Privacy Policy
Last updated: 19 Aug. 2025
1. Controller
The controller within the meaning of the General Data Protection Regulation (GDPR), other national data protection laws of the Member States, and other provisions related to data protection is:
ANALOG & EVER
Munich, Germany, EU
Email: [contact@analogandever.com]
Phone: +49 173 3701730
If you have any questions about this Privacy Policy or your personal data, you can contact us at the above details.
2. Collection and Processing of Personal Data
We collect and process personal data only to the extent necessary to provide a functional website, deliver our services, and fulfill contracts.
Categories of data we may collect:
- 
	
Identification data (e.g., name, billing/shipping address, email, phone number)
 - 
	
Account data (e.g., username, login credentials, order history)
 - 
	
Payment data (e.g., bank details, credit card information, PayPal or other provider IDs)
 - 
	
Technical data (e.g., IP address, browser type, device information, date and time of access, cookies)
 - 
	
Communication data (e.g., inquiries via contact form or email)
 
Data is processed on the basis of Art. 6(1) GDPR (contract performance, consent, legal obligations, legitimate interests).
3. Purposes of Processing
We process your data for the following purposes:
- 
	
To provide and operate our online shop and services
 - 
	
To process and deliver orders
 - 
	
To process payments and refunds
 - 
	
To provide customer support
 - 
	
To fulfill legal obligations (e.g., tax laws, bookkeeping)
 - 
	
To improve our website and services (analytics, security)
 - 
	
To send marketing communications (only with your consent)
 
4. Legal Basis for Processing
Depending on the context, data is processed on the basis of:
- 
	
Art. 6(1)(b) GDPR – performance of a contract
 - 
	
Art. 6(1)(a) GDPR – consent (e.g., newsletter)
 - 
	
Art. 6(1)(c) GDPR – legal obligation (e.g., invoices, retention periods)
 - 
	
Art. 6(1)(f) GDPR – legitimate interest (e.g., website security, fraud prevention)
 
5. Cookies & Tracking Technologies
Our website uses cookies and similar technologies to ensure functionality, improve user experience, and for analytics/marketing.
- 
	
Essential cookies are necessary for website operation.
 - 
	
Analytics and marketing cookies are used only with your explicit consent (Art. 6(1)(a) GDPR, TTDSG).
 
You can withdraw consent at any time via the cookie settings on our website or by clearing cookies in your browser.
6. Recipients and Third Parties
We may share your data with:
- 
	
Payment service providers (e.g., PayPal, Stripe, banks)
 - 
	
Shipping and logistics providers (e.g., DHL, UPS, Deutsche Post)
 - 
	
IT service providers (hosting, analytics, support)
 - 
	
Tax advisors and auditors (where legally required)
 
All processors are bound by Art. 28 GDPR data processing agreements.
7. International Data Transfers
If data is transferred outside the EU/EEA (e.g., to cloud service providers), this is done only on the basis of adequate safeguards (e.g., adequacy decisions, EU Standard Contractual Clauses).
8. Data Retention
We store personal data only as long as necessary:
- 
	
Order and payment data: up to 10 years (legal retention)
 - 
	
Account data: until account deletion
 - 
	
Communication data: up to 3 years (statutory limitation periods)
 - 
	
Cookies: as specified in the cookie banner
 
9. Your Rights
You have the following rights under the GDPR:
- 
	
Right of access (Art. 15 GDPR)
 - 
	
Right to rectification (Art. 16 GDPR)
 - 
	
Right to erasure (Art. 17 GDPR)
 - 
	
Right to restriction of processing (Art. 18 GDPR)
 - 
	
Right to data portability (Art. 20 GDPR)
 - 
	
Right to object (Art. 21 GDPR)
 - 
	
Right to withdraw consent (Art. 7(3) GDPR)
 
To exercise your rights, please contact us at [contact@email.com].
10. Right to Lodge a Complaint
You have the right to lodge a complaint with the competent data protection authority:
The Federal Commissioner for Data Protection and Freedom of Information (BfDI)
Graurheindorfer Str. 153
53117 Bonn, Germany
Website: https://www.bfdi.bund.de
11. Data Security
We use state-of-the-art technical and organizational security measures (TLS/SSL encryption, access controls, data minimization) to protect your data.
12. Changes to This Policy
We may update this privacy policy from time to time. Updates will be published on this page with the date of the latest revision.
