Privacy Policy

Last updated: August 30, 2026 · This policy applies to brandargus.com, operated by Lyalpha GmbH.

1. Data Controller

2. Information We Collect

2.1 On this website

This website is a static informational site. It sets no cookies, runs no analytics, and contains no tracking scripts, no embedded third-party content, and no forms.

2.2 Server logs

When you open this website, our hosting provider processes technical connection data (such as IP address, requested page, browser type, and timestamp) to deliver the pages and to keep the service secure and available. Log data is kept only as long as needed for these purposes.

2.3 When you contact us

If you write to us, we process the personal data you include (such as your name, email address, organization, and the content of your message) to handle your inquiry and, where applicable, to prepare or perform a contract.

2.4 Client data

For paying clients we process the contact and billing data needed to run the engagement: names of contact persons, business contact details, invoicing data, and the brand names designated for monitoring.

3. Domain Data We Process

The BrandArgus service observes publicly visible domain registration data, such as registered domain names and their public lifecycle events. This data originates from public sources. It is processed to provide brand protection reporting to our clients, on the legal basis of legitimate interest (Art. 6(1)(f) GDPR). Reports prepared for a client are shared only with that client.

Domain data reflects public records at the time of observation and may contain errors or be incomplete. If you believe data about you is processed incorrectly, contact us and we will review it.

5. How We Use Information

We use personal data to deliver this website, respond to inquiries, provide the BrandArgus service to clients, invoice and account for engagements, and keep our systems secure. We do not use personal data for advertising, and we do not sell personal data.

6. How We Share Information

We share personal data only with service providers that host and deliver our websites, infrastructure, and email, and only to the extent needed for those purposes; with professional advisers where required; and with authorities where we are legally obliged to disclose.

7. International Data Transfers

Our websites are delivered through infrastructure providers that may process technical data outside the European Economic Area, including in the United States. Where such transfers occur, they are protected by appropriate safeguards under Chapter V GDPR, such as Standard Contractual Clauses or an adequacy decision (including the EU-US Data Privacy Framework, where the provider is certified).

8. Data Retention

We keep personal data only as long as needed for the purposes above: correspondence for the duration of the inquiry or engagement, and business records for the retention periods of German commercial and tax law (up to 10 years). Server logs are short-lived.

9. Your Rights Under GDPR

To exercise any of these rights, reach us via the contact button.

10. Data Security

We use encryption in transit, access controls, and the principle of least access to protect data. No system is completely secure; we cannot warrant absolute security.

11. Children's Privacy

Our Services are directed at businesses and professionals and not at children. We do not knowingly collect personal data from children.

12. Changes to This Policy

We may update this policy from time to time. The current version is always published on this page.

13. Contact

For any privacy request, reach us via the contact button. Full legal disclosure: see our Imprint.