Data protection

Privacy Policy / Datenschutzerklärung

This notice explains how FICONTER processes personal data when you visit the public site, create an account, use a workspace, contact support or use subscription functions.

Pre-launch legal draftThe legal operator name and full service address still have to be confirmed before these pages are used as the final public legal notice. The structure and remaining legal information are being prepared now so those details can be inserted without redesigning the site.

1. Controller

The controller under the General Data Protection Regulation (GDPR) is:

[LEGAL OPERATOR NAME REQUIRED BEFORE PUBLIC LAUNCH]
[FULL SERVICE ADDRESS REQUIRED BEFORE PUBLIC LAUNCH]
Düsseldorf, Germany
Germany
Email: contact@ficonter.com

2. Data processed

Depending on the features you use, FICONTER may process:

  • account and identity data such as email address, authentication status and profile settings;
  • financial information you enter into personal or business workspaces, including transactions, bills, balances, goals, debts, savings, categories and planning records;
  • business-workspace information such as revenue, costs, inventory, suppliers and related records;
  • documents or files you choose to upload;
  • support requests and communications;
  • subscription, plan and payment-reference information where billing functions are used;
  • technical, security and session information needed to operate and protect the service.

3. Purposes and legal bases

Personal data is processed primarily to:

  • create and administer accounts and authenticate users;
  • provide personal and business financial workspaces and requested platform functions;
  • save preferences, language, theme and security settings;
  • process support and account-security requests;
  • operate subscription and billing functions when activated;
  • maintain platform security, prevent misuse and investigate technical incidents;
  • meet legal and accounting obligations where they apply.

Depending on the processing activity, the legal basis may be Article 6(1)(b) GDPR for performance of a contract or pre-contractual measures, Article 6(1)(c) GDPR for legal obligations, Article 6(1)(f) GDPR for legitimate interests in secure and reliable operation, or Article 6(1)(a) GDPR where consent is specifically requested.

4. Hosting, authentication and infrastructure

FICONTER is deployed using Vercel infrastructure and uses Supabase for database, authentication, realtime and storage functions. These providers may process technical data and, where required for the service, account or workspace data on FICONTER's behalf under their applicable data-processing terms.

Infrastructure locations and sub-processors can change over time. Where a provider processes personal data outside the European Economic Area, FICONTER will rely on an applicable GDPR transfer mechanism, such as an adequacy decision or appropriate contractual safeguards, where required.

5. Payments

The codebase contains PayPal subscription integration prepared for FICONTER plans. Paid production subscriptions are not treated as active merely because this integration exists. If a user chooses PayPal when paid plans are activated, PayPal processes payment and account information under its own privacy terms, while FICONTER stores the subscription identifiers and status needed to administer access.

6. Exchange-rate data and external requests

Currency-conversion functionality may request exchange-rate information from an external rate service. FICONTER is designed so the request is for rate data rather than the transmission of a user's full financial ledger. Technical connection data may nevertheless be processed by the external service when such a request is made.

7. Cookies, local storage and device information

FICONTER uses cookies and browser storage for functions such as authentication, language selection, interface preferences, trusted-device handling and service operation. These technologies are described in more detail on the Cookies & Technology page.

FICONTER does not currently advertise on the platform. Optional analytics, marketing or advertising technologies should not be introduced without the required consent mechanism and an updated privacy notice.

8. Retention

Personal data is kept only for as long as required for the purpose for which it is processed, to provide the account or service, to meet statutory retention requirements, or to establish, exercise or defend legal claims. Account deletion may be subject to limited retention where a legal obligation requires certain records to be preserved.

9. Your rights

Subject to the conditions of the GDPR, you may have rights of access, rectification, erasure, restriction, data portability and objection. Where processing is based on consent, you may withdraw that consent for the future. You also have the right to lodge a complaint with a competent data-protection supervisory authority.

Requests can be sent to contact@ficonter.com.

10. Automated financial insights

FICONTER may calculate scores, indicators and insights from information in a user's workspace to help organise and explain that user's financial position. These functions are informational product features. They are not intended to make legally binding decisions about a person or to determine access to credit, insurance, employment or another comparable service.

11. Changes to this notice

This policy will be updated when FICONTER's legal operator details, infrastructure, paid subscriptions, processing purposes or material product features change. The current version will remain available from the public footer.

Last updated: 7 September 2026