Status: May 2026
The use of our website is generally possible without providing any personal data. However, if a data subject wishes to use special services of our website (such as registering or using the SaaS logbook), the processing of personal data becomes necessary. If the processing of personal data is necessary and there is no statutory basis for such processing, we generally obtain the consent of the data subject.
According to Art. 4 No. 1 GDPR, your personal data includes all information that relates or can be related to your person.
The name and address of the person responsible for data collection and for complaints regarding the processing of personal data can be found in the Imprint.
bordero.de collects, processes, and uses your personal data primarily for the performance of a contract or to take steps prior to entering into a contract based on Art. 6 Abs. 1 lit. b GDPR. This includes in particular:
Furthermore, we process data to fulfill fiscal or other legal obligations based on Art. 6 Abs. 1 lit. c GDPR.
If the processing is necessary to safeguard our legitimate interests (e.g., IT security, error tracking, reach measurement) and your interests do not override ours, the legal basis is Art. 6 Abs. 1 lit. f GDPR.
When you access our website, our infrastructure host automatically collects and stores information that your browser transmits to us in server log files. This includes:
This data is technically necessary to display our website to you in a stable and secure manner. The processing is carried out based on Art. 6 Abs. 1 lit. f GDPR (legitimate interest in the secure operation of the platform). We have concluded a data processing agreement (DPA) with our server host.
An active transfer of your personal data to third parties only takes place if this is necessary for the execution of your subscription. Payment processing and subscription management are carried out exclusively by the payment processor Paddle.
Please refer to the Privacy Policy of Paddle for detailed information regarding their data protection practices. The disclosure is based on Art. 6 Abs. 1 lit. b GDPR (performance of a contract).
Our application uses exclusively technically necessary cookies that are strictly required for the secure operation and core functionalities of the platform. Tracking via cookies that would require consent does not take place.
The following cookies are set by the system:
Processing is based on Art. 6 Abs. 1 lit. b GDPR (performance of a contract during login) or Art. 6 Abs. 1 lit. f GDPR (legitimate interest in providing a technically error-free and secure service). You can deactivate cookies in your browser, but this will render the SaaS product non-functional.
For the statistical evaluation of visitor traffic, we use the privacy-friendly analysis service Plausible Analytics (Plausible Insights OÜ, Västriku tn 2, 50403 Tartu, Estonia).
Plausible is configured to operate entirely without cookies and does not store any personal data. IP addresses are immediately anonymized and hashed in isolation. It is impossible to draw conclusions about individual visitors or track users across devices at any time. The processing is carried out based on our legitimate interest in the demand-driven design and optimization of our website pursuant to Art. 6 Abs. 1 lit. f GDPR.
To ensure the stability and technical reliability of our application, we use the error monitoring service Sentry (Functional Software Inc., 45 Fremont Street, San Francisco, CA 94105, USA).
If a technical code error occurs in the application, selected metadata (e.g., browser type, operating system, time of the error, and the affected section of code) is transmitted to Sentry to analyze the issue. IP addresses are truncated before evaluation and storage. The usage is based on our legitimate interest in a secure, stable, and error-free platform (Art. 6 Abs. 1 lit. f GDPR). We have concluded a data processing agreement (DPA) including EU Standard Contractual Clauses with Sentry.
Your personal data will only be stored for as long as is necessary to fulfill the stated purposes or as prescribed by statutory (in particular fiscal and commercial) retention periods.
Within the scope of legal regulations, you have the following rights at any time regarding your personal data:
To exercise these rights, simply contact the responsible body named in the imprint.
Pursuant to Art. 77 GDPR, you have the right to lodge a complaint with a data protection supervisory authority if you believe that the processing of your personal data violates the GDPR. The locally competent supervisory authority for us is:
Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen (LDI NRW)
Kavalleriestraße 2–4, 40213 Düsseldorf, Germany
Email: poststelle@ldi.nrw.de