Privacy Policy Generator

Beantworte ein paar Fragen und hol dir eine Datenschutzerklärung zum Herunterladen und Bearbeiten

100 % kostenlos. Läuft vollständig in deinem Browser: deine Dateien und Daten verlassen dein Gerät nie, und es wird nichts auf einen Server hochgeladen.

Vorlage, keine Rechtsberatung. This produces a starting draft from standard clauses. It is not legal advice, and it cannot know everything your business does. Read every paragraph before you publish it - a policy that describes data collection you do not do is as much of a problem as one that omits collection you do.

Mit einem Beispiel starten

Füllt jede Antwort mit einem durchgerechneten Beispiel, das du bearbeiten kannst. Nimm das, das deinem Geschäft am nächsten kommt.

0 of 5 details filled
Dein Unternehmen
GDPR expects a postal address, not just an email.
Who your visitors are

This decides whether the GDPR rights section, the California section, or both appear.

This decides which rights section is included. GDPR is the stricter of the two.
What your site actually does

Each of these adds or removes a section. Answer honestly - a policy claiming collection you do not do is as much of a problem as one that hides collection you do.

Who you share data with
Naming them is a GDPR requirement, and it is what makes a policy read as real rather than copied.

Privacy Policy

12 sections · 738 words · updates as you type

Privacy Policy

Last updated: 19 September 2026

Who we are

[Your business name] operates [your website] ("the site"). This policy explains what personal information we collect, why we collect it, and what you can do about it.

If you have any question about this policy, or about information we hold, contact us at [your contact email] or write to us at [your business address].

What we collect

We collect the following:

  • Usage data. Pages viewed, approximate location derived from your IP address, referring site, device type and browser. This is collected in aggregate to understand how the site is used.
  • Anything you send us. If you email us or use a contact form, we keep that correspondence so we can answer it.

We do not collect anything not listed here, and we do not sell personal information.

Why we collect it

  • To provide the site - so pages load, forms submit and the service works.
  • To understand what is used - so we can fix what is broken and improve what is not.

Under the UK GDPR and EU GDPR our lawful bases are: performance of a contract (running your account and taking payment), legitimate interests (keeping the site working and secure), legal obligation (financial records), and consent (marketing email and any non-essential cookies). Where we rely on consent you can withdraw it at any time.

Who we share it with

We share information with the service providers that run parts of this site for us - hosting, email delivery, and payment processing where relevant.

We require every provider to use the information only to deliver the service to us. We also disclose information where the law requires it, and if the business is sold, to the buyer as part of that sale.

Cookies

Analytics cookies tell us how the site is used, in aggregate.

Non-essential cookies are only set once you agree to them, and you can change or withdraw that choice at any time. You can also block or delete cookies in your browser settings.

How long we keep it

We keep personal information only as long as we need it:

  • Correspondence: kept while it is useful for support, then deleted.
  • Analytics: kept in aggregate; individual records expire according to our analytics provider settings.

Your rights

Under data protection law you have the right to ask us for a copy of the information we hold about you, to have it corrected, to have it deleted, to object to how we use it, to restrict our use of it, and to receive it in a portable format. Where we rely on your consent, you can withdraw that consent at any time.

To exercise any of these, email [your contact email]. We will respond within one month. If you are not satisfied with our response you can complain to your national data protection authority - in the UK that is the Information Commissioner's Office.

California privacy rights

If you are a California resident, the CCPA as amended by the CPRA gives you the right to know what personal information we collect and why, to request a copy of it, to request deletion, to correct inaccurate information, and to opt out of the sale or sharing of personal information.

We do not sell personal information. To make a request, email [your contact email]. We will not treat you differently for exercising any of these rights.

Children

This site is not directed at children under 13, and we do not knowingly collect personal information from them. If you believe a child has given us personal information, contact us at [your contact email] and we will delete it.

Security

We take reasonable technical and organisational measures to protect personal information, including encryption in transit and access controls on the systems that hold it. No method of transmission or storage is completely secure, and we cannot guarantee absolute security - but if a breach affects your rights we will tell you and the relevant authority as the law requires.

International transfers

Some of our service providers are based outside the UK and the European Economic Area. Where personal information is transferred outside those areas, we rely on an adequacy decision or on standard contractual clauses approved for that purpose, so that your information keeps the same protection it has at home.

Changes to this policy

We may update this policy as the site changes or as the law does. The current version is always on this page, and the date below tells you when it last changed. If a change materially affects how we use your information, we will say so more prominently than a silent edit.

Aus einem Template erzeugt. Keine Rechtsberatung - lies es, bevor du es veröffentlichst oder unterschreibst.

Andere Dokumente, die du erzeugen kannst

Die meisten Sites brauchen mehr als eines. Eine Datenschutzerklärung ohne AGB oder AGB ohne Rückerstattungsrichtlinie lässt die offensichtliche Lücke.

Terms and ConditionsTerms of service built around what you actually sell - goods, subscription, downloads or services.Cookie PolicyA cookie policy with a real table - each cookie named, with its purpose and how long it lasts.Cookie Consent BannerGenerates a working consent banner - blocks tagged scripts until consent, Google Consent Mode v2, no dark patterns.Refund and Return PolicyA refund policy customers can follow and payment processors accept - windows, exclusions and statutory rights in plain words.Website DisclaimerA disclaimer that names the actual risk your site carries, plus affiliate and sponsorship disclosures.Accessibility StatementA WCAG accessibility statement that states what you actually meet, names known issues, and gives people a route to report problems.Non-Disclosure AgreementA mutual or one-way NDA with a real purpose clause, standard carve-outs and a defined term.Freelance ContractAn independent contractor agreement that pins down scope, revisions, IP ownership and what happens when payment is late.Data Processing AgreementA GDPR Article 28 processor agreement with the eight mandatory clauses and a filled-in processing schedule.W-9 FormFills a substitute Form W-9 in your browser - your TIN is never uploaded, stored or sent anywhere.1099-NEC Contractor SummaryPrepares a 1099-NEC recipient statement and a payer summary - with a straight answer about what you can and cannot print yourself.Shipping PolicyA shipping policy Shopify and Amazon sellers can publish - origin, times, tracking, duties and who pays.DSAR Form GeneratorA data-delete and access request page you can host - GDPR and CCPA wording, no upload, no signup.

Über dieses Tool

Der Datenschutzerklärung-Generator baut eine Datenschutzerklärung aus deinen Antworten auf einen kurzen Fragebogen. Er ist für alle, die eine Website, App oder einen Shop betreiben und auch nur ein Stück personenbezogener Daten erfassen – und eine IP-Adresse im Serverlog zählt schon, und der richtige Zeitpunkt ist vor dem Launch und wieder, sobald du ein Tool hinzufügst, das Besucherdaten berührt. Eine Datenschutzerklärung ist nicht ein Dokument mit Regionalschalter. Die GDPR verlangt, dass du für jeden Zweck eine Rechtsgrundlage nennst und deine Auftragsverarbeitenden benennst; CCPA verlangt einen Weg "nicht verkaufen oder teilen" und das Versprechen, nicht zu benachteiligen. Eine Seite, die beides behauptet, ohne beides zu tun, ist der typische Fehler. Nichts Irrelevantes steht drin. Eine Klausel, die für dich nicht gilt, entfällt, statt aufgefüllt zu werden – ein Dokument, das etwas beschreibt, das du nicht tust, ist selbst ein Problem. Alles läuft in deinem Browser. Was du tippst, wird nie hochgeladen, nie gespeichert und ist weg, wenn du den Tab schließt – das zählt hier mehr als bei den meisten Tools, weil diese Dokumente Firmendaten, Kundennamen und manchmal Steuernummern tragen.

So verwendest du dieses Tool

  1. Beantworte die FragenFirmen- oder Website-Name. Website-Adresse. Kontakt-E-Mail für Datenschutzfragen. Nichts, was du tippst, verlässt den Browser.
  2. Sieh zu, wie es sich zusammenbautKlauseln erscheinen und verschwinden, während du antwortest, sodass das Dokument zu dem passt, was du wirklich tust, statt zu einer generischen Vorlage.
  3. Kopieren oder herunterladenKopiere den Text oder lade als PDF, Word oder reinen Text herunter. Die Word-Version ist die zum Bearbeiten.

Warum es nutzen

  • Sagt klar, was es ist und was nicht, über der Vorschau statt in einer Fußzeile.
  • Läuft vollständig in deinem Browser. Nichts hochgeladen, nichts gespeichert, kein Konto.
  • Lädt als PDF, Word oder reinen Text herunter - die Word-Datei ist ohne Schutz bearbeitbar.
  • Kostenlos ohne Wasserzeichen, ohne E-Mail-Hürde und ohne Limit pro Dokument.
  • Aus deinen Antworten gebaut, sodass Klauseln, die du nicht brauchst, weggelassen statt aufgefüllt werden.

Häufige Anwendungen

  • Etwas vor dem Launch in Stellung bringen und wieder, sobald du ein Tool hinzufügst, das Besucherdaten berührt.
  • Vorbereiten, was eine Kundin, ein App Store oder ein Zahlungsanbieter sehen will.
  • Alle, die eine Website, App oder einen Shop betreiben und auch nur ein Stück personenbezogener Daten erfassen – und eine IP-Adresse im Serverlog zählt schon.
  • Einer Anwältin einen Entwurf zur Prüfung geben, statt sie bei null anfangen zu lassen.
  • Ein kopiertes Dokument ersetzen, das ein anderes Geschäft beschreibt.

Tipps für bessere Ergebnisse

  • Behalte von jeder Fassung eine Kopie mit Datum. Wenn jemand fragt, was deine Bedingungen letzten März gesagt haben, muss die Antwort eine Datei sein, kein Erinnern.
  • Kombiniere es mit der Cookie-Richtlinie. Nur eines zu veröffentlichen lässt genau die Lücke, die Leute zuerst sehen.
  • Lies es, bevor du es veröffentlichst. Es ist ein Entwurf aus Standardklauseln, und nur du weißt, ob jede Zeile auf dich zutrifft.
  • Füll die Freitextfelder aus statt sie zu überspringen. Die benannten Listen - Auftragsverarbeiter, Ausschlüsse, Liefergegenstände - machen, dass es nach dir klingt statt nach einer Kopie.

Fehler, die du vermeiden solltest

  • Eine Richtlinie von einer größeren Seite kopieren. Du erbst deren Datenpraxis auf dem Papier – die Analyse, die sie fahren, den Zahlungsdienstleister, den sie nutzen, die Kinderklausel, die sie brauchen – und jede Zeile, die bei dir nicht stimmt, ist eine Falschangabe, die du bewusst veröffentlicht hast.
  • Den Platzhaltertext stehen lassen. Alles in eckigen Klammern ist ein Feld, das du übersprungen hast, und Leserinnen merken das sofort.
  • Einen erzeugten Entwurf wie einen geprüften behandeln. Das ist ein Ausgangspunkt, und wo es ernst wird, lohnt sich ein professionelles Gegenlesen.
  • Es verstecken. Ein Dokument, das niemand findet, erfüllt seine Aufgabe nicht - es gehört in die Fußzeile jeder Seite.

Häufig gestellte Fragen

Beantworte die Fragen links. Das Dokument entsteht beim Tippen, und du kannst es kopieren oder als PDF, Word oder reinen Text herunterladen, wenn es stimmt.

Nein. Es setzt einen Entwurf aus Standardklauseln zusammen, und jede Seite sagt das über der Vorschau. Neben Aufsichtsbehörden ist der praktische Preis kommerziell: Apple und Google lehnen App-Einreichungen ohne erreichbare Richtlinien-URL ab, Google Ads lehnt Konten ab, und Zahlungsdienstleister fragen danach beim Onboarding.

Ja - kostenlos, ohne Anmeldung, ohne E-Mail-Pflicht und ohne Wasserzeichen. Es läuft in deinem Browser, deshalb kostet es nichts, es anzubieten.

Im Großen und Ganzen alle, die eine Website, App oder einen Shop betreiben und auch nur ein Stück personenbezogener Daten erfassen – und eine IP-Adresse im Serverlog zählt schon. Der beste Zeitpunkt ist vor dem Launch und wieder, sobald du ein Tool hinzufügst, das Besucherdaten berührt.

Nein. Alles passiert auf deinem Gerät - nichts geht an einen Server, nichts wird gespeichert, und das Schließen des Tabs löscht es.

Die meisten brauchen zusätzlich Cookie-Richtlinie und AGB. Die decken die Lücken, die dieses Dokument offen lässt.

Eine Richtlinie von einer größeren Seite kopieren. Du erbst deren Datenpraxis auf dem Papier – die Analyse, die sie fahren, den Zahlungsdienstleister, den sie nutzen, die Kinderklausel, die sie brauchen – und jede Zeile, die bei dir nicht stimmt, ist eine Falschangabe, die du bewusst veröffentlicht hast.

Andere suchen auch nach

  • datenschutzerklärung generator kostenlos
  • datenschutzerklärung generator kleinunternehmen
  • datenschutzerklärung generator vorlage
  • datenschutzerklärung generator ohne anmeldung
  • datenschutzerklärung generator uk
  • datenschutzerklärung generator
  • datenschutzerklärung generator usa

Related guides