Privacy Policy

Privacy Policy
Photo by Towfiqu barbhuiya / Unsplash

1. General Information

When you visit this website or use its membership, comment and newsletter functions, personal data is processed. Visitor statistics and third-party content are also used. The following information describes these processing activities.

2. Server Logs

When you access this website, the web server automatically stores information in server log files. These include:

  • IP address of the requesting device
  • Date and time of access
  • Name of the requested file
  • Referrer URL (the page visited previously)
  • Browser and operating system used

Server logs support technical operation, troubleshooting and security. Processing for these purposes is based on Article 6(1)(f) GDPR and our legitimate interest in a secure, stable website. Nginx logs are configured to rotate daily and retain up to 14 rotated files in addition to the current log. This rotation rule does not describe the retention of other application, security or backup logs.

3. External Services

The CMS membership and comments interfaces, as well as syntax highlighting loaded by the target theme when needed, are delivered through cdn.jsdelivr.net. Two published articles directly embed the Vimeo player (Vimeo.com, Inc., USA) in an iframe using the dnt=1 parameter. When the player loads, your browser connects to Vimeo and transmits, in particular, your IP address and technical request information. Vimeo states that dnt=1 reduces new non-essential cookies, but existing Vimeo cookies may still be transmitted and individual technical cookies may be set for secure player operation. The embed serves our legitimate interest in presenting article content clearly under Article 6(1)(f) GDPR. Further information: https://vimeo.com/privacy and https://vimeo.com/cookie_policy.

Web fonts used on this website are hosted locally on our own server. Loading these fonts does not establish a connection to Google’s servers.

Members, sign-in and comments

This website offers memberships, sign-in using email links (magic links), and comments for signed-in members. These functions process, in particular, the email address provided, a name where supplied, membership and sign-in information, and newsletter preferences. Published comments and the name displayed with them are visible to other readers. These details are used to provide the functions you select.

Newsletters and email delivery

A German and an English newsletter are available. Signup and delivery require your consent under Article 6(1)(a) GDPR. You may withdraw it at any time with future effect, particularly through the unsubscribe function or the contact details below. Membership, selection and consent status are stored in the CMS. Confirmation and sign-in emails are sent through the configured SMTP mail server mail.jukut.de. A delivery provider for editorial bulk newsletters is not currently configured.

Visitor statistics

We use our self-hosted Plausible instance at plausible.initinsights.de to understand how the website is used, including page views, file downloads and clicks on external links. This involves information about the page visited and the source of the visit; transmission technically involves an IP address and browser information. Processing is based on our legitimate interest in privacy-conscious audience measurement under Article 6(1)(f) GDPR.

The CMS uses your browser’s sessionStorage to record the source of signups. Cookies allow you to remain signed in when using membership functions.

4. Rights of Data Subjects

You have the right:

  • Under Art. 15 GDPR, to request information about the personal data stored about you.
  • Under Art. 16 GDPR, to request the correction of inaccurate or incomplete data.
  • Under Art. 17 GDPR, to request the deletion of your stored data, provided that no statutory retention obligations prevent its deletion.
  • Under Art. 18 GDPR, to request the restriction of processing.
  • Under Art. 21 GDPR, to object to the processing of your data.

You can submit requests concerning these rights at any time using the email address provided below.

Where the statutory conditions are met, you also have the right to data portability under Article 20 GDPR. You may withdraw consent at any time; withdrawal does not affect the lawfulness of processing based on consent before it was withdrawn.

5. Right to Lodge a Complaint with a Supervisory Authority

If you believe that the processing of your personal data violates data protection law, you have the right to lodge a complaint with the competent data protection supervisory authority.

6. Data Security

This website uses SSL/TLS encryption to protect your data during transmission.

7. Contact

Controller: Thomas Kröckel, Steinweg 12, 07607 Eisenberg, Germany. Email: available through the contact function below.

If you have any questions about data protection, you can contact us by email:

[show E-Mail]

8. Validity and Amendments to This Privacy Policy

This Privacy Policy is currently valid and may be amended as necessary.

Last updated: 6 September 2026.

Cloudflare Turnstile (sign-in and registration protection)

We use Cloudflare Turnstile to protect member sign-in and registration, including magic-link delivery, against automated and abusive requests.

When the check is loaded and used, your browser connects directly to Cloudflare. Technical connection data, including the IP address, browser and device information, and the page requested may be transmitted to and processed by Cloudflare.

Our server then validates the result through Cloudflare's Siteverify endpoint. We do not additionally send the optional remoteip parameter. After successful validation, a random single-use ticket is stored on our server for no more than 120 seconds and set as an HttpOnly, Secure, SameSite-Lax cookie restricted to the magic-link path.

The provider is Cloudflare, Inc. More information: https://www.cloudflare.com/privacypolicy/