1. An overview of Data Protection
Data Collection on Our Website
Who is responsible for the data collection on this website?
The data collected on this website are processed by the website operator. The operator’s contact details can be found in the website’s required legal notice.
How do we collect your data?
Some data are collected when you provide it to us. For example, data you enter on a contact form.
Other data are collected automatically by our IT systems when you visit the website. These data are primarily technical data (i.e., browser, operating system or time of access to the site). These data are collected automatically as soon as you enter our website.
What do we use your data for?
Part of the data is collected to ensure the proper functioning of the website. Other data can be used to analyze how visitors use the site.
What rights do you have regarding your data?
You always have the right to request information about your stored data, its origin, its recipients, and the purpose of its collection, at no charge. You also have the right to request a correction, blocking or deletion of these data. You can contact us at any time using the address given in the legal notice if you have further questions about privacy and data protection. You may also, of course, file a complaint with the competent regulatory authorities.
Analytics and third-party tools
You can object to this analysis. We will inform you below about your options in this regard.
2. General Information and Mandatory Information
Please note that data transmitted via the internet (e.g. via email communication) may be subject to security breaches. Complete protection of your data from third-party access is not possible.
Notice concerning the party responsible for this website
The party responsible for data processing on this website:
The responsible party is the natural or legal person who alone or jointly with others decides on the purposes and means of processing personal data (i.e., names, email addresses, etc.)
Revocation of Your Consent to the Processing of Your Data
Many data processing operations are only possible with your express consent. You may revoke your consent at any time with future effect. An informal email making this request is sufficient. The data processed before the consent remains unaffected by the revoke.
Right to File Complaints with Regulatory Authorities
In case of a breach in data protection legislation, the person affected may file a complaint with the competent regulatory authorities. The competent regulatory authority for matters related to data protection legislation is the data protection officer of the German state in which our company is headquartered. A list of data protection officers and their contact details can be found at the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.
Right to Data Portability
You have the right to have data, which we process based on your consent or in fulfillment of a contract, automatically delivered to yourself or to a third party in a standard, machine-readable format. If you require the direct transfer of data to another responsible party, this will only be done to the extent technically feasible.
SSL or TLS Encryption
This site uses SSL or TLS encryption for security reasons and for the protection of the transmission of confidential content, such as the inquiries you send to us as the site operator. You can recognize an encrypted connection in your browser’s address line when it changes from “http://” to “https://” and the lock icon is displayed in your browser’s address bar.
If SSL or TLS encryption is activated, the data you transfer to us cannot be read by third parties.
Encrypted Payment Transactions on This Website
In case of a binding contract, you have to submit your paying information (for instance, your account number in case of direct debit authorization) since the information is needed to complete the payment.
Payment transactions using the most common forms of payment (Visa/Mastercard, direct debits) are only carried out using an encrypted SSL connection. You can check you have an encrypted connection when you see that the browser’s address field has changed from “http://” to “https://” and when you see the lock symbol in the browser address bar.
During encrypted communications, payment information you have passed onto us cannot be read by third parties.
Information, Blocking, Deletion
You always have the right to request information about your stored data, its origin, its recipients, and the purpose of its collection, at no charge, and to request a correction, blocking or deletion of these data. For further information on personal data, please contact us at any time at the address in the imprint.
Objection to Advertising E-mails
Regarding the contact data published as part of our obligation to publish legal notices, we hereby prohibit its use for the purpose of sending unsolicited advertisements and information material. The operators of these pages reserve the express right to take legal steps in the event of unsolicited promotional information, such as spam emails, being sent.
3. Data Protection Officer
Legally required Data Protection Officer
We have an assigned Data Protection Officer for our company.
4. Date Collection on Our Website
Most of the cookies we use are so-called “session cookies.” They are automatically deleted after your visit. Other cookies are saved until you delete them. These cookies make it possible to recognize your browser when you next visit the site.
Server Log Files
The website provider automatically collects and stores information that your browser automatically transmits to us in “server log files”. These are:
Browser type and browser version
Operating system in use
Host name of the accessing computer
Time of the server request
These data will not be combined with data from other sources.
The basis for data processing is art. 6 paragraph 1 letter b of the GDPR, which allows the processing of data to fulfill a contract or for preliminary steps to a contract.
If you contact us via the contact form, the requested information on the form, including contact data specified by you, will be stored by us for the purpose of processing the request and for follow-up questions. We will not share this data without your consent.
We will process the data provided in the contact form only based on your consent (Art. 6 paragraph a letter a of the GDPR). You may revoke your consent at any time with future effect. An informal email making this request is sufficient. The data processed before we receive your request may still be legally processed.
We will continue to store the data collected while using our contact form until you request their deletion, revoke your approval for their storage or the purpose of the saving of information becomes obsolete (for instance, after processing your inquiry). Statutory retention periods –mostly time limits- remain unaffected.
Processing of Data (Customer and Contract Data)
We collect, process, and use personal data only insofar as it is necessary to establish, or modify legal relationships with us (master data). This is done based on art. 6 (1) (b) of the GDPR, which allows the processing of data to fulfill a contract or for steps preliminary to a contract. We collect, process and use your personal data when accessing our website (usage data) only to the extent required to enable you to access our service or to bill you for the same.
Collected customer data shall be deleted after completion of the order or termination of the business relationship. Legal retention periods remain unaffected.
Data transmitted when entering into a contract with online shops, retailers, and mail order
We transmit personal data to third parties only to the extent required to fulfill the terms of your contract, for example, to companies entrusted to deliver goods to your location or banks entrusted to process your payments. Your data will not be transmitted for any other purpose unless you have given your express consent. Your data will not be disclosed to third parties for advertising purposes without your express consent.
The basis for data processing is art. 6 paragraph 1 letter b of the GDPR, which allows the processing of data to fulfill a contract or for steps preliminary to a contract.
Data transferred when signing up for services and digital content
We transmit personally identifiable data to third parties only to the extent required to fulfill the terms of your contract with us, for example, to banks entrusted to process your payments.
Your data will not be transmitted for any other purpose unless you have given your express permission to do so. Your data will not be disclosed to third parties for advertising purposes without your express consent.
The basis for data processing is art. 6 paragraph 1 letter b GDPR, which allows the processing of data to fulfill a contract or for steps preliminary to a contract.
5. Social Media
All our social media links are passive elements. As the user, you decide if and what you would like to share. There’s no automatic or unwanted data transmission before you click for yourself.
Please note the therein following data protection notice of the provider.
6. Analytics and advertising
This website uses Google Analytics, a web analytics service. It is operated by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Google Analytics uses so-called “cookies”. These are text files that are stored on your computer and that allow an analysis of the use of the website by you. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there.
Google Analytics cookies are stored based on art. 6 parragraph1 letter f of the GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize both its website and its advertising.
We have activated the IP anonymization feature on this website. Your IP address will be thereby shortened by Google within the European Union or other parties to the Agreement on the European Economic Area prior to its transmission to the United States. Only in exceptional cases is the full IP address sent to a Google server in the US and shortened there. Google will use this information on behalf of the operator of this website to evaluate your use of the website, to compile reports on website activity, and to provide other services regarding website activity and Internet usage for the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with any other data held by Google.
You can prevent the storage of cookies by selecting the appropriate settings in your browser. However, note that doing so may mean you will not be able to enjoy the full functionality of this website. You can also prevent the data generated by cookies about your use of the website (incl. your IP address) from being passed to Google, and the processing of these data by Google, by downloading and installing the browser plugin available at the following link: https://tools.google.com/dlpage/gaoptout?hl=en.
If you visit our site via a mobile device (smartphone or tablet), you must instead click this link to prevent tracking by Google Analytics within this website in the future. This is also possible as an alternative to the above browser Add-on. Clicking on the link places an Opt-Out Cookie in your browser that is valid only for this browser and this domain. If you delete the cookies in this browser, the Opt-Out Cookie will also be deleted, so you will have to click the link again.
Objecting to Data Collection
You can prevent the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie will be set to prevent your data from being collected on future visits to this site: Disable Google Analytics.
Outsourced Data Processing
We have entered into an agreement with Google for the outsourcing of our data processing and fully implement the strict requirements of the German data protection authorities when using Google Analytics.
Demographic Data Collection by Google Analytics
This website uses Google Analytics’ demographic features. This allows reports to be generated containing statements about the age, gender, and interests of site visitors. This data comes from interest-based advertising from Google and third-party visitor data. This collected data cannot be attributed to any individual person. You can disable this feature at any time by adjusting the ads settings in your Google account or you can forbid the collection of your data by Google Analytics as described in the section “Objecting to data collection”.
This website uses Google AdSense. AdSense is an online advertising service from Google Inc. (“Google”), 1600 Amphitheater Parkway, Mountain View, CA 94043, United States.
Google AdSense uses so-called cookies, i.e. small text files that are stored by the browser on your computer and enable the analysis of the website usage. Google AdSense also uses so-called web beacons (invisible graphics). These make it possible to evaluate visitor traffic on the website.
The information collected through cookies and web beacons on the use of this website and the advertising displayed on it (as well as the IP address used) are transmitted to Google servers in the USA and can be passed on by Google to contractual partners. The IP address sent by your browser will not be connected with other data from Google.
Ad-Sense cookies are stored based on art. 6 paragraph 1 letter f GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize both website and advertising.
You can disable the installation of cookies by a corresponding configuration in your browser. However, if cookies are not allowed, certain functionalities of the website may not be available or may not be fully available. By using this website you agree to the processing of information collected on you through Google as described and to the aforementioned purposes.
Google Analytics Remarketing
Our websites use the features of Google Analytics Remarketing combined with the cross-device capabilities of Google AdWords and DoubleClick. This service is provided by Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.
This feature makes it possible to link target audiences for promotional marketing created with Google Analytics Remarketing to the cross-device capabilities of Google AdWords and Google DoubleClick. This allows advertising to be displayed on other devices (such as a tablet or computer) based on your personal interests, identified based on your previous usage and surfing behavior on one device (e.g. your mobile phone).
Once you have given your consent, Google will associate your web and app browsing history with your Google Account for this purpose. That way, any device that signs in to your Google Account can use the same personalized promotional messaging.
To support this feature, Google Analytics collects Google-authenticated IDs of users that are temporarily linked to our Google Analytics data to define and create audiences for cross-device ad promotion.
You can permanently opt out of cross-device remarketing/targeting by turning off personalized advertising in your Google Account; follow this link: https://www.google.com/settings/ads/onweb/.
The aggregation of the data collected in your Google Account is based solely on your consent, which you may give or withdraw from Google (art. 6 paragraph 1 letter a of the GDPR). Data collection operations not merged into your Google Account (for example, because you do not have a Google Account or have objected to the merge) is based on art. 6 paragraph 1 letter f of the GDPR. The website operator has a legitimate interest in analyzing anonymous user behavior for promotional purposes.
Google AdWords and Google Conversion Tracking
This website uses Google AdWords. AdWords is an online advertising program from Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, United States (“Google”).
As part of Google AdWords, we use so-called conversion tracking. When you click on an ad served by Google, a conversion tracking cookie is set. Cookies are small text files that your internet browser stores on your computer. These cookies expire after 30 days and are not used for personal identification of the user. Should the user visit certain pages of the website and the cookie has not yet expired, Google and the website can tell that the user clicked on the ad and proceeded to that page.
Each Google AdWords advertiser has a different cookie. Thus, cookies cannot be tracked using the website of an AdWords advertiser. The information obtained using the conversion cookie is used to create conversion statistics for the AdWords advertisers who have opted for conversion tracking. Customers are told the total number of users who clicked on their ad and were redirected to a conversion tracking tag page. However, advertisers do not obtain any information that can be used to personally identify users. If you do not want to participate in tracking, you can opt-out of this by easily disabling the Google Conversion Tracking cookie by changing your browser settings. In doing so, you will not be included in the conversion tracking statistics.
Conversion cookies are stored based on art. 6 paragraph 1 letter f of the GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize both website and advertising.
Our website uses Google reCAPTCHA (following “reCAPTCHA”). This service is provided by Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (“Google”).
The purpose of this function is to verify if data entry on our website (for example, in a contact form) is performed by a person or by an automated program. For this, Google reCAPTCHA analyses the behavior of the website visitor using various features. The analysis starts automatically as soon as the visitor enters the website. For this purpose, different kind of data are analyzed (for instance, IP-address, the time spent on the website or the cursor movements). The information collected during the analysis is transferred to Google.
This analysis is carried out in the background. Website users are not informed of the analysis.
This data processing is carried out on the basis of art. 6 paragraph 1 letter f of the GDPR. The website operator has a legitimate interest in preventing the misuse and spying out of our offers through automated input and SPAM.
Our website measures conversions using visitor action pixels from Facebook, Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA (“Facebook”).
These allow the behavior of site visitors to be tracked after they click on a Facebook ad to reach the provider’s website. This allows an analysis of the effectiveness of Facebook advertisements for statistical and market research purposes and their future optimization.
You can also deactivate the custom audiences remarketing feature in the Ads Settings section at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. You will first need to log into Facebook.
If you do not have a Facebook account, you can opt out of usage-based advertising from Facebook on the website of the European Interactive Digital Advertising Alliance: http://www.youronlinechoices.com/de/praferenzmanagement/.
If you wish to subscribe to the newsletter on our website, we need your e-mail address, along with information that enables us to prove that the e-mail address belongs to you and that you have agreed to receive the newsletter. No other data is collected unless agreed upon. We will use this data solely for sending you the requested information; it is not shared with third parties.
The processing of the information provided during the registration to our newsletter is exclusively carried out under your consent (art. 6 paragraph 1 letter a of the GDPR). You may revoke your consent to future storage of information, e-mail-address as well as using this information to send you the newsletter by selecting clicking on the “Unsubscribe” link in the newsletter. The lawfulness of processed information until then remains unaffected.
The information provided to us in order to send you the newsletter is stored until you unsubscribe, after unsubscribing, we will delete your personal data, unless you have expressly consented to further use of your data or there is another legal reason for its storage (e.g., e-mail-address for our member’s area).
8. Plugins und Tools
Our website uses plugins from YouTube, which is operated by Google. The operator of the pages is YouTube LLC, 901 Cherry Ave., San Bruno, CA 94066, USA.
If you visit one of our pages featuring a YouTube plugin, a connection to the YouTube servers is established. Here the YouTube server is informed about which of our pages you have visited.
If you’re logged in to your YouTube account, you enable YouTube to associate your browsing behavior directly with your personal profile. You can prevent this by logging out of your YouTube account.
YouTube is used to help make our website appealing. This constitutes a justified interest pursuant to art. 6 paragraph 1 letter f of the GDPR.
We use Vimeo plug-ins to display videos on our website. This is a service of Vimeo Inc., 555 West 18th Street, New York, New York 10011, USA.
If you visit one of our pages featuring a Vimeo plugin, a connection to the Vimeo servers is established. Here the Vimeo server is informed about which of our pages you have visited. Moreover, Vimeo collects your IP address. This is so whether you are logged into or don’t own an account from Vimeo. The processed information is transferred to the Vimeo servers in the USA.
If you are logged into Vimeo while visiting one of our webpages containing a Vimeo video, Vimeo will associate information about your interaction with our site to your Vimeo account. If you wish to prevent this, you must log out of Vimeo.
Google Web Fonts
For uniform representation of fonts, this page uses web fonts provided by Google. When you open a page, your browser loads the required web fonts into your browser cache to display texts and fonts correctly.
For this purpose your browser makes a direct connection with Google servers. Google thus becomes aware that our web page was accessed via your IP address. The use of Google Web fonts is done in the interest of a uniform and attractive presentation of our website. This constitutes a justified interest pursuant to art. 6 paragraph 1 letter f of the GDPR.
If your browser does not support web fonts, a standard font is used by your computer.
This site uses the Google Maps map service via an API. It is operated by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
To use Google Maps functions, it is necessary to save your IP address. This information is generally transmitted to a Google server in the USA and stored there. The provider of this site has no influence on this data transfer.
The use of Google Maps is in the interest of making our website appealing and to facilitate the location of places specified by us on the website. This constitutes a justified interest pursuant to art. 6 paragraph 1 letter f of the GDPR.
9. Payment Service Providers
Our website accepts payments via PayPal. The provider of this service is PayPal (Europe) S.à.r.l et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (following “PayPal).
If you select payment via PayPal, the payment data you provide will be transferred to PayPal.
The transmission of your data to PayPal is based on art. 6 (1) (a) (Consent) and art. 6 (1) (b) of the GDPR (Processing for contracting purposes). You have the option to revoke your consent to data processing at any time with future effect. Your revoke does not affect the processing of collected data in the past.
Our website accepts payments via Sofortüberweisung, among others. The provider of this service is Sofort GmbH, Theresienhöhe 12, 80339 Munich, German. (following as “Sofort GmbH”).
Sofortüberweisung provides us with real-time payment confirmations from Sofort GmbH, allowing us to begin fulfilling our end of our contract right away.
If you opt to pay using Sofortüberweisung, you will be submitting a PIN and a valid TAN to Sofort GmbH so that it can access your online banking account. Sofort GmbH will automatically check your account balance and perform the transfer to our account using the TAN you supply. It then sends us an immediate transaction confirmation. After logging in, your income, the overdraft protection, and the availability of other accounts and their balances will be checked.
In addition to the PIN and TAN, the payment details you provide as well as personal information will be sent to Sofort GmbH. This personal information includes your name, address, telephone number(s), email address, IP address, and any other data required to process your payment. This data must be transferred to securely identify you and to prevent fraud.
Data is transmitted to Sofort GmbH based on art. 6 (1) (a) (Consent) and art. 6 (1) (b) GDPR (Processing for contract purposes). You have the option to revoke your consent at any time with future effect. Your revoke does not affect the processing of collected data in the past.
Our website accepts payments via Paydirect, among others. The provider of this service is Paydirekt GmbH, Hamburger Allee 26-28, 60486 Frankfurt, Germany (following as “Paydirekt”)
When you make your payment through Paydirekt, Paydirekt collects different transaction information and transfers this information to the bank that is registered to your Paydirekt account. In addition to the information needed for the payment, Paydirekt collects information within the transaction process; this might include other data such as delivery address or single items on your shopping cart.
Subsequently Paydirect authenticates the transaction using the bank’s authentication process. Afterwards, the payment amount is transferred from your account to ours. Neither third parties nor us have access to your account information.