Gizlilik Politikası

Bu gizlilik politikası, SONNWIN'in kişisel verileri nasıl işlediğini açıklar — hem bu web sitesinde hem de SONNWIN Home Security Android uygulamasında — both on this website and in the SONNWIN Home Security Android app. It applies from April 2026.

Bölüm A – Web sitesi (sonnwin.eu)

1. Data Controller

SONNWIN
Boris Stengele
Mönchsbergweg 10
02782 Seifhennersdorf
Germany
Email: kontakt@sonnwin.eu

2. Hosting

This website is hosted by STRATO AG, Berlin, Germany. When you visit the website, STRATO automatically stores technical data (IP address, date/time, requested file, user agent) in server log files for security purposes. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in secure operation).

3. Server Log Files

Our hosting provider automatically collects: IP address, date/time of access, requested URL, data volume transferred, browser type/version, operating system. This data is not merged with other sources and is deleted when no longer needed.

4. Cookies

This website currently does not use any cookies for analytics or marketing purposes. Only technically necessary functions are used.

5. Contact

When you contact us via email, we process your data (email address, name, message content) to handle your inquiry. Legal basis: Art. 6(1)(b) and Art. 6(1)(f) GDPR. Data is deleted after your inquiry has been fully processed.

6. Newsletter / Updates

If you subscribe to SONNWIN updates, we use your email address exclusively for sending the requested information. Legal basis: Art. 6(1)(a) GDPR (consent). You can revoke your consent at any time by contacting info@sonnwin.eu.

7. No External Analytics or Tracking (Website)

This website does not use external analytics tools (e.g., Google Analytics) or marketing trackers. Data is not sold to third parties for advertising purposes.

8. SONNWIN AI Assistant (Chatbot)

We provide an AI-powered chat assistant on our website.

8.1 Data processed: Messages you enter, technical metadata (IP address, timestamp), system/error logs.

8.2 How it works: The chat assistant is based on a language model hosted on Hugging Face. Your inputs are transmitted to the hosted application. Data may be transferred to third countries.

8.3 Legal basis: Art. 6(1)(f) GDPR (legitimate interest in modern communication).

8.4 Storage: Chat contents are only stored as long as necessary for service provision and error analysis.


Bölüm B – SONNWIN Home Security Uygulaması

The following sections describe data processing in the Android app "SONNWIN Home Security" (available on Google Play Store).

9. Camera and Microphone Access

Purpose: The app uses your device's camera and microphone in Host mode for video surveillance: live streaming, AI motion detection, automatic alarm clips/photos, and two-way audio.

Processing: Camera and audio data are processed exclusively on-device or transmitted via peer-to-peer (WebRTC) directly to the connected viewer device. No video or audio is uploaded to SONNWIN servers. Optionally, alarm clips/photos can be backed up to your Google Drive (see Section 14).

Legal basis: Art. 6(1)(a) GDPR (your explicit consent via Android permissions). You can revoke permissions at any time in device settings.

10. Authentication and User Account

The app requires sign-in via Google Sign-In or email/password. Authentication is handled by Firebase Authentication (Google Ireland Limited). Data processed: email address, Google account ID, authentication token, last sign-in time. Legal basis: Art. 6(1)(b) GDPR (contract fulfillment).

11. Firebase Services

The app uses Firebase services (Google Ireland Limited). Firebase Realtime Database is located in europe-west1 (Frankfurt, Germany).

11.1 Realtime Database: Stores camera assignments, alarm events, user settings. No video/audio content.

11.2 Cloud Messaging (FCM): Delivers push notifications for alarm events.

11.3 Crashlytics & Analytics: The app uses Firebase Crashlytics for crash reporting and Firebase Analytics for anonymous usage statistics. You can opt out in app settings.

12. Advertising (Google AdMob)

The FREE version displays advertisements via Google AdMob (Google Ireland Limited). AdMob may process device identifiers and IP address. PRO subscribers see no ads. Legal basis: Art. 6(1)(a) GDPR (consent via EU consent dialog) and Art. 6(1)(f) GDPR (legitimate interest in financing the free version). You can reset your advertising ID or opt out of personalized ads in your Android settings.

13. WebRTC Streaming & TURN Server

13.1 Peer-to-Peer: The app uses WebRTC for video/audio transmission. In P2P mode, data flows directly between devices without passing through third-party servers.

13.2 TURN Relay: When P2P is not possible, a TURN relay server hosted by netcup GmbH (Karlsruhe, Germany) is used. Authentication uses HMAC-SHA1 signed credentials valid for 5 minutes. Data processed: anonymized user ID, IP address, session timestamp, data volume. Video/audio is only relayed, never stored or analyzed.

14. Google Drive Cloud Backup

The app optionally allows automatic backup of alarm clips and photos to your own Google Drive account. SONNWIN does not store copies. Upload occurs directly from your device using your Google OAuth token. Files are stored in an auto-created folder structure (SONNWIN/Alarms/Date/). Legal basis: Art. 6(1)(a) GDPR (your consent by enabling the backup feature).

15. AI-Based Motion Detection

The app uses an AI model (EfficientDet-Lite2, TensorFlow Lite, Apache 2.0 license) for automatic motion detection. All processing occurs entirely on your device (on-device). No camera images or analysis results are transmitted to external servers.

16. Google Play Billing (In-App Purchases & Subscriptions)

For PRO subscriptions and in-app purchases, the app uses Google Play Billing. Payment processing is handled entirely by Google Play. SONNWIN has no access to your payment methods. We only receive a purchase token, product ID, and purchase time for verification. Legal basis: Art. 6(1)(b) GDPR.

17. Alarm Preview Images (Image Server)

When an alarm occurs, a compressed thumbnail is temporarily stored on our image server (netcup GmbH, Germany) for push notification embedding. Thumbnails are automatically deleted after 30 days.

18. Delete Account and Data

You have the right to delete your SONNWIN account and all associated data at any time.

How to request deletion: Send an email to kontakt@sonnwin.eu with the subject "Delete account". Include the email address you registered with. We process your request within 30 days.

Data that will be deleted: Firebase user account, camera assignments, alarm events, usage quotas, purchase token hashes, temporary alarm thumbnails.

Data we cannot delete: Data in your Google Drive (managed by you), Google Play purchase history (managed by Google), data at Google (Analytics, AdMob — subject to Google's privacy policy).


Bölüm C – Ortak Hükümler

19. General Data Retention

Unless a more specific retention period is stated in this policy, we process and store personal data only as long as necessary for the respective purpose or as required by law.

20. Data Transfer to Third Countries

Through the use of Firebase services (Google Ireland Limited), personal data may be transferred to the USA. Google has committed to compliance with the EU-US Data Privacy Framework. TURN server and image server processing occurs exclusively on servers in Germany.

21. Your Rights

Under GDPR, you have the following rights: right of access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20), objection (Art. 21), and the right to lodge a complaint with a supervisory authority (Art. 77).

The competent supervisory authority is the Hessian Data Protection Commissioner (Hessischer Beauftragter für Datenschutz und Informationsfreiheit), Gustav-Stresemann-Ring 1, 65189 Wiesbaden.

22. Right to Object (Art. 21 GDPR)

You have the right to object at any time, on grounds relating to your particular situation, to the processing of your personal data based on Art. 6(1)(f) GDPR.

23. Changes to This Privacy Policy

We reserve the right to update this privacy policy to comply with current legal requirements or to reflect changes to our services. The version available on this page always applies.

Son güncelleme: Nisan 2026