Controller

Hakan Gür
c/o COCENTER
Koppoldstr. 1
86551 Aichach
Deutschland

Email: g.uer@aol.com

General

This weather app is deliberately designed to be data minimal: no account, no sign up, no cookies, no tracking and no analytics services. WeatherPure operates its own server interface solely for weather, pollen and location search requests, the temporary caching described below and the technical protection measures described below. All personal settings remain in the browser.

Local data storage (localStorage)

The app stores the following data exclusively locally in the browser: up to five favorite locations, the last location selected through the city search, cached weather reports for offline viewing, the chosen language and color scheme, weather data for favorites, and a marker after the installation hint is dismissed or installation is confirmed. Favorite locations and settings remain until they are changed or the site's data is deleted.

Weather reports and weather data for favorites are reused for display for up to and including 60 minutes after their original retrieval from WeatherAPI. When a location is opened, the app also attempts to retrieve current data. Weather data for favorites is considered current for up to and including 15 minutes. After that, it may be displayed as older data with a timestamp for up to and including 60 minutes, even if an update fails. Older weather data and data without a reliable original retrieval timestamp are no longer displayed and are cleaned up the next time the app can appropriately run, where local storage permits this. The favorite location remains saved. New values replace previous values. These periods are not guaranteed deadlines for physical deletion, particularly while the app is closed or suspended.

These local storage operations provide the functions selected by the user (§ 25 Abs. 2 Nr. 2 TDDDG, the German Telecommunications Digital Services Data Protection Act). The installation marker is set only after a deliberate user action. The local storage itself is not transmitted to the operator or third parties. When weather or pollen data is requested, however, the coordinates of the selected or saved location are sent to WeatherPure's own server interface as described below. The locally stored data can be removed at any time via the browser function for deleting site data.

Weather data from WeatherAPI

Weather, pollen values and location search are retrieved through WeatherPure's own server interface. It forwards coordinates or search terms server side to WeatherAPI.com, a service of Zoomash Ltd in the United Kingdom. The browser does not contact WeatherAPI directly. WeatherAPI therefore receives the WeatherPure server IP address, the API key and the coordinates or search terms required for the request, but not the device IP address.

The legal basis is Art. 6 Abs. 1 lit. f GDPR, the legitimate interest in providing the requested weather information. WeatherAPI describes possible processing and international transfers in its privacy policy.

To speed up repeated requests and limit API calls, WeatherPure caches results only in the memory of the respective server instance. Weather and favorite weather are reused for up to 15 minutes, current pollen values for up to 60 minutes, and location search results for up to 24 hours. After that, the entries are no longer used for new responses. They may disappear earlier when a server instance ends, or be removed later when accessed or when new entries are stored. These periods are not guaranteed deletion deadlines. No database is used for this response cache, and IP addresses or user accounts are not part of it.

To protect the server interface against automated misuse, the connection address is converted into a salted technical counting key for a one minute counting window in the memory of the respective server instance. Once the window ends, the key is no longer used for limiting requests and is removed on a later request; it may also disappear when the server instance ends. The raw address is not stored in this application memory; the key is used solely to temporarily limit unusually high request volumes.

Further information: WeatherAPI Terms and WeatherAPI Privacy

Quota protection for the server interface (Upstash)

Independently of the per connection limit described above, WeatherPure also protects the request quota it holds with WeatherAPI for the service as a whole. To do so, WeatherPure's own server interface checks and updates two shared counters before every call to WeatherAPI. They are held in a Redis database from Upstash, Inc., USA, provided through the Vercel marketplace.

Only three technical values are stored there, and all of them apply to the service as a whole rather than to individual users: the number of calls still possible in the short term, the time this value was last updated, and the number of calls already used in the current calendar month. The first two values receive a 60 second expiry on each successfully counted call; the monthly value receives an expiry set to the start of the next calendar month (UTC).

These counters are not derived from the connection address. No user IP addresses, coordinates, search terms, device identifiers, user identifiers or usage profiles are transmitted or stored in this step. The stored values contain no information about individual people or devices. The connection to Upstash is made solely from the WeatherPure server, not from the end device.

Upstash describes its data processing in its privacy policy and provides a Data Processing Addendum.

Location request (only with consent)

The "Use my location" feature is optional. The browser location request starts only after an active click on the button and additional approval in the browser dialog (consent under Art. 6 Abs. 1 lit. a DSGVO/GDPR and § 25 Abs. 1 TDDDG).

The precise coordinates obtained through this request are not saved in the browser as a favorite or last selected location. For the immediate weather and pollen request, they are sent to WeatherPure's own server interface and from there to WeatherAPI. Location permission can be revoked at any time in the browser settings; the app also works without location access through city search.

Service worker / offline cache

To function as an installable app (PWA), a service worker stores static files (HTML, CSS, JavaScript, font, icons) in the browser cache. No personal data beyond a normal page visit is processed in the course of this.

Hosting

This website is hosted by Vercel Inc., 650 California St, San Francisco, CA 94108, USA. When the site is accessed, Vercel processes technically necessary connection data such as IP address, time, browser identifier and requested URL to deliver and secure the service under Art. 6 Abs. 1 lit. f GDPR. As host of WeatherPure's server interface, Vercel also executes weather, pollen and location search requests and forwards coordinates or search terms to WeatherAPI.

Vercel describes its processing in its Privacy Notice and Data Processing Addendum. For transfers to the USA, Vercel identifies EU standard contractual clauses and its certification under the EU-US Data Privacy Framework as safeguards.

No cookies, no tracking

This website sets no cookies and uses no consent-requiring analytics, advertising or tracking services. It therefore displays no tracking or marketing consent banner.

Your rights as a data subject

Towards the controller, you have the right of access (Art. 15 DSGVO/GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20) and objection to processing based on legitimate interests (Art. 21 DSGVO/GDPR).

Consent once given (for example for the location request) can be revoked at any time with effect for the future.

Supervisory authority

You have the right to lodge a complaint with a data protection supervisory authority, in particular with the Bayerisches Landesamt für Datenschutzaufsicht (BayLDA), Promenade 18, 91522 Ansbach, Germany, www.lda.bayern.de.

Contact for privacy matters

Please direct inquiries about the processing of personal data to: g.uer@aol.com