Privacy Policy

This privacy policy aims to inform users of the website about the nature, scope, and purpose of the collection and use of personal data by the website operator. The contact details of the website operator can be found here:

Dr. Antje Schönfelder

Nonnenstr. 38b

04229 Leipzig


Legal Notice:

As website operators, we take data protection very seriously and treat your personal data confidentially and in accordance with legal regulations. We recommend that you read our privacy policy regularly, as it may change due to the continuous development of our website or services, or due to legal or regulatory requirements.

In this privacy policy, we use terms (e.g., "personal data" or "processing") defined in Article 4 of the General Data Protection Regulation (GDPR).

Relevant legal bases

In accordance with Article 13 of the GDPR, we inform you of the legal bases for our data processing. If the legal basis is not mentioned in the privacy policy, the following applies: the legal basis for obtaining consent is Article 6, paragraph 1, point a, and Article 7 GDPR, the legal basis for processing to fulfill our services and perform contractual measures as well as respond to inquiries is Article 6, paragraph 1, point b GDPR, the legal basis for processing to fulfill our legal obligations is Article 6, paragraph 1, point c GDPR, and the legal basis for processing to protect our legitimate interests is Article 6, paragraph 1, point f GDPR. In the event that vital interests of the data subject or another natural person require the processing of personal data, Article 6, paragraph 1, point d GDPR serves as the legal basis.

Security measures

In accordance with Article 32 GDPR, we take suitable technical and organizational measures, taking into account the state of the art, implementation costs, the nature, scope, circumstances, and purposes of processing, as well as the varying likelihood and severity of the risk to the rights and freedoms of natural persons, to ensure a level of security appropriate to the risk. These measures include, in particular, ensuring the confidentiality, integrity, and availability of data by controlling physical access to the data, as well as the access, input, disclosure, availability, and separation of data. We have also established procedures to ensure the exercise of data subject rights, deletion of data, and response to data breaches. Furthermore, we consider the protection of personal data in the development or selection of hardware, software, and procedures, in accordance with the principle of data protection by design and by default (Article 25 GDPR).

Collaboration with data processors and third parties:

If, within the framework of our processing, we disclose data to other persons and companies (processors or third parties), transmit it to them, or otherwise grant them access to the data, this only takes place on the basis of a legal permission (e.g., if a transfer of the data to third parties, such as payment service providers, is necessary for the performance of the contract in accordance with Article 6, paragraph 1, point b GDPR), you have consented, a legal obligation provides for it, or based on our legitimate interests (e.g., when using agents, web hosts, etc.).

If we engage third parties to process data based on a so-called "data processing agreement," this is done based on Article 28 GDPR.

Transfers to third countries

If we process data in a third country (i.e., outside the European Union (EU) or the European Economic Area (EEA)) or if this occurs in the context of using third-party services or disclosure, or transfer of data to third parties, this will only take place if it is necessary to fulfill our (pre)contractual obligations, on the basis of your consent, due to a legal obligation, or based on our legitimate interests. Subject to legal or contractual permissions, we process or have data processed in a third country only if the special requirements of Articles 44 et seq. GDPR are met. This means that the processing takes place, for example, on the basis of special guarantees, such as the officially recognized determination of a level of data protection corresponding to that of the EU (e.g., for the USA through the "Privacy Shield") or compliance with officially recognized special contractual obligations (so-called "standard contractual clauses").

Access data

Due to our legitimate interest (Article 6, paragraph 1, point f GDPR), we collect data about access to our website and store it in the server's log files.

The following data is logged:

  • Requested page

  • Referrer URL

  • Date and time of server request

  • Status of server request

  • Transferred data volume

  • IP address

  • User-agent (browser & operating system)

These log files are stored for a maximum of 7 days and then deleted. The data is stored solely for security reasons, to be able to clarify misuse cases, and is not merged with other data sources. If data must be retained for evidentiary purposes, it is excluded from deletion until the incident is finally clarified. The same settings and rules also apply to the data servers "daten.verwaltungsportal," "," "," and "," which belong to the backend system of our website provider.


This website uses cookies to increase user-friendliness, functionality, and security. Cookies are small files that are stored on your end device. Your browser accesses these files. This allows the browser to be distinguished from other browsers. This enables the website to offer functions that would not be possible without cookies, particularly a simple menu navigation and other individual website settings. The cookies for these functions usually have a maximum lifespan of 24 hours and are not used to identify visitors.

Modern browsers offer the option to disallow cookies and thus deactivate them in general for one or all websites. When using this browser function, it is not guaranteed that all functions of this website can be used without restrictions.

Collection and processing of personal data

In principle, the use of our website is possible without providing personal data. However, if the user wants to use a function that requires the provision of personal data, the website operator processes the personal data only with a corresponding legal basis or consent of the data subject. Personal data includes all information that can be assigned to a specific or identifiable natural person—such as your name, email address, or phone number.

On our site, we offer a contact form. There, we process personal data such as name, email, phone number, and content information from the form. We process this personal data only with the explicit permission of the data subjects and in compliance with the applicable data protection regulations and the GDPR. The processing is based on our legitimate interest in fulfilling our contractually agreed services and optimizing our online offering.

Handling of contact data

If you contact us through the provided contact options, your details will be processed to handle and respond to your request. Without your consent, this data will not be disclosed to third parties.

Handling of comments, posts, and forms

If you write posts or comments on this website, your IP address may be stored under certain circumstances. This is done on the basis of legitimate interests within the meaning of Article 6, paragraph 1, point f GDPR and serves the security of the website operator. If your comment violates applicable law, your IP address may be used to identify you.


Your rights

You have the right to access, rectification, deletion, restriction of processing, data portability, and objection. If you believe that the processing of your data violates data protection law or that your data protection rights have otherwise been violated in any way, you can contact us or the data protection authority.

Contact details

If you have any questions about data protection, please send us an email or contact the person responsible for data protection in our organization:

Dr. Antje Schönfelder

Nonnenstr. 38b

04229 Leipzig
