Privacy Policy

We take the protection of your personal data very seriously.
​1. Processing of personal data when using our website.
1.1 Accessing the website

Description of data processing
1) For purely informative use of our website, i.e. if you do not register or transfer information to us by other means, we only collect the personal data that your browser transfers to our server.

In this regard, we collect the following information that is technically necessary for us to display our website and to ensure its stability and safety:

  • IP address of the requesting processor
  • Date and time of the request
  • Name and URL of the file retrieved
  • Information on the operating system and its status of access/HTTP status code
  • Volume of data transmitted
  • Website from which our site was accessed
  • Browser and language and version of the browser software

Legal basis and purpose of data processing
(2) The legal basis for processing is the balancing of interests according to Art. 6 Para. 1 (1) Letter f of the GDPR.

The data specified are processed by us for the following purposes:

  • To ensure trouble-free connection to the website
  • Evaluation of system safety and stability.
  • Analysis of unauthorised access or attempts to access the system

Retention period
(3) The listed data are automatically deleted after a period of one month.

1.2 Using our contact form

Description of data processing
(1) If you have any questions, you can contact us using a form provided on our website. To do so, you need provide a valid email address as well as other data for the required fields so that we know who sent the request and which enables us to answer this. Other information can be entered voluntarily.

Legal basis and purpose of the data processing
(2) The legal basis for processing is the balancing of interests according to Art. 6 Para. 1 (1) Letter f of the GDPR.

We process the data listed for the following purposes:

  • Getting in touch
  • Responding to specific questions
  • Management of consultancy appointments

Retention period
(3) We only store your personal data for as long as is necessary for the purpose for which the data was collected.

1.3 Google reCAPTCHA

Description of data processing
(1) On our website, we use Google reCAPTCHA to check and avoid interactions on our website through automated access, for example through so-called bots. This service is provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA.

Through the certification according to the EU-US data protection shield (“EU-US Privacy Shield“) Google guarantees that the data protection requirements of the EU will also be compiled with when processing data in the USA.

This service enables Google to determine which website is sending a request and from which IP address you are using the so-called reCAPTCHA input box. In addition to your IP address, Google may also collect other information that is necessary to provide and guarantee this service.

Legal basis for data processing and purpose of data processing
(2) The legal basis is Art. 6 Para. 1 lit. f GDPR. We use reCAPTCHA for the following purposes:

  • the security of your internet presence
  • defence against unwanted, automated access in the form of spam or similar

2. Notes on consent for provision of the personal data

(1) If you have given consent for processing of your data, you may withdraw this at any time. Such a withdrawal of consent affects the admissibility of processing your personal data based on the consent you gave before its withdrawal.

When withdrawing your consent, we kindly ask you to use one of the contact options listed in the Legal Notice section.

(2) The provision of personal data is not a statutory or contractual requirement, or a requirement necessary to enter into a contract.

3. Use of cookies

(1) General information
We use cookies to make our website attractive and user-friendly, to improve it and to accelerate the processing of enquiries.

Cookies are small text files that are saved on your computer. They store certain settings and data for exchange with our system via your browser. Cookies do not damage your computer. They do not contain any malware such as viruses.

You can adjust your browser so that cookies are not saved in the first place or are deleted at the end of your internet session.

However, please note that in this case you may possibly not be able to use all the functions of our website.

(2) Technically necessary cookies
We use technically necessary cookies that are required to operate the website. They warrant functions without which you cannot use the website as intended.

The legal basis for processing is the balancing of interests according to Art. 6 Para. 1 (1) Letter f of the GDPR.

(3) Optional cookies
We also use optional cookies for website analysis. Please find below a detailed description of the optional cookies used on our website:

Web analysis with Google Analytics:
These cookies give your device a randomly generated ID so that we can recognize your device at your next visit. Please refer to point 4 for details about website analysis.

Validity period: 6 months

We only use optional cookies after obtaining your prior consent (Art. 6 Para. 1 (1) Letter a of the GDPR). When you visit our website for the first time, you will see a banner where we ask for your consent to the use of optional cookies.

If you give your consent, we save a cookie on your computer and the banner no longer appears for the service life of the cookie. After this or if you actively delete the cookie beforehand, the banner appears again next time you visit our website to obtain your consent once more.


4. Google Analytics

On the basis of your consent pursuant to Art. 6 Para. 1 (1) Letter a of the GDPR, our websites use Google Analytics, a web analyt-ics service provided by Google Inc., 600 Amphitheatre Parkway Mountain View, CA 94043, USA. Google Analytics is used for expedient design and improvement of our website.

Google Analytics uses cookies and creates pseudonymous user profiles. The information generated by the cookie about your use of our website (browser type and version; operating system, re-ferrer URL, IP address and time of the server request) is usually transmitted to and stored by Google on a server in the United States. Before doing so, Google abbreviates your IP address within the Member States of the European Union or in other sig-natory states to the EEA Treaty and renders it anonymous in such a way that it cannot be allocated to your person (IP mask-ing). The IP address is not put together with other data by Google. Pursuant to Art. 28 of the GDPR, Google uses the in-formation on our behalf to evaluate your use of our websites, to produce reports about the website activities and to provide other services related to the use of our websites and the internet.

If you have not given your consent to the use of tracking cook-ies, then such tracking cookies will not be put on your device. You can also prevent registration of the data generated by the cookie regarding your use of our websites (including your IP address) and the processing of such data by Google by download-ing and installing the browser add-on available under the follow-ing link:

As an alternative to the browser add-on, you can use this link to prevent registration by Google Analytics. In this case, an opt-out cookie is placed on your device that prevents your data from being registered in future when you visit our websites. Please note that this opt-out cookie only applies to this browser and to our websites. You will have to set the cookie again if you delete the cookies in your browser.

Please note that our websites also use Google Analytics for cross-device analysis of visitor flows based on a user ID. To pre-vent registration by Universal Analytics across different devices, you would have to implement the opt-out on all used systems.

Please refer to the following Google websites for more infor-mation about terms and privacy in relation to Google Analytics:
Google Analytics terms, data security and privacy principles of Google Analytics and Google privacy policy.

5. Recipients of personal data

(1) Within the EU/EEC:
All website data are stored on servers within the EU/EEC Member States.

Your provided personal data may be passed on to service providers, which we need to fulfill the functions and offers outlined in point 1.

(2) Outside of the EU/EEC – third countries
As a basic rule, no data are forwarded to recipients in third countries, apart from data processing by Google as explained under point 4.

6. Your rights

(1) You have the following rights in regard to your personal data:

  • Art. 15 of the GDPR Right of access
    Right of access to your personal data that is stored by us.
  • Art. 16 of the GDPR Right to rectification
    Right to rectification of your personal data that is inaccurate.
  • Art. 17 of the GDPR Right to erasure   
    Erasure of your personal data provided that no statutory retention periods exist.
  • Art. 18 of the GDPR Right to restriction of processing
    If certain conditions are met, you have the right to restriction of processing of your personal data and these will not be processed further.
  • Art. 20 GDPR Right to data portability
    Right to data portability of your personal data that you provided to us.
  • Art. 21 of the GDPR Right to object to processing

(2) You also have the right to lodge a complaint with a data protection Supervisory Authority.

(3) There is no automated decision-making including profiling according to Article 22 Para. 1 and 4.

7. Contact details

(1) The name and contact details of the controller and their representative:

Midaia GmbH

You can find more information in the Legal Notice.

​8. Amendments to this data privacy policy

We will revise this data privacy policy from time to time to adapt it to the state-of-the-art or to revised legal frameworks.

Therefore, we recommend that you regularly inform yourself about changes to this webpage.

Dated: August 2020

Midaia develops personalized digital treatments to support patients with inflammatory-rheumatic diseases.

We aim towards greater health and well-being for all rheumatic disease patients.


error: Content is protected !!