Privacy Policy.
We take the protection of your personal data seriously. This policy explains what data is processed when you visit www.somora.ai or use the somora software, why, and what rights you have under the EU General Data Protection Regulation (GDPR) and the Austrian Data Protection Act (DSG).
1. Controller
enovom GmbH
Am Ölberg 14, 3400 Klosterneuburg, Austria
[email protected]
2. Hosting and server log files
This website is a static site served from infrastructure operated by enovom GmbH. Each time you access the site, the web server automatically records technical information in log files: IP address, date and time of the request, requested page, referrer URL, browser type and version, and operating system.
This data is processed to deliver the website, to ensure its stability and security, and to detect and defend against attacks. The legal basis is our legitimate interest (Art. 6 (1)(f) GDPR). Log files are deleted after no more than 30 days unless they are required for security investigations.
3. Content delivery and protection via Cloudflare
The website is delivered through the content delivery and security network of Cloudflare, Inc., 101 Townsend St, San Francisco, CA 94107, USA. All requests to www.somora.ai pass through Cloudflare's servers, which act as a reverse proxy. For this purpose Cloudflare processes the technical connection data described above (in particular your IP address) in order to route traffic, cache content, and protect the site against attacks and misuse.
Cloudflare may set strictly necessary cookies (for example __cf_bm or cf_clearance) that serve solely to distinguish legitimate visitors from automated traffic. These cookies do not require consent under § 165 (3) TKG 2021.
The legal basis is our legitimate interest in the secure, fast and reliable delivery of the website (Art. 6 (1)(f) GDPR). Cloudflare is certified under the EU–US Data Privacy Framework; in addition, we have concluded EU Standard Contractual Clauses with Cloudflare. Further information: cloudflare.com/privacypolicy.
4. Cookies and tracking
Apart from the strictly necessary Cloudflare cookies described above, this website does not set cookies and does not use analytics, tracking or advertising technologies. No consent banner is therefore required.
5. Daily update check of the somora software
somora installations ask somora.ai once a day whether a newer version is available (GET https://somora.ai/api/latest-version). The answer contains the current version number and, optionally, a short notice to all users.
What is sent
The request contains no content, no installation identifier and no machine ID — only the program's user-agent line: somora version, operating system, Node.js version, CPU architecture, and whether the request comes from the somora server or the command line.
What we store
For each request: the IP address, date and time of the request, and the user-agent line.
Why
To estimate how many somora installations are in use and how they are distributed across versions, operating systems, CPU architectures and Node.js versions, so that we can decide what to develop and test for. Counting by IP address is approximate: several installations behind one connection may look alike, and many connections change their IP address.
How long
Records containing IP addresses are deleted automatically after 90 days. We keep daily totals (counts per version, operating system, CPU architecture and Node.js version) permanently; they contain no IP addresses and cannot be linked to individual installations.
Sharing
The data is processed on our own server and is not published, passed on, sold or combined with other data. Requests are routed through Cloudflare as described in section 3.
Switching it off
The update check can be disabled at any time, which stops the request entirely: set DO_NOT_TRACK=1 in the environment of the somora service, or set updateCheck.enabled: false in config.yaml. It is also disabled automatically when a CI environment variable is set. somora telemetry show displays exactly what would be sent, whether the check is enabled, and when it last ran. Details: the somora documentation, section "The daily update check".
Legal basis
Our legitimate interest in providing update information and in understanding the use of the software (Art. 6 (1)(f) GDPR). You can object at any time by disabling the check as described above.
6. Contact by e-mail
If you contact us by e-mail, the data you provide (e-mail address, name, content of your message) is processed to handle your enquiry and any follow-up questions. The legal basis is Art. 6 (1)(b) GDPR (pre-contractual measures) or Art. 6 (1)(f) GDPR (legitimate interest in answering enquiries). We retain the correspondence for as long as necessary to process your request and thereafter in accordance with statutory retention obligations.
7. External links
This website contains links to third-party websites (for example GitHub, Discord and the documentation). We have no influence over the data processing of those providers; the privacy policies of the respective operators apply.
8. Your rights
You have the right to access (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20) and to object to processing based on legitimate interests (Art. 21). To exercise these rights, contact [email protected].
If you believe that the processing of your data violates data protection law, you have the right to lodge a complaint with the supervisory authority. In Austria this is the Datenschutzbehörde, Barichgasse 40–42, 1030 Vienna, dsb.gv.at.
9. Changes
We may update this policy to reflect changes in the website, the software or legal requirements. The current version is always available on this page.