20% promotional discount with the voucher code DQ4ACADEMY24 on
Remote Pilot Certificate A2 & BOS Knowledge for Remote Pilots

Privacy

 

1. general

The protection of your personal data is a high priority for Droniq GmbH. It is important to us to inform you about what personal data we collect during your visit to our website, how it is used and what options you have. This data protection notice provides you with answers to the most important questions.

2. legal basis

Art. 6 para. 1a, b and f of the General Data Protection Regulation (GDPR) is the legal basis for the processing and protection of personal data. The specific legal bases are listed individually in the respective chapters.

3. what data is collected and how is it used?

Your data will not be used for automated decision-making, including profiling (Art. 22 GDPR).
You can register to receive information and withdraw your consent by sending an email to info@droniq.de.

 

3.1 For the provision of our website services

Personal data
Personal data, such as your name, address, telephone number or e-mail address, is not collected unless you explicitly provide this information, for example in web forms. We delete the data collected in this context after storage is no longer required, or restrict processing if there are statutory retention obligations.
Registration may be required to use individual services on our website. This also applies if you wish to receive up-to-date information from us in future, e.g. on events, current studies, services, product information, etc. Your consent is required for this. Your consent is required for this. Your personal data will be processed on the basis of your consent in accordance with Art. 6 para. 1a of the GDPR. You can revoke your consent at any time by sending an email to info@droniq.de.

We use Typeform (https://www.typeform.com) for this purpose.

E-Mail Newsletter
With your consent, you can subscribe to our newsletter, with which we inform you about current topics. We use the so-called double opt-in procedure to subscribe to our newsletters. This means that after you have registered, we will send you an e-mail to the specified e-mail address in which we ask you to confirm that you wish to receive the newsletter. If you do not confirm your registration within 48 hours, your information will be blocked and automatically deleted after one week. In addition, we store the IP addresses you use and the times of registration and confirmation. The purpose of this procedure is to prove your registration and, if necessary, to be able to clarify any possible misuse of your personal data. The legal basis is Art. 6 para. 1 sentence 1a GDPR.
Further data is not collected or is only collected on a voluntary basis. We use this data exclusively for sending the requested information and do not pass it on to third parties.
You can revoke your consent to receive the newsletter at any time and unsubscribe from the newsletter. You can declare your revocation by clicking on the link provided in every newsletter e-mail, via the website (www.droniq.de), by e-mail info@droniq.de or by sending a message to the contact details given in the imprint. The legality of the data processing operations that have already taken place remains unaffected by the revocation.
After you unsubscribe from the newsletter distribution list, your e-mail address may be stored by us or the newsletter service provider in a blacklist to prevent future mailings. The data from the blacklist will only be used for this purpose and will not be merged with other data. This serves both your interest and our interest in complying with the legal requirements when sending newsletters (legitimate interest within the meaning of Art. 6 para. 1f GDPR). Storage in the blacklist is not limited in time.
You can object to the storage if your interests outweigh our legitimate interest.
To send our newsletter, we use the service of Campaign Monitor: Campaign Monitor Holdings (UK) Limited (UK Company Number 09446000), Northern and Shell Building, 10 Lower Thames Street, London, United Kingdom. Campaign Monitor is a service that can be used to organize and analyze the sending of newsletters, among other things.
With the help of Campaign Monitor we can analyze our newsletter campaigns. When you open an email sent with Campaign Monitor, a file contained in the email (known as a web beacon) connects to the Campaign Monitor servers. This makes it possible to determine whether a newsletter message has been opened and which links, if any, have been clicked on. This information cannot be assigned to the respective newsletter recipient. It is used exclusively for the statistical analysis of newsletter campaigns. The results of these analyses can be used to better adapt future newsletters to the interests of the recipients.

Server log files
You can visit our website without providing any personal information. Every time you access our website, usage data is transmitted by your Internet browser and stored in log data (server log files). This stored data includes, for example, the name of the page accessed, the date and time of access, the amount of data transferred and the requesting provider. This data is used exclusively to ensure the trouble-free operation of our website and to improve our offer. It is not possible to assign this data to a specific person. They are neither used to create individual user profiles nor passed on to third parties and are deleted after seven days at the latest.

Session cookies
These are cookies that are only stored on your computer for the duration of an Internet session. They are technically necessary. The basis is Art. 6 para. 1b of the General Data Protection Regulation (GDPR).

Persistent cookies
We also use other cookies to improve our website, the use of which you can consent to. You can find more details on this in section 7. Please note, however, that if you do not consent to the use of cookies, you may not be able to use all the functions of our website.

 

3.2 For applications

Applicant data is stored until the application process is completed and ends if the applicant or Droniq rejects the application. You can revoke your consent at any time, whereby the data will be deleted for all purposes or for specific purposes, depending on the content of your revocation.

 

3.3 For the purchase of services

Processing of orders
If you register on our website for a service that requires registration or for future information, personal data will be stored in our Customer Relationship Management System (CRM) after the consent procedure has been completed.
The personal data is used as part of the contract creation, billing and servicing of the services purchased by you in accordance with Art. 6 para. 1b of the General Data Protection Regulation (GDPR). The data will be deleted after completion of the warranty obligations or termination of the contract with you after 10 years at the latest. Due to our services, there may be legal and regulatory requirements, including product liability, warranties, recalls, etc. for longer-term personal data storage.

Use of the online store
The Droniq online store is operated by the service provider Shopify International Limited (Shopify).
Shopify collects your name, e-mail address, delivery and billing address, payment details, company name, telephone number, IP address, information about your outgoing orders, information about the merchant stores supported by Shopify that you visit, as well as information about the device and browser used.
Shopify uses this information to provide us with services. This also includes support and processing of orders, risk and fraud checks, authentication and payments. Shopify also uses this information to improve our services.
When you sign up for Shop Pay, Shopify stores and uses this information to pre-fill the checkout information. Shopify also uses this information to improve your visit to the websites by presenting you with goods and services that may be of interest to you.
Some of the personal data that you send to Shopify is used by Shopify to make automated decisions to a certain extent (e.g. IP addresses or payment data) so that certain potentially fraudulent transactions are automatically blocked for a short period of time. Further information on Shopify's data protection can be found at https://www.shopify.de/legal/datenschutz or directly from Shopify:

Shopify International Limited
Attn: Data Protection Officer
c/o Intertrust Ireland
2nd Floor 1-2 Victoria Buildings
Haddington Road
Dublin 4, D04 XN32
Ireland
E-mail: hilfe@shopify.de

External payment service providers
We use Shopify Payment as our payment service provider. As part of the ordering process, the information provided by the user together with the information about the order (name, address, account number, bank code, credit card number if applicable, invoice amount, currency and transaction number) is passed on to the payment service provider selected by the user in accordance with Art. 6 para. 1b GDPR. The data is passed on exclusively for the purpose of payment processing with the payment service provider and only to the extent necessary for this purpose. The processing of the data can be objected to at any time by sending a message to the payment service provider. The respective privacy policies and contact details of the payment service providers can be found in the following list:

Shopify International Limited
Attn: Data Protection Officer
c/o Intertrust Ireland
2nd Floor 1-2 Victoria Buildings
Haddington Road
Dublin 4, D04 XN32
Ireland
E-mail: hilfe@shopify.de

When using the contact form, these can also be viewed in the backend by the provider WordPress. Their privacy policy can be viewed on their website:
https://automattic.com/de/Privacy/

 

3.4 Use of data for Droniq online user management and the associated cloud services

As part of the provision of our services, we use the Identitfy Manager Keycloack (https://www.keycloak.org/) service, which is operated by intension GmbH (https://www.intension.de/datenschutz/).
Keycloak is a Java-based open source software that serves as an Identity and Access Management (IAM) system. It enables the administration of users, roles and authorizations as well as the secure authentication and authorization of applications. The user's personal data is passed on to the connected systems in pseudonymized form so that these systems do not store any of the user's personal data.

Purpose of data collection
The data is collected and processed for the following purposes:

  • Uniform user management across all Droniq services, Trax, BOS, over-the-air update use for selected hardware
  • Secure storage of our customers' user data
  • Improved user-friendliness through a single sign-on connection
  • Pseudonymized dissemination of data for connected services leads to an increase in data security

The legal basis is Art. 6 para. 1b DSGVO.

Type of data that is collected
When using Droniq User Management, it is necessary to provide personal data. The following data is collected for the above-mentioned purposes:

  • Surname, first name and e-mail of the user
  • Password of the user
  • Information about the use of the app or website, including browser type and version, IP address and date/time of login

Access to the data / recipients
Only Droniq GmbH has access to the data. The data does not leave the European Economic Area (EEA). The use of the data is necessary for the provision of the services.

Technical and organizational measures for the protection of personal data (TOMS)
We secure your data using state-of-the-art technology. Among other things, we use the following security measures to protect your personal data against misuse or other forms of unauthorized processing:

  • access to personal data is restricted to a limited number of authorized persons and to specific purposes;
  • the data is only transmitted in encrypted form, e.g. "https:...";
  • the data is stored in encrypted form;
  • the IT systems used for data processing are technically separated from the other systems in order to prevent unauthorized access, for example through hacking;
  • Access to the systems is continuously monitored in order to detect and report any misuse at an early stage.

The legal basis is Articles 25 and 32 of the GDPR.

 

3.5 Use of the data for the UTM

As part of the provision of our UTM services (UTM-Unmanned aircraft system Traffic Management), we use the services of DFS Deutsche Flugsicherung GmbH. As part of this service provision, we transmit the data required to perform the services to the service providers.

Purpose of data collection
The data is collected and processed for the following purposes:

  • Promote safety and traffic management,
  • Generating security awareness,
  • Understanding traffic situations,
  • Support safe drone flight through validation support for drone ascents.

The legal basis is Art. 6 para. 1b DSGVO.

Type of data that is collected
The creation of a personal account is required for the use of some functions. The following data is collected for the above-mentioned purposes:

  • Surname, first name and e-mail address of the user (pseudonym possible)
  • Parameters of the drone (manufacturer, name, type), if these were specified
  • Log files of flight events with the drone (name of the drone, start location, start date, start time, duration), if flights are planned
  • Settings as part of the service provision (language setting in German or English, geo-coordinates for the provision of warning services, voice output for warnings)
  • Information about the use of the website, including browser type and version, IP address and date/time of login
  • Use of geolocation: Based on your consent, the geolocation API of your internet browser/device is used. If you use a device with GPS support, the current location can be determined more precisely with the help of the GPS module. The collection and use of your location data by means of the geolocation API of your internet browser only takes place if you initiate a localization by clicking on it. This data is used to align the map display and mark your location on it. You can deactivate this functionality at any time on the end device or in the browser.

For the use of some functionalities, the user can add voluntary information in accordance with Art. 6 para. 1a GDPR. This does not apply to "non-registered users":

  • Phone number
  • Date of birth
  • Address (street, zip code, town)
  • IMSI (International Mobile Subscriber Identifier)
  • Remote ID identifier
  • Call Sign
  • Details of the vehicle type

The data provided during registration may be pseudonyms and will not be verified. Therefore, no personal reference can be established.

Integration of maps from BKG
We optionally use the BKG offer for the service. This allows us to show you the visualization with the use of the BKG map function.

By using the service, BKG receives the information that you have accessed the corresponding website. In addition, the coordinates of the current map section - and thus the user's location - are transmitted for the technical function.

Access to the data / recipients
Only Droniq GmbH and DFS Deutsche Flugsicherung GmbH have access to the data. The companies are contractually obliged to use the data exclusively within the scope of fulfilling the contract with DFS. The data does not leave the European Economic Area (EEA). The use of the data is necessary for the provision of the services.

Technical and organizational measures for the protection of personal data (TOMS)
We secure your data using state-of-the-art technology. Among other things, we use the following security measures to protect your personal data against misuse or other forms of unauthorized processing:

  • access to personal data is restricted to a limited number of authorized persons and to specific purposes
  • the data is only transmitted in encrypted form, e.g. "https:..."
  • the data is stored in encrypted form
  • the IT systems used for data processing are technically separated from the other systems in order to prevent unauthorized access, for example through hacking
  • Access to the systems is continuously monitored so that any misuse can be detected and reported at an early stage

The legal basis is Articles 25 and 32 of the GDPR.

 

3.6 Use of the data for the Droniq app

As part of the provision of our UTM services as an essential component of the app, we use the services of DFS and Unifly. As part of this service provision, we transmit the data required to perform the services to the service providers. We also use the map services of OpenStreetMap Deutschland (https://openstreetmap.de/) and MapBox (https://www.mapbox.com/maps).

Purpose of data collection
The data is collected and processed for the following purposes:

  • Promoting safety and traffic management
  • Creating safety awareness
  • Understanding traffic situations
  • Support for safe drone flight through validation support for drone ascents

The legal basis is Art. 6 para. 1b DSGVO.

In addition, registered users can provide voluntary data on the legal basis of Art. 6 para. 1a GDPR.

Type of data that is collected
The creation of a personal account is required for the use of some functions. The following data is collected for the above-mentioned purposes:

  • Surname, first name and e-mail address of the user (pseudonym possible)
  • Parameters of the drone (manufacturer, name, type), if these were specified
  • Settings as part of the service provision (language setting in German or English, geo-coordinates for the provision of warning services, voice output for warnings)
  • Log files of flight events with the drone (name of the drone, start location, start date, start time, duration), if flights are planned
  • Information about the use of the app, including device type and version, IP address and date/time of login
  • Use of geolocation: Based on your consent, the geolocation API of your internet browser/device is used. If you use a device with GPS support, the current location can be determined more precisely with the help of the GPS module. The collection and use of your location data by means of the geolocation API of your internet browser only takes place if you initiate a localization by clicking on it. This data is used to align the map display and mark your location on it. You can deactivate this functionality at any time on the end device or in the browser.

For the use of some functionalities, the user can add voluntary information in accordance with Art. 6 para. 1a GDPR. This does not apply to "non-registered users":

  • Phone number
  • Date of birth
  • Address (street, zip code, town)
  • IMSI (International Mobile Subscriber Identifier)
  • Remote ID identifier
  • Call Sign
  • Details of the vehicle type

The data provided during registration may be pseudonyms and will not be verified. Therefore, no personal reference can be established.

Integration of OpenStreetmap maps and Mapbox
For the service we optionally use the offer of OpenStreetMap and MapBox. This allows us to show you the visualization using the map function. (https://openstreetmap.de/; https://www.mapbox.com/maps)

By using the service, OpenStreetMap and or Mapbox receive the information that you have accessed the corresponding services. In addition, the coordinates of the current map section - and thus the user's location - are transmitted for the technical function.

Access to the data / recipients
Only Droniq GmbH and DFS Deutsche Flugsicherung GmbH have access to the data. The companies are contractually obliged to use the data exclusively within the scope of fulfilling the contract with DFS. The data does not leave the European Economic Area (EEA). The use of the data is necessary for the provision of the services.

Technical and organizational measures for the protection of personal data (TOMs)
We secure your data using state-of-the-art technology. Among other things, we use the following security measures to protect your personal data against misuse or other forms of unauthorized processing:

  • access to personal data is restricted to a limited number of authorized persons and to specific purposes
  • the data is only transmitted in encrypted form, e.g. "https:..."
  • the data is stored in encrypted form
  • the IT systems used for data processing are technically separated from the other systems in order to prevent unauthorized access, for example through hacking
  • Access to the systems is continuously monitored so that any misuse can be detected and reported at an early stage

The legal basis is Articles 25 and 32 of the GDPR.

 

3.7 Use of the data for the Trackviewer

As part of the provision of our services, we use the services of DFS Deutsche Flugsicherung GmbH. As part of this service provision, we transmit the data required to perform the services to the service providers. In addition, the services of the map service of the Federal Agency for Cartography and Geodesy (BKG) are used for the presentation.

Purpose of data collection
The data is collected and processed for the following purposes:

  • Promote safety and traffic management,
  • Generating security awareness,
  • Understanding traffic situations,
  • Required for billing the service,
  • Required to ensure the Droniq T&Cs.

The legal basis is Art. 6 para. 1b DSGVO.

Type of data that is collected
The creation of a personal account is required for the use of some functions. The following data is collected for the above-mentioned purposes:

  • Name, first name, e-mail, company/club/affiliation, address, area of operation, HOD (Hook-on-Devices) IDs, HOD-IMSI and HOD version of the user,
  • Log files of flight events with the drone (name of the drone, start location, start date, start time, duration), if flights are planned
  • Information about the use of the website, including browser type and version, IP address and date/time of use.
  • Use of geolocation: Based on your consent, the geolocation API of your internet browser/device is used. If you use a device with GPS support, the current location can be determined more precisely with the help of the GPS module. The collection and use of your location data by means of the geolocation API of your internet browser only takes place if you initiate a localization by clicking on it. This data is used to align the map display and mark your location on it. You can deactivate this functionality at any time on the end device or in the browser.

Integration of maps from BKG
We optionally use the BKG offer for the service. This allows us to show you the visualization with the use of the BKG map function.
By using the service, BKG receives the information that you have accessed the corresponding website. In addition, the coordinates of the current map section - and thus the user's location - are transmitted for the technical function.

Server log files
Every time you access our website, usage data is transmitted by your Internet browser and stored in log data (server log files). This stored data includes, for example, the name of the page accessed, the date and time of access, the amount of data transferred and the requesting provider. This data is used to ensure the trouble-free operation of our service, to improve our offer and for billing and compliance with the terms and conditions. It is possible to assign this data to a specific person. They are not passed on to third parties and are stored anonymously after the end of the contractual relationship with Droniq GmbH.

Session cookies
These are cookies that are only stored on your computer for the duration of an Internet session. They are technically necessary.

Access to the data / recipients
Only Droniq GmbH and DFS Deutsche Flugsicherung GmbH have access to the data. The companies are contractually obliged to use the data exclusively within the scope of fulfilling the contract with DFS. The data does not leave the European Economic Area (EEA). The use of the data is necessary for the provision of the service.

Technical and organizational measures for the protection of personal data (TOMs)
We secure your data using state-of-the-art technology. Among other things, we use the following security measures to protect your personal data against misuse or other forms of unauthorized processing:

  • access to personal data is restricted to a limited number of authorized persons and to specific purposes
  • the data is only transmitted in encrypted form, e.g. "https:..."
  • the data is stored in encrypted form
  • the IT systems used for data processing are technically separated from the other systems in order to prevent unauthorized access, for example through hacking
  • Access to the systems is continuously monitored so that any misuse can be detected and reported at an early stage

The legal basis is Articles 25 and 32 of the GDPR.

3.8 Use of data for Droniq Online Services

As part of the provision of our services for tracking, remote ID identification and warnings, we also use the services of DFS Deutsche Flugsicherung GmbH. As part of this service provision, we transmit the data required to perform the services to the service providers. We also use the map services of OpenStreetMap Deutschland (https://openstreetmap.de/), OpenTopoMap (https://opentopomap.org/about) and Carto (https://carto.com/about-us).

Purpose of data collection
The data is collected and processed for the following purposes:

  • Promoting safety and traffic management
  • Creating safety awareness
  • Understanding traffic situations
  • Required for billing the service
  • Required for securing the Droniq GTCs

The legal basis is Art. 6 para. 1b DSGVO.

Type of data that is collected
The creation of a personal account is required for the use of some functions, see section 3.4. In addition, other necessary data is collected in the individual applications for the above-mentioned purposes:

  • Area of operation, HOD (Hook-on-Devices) IDs, HOD-IMSI and HOD version of the user
  • Parameters of the drone (manufacturer, name, type), if these were specified
  • Settings as part of the service provision for the respective applications (language setting in German or English, geo-coordinates for the provision of warning services, voice output for warnings)
  • Use of geolocation: Based on your consent, the geolocation API of your internet browser/device is used. If you use a device with GPS support, the current location can be determined more precisely with the help of the GPS module. The collection and use of your location data by means of the geolocation API of your internet browser only takes place if you initiate a localization by clicking on it. This data is used to align the map display and mark your location on it. You can deactivate this functionality at any time on the end device or in the browser

Integration of OpenStreetmap maps, Opentopomap and CARTO
For the service we optionally use the offers of OpenStreetMap, Carto and MapBox. This allows us to show you the visualization with the use of the map function. (https://openstreetmap.de/; https://opentopomap.org/about; https://carto.com/about-us)

By using the service, OpenStreetMap and or Carto and or Mapbox receives the information that you have accessed the corresponding services. In addition, the coordinates of the current map section - and thus the user's location - are transmitted for the technical function.

Server log files
Every time you access our website, usage data is transmitted by your Internet browser and stored in log data (server log files). This stored data includes, for example, the name of the page accessed, the date and time of access, the amount of data transferred and the requesting provider. This data is used to ensure the trouble-free operation of our service, to improve our offer, for billing purposes and to comply with the terms and conditions. It is possible to assign this data to a specific person. They are not passed on to third parties and are stored anonymously after the end of the contractual relationship with Droniq.

Session cookies
These are cookies that are only stored on your computer for the duration of an Internet session. They are technically necessary.

Access to the data / recipients
Only Droniq GmbH has access to the data. The data does not leave the European Economic Area (EEA). The use of the data is necessary for the provision of the services.

Technical and organizational measures for the protection of personal data (TOMs)
We secure your data using state-of-the-art technology. Among other things, we use the following security measures to protect your personal data against misuse or other forms of unauthorized processing:

  • access to personal data is restricted to a limited number of authorized persons and to specific purposes
  • the data is only transmitted in encrypted form, e.g. "https:..."
  • the data is stored in encrypted form
  • the IT systems used for data processing are technically separated from the other systems in order to prevent unauthorized access, for example through hacking
  • Access to the systems is continuously monitored so that any misuse can be detected and reported at an early stage

The legal basis is Articles 25 and 32 of the GDPR.

3.9 Use of data for the Droniq Academy

As part of the provision of our Academy services, we use the services of Chemmedia GmbH (https://www.chemmedia.de/) and Aviationexam s.r.o. (https://www.aviationexam.com). As part of this service provision, we transmit to the service providers the data required to perform the services or the data is collected by the user on the web services of our service providers. In addition, the data required for examinations is collected and made available to the Federal Office of Civil Aviation in accordance with the documentation specified by the Federal Office of Civil Aviation for examination centers for remote pilots.

Purpose of data collection
The data is collected and processed for the following purposes:

  • Use of the Learning Management Tool
  • Registration and conduct of examinations
  • Use of an online examination supervisor
  • Invoicing
  • Registration of the remote pilot certificate with the Federal Aviation Office
  • Identity verification of the participant during exams

The legal basis is Art. 6 para. 1b GDPR and Art. 6 para. 1c GDPR.

Type of data that is collected
The creation of a personal account is required for the use of some functions. The following data is collected for the above-mentioned purposes:

  • Name, first name, street, house number, postal code, city, country, e-mail address
  • Date of birth
  • Reporting test center for remote pilots (PStF) and its registration number
  • ID number EU certificate of competence A1A3
  • Theory exam date
  • Audit result in %
  • Period of validity of identity card or passport
  • Upload copy (photo file) identity card or passport (blackened - only the identity features (name, address, photo).
  • For minors: Details of the legal representatives (surname, first name, date of birth) and the consent given by the legal representatives.
  • Information about the use of the website, including browser type and version, IP address and date/time of login
  • Video, screen, and audio recordings when using the online exam.

Access to the data / recipients
Only Droniq GmbH and the Luftfahrt-Bundesamt have access to the data. Droniq and the Luftfahrt-Bundesamt are obliged to use the data exclusively within the scope of the fulfillment of the contract. The data will not leave the European Economic Area (EEA). The use of the data is necessary for the provision of the services.

Technical and organizational measures for the protection of personal data (TOMs)
We secure your data using state-of-the-art technology. Among other things, we use the following security measures to protect your personal data against misuse or other forms of unauthorized processing:

  • access to personal data is restricted to a limited number of authorized persons and to specific purposes
  • the data is only transmitted in encrypted form, e.g. "https:..."
  • the data is stored in encrypted form
  • the IT systems used for data processing are technically separated from the other systems in order to prevent unauthorized access, for example through hacking
  • Access to the systems is continuously monitored so that any misuse can be detected and reported at an early stage

The legal basis is Art. 25 and 32 of the GDPR.

The respective privacy policies and contact options of the service providers can be found in the following list:

Shopify International Limited
Attn: Data Protection Officer
c/o Intertrust Ireland
2nd Floor 1-2 Victoria Buildings
Haddington Road
Dublin 4, D04 XN32
Ireland
E-mail: hilfe@shopify.de

Chemmedia AG
Parkstrasse 35
09120 Chemnitz
E-Mail: info@chemmedia.de

Aviationsexam s.r.o.
Kovarova 39/23
155 00 Praha 5
Czech Republic
E-mail: support@aviationexam.com

4. how long will my data be stored?

We process and store your personal data as long as this is necessary for the fulfillment of our contractual and legal obligations and the purpose of the processing exists. If the data is no longer required for the fulfillment of contractual or legal obligations or if the purpose of data storage no longer applies, it will be deleted in accordance with regulatory requirements, unless its - temporary - further processing is necessary for the following purposes:

  • Fulfillment of retention obligations under commercial and tax law, which may arise, for example, from the German Commercial Code and Fiscal Code. The retention and documentation periods specified there are generally 2-10 years.
  • All personal data stored as part of Academy services is stored for 5 years. This corresponds to the validity of the remote pilot certificate.
  • Preservation of evidence within the framework of the statutory limitation periods. According to §§ 195 ff. of the German Civil Code, these limitation periods can be up to 30 years, whereby the regular limitation period is 3 years.

5. where will my data be processed?

The actual data processing, unless a specific regulation is listed in this privacy policy, takes place within the EU. The websites are operated by Mittwald CM Service GmbH & Co. KG in Germany. The webshop is hosted by Shopify International Limited on servers outside the EU, in Canada. The provider is subject to the Canadian Data Protection Act (PIPEDA) which has been declared adequate by the European Commission.

In certain cases, we are legally obliged to transmit data to a requesting government agency.

6. how secure is my data?

Droniq GmbH uses technical and organizational means to protect your personal data from access and misuse. We keep these security precautions up to date in line with technological developments and in accordance with the relevant legal provisions.

7. when do I have to consent to the privacy policy?

For the use of some functionalities, the user can add voluntary information in accordance with Art. 6 para. 1a GDPR. Only registered users can enter this data in the UTM and Droniq App services. If you wish to use this service, you must consent to the privacy policy. By clicking on "I have read the privacy policy", you agree that certain information can be provided voluntarily as part of user management. You can object to the privacy policy at any time with effect for the future. This means that you can only use the services with the basic functionalities if this basic service is available - it may mean that a fee-based service is no longer available.

8. is my usage behavior evaluated?

Within the framework of legal regulations, we, or companies commissioned by us, create user profiles under a pseudonym in order to analyze and regularly improve the use of our website.
This constitutes a legitimate interest within the meaning of Art. 6 para. 1f GDPR. If other legal bases are applied in the following procedures listed in section 7 or the aforementioned legal basis (Art. 6 para. 1f GDPR) applies, this is noted at the appropriate point. It is not possible to draw any direct conclusions about you. The profile data is not linked to any other information about you personally. Below we inform you about the procedures used on our websites and how you can object at any time.

8.1 Cookies

Our website uses cookies. Cookies are small text files that are stored in the Internet browser or by the Internet browser on the user's computer system. When a user accesses a website, a cookie may be stored on the user's operating system. This cookie contains a characteristic string of characters that enables the browser to be uniquely identified when the website is called up again. We use these cookies to make our website more user-friendly, effective and secure. Furthermore, cookies enable our systems to recognize your browser even after a page change and to offer you services. Some functions of our website cannot be offered without the use of cookies. For these it is necessary that the browser is recognized even after a page change.

The processing is carried out on the basis of Art. 6 para. 1f GDPR from our predominantly legitimate interest in ensuring the optimal functionality of the website as well as a user-friendly and effective design of our offer. Cookies are stored on your computer. You therefore have full control over the use of cookies. By selecting the appropriate technical settings in your Internet browser, you can be notified before cookies are set and decide whether to accept them individually and prevent the storage of cookies and transmission of the data they contain. Cookies that have already been saved can be deleted at any time. However, we would like to point out that you may then not be able to use all the functions of this website to their full extent, such as the contact form.
You can find out how to manage (including deactivating) cookies in the most important browsers by clicking on the links below:

  • Chrome Browser: https://support.google.com/accounts/answer/61416?hl=de
  • Internet Explorer: https://support.microsoft.com/de-de/help/17442/windows-internet-explorer-delete-manage-cookies
  • Mozilla Firefox: https://support.mozilla.org/de/kb/cookies-erlauben-und-ablehnen
  • Safari: https://support.apple.com/de-de/guide/safari/manage-cookies-and-website-data-sfri11471/mac

You can change the cookie settings in your browser settings at any time.

Use of the Google Tag Manager
On our website, we use the Google Tag Manager of Google LLC. (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; "Google") on our website. If you have your habitual residence in the European Economic Area or Switzerland, Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) is the controller responsible for your data. Google Ireland Limited is therefore the company affiliated with Google which is responsible for the processing of your data and compliance with the applicable data protection laws. This application is used to manage JavaScript tags and HTML tags that are used to implement tracking and analysis tools in particular. Data processing serves the purpose of designing and optimizing our website in line with requirements. The Google Tag Manager itself neither stores cookies nor does it process personal data. However, it enables the triggering of other tags that can collect and process personal data. You can find more information on terms of use and data protection at https://www.google.com/intl/de/tagmanager/use-policy.html.

Use of Google Analytics
On our website, we use the web analysis service Google Analytics from Google LLC. (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; "Google"). If you have your habitual residence in the European Economic Area or Switzerland, Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) is the controller responsible for your data. Google Ireland Limited is therefore the company affiliated with Google that is responsible for processing your data and complying with the applicable data protection laws. The data processing serves the purpose of analyzing this website and its visitors as well as for marketing and advertising purposes. For this purpose, Google will use the information obtained on behalf of the operator of this website to evaluate your use of the website, to compile reports on website activity and to provide the website operator with other services relating to website activity and internet usage. The following information may be collected: IP address, date and time of the page view, click path, information about the browser you are using and the device you are using, pages visited, referrer URL (website from which you accessed our website), location data, purchase activities. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. Google Analytics uses technologies such as cookies, web storage in the browser and tracking pixels that enable your use of the website to be analyzed. The information generated about your use of this website is usually transmitted to a Google server in the USA and stored there. IP anonymization is activated on this website. As a result, your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. Google has certified itself in accordance with the US-EU data protection agreement "TADPF" (dataprivacyframework.gov) and is therefore obliged to comply with European data protection guidelines. Data processing, in particular the setting of cookies, is carried out with your consent on the basis of Art. 6 para. 1a GDPR. You can withdraw your consent at any time without affecting the lawfulness of processing based on consent before its withdrawal. You can find more information on terms of use and data protection at https://marketingplatform.google.com/about/analytics/terms/de/ or at https://www.google.de/intl/de/policies/ and at https://policies.google.com/technologies/cookies?hl=de.

Use of Google Web Fonts
We use so-called web fonts provided by Google Ireland Limited on our websites for the uniform display of fonts. When you access a website, your browser loads the required web fonts into your browser cache in order to display texts and fonts correctly.
For this purpose, the browser you are using must connect to Google's servers. This informs Google that our website has been accessed via your IP address. When using Google Fonts, no cookies are sent to the Google Fonts API. Likewise, no Google account data is sent to Google if you have a Google account. Google only records the use of CSS and the fonts used and stores this data securely. You can find out more at https://developers.google.com/fonts/faq.
The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online offers. If your browser does not support web fonts, a standard font will be used by your computer

8.2 Plug-ins and integration of external services

Use of Google invisible reCAPTCHA
We use the invisible reCAPTCHA service of Google Inc (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; "Google") on our website. This serves the purpose of distinguishing the input by a human or by automated, machine processing. In the background, Google collects and analyzes usage data that is used by Invisible reCAPTCHA to distinguish regular users from bots. For this purpose, your input is transmitted to Google and used there. In addition, the IP address and any other data required by Google for the Invisible reCAPTCHA service will be transmitted to Google. This data is processed by Google within the European Union and possibly also in the USA. For data processing in the USA, Google has certified itself in accordance with the US-EU data protection agreement "TADPF" (dataprivacyframework.gov) and is therefore obliged to comply with European data protection regulations.

The processing is carried out on the basis of Art. 6 para. 1f GDPR out of the legitimate interest to protect our website from automated spying, misuse and SPAM. You have the right to object, on grounds relating to your particular situation, at any time to processing of personal data concerning you which is based on Art. 6 (1f) GDPR. You can find more information about Google reCAPTCHA and the associated privacy policy at: https://www.google.com/recaptcha/intro/android.html and https://www.google.com/privacy.

Use of social plug-ins
Our pages on Facebook, Linkedin, Twitter, Instagram, Xing and YouTube are used for active communication with our customers and interested parties. We use them to provide information about our products and services as well as special promotions and events.
We use social network plug-ins on our website. The integration of social plug-ins and the data processing that takes place serves the purpose of optimizing the advertising of our products. When social plug-ins are integrated, a link is established between your computer and the servers of the social network provider and the plug-in is displayed on the page by notifying your browser, provided you have expressly consented to this. Both your IP address and the information about which of our pages you have visited are transmitted to the provider servers. This applies regardless of whether you are registered or logged in to the social network. Transmission also takes place for users who are not registered or not logged in. If you are connected to one or more of your social network accounts at the same time, the information collected can also be assigned to your corresponding profiles. When you use the plug-in functions (e.g. by clicking the button), this information is also assigned to your user account. You can prevent this assignment by logging out of your social media accounts before visiting our website and before activating the buttons.

The processing is based on Art. 6 (1a) DSGVO with your consent. You can revoke your consent at any time without affecting the lawfulness of the processing carried out on the basis of the consent until the revocation.

The social networks named below are integrated into our website by means of social plug-ins. For more information on the scope and purpose of the collection and use of the data, as well as your rights in this regard and options for protecting your privacy, please refer to the linked data protection notices of the providers.

  • Facebook: https://www.facebook.com/about/privacy/
  • YouTube (Google): https://policies.google.com/privacy
  • Instagram: https://help.instagram.com/519522125107875
  • Twitter: https://twitter.com/de/privacy
  • Linkedin: https://www.linkedin.com/legal/privacy-policy?_l=de_DE
  • Xing: https://privacy.xing.com/de/datenschutzerklaerung

If you need help, e.g. with requests for information, you are welcome to contact us. However, we would like to point out that inquiries regarding the processing of data or the assertion of user rights are best addressed directly to the provider of the respective platforms, as only they have access to the data.

Integration of YouTube videos
We have integrated YouTube videos into our online offering, which are stored on www.YouTube.com and can be played directly from our website. These are all integrated in "extended data protection mode", i.e. no data about you as a user is transferred to YouTube if you do not play the videos. Only when you play the videos will the data mentioned in paragraph 2 be transmitted. We have no influence on this data transfer.

When you visit the website, YouTube receives the information that you have accessed the corresponding subpage of our website. In addition, the data mentioned in the next paragraph "Further information" of this statement will be transmitted. This occurs regardless of whether YouTube provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be assigned directly to your account. If you do not wish your data to be associated with your YouTube profile, you must log out before activating the button. YouTube stores your data as usage profiles and uses them for the purposes of advertising, market research and/or the needs-based design of its website. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact YouTube to exercise this right.

Further information on the purpose and scope of data collection and its processing by YouTube can be found in the privacy policy. There you will also find further information about your rights and settings options to protect your privacy: https://www.google.de/intl/de/policies/privacy. Google also processes your personal data in the USA and has submitted to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.

Integration of Google Maps
We use the Google Maps service on this website. This allows us to show you interactive maps directly on the website and enables you to use the map function conveniently.

By visiting the website, Google receives the information that you have called up the corresponding sub-page of our website. In addition, the data mentioned in the next paragraph under "Further information" of this statement are transmitted. This occurs regardless of whether Google provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be directly assigned to your account. If you do not want the assignment with your profile at Google, you must log out before activating the button. Google stores your data as usage profiles and uses them for the purposes of advertising, market research and/or demand-oriented design of its website. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact Google to exercise this right.

Further information on the purpose and scope of data collection and its processing by the plug-in provider can be found in the provider's privacy policy. There you will also find further information on your rights in this regard and setting options to protect your privacy: http://www.google.de/intl/de/policies/privacy. Google also processes your personal data in the USA and has submitted to the EU-US TADPF (dataprivacyframework.gov).

Use of Google Adwords Conversion
We use Google Adwords to draw attention to our attractive offers with the help of advertising material (so-called Google Adwords) on external websites. We can determine how successful the individual advertising measures are in relation to the advertising campaign data. We are interested in showing you advertising that is of interest to you, making our website more interesting for you and achieving a fair calculation of advertising costs.

These advertisements are delivered by Google via so-called "ad servers". For this purpose, we use ad server cookies, which can be used to measure certain parameters for measuring success, such as the display of ads or clicks by users. If you access our website via a Google ad, Google Adwords will store a cookie on your PC. These cookies usually lose their validity after 30 days and are not intended to identify you personally. The unique cookie ID, number of ad impressions per placement (frequency), last impression (relevant for post-view conversions) and opt-out information (marking that the user no longer wishes to be addressed) are usually stored as analysis values for this cookie.

These cookies enable Google to recognize your internet browser. If a user visits certain pages of the website of an Adwords customer and the cookie stored on his computer has not yet expired, Google and the customer can recognize that the user clicked on the ad and was redirected to this page. A different cookie is assigned to each Adwords customer. Cookies can therefore not be tracked via the websites of Adwords customers. We ourselves do not collect and process any personal data in the aforementioned advertising measures. We only receive statistical evaluations from Google. Based on these evaluations, we can see which of the advertising measures used are particularly effective. We do not receive any further data from the use of the advertising media; in particular, we cannot identify users on the basis of this information.

Due to the marketing tools used, your browser automatically establishes a direct connection with the Google server. We have no influence on the scope and further use of the data collected by Google through the use of this tool and therefore inform you according to our level of knowledge: By integrating AdWords Conversion, Google receives the information that you have accessed the corresponding part of our website or clicked on an advertisement from us. If you are registered with a Google service, Google can assign the visit to your account. Even if you are not registered with Google or have not logged in, it is possible that the provider will find out your IP address and store it.

You can prevent participation in this tracking process in various ways: a) by setting your browser software accordingly, in particular suppressing third-party cookies will prevent you from receiving ads from third-party providers; b) by deactivating cookies for conversion tracking by setting your browser to block cookies from the domain "www.googleadservices.com", https://www.google.de/settings/ads, whereby this setting will be deleted if you delete your cookies; c) by deactivating the interest-based ads of the providers that are part of the "About Ads" self-regulation campaign via the link http://www.aboutads.info/choices, whereby this setting will be deleted if you delete your cookies; d) by permanently deactivating them in your Mozilla Firefox, Internet Explorer or Google Chrome browsers under the link http://www.google.com/settings/ads/plugin. We would like to point out that in this case you may not be able to use all functions of this website to their full extent.

The legal basis for the processing of your data is Art. 6 para. 1 sentence 1 f GDPR. Further information on data protection at Google can be found here: http://www.google.com/intl/de/policies/privacy and https://services.google.com/sitestats/de.html. Alternatively, you can visit the website of the Network Advertising Initiative (NAI) at http://www.networkadvertising.org. Google has submitted to the EU-US TADPF (dataprivacyframework.gov).

8. who is my contact person if I have questions about data protection at Droniq? have?

The responsible person within the meaning of the General Data Protection Regulation and the Federal Data Protection Act is the:

Droniq GmbH
Managing Directors: Jan-Eric Putze, Ralph Schepp
Ginnheimer Stadtweg 88
60431 Frankfurt
Phone: +49 (0)69 / 509547 400
E-mail: info@droniq.de

The contact details of our data protection officer are:

DFS German Air Navigation Services GmbH

  • Dr. Frank Schury - Group Data Protection Officer
  • Riko Pieper - Deputy Group Data Protection Officer
  • Heike Mosmann - Deputy Data Protection Officer of Droniq GmbH
  • VD Division - Group Data Protection and Quality Management

Am DFS-Campus 10
63225 Langen
Phone: Dr. Frank Schury: +49 (0)6103 / 707 4220
Phone: Riko Pieper: +49 (0)6103 / 707 4223
E-mail: datenschutzbeauftragter@dfs.de

9. your rights as a data subject

As a data subject, you have the following rights:

  • in accordance with Art. 15 DSGVO the right to request information about your personal data processed by us to the extent specified therein;
  • in accordance with Art. 16 DSGVO the right to demand the correction of incorrect or completion of your personal data stored by us without delay;
  • in accordance with Art. 17 GDPR, the right to demand the deletion of your personal data stored by us, unless further processing is necessary.
    • to exercise the right to freedom of expression and information;
    • to fulfill a legal obligation;
    • for reasons of public interest or
    • is necessary for the establishment, exercise or defense of legal claims;
  • in accordance with Art. 18 GDPR, the right to demand the restriction of the processing of your personal data, insofar as
    • the accuracy of the data is disputed by you;
    • the processing is unlawful, but you object to its erasure;
    • we no longer need the data, but you need it to assert, exercise or defend legal claims, or
    • you have objected to the processing pursuant to Art. 21 GDPR;
  • in accordance with Art. 20 DSGVO, the right to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request the transfer to another controller;
  • the right to complain to a supervisory authority pursuant to Art. 77 DSGVO. As a rule, you can contact the supervisory authority of your usual place of residence or workplace or our company headquarters for this purpose.

Please contact us directly by post or e-mail if you have any questions about the collection, processing or use of your personal data, or if you wish to request information, correct, block or delete data, revoke your consent or object to a specific use of data:

Droniq GmbH
Ginnheimer Stadtweg 88
60431 Frankfurt
Phone: 069-509547-400
E-mail: info@droniq.de

In addition, according to Art. 21 (1) DSGVO, you have the right to object to processing based on Art. 6 (1) f DSGVO and to processing for the purpose of direct marketing.

The collection of data for the provision of the websites and storage of the data in log files is mandatory for the operation of the website. Consequently, there is no possibility for the user to object.

11. changes to the privacy policy

We reserve the right to continuously update this and the specific privacy statements to incorporate changing legislation or case law. We therefore recommend that you visit the respective websites regularly so that you are informed about the protection and processing of your data.

12. links to other websites

The internet presence of Droniq GmbH contains links to other websites for which Droniq neither operates nor is responsible. Droniq is not responsible for the content and compliance with data protection regulations on these other websites.

Status: March 2024