AnnexGroup

Legal

Privacy policy

Last updated: 29 July 2026

Working translation. The German version of this text is legally binding.

This site sets no cookies for analytics or advertising, embeds no external fonts, maps or scripts, and transmits no data to third parties beyond the purposes stated below.

1. Controller

ma-kom agentur UG (haftungsbeschränkt)
Managing director: Pascal Sanwald
Merkelbach 12, 74541 Vellberg, Germany
Phone: +49 7907 4090918
E-mail: mail@annexserver.com

2. Server log files

When you access this site, our hoster automatically processes transmitted data: IP address, date and time, the requested address, the amount of data transferred, browser type and operating system. The legal basis is our legitimate interest in secure and stable operation (Art. 6 (1) lit. f GDPR). The data is not merged with other sources and is deleted after a short period.

3. Hosting

This site is operated on a server in Germany. A data processing agreement pursuant to Art. 28 GDPR is in place with the provider.

4. Support requests

When you use the support form or write to us, we process the details you provide:

  • E-mail address — so we can reply
  • Subject, category and description of your concern
  • Licence number and server version, if you provide them
  • Time of the request and the further course of the ticket
The legal basis is Art. 6 (1) lit. b GDPR where the request serves to initiate or perform a contract, otherwise Art. 6 (1) lit. f GDPR — our legitimate interest in handling requests traceably. We keep support tickets for as long as they are needed for processing and follow-up questions, but no longer than three years after closure. They are deleted afterwards. Statutory retention obligations under commercial law remain unaffected where a ticket relates to a purchase. You can check the status of your ticket at /en/support/ticket with the ticket number and e-mail address. We do not create a user account for this.

5. Protection against automated submissions

The support form contains a field invisible to you and a verification token set via JavaScript. No personal data is transmitted to third parties in the process; no external service is used. The legal basis is our legitimate interest in defending against abusive use (Art. 6 (1) lit. f GDPR).

6. Purchasing a licence

On purchase, we process the data required to perform the contract (name or company, e-mail address, billing address, VAT ID where applicable) as well as the issued licence number. The legal basis is Art. 6 (1) lit. b GDPR. Payment is processed by Stripe Payments Europe, Ltd., Dublin, Ireland; payment data is processed there and never reaches us in plain text. Retention periods under commercial and tax law (up to ten years) remain unaffected.

7. The server itself

AnnexGroup runs on your own hardware. We have no access to the data you process with it — not to messages, appointments, contacts or user accounts. There is no phone-home: licence verification runs entirely locally, and no telemetry is built in. On the first start under macOS, the operating system checks once with Apple whether the program is notarized. That query is made by Apple, not by us; it can be disabled at system level.

8. Your rights

You have the right of access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20) and objection (Art. 21 GDPR). For this, contact mail@annexserver.com. You may also lodge a complaint with a supervisory authority. The authority responsible for us is the State Commissioner for Data Protection and Freedom of Information of Baden-Württemberg.