Privacy Policy (Datenschutzerklärung)

Last updated: [14 OCT 2025]

This Privacy Policy explains how we process personal data when you visit crafting-wealth.com, receive our newsletter, or use our Services.

1. Controller

Crafting-Wealth.com – Erick Parra
Wohlfartstr. 16, 80939 Munich, Germany
Email: [email protected]

2. Data We Process

  • Website data: IP address, device/browser info, pages viewed, referrer, timestamps.

  • Contact & account: name, email, billing address, company/VAT (if provided).

  • Payments: transaction metadata from our payment provider (e.g., Stripe). We do not store full card data.

  • Newsletter: email address, subscription time, consent & interaction (opens/clicks).

  • Events & coaching: scheduling details, messages you send, files you optionally share.

3. Purposes & Legal Bases (Art. 6 GDPR)

  • Provide Services & fulfill contracts (Art. 6(1)(b)): account setup, event access, digital delivery, support.

  • Payments & compliance (Art. 6(1)(b)(c)): invoicing, accounting, tax compliance.

  • Legitimate interests (Art. 6(1)(f)): secure, reliable operation; preventing abuse; basic reach measurement.

  • Consent (Art. 6(1)(a)): newsletter; optional cookies/analytics requiring consent; SMS/WhatsApp marketing if used.

4. Cookies & Analytics (TTDSG)

We aim to operate with minimal cookies.

  • Consent banner: We load any non-essential cookies only after consent (per TTDSG).

  • Analytics: We may use Plausible (cookieless) or Google Analytics 4. GA4 loads only after consent; IP anonymization is enabled; data retention is limited.

  • You can change or withdraw consent anytime via the cookie settings link in the footer.

5. Processors & Recipients

We use trusted service providers under Art. 28 GDPR, e.g.:

  • Hosting/CDN (e.g., Vercel/Netlify)

  • Email/newsletter (e.g., MailerLite/Mailchimp)

  • Payments (e.g., Stripe)

  • Video/meeting tools (e.g., Zoom/Teams)
    A current list is available on request.

6. International Transfers

Where providers are outside the EU/EEA, we rely on adequacy decisions or Standard Contractual Clauses (Art. 46 GDPR) and apply additional safeguards where required.

7. Retention

We retain data only as long as necessary for the purposes above and statutory retention (e.g., 10 years for invoices under German tax law). Newsletter data is kept until you unsubscribe or delete it.

8. Your Rights

You have rights to access, rectification, erasure, restriction, portability, and objection, and to withdraw consent at any time (Art. 7(3) GDPR). You may lodge a complaint with a supervisory authority, e.g., Bayerisches Landesamt für Datenschutzaufsicht or your local authority.

9. Security

We use technical and organizational measures (encryption, access controls, backups) appropriate to risk.

10. Children

Our Services target adults. We do not knowingly process children’s data.

11. Newsletter & Communications

  • Newsletter (opt-in): You’ll receive ~1 email/week (Monday). Opt-out anytime via the unsubscribe link.

  • Transactional emails: receipts, access links, schedule updates—not marketing.

  • SMS/WhatsApp (optional): If you consent, message & data rates may apply; reply STOP to opt out.

12. Changes

We may update this Privacy Policy; we’ll indicate the effective date above.

Contact (privacy): [email protected]