meetergomeetergo Help

GDPR documents: download your DPA, privacy snippet and confidentiality agreement (NDA)

Where to find the data processing agreement (DPA), the privacy policy snippet and the § 203 StGB confidentiality agreement (NDA) for lawyers, doctors and tax advisors, how to delete booking data automatically, and why a cookie scanner finds entries on your booking page.

Updated on October 9, 2026

Everything you need for your own GDPR paperwork sits on one page: Settings → Legal & privacy (Open settings). The page is called Privacy & legal and holds your compliance documents, your legal links, the data retention setting and the consent options for your booking pages.

Download the compliance documents

Scroll to the Compliance documents section at the bottom of the page. It contains three cards:

CardWhat you getFile
Data processing agreement (badge: Required for GDPR)The current standard DPA under Art. 28 GDPR between your company and meetergo GmbH, available in German and Englishmeetergo-dpa-v3.0-de.pdf and meetergo-dpa-v3.0-en.pdf
Privacy policy snippet (badge: Copy into your policy)Configurable passages for the meetergo apps you actually use, in German or EnglishText with links, HTML or meetergo-privacy.html
Confidentiality agreement (badge: Optional NDA)The confidentiality undertaking under § 203 StGB for professions bound by professional secrecyConfidentiality-2026.pdf

For new self-service accounts, the DPA is accepted together with the Terms and Privacy Notice during signup. For an existing company, a company admin accepts the current version once on the Privacy & legal page. meetergo records the accepted version, time and accepting account. A handwritten or electronic signature is not required.

The same immutable Version 3.0 agreement stays available in German and English, so you can review or save a copy before or after acceptance. If you already accepted Version 2.2, that acceptance stays valid. Version 3.0 adds the AI phone assistant and its sub-processors, and you can additionally accept it in the settings. Version 2.2 stays available at its previous address.

The standard DPA is provided in German and English. The confidentiality agreement exists in German only.

The confidentiality agreement (§ 203 StGB)

If you work under a statutory duty of confidentiality, the DPA alone is not what your professional body asks for. The third card downloads a Verschwiegenheitsverpflichtung und Belehrung that names § 203 StGB explicitly and covers:

  • Doctors, dentists, veterinarians, pharmacists and other regulated health professions
  • Lawyers, patent attorneys, notaries, defence counsel, auditors, sworn accountants, tax advisors and tax agents, including the officers of such firms
  • Professional psychologists with a state-recognised degree
  • Marriage, family, education, youth and addiction counsellors at recognised counselling centres
  • Members of pregnancy conflict counselling centres under §§ 3 and 8 SchKG
  • State-recognised social workers and social pedagogues
  • Staff of private health, accident or life insurers and of medical, tax or legal billing agencies

It also covers the right to refuse testimony for assisting persons (§ 53a StPO) and the seizure protection under § 97 StPO, and obliges meetergo to pass the same duty on to its employees and subcontractors.

The card is labelled "Confidentiality agreement" with an "Optional NDA" badge, which is why it is easy to miss when you are searching for a confidentiality undertaking or an NDA for a law firm, tax practice or medical practice. It is the same document.

Add the snippet to your privacy policy

meetergo processes attendee data on your behalf, so your own privacy policy has to say so.

  1. Click Create text on the Privacy policy snippet card.
  2. Choose German or English. Review the suggested apps from your selection and your company's selection, including apps colleagues use. A subscription entitlement does not establish actual processing.
  3. Open each selected section. Adjust the purpose and data, then supply the legal basis and specific retention periods. Legitimate interest requires the particular interest; legal obligation requires the applicable provision. AI and payments also require provider, processing-location and transfer details.
  4. Click Copy text with links and paste into your website editor. Formatted editors retain the visible meetergo link. If formatting is stripped, use Copy HTML or the HTML download.
  5. Check the published page and add its address as your Privacy policy URL above.

WhatsApp, website chat and Mira are separate choices. You can describe WhatsApp first and add website chat later. Include Mira as well if AI processes chat messages.

Drafts are saved only in this browser, separately for each account, company and text language. Reset draft removes your changes and restores current app suggestions. Newly selected apps are added to the draft automatically. Your explicit inclusions and exclusions and edited text are preserved. Selecting passages does not change app settings. Review the text when your actual use changes; a published website is not updated automatically.

Publish your privacy policy and imprint

At the top of the page, the Your legal documents section takes your Privacy policy URL and Imprint URL. Both are linked from your booking pages, and several other settings depend on them, so set them first.

In What attendees see on the booking page you then decide what is displayed:

  • Show privacy & imprint links in the footer puts both links at the bottom of every booking page.
  • Require attendees to accept the data policy adds the consent checkbox above the booking button.
  • A custom legal text can be shown right above the confirm button. See How to Customize the Privacy Text on Booking Forms.

The compliance status strip at the top of the page shows at a glance which of these are set and which still say "Not set".

Data retention: what the deletion timer really deletes

The Data retention section holds one setting, Automatic deletion of appointment data after, with values from 1 hour up to 24 months, or Never.

Once you pick a duration, a job runs every night and deletes the whole booking record, not just the personal fields:

  • Bookings whose end time is older than the duration are deleted, together with their attendees and scheduled reminders. They disappear from your Bookings list.
  • Contacts created before the same cut-off are deleted as well. A contact that is still referenced elsewhere, for example by a review or a form submission, is kept.
  • The counter runs from the meeting's end, not from the booking date.

Cookies on your booking pages

meetergo booking pages set no advertising or analytics cookies and load no third-party trackers, and nothing is passed on to third parties. Self-hosted technical error diagnostics capture sanitized error data only when an application error occurs. Page views, clicks, mouse movements, heatmaps, dead clicks and session recordings are disabled. This is the reason you can embed a booking page or a pop-up without a consent layer.

A consent scanner such as Cookiebot may still list an entry for cal.meetergo.com. Those are technical values needed to run the booking flow itself, for example a session identifier, or the access cookie of a password-protected form. They are anonymous, they are not evaluated, and the advertising description that scanners attach to unknown entries by default does not apply.

If your own site policy requires a banner anyway, Enable cookie banner in the What attendees see on the booking page section shows one on your booking pages. It is marked Experimental and only affects the new booking page. If you run your own consent tool through meetergo, that tool takes precedence over this banner.

What else lives on this page

SectionArticle
Right of withdrawalWithdrawal button (§ 356a BGB)
Booking confirmation flowBooking Confirmation: Why It Happens and How to Turn It Off
DOI audit exportDouble Opt In (DOI)

FAQ

Where do I find the DPA (AV-Vertrag)?

At Open settings, section Compliance documents, card Data processing agreement. You can also open the public DPA Version 3.0 in German or English directly.

Do you provide a confidentiality agreement under § 203 StGB for my practice or law firm?

Yes. It is the Confidentiality agreement card on the same page. See the section above for the professions it covers.

The download buttons are greyed out.

The DPA is always available. If the confidentiality agreement is disabled, click Add billing details, enter company name, street, postal code, city and country, then reload the page. For the privacy text, complete the marked sections to enable copying and download.

I am not an admin. Can I still download the DPA?

Yes. Every account member can view and download the current DPA. Only a company admin can accept it on behalf of the company.

See Cookies on your booking pages. The entries are technical, anonymous and not used for tracking.

Which subprocessors does meetergo use?

See List of Subprocessors for the full list, including where each one is located and which transfer mechanism applies.

Was this article helpful?

Let us know if this article answered your questions.