Data Protection
Privacy Policy.
Last updated: May 2026
1. Data Controller
The data controller responsible for processing personal data within the meaning of the GDPR is:
Dr. Kristin Neumann, Independent Scientific Consultant
Tannäckerstr. 12, 96135 Stegaurach, Germany
Email: hello@drkristinneumann.com
2. Scope of this Privacy Policy
This Privacy Policy applies to the processing of personal data in connection with:
- visits to this website,
- contact via email or contact form,
- inquiries regarding consulting, advisory, training, or speaking services,
- business communication with clients and partners.
3. Collection and Processing of Personal Data
Personal data is only collected when you voluntarily provide it, in particular when you contact me via email, submit an inquiry, or include personal data in business communication. The processed data may include: name, email address, company affiliation, and content of communications.
4. Purpose of Data Processing
Personal data is processed for the purpose of responding to inquiries, preparing proposals and contracts, providing consulting and related services, and conducting business communication.
5. Legal Basis for Processing
- Article 6(1)(b) GDPR — performance of a contract or pre-contractual measures
- Article 6(1)(f) GDPR — legitimate interest in professional communication and business operations
6. Data Sharing and Transfers
Personal data is not shared with third parties unless it is necessary for contract performance or there is a legal obligation to do so. No data is transferred to third countries outside the EU unless appropriate safeguards are in place.
7. Data Retention
Personal data is stored only for as long as necessary to fulfill the respective purposes or as required by statutory retention obligations.
8. Your Rights
Under the GDPR, you have the right to:
- request access to your personal data (Art. 15 GDPR),
- request rectification of inaccurate data (Art. 16 GDPR),
- request erasure of your data (Art. 17 GDPR),
- request restriction of processing (Art. 18 GDPR),
- request data portability (Art. 20 GDPR),
- object to processing based on legitimate interests (Art. 21 GDPR).
9. Right to Lodge a Complaint
You have the right to lodge a complaint with a competent data protection supervisory authority.
10. Data Security
Appropriate technical and organizational measures are implemented to protect personal data against loss, misuse, unauthorized access, or unlawful processing. This website is transmitted via SSL/TLS encryption.
11. Changes to this Privacy Policy
This Privacy Policy may be updated from time to time to reflect legal requirements or changes in processing activities. The current version published on this website shall apply.