Skip to content

The Valley Business Campus

Privacy Policy

How we handle your personal data

Protecting your personal data is important to us. Below we inform you, in accordance with the General Data Protection Regulation (GDPR), about the nature, scope and purpose of the processing of personal data on this website.

1. Controller

The controller for data processing on this website is:

Uhland 12 Projekt GmbH, Friedrich-Ebert-Straße 7, 64297 Darmstadt, Germany

Represented by the Managing Director Christian Kirk.

Email: kontakt@the-valley.biz

2. Your rights as a data subject

You have the right to information (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20) and the right to object to processing (Art. 21). You may withdraw any consent given at any time with effect for the future.

An informal message to the email address above is sufficient to exercise your rights.

You also have the right to lodge a complaint with a supervisory authority: The Hessian Commissioner for Data Protection and Freedom of Information, Postfach 3163, 65021 Wiesbaden, Germany.

3. Hosting (Vercel)

This website is hosted by Vercel Inc., 340 S Lemon Ave #4133, Walnut, CA 91789, USA. On our behalf, Vercel processes server log data and ensures delivery of the website. The legal basis is our legitimate interest in the secure and efficient provision of our online offering (Art. 6 (1) (f) GDPR).

A data processing agreement (Art. 28 GDPR) is in place with Vercel. As data may be transferred to the USA, we base this on appropriate safeguards (EU standard contractual clauses and/or certification under the EU-US Data Privacy Framework).

4. Server log files

When the website is accessed, information transmitted by your browser is automatically recorded (including browser type/version, operating system, referrer URL, date and time of access and the IP address in shortened/processed form). This data is used for technical delivery, security and error analysis and is not merged with other data sources.

The legal basis is Art. 6 (1) (f) GDPR (legitimate interest in trouble-free and secure operation).

5. SSL/TLS encryption

For security reasons, this site uses SSL/TLS encryption. You can recognise an encrypted connection by the “https://” in your browser's address bar.

6. Content management system (Sanity)

The content of this website is managed and stored via the headless CMS provided by Sanity (Sanity AS, Torggata 7, 0181 Oslo, Norway; or Sanity, Inc.). Technical connection data may be processed in this context. Enquiries submitted via the contact form are also stored in the Sanity infrastructure (see section 7).

The legal basis is Art. 6 (1) (f) GDPR (legitimate interest in efficient maintenance and provision of the website). A data processing agreement is in place. Further information: https://www.sanity.io/legal/privacy

7. Contact form and enquiries

If you send us an enquiry via the contact form, we process the data you provide (subject/request, name, email address, phone number if applicable, company and your message) for the purpose of handling your enquiry and any follow-up questions.

The legal basis is Art. 6 (1) (b) GDPR (initiation/performance of a contractual relationship) or Art. 6 (1) (f) GDPR (legitimate interest in responding to enquiries). Enquiries are stored in our backend (Sanity, see section 6) and — where activated — additionally delivered to us by email (see section 8).

We store the data until the purpose of storage no longer applies (e.g. once your enquiry has been dealt with) and then delete it, unless statutory retention obligations require otherwise.

8. Email delivery (Resend)

To reliably deliver enquiries received via the contact form by email, we use — where activated — the service Resend (Resend, Inc., USA) as a processor. The data provided in the form is processed for the purpose of email delivery.

The legal basis is Art. 6 (1) (f) GDPR. Any transfer of data to the USA is based on appropriate safeguards (EU standard contractual clauses and/or EU-US Data Privacy Framework).

9. Google Maps

On the “Location” page we embed map material from Google Maps (provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland; and/or Google LLC, USA). The map is only loaded after you have actively given your consent (two-click solution). No data is transmitted to Google before your consent.

With your consent, when the map is loaded, data — in particular your IP address — is transmitted to Google and may be processed in the USA. The legal basis is your consent (Art. 6 (1) (a) GDPR), which you can withdraw at any time with effect for the future (see section 10). Further information: https://policies.google.com/privacy

10. Local storage in your browser (no tracking cookies)

We do not use any analytics or tracking cookies and no advertising cookies. For necessary functions we only store two technical values locally in your browser:

• “tv_maps_consent” (localStorage): remembers your decision regarding the Google Maps embed so you are not asked again on every visit. You can withdraw your consent by deleting this value in your browser settings.

• “tv_intro_seen” (sessionStorage): remembers, for the duration of the session, that the intro animation has already been shown. The value is automatically deleted when you close the browser tab.

This local storage is necessary for operation or to implement your consent and does not itself transmit any data to us or third parties.

11. Changes to this privacy policy

We adapt this privacy policy as soon as changes to the data processing we carry out make this necessary. The version published on this page at the relevant time applies.

Last updated: August 2026