Skip to content
Thermalyzer
ProductWorkflowPricingDocumentationContact
DeutschSign inCreate workspace
Menu
ProductWorkflowPricingDocumentationContactDeutschSign inCreate workspace
Thermalyzer/Privacy Notice

Legal

Privacy Notice

Version 2026-07-29 · Information under GDPR Article 13

This Notice explains how personal data is processed on the public website, during registration, and when operating Thermalyzer. It covers the Provider's responsibility; the registered business may also be responsible for workspace content.

Document

2026-07-29GDPR Article 13↗

1. Controller

Marco Silipo, Beethovenstraße 90, 46145 Oberhausen, Germany. Email: marco@silipo.de.

Use the email address above for questions about this Notice or to exercise your rights.

2. Roles for inspection and customer data

The Provider determines purposes and means for account, registration, contract, security, and operational data and is the controller for that processing.

Where a registered business uploads personal customer, site, inspection, or media data for its own purposes, that business is generally the controller. The Provider processes such content to provide the service under the business's instructions and agreements where this constitutes processing on behalf of the business.

3. Public website

When thermalizer.de is requested, the server processes connection data technically required to respond, particularly IP address, time, requested address, data volume, status code, referring address, and browser and system information. This supports delivery, stability, troubleshooting, and protection against abuse.

The legal basis is GDPR Article 6(1)(f). The legitimate interest is secure, reliable, and traceable operation. The information site uses no audience measurement, advertising networks, or marketing trackers and sets no non-essential cookies.

4. Registration and accounts

During registration, Thermalyzer processes data including name, business email address, password proof, business name, business and billing addresses, chosen language, accepted document versions, and technical registration and security events.

Processing supports pre-contract steps, provisioning and administering the organization workspace, identity and access checks, communication, and abuse prevention. Legal bases are GDPR Article 6(1)(b) and, for employees or agents of a business customer, Article 6(1)(f). The legitimate interest is operating the B2B relationship with the responsible contacts.

5. Workspace use

Operation may involve profile and organization details; roles and permissions; customer and site data; projects and inspections; thermal and RGB media; measurements and geometry; findings; tasks; templates; reports; billing and contract data; and security, audit, error, and synchronization events.

Processing supports requested project and inspection management, media processing, professional documentation, report generation, access control, troubleshooting, system security, and retention duties. Legal bases are GDPR Article 6(1)(b), (c), and (f) depending on purpose. Legitimate interests include secure operation, investigating failures, and establishing or defending legal claims.

6. Local storage and offline use

The application uses necessary session mechanisms and, when a user requests it, may store project packs, media, queues, and synchronization state in browser or device storage. This supports authentication, security, and the requested offline function. Data is bound to app.thermalizer.de, the account, and the device.

Offline data remains on the device until synchronized, removed through the application, or deleted in browser or device settings. Organization administrators can withdraw access; users must remove local project packs when their purpose ends.

7. Recipients and hosting

Within a registered business, only members whose roles and permissions allow it receive access. Organization administrators manage those assignments.

Hetzner Online GmbH is used as the hosting provider. It processes data needed for hosting, networking, storage, and backups under contractual and legal requirements. Data is otherwise disclosed only to technical providers needed for an expressly activated function, or to authorities and other bodies where disclosure is legally required.

8. International transfers

The current operating model does not intentionally transfer personal data outside the European Economic Area. If a service involving another country is enabled later, this Notice will be updated before that processing and will identify the legally required transfer mechanism.

9. Retention

Account and organization data is generally stored for the relationship's duration. Project and inspection content is retained under customer instructions and agreed functions. Security and operational logs are kept only as long as needed for security, troubleshooting, and evidence.

When the purpose ends, data is deleted or anonymized unless statutory retention, contractual evidence duties, or legitimate interests in legal defense require more time. Commercial and tax records may be stored for statutory periods. Backups are overwritten under the technical backup cycle.

10. Your rights

Where statutory requirements are met, data subjects have rights of access, rectification, erasure, restriction, and data portability. Consent can be withdrawn at any time for future processing.

You may object to processing based on GDPR Article 6(1)(f) for reasons arising from your particular situation. Direct marketing would carry an unconditional right to object; Thermalyzer currently performs no direct marketing based on usage data.

11. Complaints

You may complain to a data protection supervisory authority. The authority responsible for the Provider is the State Commissioner for Data Protection and Freedom of Information North Rhine-Westphalia, Kavalleriestraße 2–4, 40213 Düsseldorf, Germany. You may also contact the authority for your habitual residence or place of work.

12. Required information and automated decisions

Registration and business details marked as required are needed to establish and perform the relationship. An organization workspace cannot be provided without them. Other details are voluntary unless needed for a selected function.

The Provider makes no decisions producing legal or similarly significant effects solely through automated processing within GDPR Article 22. Thermographic measurement and review functions do not replace decisions by professionally responsible people.

13. Security and updates

The Provider uses appropriate technical and organizational measures to protect personal data against loss, unauthorized access, and improper alteration. No transmission or storage system can provide absolute protection.

A new dated version will be provided for material changes to purposes, recipients, or functions. The version shown or linked when data is collected applies.

Thermalyzer

Thermography from field capture to report.

Application

Create workspaceSign inOpen Thermalyzer

Documentation

DocumentationWorkflowPricingContact

Legal

Impressum (German)Terms of UsePrivacy

© 2026 Marco Silipo

For registered businesses