Datenschutzrichtlinie
Zuletzt aktualisiert: Februar 2026
Einleitung
WeLink (betrieben von Adamas Group SA, Schweiz) verpflichtet sich, die Privatsphäre seiner Nutzer zu schützen. Diese Datenschutzrichtlinie beschreibt, wie wir Ihre personenbezogenen Daten erheben, verwenden und schützen.
Erhobene Daten
Wir erheben die folgenden Daten, wenn Sie WeLink nutzen:
- Kontoinformationen: Vorname, Nachname, E-Mail-Adresse
- Organisationsdaten: Firmenname, Logo, Kontaktdaten
- Mitarbeiterdaten: Name, Position, berufliche Kontaktdaten, Foto
- Nutzungsdaten: Anmeldeprotokolle, besuchte Seiten
Verwendung der Daten
Ihre Daten werden ausschließlich verwendet für:
- Bereitstellung und Verbesserung des WeLink-Dienstes
- Generierung von E-Mail-Signaturen, Profilseiten, QR-Codes und VCF-Karten
- Kommunikation mit Ihnen bezüglich Ihres Kontos
- Gewährleistung der Sicherheit und ordnungsgemäßen Funktionsweise der Plattform
Legal basis for processing
We process your personal data on the following legal bases under GDPR Article 6: (a) Contract performance (Art. 6(1)(b)): account management, signature generation, billing; (b) Legitimate interest (Art. 6(1)(f)): security monitoring, abuse prevention, service reliability; (c) Consent (Art. 6(1)(a)): analytics cookies and session replay. You may withdraw consent at any time via the cookie preferences link in the footer.
Hosting und Sicherheit
Die Kerndaten werden auf Supabase-Servern in der Region EU/Schweiz gehostet. Die Daten werden im Ruhezustand und bei der Übertragung verschlüsselt (TLS 1.3). Einige Auftragsverarbeiter (Stripe, Vercel, Postmark) haben ihren Sitz in den USA; diese Übermittlungen unterliegen geeigneten Garantien — EU-Standardvertragsklauseln (SCC) oder anwendbaren Angemessenheitsbeschlüssen.
Sub-processors and third parties
We share your data with the following processors: Supabase (database and file storage; EU/Swiss region), Stripe (payment processing; USA, under Standard Contractual Clauses), Vercel (hosting and edge delivery; USA, under SCCs), Sentry (error monitoring; Germany — EU residency), PostHog (product analytics; EU region), Postmark (transactional email; USA, under SCCs), Upstash (rate-limiting cache; EU region), Microsoft (Microsoft 365 integration; when enabled by your organisation), Google (Google Workspace integration; when enabled by your organisation), Shlink (URL shortening; self-hosted).
Microsoft 365 integration & Outlook add-in
When your organisation connects Microsoft 365, WeLink accesses only what is needed to manage and deploy your email signatures:
- Directory data — names, email addresses and departments of your team members (Microsoft Graph: User.Read.All, Directory.Read.All), used to map signatures to the right people.
- Signature deployment — for server-side modes, signatures are written through Microsoft Exchange (Set-MailboxMessageConfiguration or a transport rule). This requires your administrator to grant WeLink the Exchange Administrator role, which can be revoked at any time.
- Outlook add-in — when used, the add-in inserts the chosen signature into the message you are composing, entirely on your device at compose time.
- No access to the content of your emails — WeLink never reads, stores or processes the body of your messages.
Sub-processors for this integration are Microsoft (Graph and Exchange APIs) and our core hosting provider. You can disconnect Microsoft 365 at any time from the WeLink dashboard, which revokes WeLink's access.
Data retention
Account data is retained for the duration of your subscription plus 30 days after deletion. Audit logs are retained for 12 months. Error and performance monitoring data at Sentry is retained for 90 days. Analytics data at PostHog is retained for 12 months. Billing records at Stripe are retained as required by applicable financial regulations.
Ihre Rechte
Gemäß GDPR und Schweizer nDSG haben Sie folgende Rechte:
- Recht auf Auskunft über Ihre personenbezogenen Daten
- Recht auf Berichtigung unrichtiger Daten
- Recht auf Löschung Ihrer Daten
- Recht auf Datenübertragbarkeit
- Recht auf Widerspruch gegen die Verarbeitung
Withdrawing consent
You may withdraw analytics consent at any time by clicking the cookie preferences link in the page footer. Withdrawing consent does not affect the lawfulness of processing carried out prior to withdrawal.
Kontakt
Bei Fragen zu Ihren personenbezogenen Daten kontaktieren Sie uns unter:
privacy@wecode.swissRechtliches