D.SOLUTIONS GMBH
Privacy policy
Information about personal data processing when you visit this website, contact us or use our IT services.
Last updated: 11 September 2026
1. Controller and contact
The controller for the processing carried out by us and described in this policy is:
d.solutions GmbH
Leitzstraße 45, 70469 Stuttgart, Germany
Managing Director: Dominik Pleger
Phone: +49 151 5335 6979
Privacy enquiries: datenschutz@d.solutions
Personal data means information relating to an identified or identifiable person. External providers’ own privacy notices also apply to processing for which they are independently responsible.
2. Purposes and legal bases
We process data to provide a secure website, respond to enquiries, arrange appointments, deliver IT support and training, and invoice our services.
- Article 6(1)(b) GDPR: performing a contract or taking steps at your request before entering into a contract.
- Article 6(1)(f) GDPR: legitimate interests in secure website operation, efficient business communication, appropriate service records and establishing or defending legal claims. For contacts at business customers, this includes communication with their organisation.
- Article 6(1)(c) GDPR: legal obligations, including commercial and tax record retention.
- Article 6(1)(a) GDPR: your consent, where processing relies on consent.
3. Website operation, hosting and connection data
This website is provided through OpenAI’s Sites infrastructure, with technical delivery through Cloudflare. Requests involve processing data such as IP address, time, requested URLs and files, data volume, HTTP status, browser and device information, and sometimes the referring page. This is necessary to deliver content, diagnose errors and prevent attacks. The legal basis for our use is Article 6(1)(f) GDPR.
Providers involved include OpenAI Ireland Limited, 1st Floor, The Liffey Trust Centre, 117–126 Sheriff Street Upper, Dublin 1, D01 YC43, Ireland, and infrastructure from Cloudflare, Inc., 101 Townsend Street, San Francisco, CA 94107, USA. Depending on their function, these providers process data as service providers and partly for their own operational and security purposes. Processing exclusively in Germany or Europe is not guaranteed.
Provider processing and retention information: OpenAI privacy policy and Cloudflare privacy policy. Connection data is retained for delivery and as necessary for troubleshooting, security or legal obligations. Details depend on the infrastructure in use; we do not directly control all provider retention periods.
4. Access protection, cookies and local content
If access to this website is restricted, the hosting platform may require sign-in and an access check. It processes authentication, session and permission data for this purpose. Our access management is based on Article 6(1)(f) GDPR, to protect the restricted service. A personal account with the platform provider is also subject to its own privacy information.
The page content we provide does not set analytics or advertising cookies and does not store your language preference in cookies or local storage. Language is selected through the page URL. Images, styles and scripts are delivered with the website. External font services, maps, videos, advertising pixels and analytics tools are not embedded.
The hosting platform may use its own cookies or similar storage for authentication, security and necessary functions. Where device access is strictly necessary, section 25(2) of Germany’s TDDDG applies. Non-essential storage or access generally requires consent under section 25(1) TDDDG. Subsequent processing of personal data is also subject to the GDPR.
5. Contact by email and phone
When you contact us, we process contact details, your enquiry, any attachments, and relevant information about your device, requirements and preferred appointment. Email and telecommunications providers participate in transmission. We use this information to respond, arrange appointments and, where applicable, perform your contract. The legal basis is Article 6(1)(b) GDPR or, for general enquiries and business contacts, Article 6(1)(f) GDPR.
This website has no enquiry submission form. Email and phone links open the relevant application on your device. Please only send passwords, identity documents or especially sensitive information if necessary in the particular case and through a suitable channel agreed with us.
6. Optional contact through WhatsApp
The WhatsApp link opens an external service. A connection to WhatsApp is established only when you open it; no WhatsApp widget is embedded. The provider in the European Economic Area is WhatsApp Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland.
When you message us, we receive your phone number, display name and message content. WhatsApp also processes usage, device and connection data under its own policies. Processing within the Meta group and outside the European Economic Area may occur. End-to-end message encryption does not prevent all metadata processing.
We process messages to handle your enquiry under Article 6(1)(b) or Article 6(1)(f) GDPR. WhatsApp is optional; you can contact us by phone or email instead. WhatsApp’s own legal bases and processing practices are explained in its privacy policy.
7. Remote support and TeamViewer
We use TeamViewer for agreed remote support. The provider is TeamViewer Germany GmbH, Bahnhofsplatz 2, 73033 Göppingen, Germany. The download link leads to an external TeamViewer website. Simply reading this homepage does not initiate remote access.
An approved session may involve device and connection identifiers, IP addresses, technical diagnostics, session times, and screen content or files needed for your service request. We limit access and processing to the agreed purpose. Connections require your approval and can be ended by you.
Our support service relies on Article 6(1)(b) GDPR. Article 6(1)(f) GDPR also applies to necessary service records and business contacts. Where additional processing requires consent, we obtain it separately. This website does not include screen or call recording. Any separately arranged recording of a service requires prior express agreement and an appropriate legal basis.
Where we process personal data on behalf of a business customer, responsibilities, instructions and any processing agreement required by Article 28 GDPR must be clarified before work begins. Information about TeamViewer’s own processing and international providers is available in the TeamViewer privacy information.
8. IT services, training and invoicing
Depending on the assignment, arranging and delivering services involves names, contact details, billing addresses, appointment and service records, device and configuration details, and information needed for troubleshooting or training. For holiday property IT support, this may include the service address and network information. Guest data is included only where necessary for the agreed IT assignment and supported by a legal basis.
This processing serves contract performance under Article 6(1)(b) GDPR. Article 6(1)(c) GDPR additionally applies to invoicing and statutory retention; Article 6(1)(f) GDPR applies to appropriate service records and defending claims. The homepage itself has no payment processing or automatic booking system.
9. Google reviews and external links
We display selected excerpts from public Google reviews of d.solutions GmbH. Data used consists of published names or shortened names and selected review text, sourced from the public Google business profile. The purpose is to inform visitors about customer experiences. The basis is our legitimate interest in presenting publicly expressed experiences under Article 6(1)(f) GDPR, taking the authors’ interests into account.
The excerpts are stored as text on our website. Displaying them does not automatically contact Google. They are a selection, not a complete or continuously updated list of reviews. If the original is changed or deleted, or an author objects to republication, we review the corresponding update or removal. Authors can contact our privacy email address above.
Google processes information about your visit only if you follow the Google link. The EEA provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Its privacy policy applies. The same principle applies to other external links you choose to open: providers receive data in connection with your visit to their service.
10. Recipients and international processing
Access is limited to people and providers needing data for the relevant purpose. Categories include hosting and security providers, email and telecommunications providers, remote support providers, and where needed accounting, tax and payment service providers for business dealings conducted outside this website. Authorities or courts receive data where legally required or necessary to pursue legal claims.
Processors may process personal data only within their assignment and applicable legal requirements. OpenAI, Cloudflare, WhatsApp, Google and TeamViewer services may involve processing outside the European Economic Area. Transfer mechanisms may include adequacy decisions under Article 45 GDPR or suitable safeguards such as EU standard contractual clauses under Article 46 GDPR. Each provider’s linked privacy information describes the basis for its transfers. Information or copies of relevant safeguards can be requested from us or the provider concerned.
11. Retention and deletion
We keep data only while needed for the stated purpose, legal requirements or legitimate evidential interests. Enquiries that do not result in an assignment are deleted after they have been dealt with and there is no continuing communication or evidential need. Contract and service records are retained for performance and the applicable statutory retention and limitation periods.
Retention of tax and commercial records depends on the document type and, in particular, section 147 of the German Fiscal Code and section 257 of the German Commercial Code. Outstanding claims, proceedings or legal orders may require longer retention. Where data is retained solely to meet a legal obligation, its use is restricted to that purpose. Independently responsible providers apply their own stated retention practices to connection and account data.
12. Your rights
Subject to statutory conditions, you have the following rights:
- Access to your data and information about its processing under Article 15 GDPR;
- Correction and completion under Article 16 GDPR;
- Erasure under Article 17 GDPR and restriction under Article 18 GDPR;
- Data portability under Article 20 GDPR, where applicable;
- Withdrawal of consent at any time for the future, without affecting the lawfulness of earlier processing;
- A complaint to a data protection authority under Article 77 GDPR.
Please contact datenschutz@d.solutions. Where needed, we may request proportionate information to verify your identity. Requests are handled within the statutory time limits.
13. Right to object
Where processing relies on Article 6(1)(f) GDPR, you may object at any time on grounds relating to your particular situation. We will stop processing unless we can demonstrate compelling legitimate grounds overriding your interests, rights and freedoms, or the processing serves legal claims.
You may object to processing for direct marketing at any time without giving reasons, including related profiling. You can submit an objection using any of our contact channels.
14. Supervisory authority
You may contact an authority in particular where you live, work or believe an infringement occurred. For our company in Baden-Württemberg, you can contact:
The State Commissioner for Data Protection and Freedom of Information Baden-Württemberg
Heilbronner Straße 35, 70191 Stuttgart, Germany
Postal address: Postfach 10 29 32, 70025 Stuttgart, Germany
Email: poststelle@lfdi.bwl.de
Contact and complaint information
15. Required information and automated decisions
Providing contact and assignment data is generally voluntary. Without information needed for an enquiry or assignment, we may be unable to respond or provide the service. Technical connection data is necessary to access the website.
We do not use automated decisions producing legal or similarly significant effects under Article 22 GDPR, or profiling for that purpose, in connection with this website.
16. Updates
We update this policy when our services, providers or legal requirements change. The version displayed on this page applies.