Legal information
Privacy notice
Last updated: 1 October 2026.
1. Data controller
Dogu Can Erdogdu · Raleno Solutions
Ackerstraße 69
46483 Wesel, Germany
Email: info@raleno.de
2. Hosting and technical delivery
Our website is hosted by IONOS SE, Elgendorfer Straße 57, 56410 Montabaur, Germany. When you access it, technically necessary connection data is processed, particularly your IP address, time of access, requested page or file, browser information and, where applicable, the previously visited page. This supports delivery, security and troubleshooting.
The legal basis is Article 6(1)(f) GDPR; our legitimate interest is the secure and reliable operation of this website. We have a data processing agreement with IONOS.
The retention period for hosting logs depends on how long the data is needed to deliver the website, detect and defend against attacks, and investigate errors. In the event of a specific security incident or a statutory retention obligation, it depends on the relevant purpose or obligation. Once these grounds no longer apply, the data is deleted or anonymised.
3. Email and contact form
When you contact us, we process your contact details and message to handle your enquiry. The form asks for your name, company, business email and a short description; providing a phone number is optional. The enquiry cannot be submitted without the required fields. You can also contact us by email.
The legal basis is Article 6(1)(b) GDPR where your enquiry concerns a contract or steps prior to entering into a contract. Otherwise, it is Article 6(1)(f) GDPR, based on our interest in responding to business enquiries.
The form is configured to send messages to info@raleno.de over an encrypted connection through IONOS. It does not create an enquiry database or send an automatic reply to the address entered. Enquiries are handled in the receiving mailbox. Please do not submit sensitive or confidential information through the form.
We delete enquiries that do not result in an order six months after handling is complete, unless statutory retention requirements or legitimate grounds for further retention apply.
4. Protection against abusive requests
The contact endpoint validates input and limits submission attempts. The IP address identified by the server is temporarily processed to calculate a pseudonymous identifier (HMAC). The private counter file contains this identifier and timestamps, never the IP address itself or form contents. A random secret key is renewed daily; at the change of day, the previous key remains available only until its associated identifiers expire. Each identifier is allowed three submission attempts within 59 minutes, subject to an overall limit of 50 per hour. Shared internet connections share the allowance. Identifiers expire after 59 minutes and are removed during subsequent requests and by a private cleanup task every minute. Technical outcome logs contain only a status or broad SMTP error category and, where applicable, a random request identifier; no messages or SMTP error text. IONOS access logs are separate; see section 2.
Copies of the private counter file may remain in the hosting provider’s automated backups until those backups expire. We check the contact form weekly with an enquiry clearly marked as a test and verify that it arrives in the mailbox.
These safeguards serve our legitimate interest under Article 6(1)(f) GDPR in keeping the contact channel available and limiting abuse.
5. Cookies and external services
The website code does not set cookies or use local browser storage. Fonts and other website resources are delivered without external font, map, video or AI services. We do not embed analytics or advertising scripts. IONOS visitor statistics are switched off and were never active.
6. Your rights
Subject to the statutory conditions, you have rights of access, rectification, erasure, restriction of processing and data portability. Where processing is based on consent, you may withdraw it with effect for the future.
Where processing is based on legitimate interests, you may object on grounds relating to your particular situation. To exercise your rights, please contact info@raleno.de.
You may lodge a complaint with a data protection supervisory authority, particularly where you live or work, or where the alleged infringement occurred. For North Rhine-Westphalia: Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen, Postfach 20 04 44, 40102 Düsseldorf, Germany; Contact LDI NRW.
7. Automated decisions
The website does not make automated decisions with legal or similarly significant effects, nor does it create personal profiles.