Skip to main content

Legal Links, Withdrawal Policy & Data Processing Agreement

Learn how to manage the privacy policy, imprint, and withdrawal policy shown on your scheduling pages, plus download your GDPR Data Processing Agreement (DPA).

Written by Fernando Figueiredo

Zeeg's Legal dashboard let you configure the privacy policy, legal links and withdrawal policy shown on your scheduling pages, and download the Data Processing Agreement (DPA) for GDPR compliance. This article covers all three areas.

These settings apply to your whole organization. Only owners, admins, and partners can edit them. Other members can view them in read-only mode.


1. Compliance

How to open the compliance settings

  1. Open your Zeeg dashboard and navigate to Workspace Settings.

  2. In the left sidebar, find the Legal group and click Compliance.

Legal links

The top card on the Compliance page controls which legal links appear on your scheduling pages.

  • Show privacy policy: Toggle Show privacy policy on to display a link to Zeeg's privacy policy on your booking pages. This informs your invitees how Zeeg processes their data and is recommended for GDPR transparency.

  • Show my imprint: Toggle Show my imprint on and enter your company's imprint URL (e.g., https://your-website.com/imprint). An imprint is legally required in many jurisdictions, particularly in Germany.

Withdrawal policy

The Withdrawal policy section on the Compliance page contains the statutory withdrawal instruction shown to invitees when they book a paid event with you. Zeeg provides the statutory model text in each language as a starting point — you can customize it and fill in your own trader details.

You are the trader for these bookings. Keeping this text accurate is your responsibility. Zeeg does not provide legal advice.

How to edit the withdrawal policy:

  1. Under Your details, fill in any host-provided fields (such as your name, address, or contact information). These values are shared across all languages and appear in the policy wherever the corresponding placeholder is used.

  2. Use the Language dropdown to switch between available languages and edit each version of the policy text.

  3. A badge next to the language selector shows whether the current language uses the Zeeg default or has been Edited by you.

  4. Click Save to save the current language. Switching languages without saving will prompt you to discard unsaved changes.

  5. To revert a language back to the Zeeg default text, click Reset to default.

Right of withdrawal on a paid event type

For each paid scheduling page you can control whether customers are shown a right-of-withdrawal notice at the time of booking.

  1. Open the event type editor and click the Payments tab.

  2. Scroll to the Right of withdrawal field.

  3. Choose one of the three options from the dropdown:

    1. Not set — no withdrawal information is shown at booking.

    2. Right of withdrawal (§ 356a BGB) — grants the customer a 14-day statutory cancellation right. Your withdrawal policy text is shown at booking and included in the confirmation.

    3. No right of withdrawal (§ 312g Abs. 2 Nr. 9 BGB) — declares the service legally exempt from the right of withdrawal. This requires the service itself to be a genuine leisure activity booked for a specific date (a fixed date alone is not sufficient). Choosing it incorrectly denies a right the customer still legally holds and extends the withdrawal period to 12 months and 14 days.

*If you selected Right of withdrawal (§ 356a BGB), click Edit withdrawal policy to review or update your policy text without leaving the event type editor. Changes you make here apply to all your scheduling pages that use the right-of-withdrawal option, not only this one.

Booking withdrawn webhook

When an invitee exercises their statutory right of withdrawal, Zeeg fires a Booking withdrawn webhook event (event name: invitee.withdrawn). You can use this in Zeeg Webhooks or connected automation tools to trigger downstream steps — for example, initiating a refund in your payment provider. Refund processing is not handled automatically by Zeeg.


2. Data Processing Agreement (DPA)

What is a Data Processing Agreement?

A Data Processing Agreement (DPA) is a legally binding document under GDPR that governs the processing of personal data by a data processor (in this case Zeeg) on behalf of the data controller (you).

When do you need a DPA?

You need a DPA with Zeeg when:

  • You use Zeeg and process data from European users

  • You collect personal data (names, email addresses, phone numbers) through Zeeg

  • You want to act in compliance with GDPR

Downloading Zeeg's DPA

Two download options:

  • English (DPA): Data Processing Agreement in English

  • German (AVV): Auftragsverarbeitungsvertrag in German

How to download the DPA:

  1. Click on the corresponding download link for your preferred language

  2. Download the PDF document or just do it here: Download DPA

  3. Review the contract contents

  4. For questions or to sign the contract, contact legal@zeeg.me

Support

For questions about legal aspects or the data processing agreement:


Frequently asked questions

Who can change Compliance settings?

Only organization owners, admins, and partners can edit Compliance settings. Other members see the settings in read-only mode and cannot save changes.

Does the withdrawal policy text apply to all my paid events?

The policy text (Widerrufsbelehrung) is shared at the organization level and applies to all scheduling pages. The Right of withdrawal dropdown is configured individually per event type on the Payments tab — only events set to Right of withdrawal (§ 356a BGB) will show the policy to invitees.

Can I use "No right of withdrawal" for any paid booking?

No. The exemption under § 312g Abs. 2 Nr. 9 BGB applies only when the service is itself a genuine leisure activity booked for a specific date. A fixed appointment time alone is not sufficient — every booking has one. Applying this option incorrectly denies a right the customer still legally holds and extends their withdrawal window to 12 months and 14 days. Consult a legal advisor if you are unsure which option applies to your business.

I am not the organization admin. Can I still configure the right of withdrawal on my event types?

The Right of withdrawal dropdown on the Payments tab is available to any user who can edit a scheduling page. Only the policy text itself (on the Compliance settings page) requires owner, admin, or partner access to edit.

What happens when a customer exercises their right of withdrawal?

Zeeg fires a Booking withdrawn (invitee.withdrawn) webhook event. Refund processing is not automatic — you are responsible for handling the refund in your payment provider (Stripe or PayPal).

Do I need to fill in the "Your details" fields?

If your withdrawal policy template contains host-provided placeholders (such as your name, address, or phone number), filling in the Your details fields on the Compliance page ensures those values appear correctly in the policy text shown to invitees. Unfilled placeholders show the variable name instead of a real value.

Did this answer your question?