Privacy

This page describes how personal data is processed when you use this website and its related services.

Controller

Sandor Hadhazi

DraugrPrime Labworks

Klausener Straße 23

66115 Saarbrücken

Germany

Email: support@draugrprime-labworks.de

Account and Authentication

When you create an account, we process your email address and account credentials to provide and manage your account. If you choose to add profile details (such as your full name or phone number), these are stored in connection with your account.

Authentication sessions are managed using secure cookies set by our authentication provider. These cookies are necessary for you to remain signed in across page visits.

Legal basis: performance of a contract / pre-contractual measures (Art. 6(1)(b) GDPR).

Cart and Guest Cart

When you are signed in, your cart contents (product selections and quantities) are stored in our database linked to your account, so your cart persists across sessions and devices.

When you browse without an account, your cart is stored locally in your browser using localStorage. This data does not leave your device and is automatically cleared after 30 days of inactivity. It contains only product identifiers and quantities, without any contact details or checkout data.

Legal basis (signed-in cart): performance of a contract / pre-contractual measures (Art. 6(1)(b) GDPR).

Checkout

When you proceed to checkout, we collect the information necessary to fulfil your order: your name, delivery address, billing address (if different), email address, and optionally your phone number and an order note.

To improve your experience, the checkout form saves a draft of what you have entered in your browser's localStorage. This draft is stored locally on your device only and is used to restore your progress if you leave and return to the checkout.

Legal basis: performance of a contract / pre-contractual measures (Art. 6(1)(b) GDPR).

Contact Inquiries

If you contact us via the contact form or directly by email, we process the personal data you provide (such as your name and email address) solely to handle your inquiry and respond to you.

Contact form submissions are delivered to us by email via Resend (see Service Providers below). Your name, email address, and message are transmitted through Resend in order to deliver your inquiry to us.

Legal basis: legitimate interests in handling communications (Art. 6(1)(f) GDPR), or performance of a contract where the inquiry relates to an order (Art. 6(1)(b) GDPR).

Service Providers

Vercel

This website is hosted and served by Vercel. Vercel processes connection and request data as part of delivering the site. Server-side functions for this project are configured to run in the EU (Frankfurt region). Vercel's company and infrastructure are based in the United States.

Supabase

Account data, profile data, and signed-in cart data are stored in a database provided by Supabase, hosted in the EU (Frankfurt region). Supabase also handles authentication session management.

Resend

Contact form submissions are delivered by Resend, an email delivery service. Resend processes the content of contact inquiries (name, email address, and message) in order to transmit them to us. Resend's company is based in the United States.

Data Retention

Account and profile data is retained for as long as your account exists. You may request deletion of your account and associated data at any time by contacting us.

Browser-local data (guest cart, checkout draft) is stored only on your device and is not within our control. Guest cart data expires automatically after 30 days. You may clear localStorage data at any time through your browser settings.

Your Rights

Under applicable data protection law, you have the right to:

  • Access: you may request confirmation of whether we hold your personal data and receive a copy of it
  • Rectification: you may request correction of data that is inaccurate or incomplete
  • Erasure: you may request deletion of your personal data, subject to applicable legal obligations
  • Restriction: you may ask us to restrict processing in certain circumstances
  • Objection: you may object to processing carried out on the basis of legitimate interests
  • Portability: where processing is based on consent or contract and carried out by automated means, you may request your data in a structured, commonly used format
  • Complaint: you have the right to lodge a complaint with a supervisory authority. The competent authority is the Unabhängiges Datenschutzzentrum Saarland (UDZ Saarland)

To exercise your rights, contact us at support@draugrprime-labworks.de.