Skip to content
pioneerdesk.

Legal

Privacy policy

Last updated: May 2026

This is a convenience translation. The German Datenschutzerklärung at /datenschutz/ is the legally binding version.

1. Controller

The controller (Verantwortlicher) within the meaning of the General Data Protection Regulation (GDPR) is:

Pioneerdesk GmbH
Palmberg 29
84539 Zangberg
Germany
Email: marcus.lenczyk@pioneerdesk.eu

2. Scope

This privacy policy applies to the processing of personal data in connection with accessing and using the website pioneerdesk.eu.

Data processing within our products is governed by separate privacy policies — see onelog.pro/datenschutz (B2B RMM platform) and the respective app-specific privacy policy of TMT MentalTech.

3. Data processing at a glance

This website processes data as sparingly as technically possible. Specifically:

  • · We set no tracking cookies.
  • · We use no US analytics services (no Google Analytics, no Meta Pixel, no HubSpot, no Segment).
  • · We embed no external fonts dynamically — fonts are served exclusively self-hosted.
  • · Server hosting is on STACKIT Sovereign Cloud in Germany — no data transfers to third countries.
  • · There is no profiling and no automated decision-making within the meaning of Art. 22 GDPR.

4. Server log files

When this website is accessed, the web server (Caddy) automatically records technical data in log files:

  • · IP address (anonymised by truncation at network-class level)
  • · date and time of access
  • · requested URL and HTTP method
  • · HTTP status code
  • · referrer (where transmitted)
  • · user agent (browser/operating system identifier)

Legal basis: Art. 6(1)(f) GDPR (legitimate interest in operational security, error analysis and defence against attacks). Retention period: 14 days; automatic deletion thereafter.

5. Contacting us

If you contact us by email or request an appointment via the intro call form, we process the data transmitted (name, email address, content of the enquiry and, where applicable, preferred date) to answer your enquiry and for any follow-up communication.

Legal basis: Art. 6(1)(b) GDPR (pre-contractual measure) or Art. 6(1)(f) GDPR (legitimate interest in business communication). Data is deleted as soon as it is no longer required and no statutory retention obligations stand in the way.

6. Booking an intro call

For booking intro calls we use a self-hosted appointment booking system on STACKIT infrastructure. Data processed: name, email address, preferred date, free-text notes. No data is transferred to third parties; the data does not leave the EU.

Legal basis: Art. 6(1)(b) GDPR. Retention period: until the end of the business initiation or as required by applicable retention obligations.

7. Hosting (Sovereign Cloud)

This website is hosted on the STACKIT Sovereign Cloud (Schwarz IT KG / Schwarz Group). All processing takes place in data centres in Germany. The STACKIT infrastructure is ISO 27001 certified and meets the requirements of the BSI C5 catalogue.

No personal data is transferred to third countries, in particular not to the USA. A data processing agreement (Auftragsverarbeitungsvertrag, AVV) pursuant to Art. 28 GDPR is in place with STACKIT.

8. External links

This website contains links to external third-party services (e.g. LinkedIn, product subdomains). When you click such links, you leave our area of responsibility. We have no control over the data processing of the respective providers; their privacy policies apply.

9. Your rights as a data subject

Under the GDPR you have the following rights:

  • · Right of access (Art. 15 GDPR): you may request information about the data we process about you.
  • · Right to rectification (Art. 16 GDPR): you may request the correction of inaccurate data.
  • · Right to erasure (Art. 17 GDPR): you may request the deletion of your data, provided no statutory retention obligations stand in the way.
  • · Right to restriction of processing (Art. 18 GDPR).
  • · Right to data portability (Art. 20 GDPR).
  • · Right to object (Art. 21 GDPR).
  • · Right to lodge a complaint with a supervisory authority (Art. 77 GDPR).

Please direct requests to: marcus.lenczyk@pioneerdesk.eu.

10. Competent supervisory authority

The supervisory authority responsible for Pioneerdesk GmbH (registered in Bavaria):

Bayerisches Landesamt für Datenschutzaufsicht (BayLDA, Bavarian State Office for Data Protection Supervision)
Promenade 18
91522 Ansbach
www.lda.bayern.de

11. Changes to this policy

This privacy policy is amended as necessary to reflect changed processing practices or legal circumstances. The current version applies and is available on this page.