Privacy Policy

Data protection according to GDPR

Last updated: March 2026

Read in German

Your Privacy Matters

This is a portfolio website. We only collect data necessary for its operation.

Data Controller
The responsible party for data processing on this website is:
  • Nikki Sophie Berthold
  • Friedrich-Karl-Straße 28
  • 32584 Löhne, Germany
DiscordDiscord OAuth Login
This website uses Discord OAuth for authentication. When you log in with Discord, we receive and store the following information:
  • Discord User ID - Your unique Discord identifier (for account identification)

  • Username - Your Discord username (for display)

  • Avatar URL - Your profile picture (for display)

  • Email Address - Your Discord Email (for account recovery and communication)

Purpose: Authentication and communication.

Legal basis: Art. 6 para. 1 lit. a GDPR (necessary for contract fulfillment - providing the service you requested).

Data Sharing: This authentication process is handled by Discord. By logging in, you also agree to Discord's Privacy Policy

Server Logs
Our web server automatically collects and temporarily stores the following technical information when you visit our website:
  • IP Address (anonymized)

  • Date and Time of Access

  • Requested Page/Resource

  • HTTP Status Code

  • Browser Type and Version

  • Operating System

  • Referrer URL (previously visited page)

Purpose: Security analysis, debugging errors, and ensuring the stability and availability of our service.

Legal basis: Art. 6 para. 1 lit. f GDPR (legitimate interest in ensuring the security and proper functioning of our service).

Retention: These logs are automatically deleted after 30 days or when overwritten by new logs.

Data Retention
We store your data as follows:
  • Account Data (Discord OAuth):

    Stored as long as your account exists. You can request deletion at any time by contacting us or deleting your account.

  • Contact Form Submissions:

    Stored until the inquiry is resolved or for a maximum of 2 years.

  • Server Logs:

    Automatically deleted after 30 days or when overwritten by new logs due to storage rotation.

Cookies & Session Storage
We use only essential cookies necessary for the website to function. No tracking, analytics, or advertising cookies.
  • Session Cookie (Essential)

    Keeps you logged in and maintains your session state while browsing the site.

    Duration: Session (cleared when browser is closed)

These cookies are technically necessary for the operation of the website and cannot be disabled. We do not use any tracking, analytics, or advertising cookies.

Your Rights Under GDPR
You have the following rights regarding your personal data:
  • Right to Access

    Request a copy of all data we store about you

  • Right to Rectification

    Correct any inaccurate or incomplete data

  • Right to Erasure

    Request deletion of all your personal data

  • Right to Data Portability

    Receive your data in a machine-readable format

  • Right to Object

    Object to processing based on legitimate interests

  • Right to Complain

    Lodge a complaint with your data protection authority

To exercise any of these rights, please contact us at contact@niso.moe. We will respond to your request within 30 days.

Third-Party Services

DiscordDiscord Inc.

We use Discord's OAuth 2.0 API for authentication and Discord's API. When you use this site, your data is processed by Discord according to their privacy policy.

Data shared with Discord: When you log in, Discord processes your authentication requests according to their terms.

View Discord's Privacy Policy

We do not use any analytics services (like Google Analytics), advertising networks, or other third-party tracking services. Discord is the only third-party service we integrate with.

Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, loss, or misuse:
  • HTTPS/TLS encryption for all connections

  • Regular security updates

  • Protected database access

  • Firewall and intrusion detection

  • Regular automated backups

Despite these measures, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

Questions about Privacy?
If you have questions about how we handle your data or want to exercise your rights, please contact us:

We typically respond to privacy-related inquiries within 30 days as required by GDPR.

Go to Home