Our Privacy Framework
Privacy isn't a clause—it's the architectural foundation of our digital studio. This document outlines the data we collect, why we collect it, and the precise boundaries we maintain. No vague promises, no hidden trackers. Just the clear logic behind every data interaction.
Effective Date
October 15, 2025
All updates are timestamped and archived.
What We Collect & Why
Our data collection is minimal and purpose-driven. We categorize information into three distinct tiers, each with a specific operational reason. This mirrors how we manage internal studio assets: nothing is stored without a defined use case.
Essential Service Data
When you contact us for a project proposal or download a case study, we collect your name, email address, and company. This data is retained solely to initiate and manage the professional relationship. It is not used for marketing automations or third-party sharing. We store this via a secure CRM (Pipedrive) with end-to-end encryption, and delete it if a project does not move forward after 12 months.
Website Analytics
We use Plausible Analytics—a privacy-first, cookie-less tool—to understand how our portfolio is navigated. We collect no personal identifiers, only aggregated data: which project pages are viewed, from what general region (city-level), and referral sources. This helps us refine our portfolio presentation. No individual user fingerprinting or cross-site tracking occurs. Data is anonymized and retained for 12 months.
Technical & Performance Logs
Our server logs automatically capture standard technical data (IP address, browser type, timestamp) for security and performance monitoring. This data is used exclusively to diagnose site issues, prevent abuse, and ensure 99.9% uptime. Logs are automatically cycled every 30 days. We do not link this data to any user profile or browsing behavior on other sites.
Security & Data Sharing
We treat your data like we treat source code—versioned, secured, and access-controlled. Sharing is never passive; it requires a defined contractual or legal basis.
-
•
Encryption All data in transit uses TLS 1.3. Data at rest is encrypted on our servers.
-
•
Access Control Only Studio Directors have access to contact databases. No junior staff or contractors see client lists.
-
•
No Sale We do not sell, rent, or trade personal data. Ever.
Our infrastructure prioritizes security over convenience. This image represents our layered approach to data protection.
Your Data Rights
You have clear, actionable control over your information. These rights are not theoretical—they are built into our systems.
Right to Access
Request a copy of all personal data we hold about you.
Right to Erasure
Ask us to delete your personal data (subject to legal retention).
Right to Rectify
Correct inaccurate information we hold about you.
Right to Portability
Receive your data in a structured, machine-readable format.
Accountability & Contact
Our studio is registered in Germany, and we operate under the strict frameworks of the GDPR and the German Federal Data Protection Act (BDSG). For any privacy-related inquiries, appeals, or formal requests, our designated Data Protection Officer is the primary contact.
Marklino.pro Studio
Alexanderplatz 1, 10178 Berlin, Germany
+49 30 12345678 | Mon-Fri: 9:00-18:00 CET
"Privacy is a promise, not a feature. We build it into the foundation, not as an afterthought." — Studio Manifesto