Privacy policy
Last updated: 2026-09-01
1. Responsible party
The party responsible for data processing on this site is Mario Kreitz, Germany. You can reach us by email at info@kreitz-webdev.de.
2. Overview
This site is built to respect your privacy. It sets no cookies, runs no cross-site tracking, and collects only the minimal data needed to operate the site and understand aggregate usage. The sections below explain exactly what is processed and why.
3. Server logs and hosting
The site is self-hosted on a virtual server at Contabo, managed with Plesk. When you visit, the server processes standard access logs that may include your IP address, the date and time of the request, the requested URL, the referring page, and your browser's user-agent string. This data is used to operate and secure the site, for example to deliver pages, diagnose errors, and defend against abuse. The legal basis is Art. 6(1)(f) GDPR (our legitimate interest in a secure, functioning service). These logs are retained only for a short period.
4. Analytics
We use Umami, a privacy-friendly analytics tool that we self-host. Umami is cookieless and does not collect personal data or use cross-site fingerprinting. It records only aggregated metrics such as page views, referrers, approximate country, and browser, operating system, and device type. The legal basis is Art. 6(1)(f) GDPR (our legitimate interest in understanding how the site is used). You can read more about Umami in its documentation.
5. Cookies
This site sets no cookies. Because nothing requiring consent is stored on your device, no cookie consent banner is required.
6. Fonts and assets
Fonts are self-hosted: they are bundled at build time, so no requests are made to Google Fonts or any other third party when you load a page. The one exception is status badges: the home page and the testing page embed live badge images from GitHub, Codecov, and shields.io that show the current build, coverage, version, and license. Loading these images transmits your IP address to those providers, which act as independent controllers under their own privacy policies. The legal basis is Art. 6(1)(f) GDPR (our legitimate interest in showing accurate project status). Apart from these badges and the self-hosted Umami script described above, no third-party scripts or embeds load at runtime.
7. GitHub and npm
The project's source code, issues, and discussions are hosted on GitHub, and its published packages are hosted on npm. If you choose to interact on either site (for example, by opening an issue, joining a discussion, or viewing a package), that provider processes your data as an independent controller: GitHub's privacy statement or npm's privacy policy applies.
8. Your rights
Under the GDPR you have the rights of access, rectification, erasure, restriction of processing, objection, and data portability (Art. 15–21 GDPR). You also have the right to lodge a complaint with a supervisory authority. To exercise any of these rights, contact us using the details below.
9. Contact
For any privacy-related questions or requests, email info@kreitz-webdev.de.
10. Changes to this policy
We may update this privacy policy as the site evolves or as legal requirements change. The date below reflects the most recent revision.
11. Contact form
When you use the contact form, we process the name, email address, and message you submit in order to respond to your inquiry. The notification email is sent directly through our own mail server, hosted in Germany; no third-party email provider is involved in delivering it, and delivering it involves no transfer of data outside the EU. The only third-party processor involved under Art. 28 GDPR is Arcjet, which processes the request's IP address and headers (not the message content) through its Cloud API to protect the form against bots and abuse; this data is retained for a period set by our Arcjet plan, currently up to one hour on the free tier. The legal basis is Art. 6(1)(f) GDPR (our legitimate interest in operating the form securely and responding to inquiries). Your submission and the resulting notification email are retained only as long as necessary to handle the inquiry and are not stored anywhere beyond the operator's inbox.
12. AI-assisted translation
This project, verbatra, is an AI-assisted translation tool, and this documentation site uses it on itself: the interface text is translated into German, Spanish, and French with the help of AI language models. The longer documentation pages are AI-translated too, in a separate step outside that automated pipeline. Translated content is reviewed before publication. We note this here voluntarily, for transparency, not because a specific legal disclosure requirement applies to it.
Last updated: 2026-09-01