This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services.
Last Updated: January 22, 2026 · Version: 2.0
1337 Services GmbH ("we", "us", or "our") operates RDP.sh and is committed to protecting your privacy. We are based in Hamburg, Germany and comply with the European Union General Data Protection Regulation (GDPR).
We process your personal data based on various legal grounds as described in this policy, including contract performance, legal obligations, and legitimate interests.
The data controller responsible for your personal data is:
Based on the nature and scale of our data processing activities, a Data Protection Officer (DPO) is not required under Article 37 GDPR. For any privacy-related inquiries, please contact us at [email protected].
When you create an account, we collect:
For invoicing and tax compliance, we may collect:
For security and fraud prevention, we collect:
We use the collected information for the following purposes:
Under the GDPR, we process your personal data based on the following legal grounds:
We use third-party payment processors to handle payments. We do not store your credit card details. These processors have their own privacy policies governing the use of your payment information.
We retain your data for the following periods:
Under the GDPR, you have the following rights:
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within 30 days.
You have the right to lodge a complaint with a data protection supervisory authority. Our lead supervisory authority is:
Hamburgische Beauftragte für Datenschutz und Informationsfreiheit
Ludwig-Erhard-Str. 22, 20459 Hamburg, Germany
We implement appropriate technical and organizational measures to protect your data:
We use the following third-party services to operate our platform. Each service processes data as described below:
Your personal data is primarily stored and processed within the European Economic Area (EEA). However, some of our third-party service providers may process data outside the EEA.
When data is transferred outside the EEA, we ensure appropriate safeguards are in place:
Our services are not intended for individuals under the age of 16. We do not knowingly collect personal data from children under 16 years of age.
If we become aware that a child under 16 has provided us with personal data, we will take steps to delete such information promptly. If you believe a child has provided us with their data, please contact us at [email protected].
In the event of a personal data breach that poses a risk to your rights and freedoms, we will:
If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us: