Privacy Policy
Last updated: December 2025
This Privacy Policy explains how personal data is processed when using GHOST ("Service"), available at https://www.useghost.de, operated by KLEINMOND VENTURES.
Protecting your privacy is important to us. GHOST is built with a strong focus on data minimization, transparency, and compliance with the General Data Protection Regulation (GDPR).
1. Data Controller
KLEINMOND VENTURES
Owner: Lukas Kleinmond
Am Rathaus 4
55286 Wörrstadt
Germany
📧 Email: hi@lukaskleinmond.de
📞 Phone: +49 155 65578413
2. Scope of this Privacy Policy
This Privacy Policy applies to:
- The website www.useghost.de
- The GHOST web application (dashboard)
- The GHOST tracking script and APIs
- All related services provided under the name GHOST
3. What Data GHOST Processes
3.1 Website Visitors (www.useghost.de)
When you visit our website, the following technical data may be processed automatically:
- IP address (shortened / anonymized where possible)
- Browser type and version
- Operating system
- Referrer URL
- Date and time of access
- Requested pages
This data is processed solely to ensure website security, stability, and performance.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
3.2 Account Registration & App Usage
When you create an account or use the GHOST app, we process:
- Email address
- Account credentials (passwords are encrypted and never stored in plain text)
- Project and configuration data
- Subscription and billing status
We do not sell or share this data with third parties for advertising purposes.
Legal basis: Art. 6(1)(b) GDPR (contract performance)
3.3 Analytics Data Collected via GHOST
GHOST is a privacy-friendly analytics platform. By default:
- No cookies are used
- No cross-site tracking
- No fingerprinting
- No personal user profiles
- No advertising identifiers
The tracking script processes aggregated and pseudonymous usage data, such as:
- Page views
- Sessions
- Entry and exit pages
- Scroll depth
- Time spent on pages
- Referrer and traffic source (e.g. direct, organic, referral)
- Device type (browser, OS, screen size)
- Country, region, or city (based on anonymized IP)
GHOST does not track individual users across sessions.
Legal basis:
Art. 6(1)(f) GDPR (legitimate interest in product analytics)
In many jurisdictions, consent is not required due to anonymized, cookie-less tracking.
4. No Sensitive Personal Data
GHOST does not intentionally collect:
- Names
- Exact IP addresses
- Email addresses of end-users
- Login credentials of end-users
- Payment details of end-users
All analytics data is processed at an aggregate level only.
5. Data Retention
Data retention depends on your subscription plan:
- Free plan: up to 7 days
- Individual plan: up to 30 days
After the retention period, data is automatically deleted and cannot be restored.
6. Data Processing & Infrastructure
- Data is processed within the European Union
- We use secure, GDPR-compliant infrastructure
- Access is restricted to authorized personnel only
- Industry-standard security measures are applied
7. Payment Processing
Payments and subscriptions are handled by Stripe.
Stripe may process:
- Name
- Email address
- Payment method details
GHOST itself does not store full payment information.
Stripe Privacy Policy: https://stripe.com/privacy
Legal basis: Art. 6(1)(b) GDPR
8. Cookies
GHOST does not use tracking cookies for analytics.
Only strictly necessary cookies may be used for:
- Authentication
- Session management
- Security purposes
9. Your Rights under GDPR
You have the right to:
- Access your data (Art. 15 GDPR)
- Rectify incorrect data (Art. 16 GDPR)
- Delete your data (Art. 17 GDPR)
- Restrict processing (Art. 18 GDPR)
- Data portability (Art. 20 GDPR)
- Object to processing (Art. 21 GDPR)
You can exercise your rights by contacting us at:
10. Data Deletion & Account Termination
You may delete your account at any time.
Upon deletion:
- All associated data is permanently removed
- No backups are retained beyond technical necessity
11. Third-Party Services
GHOST uses a minimal number of trusted service providers strictly necessary to operate the Service (e.g. hosting, payments).
No data is shared for advertising or marketing purposes.
12. Changes to this Privacy Policy
We may update this Privacy Policy from time to time.
Changes will be reflected on this page with an updated revision date.
13. Contact & Complaints
If you believe your data protection rights have been violated, you may contact your local data protection authority.
Primary contact:
