D2 – Creative Marketing Agency

Copenhagen, Denmark

D2 – Creative Marketing Agency

Copenhagen, Denmark

Privacy Policy


1. An Overview of Data Protection

General Information

This information provides a simple overview of what happens to your personal data when you visit this website. Personal data is any data that can personally identify you. Detailed information can be found in the full privacy policy below.

Data Collection on This Website

Who is responsible for data collection?

Data processing on this website is carried out by the website operator. Contact details can be found in the section “Information on the Responsible Party”.

How do we collect your data?

Some data is collected when you provide it to us (e.g. via contact forms). Other data is collected automatically or with your consent when visiting the website (e.g. technical data such as browser, operating system, or time of access).

What do we use your data for?

Data is used to ensure error-free website operation, to analyze user behavior (if applicable), and to process inquiries or contracts.

What rights do you have?

You have the right to access, rectify, delete, restrict processing, and data portability. You also have the right to withdraw consent at any time and to lodge a complaint with a supervisory authority.



2. Hosting

External Hosting

This website is hosted externally. Personal data collected on this website is stored on the servers of the hosting provider.

This may include IP addresses, contact requests, meta and communication data, contract data, contact details, website access logs, and other data generated via the website.

Legal basis is Art. 6(1)(b) GDPR (contract performance) and Art. 6(1)(f) GDPR (legitimate interest in secure and efficient website provision). Where consent is required, processing is based on Art. 6(1)(a) GDPR and applicable Danish data protection rules.

We use the following hosting provider:

checkdomain GmbH
a dogado group company
Große Burgstraße 27/29
23552 Lübeck
Germany

Data Processing Agreement

We have concluded a Data Processing Agreement (DPA) with our hosting provider to ensure GDPR-compliant processing of personal data.

Server Log Files

The hosting provider automatically collects and stores server log files for security and technical monitoring purposes. This includes IP address, browser type and version, operating system, referrer URL, time of access, and requested pages.

Legal basis is Art. 6(1)(f) GDPR (legitimate interest in the secure and stable operation of the website).



3. General Information and Mandatory Disclosures

Data Protection

We take the protection of your personal data seriously and process it in accordance with applicable data protection laws and this privacy policy.

We point out that data transmission over the internet may have security vulnerabilities.

Responsible Party

D2 – Creative Marketing Agency
c/o Anna Bendtsen
Brøndæblevej 7, st. tv.
2500 Copenhagen
Denmark

Phone: +45 50328059
Email: info@d2marketing.dk

Storage Duration

Unless stated otherwise, personal data is stored only as long as necessary for the respective purpose or as required by statutory retention periods. After that, data is deleted.

Legal Basis for Processing

Processing is carried out under Art. 6 GDPR, depending on the purpose:

  • Art. 6(1)(a) GDPR – Consent
  • Art. 6(1)(b) GDPR – Contract performance
  • Art. 6(1)(c) GDPR – Legal obligation
  • Art. 6(1)(f) GDPR – Legitimate interest

Recipients of Personal Data

We only share personal data where necessary for contract fulfillment, legal compliance, legitimate interest, or based on consent. Where processors are used, data processing agreements are in place.

Revocation of Consent

You may revoke any consent at any time. The legality of processing carried out before revocation remains unaffected.

Right to Object (Art. 21 GDPR)

You may object to processing based on Art. 6(1)(f) GDPR at any time for reasons arising from your particular situation.

If your data is processed for direct marketing, you may object at any time, and your data will no longer be used for such purposes.

Right to Lodge a Complaint

You have the right to lodge a complaint with a supervisory authority, particularly in your country of residence, workplace, or place of the alleged infringement.

SSL/TLS Encryption

This website uses SSL/TLS encryption for security. Encrypted connections are indicated by “https://” and a lock symbol in the browser.



4. Data Collection on This Website

Cookies

This website uses cookies. Cookies are small data files stored on your device.

Cookies may be technically necessary or used for analytics or functionality. Necessary cookies are based on Art. 6(1)(f) GDPR. Cookies that are not strictly necessary are only used based on your consent (Art. 6(1)(a) GDPR and applicable EU/Danish cookie laws).

You may disable cookies in your browser settings.

Server Log Files

The provider automatically collects and stores information in server log files, including:

  • Browser type and version
  • Operating system
  • Referrer URL
  • Host name
  • Time of request
  • IP address

This data is processed based on Art. 6(1)(f) GDPR for security and technical stability.

Contact Form / Email Contact

If you contact us via the contact form or email, we process the data you provide (such as name, email address, and message) solely to handle your inquiry. The legal basis is Art. 6(1)(b) GDPR (pre-contractual measures) or Art. 6(1)(f) GDPR (legitimate interest in responding to inquiries). If consent is requested, processing is based on Art. 6(1)(a) GDPR. Your data will not be shared with third parties and will be deleted once your inquiry has been resolved, unless legal retention obligations apply. You have the rights of access, rectification, deletion, restriction of processing, data portability, and the right to object under the GDPR. You may also lodge a complaint with the Danish Data Protection Agency (Datatilsynet).


5. Plugins and Tools

Google Fonts (Local Hosting)

This website uses Google Fonts for a consistent presentation of fonts. The fonts are hosted locally on our server, meaning no connection to Google servers is established when loading the website.

Legal basis for processing is Art. 6(1)(f) GDPR (legitimate interest in a uniform and visually appealing presentation of the website).

More information about Google Fonts: Google Fonts FAQ.

Wordfence

We use Wordfence, a security plugin provided by Defiant Inc., USA, to protect our website from unauthorized access, malware, and cyberattacks.

For this purpose, the plugin processes technical data such as IP addresses, access attempts, system information, and security-relevant log data. These data are used to detect and block malicious activity.

Legal basis for processing is Art. 6(1)(f) GDPR (legitimate interest in ensuring the security and integrity of our website). Where consent is required (e.g., for cookies or device fingerprinting), processing is based on Art. 6(1)(a) GDPR.

Data may be transferred to the USA. Such transfers are based on the EU Commission’s Standard Contractual Clauses (SCCs) to ensure an adequate level of data protection.

Data transfers to the United States may involve the risk that US authorities could access personal data under local laws.

Complianz (Cookie and Consent Management)

We use Complianz to manage and document user consent for cookies and similar technologies.

Complianz stores consent status (acceptance or rejection of cookies) locally in your browser and in our system for compliance purposes. No unnecessary personal data is shared with third parties.

Legal basis is Art. 6(1)(c) GDPR (legal obligation to document consent) and Art. 6(1)(f) GDPR (legitimate interest in compliant data processing).

Consent data is stored for as long as required by legal obligations or until it is no longer needed for documentation purposes.

UpdraftPlus Backup

We use UpdraftPlus to create encrypted backups of our website data to ensure recovery in case of technical failure or data loss.

Backups may include website files, database content, and administrative data. These backups are stored in encrypted form and are used exclusively for restoration purposes.

Legal basis is Art. 6(1)(f) GDPR (legitimate interest in secure data backup and recovery).

Backup data is retained only as long as necessary for backup cycles and operational security and is regularly deleted or overwritten.

Antispam Bee

We use Antispam Bee to protect our website from spam in comments and contact forms.

The plugin processes data such as IP address, comment content, and email address to detect and filter spam messages.

Legal basis is Art. 6(1)(f) GDPR (legitimate interest in preventing spam and ensuring system security).

Data is not stored longer than necessary for spam detection and is automatically deleted or anonymized after processing.

WP Armour (Honeypot Anti-Spam)

We use WP Armour, a honeypot-based anti-spam system, to prevent automated form submissions.

This system detects bots by analyzing form behavior. No user-visible interaction is affected. Only minimal technical data required for spam prevention is processed.

Legal basis is Art. 6(1)(f) GDPR (legitimate interest in protecting forms from abuse and spam).

No personal data is permanently stored by the plugin beyond what is technically necessary for spam prevention.