Privacy Policy
Last updated: April 3, 2026
This Privacy Policy explains how Cloudflavor processes personal data on cloudflavor.io.
Controller
company detailsCloudflavor GmbH
- Zug Commercial Register
- Gartenstrasse 7, c/o excent AG, Znl., Zug, ZG 6300, CH
- UID: CHE-370.883.915
- VAT: CHE-370.883.915 MWST
- General Director: Victor Palade (victor@cloudflavor.io)
- General contact: contact@cloudflavor.io
Data We Process
website + forms- Technical request data required to serve and secure the website.
- Theme preference stored in your browser local storage under key
theme. - Contact form fields: name, email, company (optional), and message.
- Security verification data required for Cloudflare Turnstile validation.
- Operational data required to deliver contact emails through Mailgun.
Analytics
umamiWe use Umami Analytics (script loaded from https://cloud.umami.is/script.js) to understand traffic and
website usage.
Umami is configured as a privacy-focused analytics solution. It is intended to avoid tracking users across unrelated websites and to minimize personal data collection.
If your browser sends a Do Not Track signal and Umami respects this signal for our project configuration, your visit may not be recorded.
Contact Form Processing
turnstile + mailgunContact submissions are processed through our backend endpoint and checked with Cloudflare Turnstile to reduce spam and abuse.
After verification, we send the message to our team email address and may send an automatic confirmation reply to the sender via Mailgun.
Service Providers
subprocessors- Cloudflare (hosting, CDN, edge delivery, Turnstile verification).
- Umami Cloud (website analytics).
- Mailgun (contact email delivery and optional auto-reply).
Depending on provider configuration and region, processing may occur in the EU, Switzerland, the US, or other jurisdictions.
Legal Basis
gdpr references- Art. 6(1)(b) GDPR for responding to requests and pre-contract communication.
- Art. 6(1)(f) GDPR for security, abuse prevention, and operation of the website.
- Art. 6(1)(c) GDPR where legal obligations require processing.
- Art. 6(1)(a) GDPR where consent is explicitly requested.
Retention
storage periodWe retain data only as long as necessary for the purposes described above, to satisfy legal obligations, and to protect against abuse and security incidents.
Your Rights
access + controlUnder applicable law, you may have rights to access, rectification, erasure, restriction, objection, and data portability, and to lodge a complaint with a supervisory authority.
To exercise rights requests, contact: contact@cloudflavor.io.
Changes
updatesWe may update this policy to reflect legal, technical, or operational changes. The date at the top indicates the latest revision.