Information on the processing of personal data
1. Controller
Benjamin Raulf / BR-Systems
Müdener Straße 15a, 29345 Unterlüß
Telefon: 0179 160 1700
E-Mail: info@br-systems.eu
2. General information on data processing
We process personal data only to the extent necessary to provide this website and our services. Processing beyond this takes place only with your consent or on the basis of legal permission.
3. Hosting & server log files
This website is provided through a hosting service provider commissioned by us. When you access the website, technically necessary information is processed in server log files:
- IP address of the requesting system
- Date and time of the request
- Requested page or file
- Referrer URL, if transmitted
- Browser and operating system used
The legal basis is Art. 6(1)(f) GDPR. Our legitimate interest is the secure, stable and abuse-resistant provision of this website. Log data is deleted when it is no longer required for this purpose. Data may be retained for longer where a specific security incident must be investigated or a legal obligation must be met. Hosting and email service providers may act as processors on our behalf.
4. Contact form
If you send us a message through the contact form, we process the details you provide — name, email address, optional telephone number, topic and message — solely to handle your enquiry.
The legal basis is Art. 6(1)(b) GDPR where the enquiry concerns pre-contractual measures, or Art. 6(1)(f) GDPR based on our legitimate interest in responding to enquiries.
Your enquiry is deleted once it has been dealt with and no statutory retention or evidence obligations remain. The form uses a locally processed honeypot field and an origin check to prevent misuse; no external CAPTCHA is embedded. Data is disclosed only to processors used for hosting and email delivery, and to other recipients where this is necessary to handle the enquiry or required by law.
5. NIS2 Security Check
The home page provides a free IT-security self-assessment. Your answers and the resulting evaluation are processed entirely in your browser. No third party is involved, no content is loaded from external domains and the answers are not transmitted to us.
This also applies to the contact details requested by the check. They are used only to label the report generated on your device. You decide whether to print, copy or subsequently share that report with us. If you contact us afterwards, section 4 of this policy applies.
The check is a technical orientation aid. It does not replace the official BSI applicability assessment or legal advice.
6. Alarm-system planner
The alarm-system planner follows the same principle as the NIS2 check: information about the property and the planning sheet generated from it are processed only in your browser. They are not transmitted to us and no third party is involved.
To prevent an accidental click from erasing your work, the browser stores the intermediate result under the key br-alarm-planer in session storage. This data remains on your device and is deleted when the browser tab is closed. It is not a cookie. If you subsequently send the planning sheet to us, section 4 applies.
7. Form-abuse prevention
To prevent automated mass submissions, we limit the number of form submissions per sender within a short period. We do not store the IP address for this purpose. A short hash is derived from the sender address and a value that changes daily; only this hash and a counter are stored. Entries are deleted automatically after no more than 15 minutes and cannot be associated with a person after the daily value changes.
The legal basis is Art. 6(1)(f) GDPR. Our legitimate interest is maintaining abuse-resistant contact channels.
8. No analytics cookies or tracking
At present, this website does not set cookies for analytics or marketing and does not use tracking, analytics or social-media plugins. No content is embedded from third-party domains when a page is loaded.
The Microsoft 365, G DATA and Managed RMM calculators store the most recently calculated result in browser session storage so that you can transfer it to the contact form. The information remains on your device, is not transmitted to us automatically and is deleted when the browser tab is closed. Session storage is not a cookie.
9. Locally hosted fonts
This website uses Sora, Inter and JetBrains Mono. The font files are served locally by this website; your browser does not contact Google Fonts or a font CDN for them.
10. External links
This website contains links to external websites, including manufacturer websites. Data is not transmitted merely because such a link is displayed. If you follow a link, you leave our website and the destination provider may receive information such as your IP address. We have no control over processing by that provider.
11. Your rights
Subject to the applicable legal requirements, you have the right to:
- access your personal data (Art. 15 GDPR)
- rectify inaccurate data (Art. 16 GDPR)
- erase personal data (Art. 17 GDPR)
- restrict processing (Art. 18 GDPR)
- data portability (Art. 20 GDPR)
- object to processing (Art. 21 GDPR)
To exercise your rights, contact info@br-systems.eu.
12. Right to lodge a complaint
You have the right to lodge a complaint with a data-protection supervisory authority. The competent authority for Lower Saxony is:
The State Commissioner for Data Protection of Lower Saxony
Prinzenstraße 5, 30159 Hannover
www.lfd.niedersachsen.de
13. Data security
The website and contact form are intended to be delivered only over encrypted HTTPS connections. We use appropriate technical and organisational measures to protect personal data against loss, alteration and unauthorised access.
14. Changes to this privacy policy
We update this privacy policy when the legal framework, technical delivery or service providers change. Last updated: 22 June 2026.
Note
This privacy policy has been prepared with care but does not constitute legal advice. Where legal certainty is required, have it reviewed by a data-protection officer or qualified lawyer.