This is a courtesy translation. Only the German version of this page is legally binding.
This privacy policy informs you about which personal data we process when you visit our website speakerradar.ai, use our app at app.speakerradar.ai or contact us. In Section 4 we also explain how we handle data of persons who are named as organizers or contact persons in publicly available sources on the internet, such as news articles or organizers’ websites.
1. Controller
The controller responsible for data processing within the meaning of the GDPR is:
Sven Böttger Digital Ventures
Owner: Sven Böttger
Kollwitzstraße 30
10405 Berlin
Germany
Email: contact@myos.solutions
We are not legally required to appoint a data protection officer. For any questions about data protection, you can reach us at the email address given above.
2. Visiting this website
Hosting and server log files
This website is hosted by Vercel Inc., 440 N Barranca Ave #4133, Covina, CA 91723, USA. The website is delivered from a data center in Frankfurt am Main. For fast delivery, Vercel additionally uses a worldwide server network, so a request may also pass through a server outside the EU. When you access the website, Vercel automatically processes information transmitted by your browser and stores it in server log files. This includes your IP address, the date and time of access, the page accessed, the referring website, the browser type and browser version, and the operating system used.
We need this data to deliver the website securely and without technical errors and to fend off attacks. The legal basis is Art. 6(1)(f) GDPR. Our legitimate interest lies in the secure and stable operation of the website. We do not combine this data with other data sources and do not analyze it for marketing purposes. The log files are deleted automatically after a short period unless they are needed for longer to investigate a specific security incident. Vercel acts for us as a processor pursuant to Art. 28 GDPR. For transfers to third countries, see Section 6.
No cookies, no tracking
On this website we do not use cookies, analytics tools, or tracking or marketing services. No information is stored on or read from your device. Should we change this in the future, we will update this privacy policy beforehand and, where required, obtain your consent.
Fonts
The fonts used on this website are served from our own server. No connection to external font providers is established when the page loads.
Contact by email
If you write to us by email, we process your email address, your name and the content of your message in order to respond to your inquiry. The legal basis is Art. 6(1)(b) GDPR where your inquiry relates to a contract or its initiation, and otherwise Art. 6(1)(f) GDPR. Our legitimate interest lies in responding to your request. For our email mailbox we use a professional email provider that acts for us as a processor. We delete your inquiry once it has been conclusively dealt with and no statutory retention obligations prevent deletion. We retain business correspondence for up to six years in accordance with commercial and tax law provisions.
3. Use of the SpeakerRadar app
Customer account and contract processing
When you create an account and use SpeakerRadar, we process the data required to provide the service. This includes your name, your email address, your password (stored only in encrypted form as a hash), your chosen plan and its status, your speaker profile with profile text, markets and form of address in the export, your alerts and search terms, the events found and rated for you, your decisions regarding them (such as qualifying, disqualifying, stage) and events you have created yourself. In addition, there is technical data such as login times and the IP address at login, which we need to secure your account.
The legal basis is Art. 6(1)(b) GDPR, as the processing is necessary for the performance of the contract with you. For securing the account and preventing misuse, we additionally rely on Art. 6(1)(f) GDPR.
Login cookies in the app
So that you stay logged in to the app, we store session information in cookies in your browser after you log in. These cookies contain an encrypted login token, are renewed each time you access the app and are removed when you log out. They serve exclusively for login purposes, not for analytics or advertising. Storing and reading these cookies is permitted without consent under § 25 (2) No. 2 TDDDG because the service you have expressly requested could not otherwise be provided. The subsequent processing is based on Art. 6(1)(b) GDPR. We do not use any other cookies, analytics or tracking tools in the app either.
System emails
Where necessary for your account, we send system messages to your email address, for example to reset your password. We do not send you promotional emails or newsletters without your consent. For the technical delivery, we use our authentication service Supabase and the email delivery service Resend, Inc., 2261 Market Street #5039, San Francisco, CA 94114, USA, as processors. The legal basis is Art. 6(1)(b) GDPR. For transfers to third countries, see Section 6.
Hosting, database and authentication
The app is likewise operated on Vercel Inc. (see above for address). For the database, authentication and the execution of searches, we use Supabase, Inc., 970 Toa Payoh North #07-04, Singapore 318992. Your data is stored in a data center in Frankfurt am Main, that is, within the European Union. Both providers act for us as processors pursuant to Art. 28 GDPR. Since they are based outside the EU, access from third countries, for example in the course of maintenance and support, cannot be completely ruled out. The safeguards described in Section 6 apply to this.
Execution of your alerts
Your alerts search publicly available German-language news sources. For this purpose, our servers transmit your search terms to the search service Serper (serper.dev), which queries the news sources for us, and retrieve the articles found from the respective publishers. These retrievals are made from our servers. Your name, your email address or your IP address are not transmitted in the process. Please do not use names of private individuals in your search terms.
Payment processing via Stripe
We process billing for your plan through Stripe Payments Europe, Limited, 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, D02 H210, Ireland. You enter your payment data, such as credit card or bank account details, directly with Stripe. We do not receive this data, only information on payment status, the plan and invoices, as well as your name or company name, your billing address, your email address and, if you provide it, your VAT identification number. Through Stripe’s customer portal you manage your payment method, billing address and invoices.
The legal basis is Art. 6(1)(b) GDPR and, for the retention of invoice data, Art. 6(1)(c) GDPR in conjunction with the retention obligations under commercial and tax law. Stripe processes payment data in part as an independent controller, for example for fraud prevention and to comply with financial supervisory obligations, and may transfer data to Stripe, Inc. in the USA. The safeguards described in Section 6 apply to this. For further information, please see Stripe’s privacy policy at stripe.com/privacy.
AI-assisted analysis via Anthropic
To analyze news articles, we use AI language models of Anthropic PBC, 548 Market Street, PMB 90375, San Francisco, CA 94104, USA, via its application programming interface. In doing so, we transmit the text of publicly available articles so that the model can identify events, organizers and contact persons in them. To assess how well an event fits you and to suggest search terms, we additionally transmit your profile text and your markets. We do not transmit your name, your email address or your payment data.
The legal basis for processing your profile text is Art. 6(1)(b) GDPR, and for processing the article content Art. 6(1)(f) GDPR (see Section 4). Anthropic acts for us as a processor. Under Anthropic’s commercial terms, content transmitted via the interface is not used to train the models. For transfers to the USA, see Section 6.
The fit rating is an automatically generated assessment that helps you select events. It rates events, not persons, and is not an automated decision within the meaning of Art. 22 GDPR. You decide for yourself whether to pursue an event.
Retention period of your account data
We store your account data for the duration of the contract. After your plan ends, your account initially remains in place so that you can continue to view your events and resume your plan. You may request the deletion of your account at any time by email to contact@myos.solutions. We delete accounts without an active plan no later than 24 months after the end of the last paid period. We retain invoices and other accounting records for eight years in accordance with commercial and tax law provisions and restrict them from use for other purposes.
4. Information for persons named in publicly available sources
This section is addressed to persons whose data is processed in SpeakerRadar without being customers themselves, in particular employees of associations, companies, chambers and agencies who are named in reports about events or on websites about events. It serves to provide information pursuant to Art. 14 GDPR.
Controller
We are the controller responsible for collecting and storing this data in SpeakerRadar (for contact details, see Section 1). Customers who use or export data from SpeakerRadar for their own outreach are themselves independently responsible for that use.
What data we process and where it comes from
SpeakerRadar searches publicly available German-language news sources as well as publicly available websites, for example those of associations, companies and organizers, from Germany, Austria and Switzerland for events. If a person is named in such a source in connection with an event, we may store the following information:
- first name, last name and the form of address derived from them
- function or role and the organization the person works for
- business email address, telephone number or link to a professional profile, but only if this information is published verbatim in the source
- the connection to the event and the link to the source
The source of this data is exclusively publicly available news articles and websites. We store the source for each entry. We do not invent or guess email addresses and do not process private contact details or special categories of personal data. If no business contact option is given in a source, we do not store the person as a contact person.
Purpose and legal basis
The purpose is to show professional speakers events that match their offering, together with the business contact persons publicly named for them, so that the speakers can make a business inquiry. The legal basis is Art. 6(1)(f) GDPR.
Our legitimate interest and that of our customers lies in making publicly reported events and the business contact persons publicly named in connection with them findable and traceable in a structured way. We take your interests into account in the balancing of interests as follows: we only use information that you or your organization have made public yourselves in a professional context or that appears in a public report about your professional activity. We limit ourselves to the professional context and the connection to a specific event, do not create personality profiles, store the source for each entry so that its origin can be traced at any time, and delete your data without delay upon objection. SpeakerRadar itself does not contact you.
Recipients
The information is displayed only to SpeakerRadar customers with an active plan, namely when their alerts have found an event of the organization concerned or when they have unlocked the event in the event catalog for a fee. Before unlocking, customers see neither names nor contact details in the event catalog. These customers can export the information as a CSV or Excel file. For the processing, we use the processors Vercel, Supabase and Anthropic named in Section 3. SpeakerRadar itself does not send any emails or other messages to the persons named.
In our terms and conditions, our customers undertake not to contact anyone without their consent. If a customer nevertheless contacts you, the customer is solely responsible for doing so and must inform you about its own data processing at the latest at that time.
Retention period
We store the information as long as the event is relevant to our customers. We delete information on contact persons that is no longer confirmed in any source no later than 24 months after the last confirmation in a source. This way, an annually recurring event remains traceable until its next edition. If you object or request deletion, we will delete your data without delay.
Your right to object
You may object to the processing of your data in SpeakerRadar at any time. A short email to contact@myos.solutions is sufficient. Please state your name, your organization and, if applicable, the email address concerned so that we can find the entries.
Following your objection, we will delete your data without delay. We have no access to data that a customer has already exported beforehand. In this respect, please contact the customer who contacted you directly. You can find your further rights in Section 7.
Why we do not notify you individually
The information comes from a large number of public sources, which as a rule state no address or only a shared business address. Notifying each named person individually would only be possible with disproportionate effort and would require additional data about you. We therefore make this information publicly available on this page pursuant to Art. 14(5)(b) GDPR.
5. General retention period
Unless a more specific retention period is stated in this policy, we store personal data only for as long as is necessary for the respective purpose. Data that we must retain for commercial or tax law reasons is stored until the statutory periods expire and is restricted from use for other purposes. These periods are six years for business correspondence, eight years for accounting records such as invoices, and ten years for books and annual financial statements.
6. Transfers to third countries
Some of our service providers are based outside the European Union or may transfer data there, namely Vercel (USA), Supabase (USA and Singapore), Resend (USA), Anthropic (USA) and Stripe (USA). For the USA, there is an adequacy decision of the European Commission for companies certified under the EU-US Data Privacy Framework (Art. 45 GDPR). Where a provider is certified under it, the transfer takes place on this basis. Where a provider is not certified or data reaches other third countries, we have agreed standard contractual clauses of the European Commission with that provider (Art. 46(2)(c) GDPR). You can request a copy of these safeguards via the email address given above.
7. Your rights
You have the following rights with respect to us:
- Right of access to the data stored about you (Art. 15 GDPR)
- Right to rectification of inaccurate data (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to object to processing (Art. 21 GDPR)
- Right to withdraw consent given, with effect for the future (Art. 7(3) GDPR)
Right to object under Art. 21 GDPR: Where we process data on the basis of Art. 6(1)(f) GDPR, you may object at any time on grounds relating to your particular situation. We will then no longer process your data unless we can demonstrate compelling legitimate grounds for the processing that override your interests, or the processing serves the establishment, exercise or defense of legal claims. For persons named in publicly available sources (Section 4), we waive the requirement to give reasons for the objection and do not rely on overriding grounds.
To exercise your rights, an email to contact@myos.solutions is sufficient. We will respond within one month.
You also have the right to lodge a complaint with a data protection supervisory authority (Art. 77 GDPR). The authority responsible for us is the Berliner Beauftragte für Datenschutz und Informationsfreiheit (Berlin Commissioner for Data Protection and Freedom of Information), Alt-Moabit 59 to 61, 10555 Berlin, email: mailbox@datenschutz-berlin.de.
8. Obligation to provide data
You do not have to provide any personal data to visit this website, apart from the connection data transmitted for technical reasons. To use the app, we need your name, your email address and, for a plan, your billing details. Without this information, we cannot enter into a contract with you.
9. Data security
The website and app are delivered exclusively over an encrypted connection (TLS). Access within the app is restricted so that you only see your own data and the events found for you. We take appropriate technical and organizational measures pursuant to Art. 32 GDPR to protect your data.
10. Changes to this privacy policy
We update this privacy policy when our offering, the services used or the legal requirements change. The version published here applies in each case.