Privacy Policy
1. Data Controller
The entity responsible for processing your personal data is 1A3D GmbH, 8172 Niederglatt, Switzerland (Email: contact@roger-bachmann.ch).
2. Scope
This Privacy Policy governs data collection via our website, webstore, members area, and through the execution of our professional services (coaching, CV editing).
3. Categories of Data Processed
We process identity data, contact details, payment information, sensitive professional documents (CVs, cover letters, employment history), technical tracking data, and communication logs.
4. Purposes of Processing
Data is used exclusively to fulfill our contractual duties, provide access to AI tools, manage billing, ensure website security, and comply with legal accounting obligations.
5. Legal Basis (GDPR & FADP)
We process data based on contractual necessity, legal obligations, legitimate business interests (security), and user consent where explicitly required.
6. Local Data Residency and Secure Hardware
To ensure high data sovereignty, unredacted sensitive documents (like your CV) are not processed using cloud-based word processors. They are stored and manually edited locally on the secure hardware (MacBook) of the operator in Switzerland. For disaster recovery, encrypted backups are kept on Microsoft OneDrive.
7. Claude AI Integration and Strict Liability Disclaimer
Within the members area, users can access tools powered by Anthropic's Claude AI. We utilize an automated pre-filter script designed to strip personal names and contact information before the text is sent to the API. Disclaimer: Automated scripts are imperfect. We cannot guarantee 100% anonymization. Users utilize these AI features entirely at their own risk. 1A3D GmbH explicitly disclaims any liability for personal data that inadvertently bypasses the filter and is processed by the AI provider.
8. Third-Party Service Providers
We do not sell your data. We use Google Workspace for secure email communication and Microsoft OneDrive for encrypted infrastructure backups. Both providers act as data processors under strict Data Processing Agreements compliant with the GDPR (Standard Contractual Clauses).
9. International Data Transfers
If data must be transferred outside Switzerland or the EEA (e.g., to Anthropic's or Google's servers in the US), we ensure that appropriate legal safeguards, such as SCCs or the Data Privacy Framework, are in place.
10. Data Retention
Client documents and coaching notes are deleted twenty four (24) months after the service is finalized. Billing and transaction data are archived for ten (10) years in accordance with Swiss commercial law.
11. Your Data Subject Rights
You have the right to request access, rectification, erasure (Right to be Forgotten), restriction of processing, and data portability under the GDPR and FADP. Contact us at contact@roger-bachmann.ch to exercise these rights.
12. Cookies and Tracking
Essential cookies are used to maintain your session (e.g., in the webstore or members area). Non-essential tracking cookies are only placed if you provide explicit consent via our cookie consent banner.
13. Security Measures and Governing Law
We protect your data via local storage, encryption, and strict access controls. This Privacy Policy is subject to change as technologies and laws evolve. It is governed exclusively by Swiss law.
