Legal

Privacy Policy

Last updated January 1, 2026

This Privacy Policy ("Datenschutzerklärung") explains how ALEXANDRU STEFAN TOIA ("we", "us", or "the Controller") collects, uses, stores and protects your personal data when you visit our website or use our digital marketing services. We process personal data in accordance with the EU General Data Protection Regulation (GDPR / DSGVO), the German Federal Data Protection Act (BDSG) and the German Telecommunications-Telemedia Data Protection Act (TTDSG).

1. Data Controller

The controller responsible for the processing of personal data on this website is:
ALEXANDRU STEFAN TOIA
Laurentiusstraße 34
74676 Niedernhall, Germany
Email: info@toiaboost.de
Phone: +49 1577 6199640

2. Categories of Personal Data We Process

We process information you provide directly — such as your name, email address, phone number, company name and message content when you submit a contact form or engage our services — and technical data collected automatically (IP address, browser type, operating system, referrer URL, pages viewed, date and time of access) via server log files and cookies.

3. Purposes and Legal Bases of Processing

We process personal data on the following legal bases under Art. 6 GDPR:

  • Art. 6(1)(b) GDPR — performance of a contract or pre-contractual measures (responding to enquiries, delivering contracted services).
  • Art. 6(1)(c) GDPR — compliance with legal obligations (tax, accounting, retention).
  • Art. 6(1)(f) GDPR — legitimate interests (website security, fraud prevention, service improvement).
  • Art. 6(1)(a) GDPR — your consent (analytics, marketing cookies, newsletters).

4. Recipients and Data Transfers

We do not sell personal data. We share data only with vetted processors necessary to deliver our services (hosting providers, email infrastructure, analytics, payment processors) under data processing agreements pursuant to Art. 28 GDPR. Where data is transferred outside the EU/EEA, we rely on adequacy decisions of the European Commission or EU Standard Contractual Clauses (Art. 46 GDPR) with appropriate supplementary measures.

5. Retention Periods

We retain personal data only as long as necessary for the purposes described above or as required by German commercial and tax law (typically 6 to 10 years for invoicing data per §147 AO and §257 HGB). Contact enquiries are deleted within 12 months unless a contractual relationship begins.

6. Your Rights as a Data Subject

Under Art. 15–22 GDPR you have the right to: access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20), and to object to processing based on legitimate interests (Art. 21). Where processing is based on consent, you may withdraw that consent at any time with future effect (Art. 7(3)). To exercise any of these rights, contact us at info@toiaboost.de.

7. Right to Lodge a Complaint

You have the right to lodge a complaint with a supervisory authority (Art. 77 GDPR). The competent authority for our establishment is the Landesbeauftragte für den Datenschutz und die Informationsfreiheit Baden-Württemberg, Königstraße 10a, 70173 Stuttgart, Germany.

8. Server Log Files

Our hosting provider automatically collects and stores information in server log files transmitted by your browser (IP address, date/time, referrer, user agent). This data is processed on the basis of Art. 6(1)(f) GDPR for the legitimate interest of secure and stable site operation, and is deleted after no more than 30 days.

9. Cookies and Tracking

For details on cookies and similar technologies we use, including how to manage your consent, see our Cookie Policy.

10. SSL/TLS Encryption

This site uses SSL/TLS encryption for the protection of all transmissions of confidential content, such as enquiries you send to us as the site operator.

11. Changes to this Policy

We may update this Privacy Policy to reflect changes in legal requirements or our services. The version date at the top of this page indicates the most recent revision.