Privacy policy
This English version is provided for convenience; the German version is authoritative. Information per Art. 13 GDPR. Last updated: 31 July 2026.
Controller
Georg Mayer, Erdbergstraße 89/20, 1030 Vienna, Austria — e-mail: info@researchradar.at
In short
- No analytics or tracking, no ads, no third-party embeds (all fonts and scripts are served by this site itself).
- No profiling, no automated decision-making, no AI processing of personal data, no transfers to third countries.
- Without an account the site works without providing any personal data.
- At most two cookies, and each one only through something you do: the session cookie only when you use a form or are signed in, the appearance cookie only when you press the appearance switch (details below). Both are technically necessary — hence no cookie banner.
Server logs
The web server keeps the usual technical log entries (IP address, time, requested address, browser identifier) for operation, debugging, and abuse defence — legitimate interest, Art. 6(1)(f) GDPR. Logs rotate daily and are deleted after 14 days.
Account (optional)
An account (for e-mail alerts and deadline reminders) stores: username, e-mail address, the password only as a hash (scrypt — the password itself is never stored), language, confirmation status, registration time, and the date the account was last used (the date only, no time of day and no record of which pages were opened — so that accounts nobody uses any more can be recognised). Legal basis: contract, Art. 6(1)(b) GDPR.
Alerts and reminders
Your chosen notification settings (channels, sources, career stages, reminder days per grant) and sent-mail watermarks (when the last alert, weekly digest, or reminder mail went out — they prevent duplicates) are stored with the account. Legal basis: Art. 6(1)(b) GDPR.
Login abuse protection
Login and password-reset attempts store the username or e-mail together with the IP address for a 15-minute window to slow repeated failures; older entries are deleted automatically. Legal basis: legitimate interest in account security, Art. 6(1)(f) GDPR.
Cookies
This site sets at most two cookies, and each one only once you do something yourself.
The session cookie researchradar_session appears as soon
as you open a page carrying a form — signing in, registering, resetting a
password — because a form has to be protected against misuse from other
sites. Reading the directory sets no cookie. After you sign in, the same
cookie keeps you signed in for up to 90 days.
The appearance cookie researchradar_theme appears only
once you press the appearance switch. For one year it stores nothing but
the chosen appearance — dark or light — so the
page looks right the moment you come back. Never switch it, and you never
get it.
Both are HttpOnly and SameSite=Lax. Both are technically necessary for what you asked for, and neither is used to track anybody; no consent is required. No other cookies or browser storage are used.
Confirmation, reset, alert, and reminder mails are sent via our own
mail server, sender mail@researchradar.at. No external
mail providers are used; e-mail addresses are not shared.
Retention and deletion
- Account data is kept until the account is deleted. You can delete it yourself at any time — sign in and scroll to the bottom of the "Alerts" page; the account, its alert settings and every reminder are removed immediately and for good. By mail to info@researchradar.at works too.
- Confirmation links are valid for 48 hours, reset links for 2 hours.
- Throttle entries are deleted after their 15-minute window, server logs after 14 days.
Your rights
Per Art. 15–21 GDPR you have the right to access, rectification, erasure, restriction, data portability, and objection — an informal e-mail to info@researchradar.at suffices. You may also complain to the Austrian data protection authority: dsb.gv.at.