Your privacy is highly important to us. This Privacy Policy explains how ANGITS ("we", "us", or "our") processes, collects, and protects data across all web properties, applications, and network infrastructure managed by us, including but not limited to angits.net, angits.com, angits.nl, angits.eu, and any affiliated subdomains or dashboards.
When you visit any website or application within the ANGITS ecosystem, network traffic is routed through Cloudflare, Inc. acting as our Reverse Proxy and Content Delivery Network (CDN). Cloudflare processes technical data to optimize performance, mitigate DDoS attacks, and enforce Web Application Firewall (WAF) rules.
Additionally, our local origin servers automatically write technical log files (access and error logs). This data is technically necessary to ensure network security, prevent malicious exploits, and guarantee system stability. This data includes:
Data Retention: Local server logs are strictly used for security forensics and system diagnostics. They are automatically rotated and permanently deleted after 14 days.
Legal basis: Processing is based on our legitimate interest (Art. 6(1)(f) GDPR) to maintain a secure, secure-by-design, and stable digital infrastructure.
To monitor operational stability and optimize the user experience of our custom applications, we collect non-identifiable usage statistics via Google Analytics (GA4), provided by Google Ireland Limited.
To maximize your privacy, we do not use traditional third-party tracking scripts directly in your browser. Instead, we deploy a modern hybrid architecture: all request payloads are proxied through our own dedicated, centralized first-party server-side tagging gateway managed under the ANGITS infrastructure.
Aggregate usage statistics that our own dashboards keep — independent of Google Analytics — are described in the next section.
Several of our applications (for example the EV charger availability dashboards) maintain their own lightweight, on-disk history so they can show trends over time in an internal, sign-in-only statistics view. This data is kept as aggregate counts only: it records "how many", never "who". No IP address, and no record that can be traced back to an individual visitor, is stored in this history.
Depending on the application, this operational history may include:
CF-IPCountry). No city, GPS, precise geolocation, or IP address is stored — only a number of visitors per country.Data Retention: Detailed, fine-grained history is short-lived and is automatically pruned after roughly half a day. Condensed hourly summaries and the per-country visitor tallies are retained for up to approximately 90 days. Because everything is aggregated, there is nothing that identifies an individual to retain, correct, or erase.
Access: These statistics views are not public. They are restricted to authorized administrators who sign in, either with a local account or via Microsoft Entra ID (single sign-on). For those administrators, the account identifier they sign in with is processed solely to authenticate them and secure access; ordinary visitors are never asked to sign in.
Looking ahead (future-proofing): As we add locations, dashboards, or metrics, we may collect similar technical and usage signals — for example additional device or browser characteristics, coarse location, or feature-usage counts — for the same operational and statistical purposes described here. In all such cases the data is minimized and retained only in aggregate, non-identifying form unless and until this policy is updated to describe any broader use.
Our applications utilize minimal data storage mechanisms:
__cf_bm) solely to detect malicious bot activity and protect the infrastructure. These cookies do not gather personal profiles.As an organization managing identity, access, and security-focused utilities, we implement rigorous technical and organizational security measures to protect data against unauthorized access, loss, alteration, or disclosure. All connections across the ANGITS domain portfolio are strictly enforced via encrypted HTTPS (TLS 1.2/1.3).
Under the European General Data Protection Regulation (GDPR), you hold specific rights regarding any data relating to you, including the right to access, rectify, or erase your data, and the right to restrict or object to processing.
Given that our application layers heavily anonymize and truncate data at the gateway stage, we generally do not retain records that can be linked back to you individually. However, for any inquiries regarding your privacy rights, you can contact us directly.
For questions regarding this Privacy Policy or our server configurations across our network, please contact the systems administrator at [email protected].