Privacy Policy (GDPR Compliant for Germany)
Last Updated: 04.04.2026
This Privacy Policy explains how Haysoft (“We”, “Us”, or “Platform”) processes your personal data in accordance with the EU General Data Protection Regulation (GDPR / DSGVO).
1. Data Controller The Data Controller responsible for processing your personal data within the meaning of Art. 4(7) GDPR is:
-
Company Name: Haysoft GmbH
-
Address: Maximilianstr. 14.
41472 Neuss Germany -
Email: support@haysoft.com
2. What Data We Process and the Legal Basis We only process your data based on the legal grounds established by the GDPR:
-
Fulfillment of a Contract (Art. 6(1)(b) GDPR): We process your name, email, billing details, and submitted website/Sitemap data to create your account, manage your subscription, and deliver our SEO & AI services.
-
Legitimate Interests (Art. 6(1)(f) GDPR): We process your IP address and log data to ensure platform security, prevent fraud, and optimize our services.
-
Consent (Art. 6(1)(a) GDPR): We rely on your explicit consent for non-essential cookies and marketing communications.
3. Artificial Intelligence (AI) and International Data Transfers To provide our core features (SEO analysis and content generation), we utilize third-party AI APIs (such as OpenAI, Google, or Anthropic). This may involve transferring data outside the European Economic Area (EEA), particularly to the United States. We ensure that such transfers are strictly safeguarded by the Standard Contractual Clauses (SCCs) approved by the European Commission or the EU-US Data Privacy Framework. Your personal data is never used to train these external AI models.
4. Data Retention Period We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, or to comply with statutory retention obligations under German law (e.g., 6 to 10 years under the German Commercial Code (HGB) and the Fiscal Code (AO)).
5. Your Rights Under GDPR As a data subject, you have the following rights under the GDPR:
-
Right of Access (Art. 15 GDPR): You can request information about your stored data.
-
Right to Rectification and Erasure (Art. 16 & 17 GDPR): You can request the correction of inaccurate data or the deletion of your data (“Right to be forgotten”).
-
Right to Object (Art. 21 GDPR): You have the right to object to the processing of your data based on legitimate interests.
-
Right to Lodge a Complaint (Art. 77 GDPR): You have the right to lodge a complaint with a competent German data protection supervisory authority (Datenschutzaufsichtsbehörde).
To exercise your rights, please contact us at support@haysoft.com