Select your language

Privacy Policy

Privacy Policy


This Privacy Policy explains which personal data may be processed when visiting this website and outlines the rights of data subjects under the General Data Protection Regulation (GDPR).

1. Controller

Harutyun Grigoryan
c/o Online-Impressum 10414
Europaring 90
53757 Sankt Augustin
Germany

Email: This email address is being protected from spambots. You need JavaScript enabled to view it.

2. Nature and Purpose of the Website

Secure and Defense is an independent publication and analysis project focused on IT security, cybersecurity, and digital security, as well as their societal, political, and security-related contexts.

Visitors cannot create user accounts. Public user registration is disabled. The website currently does not provide a contact form, commenting functionality, a newsletter, payment functions, or any other functionality allowing visitors to enter personal data directly.

3. Hosting and Server Log Files

This website and its associated email services are operated using a hosting service provider. To the extent that the service provider processes personal data on my behalf, such processing is carried out under a data processing arrangement in accordance with Article 28 GDPR.

When the website is accessed, the following technical data may be processed in server log files:

  • the IP address of the accessing device,

  • the date and time of access,

  • the page or file requested,

  • the amount of data transferred and the HTTP status code,

  • the previously visited page or referrer URL,

  • the browser and browser version used, and

  • the operating system of the accessing device.

This processing is necessary to provide the website securely, reliably, and without technical errors, to detect attacks and abusive access, and to investigate technical problems.

The legal basis for this processing is Article 6(1)(f) GDPR. The legitimate interest lies in maintaining the secure, reliable, and functional operation of this website.

The data is deleted as soon as it is no longer required for the stated purposes. It may be retained for a longer period where necessary to investigate a security incident, defend against attacks, or comply with statutory retention obligations.

4. Technically Necessary Session Cookie

The Joomla content management system used on this website sets a technically necessary session cookie. This cookie contains a randomly generated session identifier and supports the secure and technically correct operation of the website.

The cookie is not used for analytics, advertising, or tracking purposes and does not serve to create user profiles. It is configured as a session cookie and is generally deleted when the browser session ends.

The cookie is stored on the basis of Section 25(2)(2) of the German Telecommunications Digital Services Data Protection Act (TDDDG). Where personal data is processed in connection with the cookie, the legal basis is Article 6(1)(f) GDPR.

Because the cookie is technically necessary to provide the digital service expressly requested by the visitor, no prior consent is required.

5. Locally Provided Fonts and Icons

The fonts and Font Awesome icons used on this website are provided locally through the website’s own web server.

Visiting the website therefore does not establish an automatic connection to Google Fonts, Font Awesome, or other external font and icon services.

6. Contact by Email

If a visitor contacts me by email, the information provided voluntarily will be processed. This may include the email address, name, content of the message, and any other information provided voluntarily.

The data is processed for the purpose of handling and responding to the inquiry on the basis of Article 6(1)(f) GDPR. If the inquiry concerns the initiation or performance of a contractual or cooperative relationship, Article 6(1)(b) GDPR also applies.

The information provided will be deleted once the inquiry has been fully resolved, unless statutory retention obligations or legitimate interests require it to be retained for a longer period.

7. External Links and Social Media Profiles

This website may contain ordinary links to external websites, sources, and social media profiles. These are not embedded social media plugins or automatically loaded content from external platforms.

Simply visiting this website does not establish an automatic connection to the respective external providers through these links. Only when an external link is clicked does the visitor leave this website. The respective provider may then process personal data, particularly the visitor’s IP address. The respective external provider is responsible for this processing.

8. No Analytics, Advertising, or Tracking Services

This website currently does not use:

  • analytics tools,

  • advertising or affiliate tracking,

  • marketing cookies,

  • newsletter systems,

  • commenting functionality,

  • public user registration, or

  • embedded content from external platforms.

No cross-device recognition takes place, and no visitor or interest profiles are created.

9. Encrypted Transmission

This website uses SSL or TLS encryption. This protects data transmitted between the browser and the web server against unauthorized access by third parties.

10. Recipients of Personal Data

Personal data may be disclosed to the hosting and email service provider used by me where this is necessary for the technical operation of the website and the processing of incoming emails.

Personal data will be disclosed to public authorities, courts, or other public bodies only where there is a legal obligation to do so or where disclosure is necessary for the establishment, exercise, or defense of legal claims.

11. Transfers to Third Countries

The direct technical operation of this website does not currently involve any intended transfer of personal data to countries outside the European Union or the European Economic Area.

If a visitor voluntarily follows an external link to a provider outside the European Union or the European Economic Area, the privacy policy of the respective external provider applies.

12. Rights of Data Subjects

Subject to the applicable legal requirements, data subjects have the following rights in particular:

  • access to the personal data processed under Article 15 GDPR,

  • rectification of inaccurate data under Article 16 GDPR,

  • erasure of personal data under Article 17 GDPR,

  • restriction of processing under Article 18 GDPR,

  • data portability under Article 20 GDPR, and

  • objection to processing under Article 21 GDPR.

The email address provided above may be used to exercise these rights.

13. Right to Lodge a Complaint

Under Article 77 GDPR, data subjects have the right to lodge a complaint with a data protection supervisory authority. In particular, they may contact the supervisory authority responsible for their habitual residence, their place of work, or the place of the alleged data protection infringement.

14. Provision of Personal Data

There is no statutory or contractual obligation to actively provide personal data merely by visiting this website.

Information submitted by email is provided voluntarily. Without the information required to establish contact, an inquiry may not be processed or answered.

15. Automated Decision-Making and Profiling

No automated decision-making, including profiling, takes place.

16. Updates to This Privacy Policy

This Privacy Policy will be updated if the technical features of the website, the services used, or the applicable legal requirements change.

Last updated: August 2026


© 2026 Secure and Defense

Trust is an assumption; risk is reality - at the intersection of digital security, strategy, policy, and resilience.

Legal Notice

Privacy Policy

About the Project

Usage Information and Disclaimer