Datenschutzerklärung

Zuletzt aktualisiert: 6. Februar 2026

1. Introduction

Thermio ("we", "us", "our") is a hardware project building ultralight trail-ready sensors for temperature, humidity, and pressure. This Privacy Policy explains how we collect, use, and protect your personal data when you interact with our website at getthermio.com and related services.

We are committed to protecting your privacy and complying with applicable data protection regulations, including the EU General Data Protection Regulation (GDPR).

2. Data We Collect

We collect only the data you voluntarily provide through our website forms:

Waitlist signup

  • Email address
  • Product interest (Thermio / Thermio Mini / Not sure yet)
  • Use case (optional — hiking type)
  • Language preference (detected from your browser locale)
  • Referral code (if you arrived via a referral link)

Field tester application

  • Name and email address
  • Phone operating system (iOS / Android)
  • Typical trip length
  • Expected conditions and priorities
  • Free-text notes (optional)
  • Language preference

Automatically collected

  • IP address — used solely for rate-limiting to prevent abuse. Not stored permanently.

3. How We Use Your Data

  • Waitlist communication: Sending you product updates, development milestones, early access invitations, and preorder opportunities.
  • Field tester coordination: Reviewing your application, contacting you about testing slots, and coordinating field test logistics.
  • Product development: Understanding our audience's needs (e.g., preferred use cases, conditions, priorities) to build a better product.
  • Abuse prevention: Rate-limiting form submissions to prevent spam.

We will never sell, rent, or share your personal data with third parties for marketing purposes.

4. Legal Basis for Processing

Under the GDPR, we process your data based on:

  • Consent (Art. 6(1)(a)): You voluntarily submit your data through our forms. You can withdraw consent at any time by unsubscribing or contacting us.
  • Legitimate interest (Art. 6(1)(f)): Rate-limiting and abuse prevention to maintain service integrity.

5. Third-Party Services

We use the following services to operate our website. Each is used minimally and only for the stated purpose:

  • Notion (Notion Labs, Inc.) — Stores waitlist and field tester data securely. Notion Privacy Policy
  • Resend (Resend, Inc.) — Sends transactional emails (welcome emails, confirmations). Your email address is shared with Resend for delivery. Resend Privacy Policy
  • Upstash (Upstash, Inc.) — Provides rate-limiting via Redis. Only your IP address is temporarily processed; no personal data is stored. Upstash Privacy Policy
  • Vercel (Vercel, Inc.) — Hosts our website. Standard server logs may include IP addresses. Vercel Privacy Policy

6. Data Retention

We retain your data for as long as it is needed for the purposes described above:

  • Waitlist data: Until the product launches and you either purchase or unsubscribe.
  • Field tester data: Until the field testing program concludes.
  • Rate-limiting data: Automatically expires after 1 minute.

When you unsubscribe, we mark your record accordingly and cease all email communication. You may also request full deletion (see below).

7. Your Rights

Under the GDPR and applicable data protection laws, you have the right to:

  • Access — Request a copy of the data we hold about you.
  • Rectification — Request correction of inaccurate data.
  • Erasure — Request deletion of your data ("right to be forgotten").
  • Restrict processing — Request that we limit how we use your data.
  • Data portability — Request your data in a structured, machine-readable format.
  • Withdraw consent — Unsubscribe from emails at any time via the unsubscribe link in every email, or by contacting us.
  • Lodge a complaint — Contact your local data protection authority if you believe your rights have been violated.

To exercise any of these rights, email us at hello@getthermio.com. We will respond within 30 days.

8. Cookies

Our website uses no tracking cookies and no analytics tools (no Google Analytics, no Meta Pixel, no similar trackers). We do not use any third-party advertising cookies.

Essential cookies may be set by our hosting provider (Vercel) for basic functionality such as load balancing. These are strictly necessary and do not track you.

9. Data Security

We take reasonable measures to protect your data, including:

  • All data transmitted over HTTPS (TLS encryption)
  • API keys and secrets stored securely as environment variables
  • Rate-limiting to prevent abuse and unauthorized access
  • Secure, token-based unsubscribe links to prevent unauthorized modifications

10. International Data Transfers

Some of our third-party service providers (Notion, Resend, Upstash, Vercel) are based in the United States. Data transfers to the US are conducted in accordance with applicable legal frameworks, including EU Standard Contractual Clauses (SCCs) where required.

11. Children's Privacy

Our website and services are not directed at individuals under the age of 16. We do not knowingly collect personal data from children. If you believe we have inadvertently collected such data, please contact us and we will delete it promptly.

12. Changes to This Policy

We may update this Privacy Policy from time to time. If we make significant changes, we will notify waitlist members by email. The "Last updated" date at the top reflects the most recent revision.

13. Contact

If you have questions or concerns about this Privacy Policy or how we handle your data, please contact us:

Email: hello@getthermio.com