Privacy Policy
Datenschutzerklärung gemäß DSGVO (EU) 2016/679
1. Scope
This privacy policy applies to the public marketing website at drmaxhealth.de. It does not apply to the future platform at drmaxhealthplatform.de, which is not live; a separate privacy notice will be published for that platform before launch.
2. Data Controller (Verantwortlicher)
DMH Software UG (haftungsbeschränkt)
Klaus-Groth-Strasse 77, 20535 Hamburg, Germany
E-Mail: office@drmaxhealth.de
3. Data Protection Officer (Datenschutzbeauftragter)
Dr. Maksym Kitsera
E-Mail: office@drmaxhealth.de
4. Overview of Data Processing
We process personal data only when necessary and always with a valid legal basis. This privacy policy explains what data we collect, why, and your rights under the EU General Data Protection Regulation (GDPR/DSGVO).
5. Hosting and Server Log Files
Our website is hosted by external service providers. When you visit our website, the hosting provider automatically collects the following data in server log files:
- Browser type and version
- Operating system
- Referrer URL
- Hostname of the accessing computer
- Time of the server request
- IP address
Legal basis: Art. 6(1)(f) GDPR — legitimate interest in ensuring stable and secure website operation.
Retention: Technical request data is retained only as long as necessary for website delivery, security, and error analysis, or where a statutory retention obligation applies. Retention periods are determined by the hosting and infrastructure providers used for delivery.
6. Cookies and Local Storage
This website does not intentionally set advertising or marketing cookies, and it does not run an advertising or cross-site tracking stack. Hosting and infrastructure providers may process technical request and usage data for delivery, security, and service operation.
Legal basis: Art. 6(1)(f) GDPR and § 25 Abs. 2 TDDDG — technically necessary storage and access are exempt from consent requirements.
7. Demo and Contact Requests
This website does not collect contact details through forms. To reach us you either book a call, which opens Calendly, or send an email. When you email us, we process the data contained in your message (such as your name, email address, organization and your request) to respond and to take pre-contractual steps. Your email is processed through our email provider as part of normal email delivery. Never send patient data to us by email or through this website.
Booking a call opens Calendly, which is loaded only after you follow the booking link.
Legal basis: Art. 6(1)(b) GDPR — performance of a contract or pre-contractual measures.
Retention: Data is deleted once the purpose has been fulfilled, unless statutory retention obligations apply (e.g., 6 years under § 257 HGB, 10 years under § 147 AO).
8. Third-Party Services
8.1 Calendly
We use Calendly (Calendly LLC, USA) for booking consultations. When you use this service, data may be transferred to the United States. Such transfers are handled under the safeguards applicable to the service, as described in Calendly's privacy notice.
Privacy policy: https://calendly.com/privacy
8.2 Web Fonts (Local Hosting)
All web fonts are loaded locally from our own server. No connection to Google servers is established when visiting our website.
9. Data Subject Rights (Betroffenenrechte)
Under the GDPR, you have the following rights:
- Right of access (Art. 15 GDPR) — obtain information about your processed data
- Right to rectification (Art. 16 GDPR) — correct inaccurate data
- Right to erasure (Art. 17 GDPR) — request deletion of your data
- Right to restriction (Art. 18 GDPR) — restrict processing of your data
- Right to data portability (Art. 20 GDPR) — receive your data in a structured format
- Right to object (Art. 21 GDPR) — object to processing based on legitimate interest
- Right to withdraw consent (Art. 7(3) GDPR) — withdraw consent at any time
To exercise your rights, contact us at: office@drmaxhealth.de
10. Right to Lodge a Complaint
You have the right to lodge a complaint with a supervisory authority pursuant to Art. 77 GDPR. The competent authority for us is:
Der Hamburgische Beauftragte für Datenschutz und Informationsfreiheit
Ludwig-Erhard-Str. 22, 7. OG
20459 Hamburg
https://datenschutz-hamburg.de
11. SSL/TLS Encryption
This website uses SSL/TLS encryption for security reasons and to protect the transmission of confidential content. You can recognize an encrypted connection by the "https://" prefix in the browser address bar.
12. Changes to This Privacy Policy
We reserve the right to update this privacy policy to reflect changes in our data processing practices or new legal requirements. The current version is always available on our website.
Last reviewed: August 8, 2026