Skip to main content
>switch_to
  • Services
  • Process
  • Start assessment
  • DEEN

Legal

Privacy policy

Last updated: 18 July 2026. Switch to is a product of Bubori GmbH.

1. Controller

The controller responsible for personal data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is:

Bubori GmbH
Industriestraße 3
78052 Villingen-Schwenningen
Germany

Represented by: Manuel Bubori (Managing Director)
Email: hello@bubori.com
Switch to inquiries: hello@switchto.dev
Phone: +49 7721 697 24 - 70

2. General information on data processing

We generally only process personal data of our users to the extent necessary to provide a functioning website with our content and services. Processing usually only takes place with the user's consent or in cases where prior consent cannot be obtained for factual reasons and processing is permitted by law.

Personal data is stored only as long as required for the relevant purposes or statutory retention obligations. Once the purpose no longer applies or a statutory retention period expires, the data is routinely blocked or deleted in accordance with legal requirements.

3. Website visit and server log files

When you access this website, the browser used by your device automatically sends information to our web server. This information is temporarily stored in what is known as a log file. The following data is recorded without your intervention and stored until automatic deletion:

  • IP address of the requesting device (in shortened / anonymised form)
  • Date and time of access
  • Name and URL of the retrieved file
  • Website from which access was made (referrer URL)
  • Browser used and, if applicable, the operating system of your device

The legal basis for processing is Art. 6(1)(f) GDPR. Our legitimate interest arises from the secure and stable operation of the website and from the analysis and remediation of technical faults. Log data is deleted at the latest after 30 days, unless it is needed to investigate a security incident.

4. Contact and assessment form

If you contact us by email or through the assessment form on this website, the data you provide (website URL, email address, current CMS and optional project notes) will be stored for the purpose of processing your request and in case of follow-up questions.

The legal basis for processing is Art. 6(1)(b) GDPR for contract-related inquiries; otherwise, our legitimate interest in effectively handling inquiries directed to us pursuant to Art. 6(1)(f) GDPR.

The assessment form opens an email draft in your mail program. The actual transmission therefore takes place via your email provider. If the form is additionally processed through a hosting service such as Netlify Forms, that service acts as a processor within the meaning of Art. 28 GDPR.

5. Hosting

This website is delivered as a static site. The hosting provider used processes data on our behalf that is generated when the website is accessed (see the "Server log files" section). Once the final hosting provider is determined, this section will be supplemented with: name, address and, where applicable, data processing agreement.

6. Cookies

This website currently does not use its own cookies or third-party cookies for analytics, marketing or tracking purposes. If optional services are integrated in the future that set cookies, you will be informed when accessing the website and asked for consent to the extent legally required.

7. Fonts, scripts and external resources

This website does not load any resources from third-party servers. All fonts, scripts, images and graphics are served exclusively from our own server.

The "Fraunces", "Geist" and "Geist Mono" font families are stored locally on our server and loaded from there. No connection is established to Google Fonts or any other font service, and no data — in particular not your IP address — is transmitted to Google or any other third party.

The GSAP JavaScript library used for animations is likewise served locally from our own server. No third-party content delivery network (CDN) is involved.

We also do not use map services, video embeds, social media plug-ins, web analytics services or external tracking tools. Visiting this website therefore involves no transfer of data to third parties and no transfer to countries outside the EU/EEA.

8. Legal bases for processing

Personal data is processed on one of the following legal bases:

  • Art. 6(1)(a) GDPR — your consent
  • Art. 6(1)(b) GDPR — performance of a contract or pre-contractual measures
  • Art. 6(1)(c) GDPR — compliance with a legal obligation
  • Art. 6(1)(f) GDPR — safeguarding our legitimate interests, provided your interests and fundamental rights do not override them

9. Your rights as a data subject

You have the following rights against us with regard to your personal data:

  • Right of access (Art. 15 GDPR)
  • Right to rectification (Art. 16 GDPR)
  • Right to erasure (Art. 17 GDPR)
  • Right to restriction of processing (Art. 18 GDPR)
  • Right to object to processing (Art. 21 GDPR)
  • Right to data portability (Art. 20 GDPR)

An informal message to hello@bubori.com is sufficient to exercise your rights.

10. Right to withdraw consent

If personal data processing is based on consent, you have the right to withdraw your consent at any time with effect for the future. The lawfulness of the processing carried out on the basis of consent up to the point of withdrawal is not affected.

11. Right to lodge a complaint with a supervisory authority

You have the right to lodge a complaint with a data protection supervisory authority about the processing of your personal data by us. The authority responsible for us is the State Commissioner for Data Protection and Freedom of Information of Baden-Württemberg (Landesbeauftragter für den Datenschutz und die Informationsfreiheit Baden-Württemberg), Königstraße 10a, 70173 Stuttgart, Germany.

12. SSL / TLS encryption

For security reasons and to protect the transmission of confidential content, such as requests you send to us, this website uses SSL or TLS encryption. You can recognise an encrypted connection by the fact that the browser's address bar changes from "http://" to "https://" and by the lock icon in your browser bar.

13. Updates and changes to this privacy policy

This privacy policy is currently valid and was last updated on 18 July 2026. As our website and services evolve, or due to changing legal or regulatory requirements, it may become necessary to update this privacy policy. The current version can be accessed at any time on this page.

© 2026 Switch to.

ImprintPrivacy
  • Services
  • Process
  • Start assessment
  • DEEN