Privacy Policy
Last updated: 16 April 2026
Who is responsible
Ivan Karačić, Kurfürstenstraße 36, 53639 Königswinter, Germany. Email: ivan@ikaracic.com. Full legal details on the Impressum page.
Analytics & tracking
Plausible Analytics. Privacy-focused, cookie-free web analytics. No personal data or IP addresses are stored. Data is processed in the EU.
Microsoft Clarity. Session replay and heatmap tool to understand how visitors interact with the site. Clarity may use first-party cookies and collects anonymized interaction data (clicks, scrolls, page views). No personally identifiable information is collected. Data is processed by Microsoft. Microsoft Privacy Statement.
LinkedIn Insight Tag. Used to measure the effectiveness of LinkedIn campaigns and understand professional demographics of site visitors. The tag may set cookies. Data is processed by LinkedIn. LinkedIn Privacy Policy.
Legal basis for processing
Under GDPR, each processing activity requires a legal basis:
- Plausible Analytics: Legitimate interest (Art. 6(1)(f) GDPR). No personal data, no cookies, minimal impact on the data subject.
- Microsoft Clarity: Consent (Art. 6(1)(a) GDPR). Loaded only after you click Accept on the cookie banner.
- LinkedIn Insight Tag: Consent (Art. 6(1)(a) GDPR). Loaded only after you click Accept on the cookie banner.
- Brevo (email & booking): Contract performance (Art. 6(1)(b) GDPR). Required to deliver the content or meeting you requested.
- Telegram notifications: Legitimate interest (Art. 6(1)(f) GDPR). Internal operational awareness of inquiries; no personal data is shared with third parties.
Data retention
- Email addresses (Brevo): retained until you unsubscribe or request deletion, with a maximum of 36 months of inactivity.
- Booking records: retained for 24 months after the meeting for follow-up and tax purposes.
- Plausible: aggregated only, no individual records stored.
- Microsoft Clarity: 1-year retention per Microsoft default (only if you accepted).
- LinkedIn Insight: 90-day retention per LinkedIn default (only if you accepted).
- Silent Signal assessment data: retained until the assessment owner requests deletion.
International data transfers
Microsoft Clarity: data is processed by Microsoft and may be transferred to the United States under Standard Contractual Clauses (SCCs) and the EU-US Data Privacy Framework.
LinkedIn Insight: data is processed by LinkedIn Ireland and LinkedIn Corporation (US) under Standard Contractual Clauses and the EU-US Data Privacy Framework.
Brevo: EU-based (France). No third-country transfer.
Plausible: EU-based (Germany). No third-country transfer.
Cookies & consent
Plausible Analytics loads by default. It is cookie-free and stores no personal data.
Microsoft Clarity and LinkedIn Insight Tag only load after you click Accept on the cookie banner. If you click Reject, neither script is loaded and no cookies from those services are set.
Your choice is stored on your device (localStorage key ik_cookie_consent). To change it, clear this site's site data in your browser and reload.
Email & booking
If you submit your email through a form on this site (e.g. to unlock a report on Silent Signal), your email is stored in Brevo (formerly Sendinblue) for the purpose of delivering the requested content. Your data will not be shared with third parties or used for marketing without your explicit consent.
Booking calls are handled through Brevo Meetings. When you book a call, your name and email are stored by Brevo to schedule the meeting.
Silent Signal (diagnostic tool)
Silent Signal is hosted at signal.ikaracic.com as a separate application on the same infrastructure. It collects team-level survey responses (Likert scores across 7 dimensions) and, optionally, an email address for report delivery.
Responses are stored in Supabase (EU region). Data is retained until the assessment owner requests deletion. It is not shared with third parties beyond Brevo (for email report delivery, if you opted in) and Telegram (for internal operational notification).
For a full description of Silent Signal's data handling, see the privacy notice on signal.ikaracic.com.
Your rights (GDPR)
Under the General Data Protection Regulation (GDPR), you have the right to access, rectify, or delete any personal data we hold about you. You may also object to processing or request data portability.
To exercise these rights, contact ivan@ikaracic.com.
External services
This site links to external services (Brevo for booking and email, Signal for diagnostics, LinkedIn). These services have their own privacy policies.