Last updated: 17 July 2026 · Version 1.3
1. Controller
Pioniergeist GmbH
Lautenschlagerstr. 16, 70173 Stuttgart, Germany
Tel. +49 711 758 648-0 · localfriend@pioniergeist.io
Represented by the Managing Director: Dr. Winfried Richter
Registered at the Local Court (Amtsgericht) Stuttgart, HRB 755321
VAT identification number (§ 27a UStG): DE304455425
For any data-protection request, contact us at the address above.
2. What we collect and why
This is a largely static informational website. We only process personal data when you actively submit the application form.
| Data | Purpose | Legal basis (GDPR) |
|---|---|---|
| Name, work email, company, country, deal status, optional message | To receive and manage your application, communicate with you about its status, and arrange participation in the Conversion Lab | Art. 6(1)(a) consent and Art. 6(1)(b) pre-contractual steps |
| Application status & correspondence timestamps | Administering the application process (review / approval / rejection) and sending you the corresponding notifications | Art. 6(1)(b) pre-contractual steps |
| Server log data (IP address, timestamp, request) generated by the web server | Operating and securing the website | Art. 6(1)(f) legitimate interest |
When you submit the application form, your details are stored securely in a database on our server (hosted in Germany, see §4) so we can review your application and keep you informed. Access is restricted to authorised Pioniergeist staff via an authenticated admin area. We send you automated status emails (received / under review / approved / not this time) via our email processor (see §5).
3. No cookies, no third-party trackers
This website sets no cookies and uses no analytics or advertising trackers. Fonts, scripts and testimonial videos are self-hosted on our own server — your browser makes no requests to Google Fonts, content-delivery networks, YouTube, Vimeo or similar third parties. Because of this, no cookie-consent banner is required.
4. Hosting
The website is hosted on servers of Hetzner Online GmbH (Gunzenhausen/Nuremberg, Germany), acting as our processor under a data-processing agreement (Art. 28 GDPR). Data is processed within the EU.
5. Email processor
Automated emails (application confirmation and status updates) are sent through Resend (Resend, Inc.), which delivers via Amazon SES in the EU (eu-west-1) region. Resend acts as our processor under a data-processing agreement (Art. 28 GDPR); the data shared is limited to your name, email address and the message content necessary to send you these notifications.
6. Payment processing (Stripe)
When you pay for the Conversion Lab, the payment is processed by Stripe Payments Europe, Ltd. (1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland) and affiliated Stripe entities. Stripe collects and processes the data needed to take your payment — including your name, email address, billing address, VAT ID (where you provide one) and payment-instrument details (e.g. card data). Card and payment-instrument data are entered directly with Stripe and are not stored on our servers. From Stripe we receive only the information needed to manage your subscription and issue invoices — for example your name, billing address, VAT ID, the amount, and the payment/subscription status and reference.
| Data | Purpose | Legal basis (GDPR) |
|---|---|---|
| Name, email, billing address, VAT ID, amount, payment & subscription status/reference | Processing your subscription payment, recurring billing and cancellations, and issuing invoices | Art. 6(1)(b) performance of a contract |
| Payment-instrument / card data (handled by Stripe, not stored by us) | Taking the payment and preventing fraud | Art. 6(1)(b) and Art. 6(1)(f) legitimate interest (secure, fraud-free payments) |
Stripe's role: for the payment transaction Stripe acts as an independent controller for its own regulatory, compliance and fraud-prevention obligations, and as our processor (Art. 28 GDPR) for the parts carried out on our behalf.
International transfer: Stripe may transfer personal data to Stripe, Inc. in the USA. Such transfers are safeguarded by the EU Standard Contractual Clauses and/or Stripe's certification under the EU–US Data Privacy Framework. Stripe's own privacy policy is available at stripe.com/privacy.
7. Retention
We keep application data only as long as needed to handle your enquiry and any resulting participation, and for statutory retention periods where these apply. Server logs are deleted or anonymized on a rolling short-term basis.
8. Your rights
Under the GDPR you have the right to: access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20), and objection (Art. 21). Where processing is based on consent, you may withdraw it at any time with future effect. You also have the right to lodge a complaint with a supervisory authority — for us, the Landesbeauftragte für den Datenschutz und die Informationsfreiheit Baden-Württemberg.
9. Changes
We may update this notice as the service evolves (for example, when payment or a backend form is added). The current version is always available at this page.
10. Online dispute resolution (ODR)
The European Commission provides a platform for online dispute resolution (ODR), available at https://ec.europa.eu/consumers/odr. We are not obliged to participate in a dispute-settlement procedure before a consumer arbitration board, and we are not willing to do so.