Skip to main content
Calenode App-IconCalenode
DE EN
Privacy

Your infrastructure stays yours.

Effective 28 July 2026

1. Controller

Peter van der Ven
Nexus Solutions
Specialist in digitalization & IT infrastructure
Bonner Str. 52
42697 Solingen
Germany

Privacy requests: datenschutz@calenode.com
Phone: +49 (0) 1567 8738751

2. Scope

This Privacy Policy applies to the calenode.com website, its support form, and the Calenode app. It covers only processing for which Peter van der Ven or Nexus Solutions is responsible. The respective operators remain responsible for n8n instances connected by users and for services used within those instances.

3. Hosting and server logs

This website is hosted on a dedicated server operated by IONOS SE, Elgendorfer Straße 57, 56410 Montabaur, at a server location in Baden-Baden, Germany. A data processing agreement pursuant to Article 28 GDPR is in place with IONOS.

When the website is accessed, technically required connection data is processed. This may include the IP address, date and time, requested resource, transferred data volume, referrer, browser type, and operating system. Processing is necessary to provide the website securely and reliably, analyze errors, and defend against abusive access. The legal basis is Article 6(1)(f) GDPR. The legitimate interest lies in operational and information security.

Server logs are deleted or anonymized after no more than seven days unless a security incident exceptionally requires longer retention for investigation or legal enforcement.

4. Technically necessary session data

The support form uses a technically necessary session. It protects the form against cross-site request forgery, automated submissions, and excessive requests. A random session identifier may be stored in a session cookie. It is not used for advertising, audience measurement, or user profiling.

To limit repeated form requests, a pseudonymous check value is temporarily created from the IP address. The legal basis is Article 6(1)(f) GDPR; the legitimate interest is protecting the form and the systems behind it. No consent is requested for this strictly necessary technical purpose.

5. Support form, email, and support

When you use the support form, we process your name, email address, selected topic, message content, submission time, and the source calenode.com. Required fields are necessary to classify and respond to your request. The form cannot be processed without this information. You may contact us directly by email instead.

Processing is carried out to handle technical questions, purchase and restoration requests, feedback, privacy matters, or other messages. The legal basis is Article 6(1)(b) GDPR where communication relates to a contract or pre-contractual measures. Article 6(1)(f) GDPR applies to general support, security, and abuse prevention.

Technical processing path

The form sends the information over an encrypted and additionally authenticated connection to a self-hosted n8n instance. There, the data is validated, checked for obvious abuse patterns, and then sent through the SMTP mail server configured for Calenode to datenschutz@calenode.com. For plausible requests, an automatic confirmation may be sent to the supplied email address through the same mail server.

Local AI spam filter

For spam prevention, a locally operated Ollama language model classifies the content on a scale from 0 to 10. Clearly implausible requests may be discarded, borderline cases may be submitted for manual review, and plausible requests are forwarded to support. Input is not sent to OpenAI or any other external AI provider and is not used to train an external model.

The classification is used exclusively to sort incoming support requests. It has no legal or similarly significant effect and does not constitute automated decision-making within the meaning of Article 22 GDPR. If a genuine request is incorrectly filtered or you do not receive a confirmation, you may contact datenschutz@calenode.com directly at any time.

Retention

Support messages and related correspondence are deleted once they are no longer required, generally no later than twelve months after the request has been closed. Longer statutory retention periods, particularly for tax- or commercial-law business correspondence, remain unaffected. Content clearly identified as spam is not permanently added to a support archive. Where n8n stores technical execution data, it is deleted after the configured period, which is limited to what is necessary for operational security and error analysis.

6. Data processing in the Calenode app

Calenode is a local management and editing interface for n8n instances selected by the user. The app does not require a Calenode user account and does not send workflow content to a Calenode cloud.

Server names, server URLs, environment labels, app settings, and locally created workflow versions or backups are stored on the device. API keys are stored separately and protected in Apple Keychain. Removing a server also removes its locally stored credentials and workflow versions from Calenode.

When retrieving or editing workflows, credential metadata, and executions, the app communicates directly with the n8n URL provided by the user. The personal data processed there depends on the relevant n8n instance, its workflows, and the services connected by its operator. Calenode does not receive the secret contents of credentials stored in n8n.

Calenode contains no advertising, tracking, or external analytics SDKs. It does not create cross-device profiles.

7. Local notifications

At your request, Calenode can display local system notifications for unreachable servers or failed workflow executions. Permission is granted through the iPadOS system settings and may be withdrawn there at any time. Calenode does not use its own push server and does not send notification content to a Calenode cloud.

8. In-app purchases and restoration

Optional unlocks are processed through Apple StoreKit and the App Store. Payment data such as credit card or bank account details is processed exclusively by Apple and is not accessible to Calenode or Nexus Solutions. The app processes only product, entitlement, and transaction information provided by StoreKit where necessary to unlock, verify, or restore a purchase.

Apple acts under its own responsibility for operation of the App Store and payment processing. Apple’s App Store privacy information also applies.

9. Recipients and international transfers

IONOS may receive technical data as a processor in connection with website operation. Support data is processed within self-hosted n8n, Ollama, and SMTP infrastructure. Support messages are not intended to be transferred to external AI services.

For App Store purchases, Apple processes data under its own responsibility. In accordance with its privacy information, Apple may also process data outside the European Economic Area. Calenode does not otherwise transfer app or workflow data to third countries.

10. External links, tracking, and third-party content

The website does not use marketing cookies, analytics or tracking tools, social media plugins, externally loaded fonts, or advertising networks. External content is not embedded automatically. When you follow an external link, the relevant provider processes resulting data under its own responsibility.

11. Retention and deletion in the app

Locally stored server data, settings, and workflow backups remain on the device until you delete them in the app, remove the app, or reset the device accordingly. API keys remain in Apple Keychain until the associated server entry or key is removed. Retention periods on a connected n8n instance are determined solely by its operator.

12. Your rights

Subject to the statutory requirements, you have the right of access, rectification, erasure, restriction of processing, and data portability. Where processing is based on Article 6(1)(f) GDPR, you may object on grounds relating to your particular situation.

To exercise your rights, send an informal message to datenschutz@calenode.com. Consent may be withdrawn at any time with future effect; however, Calenode currently does not rely on consent for the core processing described in this Policy.

13. Right to lodge a complaint

Under Article 77 GDPR, you have the right to lodge a complaint with a data protection supervisory authority. In particular, the competent authority is:

Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen
Kavalleriestraße 2–4
40213 Düsseldorf
Germany

www.ldi.nrw.de

14. Security and changes

The website is transmitted over encrypted HTTPS. The support form is protected by CSRF protection, input validation, rate limiting, an authenticated webhook, and technical spam filters. Nevertheless, never submit passwords, API keys, complete workflow exports, or other secrets.

This Privacy Policy will be updated if features, technical processes, or legal requirements change. The current version is permanently available at this address.

← Back to home