Last updated: 20 August 2026
The controller responsible for the processing of personal data on this website within the meaning of the General Data Protection Regulation (“GDPR”) is:
FXC Engineering GmbH
Forckenbeckstraße 50
52074 Aachen
Germany
Email:
info@fxc-engineering.com
We take the protection of your personal data seriously. We process personal data only where this is necessary for the operation of our website, the handling of enquiries, the preparation of quotations, the establishment and management of business relationships, or where processing is otherwise permitted or required by law.
Personal data means any information relating to an identified or identifiable natural person.
This Privacy Policy describes the processing of personal data in connection with the use of our website and communications initiated through it.
Our website and commercial offering are intended exclusively for businesses, research institutions, universities and other professional users. We do not offer products to consumers through this website.
Our website is hosted by:
STRATO GmbH
Otto-Ostrowski-Straße 7
10249 Berlin
Germany
When you access our website, technical information required to deliver the website may be processed automatically by the web server. This may include in particular:
The purpose of this processing is to provide the website, ensure its stability and security, identify technical errors and protect our systems against misuse and attacks.
The legal basis is Article 6(1)(f) GDPR. Our legitimate interests are the secure, reliable and efficient operation of our website and IT infrastructure.
STRATO states that client hostnames and IP addresses are anonymised in the log files made available to hosting customers. STRATO currently makes web server log files available for a period of six weeks.
Where STRATO processes personal data on our behalf, it acts as a processor within the meaning of Article 28 GDPR.
You can contact us and submit a non-binding request for quote through our website.
Depending on the information you provide, we may process the following data:
The mandatory fields are required in order for us to identify and process your enquiry and respond to you. Information marked as optional is provided voluntarily.
The request form is configured to submit the information through a server-side PHP process within our STRATO hosting environment. We do not use Nicepage's lead-storage functionality for these submissions and do not maintain a separate website customer account or CRM database for this purpose.
Submitting a request for quote through the website does not constitute a binding order or purchase.
Legal basis
Where you personally intend to become a party to a contract with us, processing is based on Article 6(1)(b) GDPR insofar as it is necessary to take steps at your request prior to entering into a contract.
In most B2B enquiries, the person contacting us acts on behalf of a company, university, research institution or other organisation and is not personally the intended contractual party. In these cases, processing is based on Article 6(1)(f) GDPR.
Our legitimate interests are responding to business enquiries, preparing quotations, communicating with representatives and employees of potential customers and establishing or maintaining business relationships with their organisations.
No consent to data processing is required merely in order to submit a business enquiry.
If you contact us by email, or if an enquiry submitted through our website is subsequently handled by email, we process the information contained in the communication.
This may include in particular:
We process this information in order to respond to enquiries, prepare quotations, communicate with customers and potential customers, and establish or manage business relationships.
For our business email and communication infrastructure, we use Microsoft 365 / Exchange Online. The service is used in connection with our STRATO services and involves Microsoft cloud infrastructure.
Microsoft 365 services are provided by companies of the Microsoft group. For customers in the European Economic Area, this may include:
Microsoft Ireland Operations Limited One Microsoft Place South County Business Park Leopardstown Dublin 18 Ireland
Personal data contained in emails and related communication metadata may therefore be processed using Microsoft systems.
Where service providers process personal data on our behalf, the processing is governed by the applicable data-processing agreements in accordance with Article 28 GDPR.
Legal basis
Where the communication concerns a contract or pre-contractual measures with you personally, the legal basis is Article 6(1)(b) GDPR.
Where you communicate with us as an employee, representative, researcher or other contact person of an organisation, the legal basis is Article 6(1)(f) GDPR.
Our legitimate interest is conducting efficient and secure business communication with customers, prospective customers, suppliers, research partners and other professional contacts.
General enquiries that are not subject to a statutory retention obligation are normally deleted no later than 24 months after the last relevant communication, unless continued storage is necessary for a specific legitimate purpose.
Requests for quote, quotations and related correspondence may constitute commercial correspondence under German law. Where statutory retention obligations apply, we retain the relevant information for the legally required period.
Commercial correspondence falling within Section 257 of the German Commercial Code (Handelsgesetzbuch – HGB) is generally subject to a retention period of six years, beginning at the end of the calendar year in which the respective commercial correspondence was received or sent.
If an enquiry results in a contractual relationship, additional statutory retention obligations may apply to documents created in connection with that relationship.
Where personal data is retained solely because of a statutory retention obligation, it will no longer be actively used for purposes incompatible with that obligation.
Within FXC Engineering GmbH, personal data is accessible only to employees who require the information for the relevant purpose, for example for sales, technical consultation, quotation preparation, administration or IT support.
Depending on the processing concerned, personal data may also be made available to service providers used by us, in particular:
Where these service providers process personal data on our behalf, they are engaged in accordance with Article 28 GDPR where required.
We may also disclose personal data where this is required by law, by a competent authority or court, or where disclosure is necessary for the establishment, exercise or defence of legal claims.
We do not sell personal data.
We aim to use services that process personal data within the European Union or European Economic Area wherever reasonably possible.
Microsoft operates Microsoft 365 under its EU Data Boundary for eligible customers located in the European Union and European Free Trade Association. Under this framework, Microsoft has committed to storing and processing customer data and relevant personal data of covered Microsoft 365 services within the EU Data Boundary, subject to documented exceptions.
Due to the global nature of Microsoft's infrastructure and support operations, limited processing or transfers of personal data outside the European Economic Area may nevertheless occur in certain circumstances.
Where personal data is transferred to a country outside the European Economic Area for which the European Commission has not adopted an adequacy decision, appropriate safeguards are used where required.
These safeguards may include the European Commission's Standard Contractual Clauses pursuant to Article 46 GDPR.
Microsoft provides contractual safeguards for relevant international transfers through its applicable data protection terms, including its Products and Services Data Protection Addendum.
We currently do not use:
If we introduce such technologies in the future, this Privacy Policy and, where applicable, our Cookie Settings will be updated accordingly.
The fonts used by this website, including Roboto, are embedded locally within our website.
The fonts are therefore loaded from our own hosting environment and not directly from Google Fonts servers when you visit our website.
No connection to Google is required solely for the purpose of displaying these locally hosted fonts.
Our website may contain links to external websites, including links to scientific publications through DOI references and a link to our LinkedIn presence.
A simple external link does not itself cause the linked third-party website to receive data merely because you visit our website. A connection to the third-party provider is normally established only when you actively follow the link.
Once you leave our website, the processing of personal data by the respective third-party website is governed by that provider's own privacy information. We have no control over such processing.
We do not currently use analytics or advertising cookies.
Information concerning any technically necessary cookies or similar technologies used for the operation of the website will be provided separately in our Cookie Settings.
Non-essential technologies will not be introduced without first assessing the applicable consent and information requirements.
We do not use automated decision-making within the meaning of Article 22 GDPR in connection with this website.
We also do not create behavioural profiles of website visitors for advertising, scoring or automated customer-selection purposes.
Subject to the conditions laid down in the GDPR, you have the right to:
Please note that the right to erasure does not apply where we are legally required to retain the relevant information or where another statutory exception applies.
To exercise your rights, you may contact us at:
info@fxc-engineering.com
Where we process your personal data on the basis of Article 6(1)(f) GDPR, you have the right, on grounds relating to your particular situation, to object at any time to such processing.
If you object, we will no longer process the personal data concerned unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or unless processing is required for the establishment, exercise or defence of legal claims.
You have the right to lodge a complaint with a competent data protection supervisory authority if you believe that the processing of your personal data infringes applicable data protection law.
The supervisory authority responsible for data protection matters in North Rhine-Westphalia is:
State Commissioner for Data Protection and Freedom of Information North Rhine-Westphalia (Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen – LDI NRW)
Kavalleriestraße 2–4
40213 Düsseldorf
Germany
Email: poststelle@ldi.nrw.de
You may also contact another competent supervisory authority, in particular in the EU Member State of your habitual residence, place of work or place of the alleged infringement.
We use appropriate technical and organisational measures to protect personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or unauthorised access.
Our website is transmitted using encrypted HTTPS connections.
However, no method of transmission or storage can guarantee absolute security.
We may update this Privacy Policy if our website, technical infrastructure, business processes or applicable legal requirements change.
The version published on this website at the relevant time applies.
Last updated: 20 August 2026