Data Privacy

aura-apps.io is operated by Seibert Products GmbH. This notice describes the processing of personal data that is specific to this website: which services we use here, what they do, and when they are allowed to run.

It supplements the Seibert Group data privacy declaration, which continues to apply and covers our general processing purposes, storage periods, and your rights as a data subject. Where the two differ in respect of this website, the notice on this page applies.

1. Controller

Seibert Products GmbH
Luisenstraße 37-39
65185 Wiesbaden
Germany

Managing Director: Martin Seibert
Email: datenschutz@seibert.group

You can reach our data protection officer at dsb@seibert.group, or by mail at the address above with the addressee “The Data Protection Officer”.

2. Scope

This notice covers the website aura-apps.io, including the blog, the resource hub and the gated downloads. It does not cover the Aura Apps Confluence Cloud apps themselves; processing that takes place inside those apps is described separately.

The website links to third-party sites, in particular the Atlassian Marketplace and our social media profiles. Once you follow such a link, the privacy notice of that provider applies.

3. Services used on this website

The table below lists every third-party service integrated into aura-apps.io. Services in the Statistics and Marketing categories do not load at all until you have given the corresponding consent — they are not merely blocked from sending data, the scripts are never injected.

ServicePurposeLegal basisLoads after
Vercel Inc., USAHosting and delivery of this website, server log filesArt. 6 (1) (f) GDPR — legitimate interest in operating and securing the siteNone — required to deliver the site
Cookiebot (Usercentrics A/S, Denmark)Consent banner, recording and storing your consent decisionArt. 6 (1) (c) and (f) GDPR — legal obligation to obtain and document consentNone — loads before any other service
PostHog (EU Cloud, eu.i.posthog.com)Product and website analytics: pages viewed, referrer, device and browserArt. 6 (1) (a) GDPR — consentStatistics
Google Ads (Google Ireland Limited)Measuring the success of our advertising campaignsArt. 6 (1) (a) GDPR — consentMarketing
Reddit Pixel (Reddit, Inc., USA)Measuring the success of our advertising campaignsArt. 6 (1) (a) GDPR — consentMarketing
Seibert customer portal (Seibert Group GmbH, Germany)Sign-in for gated downloads such as whitepapersArt. 6 (1) (b) GDPR — performance of a contract, and Art. 6 (1) (a) GDPRNone — only when you choose to sign in

A central overview of the service providers used across all Seibert websites and applications is maintained in the service provider overview.

4. Server log files

Every time you access a page, our hosting provider records a log entry. It contains the date and time of the request, the page requested, your IP address, the referrer URL, the amount of data transferred, and the name and version of your browser. This data is needed to deliver the page and to detect and defend against attacks. It is not merged with other data sources and is not used to identify you.

5. Cookies and consent

Our consent banner distinguishes between strictly necessary, statistics and marketing cookies. Only strictly necessary cookies are set without your consent. You can change or withdraw your consent at any time via the banner, and an always current list of the individual cookies is available in our cookie declaration.

Withdrawing consent does not affect the lawfulness of any processing carried out before the withdrawal.

6. Analytics

We use PostHog to understand how the website is used — which pages are visited, where visitors come from, and which device and browser they use. The data is processed on PostHog’s EU cloud. Analytics only start once you have given statistics consent; until then, PostHog is opted out and does not write any cookies or local storage entries.

Session recording, heatmaps and error tracking are not enabled on this website. We do not record your screen, your mouse movements or your keystrokes.

7. Sign-in for gated downloads

Some resources, such as our whitepapers, require you to sign in. Sign-in runs via the Seibert customer portal at customer.seibert.group, operated by Seibert Group GmbH, using the OpenID Connect standard. We receive your user identifier, your name and your email address so that we can give you access to the requested document.

The terms and the privacy notice of the customer portal are available in the customer portal terms and privacy notice.

8. Processing outside the EU

The pages of this website are delivered from a European location. Requests that have to be rendered on demand — signing in and downloading gated documents — are handled by a serverless function that currently runs in the United States. Personal data processed in the course of those requests, in particular your name and email address after you sign in, is therefore transferred to the United States.

This transfer is safeguarded by the EU Standard Contractual Clauses under Art. 46 GDPR, which we have concluded with our hosting provider. The corresponding entry, together with the safeguards for all other providers, is listed in the service provider overview.

The Reddit Pixel also transfers data to the United States. That transfer is based on your consent under Art. 49 (1) (a) GDPR — the pixel is not loaded until you have given marketing consent in the cookie banner.

9. Your rights

You have the right of access, correction, deletion, restriction of processing, objection, withdrawal of consent, and data portability, as well as the right to lodge a complaint with a supervisory authority. These rights are set out in full in section 5 of the Seibert Group data privacy declaration.

To exercise any of them, write to datenschutz@seibert.group.

10. Changes to this notice

We update this notice whenever the services used on this website change, or when data protection law requires it.