Privacy Policy

Version 2.5 – Last updated on 2026-07-13

This privacy statement applies to visitors of https://maconsim.com, users of MaConSim software, customers, and business contacts who interact with our services.

Unless otherwise stated, MaConSim GmbH is the controller for the processing of personal data described in this privacy statement (Art. 4(7) GDPR).

Introduction

This privacy statement explains which personal data we process, for which purposes, on which legal bases, where data is stored, and how long it is retained.

We use Paddle as Merchant of Record for purchases and subscription billing. Paddle processes payment and billing data under its own responsibility. MaConSim receives only the data needed for license and subscription management, support, and service delivery.

For more information, please refer to Paddle's Privacy Policy.

1.1 License and Access Management

Data processed:

  • License Key
  • License ID
  • Paddle Subscription ID
  • Subscription Details (creation date, expiry date, plan type, time remaining)
  • Machine Slots

How data is used:

  • Generate and deliver license keys.
  • Validate subscription status and grant access to paid features.
  • Link local license records to Paddle subscription records.
  • Manage subscription status, access rights, and service delivery.
  • Enforce machine slot limits.

Legal basis:

  • Contract Performance (GDPR Art. 6(1)(b))

Storage location:

  • MaConSim License Server, hosted on VPS by IONOS SE in Berlin, Germany

Retention period:

  • Deleted 6-12 months after subscription ends, unless longer retention is required by applicable law

Data source:

  • System-generated by MaConSim License Server (License Key, License ID)
  • Paddle server after subscription creation (Paddle Subscription ID, Subscription Details)
  • Local MaConSim software after valid license activation (Machine Slots)

1.2 Account Management and Anti-Abuse

Data processed:

  • Customer Email Address

How data is used:

  • Contact the customer (for example, license delivery and account communication).
  • Prevent repeated free-trial abuse by checking for duplicate trial subscriptions.

Legal basis:

  • Contract Performance (GDPR Art. 6(1)(b)) for contact and service delivery
  • Legitimate Interest (GDPR Art. 6(1)(f)) for anti-abuse verification

Storage location:

  • MaConSim License Server, hosted on VPS by IONOS SE in Berlin, Germany

Retention period:

  • Deleted 6-12 months after subscription ends, unless longer retention is required by applicable law

Data source:

  • Paddle server after subscription creation

1.3 Support Services

Data processed:

  • Email
  • License ID
  • Device/OS information (User Agent)

How data is used:

  • Support ticket creation and management.

Legal basis:

  • Contract Performance (GDPR Art. 6(1)(b))

Storage location:

  • GitHub servers (third-party processor), in issues/repositories used for ticket tracking

Retention period:

  • Deleted 6-12 months after support ticket closure, unless longer retention is required by applicable law

Data source:

  • User submission via MaConSim program

1.4 Appointment Scheduling

Data processed:

  • Name
  • Email address

How data is used:

  • Booking and managing meetings.
  • Sending confirmations and reminders.

Legal basis:

  • Contract Performance (GDPR Art. 6(1)(b)) where the appointment relates to initiating or fulfilling a contractual relationship
  • Legitimate Interest (GDPR Art. 6(1)(f)) for managing business inquiries and appointments

Storage location:

  • SimplyMeet.me servers (third-party processor)

Retention period:

  • According to SimplyMeet.me retention policy, unless longer retention is required by applicable law

Data source:


1.5 General Contact Requests

Data processed:

  • Name (if provided)
  • Email address
  • Phone number (if provided)
  • Company name (if provided)
  • Message content

How data is used:

  • Respond to general inquiries from potential customers, customers, and business contacts.
  • Handle pre-contractual requests and business communication.

Legal basis:

  • Contract Performance (GDPR Art. 6(1)(b)) where communication is necessary for pre-contractual steps or contract performance
  • Legitimate Interest (GDPR Art. 6(1)(f)) for handling general business inquiries and communication

Storage location:

  • MaConSim business email and communication systems

Retention period:

  • Deleted 6-12 months after the last contact, unless longer retention is required by law

Data source:

  • Data subject directly (email, phone, or other direct contact channels published on https://maconsim.com)

Data processed:

  • Consent status and consent preferences
  • Consent timestamp
  • User ID (pseudonymous consent record identifier)
  • IP address
  • Region/jurisdiction

How data is used:

  • Document and demonstrate user consent choices for cookie compliance obligations.

Legal basis:

  • Legal Obligation (GDPR Art. 6(1)(c))
  • Legitimate Interest (GDPR Art. 6(1)(f)) for accountability and legal defense

Storage location:

  • Stored only on MaConSim's server (IONOS WordPress Hosting)

Retention period:

  • 356 days

Data source:

  • Generated when a user interacts with the cookie consent banner/settings

2. Recipients and Roles

We involve the following third parties:

  • Paddle: Merchant of Record and independent controller for payment and billing processing. See Paddle Privacy Policy
  • IONOS SE: Infrastructure host for MaConSim License Server (hosting provider engaged by MaConSim)
  • GitHub: Support ticket infrastructure provider (processor). See GitHub Privacy Policy
  • SimplyMeet.me: Appointment scheduling provider (processor). See SimplyMeet.me Privacy Policy

3. Cookies

Our website uses cookies and similar technologies. These may include technically necessary cookies and, depending on your settings, analytics or preference cookies.

Where required by law, non-essential cookies are only used after your consent.

For more information about the cookies we use, their purposes, and how you can manage your preferences, please refer to our Cookie Policy at https://maconsim.com/cookie-policy/.

4. International Data Transfers

Where personal data is processed outside the EU/EEA, we implement appropriate safeguards in accordance with GDPR Chapter V, such as Standard Contractual Clauses (SCCs), where required.

This may apply in particular to service providers such as Paddle, GitHub, and SimplyMeet.me, depending on their processing locations and subprocessors.

5. Disclosure Practices

We may disclose personal data where required by law, court order, or lawful request by public authorities. We may also disclose data in connection with a merger, acquisition, reorganization, or sale of assets, subject to applicable law.

6. Security

We implement appropriate technical and organizational measures to protect personal data against unauthorized access, alteration, disclosure, or destruction. Access is limited to personnel who need the data for their tasks.

7. Third-Party Websites

This privacy statement does not apply to third-party websites linked from our services. Please review their privacy statements separately.

8. Changes to This Privacy Statement

We may update this privacy statement from time to time. The latest version is published at this location with an updated date.

9. Your Rights

Depending on applicable law, you may have the right to:

  • Access your personal data
  • Rectify inaccurate personal data
  • Erase personal data
  • Restrict processing
  • Data portability
  • Object to processing based on legitimate interests
  • Withdraw consent where processing is based on consent

To exercise your rights, contact us using the details below.

10. Complaints

If you believe your data protection rights were violated, you can lodge a complaint with a competent supervisory authority. You can do so, for example, with the supervisory authority in your place of residence, your place of work, or the place of the alleged infringement.

For North Rhine-Westphalia, this is the Landesbeauftragte fuer Datenschutz und Informationsfreiheit Nordrhein-Westfalen (LDI NRW).

11. Contact Details

MaConSim GmbH

Kaiserswerther Strasse 11

50739 Koeln

Germany

  • Register Court: Amtsgericht Koeln
  • Commercial Register Number (Handelsregisternummer): HRB 127508
  • VAT ID (USt-IdNr.): DE462105321
  • CEOs (Geschaeftsfuehrer): Timothee Guesten and Robert Schirmer
  • EU Representative (Art. 27 GDPR): Not applicable (controller established in Germany)
  • Data Protection Officer (DPO): No DPO has currently been appointed because MaConSim is currently not legally required to appoint one
  • Website: https://maconsim.com
  • Email: contact@maconsim.com
  • Phone number: 00491631465048

1. Purpose, data and retention period

We may collect or receive personal information for a number of purposes connected with our business operations which may include the following: (click to expand)