Your IT. Simple. Online.

Date of entry into force: April 2025
Website: https://www.moonlakeit.at
Owner: Moonlake IT

Moonlake IT takes data protection and privacy seriously. This privacy policy describes how we collect, process, store, and protect personal data from users of our website in accordance with the General Data Protection Regulation (EU) 2016/679 (GDPR) and applicable Austrian data protection laws.

1. Data controller

The person responsible for your personal data is:

Moonlake IT
Steinerhofstraße 10, 5310 Mondsee
E-mail: [email protected]
Phone: +43 676 437 8098
Website: https:/www.moonlakeit.at

If you have any questions or requests regarding your data, you can contact us using the contact details above.

2. Personal data we collect

We collect personal information either directly from you or automatically through your use of our website. The information collected includes:

A. Data you provide to us
  • Contact details: When you contact us via forms, email or telephone, we may collect your name, email address, telephone number and the content of your message.
  • Account information (if applicable): When you register for a service or customer portal, we may collect your login details and profile information.
  • Business information: When you request a service or quote, we may collect your company name, VAT number, and billing address.
  • Applications (if applicable): All submitted CVs and cover letters contain personal and potentially sensitive data.
B. Data collected automatically

When you visit our website, we may automatically collect:

  • IP address and geolocation (city-specific)
  • Browser type and version
  • Device type and operating system
  • Referrer URLs and click paths
  • Date, time and duration of your visit
  • Besuchte Seiten und Interaktionsverhalten
  • Diese Daten werden mithilfe von Cookies, Protokolldateien und Analysetools erhoben (siehe Abschnitt 5).

3. Purposes of data processing

We process your personal data for the following purposes:

  • To respond to inquiries: Your contact information allows us to respond to questions, support requests, and project inquiries.
  • To fulfill contractual obligations: When you become a customer, we use your data to process contracts, payments and services.
  • To improve the user experience: Usage data helps us to optimize the design, performance and content of our website.
  • To maintain security: We use log data to detect and prevent fraud, abuse, or malicious activity.
  • To comply with legal obligations: Including tax, accounting or regulatory reporting obligations.

4. Legal basis for processing (GDPR)

According to Article 6 of the GDPR, our legal basis for processing your personal data is:

  • Consent (Art. 6 para. 1 lit. a): If you actively give your consent, e.g. by filling out a contact form or subscribing to a newsletter.
  • Contractual necessity (Article 6 (1) (b)): Processing for the performance of a contract or pre-contractual measures.
  • Legal obligation (Article 6 (1) (c)): If required by law (e.g. invoicing, retention of documents).
  • Legitimate interests (Art. 6 (1) (f)): Such as website security, analysis or improvement of service quality – taking into account your data protection rights.

You have the right to withdraw your consent at any time without affecting the legality of the processing carried out so far.

5. Cookies and tracking technologies

We use cookies and similar technologies (e.g. pixels, scripts) for the following purposes:

A. Necessary cookies

These cookies ensure core website functionality and are necessary for secure login, session maintenance and form submission.

B. Preference cookies

Used to store your language or cookie consent preferences.

C. Statistics/analysis cookies

Used to analyze user behavior and website traffic. We may use:

  • Google Analytics (with activated IP anonymization)
  • Matomo (self-hosted, GDPR-compliant alternative)
D. Marketing cookies

These are only used with your consent and can track the browsing behavior of various websites for remarketing purposes.

You can control and block cookies through your browser settings or through our cookie consent banner.

6. Third parties and data sharing

We do not sell your personal information. We may share your information with trusted third parties, including:

  • Web hosting providers (e.g. for website and database hosting)
  • Email service providers (e.g. for newsletter communication)
  • Analytics and security providers
  • Legal and accounting service providers
  • Authorities, where required by law or in the context of legal proceedings

All third-party providers are carefully vetted, subject to data processing agreements (DPAs) and are required to process your data in accordance with the GDPR.

7. Data retention

We only retain your personal data for as long as necessary to fulfill the purposes for which it was collected:

  • Contact requests: Up to 1 year after processing
  • Customer data: Up to 7 years after contract termination (for accounting/legal purposes)
  • Newsletter subscriptions: Until unsubscribe
  • Analysis data: Usually anonymized or stored for up to 26 months

After this period, the data will be securely deleted or anonymized.

8. Your rights under the GDPR

You have the right: You have the following rights with regard to your personal data:

  • Right to information: You will receive a copy of your data stored by us.
  • Right to rectification: You can correct inaccurate or incomplete data.
  • Right to erasure (“right to be forgotten”): You can request the erasure of your data under certain conditions.
  • Right to restriction: You can temporarily stop processing under certain circumstances.
  • Right to data portability: You will receive your data in a structured, machine-readable format.
  • Right to object: You can object to data processing based on legitimate interests or direct marketing.
  • Right to withdraw consent: If the processing is based on consent, you can withdraw it at any time.

To exercise your rights, send us an email to [email protected]You also have the right to lodge a complaint with the Austrian Data Protection Authority:
Website: https://www.dsb.gv.at

9. Data security

We take appropriate technical and organizational measures to protect your data, including:

  • SSL encryption for website traffic
  • Role-based access control and authentication
  • Regular software updates and vulnerability checks
  • Secure server hosting within the EU

Despite these measures, no system can guarantee 100% security. We recommend using strong passwords and updating them regularly.

10. International data transfers

We generally process data within the European Economic Area (EEA). When transferring data outside the EEA (e.g., via third-party services), we ensure:

  • Adequate level of data protection based on decisions of the EU Commission
  • Standard Contractual Clauses (SCCs) or equivalent guarantees

We will inform you if such a transfer takes place.

11. Third-party websites

Our website may contain links to third-party websites (e.g., partners, tools, social media). This Privacy Policy does not apply to these external websites. We encourage you to read their privacy policies before sharing any information.

12. Newsletter via MailChimp

If you subscribe to our newsletter, your email address and any other voluntarily provided data (e.g. name) will be stored and processed in order to send you information about our products, services, offers and news.

We use Mailchimp, a service provided by Intuit Inc., 2700 Coast Ave, Mountain View, CA 94043, USA. Mailchimp processes the data on our behalf in accordance with Art. 28 GDPR and is committed to compliance with the GDPR.

Data processed:
  • Email address (required)
  • Name and/or company (optional)
  • IP address and time of registration (to prove consent)
Legal basis:

Your data will be processed for the newsletter based on your consent (Art. 6 (1) (a) GDPR). You can revoke your consent at any time by clicking the unsubscribe link in every newsletter email.

Mailchimp privacy policy:

Mailchimp stores data on servers in the USA. Mailchimp participates in the EU-US Data Protection Agreement, thus ensuring an appropriate level of data protection.

Further information:
Mailchimp Privacy Policy
Data Processing Addendum

13. Consent for newsletter and tracking

By subscribing to our newsletter, you agree to receive regular emails with information about our products, services, offers, and events. Your consent includes the use of your email address and, if applicable, your name for this purpose.

We also use tracking technologies within our newsletters. This allows us to analyze:

  • Whether and when newsletters are opened,
  • Which links are clicked,
  • The device and browser used.

This data helps us understand user preferences and optimize our content.

The legal basis for the processing of your personal data and your newsletter usage behavior is your express consent in accordance with Art. 6 (1) (a) GDPR. You can revoke this consent at any time by clicking on the unsubscribe link in each newsletter or by contacting us directly.

The revocation of consent does not affect the legality of the processing carried out on the basis of the consent until the revocation.

14. Use of Google Web Fonts

To ensure consistent and appealing text display across devices and browsers, this website uses Google Web Fonts. To protect your privacy, the fonts are stored locally on our server and served directly from our domain.

That means:

  • When loading the fonts, no connection is established to Google's servers.
  • In connection with the display of the fonts, no personal data, such as your IP address, will be passed on to third parties.

The use of locally hosted fonts is based on our legitimate interest (Art. 6 (1) (f) GDPR) to provide a consistent and high-performance user experience while ensuring maximum data protection.

15.Changes to this Policy

We may update this Privacy Policy periodically to reflect changes to legal requirements or our data practices. The most recent version will always be available at https://www.moonlakeit.at/privacy-policy (or a similar path).

We encourage you to visit this page regularly. Any significant changes will be announced via the website or by email.

16. Contact us

If you have any questions, concerns or data access requests, please contact:

Moonlake IT
Steinerhofstraße 10, 5310 Mondsee
E-mail: [email protected]
Phone: +43 676 437 8098

Back to Top
Product has been added to your cart