Back to profile

Legal

Privacy Policy

Last updated: July 2026

This privacy notice explains how personal data is processed on this personal professional website in accordance with the EU General Data Protection Regulation (GDPR) and the German Telecommunications Digital Services Data Protection Act (TDDDG).

1. Data Controller

Antonio San Martino — Frankfurt am Main, Germany.

As this is a personal executive website, any inquiries regarding data protection, access, or deletion may be submitted directly via the Executive Contact Form.

2. Collection and Processing of Personal Data

Personal data (such as full name, corporate email address, organization name, and message content) is collected strictly when voluntarily submitted through:

  • The Contact & Dialogue Form
  • The Executive Profile Request Form

No personal data is collected for commercial advertising, marketing campaigns, or automated profiling (Art. 22 GDPR).

3. Purpose and Legal Basis for Processing

  • Executive Communication & Networking: Data submitted through forms is processed to respond to professional inquiries, based on your consent (Art. 6(1)(a) GDPR) and legitimate interest in establishing professional dialogue (Art. 6(1)(f) GDPR).
  • Technical Operation & Security: Server log files and essential session data are processed to ensure technical availability, proper rendering, and the cybersecurity of this platform (Art. 6(1)(f) GDPR).

4. Cookies and Preference Management

  • Essential Cookies: Strictly required for site security, language routing, and technical functionality. These are set automatically and do not require consent.
  • Analytics Cookies: Used solely to measure aggregate, anonymized traffic statistics only if you explicitly select "Accept All" on the cookie banner.

You can modify or withdraw your consent at any time by clicking the "Manage Cookie Preferences" link in the footer.

5. Hosting, Data Storage, and Transfers

This personal website is hosted on secure European-standard cloud infrastructure with end-to-end transport encryption (TLS/SSL) in transit and at rest. Data submitted through forms is transmitted securely to the Data Controller's access-controlled system. No personal data is sold, rented, or transferred to third parties for commercial purposes.

6. Data Retention

Messages and inquiry data are retained only as long as necessary to conclude the professional exchange, after which they are securely deleted, unless a longer statutory retention period applies under applicable law.

7. Your Rights, Opt-Out, and Exercise of Control

Under the GDPR, you hold full rights regarding your personal data:

  • Right to access, rectification, erasure ("right to be forgotten"), or restriction of processing.
  • Right to data portability and the right to withdraw consent at any time with immediate effect.

You may submit a direct request for data deletion or opt-out from further communication at any time via the Executive Contact Form.

How to exercise your rights or opt out: all requests will be processed promptly and free of charge.

Supervisory Authority

You also have the right to lodge a complaint with the competent supervisory authority:

Der Hessische Beauftragte für Datenschutz und Informationsfreiheit (HBDI)

Wiesbaden, Germany

datenschutz.hessen.de