Privacy Policy
Information on the collection and processing of your personal data in accordance with the GDPR.
1. General Information and Mandatory Disclosures
The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this privacy policy.
When you use this website, various personal data are collected. Personal data is data with which you can be personally identified. This privacy policy explains what data we collect and what we use it for. It also explains how and for what purpose this happens.
2. Who is Responsible for Data Collection?
BarryHosting
Lucas Wilms
Lüdenscheider Str. 21
51688 Wipperfürth
Germany
Email: info@barryhosting.de
3. Data Collection via the Billing System (Paymenter)
Registration and Customer Account
In order to order and manage services on our platform, creating a customer account in the Paymenter system is mandatory. The following data is collected during this process:
- First name and last name
- Email address (for notifications, invoices, and verifications)
- Full address (for legally compliant invoicing)
- IP address and time of registration/login (for fraud prevention)
Legal basis: Processing is carried out on the basis of Art. 6(1)(b) GDPR (performance of a contract or pre-contractual measures).
Provision and Setup of Hosting Services
When you purchase a server, web space, or any other service, the data required for provision (e.g., desired username, server name, generated passwords, or SSH keys) is automatically transmitted to our hosting infrastructure or control panels (e.g., game panels) in order to set up the product fully automatically.
Legal basis: Art. 6(1)(b) GDPR (performance of a contract).
The Ticket and Support System
When you submit a request through the integrated support system, your details and the course of the conversation are permanently saved and assigned to your customer account in order to process your request efficiently.
Legal basis: Art. 6(1)(b) GDPR as well as our legitimate interest in smooth customer support (Art. 6(1)(f) GDPR).
4. Cookies and Session Data (TDDDG Notice)
For technical reasons, the Paymenter system uses so-called "cookies" and local browser storage structures. These serve exclusively to make the platform usable.
A unique session ID (session cookie), CSRF security tokens, and temporary data for the shopping cart are stored. Without these cookies, your login status cannot be maintained and orders cannot be processed.
Legal basis: Storage is based on Sec. 25(2)(No. 2) TDDDG. These cookies are strictly necessary to provide the service explicitly requested by you. No tracking for marketing or analysis purposes takes place, which is why a cookie consent banner is not legally required.
5. Disclosure to Payment Service Providers (Gateways)
To process payments, we use secure, external payment service providers integrated directly into Paymenter via APIs. When you initiate a payment, the invoice amount, currency, and your customer number are transmitted to the selected gateway.
The processing of your payment data (e.g., credit card numbers, bank details, PayPal logins) takes place exclusively on the servers of the respective payment service provider. We only receive an automated confirmation (webhook) indicating whether the payment was successful.
Legal basis: Art. 6(1)(b) GDPR (payment processing for contract fulfillment).
6. Server Log Files
The web server automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:
- Browser type and browser version / Operating system used
- Referrer URL (the previously visited page)
- Hostname of the accessing computer / IP address
- Time of the server request
This data will not be merged with other data sources. The log files are automatically deleted or anonymized after 7 days at the latest.
Legal basis: Art. 6(1)(f) GDPR (Legitimate interest in the secure and stable operation of the web servers and defense against DDoS attacks).
7. Your Rights as a Data Subject
Within the framework of the applicable legal provisions, you have the right at any time to:
- Access to your stored personal data (Art. 15 GDPR)
- Rectification of incorrect data (Art. 16 GDPR)
- Erasure of your data, provided no statutory storage obligations conflict (Art. 17 GDPR)
- Restriction of processing (Art. 18 GDPR)
- Data portability (Art. 20 GDPR)
- Withdrawal of granted consent (Art. 7(3) GDPR)
For this purpose, as well as for further questions on the subject of data protection, you can contact us at any time at the address given in the legal notice. You also have the right to lodge a complaint with the competent data protection supervisory authority.