Privacy Policy

Last updated: October 2026

1. Controller

The controller responsible for the processing of personal data on this website within the meaning of the General Data Protection Regulation (GDPR) is:

eForsch UG (haftungsbeschränkt)
Uhlenberg 7
37120 Bovenden
Germany

Managing Director:
Dr. Giriprakash Chodisetti

Email: info@eforsch.com

SMARagdLab is a product of eForsch UG (haftungsbeschränkt).

2. General Information

We take the protection of your personal data seriously.

Personal data means any information relating to an identified or identifiable natural person.

We process personal data only in accordance with applicable data-protection law, in particular the EU General Data Protection Regulation (GDPR) and applicable German data-protection legislation.

This Privacy Policy explains what personal data may be processed when you visit smaragdlab.com, contact us, request a demonstration, or apply to participate in the SMARagdLab Founding Lab Program.

3. Website Hosting

This website is hosted using services provided by Hostinger.

When you visit our website, technical information may automatically be processed by the hosting infrastructure. This may include:

  • IP address

  • date and time of access

  • requested page or file

  • browser type and version

  • operating system

  • referring website

  • technical request and status information

These data may be processed to deliver the website, maintain its technical stability and security, and detect or prevent misuse.

The legal basis for this processing is Article 6(1)(f) GDPR. Our legitimate interest is the secure, reliable and efficient operation of our website.

Further information about Hostinger's processing of personal data is available in Hostinger's Privacy Policy.

4. Contact Forms and Demo Requests

If you contact us through a website form, request a demonstration, or otherwise submit an inquiry through smaragdlab.com, we process the information that you provide.

Depending on the form, this may include:

  • first and last name

  • work email address

  • organisation

  • professional role

  • team or laboratory information

  • message or inquiry

  • information about laboratory workflows or areas you would like to improve

We process these data to handle your inquiry, communicate with you, arrange a demonstration, understand your requirements and, where applicable, discuss a potential business relationship.

Where your inquiry relates to steps prior to entering into a contract or an existing contractual relationship, the legal basis is Article 6(1)(b) GDPR.

For other business inquiries, processing may be based on our legitimate interest in communicating with prospective customers, research organisations, collaborators and other interested parties pursuant to Article 6(1)(f) GDPR.

5. Founding Lab Program

If you apply to participate in the SMARagdLab Founding Lab Program, we may process information such as your:

  • name

  • work email address

  • organisation

  • role

  • approximate team size

  • laboratory or research workflows of interest

  • information included voluntarily in your application

We use this information to assess your application, contact you regarding the program and determine whether SMARagdLab and the Founding Lab Program are suitable for your research environment.

Depending on the circumstances, processing is based on Article 6(1)(b) GDPR for pre-contractual measures or Article 6(1)(f) GDPR based on our legitimate interest in selecting and communicating with potential Founding Lab participants.

Please do not submit patient-identifiable information, personal health information, confidential patient data or other unnecessary sensitive personal data through these forms.

6. Contact by Email

If you contact us directly by email, we process the information contained in your communication, which may include your name, email address, organisation, professional role and the content of your message.

We process this information to respond to your inquiry and communicate with you.

Depending on the nature of the communication, the legal basis is Article 6(1)(b) GDPR or Article 6(1)(f) GDPR.

7. Cookies and Consent Management

Our website may use cookies and similar technologies necessary for its technical operation.

Where optional technologies requiring consent are used, particularly for analytics or marketing purposes, they will only be activated after the required consent has been obtained through our cookie-consent mechanism.

Where personal data are processed based on consent, the legal basis is Article 6(1)(a) GDPR.

Under §25 TDDDG, storing information on or accessing information from a user's device generally requires consent, with exceptions including technologies strictly necessary to provide a digital service expressly requested by the user. Gesetze im Internet

You can reject optional technologies or manage your preferences through the cookie banner. Consent already provided can be changed or withdrawn at any time with effect for the future through the cookie settings.

8. Recipients and Service Providers

We may use service providers to support the operation of our website and business infrastructure, particularly hosting, email and IT service providers.

Where service providers process personal data on our behalf, they are engaged in accordance with applicable data-protection requirements.

We do not sell your personal data.

Personal data may also be disclosed where required by law or where necessary for the establishment, exercise or defence of legal claims.

9. International Data Transfers

Some service providers may process personal data outside Germany or the European Economic Area (EEA).

Where personal data are transferred outside the EEA, such transfers will take place only where the applicable GDPR requirements are satisfied.

Depending on the country and recipient, this may include an adequacy decision of the European Commission or appropriate safeguards such as the European Commission's Standard Contractual Clauses.

10. Data Retention

We retain personal data only for as long as necessary for the purposes for which they were collected.

Information submitted through contact forms, demo requests, Founding Lab applications or email will generally be retained for as long as necessary to process the inquiry or application and manage any resulting business relationship.

Longer retention may apply where required by statutory commercial, tax or other legal obligations or where necessary for the establishment, exercise or defence of legal claims.

When the relevant purpose and applicable retention requirements cease to apply, the personal data will be deleted or anonymised as appropriate.

GDPR transparency requirements include informing individuals about the applicable storage period or, where a specific period cannot be stated, the criteria used to determine it. Eur-Lex

11. Your Rights

Subject to the applicable GDPR requirements, you have the right to:

  • access your personal data (Article 15 GDPR)

  • request correction of inaccurate personal data (Article 16 GDPR)

  • request deletion of your personal data (Article 17 GDPR)

  • request restriction of processing (Article 18 GDPR)

  • receive certain personal data in a portable format (Article 20 GDPR)

  • object to certain processing based on legitimate interests (Article 21 GDPR)

  • withdraw consent at any time where processing is based on consent (Article 7(3) GDPR)

Withdrawal of consent does not affect the lawfulness of processing carried out before the withdrawal.

These rights and the right to lodge a complaint with a supervisory authority form part of the information required under the GDPR. Eur-Lex

To exercise your rights, please contact:

info@eforsch.com

12. Right to Lodge a Complaint

You have the right to lodge a complaint with a competent data-protection supervisory authority if you believe that the processing of your personal data infringes applicable data-protection law.

The competent supervisory authority for eForsch UG in Lower Saxony is:

Der Landesbeauftragte für den Datenschutz Niedersachsen
(The State Commissioner for Data Protection of Lower Saxony)

Lower Saxony Data Protection Authority

13. Data Security

We use appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or access.

The website uses encrypted HTTPS communication to protect information transmitted between your browser and the website.

14. No Automated Decision-Making

We do not use personal data submitted through this website for automated decision-making or profiling within the meaning of Article 22 GDPR.

Applications to the Founding Lab Program are not accepted or rejected solely through automated decision-making.

15. Changes to this Privacy Policy

We may update this Privacy Policy where necessary to reflect changes to SMARagdLab, the website, technologies used, our services or applicable legal requirements.

The current version will be made available on smaragdlab.com.