Privacy
Last updated 26 July 2026.
The short version: this site has no forms, no accounts, and no cookies. It doesn't store anything on your device and can't tell who you are. If you want to reach Sarah, the buttons hand you over to your own email app or Instagram — nothing you write passes through this website.
Who is responsible
Slik Tattoo, Berlin. Name, postal address, and contact details are in the imprint. For anything on this page, email [email protected].
What this site collects
Nothing. There's no contact form, no login, no newsletter, and no shopping basket. No cookies are set and nothing is written to your browser's storage, so there's no cookie banner to click away. Fonts and images are served from this site itself, not pulled in from Google or anyone else.
Getting in touch
The email and Instagram buttons are ordinary links. Tapping them opens your own mail app or the Instagram app, and your message goes straight to Sarah — this site never sees it. She uses what you send to answer you and plan the tattoo (Art. 6(1)(b) GDPR) and keeps the conversation only as long as that takes, plus any period tax or commercial record-keeping rules require once money is involved. Instagram messages are also subject to Meta's own privacy terms.
Booking an appointment
The booking buttons on the booking page are ordinary links to Cal.com, where Sarah's calendar lives. Simply opening this site tells them nothing — nothing is loaded from Cal.com until you click through. Once you're there, what you fill in goes to Cal.com: your name, email address, the slot you picked, and the answers to the questions on the form — what you'd like tattooed, where on your body, roughly what size, whether it's your first, and a confirmation that you're 18 or older, plus a phone number or reference links if you add them. Cal.com process it on Sarah's behalf so she can review the request and hold the appointment (Art. 6(1)(b) GDPR), and she keeps it only as long as planning and aftercare need, plus any period record-keeping rules require once money is involved. Their own privacy notice covers what they do with it.
Hosting
The site is hosted by Cloudflare, whose servers log requests briefly to deliver pages and block attacks (Art. 6(1)(f) GDPR). Sarah doesn't read those logs.
Visitor numbers
To see which pages people actually look at, the site uses PostHog on their EU servers, in cookieless mode: nothing is stored on your device, and instead of an identifier PostHog derives a one-way hash from your IP address and browser that is re-salted every day. The result is a visitor count, not a profile — you can't be identified from it, and coming back tomorrow counts as someone new. This runs on the basis of a legitimate interest in knowing whether the site works (Art. 6(1)(f) GDPR). If you'd rather it didn't run at all, any tracker blocker or your browser's "do not track" setting will stop it.
Your rights
The only personal data tied to this site is whatever you've sent Sarah yourself: an email, an Instagram message, or a booking. For that you have the usual GDPR rights — to see it, correct it, delete it, restrict or object to how it's used, or get a copy. In practice it's one email to [email protected] and she'll delete the thread. If you think something has been handled badly, you can complain to the Berliner Beauftragte für Datenschutz und Informationsfreiheit.