Privacy policy
1. Controller
Jurono
Wilmersdorfer Straße 122, 10629 Berlin
Email: hello@jurono.eu
2. Processing when visiting this website
When this website is accessed, technically necessary data is processed, such as IP address, date and time of access, requested page, browser, operating system, and server log data. Processing is used to provide the website, detect errors, and ensure security.
The website and related email mailboxes are hosted by netcup GmbH. netcup processes technical operating and communication data as the hosting and email service provider.
The legal basis is Art. 6(1)(f) GDPR.
3. Checkout, order, and payment processing
When you book a package, we process the website address you enter, optionally a repository or project URL, access notes, problem description, project goal, name, company, phone number, email address, payment status, booked package, and technical order data. Payments are processed through Stripe. You are redirected to Stripe for payment; Stripe privacy information also applies there.
The legal bases are Art. 6(1)(b) GDPR for pre-contractual and contractual services and Art. 6(1)(c) GDPR for statutory retention obligations.
4. Technical website audit
After booking, we technically audit the submitted website. Publicly available content, technical signals, headers, external scripts, cookie and tracking notices, and performance and security indicators may be processed.
Technical analysis and support services may be used for internal evaluation and structuring, especially Kimi/Moonshot through an OpenAI-compatible interface. Where possible, only technical audit data and the website address are transmitted, not payment data.
The legal basis is Art. 6(1)(b) GDPR.
5. Website performance measurement (Google PageSpeed Insights)
The free quick scanner on this website uses Google PageSpeed Insights to technically measure the public website address you enter. The URL is transmitted to Google; Google fetches the page with its Lighthouse tool and returns public measurement values for performance, accessibility, best practices, and SEO.
No personal data such as name, email address, or cookie information is transmitted to Google. Only the public URL you entered and the technical measurement values determined by Google are shared. Google may process the IP address of the requesting server; we have no influence on this.
For more information on Google's data processing, please see Google's privacy policy: policies.google.com/privacy.
The legal basis for using this service is our legitimate interest in a fast, production-grade technical website assessment under Art. 6(1)(f) GDPR.
6. Email communication and report delivery
For questions and delivery of results, we process your email address and communication content. Email mailboxes are operated through netcup. If automated report delivery is enabled, Resend may additionally be used as a technical email delivery provider. Delivery, bounce, and complaint status may be stored to document report delivery.
The legal bases are Art. 6(1)(b) and Art. 6(1)(f) GDPR.
7. Cookies and tracking
This website currently does not use its own marketing or analytics cookies. When Stripe is used, Stripe may use its own cookies and comparable technologies on Stripe pages.
8. Analytics services (Umami)
We use Umami as a self-hosted web analytics service at umami.jurono.eu. Umami is configured without our own marketing cookies and is used to evaluate technical usage events so we can improve the website. No personal data such as name, email address, or form content is transmitted to Umami.
Technical events captured include page views, quick-scan start and completion, downloaded checklists and reports, submitted lead forms, checkout start and abandonment, successful purchases (including package, amount, and language), and booked consultation sessions. These events are used solely to measure and optimize the usage and conversion funnel.
The purpose is statistical evaluation of website usage to continuously improve our offering. The legal basis is our legitimate interest in demand-oriented design and optimization of our website under Art. 6(1)(f) GDPR.
9. Error monitoring (Sentry)
We use Sentry to detect and analyze technical errors. Technical error data may be processed, such as error messages, stack traces, affected URLs, browser and device data, and the time of the error. Sentry is configured without session replay, without intentionally sending default PII, and without intentionally sending checkout form contents, access notes, or credentials to Sentry.
The purpose is technical stability and troubleshooting. The legal basis is our legitimate interest under Art. 6(1)(f) GDPR.
10. Recipients and third-country transfer
Recipients of personal data may include netcup as the hosting and email provider, Supabase for database/auth functions, Stripe for payment processing, Google for technical performance measurement via PageSpeed Insights, Umami for cookieless, anonymized web analytics with funnel events, Sentry for technical error analysis, Kimi/Moonshot for technical report generation, and Resend for report email delivery. Depending on the provider, processing may take place outside the EU/EEA. In that case, appropriate safeguards under Art. 44 et seq. GDPR are used where required.
11. Retention period
Order and payment data are stored according to statutory retention obligations. Technical audit data, reports, email delivery status, error events, and communication are deleted or anonymized once no longer required for service delivery, support, proof purposes, or statutory obligations. Deletion and export requests are documented internally so they can be handled traceably.
12. Your rights
Under the GDPR, you have rights to access, rectification, erasure, restriction of processing, data portability, and objection. You may also lodge a complaint with a data protection supervisory authority.
13. Note
This privacy policy currently reflects netcup for hosting and email, Stripe for payments, Google for performance measurement via PageSpeed Insights, Umami for cookieless, anonymized web analytics with funnel events, and Sentry for technical error analysis. Resend is relevant only if optional automated report delivery through Resend is enabled.