Privacy & Cookie Policy

Effective Date: 12/07/2025

RideMeister GmbH (“we,” “us,” or “our”) is committed to protecting your privacy and ensuring the security of your personal information. This Privacy & Cookie Policy explains how we collect, use, and safeguard your data, in compliance with the Swiss Federal Act on Data Protection (nFADP/nLPD).


Information We Collect
We process the following types of personal data to provide our services:

  • Your contact information (name, email address, phone number)

  • Service details (pickup and drop-off locations, booking preferences)

  • Payment information (handled securely via WooCommerce; we do not store card data)

  • Chat and booking data (conversations with our website assistant, all bookings; stored securely on Supabase, an EU-based PostgreSQL database)

  • Technical data (anonymized IP address, browser and device type, site usage analytics via Google Analytics)

  • Cookie and tracking data (see Cookie Policy section below)

  • Voice data (if you use our voice assistant)


How We Collect Your Data

  • When you fill out booking or contact forms

  • When you chat with our assistant or use the voice assistant

  • When you make a payment or booking on our website

  • Through automatic collection via cookies and analytics tools

  • Through plugins and technical integrations necessary for site operation


Purpose of Data Collection

  • To manage and fulfill your bookings and transportation services

  • To communicate with you about your reservation or request

  • To process secure online payments

  • To provide chat and voice assistant support

  • To improve and secure our website and services

  • To comply with technical, contractual, and legal obligations


Legal Basis for Processing

  • Contractual necessity (for bookings and payments)

  • Legitimate interest (for service improvement and security)

  • Legal obligation (compliance with regulations)

  • Consent (for non-essential cookies and analytics, where required)


Data Storage and Security
We implement strong security measures to protect your data:

  • All bookings, chat, and voice data are stored on a secure PostgreSQL database managed by Supabase (EU-based, GDPR & nLPD compliant)

  • Website, webserver, and technical data are hosted on secure servers provided by Hostinger, located in Switzerland or the EU

  • Payments are processed by WooCommerce (PCI-DSS compliant); we do not store any card data

  • Access to your data is restricted to authorized personnel only

  • All systems are regularly updated and monitored

  • Hostinger is contractually bound to confidentiality and data protection obligations under Swiss and European law


Data Sharing and Third-Party Processing
We may share your data only with trusted third parties and processors who help us deliver our services, including:

  • WooCommerce (payment processing)

  • Supabase (database storage for bookings, chat, and voice data)

  • Hostinger (website and infrastructure hosting, technical processing)

  • Google Analytics (site analytics, anonymized data)

  • Elementor/WordPress plugins (technical and functional support)

  • AI Chatbot & Voice Providers, such as:

    • OpenRouter and OpenAI (for processing chat messages and generating text or embeddings)

    • ElevenLabs (for processing voice input and generating responses)

All external AI and technical providers process your data only for the time needed to provide the requested service, and do not use your data for training, profiling, or commercial purposes. Some providers may process data outside Switzerland or the EU; in such cases, we adopt all necessary legal safeguards and standard contractual clauses to protect your privacy.


International Data Transfers
Personal data collected through this website may be processed in the following countries:

  • Switzerland: Hostinger (website hosting)

  • Germany: Supabase (database backups)

  • Ireland: Amazon SES (email delivery), other cloud/email services

  • United States: OpenAI, ElevenLabs, Google (Analytics), OpenRouter

  • Netherlands: OpenRouter

  • France: Matomo Cloud (if used for analytics)

  • Other countries where our third-party providers operate may also apply. Please contact us for a complete list.

Such transfers are carried out only to countries recognized as adequate by the Swiss Federal Council, or—if this is not the case—appropriate safeguards such as Standard Contractual Clauses (SCC) approved by the relevant authorities are applied, to ensure a level of data protection equivalent to that in Switzerland and the EU.


Data Retention Periods
We retain personal data for the following periods, unless otherwise required by law:

  • Booking and billing data: 10 years (Swiss tax/legal requirement)

  • Security logs: 12 months (legitimate interest)

  • Chat/embedding data: 30 days (legitimate interest)

  • Voice/audio records: 30 days (legitimate interest)

  • Cookie and analytics data: 14 months (consent)

  • General enquiries via contact forms: 12 months (legitimate interest)

After these periods, your data will be deleted or anonymized unless legal retention obligations require otherwise.


Your Rights
You have the right to:

  • Access your personal data

  • Correct or update your data

  • Request deletion (“right to be forgotten”)

  • Restrict or object to processing of your data

  • Request data portability

  • File a complaint with the Swiss Federal Data Protection and Information Commissioner (FDPIC)

To exercise your rights, contact us at service@ridemeister.ch.
We respond to legitimate user requests regarding data protection within 30 days, extendable up to 60 days in complex cases.


Cookie Policy

What Are Cookies?
Cookies are small text files stored on your device when you visit our website. They help us remember your preferences, enable bookings, support chat and voice functionality, and improve performance.

Types of Cookies We Use

  • Essential cookies are needed for website functionality, bookings, chat, and voice assistant features

  • Analytics cookies are used to collect anonymized site usage data via Google Analytics

Managing Cookies

  • You can manage your cookie preferences via the cookie banner on your first visit or through your browser settings.

  • Essential cookies are always enabled, as they are required for the operation of the site.

  • You may disable analytics cookies; this does not affect your ability to use the booking system or chat, but may limit our ability to improve our services.

Third-Party Cookies
Some cookies and tracking technologies are provided by trusted third parties, such as Google Analytics, Supabase, OpenAI, OpenRouter, and ElevenLabs, only for analytics and technical or AI features.

Legal Basis

  • Essential cookies are processed based on our “overriding private interests” (prevailing private interest) as permitted by Swiss law (art. 31 nLPD).

  • Analytics cookies are only used with your explicit consent.

Legal Compliance
We follow Swiss nLPD and FDPIC guidelines. By using our website and accepting cookies, you consent to the processing described in this policy. Consent for non-essential cookies can be withdrawn at any time by changing your preferences.
If you have questions about cookies or your data, contact service@ridemeister.ch.


AI Chatbot & Voice Processing
When you use our chat or voice assistant:

  • Your text or voice messages may be securely transmitted to trusted external AI providers such as OpenRouter and OpenAI (for chat, embeddings) and ElevenLabs (for voice recognition and responses).

  • Data is processed only for generating chat or voice replies, and only for the duration of the interaction.

  • Embedding vectors (anonymized, non-reversible representations of your chat messages) may be stored on our Supabase database in the EU to improve chat context and memory.

  • External AI providers may process data on servers located outside Switzerland or the EU; we ensure all legal safeguards and contractual protections are in place.

  • No data is used by these providers for training, profiling, or commercial purposes.

We have assessed the privacy risks related to our AI and voicebot systems and, where necessary, have conducted a Data Protection Impact Assessment (DPIA) in accordance with Swiss law.


Register of Processing Activities
We maintain an internal record of all data processing activities as required by Swiss data protection law (nLPD, Art. 12).


Data Breach Notification
In the event of a data breach that poses a high risk to your rights and freedoms, we will immediately notify the Swiss Federal Data Protection and Information Commissioner (FDPIC) and, where necessary, affected individuals. Notification will include the nature of the breach, likely consequences, and measures taken to address it, in accordance with Swiss data protection law.


Complaints
You have the right to contact the Swiss Federal Data Protection and Information Commissioner (FDPIC).
Website: https://www.edoeb.admin.ch


Updates
We may update this policy as required by law or business needs. All changes will be published on this page with an updated effective date.


Contact
RideMeister GmbH
Schauenbergstrasse 29, 8046 Zurich, Switzerland
Email: service@ridemeister.ch
Phone: +41 78 331 67 66