Privacy
OpenAI & account login
Public information pages are available without an account. Registration and sign-in are required for the application studio; there is no guest editor. Application generation and signed-in Boosty AI help use OpenAI only; other AI providers are not enabled. Google, Apple, Facebook and X login are available only when the respective service has been configured and enabled for this website. Such optional login processes a provider identifier, stable subject and email if available. Some services use an internal account alias instead of email. One-time login state expires after ten minutes. Verified profiles and job postings are sent to centrally funded OpenAI only after your permission. Help sends only the current question after sign-in, never your CV or chat history. The operator key never reaches the browser. Requests use store=false; this does not remove all provider retention. Account drafts and applications are saved automatically. Help text is not saved. AI call metadata, tokens and estimated costs are retained up to 30 days for abuse and cost prevention; aggregate daily budgets contain no personal data. Account deletion removes account-linked records. See the German notice for legal bases and provider/hosting requirements.
Controller and contact
Kastriot Tafolli, Hauptstraße 1
18609 Ostseebad Binz
Deutschland. Privacy requests: info@tafolli.net.
Website and account
The server receives IP address and technical connection details to deliver and secure the service (GDPR Art. 6(1)(f)). Hosting: DreamHost, LLC; country: USA – Ashburn, Virginia; logs: The app and HTTPS proxy do not create HTTP access logs. Technical service and error logs rotate across three files of at most 10 MB per service; this is a size limit, not a fixed number of days. Operating-system and hosting-provider security and administration logs are processed separately.. Accounts store email, hashed passwords, single-use verification/reset links and expiring tokens and automatically saved drafts and applications after sign-in, including profile, job details, preferences, optional photo, design, documents, status, notes and creation/update timestamps. API keys and Boosty chat messages are never saved to the account (Art. 6(1)(b)). Login expires after seven days. Delete accounts and projects in the app.
Account confirmation, profile and transactional email
Profile data, email verification, accepted terms version and time, and security actions are processed to deliver and secure your account contract (GDPR Art. 6(1)(b) and (f)). New accounts activate only after verification. Unverified new accounts are removed after 14 days. Verification links expire after 24 hours and password reset links after 30 minutes; each is single use. Tokens are stored only as hashes. Undelivered messages are encrypted until delivery or expiry; delivery metadata is cleared after 7 days. DreamHost delivers verification, recovery and contractual emails from info@tafolli.net, receiving recipient, subject and message content. These are not marketing emails. Manage, export or delete your profile and documents after renewed identity verification. Backups may retain deleted data within the stated backup cycle.
Documents, AI and Boosty
Uploads, profile and job text are processed for your requested functions (Art. 6(1)(b)). Local OCR does not send images to an OCR provider. Application AI sends sources, profile, posting and instructions to OpenAI only after permission (Art. 6(1)(a)). Boosty responds to greetings and app questions, not unrelated topics. Its help sends only your current question and fixed help topics to OpenAI after sign-in and submission. No CV, account data or chat history is attached; questions are not saved in the app database. The central operator key never reaches the browser.
Provider processing
Application generation and signed-in Boosty AI help use OpenAI only; other AI providers are not enabled. Our OpenAI server calls use store=false. This does not eliminate provider abuse logs: OpenAI generally describes up to 30 days and no default API training. Provider contracts may differ. OpenAI may process outside the EEA. Actual processors, contracts and GDPR Art. 44 safeguards must be documented before launch. Ask info@tafolli.net for safeguards.
Storage and device access
Necessary login cookie candidaro_login lasts up to seven days; the PWA caches only public assets. No advertising trackers are installed. Necessary device storage relies on German TDDDG § 25(2)(2), subsequent processing on GDPR Art. 6(1)(b)/(f). Anonymous server sessions expire after 30 days; saved projects remain until deleted. Usage events and help quotas: 30 days; aggregates/admin audit: 90 days. Backup retention: Daily encrypted database backups on the VPS that are older than 14 days are removed during the next successful backup run. Failed or stopped runs can extend retention. During setup, recovery is checked with an encrypted copy on the operator’s computer; that verification copy is deleted after the check. No continuous automatic off-site backup service is configured.. Exports and provider copies are not removed by deleting an account.
Statistics and administration
Internal statistics contain function, time, status and optional account association, never question/document text, keys or IP addresses. They support operation and abuse prevention (Art. 6(1)(f)). Account deletion removes the event association. Authorized operator access to content is protected by separate MFA and audited.
Rights and choice
Public information pages are available without an account. Registration and sign-in are required for the application studio; there is no guest editor. Application generation and signed-in Boosty AI help use OpenAI only; other AI providers are not enabled. Google, Apple, Facebook and X login are available only when the respective service has been configured and enabled for this website. Such optional login processes a provider identifier, stable subject and email if available. Some services use an internal account alias instead of email. One-time login state expires after ten minutes. Verified profiles and job postings are sent to centrally funded OpenAI only after your permission. Help sends only the current question after sign-in, never your CV or chat history. The operator key never reaches the browser. Requests use store=false; this does not remove all provider retention. Account drafts and applications are saved automatically. Help text is not saved. AI call metadata, tokens and estimated costs are retained up to 30 days for abuse and cost prevention; aggregate daily budgets contain no personal data. Account deletion removes account-linked records. See the German notice for legal bases and provider/hosting requirements.
Weekly credits and purchases
Weekly records contain the account, calendar week, free allowance, usage and pending reservations. Paid credits are separate and survive resets. Enabled purchases record order ID, package, amount, provider, verified payment status, contractual consent and withdrawal notices and receipts (GDPR Art. 6(1)(b) and (c)). Full card details are not stored on our server. Records support correct crediting, deduplication and contractual processing. Billing records actually subject to statutory retention are restricted on account deletion; technical or unpaid drafts do not justify blanket long-term retention.
Stand / Updated: 2026-10-06