Privacy Policy

Last updated: July 2026

Dream Code Factory GmbH is committed to protecting your personal data. This policy explains what we collect on dreamcodefactory.eu and why, in accordance with the EU General Data Protection Regulation (GDPR) and applicable Austrian law. The short version: this site sets no cookies, runs no analytics, and makes no request to any third party.

Controller

Dream Code Factory GmbH
Dorotheergasse 6-8/14a
1010 Vienna, Austria
Company number: FN 596956b
VAT: ATU79056502
Email: contact@dreamcodefactory.eu

We are not required to appoint a Data Protection Officer under Art. 37 GDPR. Data protection questions go to the address above.

When you visit this website

Your IP address is transmitted to our servers as an unavoidable part of how the internet works — without it we could not send the page back to you. It is processed only for the moment it takes to serve your request.

We do not keep it. This site runs no access logging: neither the edge proxy nor the application writes a per-request log, so no record of your IP address, the pages you viewed, or your user agent is stored anywhere. We hold no visitor profile, and we could not reconstruct one if asked.

We do collect aggregate operational telemetry — page render timings and error counts — so we can tell whether the site is healthy. It contains no IP addresses and no identifiers, and it is exported to a collector inside our own cluster. It never reaches a third party.

When you contact us

There is no contact form on this site; the contact links open your own email client. If you write to us, we process what you send — your name, your email address, any phone number you include, and the content of your message — for the purpose of answering you and, if it goes that way, preparing an offer.

When you are a customer

In the course of delivering our services we process the data required for contract fulfilment, billing, and support. That processing happens under the individual contract and, where we handle data on your behalf, under a data processing agreement per Art. 28 GDPR — it is outside the scope of this website notice.

Legal bases

  • Art. 6(1)(f) — our legitimate interest in operating this website securely and reliably (serving your request, aggregate health telemetry).
  • Art. 6(1)(b) — steps taken at your request before entering into a contract, and performance of a contract (your inquiry, and customer data thereafter).
  • Art. 6(1)(c) — compliance with our legal obligations, in particular Austrian commercial and tax retention periods.

Cookies and tracking

This website sets no cookies — not for analytics, not for advertising, and not for functionality. It contains no tracking pixels, no fingerprinting, and no advertising or social media integrations.

It also makes no request to any third party while you read it. Typefaces are served from our own servers rather than a font CDN, and the page content ships inside our own container image. Nothing on this page causes your browser to talk to anyone but us.

You will not see a cookie banner here. That is not an omission — there is nothing to consent to.

Hosting and processors

This site runs on our own Kubernetes platform, on servers we operate, in the European Union. The only processor involved in serving this website is our infrastructure provider, Hetzner Online GmbH (Gunzenhausen, Germany), which provides the physical hosting under a data processing agreement per Art. 28 GDPR.

No personal data processed through this website is transferred outside the EU/EEA. We use no US-based content delivery network, analytics service, or cloud provider for it.

Retention

We retain personal data only for as long as necessary to fulfil the purposes described here or to meet legal obligations. Email correspondence is kept for as long as the matter is live and, where it documents a business transaction, for the statutory retention period under Austrian commercial and tax law (generally seven years). Once retention periods expire, data is deleted or anonymised.

Disclosure to third parties

We do not sell personal data, and we do not transfer it to third parties without your explicit consent — except where it is necessary for contract fulfilment, where we are required to by law, or where a service provider acts on our behalf under a data processing agreement.

Your rights

Under the GDPR you have the right to:

  • access the personal data we hold about you (Art. 15)
  • have inaccurate data corrected (Art. 16)
  • have your data erased (Art. 17)
  • restrict processing (Art. 18)
  • data portability (Art. 20)
  • object to processing (Art. 21)
  • withdraw consent at any time, without affecting the lawfulness of processing carried out before the withdrawal (Art. 7(3))

To exercise any of these, write to contact@dreamcodefactory.eu.

You also have the right to lodge a complaint with a supervisory authority (Art. 77). The competent authority for us is the Austrian Data Protection Authority:

Österreichische Datenschutzbehörde
Barichgasse 40-42
1030 Vienna, Austria
dsb@dsb.gv.at

Data security

The site is served over HTTPS only; requests over plain HTTP are redirected. We apply appropriate technical and organisational measures to protect personal data against unauthorised access, misuse, loss, or destruction, and we improve those measures continuously in line with technological developments.

Updates

We will update this policy when our processing or the applicable rules change. The current version is always the one on this page, and the date at the top tells you when it last changed.