don't panic logo

Privacy Policy

Last updated: 5 September 2026.

This policy outlines the manner in which Don’t Panic Consultancy manages personal data related to this website.

This document is subject to periodic revisions. Any such revisions automatically replace and invalidate all preceding versions as of their respective publication dates.

A comprehensive version history, including details of prior revisions and modifications, is publicly available in the GitHub repository for this website.

Questions or concerns regarding any specific version or changes between versions should be directed to the contact information provided in the Legal Notice.

1. Data collected by this website

This website does not utilize cookies, analytics, or third-party tracking tools. It does not collect, store, or handle any personal data. Standard server logs are kept in AWS S3 and are automatically deleted after 90 days following an automated lifecycle policy. These logs are not used for tracking or profiling purposes.

2. Contact data

This website does not feature a contact form. The contact option initiates the visitor’s default email client through a standard mailto link. No information provided by the visitor is transmitted to, or collected by, this website at any time.

Should a visitor choose to send an email, that message is received in a Gmail inbox. Google, as the email service provider, processes the message in the course of its delivery, in the same manner as any email service provider. The message is not forwarded to any other third party, added to a mailing list, or used for any purpose beyond responding to the sender.

3. Future changes to tracking

Should analytics or usage tracking be implemented in the future, it shall be restricted to first-party evaluation of website activity and shall explicitly exclude third-party analytics providers. This policy will be amended accordingly prior to such implementation.

4. Data retention and erasure

Requests for the deletion of previously shared personal data or correspondence may be submitted via the designated contact email address. Such requests will be duly honored, except for records that are mandated to be retained under statutory retention requirements under German law, which must be preserved regardless of an erasure request. All other records will be deleted upon request.

Retention of client engagement records is further addressed in the Terms & Conditions.

5. Data location

Where feasible, client data shall be processed and stored within the client’s own infrastructure, rather than within systems managed by Don’t Panic Consultancy. In instances where this is not feasible, dedicated agreements concerning data handling and retention will be established with the client and appended to the engagement documentation.

6. Questions

Questions concerning this policy or requests related to personal data may be directed to the contact details published in the Legal Notice.

This policy reflects current practices and is provided for informational purposes only. This policy was not prepared by a lawyer and should not be relied upon as legal advice. Parties with specific compliance requirements are encouraged to address them directly.