Privacy Policy

Information about the protection of your personal data

Last updated: June 28, 2026

1. Data Controller

The data controller responsible for data processing on this website is:

Sergey Wolf

Kernmattstr. 8B

4102 Binningen

E-Mail: datenschutz@wealthbuild.ing

2. Overview of Data Processing

This website provides financial calculators and tools for calculating taxes, interest, and other financial metrics. We only process personal data to the extent necessary to provide a functional website and our content and services. Processing is carried out exclusively on the basis of legal provisions (GDPR, applicable national data protection laws).

3. Types of Data Collected

We process the following categories of personal data:

  • Usage data (e.g., pages visited, access time, duration)
  • Connection data (e.g., anonymized IP address, browser type, operating system, referrer URL)
  • When signing in: Name, email address (via Google OAuth), registration timestamp
  • When contacting us: Name, email address, message content, timestamp
  • When submitting feedback: rating, message, context (URL), name, email (optional), timestamp
  • Calculator input data: NOT stored server-side, only processed locally in browser (except when deliberately saved by users after login)
4. Legal Basis for Processing

Your data is processed on the following legal grounds under GDPR:

  • Consent (Art. 6(1)(a) GDPR) - e.g., for Google sign-in or newsletters
  • Contract performance (Art. 6(1)(b) GDPR) - to provide calculator functions
  • Legal obligation (Art. 6(1)(c) GDPR) - e.g., retention requirements
  • Legitimate interest (Art. 6(1)(f) GDPR) - to ensure IT security and improve our services
5. Your Rights

You have the following rights regarding your personal data:

  • Right of access (Art. 15 GDPR) - You can request information about your stored data
  • Right to rectification (Art. 16 GDPR) - You can request correction of incorrect data
  • Right to erasure (Art. 17 GDPR) - You can request deletion of your data, subject to legal retention requirements
  • Right to restriction of processing (Art. 18 GDPR)
  • Right to data portability (Art. 20 GDPR) - You can receive your data in a structured format
  • Right to object (Art. 21 GDPR) - You can object to processing of your data
  • Right to lodge a complaint with a supervisory authority (Art. 77 GDPR)
  • Right to withdraw consent (Art. 7(3) GDPR) - You can withdraw consent at any time with effect for the future

To exercise your rights, you can contact us using the details provided above. Please provide your registered email address for identification.

6. Cookies and Storage Technologies

This website does not use cookies for tracking or advertising purposes.

Cookie-Free Approach

We have deliberately chosen not to use tracking cookies, advertising cookies, or analytics cookies. This means you can use our website without being tracked and without seeing a cookie consent banner.

Local Storage

We use your browser's Local Storage to optionally save your calculation data if you choose to save it. This data remains on your device and is not transmitted to our servers.

Preference Cookies

When you change settings such as language, currency, or country, we store these preferences in cookies so your selections are preserved for future visits. These cookies are only set when you actively change a setting and are technically necessary to provide the service you requested (§ 25 TDDDG). They have a lifespan of up to one year.

Authentication Cookies

When you sign in to our website, cookies are set to manage your authentication state and security (CSRF protection). These cookies are technically necessary to provide the authentication service you requested and do not require consent under Art. 5(3) ePrivacy Directive / § 25 TDDDG. The authentication cookie has an expiration period of 30 days. All cookies can be manually deleted in your browser settings at any time.

Google Sign-In

If you choose to sign in with Google, Google may set its own cookies for authentication purposes. This only occurs if you actively choose to use the Google sign-in feature. For more information about Google's cookies, please see Google's Privacy Policy: https://policies.google.com/privacy

7. Third-Party Services

Google OAuth (Authentication)

We use Google OAuth for optional sign-in. When you sign in, your name and email address are transmitted from Google to us. Processing is based on your consent (Art. 6(1)(a) GDPR). Google may set its own cookies. Legal basis for data transfer to Google is Art. 49(1)(a) GDPR (consent). For more information: https://policies.google.com/privacy

  • Data transmitted: Name, email address, Google User ID
  • Retention period: Until account deletion or upon request

Web Analytics (Umami)

We use the privacy-friendly analytics software Umami to improve our services. Legal basis is our legitimate interest (Art. 6(1)(f) GDPR). Umami processes data completely anonymously: no cookies are set, no personal data is collected, no data is shared with third parties. IP addresses are immediately anonymized and not stored. All data remains on our own servers in Germany/EU.

Collected data (anonymized): Page views, country of origin, browser type, device category

Consent is not required as no personal data is processed.

Affiliate links

This website may contain affiliate links to financial products and services. When you click on an affiliate link, the respective partner providers may collect data such as the referrer URL, the time of the click, and, if applicable, your IP address. This is used to allocate commissions. Processing is based on our legitimate interest in financing our free offering (Art. 6 (1) (f) GDPR). We do not use any tracking cookies for this purpose.

8. Plugins and Tools

Cloudflare

We use Cloudflare, a service provided by Cloudflare, Inc., 101 Townsend St., San Francisco, CA 94107, USA ('Cloudflare'), to protect and accelerate our website. Cloudflare operates a global Content Delivery Network (CDN) with Domain Name System (DNS).

CDN and Security

Cloudflare collects and processes certain technical data when you access our website (e.g., IP address, browser type, operating system, referrer URL). This data is used to analyze traffic, optimize performance, and protect our servers from malicious traffic (e.g., DDoS attacks). We use Cloudflare based on our legitimate interest (Art. 6(1)(f) GDPR) in providing a secure, fast, and error-free website.

Cloudflare Turnstile

We use 'Cloudflare Turnstile' to verify whether data entry on our website (e.g., in contact forms) is performed by a human or an automated program. Turnstile analyzes user behavior (e.g., mouse movements, time spent on page) to distinguish humans from bots. This analysis runs automatically in the background. Collected data is transmitted to Cloudflare for analysis. Processing is based on our legitimate interest (Art. 6(1)(f) GDPR) in protecting our site from spam and abuse.

Data Protection

Cloudflare is certified under the EU-U.S. Data Privacy Framework. In addition, data transfers to the US are based on the EU Commission's standard contractual clauses. Details: https://www.cloudflare.com/de-de/cloudflare-customer-scc/ and https://www.cloudflare.com/de-de/cloudflare-customer-dpa/

For more information on security and data protection at Cloudflare: https://www.cloudflare.com/privacypolicy/

9. International Data Transfers

Your data is primarily processed and stored within the EU/EEA. Transfer to third countries occurs with Google OAuth (USA) when you sign in with Google. This is based on your consent (Art. 49(1)(a) GDPR) or on the basis of the EU-U.S. Data Privacy Framework (Art. 45 GDPR). Google is certified under the EU-U.S. Data Privacy Framework.

10. Data Retention

We store your personal data only for as long as necessary for the respective processing purposes or as required by legal retention periods:

  • Session data: Until end of browser session
  • Account data: Until account deletion by you or upon request
  • Contact inquiries: 3 years after processing (for potential follow-ups/warranty)
  • Anonymized analytics: 24 months
  • For legal retention requirements: According to legal periods (e.g., 6-10 years for tax documents)
11. Data Security

We implement technical and organizational security measures to protect your data against accidental or intentional manipulation, loss, destruction, or access by unauthorized persons:

  • SSL/TLS encryption for entire website (HTTPS)
  • Access controls and authorization concepts for our systems
  • Pseudonymization and anonymization where possible
  • Regular backups in encrypted form
  • Continuous updating of security measures according to state of the art
12. Data Processors

For the operation of our website, we use the following data processors with whom we have concluded contracts in accordance with Art. 28 GDPR:

  • Hosting: The website is hosted on servers in Germany.
13. Automated Decision-Making

There is no automated decision-making including profiling pursuant to Art. 22 GDPR. All calculations in our calculators are based on your inputs and serve purely informational purposes.

14. Changes to this Privacy Policy

We reserve the right to modify this privacy policy as needed to adapt it to changed legal situations or changes to the service and data processing. The current version always applies as published on this page. For significant changes, we will inform you through a notice on our website.

15. Supervisory Authority

The data protection supervisory authority responsible for us is:

Federal Data Protection and Information Commissioner (FDPIC)

Feldeggweg 1, 3003 Bern, Switzerland

Website: https://www.edoeb.admin.ch