NAVIGO Deutschland

Privacy policy

Last updated: September 2026

1. Controller

The controller within the meaning of the General Data Protection Regulation (GDPR) is: NAVIGO Deutschland Königsallee 27 40212 Düsseldorf, Germany Email: info@navigo-deutschland.com Represented by: Dr. Aboubakr Rabah, Mehriz Fezzani

2. General information on data processing

We process personal data of our users only to the extent necessary to provide a functional website as well as our content and services. Processing generally takes place only with consent or where permitted by a legal basis.

3. Hosting (Vercel) and server log files

This website is hosted by Vercel Inc., USA. When you access our website, the hosting provider automatically records information in so-called server log files that your browser transmits automatically: IP address, date and time of the request, browser type and version, operating system used, referrer URL. This data is not merged with other data sources and serves solely the delivery, security and stability of the website. The legal basis is Art. 6 (1) (f) GDPR (legitimate interest in the technically error-free presentation and optimisation of the website). Vercel processes data on our behalf (Art. 28 GDPR) and may also process it on servers in the USA; the transfer is based on the EU Commission's standard contractual clauses (Art. 46 (2) (c) GDPR). Further information: Vercel privacy policy.

4. Cookies and consent management

This website uses technically necessary cookies or comparable technologies (e.g. to store your language setting and your cookie preferences in your browser's local storage). These are required for the operation of the website; the legal basis is Section 25 (2) TDDDG and Art. 6 (1) (f) GDPR. We currently do not use statistics or marketing cookies. Services requiring consent (currently Google Maps in the “External media” category) are only loaded after your explicit consent via our cookie dialog (Section 25 (1) TDDDG, Art. 6 (1) (a) GDPR). You can change your selection at any time via the “Cookie settings” link in the footer. An overview of all cookies and storage technologies used can be found in our cookie policy.

5. Contact forms and enquiries (delivery via Resend)

If you contact us via one of our forms or by email, we process the data you provide (name, title/position, email address, organisation and phone number where applicable, stakeholder category, industry as well as your message or your details on demand or profile) to handle your enquiry. The legal basis is Art. 6 (1) (b) GDPR (pre-contractual measures) or Art. 6 (1) (f) GDPR (legitimate interest in responding to enquiries). We use the email service Resend (Resend Inc., USA) to deliver the form data. The form contents are delivered by email to our mailbox; Resend processes the data solely on our behalf for the purpose of delivery (Art. 28 GDPR). Transfers to the USA are based on the EU Commission's standard contractual clauses (Art. 46 (2) (c) GDPR). Retention period: your enquiry is deleted as soon as it is no longer required for processing and no statutory retention obligations apply. Further information: Resend privacy policy.

6. Contact via WhatsApp

We offer the option of contacting us via WhatsApp. The provider is WhatsApp Ireland Ltd., a Meta Platforms company. When using WhatsApp, personal data (including your phone number and communication metadata) is transferred to WhatsApp or Meta; transfers to third countries (in particular the USA) are possible. Use is based on your voluntary decision (Art. 6 (1) (a) GDPR). If you do not wish this, please use our other contact channels. Further information: WhatsApp privacy policy.

7. Google Maps

On our contact page we embed a map from Google Maps. The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. The map is only loaded once you agree to the “External media” category in our cookie dialog or load the map individually by clicking. Only then is data (including your IP address and any cookies set by Google) transferred to Google; a transfer to Google LLC in the USA is possible. Google is certified under the EU-U.S. Data Privacy Framework; in addition, the EU Commission's standard contractual clauses apply. The legal basis is your consent (Art. 6 (1) (a) GDPR, Section 25 (1) TDDDG), which you can revoke at any time with effect for the future via the “Cookie settings” link in the footer. Further information: Google privacy policy.

8. External links and sharing functions

Our website contains links to external websites (e.g. LinkedIn). Merely visiting our pages does not transfer any data to these providers; we do not use embedded social media plugins. Only when you click an external link do you enter the area of responsibility of the respective provider.

9. Your rights as a data subject

You have the following rights vis-à-vis us regarding your personal data: right of access (Art. 15 GDPR), rectification (Art. 16 GDPR), erasure (Art. 17 GDPR), restriction of processing (Art. 18 GDPR), data portability (Art. 20 GDPR) and objection to processing (Art. 21 GDPR). You may revoke any consent given at any time with effect for the future. You also have the right to lodge a complaint with a data protection supervisory authority; the competent authority is the State Commissioner for Data Protection and Freedom of Information of North Rhine-Westphalia.

10. Data security

For security reasons, this website uses TLS encryption (recognisable by “https://” in the address bar). We also take appropriate technical and organisational measures to protect your data against loss, destruction, access, alteration or dissemination by unauthorised persons.

11. Currency of this privacy policy

We reserve the right to amend this privacy policy so that it always complies with current legal requirements or to implement changes to our services. The current privacy policy then applies to your next visit.