Privacy Notice
Caelex Scholar — the legal-research database for universities
Last updated: 7 June 2026Version: 1.0
This Privacy Notice informs you, under Articles 12 to 14 of the General Data Protection Regulation (GDPR), how Caelex processes personal data when you use Caelex Scholar (caelex.eu/scholar) — the free, university-licensed legal-research database for space law.
Caelex Scholar is “powered by Atlas”: semantic search relies on an AI-assisted meaning-based search over the Atlas corpus. It is off by default and runs only with your explicit consent (see Sections 5 and 11).
The binding version is the German edition; this English translation is provided for your convenience only.
At a glance
The essentials, in plain language
This summary explains the essentials in plain words — including if you are under 18. It does not replace the detailed sections below; if they differ, the detailed text prevails.
What is Caelex Scholar?
Caelex Scholar is an online library of space-law texts — treaties, EU law, national statutes and court decisions. Your university has licensed Scholar for you; it is free for you to use. You sign in through your university’s access (single sign-on) or with an account.
What data do we hold about you?
- Your account: name and email address (usually from your university via sign-in).
- Your settings: e.g. language, preferred jurisdiction, citation format.
- What you save: bookmarks and reading lists you create yourself.
- Only if you switch it on: your search history (the search terms you enter) and AI meaning-based search.
- Technical sign-in logs for security (with a shortened, i.e. incomplete, IP address).
We protect your data from the start
Search history and AI semantic search are OFF by default. You decide whether to switch them on — and you can switch them off again at any time.
What can you do?
- In Settings you can download all your Scholar data with one click.
- You can delete your account yourself in Settings — this also deletes your searches, bookmarks and reading lists.
- We also delete any stored search history automatically after 90 days.
- You can write to us any time at privacy@caelex.eu.
Does the AI make decisions about me?
No. The AI only ranks search results by meaning. It makes no decision about you and has no legal effect on you. Always check important results against the official source.
Section 1
Controller and data-protection contact
The controller within the meaning of Art. 4(7) GDPR for the processing described in this notice is:
Caelex — sole proprietorship, owner: Julian Polleschner, Am Maselakepark 37, 13587 Berlin, Germany. Caelex is a small business within the meaning of § 19 of the German VAT Act (Kleinunternehmer). Full provider details are in the Imprint (/legal/impressum).
General contact: cs@caelex.eu. For data-protection matters, contact us at privacy@caelex.eu.
Data protection officer
Any appointed data protection officer will be listed here with their contact details. For data-protection enquiries please contact privacy@caelex.eu.
Section 2
Who is responsible for what? (your university and Caelex)
Caelex Scholar is provided to your university as a service (B2B2C). From a data-protection perspective there are therefore two roles, applying to different processing activities:
Your university as controller; Caelex as processor
Where Caelex operates Scholar on behalf of and on the instructions of your university — in particular providing the licensed service to its students and staff — your university is the controller and Caelex is a processor (Art. 28 GDPR). The basis is a data processing agreement (DPA) between your university and Caelex. In this relationship your university is primarily responsible for the lawfulness of the processing and for fulfilling your data-subject rights; Caelex supports it.
Caelex as a controller in its own right
For certain processing, Caelex itself determines the purposes and means and is therefore a controller in its own right. This includes in particular: secure operation, abuse/attack prevention and security logging; maintenance, debugging and product development; and the design of the AI-assisted semantic search. This Privacy Notice applies directly to that processing.
You can always address your data-subject rights to Caelex (privacy@caelex.eu) — even where your university is the controller in a given case. We will then forward your request to the competent body without undue delay or support your university in responding.
Section 3
What data we process
We process only the data necessary for the research database:
Account and identity data: name and email address. These usually come from sign-in via your university (single sign-on) or, where set up for your university, from an account created with credentials.
Settings (ScholarUserPreferences): interface language, source language, default jurisdiction, citation format, results per page, and the toggle states for semantic search and search history.
Search history (ScholarSearchHistory) — only if enabled: search term, selected jurisdiction and timestamp. Stored only if you explicitly switch search history on (default: off).
Bookmarks (ScholarBookmark): references to sources or decisions you save (item type and id, timestamp).
Reading lists (ScholarReadingList and items): named lists you create, with a name, optional description and their entries (item type/id, optional note, order).
Sign-in and security logs (LoginEvent): timestamps of sign-in events, a shortened (masked) IP address and information about the browser/device used (user agent), to detect and prevent abuse.
In Scholar we generally do not process special categories of personal data (Art. 9 GDPR). Please do not enter sensitive personal data into search queries, notes or list names.
Section 4
Purposes of processing and legal bases
For each processing activity we state the purpose and the legal basis under Art. 6(1) GDPR:
Providing the account and access to the database. Purpose: to authenticate you and provide the licensed research database. Legal basis: performance of the (university-mediated) usage relationship or pre-contractual steps, Art. 6(1)(b) GDPR; vis-à-vis the university, on the basis of the Art. 28 GDPR DPA.
Bookmarks and reading lists. Purpose: to let you save and organise sources for your studies or teaching. Legal basis: performance of the usage relationship, Art. 6(1)(b) GDPR. These features are visible only to you (private by default).
Storing and displaying your settings. Purpose: to present the service according to your preferences. Legal basis: performance of the usage relationship, Art. 6(1)(b) GDPR.
Search history (only if enabled). Purpose: to show you your past searches. Legal basis: your consent, Art. 6(1)(a) GDPR. Off by default; withdrawable at any time in Settings (with effect for the future).
Semantic search (AI meaning-based search, only if enabled). Purpose: to find and rank results by meaning rather than keywords alone. Legal basis: your consent, Art. 6(1)(a) GDPR. Off by default; withdrawable at any time. See Section 11.
Security, abuse prevention and logging. Purpose: to detect and prevent unauthorised access, brute-force attacks and abusive use, and to safeguard the integrity of the service (incl. sign-in logs with masked IP, rate limiting, a security audit log). Legal basis: legitimate interests, Art. 6(1)(f) GDPR (see balancing below).
Compliance with legal obligations. Purpose: to meet statutory obligations, e.g. responding to data-subject requests and retention/record-keeping duties. Legal basis: legal obligation, Art. 6(1)(c) GDPR.
Legitimate-interests balancing (short LIA)
For security logging we rely on Art. 6(1)(f) GDPR. Our legitimate interest is protecting the service and its users from attacks and abuse. The processing is necessary for this, designed to be data-minimising (in particular masked IP addresses and short retention) and foreseeable for you as a signed-in user. As no overriding interests or fundamental rights are apparent, the protective interest prevails. You nonetheless have a right to object under Art. 21 GDPR (see Section 9).
Section 5
Privacy-friendly defaults (privacy by default)
Caelex Scholar is designed on the principle of data protection by default (Art. 25(2) GDPR). The two most data-intensive features are off unless you choose otherwise:
- Search history is OFF by default — your searches are not stored unless you enable it.
- Semantic search (AI) is OFF by default — no AI meaning-based search takes place until you enable it.
- Bookmarks and reading lists are private — visible only to you.
You can switch these features on and off at any time in Settings. At each toggle you receive a short note explaining what enabling it means.
Section 6
Recipients and processors
Within Caelex, only those people who need it to provide and secure the service have access to your data. In addition, we use carefully selected service providers as processors under Art. 28 GDPR, e.g. for hosting/CDN (Vercel), database (Neon, eu-central-1 Frankfurt), embeddings for semantic search (OpenAI), email delivery (Resend), sign-in via Google (OAuth), rate limiting (Upstash), error monitoring (Sentry) and event logging (LogSnag).
The current, complete list of our sub-processors with purpose, location and transfer basis is available on our Sub-processors overview (/scholar/legal/sub-processors).
Disclosures to your university take place within the respective allocation of roles (Section 2). Disclosures to public authorities occur only where we are legally required to do so. We do not sell your personal data.
Section 7
Transfers to third countries
We operate Scholar so that personal data is processed primarily within the European Union. In particular, the database is stored in the EU region eu-central-1 (Frankfurt) at Neon.
Some service providers have parent companies in the United States (e.g. Vercel) or process to a limited extent outside the EU. For semantic search, if you have enabled this feature, search queries are transmitted to OpenAI (USA) to generate vector embeddings.
Where a transfer to a third country takes place without an adequacy decision, we rely on appropriate safeguards under Art. 46 GDPR — in particular the European Commission’s standard contractual clauses — or, where applicable, on certification under the EU-US Data Privacy Framework, in each case supplemented by additional protective measures (e.g. encryption in transit and at rest, data minimisation, masked IP addresses).
A copy of the safeguards in use (e.g. standard contractual clauses) may be requested at privacy@caelex.eu.
Section 8
Retention periods
We store personal data only for as long as necessary for the respective purposes:
Account, settings, bookmarks and reading lists: until you delete your account or your university’s licence ends and access is terminated. On account deletion, this data is deleted (see Section 9).
Search history: if enabled, automatically deleted after 90 days; and on account deletion. You can delete the history yourself or disable the feature at any time.
Sign-in and security logs: stored for as long as necessary for security defence, then deleted or anonymised.
Consent records: stored for as long as needed to demonstrate the respective consent and to meet statutory record-keeping duties.
Section 9
Your rights and how to exercise them
Under the GDPR you have the following rights:
- Access (Art. 15): whether and which data we process about you.
- Rectification (Art. 16): correction of inaccurate data; you can edit settings and profile yourself.
- Erasure (Art. 17): deletion of your data, unless a retention obligation applies.
- Restriction of processing (Art. 18).
- Data portability (Art. 20): receipt of your data in a structured, commonly used, machine-readable format.
- Objection (Art. 21): to processing based on legitimate interests (Section 4).
- Withdrawal of consent given (Art. 7(3)): with effect for the future, without affecting the lawfulness of processing carried out beforehand.
Self-service in Settings
You can exercise many rights directly in the service — in Scholar Settings (/scholar/settings):
- Data export: with one click you receive a file containing your account data, settings, search history and your bookmarks and reading lists.
- Account deletion: you delete your account yourself; this also deletes search history, bookmarks and reading lists and their items.
- Search history and semantic search: switch on/off at any time; you can delete the history.
You can also reach us for any matter at privacy@caelex.eu. We respond to requests in principle within one month (Art. 12(3) GDPR). Where your university is the controller for a processing activity (Section 2), we forward your request or support its response.
Right to lodge a complaint with a supervisory authority (Art. 13(2)(d), 77)
You have the right to lodge a complaint with a data-protection supervisory authority. The authority competent for Caelex is the Berlin Commissioner for Data Protection and Freedom of Information (Berliner Beauftragte für Datenschutz und Informationsfreiheit, BlnBDI), Alt-Moabit 59–61, 10555 Berlin. You may also contact the authority of your habitual residence or place of work.
Section 10
Obligation to provide data and source of the data
Providing your account and identity data is necessary to use Scholar: without authentication we cannot grant you access. There is no statutory or contractual obligation to create an account; using Scholar is voluntary.
Where account and identity data are not collected directly from you but via your university’s sign-in (single sign-on) or via Google (OAuth), they originate from those sources (Art. 14 GDPR).
Section 11
Artificial intelligence: semantic search and no automated decision-making
If you enable semantic search, Caelex Scholar uses an AI system to find content in the corpus by meaning and to rank search results (“powered by Atlas”). Technically, this uses vector embeddings (see Section 7 on transfers).
For transparency, and pursuant to Art. 50 of the AI Act (Regulation (EU) 2024/1689), we inform you that you are interacting with an AI-assisted search system. The results are a research aid; always check important results against the official source. Caelex Scholar does not provide legal advice.
No automated decision in individual cases: there is no solely automated decision-making, including profiling, within the meaning of Art. 22 GDPR that produces legal effects concerning you or similarly significantly affects you. Semantic search merely ranks content; it makes no decision about you.
Section 12
Information for minors
Caelex Scholar is aimed at university students and staff. Individual users may be minors. In Germany, consent to information-society services under Art. 8 GDPR is valid from the age of 16; for younger persons, the consent of a holder of parental responsibility is required.
We design Scholar so that its core functions do not rely on consent (but on the usage relationship or legitimate interests, Section 4) and the consent-based features (search history, semantic search) are off by default. We do not specifically collect a date of birth for age verification, and we process no more data than necessary.
Responsibility for compliance with Art. 8 GDPR (age and, where relevant, parental consent) is allocated to the licensing university in the data-processing agreement; the university mediates access for its members.
Section 13
Cookies and access to your device
To operate Scholar we use strictly necessary cookies or comparable technologies (e.g. for sign-in and protection against cross-site request forgery). Non-essential access to your device requires your consent under § 25 TDDDG. Details are in the Cookie Notice (/scholar/legal/cookies).
Section 14
Data security (technical and organisational measures)
We take appropriate technical and organisational measures under Art. 32 GDPR to protect your data, including:
- Encryption of sensitive fields (AES-256-GCM) and encryption in transit (TLS).
- Password hashing with bcrypt, plus multi-factor authentication and hardware security keys (WebAuthn/FIDO2).
- Masking of IP addresses in security logs, plus brute-force protection and rate limiting.
- Tamper-evident audit log (hash chaining) and strict security headers (incl. CSP, HSTS).
- Strict confidentiality of credentials/keys (server-side only) and need-to-know access.
Section 15
Changes to this Privacy Notice
We will update this Privacy Notice when the service, our processing or the legal situation changes. The version published here applies; you will find the date and version above.