1. Scope and contact
This notice covers visitors to savie.cc and users of SAVIE Crew Connect. The operator and controller for website operation, individual accounts, support, service billing and platform security is Max Nowak, Edi-Finger Straße 4, 1210 Vienna, Austria. Contact: max.nowak@savie.cc. You may use this address for all privacy requests without creating an account.
2. Customer workspaces and independent crew accounts
Customer organisations determine the purposes of processing in their workspaces, including personnel administration, assignments and timesheets. SAVIE processes those workspace records on their documented instructions under the data-processing agreement included in the B2B terms. For independent crew accounts and cross-organisation platform functions, SAVIE determines the purposes of the account service. An organisation remains responsible for its own use of a crew member’s information.
3. Data and sources
We receive information from you when you register, maintain your profile, contact us or use the service. Customer administrators may also create or import crew records, invite users and enter assignment information. Records can include names, contact details, profile information, equipment skills, availability, rates, booking history, communications, timesheets and billing information. Technical records include IP addresses, browser information, access and security logs, and account identifiers. Where an organisation supplied your information, you can ask us to identify that source and the relevant controller.
4. Purposes and legal grounds
We process account and service information to provide the service requested by the contracting individual and take requested pre-contractual steps (Article 6(1)(b) GDPR). Administration of business contacts, support, security and abuse prevention relies on our legitimate interests in operating a reliable service and communicating with business users (Article 6(1)(f)); this includes representatives who are not themselves the contracting party. Accounting and legally required disclosures rely on Article 6(1)(c). Optional processing based on consent relies on Article 6(1)(a). Customer workspace processing follows the customer’s instructions and lawful basis. Required registration information is needed to create and secure an account; without it we cannot provide that account. Optional profile fields are not a condition of visiting the website.
5. Matching and human decisions
SAVIE compares recorded skills, equipment requirements, availability and relevant booking information to help dispatchers assess candidates. Scores and suggestions support a human decision; SAVIE does not itself decide who is hired. Incorrect profile or availability information can affect suggestions. You can correct your information and ask the organisation responsible for an assignment to review its decision.
6. Recipients and service providers
Information is available to authorised users of the relevant workspace and to organisations involved in your assignments as required for those workflows. Infrastructure and backup providers process data for hosting and recovery; helloly GmbH (Austria) processes recipient addresses and message content for account and service email via mail.savie.cc. Hetzner Online GmbH (Germany) provides the application infrastructure and EU backup services. Stripe processes payment and subscription information when you use paid services and may act as a separate controller for its own fraud-prevention and regulatory purposes. Professional advisers and public authorities receive information where required for accounting, legal claims or a legal obligation. We do not sell personal data. Contact max.nowak@savie.cc for information about the providers relevant to your account and the customer subprocessor register.
7. Transfers outside the EEA
Primary platform hosting is in the EU. This does not imply that every payment or communications provider processes all information exclusively in the EEA. International processing by a provider must have an applicable GDPR Chapter V basis, such as an adequacy decision covering the recipient or standard contractual clauses with any necessary supplementary safeguards. You can request information about the recipient, applicable mechanism and a copy of relevant safeguards at max.nowak@savie.cc. Stripe’s own privacy information is available at https://stripe.com/privacy.
8. Customer integrations
When an organisation enables an ERP integration, data is exchanged to provide its requested workflow. For the easyjob booking-address workflow, SAVIE sends the crew member’s name and email to the customer’s ERP; this creates a record controlled by that customer. A SAVIE erasure request does not automatically erase independent copies in the customer’s ERP. We will assist with requests within our role; contact the customer for its separate records. Information about linked easyjob records is included in the available export. Other enabled integrations must be assessed against their actual configuration and the customer’s instructions.
9. Retention and deletion
Account and workspace information is retained while needed for the service and the controller’s instructions. Closing an account does not necessarily erase invoices, evidence needed for legal claims or records another controller must retain. Accounting records are generally retained for seven years from the end of the relevant calendar year under Austrian tax law, and longer where an ongoing proceeding requires this. The standard cleanup periods are 90 days for soft-deleted crew records, 365 days for audit logs and seven days after expiry for invitation/reset tokens; erasure requests are assessed separately and may be acted on sooner. Database backups rotate after 14 days and are restricted to recovery purposes. Restored data remains subject to the applicable deletion instructions. Ask us for the retention period or criteria applicable to your particular records.
10. Browser storage and external resources
SAVIE uses browser storage for authentication, language choices and necessary interface preferences. Authentication is stored locally in the browser rather than described solely as a session cookie. Signing out removes the active login; browser controls can remove stored preferences. Removing necessary storage may sign you out or reset preferences. This release does not load Google Analytics, send analytics events or request fonts from Google. No optional analytics consent is requested. Preferences or cookies left by an older release can be removed through your browser’s site-data controls.
11. Your rights
Subject to the conditions in the GDPR, you can request access, correction, erasure, restriction and portability of your data. You may object to processing based on legitimate interests on grounds relating to your situation; you may object to direct marketing at any time. Where processing relies on consent, you may withdraw it at any time by contacting us; withdrawal does not affect processing lawfully carried out before withdrawal. Contact max.nowak@savie.cc or use the account’s privacy functions. We normally respond within one month; where a lawful extension is necessary, we explain it within that month. We may request proportionate information to verify identity. For customer-controlled records, we assist the responsible organisation with your request.
12. Complaints
You may complain to a supervisory authority, in particular in the country of your habitual residence, place of work or alleged infringement. In Austria, contact the Österreichische Datenschutzbehörde: https://www.dsb.gv.at. You do not have to contact us first in order to exercise this right.
13. Security and updates
Measures include encrypted transport, access controls and security logging. No system can guarantee absolute security. This notice is dated 9 September 2026, version 1.3. Material changes to purposes or processing will be communicated as required before they take effect.