Privacy Policy

pingmi.at — last updated March 2026

Who we are

The data controller is DivideByZero (eenmanszaak), trading as pingmi.at.

Contact: support@pingmi.at.

What data we process

Visitors sending messages

Message content is processed only until delivery is attempted or completed via the Telegram API, then deleted. We keep only what we need for delivery (e.g. timestamps, recipient chatId). We may keep minimal temporary security logs (see “Anti-abuse security logs” below). We do not store phone numbers or Telegram profile data.

Users (account holders)

We process: email and login data; Telegram chatId for message delivery; your settings and configuration (e.g. booking pages, availability).

Visitors booking meetings

We process: name, email, chosen time slot, and any notes you provide; confirmation/cancellation tokens for the booking flow.

Calendar integrations

For Google and Microsoft calendars we use only what’s needed for availability and creating events: availability metadata and event details required to create and manage bookings.

Payments

Stripe processes payment details. We store subscription status and invoice-related metadata (e.g. plan, billing period), not card numbers.

Purposes

We use the data to: provide the service (messaging, booking, calendar sync); run your account and configuration; send transactional emails; handle support; prevent abuse and secure the service; and manage billing and subscriptions.

Legal bases (in plain terms)

Who we share data with (subprocessors)

Provider Purpose
Heroku / AWS Hosting and running the service
Mailtrap Transactional email
Stripe Payments and subscription billing
Telegram Delivering messages
Google Calendar availability and events
Microsoft Calendar availability and events

We only share what each provider needs for that purpose. They process data under their own policies and, where relevant, our agreements.

International transfers

Some of these providers may process data outside the EEA. Where we do so, we rely on adequacy decisions or appropriate safeguards (e.g. standard contractual clauses) as required by law.

Retention

Anti-abuse security logs (optional)

We may keep minimal temporary security logs to fight spam, fraud, and abuse and to protect the service. These may include timestamps, request metadata, and a truncated or hashed IP address (if we use it). They are used only for rate limiting, abuse prevention, debugging, and security—not for advertising or profiling. We retain them for 90 days.

Your rights

You have the right to: access your data; correct it; ask for deletion; restrict or object to certain processing; and, where applicable, data portability. You can withdraw consent where we rely on it. You can lodge a complaint with a supervisory authority (e.g. in your country of residence).

To exercise these rights, contact us at support@pingmi.at.

Security

We take reasonable technical and organisational measures to protect your data (e.g. encryption, access controls, secure hosting). No system is completely secure; we do not guarantee absolute security.

Children

The service is not intended for users under 18 years of age. We do not knowingly collect data from children below that age.

Tracking and cookies

At launch we do not use tracking or analytics beyond strictly necessary cookies (e.g. session and authentication). If we add analytics or other tracking later, we will request consent where required and update this policy.

Changes to this policy

We may update this policy. The current version is effective as of 4th March 2026; last updated 4th March 2026. We will publish changes on this page and, where required by law or for material changes, we will notify you (e.g. by email or a notice on the site).