Skip to content
AI Architecture Group
HomeNetworkConsultingActivitiesMembershipContact
DEEN
Request consulting

Privacy Policy

Information pursuant to Articles 13 and 14 GDPR

Protecting personal data is important to the AI Architecture Group. This policy explains which personal data is processed when you visit this website and when you contact us, for what purposes, and what rights data subjects have.

Processing takes place on the basis of the General Data Protection Regulation (GDPR), the German Federal Data Protection Act (BDSG) and, where applicable, the German Telecommunications Digital Services Data Protection Act (TDDDG).

1. Controller

AI Architecture Group n.e.V.
Rumfordstr. 35
80469 München
Germany
Email: [email protected]
Phone: +49 176 98278787

Authorised representative: Daniel Amadeus

No data protection officer has been appointed, as the legal requirements for doing so are not met.

2. This website at a glance

This website is a purely informational web presence. It uses no cookies and no comparable storage on your device, includes no analytics or tracking tools, and contains no contact form.

When the pages are loaded, no content is fetched from third-party servers. In particular, the typeface used is served from our own server and not obtained from an external web font service. Your IP address is therefore not transmitted to third parties for display purposes.

Since no technologies requiring consent are used, this website needs no consent request under § 25 (1) TDDDG and no cookie banner.

3. Visiting the website (server log files)

When this website is accessed, the hosting provider processes technically necessary data that your browser transmits automatically:

  • IP address of the requesting device
  • date and time of access
  • name and address of the file retrieved
  • amount of data transferred and server status message
  • browser type and version as well as the operating system
  • previously visited page (referrer), if transmitted

Purpose: providing the website, ensuring system security and stability, and detecting technical errors.

Legal basis: Art. 6 (1) (f) GDPR. Our legitimate interest lies in the technically flawless and secure operation of this website.

Retention: this data is processed only briefly and is not merged with other data sources. It is not evaluated for advertising or analytics purposes.

4. Hosting

This website is hosted by Cloudflare, Inc., 101 Townsend St., San Francisco, CA 94107, USA (“Cloudflare Pages”). Cloudflare processes the data listed under section 3 on our behalf. A data processing agreement pursuant to Art. 28 GDPR is in place.

Legal basis: Art. 6 (1) (f) GDPR – legitimate interest in providing this website securely, efficiently, and reliably.

Further information:Cloudflare privacy policy

5. Contacting us by email or phone

If you contact us by email or telephone, we process the information you provide in order to handle your enquiry. This may include:

  • name
  • company or organisation and role
  • email address and phone number
  • content of the enquiry
  • project, process, or company information you choose to share

Legal basis: Art. 6 (1) (b) GDPR where your enquiry relates to entering into or performing a contract, otherwise Art. 6 (1) (f) GDPR based on our legitimate interest in responding to enquiries.

Retention: we delete your enquiry once it has been dealt with conclusively and no statutory retention obligations apply. Commercial and tax retention periods remain unaffected.

Please note: unencrypted email is sent over the internet and cannot be fully protected against access by third parties.

6. Email operations (Microsoft 365)

We use Microsoft 365 provided by Microsoft Ireland Operations Limited, One Microsoft Place, South County Business Park, Leopardstown, Dublin 18, Ireland, for our email communication. All email correspondence sent to and from us is processed and stored on this basis.

Microsoft processes this data on our behalf; a data processing agreement pursuant to Art. 28 GDPR is in place. Processing by group companies outside the European Union cannot be entirely excluded – see section 10.

Legal basis: Art. 6 (1) (b) or (f) GDPR, depending on the occasion of the communication.

7. Membership and membership enquiries

If you enquire about membership or become a member, we process the personal and business data required for that purpose. This may include:

  • name and role
  • company or organisation
  • contact details
  • information used to assign the fee tier, such as organisation type and size
  • payment and invoicing information, where required
  • communication relating to the membership

Legal basis: Art. 6 (1) (b) GDPR.

Documents subject to statutory retention obligations – in particular invoices and payment records – are stored for the duration of the applicable commercial and tax retention periods.

8. Consulting enquiries

In the course of consulting enquiries we may receive information about company workflows, project processes, software in use, organisational structures, or technical issues. We process this information solely in order to

  • review and handle the consulting enquiry,
  • analyse the process or problem described,
  • prepare a proposal,
  • carry out an agreed consulting engagement,
  • develop or evaluate suitable solutions.

Legal basis: Art. 6 (1) (b) GDPR.

Should custom tools, automations, or systems be developed later, the necessary data protection arrangements are agreed separately for the respective project.

9. Events, working groups, and workflow webinars

If you register for or express interest in a working group, round table, webinar, or other AIAG activity, we process in particular your name, company, role, email address, phone number, and information about your participation.

Legal basis: Art. 6 (1) (b) GDPR where a participation agreement exists, otherwise Art. 6 (1) (f) GDPR.

10. Recipients and transfers to third countries

We pass on personal data only where necessary for the purposes stated. Current recipients are:

  • Cloudflare, Inc. – hosting of this website (section 4)
  • Microsoft Ireland Operations Limited – email operations (section 6)

Beyond this, data may be transmitted to tax advisors, banks, or public authorities where required to fulfil statutory obligations. No data is transferred for advertising or analytics purposes, and no data is sold.

For both providers named above, processing in countries outside the European Union – in particular the United States – cannot be excluded. Such transfers are safeguarded by the Standard Contractual Clauses adopted by the European Commission. Cloudflare, Inc. and Microsoft Corporation are additionally certified under the EU-US Data Privacy Framework.

11. Retention

We store personal data only for as long as is necessary for the respective processing purpose. Beyond that, statutory retention periods apply, in particular under commercial and tax law.

12. Data security

We take appropriate technical and organisational measures to protect personal data. This website is served exclusively over an encrypted HTTPS/TLS connection. You can recognise an encrypted connection by the address bar of your browser starting with https://.

13. External links

This website may contain links to external websites, for example to those of our members and partners or to social networks. With an ordinary link, data is only transmitted to the respective provider once you click the link and open the external site. No third-party content is embedded in this website.

14. Your rights

Subject to the statutory requirements, you have the following rights regarding your personal data:

  • Access to the data processed (Art. 15 GDPR)
  • Rectification of inaccurate data (Art. 16 GDPR)
  • Erasure (Art. 17 GDPR)
  • Restriction of processing (Art. 18 GDPR)
  • Data portability (Art. 20 GDPR)
  • Objection to processing (Art. 21 GDPR)
  • Withdrawal of consent with effect for the future (Art. 7 (3) GDPR)

An informal message to [email protected] is sufficient to exercise these rights.

Right to object

Where we process your data on the basis of legitimate interests pursuant to Art. 6 (1) (f) GDPR, you have the right to object to that processing at any time on grounds relating to your particular situation.

Right to lodge a complaint with a supervisory authority

Without prejudice to any other remedy, you have the right to lodge a complaint with a data protection supervisory authority. The competent authority for non-public bodies based in Bavaria is:

Bayerisches Landesamt für Datenschutzaufsicht (BayLDA)
Promenade 18, 91522 Ansbach, Germany
Postal address: Postfach 1349, 91504 Ansbach
www.lda.bayern.de

15. Changes to this privacy policy

We adapt this privacy policy whenever changes to this website, to the services used, or to legal requirements make it necessary. The version published here applies.

Last updated: 17. August 2026 · Please also see our imprint.
This English text is a translation for convenience. TheGerman version is legally binding.

AI Architecture Group

Network for AI, robotics, and automation in construction.

HomeNetworkConsultingActivitiesMembershipContact
[email protected]
+49 176 98278787
Rumfordstr. 35, 80469 München
© 2026 AI Architecture Group n.e.V.
ImprintPrivacy