Ridora
Privacy Policy
This policy describes processing on ridora.app. It covers the website and early-access enquiries; the app has not yet been publicly released.
1. Controller
2. Hosting and technically necessary data
This website is hosted by Hetzner Online GmbH on servers in Germany. When you visit the site, the server processes technically necessary connection data to deliver the website and maintain its security and stability.
- IP address
- date and time of access
- requested URL and access status
- referrer URL, where supplied by your browser
- browser, operating system, and protocol data
- amount of data transferred
The legal basis is Article 6(1)(f) GDPR. Our legitimate interest is the secure and functional operation of the website. Log data are processed only as necessary for operation, troubleshooting, and security.
3. Language preferences
When you manually choose a language, the website stores that choice in the functional “ridora-locale” cookie. The cookie contains only “de” or “en”, is not used for tracking, and is retained for up to one year. The legal basis is Article 6(1)(f) GDPR; our legitimate interest is a user-friendly language experience.
4. Early access and email contact
The “Request early access” link opens your email application. The website has no early-access form and no newsletter sign-up. If you email us, we process your email address and the information you choose to provide solely to answer your enquiry and coordinate possible early access. A request does not create an entitlement to access; we do not send marketing email for this purpose without a separate legal basis.
Email communication is processed through IONOS SE. The legal basis is Article 6(1)(b) GDPR where the enquiry concerns taking steps toward a user relationship and otherwise Article 6(1)(f) GDPR based on our legitimate interest in handling enquiries. The data are stored only for as long as needed to handle the enquiry; statutory retention obligations remain unaffected.
5. Public previews and Supabase
For public ride previews and club-invitation pages, the website retrieves data server-side from the Supabase backend in use. The primary project region is Central EU (Frankfurt). Only data intended for the relevant public preview are processed. This processing is necessary to provide the preview you requested under Article 6(1)(f) GDPR. App-specific processing is outside the scope of this website policy and will be described separately before the app is publicly released.
6. No analytics or marketing services
Based on the reviewed website source, no analytics, tracking, or marketing services are used. The site does not load external webfonts, maps, embedded third-party content, or advertising scripts. Under the current technical implementation, there are no analytics or marketing cookies that require a consent banner.
7. Recipients and international transfers
Recipients or processors are Hetzner Online GmbH for hosting, IONOS SE for email communication, and Supabase, Inc. for backend and database services. Data-processing agreements are in place with Hetzner and IONOS; Supabase incorporates its Data Processing Addendum into its terms. The primary Supabase project region in Frankfurt does not rule out processing by subprocessors outside Germany or the European Economic Area. Where data are transferred to third countries, the transfer is based on the applicable safeguards under Chapter V GDPR, in particular Standard Contractual Clauses where required.
8. Your rights
- access to your processed personal data
- rectification of inaccurate data
- erasure or restriction of processing
- objection to processing based on legitimate interests
- data portability, where applicable
- the right to lodge a complaint with a data-protection supervisory authority
9. Contact
For privacy questions or to exercise your rights, contact:support@ridora.app
10. Version
Version: 23 August 2026. This policy is based on the website repository and is not legal advice.