Legal

Privacy Policy

Last updated: September 25, 2026

This policy comes in two versions. The US version below is written for visitors in the United States. Because we're based in Germany, the EU General Data Protection Regulation (GDPR) governs how we handle personal data for every visitor. You'll find the European version (GDPR) at the end of this page. Both describe the same practices.

Who we are

This website is operated by Ian Marketing, a sole proprietorship owned by Raik Ian Bündig and based in Germany. When this policy says “we,” “us” or “our,” it means Ian Marketing.

Ian Marketing
Owner: Raik Ian Bündig
Ahornring 14
16356 Ahrensfelde OT Blumberg, Germany

Email: raik@ianmarketing.de

The short version

  • Advertising tools only load if you click “Accept all” in our privacy banner. Until then, no request goes to Meta and no marketing cookies are set.
  • If your browser sends a Global Privacy Control signal, we treat it as a no.
  • We have no contact form, no user accounts and no newsletter. If you email us, we receive what you send.
  • We don't sell your personal information.

Information we collect

Information you give us

When you email us, we receive your email address, your name if you include it, and the content of your message and any attachments.

Information collected automatically

To deliver this website and protect it from attacks, our hosting provider Cloudflare processes technical data that your browser sends with every request: IP address, date and time, the page or file requested, the amount of data transferred, the referring page, browser type and version, and operating system. We don't keep our own server logs. Cloudflare may set strictly necessary security cookies (such as “__cf_bm” or “cf_clearance”) to tell people apart from bots. They contain no marketing or analytics data.

Your privacy choice

Your decision in the privacy banner (accept or decline, when you decided, and which version of the banner you saw) is stored only in your browser's local storage, under “ian_cookie_consent.” It isn't sent to us or to anyone else.

Information collected only with your consent

If you click “Accept all,” we use the Meta Pixel and the Meta Conversions API (see section 5). They collect your IP address, browser and device information, the page you visit and certain actions on our site. Currently, these are page views and clicks on our email address.

Categories

In the terms of US state privacy laws, we collect identifiers (such as your email address, IP address and cookie IDs), internet or other electronic network activity (such as pages viewed and clicks on our site) and the content of messages you send us. We don't collect sensitive personal information, precise geolocation or payment information through this website.

How we use it

  • To answer your inquiry and, if we work together, to provide our services.
  • To deliver this website securely and to find and fix errors.
  • Only with your consent: to measure our ad campaigns on Facebook and Instagram and to show our ads to people who have visited our website.

We don't use your information for anything else.

Advertising and analytics (Meta)

With your consent, we use the Meta Pixel from Meta Platforms, Inc. and its affiliate Meta Platforms Ireland Limited. The pixel lets Meta recognize visitors to our website, so we can show our ads on Facebook and Instagram to people who have shown interest in our services and see how our ads perform. After you consent, the pixel sets the cookies “_fbp” (recognizes your browser) and, if you came to us through a Meta ad, “_fbc” (links your visit to that ad). Both last 90 days.

Also only with your consent, our server may also send the same events to Meta through the Conversions API: the event (such as a page view), your IP address, browser information, an event ID that prevents double counting, and the values of the _fbp and _fbc cookies. We don't send contact data such as email addresses or phone numbers, because we don't use a contact form.

Meta also uses this data for its own purposes, as described in Meta's Privacy Policy: facebook.com/privacy/policy. Under California law, this counts as “sharing” personal information for cross-context behavioral advertising. We only do it with your consent, and you can withdraw it at any time.

Apart from Meta, and only with your consent, we don't allow third parties to collect personal information about your online activities over time and across websites when you use our site.

Who we share it with

We share personal information only with service providers that help us run this website and our business, and, with your consent, with Meta:

We may also disclose information where the law requires it. We don't sell personal information.

Your choices

Privacy choices

You can change or withdraw your consent at any time through in the footer. The banner then asks again.

Global Privacy Control

If your browser sends a Global Privacy Control (GPC) signal, we treat it as a decline: the banner stays hidden, and the Meta Pixel and the Conversions API stay off.

Do Not Track

There's no common standard for how websites should respond to “Do Not Track” browser signals, so we don't respond to them separately. Nothing on this site tracks you without your consent anyway.

Meta settings

You can also manage how Meta uses your information for ads in your Facebook or Instagram settings.

Your rights

Depending on where you live, privacy laws in states such as California, Colorado, Connecticut, Virginia or Texas give you rights over your personal information. We give the following rights to everyone, wherever you live:

  • to know what personal information we have about you and to get a copy,
  • to correct inaccurate information,
  • to have your information deleted,
  • to opt out of the sale or sharing of your personal information and of targeted advertising,
  • to withdraw your consent at any time.

To make a request, email raik@ianmarketing.de. We may ask you to confirm your identity, for example by replying from the email address in question. An authorized agent can also make a request for you. We respond within 45 days, and we won't treat you differently for exercising your rights. If we decline a request, you can appeal by replying to our answer. The European version of this policy (GDPR) gives you further rights, including the right to complain to a data protection authority.

How long we keep it

  • Emails: until your request is resolved, unless you ask us to delete them sooner. Where German commercial or tax law requires it, for example for business letters and invoices, we keep them for the legally required period, generally six to ten years.
  • Your privacy choice: until you reset it or clear your browser data. We ask again after twelve months.
  • Cloudflare's technical data: according to Cloudflare's policies.
  • Data collected by Meta: according to Meta's policies. We don't store pixel data ourselves.

Transfers, security and children

International data transfers

We're based in Germany, and our service providers operate in the United States and the European Union, so your information may be processed in both. For transfers from the EU to the US, our providers rely on the EU-US Data Privacy Framework and the European Commission's Standard Contractual Clauses.

Security

This website is only served over encrypted connections (HTTPS). We keep what we collect to a minimum and don't store analytics or pixel data ourselves. Still, no transmission over the internet is completely secure.

Children

This website is meant for businesses. We don't knowingly collect personal information from children under 16. If you believe a child has sent us personal information, let us know and we'll delete it.

Links to other websites

Our website links to other websites, for example to our service providers' privacy policies. Their operators are responsible for how they handle data.

Our Instagram profile

The footer of every page links to our Instagram profile, instagram.com/ian.marketing. It's a plain link, not an embedded plugin, so nothing is loaded from Instagram or Meta until you click it. When you visit our profile, Meta processes your information under its own policy: privacycenter.instagram.com/policy. Meta gives us aggregated statistics about our profile (such as reach and profile visits) that don't identify individual people. If you comment or send us a direct message, we use what you send to reply to you. The European version of this policy (section EU 06) has the details.

Changes and contact

If we change how we handle personal information, we'll update this policy and the date at the top of this page. If a change affects what you've consented to, the privacy banner asks for your consent again.

Questions about privacy: email raik@ianmarketing.de or write to Ian Marketing, Ahornring 14, 16356 Ahrensfelde OT Blumberg, Germany.

European version (GDPR)For visitors in the European Union and the EEA. Governs our processing for all visitors.

Privacy at a glance

General information

The following notes give a simple overview of what happens to your personal data when you visit our website. Personal data is any data that can be used to identify you personally. Detailed information follows in the sections below.

Who is responsible for data collection on this website?

Data processing on this website is carried out by the website operator. You'll find the operator's contact details in the legal notice of this website and in section EU 02.

How do we collect your data?

Some data is collected because you give it to us, for example data you send us by email. We don't use a contact form.

Other data is collected automatically, or after your consent, by our IT systems when you visit the website. This is mainly technical data (for example browser, operating system or time of the page visit). This data is collected automatically as soon as you enter our website.

What do we use your data for?

Part of the data is collected to ensure the website is provided without errors and securely (server log files of our hosting provider, see section EU 03). Other data may be used to analyze your user behavior (for example through tracking pixels), to optimize our marketing campaigns and to show you personalized advertising, but only with your consent (section EU 05).

General information and mandatory disclosures

Controller

The controller responsible for data processing on this website is:

Ian Marketing
Owner: Raik Ian Bündig
Ahornring 14
16356 Ahrensfelde OT Blumberg, Germany

Email: raik@ianmarketing.de

The controller is the natural or legal person who, alone or jointly with others, decides on the purposes and means of processing personal data (for example names or email addresses).

Withdrawal of your consent

Many data processing operations are only possible with your express consent. You can withdraw consent you have already given at any time. An informal email to us is sufficient. The lawfulness of the processing carried out until the withdrawal remains unaffected.

You can also reset your cookie consent at any time via the on this website.

Right to lodge a complaint with the competent supervisory authority

In the event of violations of the GDPR, data subjects have the right to lodge a complaint with a supervisory authority, in particular in the member state of their habitual residence, their place of work or the place of the alleged violation.

Right to object (Art. 21 GDPR)

If data processing is based on Art. 6(1)(e) or (f) GDPR, you have the right to object to the processing of your personal data at any time on grounds relating to your particular situation. If your data is processed for direct marketing, you have the right to object to this processing at any time; the data will then no longer be used for this purpose.

Right to data portability

You have the right to have data that we process automatically on the basis of your consent or in fulfillment of a contract handed over to you or to a third party in a common, machine-readable format.

Right to restriction of processing

You have the right to request the restriction of the processing of your personal data, for example while the accuracy of the data is being checked, if the processing is unlawful and you request restriction instead of erasure, or while a decision on an objection you have raised is still pending.

Right to access, erasure and rectification

Within the framework of the applicable legal provisions, you have the right at any time to free information about your stored personal data, its origin and recipients and the purpose of the data processing and, if applicable, a right to rectification or erasure of this data. For this and any other questions about personal data, you can contact us at any time at the address given in the legal notice.

SSL/TLS encryption

For security reasons and to protect the transmission of confidential content, this website uses SSL/TLS encryption. You can recognize an encrypted connection by the browser's address bar changing from “http://” to “https://” and by the lock symbol in your browser bar.

Hosting and delivery (Cloudflare)

This website is delivered as a static website via the infrastructure of Cloudflare. The provider is Cloudflare, Inc., 101 Townsend Street, San Francisco, CA 94107, USA (“Cloudflare”). Cloudflare operates a globally distributed network (content delivery network) through which the content of this website is provided, cached and protected against attacks.

Server log files

Each time this website is accessed, Cloudflare processes, for technical reasons, information that your browser transmits automatically: IP address, date and time of access, page or file requested, amount of data transferred, referrer URL, browser type and version, and operating system. This data is not merged with other data sources. We don't keep our own server log files.

To defend against attacks and automated access, Cloudflare may set technically necessary cookies (for example “__cf_bm” or “cf_clearance”). They serve exclusively the security and functionality of the website, contain no marketing or analytics data and are permitted without consent under Section 25(2) no. 2 of the German Telecommunications Digital Services Data Protection Act (TDDDG).

The server-side transmission of events to Meta (section EU 05, Conversions API) also runs through a service that we operate at Cloudflare (a “Cloudflare Worker”). It only forwards the events and does not store them.

Processing is based on Art. 6(1)(f) GDPR. Our legitimate interest lies in providing this website in a technically error-free, fast and secure way, in particular in defending against attacks (for example DDoS) and in error analysis.

Processing on our behalf and transfers to third countries

Cloudflare processes this data on our behalf. The basis is the data processing agreement pursuant to Art. 28 GDPR (Data Processing Addendum), which forms part of Cloudflare's terms of use. Cloudflare, Inc. is certified under the EU-US Data Privacy Framework; in addition, the European Commission's Standard Contractual Clauses apply. Because Cloudflare operates a worldwide network, the website may be delivered through data centers outside the EU. More information is available in Cloudflare's privacy policy: cloudflare.com/privacypolicy.

Data collection on this website

Storage of your cookie decision (local storage)

This website sets no cookies without your consent, apart from the Cloudflare security cookies described in section EU 03. We store your decision in the privacy banner (consent or refusal, time and version of the request) exclusively locally in your browser (local storage, entry “ian_cookie_consent”). This entry is not transmitted to us or third parties and serves only to respect your choice on further visits and to be able to prove it. The legal basis is Section 25(2) no. 2 TDDDG (strictly necessary) and Art. 6(1)(c) and (f) GDPR in conjunction with our obligation to provide proof under Art. 7(1) GDPR. The entry remains stored until you reset it via “Privacy choices” or delete the website data in your browser; after twelve months at the latest, we ask for your decision again.

Global Privacy Control

If your browser sends a Global Privacy Control signal, we treat it like a refusal: the privacy banner is not shown, and no marketing technologies are loaded. Nothing is stored for this.

Fonts

For a uniform display, this website uses the font “Inter.” The font files are delivered from our own hosting. There is no connection to servers of Google or other font providers, and no data is transmitted to third parties as a result.

Contact by email

If you contact us by email, your inquiry including all personal data arising from it (name, contact details, content of the inquiry) is stored and processed by us for the purpose of handling your request. We don't pass this data on without your consent.

Processing is based on Art. 6(1)(b) GDPR if your inquiry is related to the performance of a contract or is necessary to carry out pre-contractual measures. In all other cases, processing is based on our legitimate interest in the effective handling of inquiries addressed to us (Art. 6(1)(f) GDPR) or on your consent (Art. 6(1)(a) GDPR), if this was requested.

The data you send us remains with us until you ask us to delete it, withdraw your consent to storage or the purpose for storing the data no longer applies (for example after your inquiry has been fully handled). Mandatory statutory provisions, in particular retention periods under commercial and tax law, remain unaffected.

Email hosting (Google Workspace)

To receive, store and send our emails, we use Google Workspace from Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. If you write to us, your message including content, attachments and metadata (sender address, time) is processed and stored on Google's servers. Google processes this data on our behalf; we have concluded a data processing agreement with Google pursuant to Art. 28 GDPR (Data Processing Addendum). Processing on servers in the USA is possible; Google LLC is certified under the EU-US Data Privacy Framework, and the European Commission's Standard Contractual Clauses also apply. The legal basis is our legitimate interest in reliable and secure email communication (Art. 6(1)(f) GDPR) or Art. 6(1)(b) GDPR, insofar as your inquiry serves the initiation or performance of a contract. More information: policies.google.com/privacy.

External links

This website contains links to external websites of third parties (for example to the privacy policies of our service providers). When you click such a link, you leave our website; the respective operator is solely responsible for the data processing there.

This also applies to the link to our Instagram profile in the footer of every page. It is a plain link, not an embedded plugin: the Instagram icon is part of our own website, and no connection to Instagram or Meta is made when our pages load. Data only reaches Meta when you click the link and open Instagram (see section EU 06).

Marketing and tracking technologies (Meta)

On our website, we use so-called tracking pixels (also called web beacons). A pixel is a tiny graphic that is loaded from the servers of the respective third-party provider when our website loads. This allows certain information to be collected.

Consent via the consent management tool (privacy banner)

We only use tracking pixels if you have given us your express consent via our consent management tool (privacy banner). The legal basis for storing information on the user's terminal equipment (for example cookies) is Section 25(1) TDDDG. The legal basis for the subsequent processing of personal data is Art. 6(1)(a) GDPR (consent). You can withdraw this consent at any time with effect for the future in the .

Meta Pixel (Meta Platforms Ireland)

On our website, we use the “Meta Pixel” of Meta Platforms Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland, and affiliated companies (for example Meta Platforms, Inc., USA). The Meta Pixel allows Meta to determine visitors to our website as a target group for displaying ads (“Facebook ads” or “Instagram ads”). Accordingly, we use the Meta Pixel to show the ads we run only to users who have shown an interest in our offer or who have certain characteristics.

Data processed and cookies

IP address, device and browser information, the page visited and certain actions on our website. We currently record the events “PageView” and “Contact” (click on our email address). After your consent, the Meta Pixel sets the cookies “_fbp” (recognition of the browser) and, if you came to us via a Meta ad, “_fbc” (attribution to the ad). Both cookies last 90 days.

Transfers to third countries

Data may be transferred to Meta's servers in the USA. Meta Platforms, Inc. is certified under the EU-US Data Privacy Framework, which ensures an adequate level of data protection.

Meta Conversions API (server-side transmission)

In addition to the Meta Pixel, and likewise only after your consent, we may transmit events to Meta server-side via the “Conversions API.” Event data (for example page view, contact inquiry) is sent from our server to Meta together with your IP address, browser information, an event ID to avoid double counting and the cookie values “_fbp” and “_fbc” mentioned above. We don't transmit contact data such as email addresses or phone numbers, because we don't use a contact form. The purpose is more reliable measurement and optimization of our advertising campaigns, even when browser-side tracking is restricted. The legal basis is your consent under Art. 6(1)(a) GDPR; the transmission does not take place at all if you don't consent or withdraw your consent.

Joint controllership

Insofar as personal data is collected by means of the Meta Pixel or the Conversions API and transmitted to Meta, we and Meta Platforms Ireland Limited are jointly responsible for this processing (Art. 26 GDPR). Joint controllership is limited to the collection and transmission of the data; the subsequent processing by Meta is Meta's sole responsibility. The rights and obligations are set out in an agreement with Meta (“Controller Addendum”): facebook.com/legal/controller_addendum. Under this agreement, Meta is obliged to guarantee the data subject rights under Art. 15–20 GDPR for the data stored by Meta. Information on data processing by Meta can be found in Meta's privacy policy: facebook.com/privacy/policy.

Storage period

How long Meta stores the collected data depends on the information in Meta's privacy policy; we ourselves do not store any data collected via the Meta Pixel. Your consent remains stored until you withdraw it.

Withdrawal

You can deactivate tracking by the Meta Pixel at any time in our or object to personalized advertising directly in your Facebook profile settings.

Our profile on Instagram

We maintain a public profile on the social network Instagram: instagram.com/ian.marketing. The provider is Meta Platforms Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland (“Meta”). This section applies to the processing of your data when you visit our profile or contact us there. Our website itself does not embed Instagram (see section EU 04, “External links”).

Processing by Meta

When you visit our profile, Meta processes your data, for example your IP address, device and browser information and, if you are logged in to Instagram, your account data and your interactions (for example views, likes, comments, saves and shares). Meta may also use this data for its own purposes, such as market research and personalized advertising, and may use cookies and similar technologies for this, including for people without an Instagram account. We have no influence on this processing. For details, see Meta's privacy policy: privacycenter.instagram.com/policy.

Statistics (Insights) and joint controllership

Meta provides us with aggregated statistics about our profile (for example reach, profile visits, interactions and rough information on the age, gender and location of visitors). These statistics do not allow conclusions about individual people; we have no access to the underlying data. Insofar as Meta processes data of visitors to our profile for these statistics, we and Meta are jointly responsible for this processing (Art. 26 GDPR). Meta has provided an agreement under which Meta assumes primary responsibility for this processing and handles requests regarding your rights: facebook.com/legal/terms/page_controller_addendum. Joint controllership does not extend to any further processing that Meta carries out on its own.

Comments and direct messages

If you comment on our posts or send us a direct message, we process the information you provide (your Instagram name, your profile picture and the content of your message) in order to respond to your request. Comments are visible to all Instagram users. Meta stores direct messages; we delete conversations as soon as they are no longer needed to handle your request and no statutory retention obligations apply.

Legal basis

We operate the profile to present our business and our services and to get in touch with prospective clients and clients. The legal basis is our legitimate interest in this public relations work and communication (Art. 6(1)(f) GDPR). If your message serves to initiate or perform a contract, the legal basis is Art. 6(1)(b) GDPR. Insofar as Meta asks for your consent (for example for cookies), processing is based on that consent (Art. 6(1)(a) GDPR, Section 25(1) TDDDG).

Transfers to third countries

Meta may also transfer data to Meta Platforms, Inc. in the USA. Meta Platforms, Inc. is certified under the EU-US Data Privacy Framework; in addition, Meta uses the European Commission's Standard Contractual Clauses.

Your rights

You can exercise your rights under section EU 02 (access, rectification, erasure, restriction, data portability, objection, complaint) both against us and directly against Meta. Since only Meta has access to visitors' data, the fastest way is to contact Meta directly: help.meta.com/support/privacy. If you contact us, we will forward your request to Meta. You can manage which ads you see in your Meta Accounts Center.