🔒 Privacy

Privacy Policy

Last updated March 2026

Our privacy promise to you

btob.dev is a private project built to support the agentic web — helping European companies be found, documented, and discoverable by AI agents. We are not an advertising company. We are not a data broker. We have zero interest in spying on you, profiling you, or monetizing your personal data. If we collect anything at all, it’s only to make the service work better for you. That’s it.

Who we are

btob.dev (“Europe’s B2B Data Layer”) is operated by Dorian Strbac. This is a personal project born from the belief that European business data should be structured, accessible, and useful — especially for the new generation of AI agents. We are committed to full transparency and to handling all data in compliance with the General Data Protection Regulation (GDPR).

If you have any question, concern, or request — about anything at all — please reach out to [email protected]. We are genuinely collaborative and always have our users and partners in mind. We’ll get back to you quickly and work with you to resolve whatever you need — or if you want to support the project or just say hi, we’d love to hear from you too.

The short version

  • Zero cookies.None. No consent banner needed because there’s nothing to consent to.
  • Zero trackers. No fingerprinting, no cross-site tracking, no ad pixels. Ever.
  • All data stays in the EU. Stored in high-security data centers in Central Europe.
  • We will NEVER sell, share, or disclose your email or personal data to third parties.
  • Legitimate sources only.All business data comes from official European government registries — public, verified, and legal.
  • Got a problem?Email us. We’ll respond within 2 working days and work with you to sort it out.

What we collect (and why)

We only collect what is strictly necessary to run the service. Nothing more. Here’s the full picture:

Waitlist & contact emails

If you join our waitlist, we store your email address and a timestamp of when you gave consent. That’s it. We use it to notify you when btob.dev opens for early access. We will NEVER share your email with third parties, sell it, or use it for anything other than what you signed up for.

Legal basis: Consent

API request logs

Request path, pseudonymized IP address (cryptographically hashed with a daily rotating key), and timestamp. Retained for 90 days, then permanently deleted. This helps us prevent abuse and keep the service running reliably for everyone. We don’t use this to identify or profile you — the hashing ensures we can detect abuse patterns within a day but cannot correlate your activity across days.

Legal basis: Legitimate interest

Anonymous analytics

We use Umami — a privacy-first analytics tool that we self-host ourselves. It collects aggregate page views, referrer, country, and device type. No personal identifiers are stored. No cookies. No fingerprints. We use this purely to understand which pages are useful and which aren’t.

Legal basis: Legitimate interest

Public business registry data

Company names, registration numbers, addresses, and industry classifications sourced exclusively from official European government registries. This is publicly available data, published by government authorities for transparency purposes. We structure and index it so AI agents and developers can query it efficiently.

Legal basis: Legitimate interest / Public task

How we use data

Everything we collect serves one purpose: making btob.dev useful. Specifically, we use data to deliver search results, API responses, and MCP tool calls; to prevent abuse and ensure fair access for all users; and to improve the service through aggregate (never individual) analytics.

We do not sell, rent, or share our visitors’ personal data with third parties for marketing, advertising, or any other purpose. Period. (We do provide structured European business data as a service — that’s our product. But your personal information as a visitor or user is never part of that.)

No cookies — genuinely

This isn’t a technicality or a loophole. btob.dev uses zero cookies. We genuinely do not want to track you. We don’t use cookies, fingerprinting, cross-site trackers, or any form of surveillance technology. You won’t see a cookie banner on btob.dev because there is nothing to consent to. Our analytics tool (Umami) is cookieless by design — and we self-host it on our own servers, so your data never touches a third party.

We believe privacy is a right, not a feature. We’re here to provide the best possible B2B data service — that’s our business. Your personal browsing behavior is none of ours.

Data location

All btob.dev data is stored within the European Union, in high-security data centers located in Central Europe. No data is transferred outside the EU. We believe European business data belongs in Europe.

Data retention

Waitlist emails are retained until you ask us to remove them (just email [email protected]). API request logs are retained for 90 days, then deleted. Analytics data is aggregated and contains no personally identifiable information.

Your rights (GDPR)

Under the GDPR, you have the right to: access the personal data we hold about you; request rectification of inaccurate data; request erasure (“right to be forgotten”); restrict or object to processing; and request data portability.

To exercise any of these rights, simply email [email protected]. We will respond within 2 working days. No forms, no tickets, no runaround. Just write to us and we’ll take care of it.

Third-party services

The only third-party service we use is Resend for sending transactional emails (like waitlist confirmations). Resend has a GDPR-compliant DPA. Our analytics (Umami) is fully self-hosted — no external analytics provider ever sees your data. No data is shared with advertising networks, data brokers, or any other third party.

Changes

We may update this policy from time to time. The “last updated” date at the top reflects the most recent revision. If we make material changes, we’ll let you know.

Got a question? Just ask.

If anything about this policy is unclear, if you want your data deleted, if you think something is wrong, or if you just want to say hi — email [email protected]. We’re a small team that genuinely cares. We’ll respond within 2 working days, and we’ll always work with you — not against you.