petar. petar.

Privacy Policy

Last updated: June 2026

1. Controller

The controller responsible for data processing on this website is:
Petar Markovic, Roonstr. 16, 12203 Berlin, Germany
Email: legal@petar.com · Phone: +49 175 400 3162

2. General

We treat your personal data confidentially and in accordance with statutory data protection regulations (GDPR) and this privacy policy. Using our website is generally possible without providing personal data.

3. Hosting & server log files

This website is hosted by Vercel Inc. (USA). When you visit, the server automatically records information in log files (IP address, date/time, browser type and version, operating system, referring URL) transmitted by your browser, to ensure secure, stable operation and prevent abuse. The legal basis is our legitimate interest (Art. 6(1)(f) GDPR). A data processing agreement is in place; any transfer to the USA is based on the EU Standard Contractual Clauses.

4. Cookies & consent

We only use technically necessary cookies / local storage (e.g. for the light/dark theme and, in the member area, the login session). These are required for operation (Art. 6(1)(f) GDPR). Analytics or marketing cookies are only set with your explicit consent (Art. 6(1)(a) GDPR), which you can withdraw at any time via “Cookie settings” in the footer.

Google Analytics: With your consent we use Google Analytics 4, a web analytics service provided by Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland). It uses cookies to analyse how you use the site (e.g. pages visited, time on page, approximate location, device/browser). Your IP address is truncated (anonymised). The analytics script loads only after you consent; without consent no connection to Google is made and no analytics cookies are set. The legal basis is your consent (Art. 6(1)(a) GDPR), which you can withdraw at any time via “Cookie settings” in the footer; withdrawing removes the GA cookies. Data may be transferred to the USA on the basis of the EU Standard Contractual Clauses. See Google's privacy policy for more.

5. Contact

If you contact us by email or via the contact form, your details (name, email address, message) are processed to handle your request and any follow-up. The legal basis is Art. 6(1)(b) GDPR (pre-contractual/contractual measures) or (f) (legitimate interest in responding). Data is deleted once no longer required.

The contact form is operated technically via Web3Forms: the data you enter is transmitted to Web3Forms, processed there and delivered to us by email. A data processing agreement (Art. 28 GDPR) is in place; a transfer to a third country may occur, based on appropriate safeguards (EU Standard Contractual Clauses). Alternatively you can always email us directly at hello@petar.com.

6. Member area “Academy”

The protected member area requires registration/login. We process your email address, optionally your name, and your learning progress (completed lessons, quiz results, certificates). Legal basis: Art. 6(1)(b) GDPR. Authentication and storage are provided by Neon (Neon Inc., USA) as a processor (Postgres database & Neon Auth). You may optionally sign in with Google. Transfers to the USA are based on the EU Standard Contractual Clauses.

Lessons may embed videos via YouTube (Google Ireland Ltd.). We use the enhanced privacy mode (youtube-nocookie.com) and the video loads only after you click; no connection to YouTube occurs before that. Loading it may transfer data to Google and set cookies, subject to Google's privacy policy.

7. Appointment booking

On the “Book a call” page you can book a call directly. We process your name, email address and, if provided, your message to arrange and confirm the appointment. This data is stored in our own database at Neon (Neon Inc., USA — see sections 6/10). Legal basis: Art. 6(1)(b) GDPR (carrying out the booking) and your explicit consent via the checkbox in the booking form (Art. 6(1)(a) GDPR). The confirmation and notification emails are sent via Brevo (Sendinblue GmbH), which receives your name and email address. You can cancel any time via the link in the confirmation email — doing so erases your personal data for that booking. Booking data is removed at the latest 90 days after the appointment.

8. Website feedback

On the “Feedback” page you can enter a website's address, mark spots on an automatically generated screenshot and comment on each pin. We generate the screenshot on our own server (a headless browser); the address you enter and your IP address are not sent to a third-party screenshot service. On submission we process your name, email address, the website address you entered, your pins with their comments and an optional message, in order to handle your feedback and reply to you. This data is stored in our own database at Neon (Neon Inc., USA — see sections 6/10); confirmation and notification emails are sent via Brevo (Sendinblue GmbH). Legal basis: your consent via the checkbox in the form (Art. 6(1)(a) GDPR) and, where applicable, the initiation of a contract (Art. 6(1)(b) GDPR). For abuse prevention (rate limiting) we also briefly store your IP address; it is anonymized after 30 days at the latest. Feedback data is deleted at the latest 180 days after receipt.

9. Fonts

Fonts are served locally from our server. There is no connection to Google Fonts or other third parties, and no data is transferred to them.

10. Recipients / processors

Within the scope described above, the following processors (Art. 28 GDPR) have access: Vercel (hosting), Neon (database/authentication, appointment booking, website feedback), Web3Forms (contact-form delivery), Brevo / Sendinblue GmbH (sending booking and feedback emails), Google Ireland Ltd. (Google Analytics – only with your consent). No further disclosure occurs without your consent or a legal basis.

11. Your rights

You have the right to access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20) and objection (Art. 21 GDPR). You can withdraw consent at any time. You also have the right to lodge a complaint with a supervisory authority.

12. SSL/TLS encryption

This site uses SSL/TLS encryption for security (visible via “https://” and the lock icon).

13. Changes

This policy is updated whenever our processing changes. The current version applies.

Note: This privacy policy was prepared carefully but does not constitute legal advice. Please have it reviewed by a qualified professional before going live and adapt it to your specific processing.