Privacy Policy

Privacy Policy

Introduction

I respect the privacy of my visitors and am committed to protecting your personal data in accordance with the General Data Protection Regulation (GDPR) and relevant German data protection laws. This policy outlines how I collect, use, and safeguard your information.

Data controller

I, Axel Napolitano, owner of Napos Blog, located at https://napolitano.de, am the data controller responsible for processing your personal data. If you have any questions or concerns, please contact me at napoblog.gdprtopics@skjt.de

Collection and Use of Personal Data

I may collect personal data through:

Contact Forms Using Formspree

  • Type of Data Collected: When you fill out our contact forms powered by Formspree, we collect personal data such as your first name, last name, email address, phone number, and any other details you provide in the message field.
  • Purpose of Data Processing: This data allows us to address and respond to your inquiries, provide customer support, and manage any other feedback or concerns you convey.
  • Data Transfer to Third Parties: By using the Formspree service for our contact forms, your personal data is processed by Formspree. While we have integrated their service, Formspree is responsible for capturing and processing your data when you use the contact form. Detailed information on how Formspree handles your data will be provided in a later section of this privacy policy.
  • Retention: Your personal data is retained for the period necessary to address your inquiries, deliver the necessary support, and fulfill any legal or archival obligations.
  • Security Measures: We use security measures to safeguard your data against unauthorized access, modifications, or deletion. Formspree also employs security practices to ensure your data is securely transmitted and stored.
  • Your Rights: You retain rights over the personal data you share. These rights include accessing, rectifying, deleting, restricting its processing, objecting to its processing, and data portability. For any concerns or to exercise these rights, you can reach out to us at napoblog.gdprtopics@skjt.de.

Comments on Our Blog Using Disqus

  • Type of Data Collected: When you leave a comment on our blog using Disqus, the following personal data might be collected: username, email address, and the content of your comment. Depending on your Disqus settings, additional information may also be collected.
  • Purpose of Data Processing: This data is collected to facilitate community discussion on our blog. The email address may be used for notifications about replies to your comment or other relevant discussions.
  • Data Transfer to Third Parties: Disqus handles the comments on our blog. While we have integrated Disqus on our website, it’s Disqus that collects and processes your data when you comment. Further details about how Disqus processes your data will be detailed in a separate section of this privacy policy.
  • Retention: Comments and their associated data are retained as long as the article remains published or until comments are manually deleted.
  • Security Measures: Disqus implements its own security measures to protect your data. We recommend reviewing Disqus’s own privacy policy to understand their practices.
  • Your Rights: You have the right to access, modify, or delete your comment and associated data on Disqus. For more information on how to exercise these rights, please refer to the Disqus privacy policy or their user guide. If you wish to exercise your rights or have questions about the processing of your data, please contact us at napoblog.gdprtopics@skjt.de.

Newsletter Subscriptions

  • Type of Data Collected: When you subscribe to our newsletter, we may collect the following personal data: first name, last name, and email address.
  • Purpose of Data Processing: The data mentioned above is collected to send you our newsletter, to inform you about updates, promotions, events, and other related communications. You will only receive the newsletter if you have explicitly subscribed to it.
  • Opt-out Option: Every newsletter contains a link through which you can unsubscribe from our newsletter at any time. After unsubscribing, your email address will be removed from our mailing list.
  • Data Transfer to Third Parties: Your personal data may be shared with third-party vendors who assist us in sending out our newsletters, such as email service providers. These third parties are obliged to protect your personal data in accordance with this privacy policy and the applicable data protection laws.
  • Retention: We retain your personal data only as long as necessary to send you the newsletter or until you choose to unsubscribe. After unsubscribing, your personal data related to the newsletter will be deleted.
  • Your Rights: You have the right to access your data stored with us, correct it, delete it, or restrict its processing. In addition, you have the right to object to the processing and the right to data portability. If you wish to exercise your rights or have questions about the processing of your data, please contact us at napoblog.gdprtopics@skjt.de.

Donations and Content-Subscriptions:

  • Type of Data Collected: When processing donations or subscriptions, we may collect the following personal data: first name, last name, address, email address, phone number, and payment details.
  • Purpose of Data Processing: The aforementioned data is collected to process your donation or subscription, to send you confirmations or receipts, to inform you about updates or changes, and to communicate with you when necessary.
  • Data Transfer to Third Parties: Your personal data may be shared with third-party vendors who assist us in processing donations or subscriptions, such as payment service providers. These third parties are obliged to protect your personal data in accordance with this privacy policy and the applicable data protection laws.
  • Retention: We retain your personal data only as long as necessary to fulfill the purposes for which they were collected or to comply with legal requirements.
  • Your Rights: You have the right to access your data stored with us, correct it, delete it, or restrict its processing. In addition, you have the right to object to the processing and the right to data portability. If you wish to exercise your rights or have questions about the processing of your data, please contact us at napoblog.gdprtopics@skjt.de.

I do not use, transfer, or share the data for any other purposes, especially not for market research, market analysis, advertising, or profiling.

I process your data on the following legal bases:

  • Your consent
  • Legitimate interests
  • Legal obligations

Data Sharing and Transfers

I may share your data with specific third parties for certain purposes, such as for email newsletter delivery. I ensure that these third parties comply with GDPR requirements.

Retention Period

I retain personal data for as long as necessary to fulfill the purposes for which it was collected or to comply with legal, regulatory, or internal policy requirements.

Your Rights Under the GDPR

As a data subject, you have the following rights:

  • The right to be informed
  • The right of access
  • The right to rectification
  • The right to erasure (‘right to be forgotten’)
  • The right to restrict processing
  • The right to data portability
  • The right to object
  • Rights in relation to automated decision-making and profiling

Data Protection Measures

I have implemented appropriate technical and organizational measures to ensure the safety of your personal data.

Cookies

My blog uses cookies. [Briefly describe how and why you use cookies. Include information about third-party cookies if used.]

Third-party Services and Data Processing

On my personal blog, I strive to offer you an enriching and interactive experience. To achieve this, I integrate several third-party services. Here’s an overview of how these services might interact with your data:

  • Stripe (Payment Processing)
    If you make a purchase or donation through my blog, the payment will be processed by Stripe. While I do not directly handle or store your financial information, Stripe may collect details like your name, credit card data, billing address, and other payment-related details. Privacy Policy of Stripe: Link to Stripe’s Privacy Policy

  • Formspree (Form Services)
    For the contact or feedback forms on my blog, I utilize Formspree. When you submit data through these forms (e.g., your name or email address), it’s processed and stored by Formspree. Privacy Policy of Formspree: Link to Formspree’s Privacy Policy

  • Disqus (Comments)
    To facilitate comments on my blog, I employ Disqus. When you leave a comment, Disqus might collect personal information such as your name, email, IP address, and the actual comment. If you decide to log in using third-party services (like Google or Facebook), Disqus could also gather data from those profiles. Privacy Policy of Disqus: Link to Disqus’s Privacy Policy

  • YouTube (Embedded Videos)
    I occasionally embed videos from YouTube. By watching these, YouTube might place cookies on your device and gather data related to your viewing, even if you aren’t a registered YouTube user. Privacy Policy of YouTube: Link to YouTube’s Privacy Policy

  • SoundCloud (Embedded Music)
    I also embed tracks from SoundCloud. Playing these tracks means SoundCloud might set cookies on your device, capturing data about your listening activity. Privacy Policy of SoundCloud: Link to SoundCloud’s Privacy Policy

  • Matomo (Analytics)
    To understand how visitors engage with my blog, I use Matomo for analytics. This helps me capture insights like pages visited, duration of visit, and where visitors are accessing from. Matomo respects user privacy, but if you’re uncomfortable, you can opt out of Matomo tracking. I am using my own Matomo on my own server infrastructure with all privacy options enabled - including, but not limited to, fully anonymized ip-addresse and disabled cookie-tracking - and therefore no data collected with Matomo will be shared with third parties. Collected data will be deleted after 90 days. You can also always opt-out, if you still have concerns.

  • Mailchimp (Newsletter Service)
    For the distribution of our newsletters, we utilize Mailchimp. When you subscribe, your email address is transferred and stored with Mailchimp to allow us to send you regular updates. Although Mailchimp is dedicated to user privacy, if you wish to not be part of this, you can always unsubscribe from our newsletter. Privacy Policy of Mailchimp: Link to Mailchimp’s Privacy Policy

Changes to this Privacy Policy

From time to time, I may update this policy. Changes will be communicated on my blog, and I recommend checking this policy periodically.

Contact

For any questions or concerns related to this policy or your personal data, please contact me at napoblog.gdprtopics@skjt.de.

Header Photo by Jason Dent on Unsplash