US-based providers (e.g., Bandcamp), transfers rely on the EU-US Data Privacy Framework, though this remains legally debated. If you wish to avoid data transfer to third countries, please do not click the external links. I mark external links with a symbol (↗) to indicate you are leaving my site.

Data Transfer to Processors and Third Parties

For web hosting, I have a data processing agreement (Art. 28 GDPR) with:

ALL-INKL.com – Neue Medien Münnich
Owner: René Münnich
Hauptstraße 68, 02742 Friedersdorf, Germany

This ensures your data (e.g., IP addresses, visit logs) is processed only per my instructions and in compliance with the GDPR. The provider may use subcontractors; if so, I will update this policy accordingly.

I only share personal data with third parties if necessary for contract fulfillment, if you have consented, or if legally required. All transfers comply with GDPR (Art. 6(1)). Processing in third countries (outside EU/EEA) strictly follows Articles 44 ff. GDPR.

Data is stored only as long as necessary for the hosting contract or my legitimate interest. Upon contract termination, data is usually deleted immediately, unless retention is required by law (e.g., tax laws).

Your Rights as a Data Subject

  • Right to Access (Art. 15 GDPR): You can request information on processing purposes, data categories, retention periods, data origins, and recipients (including in third countries).
  • Right to Rectification (Art. 16 GDPR): You can request correction of inaccurate or completion of incomplete data.
  • Right to Erasure (Art. 17 GDPR): Also known as the „right to be forgotten,“ you can request deletion of your data.
  • Right to Restriction (Art. 18 GDPR): You can request restriction of processing under certain conditions.
  • Right to Data Portability (Art. 20 GDPR): You can receive your data in a structured, machine-readable format or request direct transfer to another controller (if technically feasible and based on consent/contract).
  • Right to Object (Art. 21 GDPR): You can object to processing based on legitimate interests or for direct marketing.
  • Right to Complain (Art. 77 GDPR): You can lodge a complaint with the competent supervisory authority. For me, this is the Berlin Commissioner for Data Protection and Freedom of Information.
 
Retention Period

I store your data only as long as necessary for the intended purpose or as required by law. Once the purpose ends or consent is withdrawn, I delete the data, unless legal retention periods apply (e.g., 10 years for invoices under § 147 AO and § 257 HGB). Deletion occurs automatically after these periods expire.

Last Updated: April 2026