1. Controller
Noir Holding UG (haftungsbeschränkt)
Waldheimstraße 22
58566 Kierspe, Germany
Email: contact@noirgroup.eu
2. General information
We process personal data only where this is necessary to provide this website, respond to enquiries, comply with legal duties or protect legitimate interests. The applicable legal bases are, in particular, Articles 6(1)(a), 6(1)(b), 6(1)(c) and 6(1)(f) GDPR.
3. Hosting and server log files
This website is hosted by Vercel Inc., 440 N Barranca Avenue #4133, Covina, CA 91723, USA. When the website is accessed, technical data may be processed, including IP address, date and time, requested resource, referrer, browser and operating-system information, and response status. Processing is necessary to deliver the website securely and reliably and is based on Article 6(1)(f) GDPR.
Where data is transferred to the United States, this may be based on an applicable adequacy mechanism, including certification under the EU–US Data Privacy Framework where available, and/or the European Commission’s Standard Contractual Clauses. Vercel processes personal data under its applicable data-processing terms. We use the contractual and technical safeguards required for the service configuration in operation.
4. Web analytics with Plausible
We use Plausible Analytics, a service provided by Plausible Insights OÜ, Västriku tn 2, 50403 Tartu, Estonia, to understand aggregated website usage. Plausible is configured without cookies and does not create cross-site user profiles. The service processes limited usage data to generate aggregated statistics. The legal basis is our legitimate interest in privacy-friendly reach measurement under Article 6(1)(f) GDPR.
According to the provider, visitor data is processed and stored within the European Union on European infrastructure. A data processing agreement applies to the service relationship.
5. Contact by email
If you contact us by email, we process the information you provide, including your email address and message, to handle your enquiry. Depending on its subject, processing is based on Article 6(1)(b) GDPR or Article 6(1)(f) GDPR. Business email is provided using Microsoft 365. Microsoft may act as a processor for relevant service data under its contractual data-protection terms.
6. Recipients and international transfers
Personal data may be disclosed to service providers that support hosting, analytics, communications, security and technical operations. Providers are selected with regard to data protection and are contractually bound where required. Where processing takes place outside the EEA, we use a legally recognised transfer mechanism and, where appropriate, supplementary safeguards.
7. Retention
We retain personal data only for as long as necessary for the respective purpose or as required by statutory retention obligations. Technical log data is retained only for the period needed for security, troubleshooting and operation. Enquiry data is deleted when it is no longer required, unless legal obligations or legitimate interests require longer retention.
8. Your rights
Subject to the statutory requirements, you have the right to access, rectification, erasure, restriction of processing, data portability and objection. Where processing is based on consent, you may withdraw that consent at any time with effect for the future. You may also lodge a complaint with a competent data-protection supervisory authority.
9. Right to object
Where we process personal data on the basis of Article 6(1)(f) GDPR, you may object for reasons arising from your particular situation. Where data is processed for direct marketing, you may object at any time without stating reasons.
10. Security and updates
We use appropriate technical and organisational measures to protect personal data. We may update this policy when services, legal requirements or processing activities change. The version published on this website is the current version.
Last updated: 4 August 2026