1. Data controller
Mathias Kniepeiss · ENDLIVITY Creative Labs · Mollardgasse 2, 1060 Vienna, Austria · info@mathiaskniepeiss.com
2. Server logs
When you visit this website, your browser automatically transmits data that we temporarily store: IP address (anonymised after 7 days), date/time, page requested, referrer, browser type, OS, language, ISP. Purpose: connection security, comfortable use, system security. Legal basis: Art. 6(1)(f) GDPR (legitimate interest). Retention: max 14 days.
3. Contact via email or phone
We do not provide an online contact form. Contact is only possible via email (info@mathiaskniepeiss.com, mail@endlivity.com) or phone. When you reach out via these channels, the personal data you share (e.g. name, email, phone number, message content) is processed solely to handle your enquiry. Legal basis: Art. 6(1)(b) GDPR (pre-contractual measure) or Art. 6(1)(f) GDPR (legitimate interest in efficient communication). Data is deleted once the request is settled and no statutory retention obligation applies (typically 7 years for business correspondence under Austrian fiscal/commercial law).
4. Newsletter
We use double-opt-in. We process your email address to send editorial updates. You may unsubscribe at any time. Legal basis: Art. 6(1)(a) GDPR. Delivery is performed by rapidmail GmbH, Augustinerplatz 2, 79098 Freiburg, Germany (rapidmail.com/data-protection) under a Data Processing Agreement pursuant to Art. 28 GDPR. Server locations within the EU only. The signup window only appears on our contact page (/en/kontakt/); displaying it triggers a connection to rapidmail servers and may process IP address and technical browser data.
5. Cookies
We use technically required cookies only (storage of your cookie choice). Optional analytics cookies require your explicit consent. See cookie policy.
6. Web fonts
We load fonts dynamically from Google Fonts; your IP is briefly transferred to Google LLC. Legal basis: Art. 6(1)(f) GDPR.
7. Embedded content (YouTube, Vimeo)
Where we embed videos from YouTube/Vimeo, connections to their servers are established and cookies may be set. We use the privacy-friendly "no-cookie" mode where possible. Legal basis: Art. 6(1)(a) GDPR (consent via cookie banner).
8. Recipients & third-country transfers
Recipients: hosting provider, newsletter provider, tax advisor (within statutory retention obligations). Third-country transfers (e.g. USA) only on the basis of EU Standard Contractual Clauses or adequacy decisions.
9. Your rights
- Access (Art. 15 GDPR)
- Rectification (Art. 16)
- Erasure (Art. 17)
- Restriction (Art. 18)
- Portability (Art. 20)
- Objection (Art. 21)
- Withdrawal of consent (Art. 7(3))
- Complaint to Austrian DPA (Art. 77) · dsb.gv.at
10. Security
SSL/TLS encryption (typically 256-bit). State-of-the-art technical and organisational measures.
11. AI processing
We use generative AI models in our services. Client data is processed only on secured pipelines under Data Processing Agreements. Personal data is pseudonymised or removed before model input where possible. Client data is not fed to public training datasets.