Privacy Policy

Your privacy is important to us - GDPR-compliant data processing at Jurono

⚠️ Development Notice

This privacy policy contains placeholder information for development purposes. Before going live, all placeholder content must be replaced with actual company information and reviewed by qualified legal counsel.

Important Information

This privacy policy applies to the website jurono.eu and the Jurono platform. As a Legal Tech company, we handle your data with the highest care and according to EU data protection standards.

1. Data Controller

Jurono

[REAL ADDRESS NEEDED]

[CITY, POSTAL CODE], Germany

Email: privacy@jurono.eu

Phone: [REAL PHONE NUMBER NEEDED]

Data Protection Officer: dpo@jurono.eu

2. General Information on Data Processing

2.1 Scope of Personal Data Processing

We process personal data only to the extent necessary for providing a functional website and our content and services. Processing typically occurs only with consent or when processing is permitted to safeguard a legitimate interest.

2.2 Legal Basis for Processing

  • Art. 6(1)(a) GDPR: Consent of the data subject
  • Art. 6(1)(b) GDPR: Contract performance or pre-contractual measures
  • Art. 6(1)(c) GDPR: Legal obligation
  • Art. 6(1)(f) GDPR: Legitimate interests

3. Website Provision and Log Files

3.1 Description and Scope of Data Processing

Each time you visit our website, our system automatically collects data and information from the accessing computer system:

  • Browser type and version information
  • User's operating system
  • User's Internet Service Provider
  • User's IP address
  • Date and time of access
  • Websites from which the user's system reached our website
  • Websites accessed by the user's system through our website

3.2 Legal Basis

The legal basis for temporary storage of data and log files is Art. 6(1)(f) GDPR.

3.3 Purpose of Data Processing

Temporary storage of the IP address by the system is necessary to enable delivery of the website to the user's computer. Storage in log files occurs to ensure website functionality and to optimize the website and ensure the security of our IT systems.

3.4 Storage Duration

Data is deleted as soon as it is no longer necessary for achieving the purpose of collection. This is typically after 7 days.

4. Cookies

4.1 Description and Scope of Data Processing

Our website uses cookies. Cookies are text files stored in or by the internet browser on the user's computer system.

4.2 Cookie Categories

  • Essential Cookies: Required for basic website functions
  • Functional Cookies: Store your settings and preferences
  • Analytics Cookies: For website improvement (only with consent)
  • Marketing Cookies: For personalized advertising (only with consent)

4.3 Cookie Management

You can change your cookie settings at any time through our cookie banner or browser settings. Essential cookies cannot be disabled.

Detailed Cookie Information

5. User Registration and Account

5.1 Scope of Data Processing

When registering for a user account, we collect the following data:

  • First and last name
  • Email address
  • Law firm/company name
  • Phone number (optional)
  • Password (encrypted storage)
  • IP address and timestamp of registration

5.2 Legal Basis

Legal basis is Art. 6(1)(b) GDPR, as data processing is necessary for contract performance.

5.3 Storage Duration

Data is stored for the duration of account usage and anonymized or deleted after account deletion, unless legal retention requirements exist.

6. Contact Form and Email Contact

6.1 Scope of Data Processing

When using the contact form or email contact, we collect:

  • Name and email address
  • Company/organization (optional)
  • Message content
  • Timestamp of submission

6.2 Legal Basis

Legal basis is Art. 6(1)(f) GDPR (legitimate interest in processing inquiries).

6.3 Storage Duration

Data is deleted once inquiry processing is complete and no legal retention requirements exist.

7. Newsletter

7.1 Scope of Data Processing

For newsletter delivery, we collect:

  • Email address
  • Name (optional)
  • Areas of interest (optional)
  • IP address and timestamp of registration
  • Open and click rates (anonymized)

7.2 Double Opt-In Process

Registration uses a double opt-in process. After registration, you receive a confirmation email with a link for final confirmation.

7.3 Legal Basis

Legal basis is Art. 6(1)(a) GDPR (consent).

7.4 Withdrawal

You can withdraw consent at any time by clicking the unsubscribe link in any newsletter email or sending an email to newsletter-off@jurono.eu.

8. Web Analytics and Marketing

8.1 Privacy-Focused Analytics (Plausible)

We use Plausible Analytics, a privacy-focused web analytics service that respects user privacy and is fully GDPR compliant.

Service Provider: Plausible Insights OÜ (analytics.server.shecodes.online)

Data Processed: Aggregated and anonymous website usage statistics

Personal Data: No personal data, cookies, or persistent identifiers are used

IP Addresses: Not stored or tracked

Cross-site Tracking: None

Legal Basis: Art. 6(1)(f) GDPR (legitimate interest in website optimization)

Data Location: EU (privacy-compliant hosting)

8.2 Internal Analytics

We use our internal analytics system to analyze user behavior (only with consent). IP addresses are anonymized and data is processed on EU servers.

8.3 Other Third-Party Tools

We may integrate with the following tools (only with consent):

  • CRM Systems: For customer relationship management
  • Support Tools: For customer service
  • Email Services: For communication and newsletters

8.4 Legal Basis

Legal basis is Art. 6(1)(a) GDPR (consent) for internal analytics and marketing tools, or Art. 6(1)(f) GDPR (legitimate interest) for privacy-compliant services like Plausible Analytics.

9. Data Sharing with Third Parties

9.1 Data Processors

We work with the following data processors:

  • Cloud Hosting: EU-based hosting providers
  • Payment Processing: GDPR-compliant payment providers
  • Email Services: EU-based email service providers
  • Backup Services: EU-based data backup

9.2 Data Protection Guarantees

All data processors are contractually obligated to comply with GDPR and provide adequate data protection guarantees.

9.3 No Third Country Transfers

Your data is generally not transferred to countries outside the EU. Exceptions only occur with adequate protection measures (e.g., EU Standard Contractual Clauses).

10. Your Rights

You have the following rights regarding your personal data:

10.1 Right to Access (Art. 15 GDPR)

You have the right to obtain information about the personal data we process about you.

10.2 Right to Rectification (Art. 16 GDPR)

You have the right to request correction of inaccurate or completion of incomplete data.

10.3 Right to Erasure (Art. 17 GDPR)

You have the right to deletion of your personal data if the conditions of Art. 17 GDPR are met.

10.4 Right to Restrict Processing (Art. 18 GDPR)

You have the right to request restriction of processing.

10.5 Right to Data Portability (Art. 20 GDPR)

You have the right to receive your data in a structured, commonly used, and machine-readable format.

10.6 Right to Object (Art. 21 GDPR)

You have the right to object to processing of your data for reasons arising from your particular situation.

10.7 Right to Withdraw Consent (Art. 7(3) GDPR)

You have the right to withdraw given consent at any time.

10.8 Right to Lodge a Complaint

You have the right to lodge a complaint with the competent supervisory authority.

11. Data Security

11.1 Technical Measures

  • SSL/TLS encryption for all data transmissions
  • AES-256 encryption for data at rest
  • Regular security updates and patches
  • Firewall and intrusion detection systems
  • Regular penetration testing

11.2 Organizational Measures

  • Access control based on need-to-know principle
  • Regular employee training
  • Incident response procedures
  • Backup and disaster recovery concepts

11.3 Certifications

Our security measures are ISO 27001 certified and regularly reviewed by external auditors.

12. Contact Data Protection Officer

For questions about data protection or to exercise your rights, contact:

Data Protection Officer

Jurono

Email: dpo@jurono.eu

Phone: [REAL PHONE NUMBER NEEDED]

13. Updates to This Privacy Policy

This privacy policy is currently valid and dated January 2025.

Due to further development of our website and services or changed legal requirements, it may become necessary to change this privacy policy. The current privacy policy can always be accessed and printed from jurono.eu/privacy.

Effective Date: January 2025 | Version: 2.0 | Last Updated: January 15, 2025

Jurono - Modern Legal Software for German Law Firms