Privacy Policy
Last updated: February 28, 2026
Seller Information
MobiFlight
Sebastian Möbius
Schneiderbäumlesweg 3
71336 Waiblingen, Baden-Württemberg, Germany
Email: info@mobiflight.com
Phone: +49 (0)151 10 737 428, or +1 (224) 3887 883
VAT ID: DE347857100
— hereinafter referred to as the “Seller” —
The Seller takes the protection of your personal data seriously. This Privacy Policy explains what data we collect, how we use it, and what rights you have when you visit or make a purchase from our website at shop.mobiflight.com (the “Site”).
1. Data Controller
The data controller responsible for the processing of your personal data on this Site is the Seller. For questions or requests regarding your personal data, please use the contact form at the bottom of this page.
2. What Personal Data We Collect
Order data
When you place or attempt to place an order, we collect your name, billing address, shipping address, email address, phone number, and payment information. We refer to this as “Order Information”.
Account data
If you create a customer account on the Site, we store the personal information you provide in your user profile. You can view, edit or delete your personal information at any time from your account (except your username).
Technical data
When you visit the Site, we automatically collect information about your device, including your IP address, browser type, time zone, and cookie data. As you browse, we also collect information about which pages or products you view and how you arrived at the Site. We refer to this as “Device Information”.
We collect Device Information using the following technologies:
- Cookies — data files placed on your device, often including an anonymous unique identifier. For more information, visit allaboutcookies.org
- Log files — records of actions on the Site, including IP address, browser type, internet service provider, referring/exit pages, and timestamps
- Web beacons, tags and pixels — electronic files used to record how you browse the Site
Comment data
If you leave a comment on the Site, we collect the data shown in the comment form, your IP address, and your browser user agent string for spam detection. An anonymized hash of your email address may be shared with Gravatar to check for a profile picture — see Gravatar’s privacy policy.
3. How We Use Your Data
We use Order Information to:
- Fulfill and process your orders, including payment processing, shipping arrangements, and sending order confirmations and invoices
- Communicate with you regarding your order
- Screen orders for potential risk or fraud
We use Device Information to:
- Screen for potential risk and fraud
- Improve and optimize the Site
We use your email address to:
- Send transactional emails related to your order (sent via our own mail server)
Legal basis: We process your data to fulfill our contractual obligations to you (Art. 6(1)(b) GDPR), to comply with legal obligations (Art. 6(1)(c) GDPR), and where applicable, on the basis of our legitimate interests (Art. 6(1)(f) GDPR).
4. Newsletter
If you subscribe to the MobiFlight newsletter, we store your email address and process it using MailerLite (UAB “MailerLite”, Paupio str. 46, Vilnius, Lithuania) for the purpose of sending you news and updates about MobiFlight.
Your consent is the legal basis for this processing (Art. 6(1)(a) GDPR). You can unsubscribe at any time using the unsubscribe link in any newsletter email. Your data will be deleted from our mailing list promptly upon unsubscribe.
For more information, see MailerLite’s Privacy Policy.
5. Sharing Your Personal Data
We share your data with the following third-party service providers where necessary to operate the Site and fulfill orders:
| Service | Purpose | Privacy Policy |
|---|---|---|
| Hostinger | Website hosting | hostinger.com/privacy-policy |
| WooCommerce / Automattic | Shop platform | automattic.com/privacy |
| Stripe | Payment processing (WooCommerce Payments) | stripe.com/privacy |
| PayPal | Alternative payment processing | paypal.com/privacy |
| Deutsche Post | Order shipping (Kleinpaket, Warenpost International) | deutschepost.de/privacy |
| MailerLite | Newsletter delivery | mailerlite.com/privacy |
All service providers are contractually bound to process your data only for the purposes described above and in accordance with applicable data protection law.
We may also disclose your data where required by law, court order, or to protect our legal rights.
6. International Data Transfers
Some of our service providers may process data outside the European Economic Area (EEA). Where this is the case, we ensure appropriate safeguards are in place, such as EU Standard Contractual Clauses, in accordance with GDPR requirements.
7. Cookies
We use cookies to enable core site functionality, remember your preferences, and support your shopping session. A cookie consent banner is displayed on your first visit, allowing you to accept or decline non-essential cookies.
Essential cookies (e.g. session and cart cookies) are set automatically as they are necessary for the Site to function. Login cookies last for two days by default, or two weeks if you select “Remember Me”. You can control or delete cookies at any time via your browser settings.
8. Embedded Content
Pages on this Site may include embedded content (e.g. videos or images from third-party platforms). Embedded content behaves as if you had visited that third-party website directly and may collect data, use cookies, or track your interaction with it.
9. Data Retention
Order data is retained for as long as necessary to fulfill our contractual and legal obligations, including tax and commercial record-keeping requirements under German law (typically 10 years for invoices and financial records).
Comment data and its metadata are retained indefinitely to allow recognition of follow-up comments.
Newsletter subscriber data is retained until you unsubscribe.
Account data is retained until you request deletion, except where we are legally required to retain it.
10. Your Rights Under GDPR
If GDPR applies to you, you have the right to:
- Access the personal data we hold about you
- Correct inaccurate or incomplete data
- Delete your personal data (“right to be forgotten”)
- Restrict the processing of your data
- Object to processing based on legitimate interests or for direct marketing
- Data portability — receive your data in a structured, machine-readable format
- Withdraw consent at any time where processing is based on consent (e.g. newsletter)
To exercise any of these rights, please use the contact form at the bottom of this page.
You also have the right to lodge a complaint with the relevant national data protection authority. The list of EU supervisory authorities can be found at ec.europa.eu. In Germany, the responsible authority is the Landesbeauftragte für den Datenschutz Baden-Württemberg.
11. Data Security
We take appropriate technical and organisational measures to protect your personal data against loss, misuse, and unauthorised access. Payment data is processed exclusively via encrypted connections (SSL/TLS) through our certified payment providers.
12. Children’s Privacy
Our Site is not directed at children under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can delete it.
13. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The current version is always available on this page.
14. Contact
For questions about this Privacy Policy or to exercise your data rights, please use the contact form at the bottom of this page.