Privacy Policy

Last updated: November 2025

This privacy policy explains how we process your personal data on our website in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR).

1. Controller

M&D Innovations GmbH
Schmiedgasse 28
94032 Passau
Germany

Contact:
Email: info@md-innovations.de
Phone: +49 851 95177731

Managing Director: Dr. Maximilian Kerschbaum

(Art. 13 para. 1 lit. a GDPR)

2. General Information

The use of our website is generally possible without providing personal data. We take the protection of your personal data very seriously and treat your personal data confidentially in accordance with statutory data protection regulations.

3. Hosting and Technical Provision

Provider: Hetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen, Germany

When you visit our website, the following technical data is automatically processed:

  • Anonymized IP address
  • Date and time of access
  • Pages accessed
  • Browser and operating system
  • Referrer (previous page)

Purpose: Provision and security of the website

Legal basis: Art. 6 para. 1 lit. f GDPR (legitimate interest)

Storage duration: 14 days, then automatic deletion

Server location: Germany (Nuremberg)

4. Web Analytics with Umami

We use Umami, a self-hosted, privacy-friendly analytics software.

What Umami collects:

  • Anonymized page views
  • Anonymized technical information (browser, operating system)

What Umami does NOT do:

  • No cookies
  • No storage of IP addresses
  • No tracking across multiple websites
  • No creation of user profiles

Purpose: Statistical analysis to improve the website

Legal basis: Art. 6 para. 1 lit. f GDPR (legitimate interest)

Server location: Germany (own servers)

More information: Umami Privacy

5. Disclosure of Data

We do not share your data with third parties, except:

  • With our data processors (Hetzner for hosting, Mailjet for newsletters)
  • To fulfill legal obligations

Data processing agreements in accordance with Art. 28 GDPR have been concluded with all service providers.

No data transfer outside the EU: All data is processed exclusively within the EU.

6. Your Rights

You have the following rights:

Access (Art. 15 GDPR):
You can request information about your stored data.

Rectification (Art. 16 GDPR):
You can request the correction of incorrect data.

Erasure (Art. 17 GDPR):
You can request the deletion of your data.

Restriction (Art. 18 GDPR):
You can request the restriction of processing.

Data portability (Art. 20 GDPR):
You can receive your data in a common format.

Objection (Art. 21 GDPR):
You can object to processing based on legitimate interests.

Withdraw consent (Art. 7 para. 3 GDPR):
You can withdraw given consents at any time (e.g., newsletter unsubscribe).

Complaint (Art. 77 GDPR):
You can file a complaint with a data protection supervisory authority.

Contact for your rights:
Email: info@md-innovations.de
Phone: +49 851 95177731

7. Competent Supervisory Authority

Bavarian State Office for Data Protection Supervision (BayLDA)
Promenade 18
91522 Ansbach
Germany

Phone: +49 (0)981 180093-0
Email: poststelle@lda.bayern.de
Web: https://www.lda.bayern.de

8. Data Protection in the Rehaber App

A separate privacy policy applies to the use of the Rehaber app (iOS/Android), which you can view in the app under "Settings → Privacy" or when downloading from the App Store / Play Store.

9. Changes to this Privacy Policy

We reserve the right to adapt this privacy policy to reflect changes in the legal situation or changes to our services. The current version can always be found on this page.

10. Contact

If you have any questions about data protection, please contact us:

M&D Innovations GmbH
Schmiedgasse 28
94032 Passau

Email: info@md-innovations.de
Phone: +49 851 95177731