Privacy Policy
This policy explains how Kryptico.com processes personal data.
1. Controller
The controller is the operator of this website as stated in the imprint.
2. General information
We process personal data only as necessary to provide the website, user accounts/services, communication, and payments.
Legal bases include GDPR Art. 6(1)(b) (contract), Art. 6(1)(f) (legitimate interest – security/operation) and Art. 6(1)(a) (consent, e.g., optional cookies).
3. Hosting
This website is hosted by an external provider (e.g., STRATO AG, Germany). Necessary technical data is processed to deliver and secure the site.
Legal basis: GDPR Art. 6(1)(f).
4. Server logs
When you visit the site, server log data is processed automatically (e.g., IP address, timestamp, requested URL, referrer, browser/OS, status codes).
Purposes: security, debugging, abuse prevention. Legal basis: GDPR Art. 6(1)(f).
Retention: logs are kept only as long as needed (typically days to weeks), unless security-related retention is required.
5. Account, registration and login
When you create an account or log in, we process: email address, password (hashed), language settings, timestamps (registration/verification/login), and security data (IP address and user agent, if enabled).
Purposes: account management, authentication, fraud prevention, security. Legal bases: GDPR Art. 6(1)(b) and Art. 6(1)(f).
6. Email (verification/reset)
We send system emails for verification and password resets. Technical metadata may be processed for delivery.
7. Payments (Stripe / PayPal)
For paid services we use payment providers (Stripe and PayPal). Payments are processed directly by the respective provider. Depending on the payment method, data such as name, email address, billing/address data, transaction/payment data and technical metadata (e.g. device/browser data) may be processed.
Kryptico.com does not store full card or bank account details. We store only what is necessary for contract fulfilment, plan activation and accounting (e.g. payment status, amounts, currency, transaction/checkout IDs, timestamps).
Legal basis: GDPR Art. 6(1)(b).
8. Cookies & consent management
We use cookies or similar technologies. Necessary cookies are required (e.g., session/login and saving your consent choice). Optional cookies (analytics/marketing) are used only with consent.
- Necessary: operation, security, login/session, storing your cookie choices.
- Optional (if enabled): performance/analytics and/or marketing – only with consent.
You can change or withdraw your choices anytime via “Cookie settings” in the footer.
9. Recipients / processors
We share personal data only when necessary for the contract, based on consent, legal obligations, or overriding legitimate interests. Typical recipients: hosting provider, email provider, payment providers.
10. Your rights
You have rights to access, rectification, erasure, restriction, portability, and objection. You can withdraw consent at any time for the future.
11. Right to lodge a complaint
You may lodge a complaint with a data protection authority if you believe processing violates the GDPR (Art. 77).
12. Changes
We may update this policy when laws, services, or processing activities change.
Last updated: 2026-01-24