Privacy policy
This translation is provided for convenience. Only the German version is legally binding.
We only process personal data on this website to the extent necessary for its operation, its security and for responding to your enquiries. We do not use tracking or advertising cookies. A third-party service is used only for the domain search, and only when you use it (see section 6).
1. Controller
The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is:
Soll IT ConsultingOwner: Andreas Soll
Tannenstr. 5
66987 Thaleischweiler-Fröschen, Germany
Email: kontakt@soll.net
2. Data protection officer
Our company is not legally required to appoint a data protection officer. If you have any questions about data protection, please use the contact details given above.
3. Hosting and server log files
This website and our email mailboxes are operated by STRATO GmbH, Otto-Ostrowski-Straße 7, 10249 Berlin, Germany, in data centres in Germany. A data processing agreement pursuant to Art. 28 GDPR is in place with STRATO.
Each time the website is accessed, our web server automatically processes information transmitted by your browser and stores it in log files:
- IP address of the requesting device
- date and time of access
- page or file requested, HTTP status code and amount of data transferred
- referrer URL (the previously visited page, if transmitted)
- browser type, browser version and operating system (user agent)
Purpose: delivering the website, ensuring stability and security, detecting and defending against attacks, and analysing errors. No cookies are set, no user profiles are created and no data is passed on to third parties in the process.
Legal basis: Art. 6(1)(f) GDPR. Our legitimate interest lies in providing the website securely and without technical errors.
Storage period: log files are deleted automatically after 14 days. Data that needs to be kept longer for evidential purposes (e.g. in the event of an attack) is retained until the incident has been resolved.
4. Encryption
For security reasons, this website uses TLS encryption (HTTPS). You can recognise an encrypted connection by the padlock symbol and by “https://” in your browser’s address bar. This means that data you send via the contact form cannot be read by third parties.
5. Cookies and consent
Cookies are small text files that your browser stores on your device. We only use our own cookies (first-party), no tracking or advertising cookies and no third-party cookies.
| Name | Category | Purpose | Storage period |
|---|---|---|---|
soll_consent | Necessary | Stores your choice in the cookie notice so that it does not appear again on every page view. | 12 months |
soll_lang | Preferences | Stores the website language you have chosen. Only set with your consent. | 12 months |
Legal basis: the necessary cookie is stored on the basis of § 25 (2) no. 2 of the German Telecommunications Digital Services Data Protection Act (TDDDG) in conjunction with Art. 6(1)(f) GDPR (legitimate interest in recording your choice). We only set preference cookies with your consent under § 25 (1) TDDDG and Art. 6(1)(a) GDPR.
Withdrawal: you can withdraw or change your consent at any time with effect for the future: . If you withdraw consent, the preference cookie is deleted. You can also delete or block cookies in your browser at any time.
6. Domain availability check
For the domain search we use the ADAC service of our domain service provider Realtime Register B.V., Burgemeester Drijbersingel 51, 8021 JB Zwolle, Netherlands. Only when you click into the search field does your browser open an encrypted connection directly to Realtime Register (adac.api.yoursrs.com) and transmit your entry (domain name or description). Realtime Register checks availability and generates suggestions. For technical reasons, Realtime Register receives your IP address and browser information in the process. Merely visiting our website does not establish a connection.
So that related queries can be matched, your browser stores a random identifier in session storage (sessionStorage, not a cookie) for the duration of the session; it is deleted when you close the browser window. If the direct connection is not possible, the check is carried out via our server instead; in that case only our server transmits the domain name to Realtime Register, without your IP address.
A domain name is generally not personal data. If your entry contains your name or other personal information, we only process it to check availability.
Purpose and legal basis: responding to your availability request on the basis of Art. 6(1)(b) GDPR (pre-contractual measures) or Art. 6(1)(f) GDPR (legitimate interest in a working domain service).
Storage period: we cache the check result for each domain for up to 10 minutes to avoid repeated queries. To protect against misuse, we also store a hash of your IP address created with a secret key that changes daily (not the IP address itself); it is deleted after 48 hours at the latest.
7. Contact form
If you write to us via the contact form, we process the data you enter: name, email address, your subject and your message, and optionally your company and phone number. The details are sent by email to our team and stored there to handle your enquiry.
Purpose and legal basis: handling and responding to your enquiry. If your enquiry relates to a contract, the legal basis is Art. 6(1)(b) GDPR (pre-contractual measures); otherwise Art. 6(1)(f) GDPR (legitimate interest in responding to enquiries).
Protection against misuse: to prevent automated spam, we only use our own methods and do not embed any third-party services (such as reCAPTCHA):
- While you fill in the form, your browser solves a small computational task that the server verifies. No data about your device is collected in the process.
- A hidden field and a timing check detect automated submissions.
- To limit the number of requests, we store a hash of your IP address created with a secret key (not the IP address itself). The hash is created with a new key each day and deleted after 48 hours at the latest.
The legal basis for these protective measures is Art. 6(1)(f) GDPR. Our legitimate interest lies in protecting our systems and mailboxes from misuse.
Storage period: we delete your enquiry once it has been fully dealt with, provided there are no statutory retention obligations (e.g. under commercial or tax law, up to 6 or 10 years).
Your name, email address and message are required so that we can respond to your enquiry. Without these details, it is not possible to contact us via the form.
8. Contact by email or phone
If you contact us by email or phone, we process your details (e.g. name, contact details, content of the enquiry) to deal with your request. The legal bases and storage periods are the same as for the contact form.
9. Fonts
The font used on this website is loaded from our own server. When you visit the website, no connection is made to servers of Google or other font providers.
10. Links to the customer area and to third parties
This website links to our customer area (secure.soll.net). A separate privacy policy applies to the use of the customer area and is available there.
Links to websites of other providers are included as normal hyperlinks. Data is only transferred to the respective provider once you click on such a link. The respective provider is responsible for its own data processing.
11. Recipients and transfers to third countries
Within our company, your data is only made accessible to the people who need it for processing. Data is only passed on to third parties if this is permitted by law or you have given your consent. We only use technical service providers (e.g. for hosting or email) on the basis of a data processing agreement pursuant to Art. 28 GDPR: STRATO GmbH (hosting and email, data centres in Germany) and Realtime Register B.V. for domains (see section 6). For the domain availability check, see section 6.
Personal data is not transferred to countries outside the EU or the EEA.
12. Your rights
You have the following rights with regard to the personal data concerning you:
- Right of access (Art. 15 GDPR)
- Right to rectification (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to withdraw consent with effect for the future (Art. 7(3) GDPR). This does not affect the lawfulness of processing carried out before the withdrawal.
To exercise your rights, simply send a message to the contact details given in section 1.
Right to lodge a complaint: you have the right to lodge a complaint with a data protection supervisory authority, in particular in the Member State of your habitual residence, your place of work or the place of the alleged infringement (Art. 77 GDPR). The authority responsible for us is: Der Landesbeauftragte für den Datenschutz und die Informationsfreiheit Rheinland-Pfalz (State Commissioner for Data Protection and Freedom of Information of Rhineland-Palatinate), Hintere Bleiche 34, 55116 Mainz.
13. Right to object under Art. 21 GDPR
Where we process your data on the basis of Art. 6(1)(f) GDPR (legitimate interest), you have the right to object to this processing at any time on grounds relating to your particular situation. We will then no longer process the data unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights and freedoms, or the processing serves the establishment, exercise or defence of legal claims.
14. Miscellaneous
There is no automated decision-making, including profiling, within the meaning of Art. 22 GDPR.
We will update this privacy policy if the website or the legal requirements change. The version published here at any given time applies.
Last updated: October 2026