Privacy Policy
This English version is provided for convenience. The German version is authoritative where German law applies. If you have questions about the legal documents, please contact us through the contact page.
This Privacy Policy explains how personal data is processed on dotaboost.online under the GDPR and applicable German data protection law.
1. Controller
Martin Müller Rudolf-Diesel-Straße 11 69115 Heidelberg Germany
Contact us through the contact page or the listed Discord support.
2. Hosting and server logs
When you visit the website, technically necessary data such as IP address, time, requested page, referrer and browser information may be processed. This is based on Art. 6(1)(f) GDPR and serves secure, stable operation.
Data is deleted when no longer required unless statutory retention duties apply.
3. Bookings and contact
For bookings we process name, email, Discord contact, order details, MMR target, selected booster, price and messages. The legal basis is Art. 6(1)(b) GDPR for contract performance and Art. 6(1)(c) GDPR for legal duties.
For contact requests we process submitted data to answer the request, based on Art. 6(1)(b) or (f) GDPR.
4. Payment processing
Payments are handled by Stripe and the payment methods offered at checkout. Payment data is processed directly by the relevant provider. We receive only information needed for order status, refunds and support.
Please also review Stripe's privacy policy and the policy of the payment provider selected at checkout.
5. Cookies and consent
We use technically necessary cookies and local storage for language preferences and core website operation. Non-essential analytics or marketing technologies are used only after consent. Consent can be withdrawn at any time with future effect through cookie settings.
6. Processors and international transfers
Hosting, database, payment, email and security providers may process data on our behalf. Where required, data processing agreements are used. Transfers outside the EEA take place only under the requirements of Art. 44 et seq. GDPR.
7. Retention
We retain data only as long as necessary. Contract and payment records are generally retained for up to ten years where required by German commercial and tax law.
8. Your rights
To exercise your rights, contact the controller. We may need to verify your identity.
- Access, correction and deletion
- Restriction of processing and data portability
- Objection to processing based on legitimate interests
- Withdrawal of consent for the future
- Complaint to a data protection supervisory authority
9. Security
We use appropriate technical and organisational measures, including TLS encryption, access restrictions and role-based processing. No internet transmission can be guaranteed to be completely risk-free.
Last updated: 8 August 2026