Privacy Policy
The essentials about your data and rights.
Last updated: 14 September 2026
1. Who is responsible for your data
The controller is Möbel Montage Dienst, proprietor Justyna Pelczarska, Rekumer Str. 160, 28777 Bremen, Germany. Contact: info@mmd-kuechen.de or +49 1575 7958211.
2. What we use your data for
We use contact details, correspondence, attachments and order information to answer enquiries, prepare quotes and arrange services. The legal basis is Article 6(1)(b) GDPR. Required form fields are needed to answer your enquiry; other details are optional.
Technical data, including your IP address and browser information, help operate and protect the website. Security and the organisation of customer service are based on our legitimate interests (Article 6(1)(f) GDPR). Cloudflare Turnstile protects the contact form.
3. Browser settings and maps
We do not use analytics or advertising cookies. We remember your language and privacy choices so the website works according to your preferences. The language cookie expires after one year; you can delete locally saved settings in your browser.
Google Maps loads only with your consent (Article 6(1)(a) GDPR). Google may then receive technical data and the identifier of a signed-in account. You can withdraw consent through “Manage consent” in the footer. Facebook and WhatsApp links lead to services covered by their providers’ own policies.
4. Who receives data
Initial enquiries are shared with our service team. Once a case is assigned, subsequent messages and attachments are forwarded to its assigned employee’s mailboxes. Authorised staff retain access to the conversation history in the internal panel. Reassignment changes the recipient of future messages. Administrators manage staff mailboxes, and employees can turn email copies on or off. Turning copies off does not change case ownership or the availability of messages in the internal panel. Copies are processed by the providers of the configured staff mailboxes.
Data is available to designated employees and our service providers: Cloudflare — website, security and data storage; Resend — email and attachments; Google — Gmail inboxes and maps; AI service providers — email protection and correspondence translation.
The AI spam filter analyses limited incoming email content under ZDR — without retaining analysis content or using it for model training. ZDR does not cover technical or billing metadata.
At an employee's request, AI also translates the bounded subject and text of a message or reply draft under the same ZDR conditions, without attachments. This supports correspondence handling; an employee reviews the translation before sending. Previews are not separately saved in our database.
Providers may process data outside the EEA, including in the United States. Transfers are subject to appropriate safeguards, such as standard contractual clauses or the EU-US Data Privacy Framework, where applicable. Contact us for information about these safeguards.
5. How long we keep data
- Enquiries and correspondence in our service system — normally 730 days from creation of the case.
- Appointment records — 730 days from the appointment’s end or last update, whichever is later.
- Mailbox copies — up to 24 months after the last contact; email data at Resend — normally 30 days.
- Technical Cloudflare logs — up to 7 days; browser privacy settings — until changed or deleted.
Legal obligations or the protection of legal claims may require longer retention.
6. Your rights
Subject to the GDPR, you can request access, correction, erasure, restriction and portability of your data. You can object to processing based on legitimate interests and withdraw consent for future processing. Contact us — we normally respond within one month.
You can complain to a competent data protection authority, including the Bremen Commissioner for Data Protection and Freedom of Information. We do not use profiling or automated decisions that produce legal or similarly significant effects on individuals.