Privacy Policy

Privacy Policy

Last updated: 18 July 2026

This Privacy Policy explains how personal data is collected, used, stored and protected when you visit tt-integrity.com, create an account, maintain a professional profile, contact us, register for a seminar or purchase products and services.

1. Data Controller

The controller responsible for processing personal data on this website is:

Tibor Kemény
Trading as: TT Integrity
Begonienstr. 29
06122 – Halle (Salle)
Germany

Email: admin@tibortech.com

No data protection officer has been appointed because no statutory appointment obligation currently applies.

2. Scope of This Privacy Policy

This Privacy Policy applies to:

  • the TT Integrity website;
  • registered user accounts;
  • professional B2B profiles;
  • engineering articles and calculators;
  • seminar registrations;
  • purchases of books, e-books and digital resources;
  • WooCommerce checkout, order and download functions;
  • contact and business enquiries.

External websites linked from TT Integrity are governed by their own privacy policies.

3. Legal Bases for Processing

Depending on the purpose, personal data is processed on one or more of the following legal bases:

  • Article 6(1)(a) GDPR — consent;
  • Article 6(1)(b) GDPR — performance of a contract or pre-contractual measures;
  • Article 6(1)(c) GDPR — compliance with a legal obligation;
  • Article 6(1)(f) GDPR — legitimate interests, provided that these interests are not overridden by your rights and freedoms.

Where consent is used as the legal basis, it may be withdrawn at any time with effect for the future. Withdrawal does not affect processing carried out before the withdrawal.

4. Website Hosting and Server Logs

The website is hosted by:

HOSTINGER International Ltd.
61 Lordou Vironos Street, 6023 Larnaca, Cyprus

When the website is accessed, the hosting infrastructure may automatically process technical data including:

  • IP address;
  • date and time of access;
  • requested page or file;
  • referrer URL;
  • browser type and version;
  • operating system;
  • HTTP status code;
  • transferred data volume;
  • server and security log information.

This processing is necessary to deliver the website, maintain system stability, detect technical faults and protect the website against misuse and attacks.

The legal basis is Article 6(1)(f) GDPR. Our legitimate interests are the secure, reliable and efficient operation of the website.

Server logs are retained only for as long as reasonably required for security, troubleshooting and abuse prevention, unless longer retention is necessary to investigate a specific incident or comply with legal requirements.

5. WordPress and JNews

The website uses WordPress as its content management system and JNews as its presentation framework.

WordPress may process technical and account-related information required for:

  • user authentication;
  • account administration;
  • security;
  • saving user preferences;
  • content management;
  • prevention of unauthorised access.

Administrative access is restricted to authorised persons.

6. User Accounts

Users may create an account to access account-related functions, orders, downloads and professional profile features.

The following information may be processed:

  • username;
  • first and last name;
  • display name;
  • email address;
  • encrypted password;
  • account creation date;
  • login and security information;
  • account preferences;
  • order and download entitlements.

The legal basis is Article 6(1)(b) GDPR where the account is needed to provide requested services, products or contractual functions.

Where an account is created voluntarily without an immediate purchase, processing may additionally be based on Article 6(1)(f) GDPR. Our legitimate interest is to provide a controlled professional user environment.

Passwords are not stored in readable form.

7. Professional B2B Profile

Registered users may maintain a professional profile containing information such as:

  • professional headline;
  • job title;
  • employer or professional organisation;
  • department or business function;
  • industry;
  • seniority or responsibility level;
  • years of professional experience;
  • country and city;
  • technical expertise;
  • codes and standards experience;
  • qualifications and certifications;
  • project and asset experience;
  • LinkedIn or professional website links;
  • business contact email;
  • availability for consulting, technical review, training, speaking or collaboration;
  • profile image.

Users control the visibility of their professional profile through the available privacy settings.

Depending on the selected visibility level, profile information may be:

  • publicly visible;
  • visible only to registered users;
  • private.

Users should not include confidential employer information, client information, trade secrets, personal data belonging to third parties or information they are not authorised to disclose.

The legal basis is Article 6(1)(b) GDPR where the profile is part of a requested account service and Article 6(1)(a) GDPR for information that the user voluntarily chooses to publish.

Professional profile information is retained until it is modified or deleted by the user, the account is deleted, or retention is otherwise legally required.

8. WooCommerce, Orders and Purchases

The website uses WooCommerce to operate its shop and account functions.

When you place an order, register for a paid seminar or purchase a book, e-book, downloadable resource or other product, we may process:

  • name;
  • billing address;
  • shipping address;
  • email address;
  • telephone number where required;
  • company name;
  • VAT or tax-related information where applicable;
  • products or services ordered;
  • seminar registration information;
  • order date;
  • order status;
  • payment status;
  • transaction reference;
  • download entitlement and download activity;
  • customer notes;
  • communications related to the order;
  • IP address and technical checkout information.

Processing is necessary to:

  • process and fulfil the order;
  • provide digital downloads;
  • organise seminar participation;
  • deliver physical goods;
  • issue invoices;
  • process payments;
  • provide customer service;
  • handle cancellations, refunds or complaints;
  • comply with tax, accounting and commercial-law requirements.

The legal bases are Article 6(1)(b) GDPR and Article 6(1)(c) GDPR.

WooCommerce provides account and privacy settings through which the website operator can assign the privacy-policy page, display privacy notices at account creation and checkout, and configure retention periods.

9. Payment Processing

Payments are processed through the payment methods displayed during checkout.

Depending on the selected payment method, required order and payment information may be transmitted to:

PAYMENT PROVIDER 1 — PAYPAL
PAYMENT PROVIDER 2 — WOOPAYMENTS

Payment providers process personal data under their own responsibility where they determine the purposes and means of payment processing.

TT Integrity does not receive or store complete credit-card details unless explicitly stated otherwise by the selected payment system.

The legal basis for transmitting payment information is Article 6(1)(b) GDPR.

Information may additionally be processed under Article 6(1)(f) GDPR for fraud prevention, transaction security and the assertion or defence of legal claims.

10. Seminars and Online Events

Where you register for a seminar, webinar or other professional event, we may process:

  • name;
  • company;
  • job title;
  • contact details;
  • billing information;
  • booked event;
  • attendance status;
  • access entitlement;
  • communication relating to the event;
  • submitted questions;
  • certificate information, where applicable.

This information is processed to organise and deliver the event under Article 6(1)(b) GDPR.

Where an external video-conferencing provider is used, the relevant information will be provided during registration or before participation.

Current or planned provider:

ZOOM

Event recordings will not include identifiable participants without appropriate information and, where required, consent.

11. Digital Products and Downloads

For downloadable books, e-books, seminar materials and engineering resources, the website may process:

  • account identity;
  • order information;
  • product entitlement;
  • download URL;
  • date and time of download;
  • IP address;
  • number of download attempts;
  • expiry or access limitations.

This processing is necessary to deliver purchased digital content, protect download links and prevent unauthorised distribution.

The legal basis is Article 6(1)(b) GDPR and, for security and misuse prevention, Article 6(1)(f) GDPR.

12. Contact and Business Enquiries

When you contact TT Integrity by email, contact form or another communication channel, we process the information you provide, which may include:

  • name;
  • email address;
  • company;
  • telephone number;
  • subject of the enquiry;
  • message content;
  • attachments;
  • subsequent correspondence.

Where the enquiry relates to a potential or existing contract, the legal basis is Article 6(1)(b) GDPR.

For general business communication, technical questions or other enquiries, the legal basis is Article 6(1)(f) GDPR. Our legitimate interest is to respond to enquiries and maintain professional business communication.

Messages are retained only for as long as required to handle the enquiry and meet applicable legal retention or evidentiary requirements.

13. Cookies and Similar Technologies

The website uses cookies and similar browser-storage technologies where necessary to operate the website and its functions.

These may include:

Essential website cookies

  • login and authentication cookies;
  • security cookies;
  • language or interface preferences;
  • session cookies;
  • consent-management settings.

WooCommerce cookies

WooCommerce may use cookies to:

  • remember cart contents;
  • determine whether the cart contains products;
  • maintain the customer session;
  • support checkout and account functions.

Typical WooCommerce cookies may include:

  • woocommerce_cart_hash;
  • woocommerce_items_in_cart;
  • wp_woocommerce_session_….

WooCommerce documents that the cookies used depend on the shop features enabled and the user’s interaction with those features.

Essential technologies required to provide a service specifically requested by the user may be used without consent. Storage or access that is not strictly necessary is activated only after valid consent. This distinction follows Section 25 TDDDG.

Consent preferences may be changed or withdrawn at any time through Cookie Settings.

14. Analytics

At present, TT Integrity does not activate non-essential third-party analytics before user consent.

Where an analytics service is introduced later, this section will be updated to identify:

  • the provider;
  • the data collected;
  • cookie names;
  • retention periods;
  • possible international transfers;
  • consent and withdrawal options.

Analytics requiring access to the user’s device will be activated only after consent.

15. Advertising

TT Integrity does not currently use third-party advertising networks or automated behavioural advertising.

The website may display internal notices concerning TT Integrity articles, calculators, seminars, products, newsletters or professional services. These internal notices do not involve disclosure of personal data to advertising networks.

Any future sponsored content will be clearly identified.

16. Embedded Media and External Content

Articles may contain embedded or linked content such as:

  • YouTube videos;
  • technical publications;
  • LinkedIn content;
  • external diagrams;
  • standards-related resources;
  • third-party websites.

Where technically possible, external content requiring third-party connections will be blocked until the user gives consent or actively requests that the content be loaded.

Once external content is activated, the third-party provider may receive technical information such as the IP address, browser information, referring page and interaction data.

The respective third-party provider is responsible for its own processing activities.

17. Recipients and Processors

Personal data is disclosed only where necessary.

Potential recipients include:

  • website and hosting providers;
  • IT maintenance and security service providers;
  • payment processors;
  • banks;
  • WooCommerce-related service providers;
  • email and communication providers;
  • seminar and video-conferencing providers;
  • shipping and fulfilment providers;
  • accounting and tax advisers;
  • legal advisers;
  • public authorities where legally required.

Processors acting on our behalf are contractually required to process personal data only according to documented instructions and applicable data-protection requirements.

18. International Data Transfers

Where service providers process personal data outside the European Economic Area, transfers are made only where a valid transfer mechanism is available.

Depending on the provider, this may include:

  • an adequacy decision;
  • EU Standard Contractual Clauses;
  • supplementary technical or organisational safeguards;
  • another transfer mechanism permitted under the GDPR.

The specific transfer arrangements depend on the service provider used.

19. Retention Periods

Personal data is retained only for as long as necessary for the purpose for which it was collected.

Typical criteria include:

  • account data: until account deletion or termination;
  • professional profile data: until deletion or account closure;
  • enquiries: until final resolution and expiry of relevant limitation periods;
  • seminar data: until the event has been completed and contractual obligations have been fulfilled;
  • download data: for the duration of the relevant access entitlement and security requirements;
  • order, invoice, payment and accounting information: for the legally required retention period.

German commercial and tax law applies different retention periods depending on the category of document. Relevant business records may need to be retained for six, eight or ten years.

Data required to comply with legal retention obligations is restricted from ordinary use and deleted after the applicable period expires.

20. Account Deletion and Data Erasure

Users may request deletion of their account and professional profile.

Account deletion does not necessarily result in the immediate deletion of:

  • invoices;
  • order records;
  • payment documentation;
  • tax records;
  • records required for legal claims;
  • data subject to statutory retention requirements.

Such information will be restricted and retained only for the legally required purpose.

WordPress provides administrative tools for exporting and erasing personal data submitted through verified requests.

21. Your Data Protection Rights

Subject to the applicable legal conditions, you have the right to:

  • obtain information about personal data processed about you;
  • request correction of inaccurate data;
  • request completion of incomplete data;
  • request deletion of personal data;
  • request restriction of processing;
  • receive data you provided in a structured, commonly used and machine-readable format;
  • object to processing based on legitimate interests;
  • withdraw consent with effect for the future;
  • lodge a complaint with a supervisory authority.

Where processing is based on Article 6(1)(f) GDPR, you may object on grounds relating to your particular situation.

Where personal data is processed for direct marketing, you may object at any time without providing specific grounds. GDPR data-subject rights and the right to lodge a complaint are set out principally in Articles 15–21 and Article 77 GDPR.

Requests may be sent to:

admin@tibortech.com

We may request reasonable information to verify the identity of the person making the request.

22. Right to Lodge a Complaint

You have the right to lodge a complaint with a competent data-protection supervisory authority.

Where the controller is established in Saxony-Anhalt, the competent supervisory authority is:

Landesbeauftragte für den Datenschutz Sachsen-Anhalt
Otto-von-Guericke-Straße 34a
39104 Magdeburg
Germany

Telephone: +49 391 81803-0

The Saxony-Anhalt authority states that it is locally competent where the controller’s establishment—or, for a private individual, residence—is located in Saxony-Anhalt.

You may also contact another supervisory authority, particularly in the EU Member State of your habitual residence, place of work or the place of the alleged infringement.

23. Automated Decision-Making

TT Integrity does not currently use solely automated decision-making, including profiling, that produces legal effects or similarly significant effects on users.

24. Security

Appropriate technical and organisational measures are used to protect personal data against:

  • unauthorised access;
  • loss;
  • alteration;
  • disclosure;
  • destruction;
  • misuse.

These measures may include encrypted transmission, access controls, system updates, backups, role-based permissions and security monitoring.

No online system can guarantee absolute security.

25. Changes to This Privacy Policy

This Privacy Policy may be updated where:

  • website functions change;
  • new service providers are introduced;
  • payment or seminar systems change;
  • legal requirements change;
  • new processing activities are introduced.

The current version is published on this page together with its revision date.