Data Privacy
aura-apps.io is operated by Seibert Products GmbH. This notice describes the processing of personal data that is specific to this website: which services we use here, what they do, and when they are allowed to run.
It supplements the Seibert Group data privacy declaration, which continues to apply and covers our general processing purposes, storage periods, and your rights as a data subject. Where the two differ in respect of this website, the notice on this page applies.
1. Controller
Seibert Products GmbH
Luisenstraße 37-39
65185 Wiesbaden
Germany
Managing Director: Martin Seibert
Email: datenschutz@seibert.group
You can reach our data protection officer at dsb@seibert.group, or by mail at the address above with the addressee “The Data Protection Officer”.
2. Scope
This notice covers the website aura-apps.io, including the blog, the resource hub and the gated downloads. It does not cover the Aura Apps Confluence Cloud apps themselves; processing that takes place inside those apps is described separately.
The website links to third-party sites, in particular the Atlassian Marketplace and our social media profiles. Once you follow such a link, the privacy notice of that provider applies.
3. Services used on this website
The table below lists every third-party service integrated into aura-apps.io. Services in the Statistics and Marketing categories do not load at all until you have given the corresponding consent — they are not merely blocked from sending data, the scripts are never injected.
| Service | Purpose | Legal basis | Loads after |
|---|---|---|---|
| Vercel Inc., USA | Hosting and delivery of this website, server log files | Art. 6 (1) (f) GDPR — legitimate interest in operating and securing the site | None — required to deliver the site |
| Cookiebot (Usercentrics A/S, Denmark) | Consent banner, recording and storing your consent decision | Art. 6 (1) (c) and (f) GDPR — legal obligation to obtain and document consent | None — loads before any other service |
| PostHog (EU Cloud, eu.i.posthog.com) | Product and website analytics: pages viewed, referrer, device and browser | Art. 6 (1) (a) GDPR — consent | Statistics |
| Google Ads (Google Ireland Limited) | Measuring the success of our advertising campaigns | Art. 6 (1) (a) GDPR — consent | Marketing |
| Reddit Pixel (Reddit, Inc., USA) | Measuring the success of our advertising campaigns | Art. 6 (1) (a) GDPR — consent | Marketing |
| Seibert customer portal (Seibert Group GmbH, Germany) | Sign-in for gated downloads such as whitepapers | Art. 6 (1) (b) GDPR — performance of a contract, and Art. 6 (1) (a) GDPR | None — only when you choose to sign in |
A central overview of the service providers used across all Seibert websites and applications is maintained in the service provider overview.
4. Server log files
Every time you access a page, our hosting provider records a log entry. It contains the date and time of the request, the page requested, your IP address, the referrer URL, the amount of data transferred, and the name and version of your browser. This data is needed to deliver the page and to detect and defend against attacks. It is not merged with other data sources and is not used to identify you.
5. Cookies and consent
Our consent banner distinguishes between strictly necessary, statistics and marketing cookies. Only strictly necessary cookies are set without your consent. You can change or withdraw your consent at any time via the banner, and an always current list of the individual cookies is available in our cookie declaration.
Withdrawing consent does not affect the lawfulness of any processing carried out before the withdrawal.
6. Analytics
We use PostHog to understand how the website is used — which pages are visited, where visitors come from, and which device and browser they use. The data is processed on PostHog’s EU cloud. Analytics only start once you have given statistics consent; until then, PostHog is opted out and does not write any cookies or local storage entries.
Session recording, heatmaps and error tracking are not enabled on this website. We do not record your screen, your mouse movements or your keystrokes.
7. Sign-in for gated downloads
Some resources, such as our whitepapers, require you to sign in. Sign-in runs via the Seibert customer portal at customer.seibert.group, operated by Seibert Group GmbH, using the OpenID Connect standard. We receive your user identifier, your name and your email address so that we can give you access to the requested document.
The terms and the privacy notice of the customer portal are available in the customer portal terms and privacy notice.
8. Processing outside the EU
The pages of this website are delivered from a European location. Requests that have to be rendered on demand — signing in and downloading gated documents — are handled by a serverless function that currently runs in the United States. Personal data processed in the course of those requests, in particular your name and email address after you sign in, is therefore transferred to the United States.
This transfer is safeguarded by the EU Standard Contractual Clauses under Art. 46 GDPR, which we have concluded with our hosting provider. The corresponding entry, together with the safeguards for all other providers, is listed in the service provider overview.
The Reddit Pixel also transfers data to the United States. That transfer is based on your consent under Art. 49 (1) (a) GDPR — the pixel is not loaded until you have given marketing consent in the cookie banner.
9. Your rights
You have the right of access, correction, deletion, restriction of processing, objection, withdrawal of consent, and data portability, as well as the right to lodge a complaint with a supervisory authority. These rights are set out in full in section 5 of the Seibert Group data privacy declaration.
To exercise any of them, write to datenschutz@seibert.group.
10. Changes to this notice
We update this notice whenever the services used on this website change, or when data protection law requires it.