Privacy Policy
Reviewed on: 9/18/2026These texts are also published on slt.de: GTC · Withdrawal information · Privacy
1. Privacy at a Glance
General Information
The following notes provide a simple overview of what happens to your personal data when you visit this website. Personal data is any data that can be used to identify you personally.
2. Controller and Hosting
Responsible Party
The party responsible for data processing on this website is the German civil-law partnership (GbR):
SLT-SoftwareBauer & Schmid GbR
Mittelfeldstraße 29
70806 Kornwestheim
Vertreten durch / Represented by:
Alexander Bauer, Dr. Wolfgang Schmid
Telefon: 07154-8062415
Fax: 07154-8062416
E-Mail: info@slt.de
Webseite: slt.de
Further information about the company operating Hurra Mathe can be found at slt.de.
Hosting
We host the contents of our website with the following provider:
Fritz Managed IT GmbHÖtterichweg 7
DE-90411 Nürnberg
The use of the hosting provider is based on Art. 6 (1) (f) GDPR. We have a legitimate interest in a technically reliable and secure presentation of our website.
3. Data Collection on this Website
Browser storage
Essential cookies and comparable storage support sign-in, security, language, display mode, offline use and learning progress. They are based on providing the requested service or our legitimate interest in secure, functional operation.
- Essential Local Storage, Session Storage and IndexedDB
- No analytics, tracking or advertising services
As only strictly necessary storage is used, no consent and no cookie banner are required. Purposes, lifetimes and legal bases are explained in the Cookie Policy.
Server Log Files
The provider of these pages optionally and automatically collects and stores information in log files that your browser transmits to us:
- Browser type and version
- Operating system used
- Referrer URL (the previously visited page)
- Host name of the accessing computer
- Time of the server request
- IP address
This data is technically required for the secure operation of the website. Processing takes place in accordance with Art. 6 (1) (f) GDPR.
Fonts (locally hosted)
We use web fonts for a consistent display of typefaces. They are installed locally on our web server. No connection to external servers (e.g. Google Fonts) takes place.
Contact by Email, Phone or Fax
When you contact us by email, phone or fax, your request including all resulting personal data (name, request) is stored and processed by us for the purpose of handling your enquiry. We do not pass on this data without your consent.
Processing of this data is based on Art. 6 (1) (b) GDPR, provided that your request is related to the performance of a contract or is necessary to carry out pre-contractual measures. In all other cases, processing is based on our legitimate interest in effectively handling enquiries addressed to us (Art. 6 (1) (f) GDPR) or on your consent (Art. 6 (1) (a) GDPR), if requested; consent can be revoked at any time.
The data you send us via contact requests remains with us until you ask us to delete it, revoke your consent for storage, or the purpose for data storage ceases (e.g. after we have finished handling your enquiry). Mandatory legal provisions – in particular statutory retention periods – remain unaffected.
Processing in the Learning Trainer (Hurra Mathe)
As soon as you register for an account or use the trainings included in the app, additional personal data is processed (email, learning progress, optionally your child’s profile name).
For authentication and secure storage we use Google Firebase (Authentication, Firestore, Cloud Functions). The Cloud Functions and named Firestore database are configured in europe-west3 (Frankfurt). According to Google, Firebase Authentication is instead operated exclusively from US data centres, while App Check uses global infrastructure. For paid subscriptions, payments are processed by Stripe. The controller for data processing at Stripe is Stripe Technology Company, Limited (STC), One Wilton Park, Wilton Place, Dublin 2, D02 FX04, Ireland, Stripe’s main establishment in Europe and controller for data processed outside the Americas. For regulated payment services, STC, Stripe Payments Europe, Limited (SPEL) and the locally regulated Stripe entity act as joint controllers; the e-money institution is Stripe Technology Europe, Limited, regulated by the Central Bank of Ireland. For transfers to third countries Stripe relies on the EU-US Data Privacy Framework and standard contractual clauses.
Where data is transferred to a third country, the providers state that suitable safeguards include EU Standard Contractual Clauses (Art. 46 GDPR), the EU-US Data Privacy Framework where applicable, and supplementary technical and organisational measures (encryption in transit and at rest).
4. General Information and Mandatory Disclosures
Data Protection
We treat your personal data confidentially and in accordance with statutory data protection regulations and this privacy policy. By the purely informational use of this website, we collect only data that is technically necessary for operating the site.
SSL / TLS Encryption
For security reasons and to protect the transmission of confidential content, this page uses SSL or TLS encryption. You can recognise an encrypted connection by the fact that the browser’s address bar changes from "http://" to "https://" and by the lock symbol in your browser bar.
Note on Data Transfer to Third Countries
Apart from the transfers to Google Firebase and Stripe described above under "Processing in the Learning Trainer", no further third-party tools based outside the EU are integrated into this website. All transfers to third countries are secured by appropriate safeguards (EU Standard Contractual Clauses, EU-US Data Privacy Framework).
Your Rights (Information, Deletion, Complaint)
You have the right at any time to receive free information about the origin, recipients and purpose of your stored personal data. You also have the right to lodge a complaint with the competent supervisory authority.