Privacy policy
This English translation is provided for convenience. The German version is legally authoritative.
Controller
The controller within the meaning of the General Data Protection Regulation (GDPR) is:
EV Freaks GmbH, Altenhausener Str. 21, 74523 Schwäbisch Hall, Germany
Phone: +49 711 968 969 22, Email: info@ev-freaks.com
No data protection officer is appointed; there is no legal obligation to appoint one.
Principle: as little data as possible
plugbench is a technical testing tool for engineering teams. We process as little personal data as possible: this website and the simulator console use no analytics, advertising or marketing services, set no tracking cookies, and require no user account on the website.
Visiting the website
plugbench.dev is a static website without access logs of our own. It is delivered through Amazon Web Services (Amazon S3 and the CloudFront network). When you visit, AWS processes your IP address and technical connection data as far as technically necessary to deliver the site. The legal basis is Art. 6(1)(f) GDPR — the legitimate interest in providing the site securely and efficiently.
The website stores your language choice in your browser's localStorage (key “plugbench:locale”). That information never leaves your device and is required for the function you asked for (§ 25(2) of the German TDDDG). The website sets no cookies.
Demo console
The public demo at demo.plugbench.dev works without an account, without signing in and without cookies. Every six hours a scenario reset wipes the demo and deletes everything entered there. Please do not enter personal data into the demo — the simulator works entirely with fictional test data.
Requesting a sandbox by email
When you request a sandbox, we process your email address and the details in your message to answer the request and provision the sandbox. The legal basis is Art. 6(1)(b) GDPR (contract or pre-contractual steps). We delete the correspondence once it is no longer required for performing the contract and for statutory retention obligations (Art. 6(1)(c) GDPR).
Using the sandbox
The sandbox processes the technical integration data your system submits over the OCPI interface: announced endpoints, credentials tokens, and inbound and outbound requests in the debug journal. This data serves solely to provide the service (Art. 6(1)(b) GDPR). Tokens are redacted in logs and in the console. Hosting is in the AWS Frankfurt region (eu-central-1).
The sandbox is meant for test data. Do not submit real personal data — in particular no real driver tokens or customer data. All bundled scenarios contain only fictional data.
Journal entries are deleted on a scenario reset; when your use ends, all data of the sandbox is removed.
Signing in to the console
If your access to the sandbox console uses a GitHub login, we process your GitHub username and an automatically expiring session; the browser receives a signed, technically necessary session cookie (HTTP-only) for it. Signing out deletes the session. GitHub is independently responsible for the login procedure itself.
Your rights
Under the GDPR you have the following rights:
- Access to the data processed (Art. 15 GDPR)
- Rectification (Art. 16 GDPR)
- Erasure (Art. 17 GDPR)
- Restriction of processing (Art. 18 GDPR)
- Data portability (Art. 20 GDPR)
- Objection to processing based on Art. 6(1)(f) GDPR (Art. 21 GDPR)
Right to lodge a complaint
You also have the right to complain to a data protection supervisory authority, for example the State Commissioner for Data Protection and Freedom of Information of Baden-Württemberg.
No automated decision-making
No automated decision-making, including profiling, takes place.
Changes
We update this statement when the service changes. The version published here applies.
Last updated: 3 August 2026