Privacy policy
1. Controller
Wörners-Drechsel-Schmiede (brand: woerner.systems)
Represented by Bernd Wörner and Benedikt Wörner
Drei-Tore-Straße 8, 77815 Bühl, Germany
Phone: +49 173 9206099, Email: bernd.woerner@woerner-ds.de
2. No cookies, no tracking
This website uses no cookies, no analytics services and embeds no third-party content (e.g. Google Fonts, CDNs or social media plugins). Fonts, scripts and images are served from our own server. A cookie banner is therefore not required. The only exception is the spam protection of the forms (Cloudflare Turnstile, see section 4), which is loaded only when a form is used and sets no tracking cookies.
3. Server log files (hosting)
When you visit the website, our server automatically processes technical access data (IP address, date and time, page accessed, browser type) as far as required for secure operation. The legal basis is Art. 6 (1) (f) GDPR (legitimate interest in secure, stable operation). Log data is deleted after [ANZAHL, z. B. 14] days at the latest. Server location: Germany/woegra.de.
4. Contact and sample forms, email contact
If you contact us via a form or by email, we process the data you provide (name, email address, company, phone number, shipping address for samples and message content, where given) exclusively to handle your request or to send the samples. The legal basis is Art. 6 (1) (b) GDPR (pre-contractual measures) or Art. 6 (1) (f) GDPR. Data is transmitted encrypted to our mailbox.
Spam protection (Cloudflare Turnstile): To protect the forms against automated abuse we use Cloudflare Turnstile (Cloudflare, Inc., 101 Townsend St, San Francisco, CA 94107, USA; EU representative: Cloudflare Portugal, Unipessoal Lda.). Turnstile is only loaded once you start filling in a form and checks technical characteristics (e.g. IP address, browser information, interaction behaviour) to determine whether the input comes from a human. Turnstile does not set tracking cookies. Legal basis is Art. 6(1)(f) GDPR (legitimate interest in preventing spam and abuse). Cloudflare is certified under the EU-US Data Privacy Framework; standard contractual clauses apply in addition. Details: cloudflare.com/privacypolicy.
5. Retention and deletion of requests
Requests are deleted after final processing, at the latest after [z. B. 6 Monaten], if no order results. For orders, the statutory commercial and tax retention periods (6 or 10 years) apply to the relevant documents.
6. Your rights
You have the right to access (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20) and to object to processing (Art. 21). You also have the right to lodge a complaint with a data protection supervisory authority (Art. 77 GDPR).
7. Security
The website is fully TLS-encrypted (HTTPS). Form submissions are transmitted encrypted to our mailbox.
Version: October, 2026