Transparency & privacy
Privacy Policy
This Privacy Policy applies to the studio websites royalenginestudios.de and royalenginestudios.com.
Last updated: 22 July 2026
1. Controller
The controller within the meaning of the General Data Protection Regulation (GDPR) is:
David HerrmannWolfgang-Steinitz-Str. 2
12589 Berlin
Deutschland
Email: david_herrmann87@yahoo.de
2. Hosting and server log data
This website is hosted and technically provided through ChatGPT Sites on behalf of the controller. The provider for users in the European Economic Area is OpenAI Ireland Limited, 1st Floor, The Liffey Trust Centre, 117–126 Sheriff Street Upper, Dublin 1, D01 YC43, Ireland.
When you visit the website, technically necessary connection data is processed. This may include your IP address, date and time of access, the requested address or file, referrer URL (if transmitted), browser type and version, operating system, device and connection information, as well as request status and error data.
This processing is required to deliver the website securely and reliably, analyse errors and protect the service against abuse and attacks. The legal basis is Article 6(1)(f) GDPR. The legitimate interest is the secure, stable and functional operation of this website.
OpenAI may use subprocessors for hosting, infrastructure, content moderation and support. These include Cloudflare Ltd. for content delivery, network security and bot protection. Processing outside the European Economic Area cannot be ruled out. OpenAI identifies adequacy decisions and the EU Standard Contractual Clauses, in particular, as transfer mechanisms.
Royal Engine Studios does not operate its own visitor analytics and does not create its own usage profiles. Technical log data is processed by hosting and security providers only for as long as necessary for delivery, stability, security, abuse prevention or legal obligations. The specific period depends on the nature and purpose of the log data and the rules of the service providers involved.
3. Strictly necessary cookies
When the website is accessed, Cloudflare may set the strictly necessary cookie “__cf_bm”. It helps identify automated traffic and protects the website against malicious requests. The cookie does not contain an advertising ID, is marked “Secure” and “HttpOnly”, and usually expires after approximately 30 minutes.
Storage or access is based on Section 25(2)(2) TDDDG because it is necessary to securely provide the website expressly requested by the visitor. Subsequent processing of personal data is based on Article 6(1)(f) GDPR. We currently do not use analytics or marketing cookies that require consent.
4. Fonts and media
The fonts and image files used on this website are delivered locally through the same website. Loading a page does not automatically establish a connection to Google Fonts or an external image service.
5. Contact by email
If you contact us by email, the data you provide – in particular your email address, name, message content and any other information you choose to provide – will be processed in order to handle your enquiry. The website itself does not contain a contact form.
If your enquiry concerns a potential contract or pre-contractual steps, the legal basis is Article 6(1)(b) GDPR. In all other cases, processing is based on Article 6(1)(f) GDPR and the legitimate interest in responding to enquiries. The data will be deleted once the enquiry has been fully resolved and no statutory retention obligations or legitimate reasons require continued storage.
6. External links and LinkedIn
The website contains ordinary links to external services, including David Herrmann’s LinkedIn profile. No social media plugins or embedded LinkedIn content are loaded. Only when you click an external link will your browser connect to the relevant provider. This may transmit your IP address, technical browser data and the page you previously visited.
The relevant external provider is responsible for subsequent processing on the destination website. For users in the European Economic Area, the LinkedIn provider is generally LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland. Data may be transferred to third countries. Please refer to the relevant provider’s privacy policy for details.
7. No tracking, newsletter or user account
Royal Engine Studios currently does not use its own audience analytics, advertising pixels, newsletter, user accounts, automated decision-making or profiling on this website. If the website’s technical scope changes, this Privacy Policy will be updated and consent will be obtained in advance where required.
8. Your rights
Where the statutory requirements are met, you have the right to:
- Access your personal data and information about its processing (Article 15 GDPR)
- Rectification of inaccurate data (Article 16 GDPR)
- Erasure of your data (Article 17 GDPR)
- Restriction of processing (Article 18 GDPR)
- Data portability (Article 20 GDPR)
- Object to processing based on legitimate interests (Article 21 GDPR)
- Withdraw consent at any time with future effect (Article 7(3) GDPR)
To exercise your rights, simply contact us using the email address stated above.
9. Right to object
Where personal data is processed on the basis of Article 6(1)(f) GDPR, you may object to that processing at any time on grounds relating to your particular situation. Processing will then cease unless compelling legitimate grounds or legal requirements justify its continuation.
10. Right to lodge a complaint
You have the right to lodge a complaint with a data protection supervisory authority. The authority responsible for the controller is, in particular:
Berlin Commissioner for Data Protection and Freedom of InformationAlt-Moabit 59–61, 10555 Berlin, Germany
mailbox@datenschutz-berlin.de
11. Updates and amendments
This Privacy Policy reflects the website’s current technical scope. It will be updated if new features or services are introduced or legal requirements change. The version published on this page at the relevant time applies.