Back to Home

Privacy Policy

Section 1 – What Do We Do With Your Information

When you purchase something from our store, as part of the buying and selling process, we collect the personal information you give us such as your name, address and email address.

When you browse our store, we also automatically receive your computer's internet protocol (IP) address in order to provide us with information that helps us learn about your browser and operating system.

Email marketing: With your permission, we may send you emails about our app and other updates.

Section 2 – Consent

How do you get my consent?

When you provide us with personal information to complete a transaction, verify your credit card, place an order, arrange for a delivery or return a purchase, we imply that you consent to our collecting it and using it for that specific reason only.

If we ask for your personal information for a secondary reason, like marketing, we will either ask you directly for your expressed consent, or provide you with an opportunity to say no.

How do I withdraw my consent?

If after you opt-in, you change your mind, you may withdraw your consent for us to contact you, for the continued collection, use or disclosure of your information, at any time, by contacting us at [email protected].

Section 3 – Disclosure

We may disclose your personal information if we are required by law to do so or if you violate our Terms of Service.

Section 4 – Data Storage

Our store is hosted on secure servers. Your data is stored through data storage, databases and the general application. They store your data on a secure server behind a firewall.

Section 5 – Third-Party Services (Processors)

We engage the service providers listed below to operate tounify. Each of them processes personal data only for the purposes described here and on our instructions, and each is bound by its own data protection terms. This list is kept current; we publish it so you can see exactly who is involved before you sign up.

DigitalOcean

Hosting of this website, the customer portal, and the API

Data: Account data, request metadata, server logs · Processing location: EU region (Frankfurt, Germany)

Amazon Web Services

Object storage and serverless processing for our tariff data pipeline

Data: Processing artefacts, service logs · Processing location: eu-central-1 (Frankfurt, Germany)

Stripe

Payment processing and subscription billing

Data: Billing details, payment status · Processing location: EU / USA

PostHog

Product analytics for this website and the customer portal

Data: Usage events, device and browser data, IP address · Processing location: EU Cloud (data stored in the EU)

Resend

Delivery of transactional email (sign-up, account, and service notifications)

Data: Email address, message content · Processing location: EU / USA

Transfers outside the EU/EEA: where a provider processes data outside the European Economic Area, the transfer is covered by the European Commission's Standard Contractual Clauses together with supplementary technical measures. You can request the relevant documentation from us at any time.

Fonts and assets: all web fonts are self-hosted and served from our own infrastructure. No font, script, or asset request leaves our servers to a third-party content delivery network, so visiting this site transmits no data to font or CDN providers.

Once you follow a link to a third-party website, you are no longer governed by this Privacy Policy or our Terms of Service. We recommend reading the privacy policy of any such provider.

Section 6 – Security

To protect your personal information, we take reasonable precautions and follow industry best practices to make sure it is not inappropriately lost, misused, accessed, disclosed, altered or destroyed.

Section 7 – Cookies

We use cookies to maintain session of your user. It is not used to personally identify you on other websites.

We also use PostHog for product analytics, hosted in the EU (eu.i.posthog.com), to understand which pages are read and where people get stuck. On this website and on our API reference at api.tounify.io it is optional and only runs after you accept our cookie banner. In the signed-in Cockpit portal it forms part of providing and improving the service to account holders, where we record product usage (pages opened, features used, subscription milestones) against your account. We do not use advertising or cross-site tracking, and we never sell this data.

For more information about cookies, please see our Cookie Policy.

Section 8 – Age of Consent

By using this site, you represent that you are at least the age of majority in your state or province of residence, or that you are the age of majority in your state or province of residence and you have given us your consent to allow any of your minor dependents to use this site.

Section 9 – Changes to This Privacy Policy

We reserve the right to modify this privacy policy at any time, so please review it frequently. Changes and clarifications will take effect immediately upon their posting on the website.

If we make material changes to this policy, we will notify you here that it has been updated, so that you are aware of what information we collect, how we use it, and under what circumstances, if any, we use and/or disclose it.

Section 10 – Public MCP Endpoint

We operate a public Model Context Protocol (MCP) endpoint at mcp.tounify.io for use with AI assistants. It requires no account, no authentication and no personal data. It returns explanatory information about European electricity markets and about integrating our API; it does not return pricing data or customer records.

We do not require or request personal data through this endpoint, and we do not associate its use with any account. To protect the service from abuse we apply short-lived, in-memory request limits based on the connecting IP address; these are not written to persistent storage. Our hosting provider records standard HTTP access logs as it does for our other services.

Some tools accept text you supply — for example an error message you are trying to diagnose. Do not include credentials, API tokens or personal data in that text. Any credential-shaped value we detect is removed before processing.

Questions and Contact Information

If you would like to access, correct, amend or delete any personal information we have about you, register a complaint, or simply want more information, contact us at [email protected].

Data Protection Compliance

The collection, processing and use of data by tounify always takes place in accordance with the applicable legal provisions, in particular in accordance with:

  • General Data Protection Regulation (GDPR)
  • Data Protection Act (DSG) 2018
  • Data Protection Directive for Electronic Communications (E-Privacy Directive)
  • Telecommunications Act (TKG) 2003
  • Other applicable EU regulations

All data provided by users is treated confidentially and used for the purpose of providing our services. Any further use of data takes place exclusively on the basis of a separate consent given by the user.