Information pursuant to Section 5 of the Digital Services Act (DDG)
UTOVER GmbH
Taubenweg 14
51381 Leverkusen
Germany
René Hansen
Email: hello@utover.com
Inquiry via WhatsApp: Start chat
Registered in the Commercial Register.
Register court: Amtsgericht Köln
Registration number: HRB 114081
DE316232222
DE20ZZZ00002121678
Dialog window. Tab moves focus within the dialog. Escape closes the dialog.
Loading downloads ...
Dialog window. Tab moves focus within the dialog. Escape closes the dialog.
PRIVACY POLICY
for the website https://www.utover.com
Last updated: January 18, 2026
The controller within the meaning of the General Data Protection Regulation (GDPR) is:
UTOVER GmbH
Taubenweg 14
51381 Leverkusen
Germany
Email: hello@utover.com
No data protection officer has been appointed. If you have any questions regarding data protection, please contact us using the contact details above.
We process personal data only to the extent necessary, in particular
Depending on the processing activity, the following legal bases apply:
as well as for storing or accessing information on your end device (cookies)
Section 25 of the German Telecommunications Digital Services Data Protection Act (TDDDG).
When you visit our website, information is automatically collected by the web server and stored in so-called server log files. This is technically necessary in order to deliver the website and ensure security.
Processed data typically includes:
Purposes:
Legal basis:
Art. 6(1)(f) GDPR (legitimate interest in secure and stable operation).
Storage period:
Server log files are regularly deleted. Longer storage occurs only if required to investigate security incidents, prevent abuse or fraud, or assert legal claims.
We use a hosting service provider to operate this website. The provider processes personal data on our behalf in accordance with Art. 28 GDPR. In this context, the provider may have access to the technical data mentioned above (in particular server log files) insofar as this is necessary for providing the hosting services.
Recipients / categories of recipients:
We use cookies on your end device. Some of these are technically necessary, others serve optional purposes such as analytics.
Consent cookie
To store your cookie selection, we use a technically necessary cookie:
Purpose:
Legal basis:
Note:
Depending on server or infrastructure configuration, additional technically necessary cookies (e.g. for load balancing or security functions) may be used.
Optional cookies or tracking technologies (e.g. Google Analytics) are activated only if you select “Accept all cookies” in the cookie banner. If you select “Necessary cookies only”, analytics remains disabled.
Withdrawal / change:
You can change your selection at any time by using the “Cookies” link in the footer and making a new choice. Any consent given can be withdrawn at any time with effect for the future.
If you have given your consent, we use Google Analytics to analyze the use of our website and to improve it.
Provider:
Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.
Data may also be transferred to Google LLC, USA.
Processed data typically includes:
Purposes:
Legal bases:
Third-country transfer (USA):
Data transfers may be based on appropriate safeguards, in particular the EU-U.S. Data Privacy Framework and/or EU Standard Contractual Clauses (SCCs).
Withdrawal:
You can withdraw your consent at any time via the cookie settings (“Cookies” link in the footer). The lawfulness of processing prior to withdrawal remains unaffected.
8.1 Contact by email
If you contact us by email, we process the data you provide (e.g. name, email address, message content) in order to handle your inquiry.
Legal bases:
8.2 Contact via WhatsApp
We provide a contact link to WhatsApp. When using this option, data is processed not only by us but also by WhatsApp Ireland Limited.
The use of WhatsApp is voluntary. You may contact us by email at any time instead.
Data may include your phone number, profile information (if available), message content, and technical metadata.
WhatsApp processes data under its own responsibility. Further information can be found at:
https://www.whatsapp.com/legal/privacy-policy-eea
Our website contains links to external websites (e.g. LinkedIn). When you click such a link, you leave our website. Data processing on the target site is the responsibility of the respective provider.
We disclose personal data only where necessary, in particular to processors (hosting, IT), analytics providers (with consent), authorities where legally required, or legal advisors and courts for the assertion of legal claims.
You have the rights to access, rectification, erasure, restriction of processing, data portability, objection, and withdrawal of consent in accordance with Articles 15-21 GDPR.
Requests may be addressed to: hello@utover.com
You have the right to lodge a complaint with a supervisory authority. The competent authority for North Rhine-Westphalia is the State Commissioner for Data Protection and Freedom of Information of North Rhine-Westphalia (LDI NRW).
Kavalleriestr. 2-4
40213 Düsseldorf
Email: poststelle@ldi.nrw.de
https://www.ldi.nrw.de
Providing personal data is generally neither legally nor contractually required. However, without certain data, we may not be able to process your inquiry.
No automated decision-making within the meaning of Art. 22 GDPR takes place.
We reserve the right to amend this privacy policy if required due to changes in legal requirements, technical changes, or new or further developed services.
Dialog window. Tab moves focus within the dialog. Escape closes the dialog.
UTOVER combines web application development with controlled access, separate data domains, and operations that account for recovery. This overview describes selected safeguards in our own working environment and web platform.
The use of security keys is mandatory throughout the company. Our administration platform uses WebAuthn with required user verification and authentication bound to the service.
Permissions distinguish between reading, editing, and administrative tasks. Access is checked on the server against the assigned role and user group. Sign-in activity and security-relevant administrative actions are logged.
The public website and internal administration use separate data domains and access permissions. Public content is made available through a dedicated publication process; the website cannot directly access internal administration tables. Data is transmitted over HTTPS. Selected sensitive data is also encrypted at the application level before storage. This encryption also verifies the integrity of that data.
Backups are performed daily. Recovery is tested monthly in practice. These tests check that backed-up data can actually be restored.
Security requirements depend on the engagement, the data being processed, and the systems involved. The following matters are particularly relevant when defining technical and contractual requirements:
For questions about these documents and requirements for your vendor assessment, please contact hello@utover.com. The scope of services, responsibilities, and any service commitments are set out in the applicable agreements.
Potential security vulnerabilities can be reported to security@utover.com. Please identify the affected system and describe your observation without including credentials or other people's personal data.
Information about the processing of personal data on this website is available in our Privacy Policy.
Dialog window. Tab moves focus within the dialog. Escape closes the dialog.
Information pursuant to Section 5 of the Digital Services Act (DDG)
UTOVER GmbH
Taubenweg 14
51381 Leverkusen
Germany
René Hansen
Email: hello@utover.com
Inquiry via WhatsApp: Start chat
Registered in the Commercial Register.
Register court: Amtsgericht Köln
Registration number: HRB 114081
DE316232222
DE20ZZZ00002121678