Privacy notice

This website sets no cookies and embeds no tracking services. Below we explain what data is nevertheless processed when you visit.

Last updated: 29 August 2026

Controller

  • noahs software – Inhaber: Noah Plützer
  • Klaus-Groth-Str. 103
  • 20535 Hamburg
  • Email: kontakt@noahssoftware.com

Data protection officer

We have not appointed a data protection officer. There is no obligation to do so under § 38 BDSG, since we do not constantly employ at least 20 people on the automated processing of personal data and none of the other conditions listed there apply. For any data protection matter, please use the contact details above.

No cookies, no tracking

This website sets no cookies, embeds no analytics or advertising services and builds no usage profiles. That is why there is no cookie banner — there is nothing to consent to. The one exception is the appearance setting you choose yourself; see the next section. Fonts are served from our own server; no connection is made to Google Fonts or any other third party.

Appearance setting (light/dark)

If you switch between the light and dark appearance in the top right, your browser stores that choice locally on your device (localStorage, key “theme”, value “light” or “dark”). It is set only by your own action, contains no personal data and is never transmitted to us or to any third party — its sole purpose is to keep your choice when you move between pages. As storage strictly necessary for a service you explicitly requested, it requires no consent under § 25(2) no. 2 TDDDG. You can delete the entry at any time via your browser’s site data; without it the site follows your operating system setting again.

Hosting

This website is served as a static site by Google (Firebase Hosting); the contracting entity in the EEA is Google Cloud EMEA Limited, Dublin, Ireland. Technically necessary connection data is processed when a page is requested. The legal basis is Art. 6(1)(f) GDPR (legitimate interest in secure, performant operation). A data processing agreement under Art. 28 GDPR is in place in the form of the Cloud Data Processing Addendum, which forms part of the Google Cloud terms of service. Content is delivered via a global content delivery network; restricting this service to data centres in the EU is not possible. This may involve a transfer to Google LLC in the USA. Google LLC is certified under the EU-US Data Privacy Framework, supplemented by the European Commission’s standard contractual clauses. You may request a copy of these safeguards using the contact details above. A move to a hosting service operated in Germany is planned.

Server log files

The hosting provider automatically processes data transmitted by your browser: the address requested, the time, the amount of data transferred, browser type and version, operating system, referrer URL and IP address. This processing serves secure, uninterrupted operation only; the legal basis is Art. 6(1)(f) GDPR. We ourselves do not access these server log files, do not evaluate them and do not merge them with other sources; the retention period is determined by the hosting provider.

Recipients of the data

We do not pass personal data to third parties. Processors we engage to operate this website are the exception — currently only the hosting provider named above. No data is passed on for advertising purposes. Beyond that, we transmit data only where we are legally obliged to do so or where it is necessary to establish, exercise or defend legal claims.

Retention

We keep personal data only for as long as the respective purpose requires. Email correspondence is deleted once your enquiry has been dealt with conclusively and no statutory retention periods apply; commercial and tax retention periods are six or ten years depending on the document. For server log files, the hosting provider’s periods described in the previous section apply.

Contacting us by email

If you write to us by email, we process your details solely to handle your enquiry. The legal basis is Art. 6(1)(b) GDPR for contract-related enquiries and otherwise Art. 6(1)(f) GDPR. We delete the data once the enquiry has been dealt with and no statutory retention periods apply.

Our products

Using our products — CareOS, for instance — is governed by separate privacy notices provided within each application. This notice covers this company website only.

No automated decision-making

No automated decision-making, including profiling, within the meaning of Art. 22 GDPR takes place.

Providing your data

You are under no statutory or contractual obligation to provide us with personal data. The connection data arising when the website is called up is technically necessary to deliver the page. If you wish to write to us, we need your email address in order to reply; without it we cannot deal with your enquiry. No further disadvantage arises for you.

Your rights

You have the right of access (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18) and data portability (Art. 20). As we base no processing on consent, a withdrawal under Art. 7(3) GDPR has no application. You may also lodge a complaint with a data protection supervisory authority at any time (Art. 77 GDPR); the authority responsible for us is Der Hamburgische Beauftragte für Datenschutz und Informationsfreiheit, https://datenschutz-hamburg.de.

Right to object

Under Art. 21 GDPR you have the right to object at any time, on grounds relating to your particular situation, to the processing of personal data concerning you which is carried out on the basis of Art. 6(1)(f) GDPR. If you object, we will no longer process your data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves to establish, exercise or defend legal claims. You may lodge an objection informally using the contact details above.

Encryption

This website is delivered exclusively over a TLS-encrypted connection, recognisable by “https” and the padlock symbol in your browser’s address bar. Requests over “http” are redirected automatically to the encrypted connection. Please note that emails you send us are generally not end-to-end encrypted in transit.

Changes to this privacy notice

We update this privacy notice when the underlying processing changes — for instance when the hosting provider is switched as planned. The version published here is the one that applies; the date of its last change is shown at the top of this page.

Back to the home page