Data Processing
As of: March 2026
Transparency about the processing of personal data is a matter of course for us. On this page, we provide information about the processors we use and the technical-organizational measures we take to protect your data.
Description of Data Processing
In the course of operating our online shop, we process personal data of our customers. This includes: contact data (name, email), order data (products, delivery address, payment information), usage data (IP address, browser), and communication data (support requests). Processing is carried out for the performance of a contract (Art. 6(1)(b) GDPR) and on the basis of legitimate interests (Art. 6(1)(f) GDPR).
Data Processors
We use the following service providers as data processors pursuant to Art. 28 GDPR:
| Provider | Location | Purpose |
|---|---|---|
| Stripe, Inc. | San Francisco, USA (EU-US Data Privacy Framework) | Payment processing (Stripe Checkout, Webhooks) |
| Resend, Inc. | San Francisco, USA (EU-US Data Privacy Framework) | Email delivery (confirmations, password reset) |
| Vercel, Inc. | San Francisco, USA (EU-US Data Privacy Framework) | Hosting & delivery of the web application |
| Neon, Inc. | San Francisco, USA (EU-US Data Privacy Framework) | Database storage (PostgreSQL) |
| Pusher Ltd. | London, UK (Angemessenheitsbeschluss) | Real-time communication (live chat, support) |
Technical and Organizational Measures (TOMs)
To protect the processed personal data, we have implemented the following measures:
- Encrypted data transmission (TLS/HTTPS) for all connections
- Encrypted data storage (AES-256) at all processors
- Access control with two-factor authentication for admin access
- Regular security updates and dependency audits
- Password hashing with bcrypt (cost factor 12)
- Rate limiting on login and registration endpoints
- IP-based access logging
- Automatic session invalidation on password change
- Retention periods according to privacy policy
Contact for Data Processing Inquiries
For questions about data processing or the service providers we use, please contact us at:
E-Mail: support@ovosono.com