Swapia Data protection declarationätion
General information
The following information provides a simple
overview of what happens to your personal data when you visit this website.
Personal data is any data that can be used to identify you personally. Detailed
information on the subject of data protection can be found in our privacy
policy listed below this text. This Privacy Policy applies to your use of this
website and all Swapia applications, services, products and tools, regardless
of how you access or use them, including mobile and app access.
We may amend this Privacy Policy at any time by
posting the amended version here and indicating the effective date of the
amended version. Any material changes to this Privacy Policy will be notified
to you by email if you have registered with us.
Data collection on this website
Who is responsible for the data collection on
this website?
Data processing on this website is carried out
by the website operator. You can find their contact details in the section
"Note on the responsible body" in this privacy policy.
How do we collect your information?
On the one hand, your data is collected when
you provide it to us. This can be, for example, data that you enter into a
contact form. Other data is collected automatically or with your consent when
you visit the website by our IT systems. This is mainly technical data (e.g.
Internet browser, operating system or time of page access). The collection of
this data takes place automatically as soon as you enter this website.
What do we use your data for?
Part of the data is collected to ensure that
the website is provided without errors. Other data may be used to analyze your
user behavior.
What rights do you have regarding your data?
You have the right to receive information about
the origin, recipient and purpose of your stored personal data at any time,
free of charge. You also have the right to request the correction or deletion
of this data. If you have given consent to data processing, you can revoke this
consent at any time for the future. You also have the right to request the
restriction of the processing of your personal data in certain circumstances.
Furthermore, you have the right to lodge a complaint with the competent supervisory
authority. You can contact us at any time for this and other questions on the
subject of data protection.
Analytics and third-party tools
When you visit this website, your surfing
behaviour can be statistically evaluated. This is mainly done with so-called
analysis programs. Detailed information about these analysis programs can be
found in the following privacy policy.
Hosting
We host the content of our website with the
following provider:
GoDaddy. The provider is GoDaddy Operating
Company, LLC, 2155 E. GoDaddy Way, Tempe, AZ 85284, USA (hereinafter
"GoDaddy"). When you visit our website, GoDaddy collects various log
files, including your IP addresses. For more information, please see GoDaddy's
Privacy Policy: https://de.godaddy.com/legal/agreements/privacy-policy. The use of GoDaddy is based on Art. 6 (1) (f)
GDPR. We have a legitimate interest in presenting our website as reliably as
possible. If a corresponding consent has been requested, the processing is
carried out exclusively on the basis of Art. 6 (1) (a) GDPR and § 25 (1) TDDDG,
insofar as the consent includes the storage of cookies or access to information
in the user's end device (e.g. device fingerprinting) within the meaning of the
TDDDG. The consent can be revoked at any time.
Order processing
We have concluded a contract processing
agreement (DPA) for the use of the above-mentioned service. This is a contract
required by data protection law that ensures that it processes the personal
data of our website visitors only in accordance with our instructions and in
compliance with the GDPR.
General information and mandatory information
The operators of these pages take the
protection of your personal data very seriously. We treat your personal data
confidentially and in accordance with the statutory data protection regulations
and this data protection declaration.
When you use this website, various personal
data is collected. Personal data is data that can be used to identify you
personally. This privacy policy explains what data we collect and what we use
it for. It also explains how and for what purpose this is done. We would like
to point out that data transmission on the Internet (e.g. when communicating by
e-mail) may have security gaps. It is not possible to completely protect the
data from access by third parties.
Note on the responsible body
The person responsible for data processing on
this website is:
DJOEY KOMERC DOOEL
A. Hodja
Struga, Republic of Makedonija
E-mail: info@swapia.de
The controller is the natural or legal person
who, alone or jointly with others, decides on the purposes and means of the
processing of personal data (e.g. names, e-mail addresses, etc.).
Storage period
Unless a specific storage period has been
specified in this privacy policy, your personal data will remain with us until
the purpose for which the data is processed no longer applies. If you assert a
justified request for deletion or revoke consent to data processing, your data
will be deleted, unless we have other legally permissible reasons for storing
your personal data (e.g. retention periods under tax or commercial law); in the
latter case, the deletion takes place after these reasons have ceased to exist.
General information on the legal basis of data
processing on this website
If you have consented to data processing, we
process your personal data on the basis of Art. 6 (1) (a) GDPR or Art. 9 (2)
(a) GDPR, insofar as special categories of data are processed in accordance
with Art. 9 (1) GDPR. In the case of explicit consent to the transfer of
personal data to third countries, data processing is also carried out on the
basis of Art. 49 (1) (a) GDPR. If you have consented to the storage of cookies
or access to information in your device (e.g. via device fingerprinting), data
processing is also carried out on the basis of § 25 (1) TDDDG. The consent can
be revoked at any time. If your data is required for the performance of a
contract or for the implementation of pre-contractual measures, we process your
data on the basis of Art. 6 (1) (b) GDPR. Furthermore, we process your data if
it is necessary to comply with a legal obligation on the basis of Art. 6 (1)
(c) GDPR. Data processing may also be carried out on the basis of our
legitimate interest in accordance with Art. 6 (1) (f) GDPR. Information on the
relevant legal bases in each individual case is provided in the following
paragraphs of this data protection declaration.
Note on the transfer of data to third countries
that are not secure in terms of data protection law and the transfer to US
companies that are not DPF-certified
Among other things, we use tools from companies
based in third countries that are not secure in terms of data protection law as
well as US tools whose providers are not certified according to the EU-US Data
Privacy Framework (DPF). When these tools are active, your personal data may be
transferred to and processed in these countries. We would like to point out
that in third countries that are uncertain in terms of data protection law, no
level of data protection comparable to that of the EU can be guaranteed. We
would like to point out that the USA, as a safe third country, basically has a
level of data protection comparable to that of the EU. Data transfer to the USA
is permissible if the recipient has certification under the "EU-US Data
Privacy Framework" (DPF) or has suitable additional guarantees.
Information on transfers to third countries, including data recipients, can be
found in this privacy policy. Some of the recipients of your personal data are
located outside your country or have offices in countries where data protection
laws may provide a different level of protection than the laws in your country.
We do not accept any liability for the transmission of data to such recipients.
Recipients of personal data
As part of our business activities, we work
together with various external bodies. In some cases, it is also necessary to
transmit personal data to these external bodies. We only pass on personal data
to external bodies if this is necessary in the context of the performance of a
contract, if we are legally obliged to do so (e.g. disclosure of data to tax
authorities), if we have a legitimate interest in the disclosure in accordance
with Art. 6 (1) (f) GDPR or if another legal basis allows the data transfer.
When using processors, we only share our customers' personal data on the basis
of a valid data processing agreement. In the case of joint processing, a joint
processing contract is concluded.
Withdrawal of your consent to data processing
Many data processing operations are only
possible with your explicit consent. You can revoke any consent you have
already given at any time. The lawfulness of the data processing carried out up
to the time of revocation remains unaffected by the revocation.
Right to object to data collection in special
cases as well as to direct marketing (Art. 21 GDPR)
IF THE DATA PROCESSING IS CARRIED OUT ON THE
BASIS OF ART. 6 PARA. 1 LIT. E OR F GDPR, YOU HAVE THE RIGHT TO OBJECT TO THE
PROCESSING OF YOUR PERSONAL DATA AT ANY TIME ON GROUNDS RELATING TO YOUR
PARTICULAR SITUATION; THIS ALSO APPLIES TO PROFILING BASED ON THESE PROVISIONS.
THE RESPECTIVE LEGAL BASIS ON WHICH PROCESSING IS BASED CAN BE FOUND IN THIS
PRIVACY POLICY. IF YOU OBJECT, WE WILL NO LONGER PROCESS YOUR PERSONAL DATA
UNLESS WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING THAT
OUTWEIGH YOUR INTERESTS, RIGHTS AND FREEDOMS, OR THE PROCESSING SERVES TO
ASSERT, EXERCISE OR DEFEND LEGAL CLAIMS (OBJECTION PURSUANT TO ART. 21 PARA. 1
GDPR). IF YOUR PERSONAL DATA IS PROCESSED FOR THE PURPOSE OF DIRECT MARKETING,
YOU HAVE THE RIGHT TO OBJECT AT ANY TIME TO THE PROCESSING OF PERSONAL DATA
CONCERNING YOU FOR THE PURPOSE OF SUCH MARKETING; THIS ALSO APPLIES TO
PROFILING, INSOFAR AS IT IS RELATED TO SUCH DIRECT ADVERTISING. IF YOU OBJECT,
YOUR PERSONAL DATA WILL THEN NO LONGER BE USED FOR THE PURPOSE OF DIRECT
MARKETING (OBJECTION PURSUANT TO ART. 21 PARA. 2 GDPR).
Right to lodge a complaint with the competent
supervisory authority
In the event of violations of the GDPR, the
data subjects have the right to lodge a complaint with a supervisory authority,
in particular in the Member State of their habitual residence, their place of
work or the place of the alleged infringement. The right of appeal exists
without prejudice to other administrative or judicial remedies.
Right to data portability
You have the right to have data that we process
automatically on the basis of your consent or in fulfilment of a contract
handed over to you or to a third party in a common, machine-readable format. If
you request the direct transfer of the data to another controller, this will
only be done to the extent that it is technically feasible.
Information, correction and deletion
Within the framework of the applicable legal
provisions, you have the right to free information about your stored personal
data, its origin and recipients and the purpose of the data processing at any
time and, if necessary, a right to rectification or deletion of this data. You
can contact us at any time for this and other questions on the subject of
personal data.
Right to restriction of processing
You have the right to request the restriction
of the processing of your personal data. You can contact us at any time for
this. The right to restriction of processing exists in the following cases:
• If you contest the accuracy of your personal
data held by us, we will usually need time to verify this. For the duration of
the audit, you have the right to request the restriction of the processing of
your personal data.
• If the processing of your personal data was/is
unlawful, you can request the restriction of data processing instead of
deletion.
• If we no longer need your personal data, but
you need it to exercise, defend or assert legal claims, you have the right to
request the restriction of the processing of your personal data instead of
erasure.
• If you have filed an objection in accordance
with Art. 21 (1) GDPR, a balancing of your interests and ours must be carried
out. As long as it has not yet been determined whose interests prevail, you
have the right to request the restriction of the processing of your personal
data.
• If you have restricted the processing of your
personal data, this data may only be processed with your consent or for the
establishment, exercise or defence of legal claims, or for the protection of
the rights of another natural or legal person, or for reasons of important
public interest of the European Union or of a Member State.
SSL or TLS encryption
This site uses SSL or TLS encryption for
security reasons and to protect the transmission of confidential content, such
as orders or inquiries that you send to us as the site operator. You can
recognize an encrypted connection by the fact that the address bar of the
browser changes from "http://" to "https://" and by the
lock symbol in your browser line. If SSL or TLS encryption is activated, the
data you transmit to us cannot be read by third parties.
Encrypted payment transactions on this website
If, after concluding a fee-based contract,
there is an obligation to provide us with your payment data (e.g. account
number in the case of direct debit authorisation), this data will be required
for payment processing. Payment transactions via the usual means of payment
(Visa/MasterCard, direct debit) are carried out exclusively via an encrypted
SSL or TLS connection. You can recognize an encrypted connection by the fact
that the address bar of the browser changes from "http://" to
"https://" and by the lock symbol in your browser line. With
encrypted communication, your payment data that you transmit to us cannot be
read by third parties.
Objection to advertising e-mails
The use of contact details published in the
context of the imprint obligation for the sending of unsolicited advertising
and information material is hereby contradicted. The operators of the pages
expressly reserve the right to take legal action in the event of the
unsolicited sending of advertising information, for example by spam e-mails.
Data collection on this website
Cookies
Our websites use so-called "cookies".
Cookies are small data packets and do not cause any damage to your device. They
are stored on your device either temporarily for the duration of a session
(session cookies) or permanently (persistent cookies). Session cookies are
automatically deleted at the end of your visit. Permanent cookies remain stored
on your device until you delete them yourself or until your web browser
automatically deletes them. Cookies can come from us (first-party cookies) or from
third-party companies (so-called third-party cookies). Third-party cookies
enable the integration of certain services of third-party companies within
websites (e.g. cookies for processing payment services).
Cookies have different functions. Many cookies
are technically necessary because certain website functions would not work
without them (e.g. the shopping cart function or the display of videos). Other
cookies may be used to evaluate user behavior or for advertising purposes.
Cookies that are necessary to carry out the electronic communication process,
to provide certain functions desired by you (e.g. for the shopping cart
function) or to optimize the website (e.g. cookies to measure the web audience)
(necessary cookies) are stored on the basis of Art. 6 para. 1 lit. f GDPR,
unless another legal basis is specified. The website operator has a legitimate
interest in the storage of necessary cookies for the technically error-free and
optimized provision of its services. If consent to the storage of cookies and
comparable recognition technologies has been requested, the processing is
carried out exclusively on the basis of this consent (Art. 6 para. 1 lit. a
GDPR and § 25 para. 1 TDDDG); consent can be revoked at any time. You can set
your browser so that you are informed about the setting of cookies and only
allow cookies in individual cases, exclude the acceptance of cookies for
certain cases or in general, and activate the automatic deletion of cookies
when you close the browser. If you disable cookies, the functionality of this
website may be limited. You can find out which cookies and services are used on
this website in this privacy policy.
Enquiry by e-mail, telephone or fax
If you contact us by e-mail, telephone or fax,
your enquiry, including all personal data resulting from it (name, enquiry),
will be stored and processed by us for the purpose of processing your request.
We do not pass on this data without your consent.
The processing of this data is carried out on
the basis of Art. 6 (1) (b) GDPR if your request is related to the performance
of a contract or is necessary for the implementation of pre-contractual
measures. In all other cases, the processing is based on our legitimate
interest in the effective processing of the enquiries addressed to us (Art. 6
para. 1 lit. f GDPR) or on your consent (Art. 6 para. 1 lit. a GDPR), if this
has been requested; consent can be revoked at any time. The data you send to us
via contact requests will remain with us until you ask us to delete it, revoke
your consent to its storage or the purpose for which it is stored no longer
applies (e.g. after your request has been processed). Mandatory statutory
provisions – in particular statutory retention periods – remain unaffected.
Communication via WhatsApp
For communication with our customers and other
third parties, we use, among other things, the instant messaging service
WhatsApp. The provider is WhatsApp Ireland Limited, 4 Grand Canal Square, Grand
Canal Harbour, Dublin 2, Ireland. Communication is carried out via end-to-end
encryption (peer-to-peer), which prevents WhatsApp or other third parties from
gaining access to the communication content. However, WhatsApp will have access
to metadata that is generated in the course of the communication process (e.g.
sender, recipient and time). We would also like to point out that WhatsApp says
it shares personal data of its users with its US-based parent company Meta. For
more details on data processing, please refer to WhatsApp's privacy policy at:
https://www.whatsapp.com/legal/#privacy-policy. The use of WhatsApp is based on
our legitimate interest in the fastest and most effective possible
communication with customers, interested parties and other business and
contractual partners (Art. 6 para. 1 lit. f GDPR). If a corresponding consent
has been requested, data processing is carried out exclusively on the basis of
consent; this can be revoked at any time with effect for the future. The
communication content exchanged between you and us on WhatsApp will remain with
us until you ask us to delete it, revoke your consent to its storage or the
purpose for which it was stored no longer applies (e.g. after your request has
been processed). Mandatory statutory provisions – in particular retention
periods – remain unaffected. The company is certified according to the
"EU-US Data Privacy Framework" (DPF). The DPF is an agreement between
the European Union and the USA that is intended to ensure compliance with
European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link: https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt00000011sfnAAA&status=Active
Communication via Signal
For communication with our customers and other
third parties, we use, among other things, the instant messaging service
Signal. The provider is Privacy Signal Messenger, LLC 650 Castro Street, Suite
120-223 Mountain View, CA 94041 (hereinafter referred to as
"Signal"). Communication is carried out via end-to-end encryption
(peer-to-peer), which prevents Signal or other third parties from gaining
access to the communication content. However, Signal gains access to technical
data that is generated during the communication process (e.g., Auth Tokens,
Keys, Push Tokens). For more details on data processing, please refer to
Signal's Privacy Policy at: https://signal.org/legal/#privacy-policy. The use
of Signal is based on our legitimate interest in the fastest and most effective
possible communication with customers, interested parties and other business
and contractual partners (Art. 6 para. 1 lit. f GDPR). If a corresponding
consent has been requested, data processing is carried out exclusively on the
basis of consent; this can be revoked at any time with effect for the future.
The communication content exchanged between you and us on Signal will remain
with us until you ask us to delete it, revoke your consent to its storage or
the purpose for which it was stored no longer applies (e.g. after your request
has been processed). Mandatory statutory provisions – in particular retention
periods – remain unaffected.
Registration on this website
You can register on this website to use
additional features on the site. We use the data entered for this purpose only
for the purpose of using the respective offer or service for which you have
registered. The mandatory information requested during registration must be
provided in full. Otherwise, we will refuse registration. For important
changes, such as in the scope of the offer or in the event of technically
necessary changes, we will use the e-mail address provided during registration
to inform you in this way. The data entered during registration is processed
for the purpose of executing the user relationship established by the
registration and, if necessary, for the initiation of further contracts (Art. 6
para. 1 lit. b GDPR). The data collected during registration will be stored by
us for as long as you are registered on this website and will then be deleted.
Statutory retention periods remain unaffected.
Comments on this website
For the comment function on this page, in
addition to your comment, information about the time the comment was created
and, if you do not post anonymously, the username you have chosen will be
stored.
Storage period of comments
The comments and the associated data will be
stored and remain on this website until the commented content has been
completely deleted or the comments have to be deleted for legal reasons (e.g.
offensive comments).
Legal basis
Comments are stored on the basis of your
consent (Art. 6 para. 1 lit. a GDPR). You can revoke any consent you have given
at any time. All you need to do is send us an informal message by e-mail. The
lawfulness of the data processing operations that have already taken place
remains unaffected by the revocation.
Social media
Facebook
Elements of the social network Facebook are
integrated into this website. The provider of this service is Meta Platforms
Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland. However, according
to Facebook, the data collected will also be transferred to the USA and other
third countries.
An overview of the Facebook social media
elements can be found here:
https://developers.facebook.com/docs/plugins/?locale=de_DE. When the social
media element is active, a direct connection is established between your device
and the Facebook server. Facebook thus receives the information that you have
visited this website with your IP address. If you click the Facebook
"Like" button while logged into your Facebook account, you can link
the content of this website to your Facebook profile. This allows Facebook to
associate the visit to this website with your user account. We would like to
point out that we, as the provider of the pages, have no knowledge of the
content of the transmitted data or its use by Facebook. Further information on
this can be found in Facebook's privacy policy at:
https://de-de.facebook.com/privacy/explanation. The use of this service is
based on your consent in accordance with Art. 6 para. 1 lit. a GDPR and § 25
para. 1 TDDDG. The consent can be revoked at any time. Insofar as personal data
is collected on our website and forwarded to Facebook with the help of the tool
described here, we and Meta Platforms Ireland Limited, 4 Grand Canal Square,
Grand Canal Harbour, Dublin 2, Ireland are jointly responsible for this data
processing (Art. 26 GDPR). Joint responsibility is limited exclusively to the
collection of data and its disclosure to Facebook. The processing by Facebook
after the transfer is not part of the joint responsibility. Our joint
obligations have been set out in a joint processing agreement. The text of the
agreement can be found at: https://www.facebook.com/legal/controller_addendum.
According to this agreement, we are responsible for the provision of data
protection information when using the Facebook tool and for the implementation
of the tool on our website in a manner that is secure under data protection
law. Facebook is responsible for the data security of Facebook products. You
can assert the rights of data subjects (e.g. requests for information)
regarding the data processed by Facebook directly with Facebook. If you assert
your rights as a data subject with us, we are obliged to forward them to
Facebook. The data transfer to the USA is based on the standard contractual
clauses of the EU Commission. Details can be found here:
https://www.facebook.com/legal/EU_data_transfer_addendum,
https://de-de.facebook.com/help/566994660333381 and
https://www.facebook.com/policy.php.
The company is certified according to the
"EU-US Data Privacy Framework" (DPF). The DPF is an agreement between
the European Union and the USA that is intended to ensure compliance with
European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt0000000GnywAAC&status=Active
X (formerly Twitter)
This website integrates functions of service X
(formerly Twitter). These functions are offered by the parent company X Corp.,
1355 Market Street, Suite 900, San Francisco, CA 94103, USA. The data
controller of individuals living outside the United States is Twitter
International Unlimited Company, One Cumberland Place, Fenian Street, Dublin 2,
D02 AX07, Ireland. When the social media element is active, a direct connection
is established between your device and the X server. X (formerly Twitter) thus
receives information about your visit to this website. By using X (formerly
Twitter) and the "Re-Tweet" or "Repost" function, the
websites you visit are linked to your X (formerly Twitter) account and
announced to other users. We would like to point out that we, as the provider
of the pages, have no knowledge of the content of the transmitted data or its
use by X (formerly Twitter). For more information, please refer to X's
(formerly Twitter) privacy policy at: https://twitter.com/de/privacy. The use
of this service is based on your consent in accordance with Art. 6 para. 1 lit.
a GDPR and § 25 para. 1 TDDDG. The consent can be revoked at any time. The data
transfer to the USA is based on the standard contractual clauses of the EU
Commission. Details can be found here:
https://gdpr.twitter.com/en/controller-to-controller-transfers.html.
You can change your privacy settings at X
(formerly Twitter) in the account settings under
https://twitter.com/account/settings.
Instagram
Functions of the Instagram service are
integrated into this website. These features are provided by Meta Platforms
Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland.
When the social media element is active, a
direct connection is established between your device and the Instagram server.
Instagram will receive information about your visit to this website. If you are
logged in to your Instagram account, you can link the content of this website
to your Instagram profile by clicking on the Instagram button. This allows
Instagram to associate the visit to this website with your user account. We
would like to point out that we, as the provider of the pages, have no knowledge
of the content of the transmitted data or its use by Instagram. The use of this
service is based on your consent in accordance with Art. 6 para. 1 lit. a GDPR
and § 25 para. 1 TDDDG. The consent can be revoked at any time. Insofar as
personal data is collected on our website with the help of the tool described
here and forwarded to Facebook or Instagram, we and Meta Platforms Ireland
Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland are
jointly responsible for this data processing (Art. 26 GDPR). Joint
responsibility is limited exclusively to the collection of the data and its
disclosure to Facebook or Instagram. The processing by Facebook or Instagram
after the transfer is not part of the joint responsibility. Our joint
obligations have been set out in a joint processing agreement. The text of the
agreement can be found at: https://www.facebook.com/legal/controller_addendum.
According to this agreement, we are responsible for the provision of data
protection information when using the Facebook or Instagram tool and for the
implementation of the tool on our website in a manner that is secure under data
protection law. Facebook is responsible for the data security of the Facebook
and Instagram products. You can assert the rights of data subjects (e.g.
requests for information) regarding the data processed by Facebook or Instagram
directly with Facebook. If you assert your rights as a data subject with us, we
are obliged to forward them to Facebook. The data transfer to the USA is based
on the standard contractual clauses of the EU Commission. Details can be found
here: https://www.facebook.com/legal/EU_data_transfer_addendum,
https://privacycenter.instagram.com/policy/ and
https://de-de.facebook.com/help/566994660333381.
For more information, please see Instagram's
privacy policy: https://privacycenter.instagram.com/policy/. The company is
certified according to the "EU-US Data Privacy Framework" (DPF). The
DPF is an agreement between the European Union and the USA that is intended to
ensure compliance with European data protection standards for data processing
in the USA. Every company certified according to the DPF is committed to
complying with these data protection standards. For more information, please contact
the provider at the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt0000000GnywAAC&status=Active
LinkedIn
This website uses elements of the LinkedIn
network. The provider is LinkedIn Ireland Unlimited Company, Wilton Plaza,
Wilton Place, Dublin 2, Ireland. Every time a page of this website that
contains elements of LinkedIn is accessed, a connection to LinkedIn servers is
established. LinkedIn will be informed that you have visited this website with
your IP address. If you click on LinkedIn's "Recommend" button and
are logged into your LinkedIn account, LinkedIn is able to assign your visit to
this website to you and your user account. We would like to point out that we,
as the provider of the pages, have no knowledge of the content of the
transmitted data or its use by LinkedIn. The use of this service is based on
your consent in accordance with Art. 6 para. 1 lit. a GDPR and § 25 para. 1
TDDDG. The consent can be revoked at any time. The data transfer to the USA is
based on the standard contractual clauses of the EU Commission. Details can be
found here: https://www.linkedin.com/help/linkedin/answer/a1343190/datenubertragung-aus-der-eu-dem-ewr-und-der-schweiz?lang=de
For more information, please refer to
LinkedIn's privacy policy at: https://www.linkedin.com/legal/privacy-policy.
Analytics tools and advertising
Google Tag Manager
We use Google Tag Manager. The provider is
Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Google
Tag Manager is a tool that allows us to integrate tracking or statistics tools
and other technologies on our website. The Google Tag Manager itself does not
create user profiles, does not store cookies and does not carry out any
independent analyses. It is only used to manage and display the tools
integrated via it. However, Google Tag Manager does collect your IP address,
which may also be transmitted to Google's parent company in the United States.
The use of Google Tag Manager is based on Art. 6 para. 1 lit. f GDPR. The
website operator has a legitimate interest in the quick and uncomplicated
integration and management of various tools on its website. If a corresponding
consent has been requested, the processing is carried out exclusively on the
basis of Art. 6 para. 1 lit. a GDPR and § 25 para. 1 TDDDG, insofar as the
consent includes the storage of cookies or access to information in the user's
end device (e.g. device fingerprinting) within the meaning of the TDDDG. The
consent can be revoked at any time. The company is certified according to the
"EU-US Data Privacy Framework" (DPF). The DPF is an agreement between
the European Union and the USA that is intended to ensure compliance with
European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
Google Analytics
This website uses functions of the web analysis
service Google Analytics. The provider is Google Ireland Limited
("Google"), Gordon House, Barrow Street, Dublin 4, Ireland. Google
Analytics enables the website operator to analyse the behaviour of website
visitors. In doing so, the website operator receives various usage data, such
as page views, dwell time, operating systems used and origin of the user. This
data is summarized in a user ID and assigned to the respective end device of
the website visitor. Furthermore, we can use Google Analytics to, among other
things: Record your mouse and scroll movements and clicks. In addition, Google
Analytics uses various modeling approaches to complement the collected data
sets and uses machine learning technologies in data analysis. Google Analytics
uses technologies that enable the recognition of the user for the purpose of
analyzing user behavior (e.g. cookies or device fingerprinting). The
information collected by Google about the use of this website is usually transmitted
to a Google server in the USA and stored there. The use of this service is
based on your consent in accordance with Art. 6 para. 1 lit. a GDPR and § 25
para. 1 TDDDG. The consent can be revoked at any time. The data transfer to the
USA is based on the standard contractual clauses of the EU Commission. Details
can be found here: https://privacy.google.com/businesses/controllerterms/mccs/.
The company is certified according to the "EU-US Data Privacy
Framework" (DPF). The DPF is an agreement between the European Union and
the USA that is intended to ensure compliance with European data protection
standards for data processing in the USA. Every company certified according to
the DPF is committed to complying with these data protection standards. For more
information, please contact the provider at the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
IP anonymization
Google Analytics IP anonymization is activated.
As a result, your IP address will be shortened by Google within member states
of the European Union or in other contracting states of the Agreement on the
European Economic Area before it is transmitted to the USA. Only in exceptional
cases is the full IP address transmitted to a Google server in the USA and
shortened there. On behalf of the operator of this website, Google will use
this information to evaluate your use of the website, to compile reports on website
activity and to provide other services related to website activity and internet
use to the website operator. The IP address transmitted by your browser as part
of Google Analytics will not be merged with other data held by Google.
Browser Plugin
You can prevent the collection and processing
of your data by Google by downloading and installing the browser plugin
available at the following link:
https://tools.google.com/dlpage/gaoptout?hl=de. More information on the
handling of user data by Google Analytics can be found in Google's privacy
policy: https://support.google.com/analytics/answer/6004245?hl=de.
Google Signals
We use Google signals. When you visit our
website, Google Analytics collects, among other things: Your location, search
history, and YouTube history, and demographic information (visitor data). This
data can be used for personalized advertising with the help of Google Signal.
If you have a Google Account, Google-Signal's visitor data will be linked to
your Google Account and used for personalized advertising messages. The data is
also used to compile anonymised statistics on the user behaviour of our users.
Order processing
We have concluded a contract processing
agreement with Google and fully implement the strict requirements of the German
data protection authorities when using Google Analytics.
Google Analytics E-Commerce Measurement
This website uses the "e-commerce
measurement" function of Google Analytics. With the help of e-commerce
measurement, the website operator can analyze the purchasing behavior of
website visitors to improve its online marketing campaigns. Information such as
the orders placed, average order values, shipping costs and the time from
viewing to buying a product are recorded. This data may be summarized by Google
under a transaction ID that is assigned to the respective user or their device.
Microsoft Advertising
The website operator uses Microsoft
Advertising. Microsoft Advertising is an online advertising program of
Microsoft Corporation, One Microsoft Way, Redmond, WA 98052-6399, USA.
Microsoft Advertising enables us to display advertisements in the Bing search
engine or on third-party websites when the user enters certain search terms on
Bing (keyword targeting). In addition, targeted advertisements can be displayed
based on the user data available at Microsoft (e.g. location data and
interests) (target group targeting). As a website operator, we can evaluate
this data quantitatively, for example by analysing which search terms led to
the display of our advertisements and how many ads led to corresponding clicks.
We use Microsoft Advertising's Universal Event Tracking (UET) on this page.
This collects pseudonymized data to track what actions you take on our websites
after you click on an ad on Microsoft Advertising. In doing so, UET collects
your IP address (anonymized), device identifiers, information about device and
browser settings, Microsoft Click ID (stored in cookie), length of stay on the
website, which areas of the website were accessed, which ad brought you to the
website and clicked keyword.
The use of this service is based on your
consent in accordance with Art. 6 para. 1 lit. a GDPR and § 25 para. 1 TDDDG.
The consent can be revoked at any time. The data transfer to the USA is based
on the standard contractual clauses of the EU Commission. Details can be found
here:
https://learn.microsoft.com/de-de/compliance/regulatory/offering-eu-model-clauses.
The company is certified according to the
"EU-US Data Privacy Framework" (DPF). The DPF is an agreement between
the European Union and the USA that is intended to ensure compliance with
European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt0000000KzNaAAK&status=Active
Order processing
We have concluded a contract processing
agreement (DPA) for the use of the above-mentioned service. This is a contract
required by data protection law that ensures that it processes the personal
data of our website visitors only in accordance with our instructions and in
compliance with the GDPR.
Google Ads
The website operator uses Google Ads. Google
Ads is an online advertising program of Google Ireland Limited
("Google"), Gordon House, Barrow Street, Dublin 4, Ireland. Google
Ads enables us to display advertisements in the Google search engine or on
third-party websites when the user enters certain search terms on Google
(keyword targeting). In addition, targeted advertisements can be displayed
based on the user data available at Google (e.g. location data and interests)
(target group targeting). As a website operator, we can evaluate this data
quantitatively, for example by analysing which search terms led to the display
of our advertisements and how many ads led to corresponding clicks. The use of
this service is based on your consent in accordance with Art. 6 para. 1 lit. a
GDPR and § 25 para. 1 TDDDG. The consent can be revoked at any time. The data
transfer to the USA is based on the EU Commission's standard contractual
clauses: https://policies.google.com/privacy/frameworks and
https://business.safety.google/controllerterms/. The company is certified
according to the "EU-US Data Privacy Framework" (DPF). The DPF is an
agreement between the European Union and the USA that is intended to ensure
compliance with European data protection standards for data processing in the
USA. Every company certified according to the DPF is committed to complying
with these data protection standards. For more information, please contact the
provider at the following link: https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
Google AdSense
This website uses Google AdSense, a service for
embedding advertisements. The provider is Google Ireland Limited
("Google"), Gordon House, Barrow Street, Dublin 4, Ireland. With the
help of Google Adsense, we can display targeted advertisements from third-party
companies on our site. The content of the advertisements is based on your
interests, which Google determines based on your previous user behavior.
Furthermore, contextual information such as your location, the content of the
website visited or the Google search terms you have entered is also taken into
account when selecting the right advertisement. Google AdSense uses cookies,
web beacons (invisible graphics) and similar recognition technologies. This can
be used to evaluate information such as visitor traffic on these pages. The
information collected by Google Adsense about the use of this website
(including your IP address) and the delivery of advertising formats will be
transmitted to and stored by Google on servers in the USA. This information may
be shared by Google with Google's contractual partners. However, Google will
not associate your IP address with any other data we hold about you. The use of
this service is based on your consent in accordance with Art. 6 para. 1 lit. a
GDPR and § 25 para. 1 TDDDG. The consent can be revoked at any time. The data
transfer to the USA is based on the standard contractual clauses of the EU
Commission. Details can be found here:
https://privacy.google.com/businesses/controllerterms/mccs/. The company is certified
according to the "EU-US Data Privacy Framework" (DPF). The DPF is an
agreement between the European Union and the USA that is intended to ensure
compliance with European data protection standards for data processing in the
USA. Every company certified according to the DPF is committed to complying
with these data protection standards. For more information, please contact the
provider at the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
Google Ads Remarketing
This website uses the functions of Google Ads
Remarketing. The provider is Google Ireland Limited ("Google"),
Gordon House, Barrow Street, Dublin 4, Ireland. With Google Ads Remarketing, we
can assign people who interact with our online offer to specific target groups
in order to then display interest-based advertising in the Google advertising
network (remarketing or retargeting). Furthermore, the advertising audiences
created with Google Ads Remarketing can be linked to Google's cross-device
functions. In this way, interest-based, personalized advertising messages that
have been adapted to you depending on your previous usage and surfing behavior
on one device (e.g. mobile phone) can also be displayed on another of your
devices (e.g. tablet or PC). If you have a Google account, you can object to
personalized advertising at the following link:
https://adssettings.google.com/anonymous?hl=de.
The use of this service is based on your
consent in accordance with Art. 6 para. 1 lit. a GDPR and § 25 para. 1 TDDDG.
The consent can be revoked at any time. Further information and the privacy
policy can be found in Google's privacy policy at: https://policies.google.com/technologies/ads?hl=de.
The company is certified according to the "EU-US Data Privacy
Framework" (DPF). The DPF is an agreement between the European Union and
the USA that is intended to ensure compliance with European data protection standards
for data processing in the USA. Every company certified according to the DPF is
committed to complying with these data protection standards. For more
information, please contact the provider at the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
Target group creation with customer matching
For target group formation, we use, among other
things, the customer match of Google Ads Remarketing. In doing so, we pass on
certain customer data (e.g. e-mail addresses) from our customer lists to
Google. If the customers in question are Google users and logged in to their
Google account, they will be shown relevant advertising messages within the
Google network (e.g. on YouTube, Gmail or in the search engine).
Google Conversion Tracking
This website uses Google Conversion Tracking.
The provider is Google Ireland Limited ("Google"), Gordon House,
Barrow Street, Dublin 4, Ireland. With the help of Google conversion tracking,
Google and we can see whether the user has taken certain actions. For example,
we can evaluate which buttons on our website have been clicked on how often and
which products have been viewed or purchased particularly often. This
information is used to compile conversion statistics. We learn the total number
of users who clicked on our ads and what actions they took. We do not receive
any information that allows us to personally identify the user. Google itself
uses cookies or comparable recognition technologies for identification. The use
of this service is based on your consent in accordance with Art. 6 para. 1 lit.
a GDPR and § 25 para. 1 TDDDG. The consent can be revoked at any time. You can
find more information about Google conversion tracking in Google's privacy
policy: https://policies.google.com/privacy?hl=de. The company is certified
according to the "EU-US Data Privacy Framework" (DPF). The DPF is an
agreement between the European Union and the USA that is intended to ensure
compliance with European data protection standards for data processing in the USA.
Every company certified according to the DPF is committed to complying with
these data protection standards. For more information, please contact the
provider at the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
Meta pixel (formerly Facebook Pixel)
This website uses the Facebook/Meta visitor
action pixel to measure conversion. The provider of this service is Meta
Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland. However,
according to Facebook, the data collected will also be transferred to the USA
and other third countries. For example, the behavior of site visitors can be
tracked after they have been redirected to the provider's website by clicking
on a Facebook ad. This allows the effectiveness of Facebook ads to be evaluated
for statistical and market research purposes and future advertising measures to
be optimized. The data collected is anonymous for us as the operator of this
website, we cannot draw any conclusions about the identity of the users.
However, the data is stored and processed by Facebook so that a connection to
the respective user profile is possible and Facebook can use the data for its
own advertising purposes, in accordance with the Facebook Data Use Policy
(https://de-de.facebook.com/about/privacy/). This allows Facebook to enable the
placement of advertisements on and off Facebook pages. This use of the data
cannot be influenced by us as the site operator. The use of this service is
based on your consent in accordance with Art. 6 para. 1 lit. a GDPR and § 25 para.
1 TDDDG. The consent can be revoked at any time. We use the function of
advanced matching within the meta pixels. Advanced matching allows us to
transmit to Meta (Facebook) different types of data (e.g., place of residence,
state, zip code, hashed email addresses, names, gender, date of birth, or phone
number) of our customers and prospects that we collect through our website.
This activation allows us to tailor our advertising campaigns on Facebook even
more precisely to people who are interested in our offers. In addition,
advanced matching improves website conversion attribution and expands Custom
Audiences. Insofar as personal data is collected on our website and forwarded
to Facebook with the help of the tool described here, we and Meta Platforms Ireland
Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland are
jointly responsible for this data processing (Art. 26 GDPR). Joint
responsibility is limited exclusively to the collection of data and its
disclosure to Facebook. The processing by Facebook after the transfer is not
part of the joint responsibility. Our joint obligations have been set out in a
joint processing agreement. The text of the agreement can be found at:
https://www.facebook.com/legal/controller_addendum. According to this
agreement, we are responsible for the provision of data protection information
when using the Facebook tool and for the implementation of the tool on our
website in a manner that is secure under data protection law. Facebook is
responsible for the data security of Facebook products. You can assert the
rights of data subjects (e.g. requests for information) regarding the data
processed by Facebook directly with Facebook. If you assert your rights as a
data subject with us, we are obliged to forward them to Facebook. The data
transfer to the USA is based on the standard contractual clauses of the EU
Commission. Details can be found here:
https://www.facebook.com/legal/EU_data_transfer_addendum and
https://de-de.facebook.com/help/566994660333381. You can find further
information on how to protect your privacy in Facebook's privacy policy:
https://de-de.facebook.com/about/privacy/.
You can also turn off the Custom Audiences
remarketing feature in the Ads Settings section of
https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. To
do this, you must be logged in to Facebook.
If you do not have a Facebook account, you can
opt out of Facebook's usage-based advertising on the European Interactive
Digital Advertising Alliance website:
http://www.youronlinechoices.com/de/praferenzmanagement/. The company is
certified according to the "EU-US Data Privacy Framework" (DPF). The
DPF is an agreement between the European Union and the USA that is intended to
ensure compliance with European data protection standards for data processing
in the USA. Every company certified according to the DPF is committed to
complying with these data protection standards. For more information, please
contact the provider at the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt0000000GnywAAC&status=Active
Facebook Conversion API
We have integrated Facebook Conversion API on
this website. The provider of this service is Meta Platforms Ireland Limited, 4
Grand Canal Square, Dublin 2, Ireland. However, according to Facebook, the data
collected will also be transferred to the USA and other third countries.
Facebook Conversion API allows us to record the website visitor's interactions
with our website and share them with Facebook in order to improve advertising
performance on Facebook. In particular, the time of the access, the website accessed,
your IP address and your user agent as well as other specific data (e.g.
products purchased, value of the shopping cart and currency) are recorded. A
complete overview of the data that can be collected can be found here:
https://developers.facebook.com/docs/marketing-api/conversions-api/parameters.
The use of this service is based on your consent in accordance with Art. 6
para. 1 lit. a GDPR and § 25 para. 1 TDDDG. The consent can be revoked at any
time. Insofar as personal data is collected on our website and forwarded to
Facebook with the help of the tool described here, we and Meta Platforms
Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland
are jointly responsible for this data processing (Art. 26 GDPR). Joint responsibility
is limited exclusively to the collection of data and its disclosure to
Facebook. The processing by Facebook after the transfer is not part of the
joint responsibility. Our joint obligations have been set out in a joint
processing agreement. The text of the agreement can be found at:
https://www.facebook.com/legal/controller_addendum. According to this
agreement, we are responsible for the provision of data protection information
when using the Facebook tool and for the implementation of the tool on our
website in a manner that is secure under data protection law. Facebook is
responsible for the data security of Facebook products. You can assert the
rights of data subjects (e.g. requests for information) regarding the data
processed by Facebook directly with Facebook. If you assert your rights as a
data subject with us, we are obliged to forward them to Facebook. The data
transfer to the USA is based on the standard contractual clauses of the EU
Commission. Details can be found here: https://www.facebook.com/legal/EU_data_transfer_addendum
and https://de-de.facebook.com/help/566994660333381. You can find further
information on how to protect your privacy in Facebook's privacy policy:
https://de-de.facebook.com/about/privacy/.
The company is certified according to the
"EU-US Data Privacy Framework" (DPF). The DPF is an agreement between
the European Union and the USA that is intended to ensure compliance with
European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt0000000GnywAAC&status=Active
Order processing
We have concluded a contract processing
agreement (DPA) for the use of the above-mentioned service. This is a contract
required by data protection law that ensures that it processes the personal
data of our website visitors only in accordance with our instructions and in
compliance with the GDPR.
Facebook Custom Audiences
We use Facebook Custom Audiences. The provider
of this service is Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin
2, Ireland. When you visit or use our websites and apps, take advantage of our
free or paid services, transmit data to us or interact with our company's
Facebook content, we collect your personal data in the process. If you give us
consent to the use of Facebook Custom Audiences, we will transmit this data to
Facebook, which Facebook can use to display suitable advertising to you. Furthermore,
your data can be used to define target groups (lookalike audiences). Facebook
processes this data as our processor. Details can be found in Facebook's user
agreement: https://www.facebook.com/legal/terms/customaudience. The use of this
service is based on your consent in accordance with Art. 6 para. 1 lit. a GDPR
and § 25 para. 1 TDDDG. The consent can be revoked at any time. The data
transfer to the USA is based on the standard contractual clauses of the EU
Commission. Details can be found here:
https://www.facebook.com/legal/terms/customaudience and
https://www.facebook.com/legal/terms/dataprocessing. The company is certified
according to the "EU-US Data Privacy Framework" (DPF). The DPF is an
agreement between the European Union and the USA that is intended to ensure
compliance with European data protection standards for data processing in the
USA. Every company certified according to the DPF is committed to complying
with these data protection standards. For more information, please contact the
provider at the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt0000000GnywAAC&status=Active
TikTok Pixel
We have integrated the TikTok pixel on this
website. The provider is TikTok Technology Limited, 10 Earlsfort Terrace,
Dublin, D02 T380, Ireland (hereinafter referred to as TikTok). With the help of
TikTok Pixel, we can display interest-based advertising on TikTok to website
visitors who have viewed our offers (TikTok Ads). At the same time, with the
help of the TikTok Pixel, we can determine how effective our advertising is on
TikTok. This allows the effectiveness of TikTok ads to be evaluated for statistical
and market research purposes and optimized for future advertising efforts.
Various usage data is processed, such as IP address, page views, dwell time,
operating systems used and origin of the user, information about the ad a
person clicked on TikTok or an event that was triggered (time stamp). This data
is summarized in a user ID and assigned to the respective end device of the
website visitor.
The use of this service is based on your
consent in accordance with Art. 6 para. 1 lit. a GDPR and § 25 para. 1 TDDDG.
The consent can be revoked at any time. Data transfers to third countries are
based on the EU Commission's standard contractual clauses. Details can be found
here: https://www.tiktok.com/legal/page/eea/privacy-policy/de-DE and
https://ads.tiktok.com/i18n/official/policy/controller-to-controller.
Order processing
We have concluded a contract processing
agreement (DPA) for the use of the above-mentioned service. This is a contract
required by data protection law that ensures that it processes the personal
data of our website visitors only in accordance with our instructions and in
compliance with the GDPR.
LinkedIn Insight Tag
This website uses LinkedIn's insight tag. The
provider of this service is LinkedIn Ireland Unlimited Company, Wilton Plaza,
Wilton Place, Dublin 2, Ireland.
Data processing by LinkedIn Insight Tag
With the help of the LinkedIn Insight Tag, we
obtain information about the visitors of our website. If a website visitor is
registered with LinkedIn, we can, among other things, analyse the key
professional data (e.g. career level, company size, country, location, industry
and job title) of our website visitors and thus better target our site. We can
also use LinkedIn Insight Tags to measure whether visitors to our websites make
a purchase or take another action (conversion measurement). Conversion measurement
can also be done across devices (e.g. from PC to tablet). LinkedIn Insight Tag
also offers a retargeting feature that allows us to display targeted
advertising to visitors to our website outside of the website, whereby,
according to LinkedIn, there is no identification of the advertising addressee.
LinkedIn itself also collects so-called log files (URL, referrer URL, IP
address, device and browser properties and time of access). The IP addresses
are shortened or (if they are used to reach LinkedIn members across devices)
hashed (pseudonymised). LinkedIn members' direct identifiers will be deleted
from LinkedIn after seven days. The remaining pseudonymized data is then
deleted within 180 days. The data collected by LinkedIn cannot be assigned to
specific individuals by us as the website operator. LinkedIn will store the
collected personal data of website visitors on its servers in the USA and use
it as part of its own advertising measures. Details can be found in LinkedIn's
privacy policy at https://www.linkedin.com/legal/privacy-policy#choices-oblig.
Legal basis
If consent has been obtained, the
above-mentioned service is used exclusively on the basis of Art. 6 para. 1 lit.
a GDPR and § 25 TDDDG. The consent can be revoked at any time. If no consent
has been obtained, the use of this service is based on Art. 6 (1) (f) GDPR; the
website operator has a legitimate interest in effective advertising measures,
including social media. The data transfer to the USA is based on the standard
contractual clauses of the EU Commission. Details can be found here:
https://www.linkedin.com/legal/l/dpa and
https://www.linkedin.com/legal/l/eu-sccs.
Objecting to the use of LinkedIn Insight Tag
Object to the analysis of user behavior and
targeted advertising by LinkedIn under the following link:
https://www.linkedin.com/psettings/guest-controls/retargeting-opt-out.
In addition, LinkedIn members can control the
use of their personal information for advertising purposes in their account
settings. In order to avoid linking data collected on our website by LinkedIn
and your LinkedIn account, you must log out of your LinkedIn account before
visiting our website.
Order processing
We have concluded a contract processing
agreement (DPA) for the use of the above-mentioned service. This is a contract
required by data protection law that ensures that it processes the personal
data of our website visitors only in accordance with our instructions and in
compliance with the GDPR.
Newsletter
Newsletter data
If you would like to subscribe to the
newsletter offered on the website, we need an e-mail address from you as well
as information that allows us to verify that you are the owner of the e-mail
address provided and that you agree to receive the newsletter. Other data is
not collected or is only collected on a voluntary basis. We use this data
exclusively for sending the requested information and do not pass it on to
third parties. The processing of the data entered in the newsletter
registration form is carried out exclusively on the basis of your consent (Art.
6 para. 1 lit. a GDPR). You can revoke your consent to the storage of the data,
the e-mail address and its use for sending the newsletter at any time, for
example via the "unsubscribe" link in the newsletter. The lawfulness
of the data processing operations that have already taken place remains
unaffected by the revocation. The data you have deposited with us for the
purpose of subscribing to the newsletter will be stored by us or the newsletter
service provider until you unsubscribe from the newsletter and will be deleted
from the newsletter distribution list after you have unsubscribed from the
newsletter or after the purpose has ceased to exist. We reserve the right to
delete or block e-mail addresses from our newsletter distribution list at our
own discretion within the scope of our legitimate interest in accordance with
Art. 6 (1) (f) GDPR. Data that has been stored by us for other purposes remains
unaffected by this. After you have unsubscribed from the newsletter
distribution list, your e-mail address may be stored in a blacklist by us or
the newsletter service provider, if this is necessary to prevent future
mailings. The data from the blacklist will only be used for this purpose and
will not be merged with other data. This serves both your interest and our
interest in complying with the legal requirements when sending newsletters
(legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR). The
storage in the blacklist is not limited in time. You can object to the storage
if your interests outweigh our legitimate interest.
Plugins and Tools
YouTube with extended data protection
This website embeds videos from the YouTube
website. The website is operated by Google Ireland Limited
("Google"), Gordon House, Barrow Street, Dublin 4, Ireland. When you
visit one of these websites on which YouTube is integrated, a connection to
YouTube's servers is established. The YouTube server is informed which of our
pages you have visited. If you are logged in to your YouTube account, you
enable YouTube to assign your surfing behavior directly to your personal
profile. You can prevent this by logging out of your YouTube account. We use
YouTube in extended privacy mode. Videos played in extended privacy mode are
not used to personalize browsing on YouTube, according to YouTube. Ads that are
displayed in the extended data protection mode are also not personalized. No
cookies are set in the extended privacy mode. Instead, however, so-called local
storage elements are stored in the user's browser, which, similar to cookies,
contain personal data and can be used for recognition. Details about the extended
data protection mode can be found here:
https://support.google.com/youtube/answer/171780. If necessary, further data
processing operations may be triggered after the activation of a YouTube video,
over which we have no influence. YouTube is used in the interest of an
appealing presentation of our online offerings. This constitutes a legitimate
interest within the meaning of Art. 6 (1) (f) GDPR. If a corresponding consent
has been requested, the processing is carried out exclusively on the basis of
Art. 6 para. 1 lit. a GDPR and § 25 para. 1 TDDDG, insofar as the consent
includes the storage of cookies or access to information in the user's end
device (e.g. device fingerprinting) within the meaning of the TDDDG. The
consent can be revoked at any time. For more information about privacy at
YouTube, please see their privacy policy at:
https://policies.google.com/privacy?hl=de. The company is certified according
to the "EU-US Data Privacy Framework" (DPF). The DPF is an agreement
between the European Union and the USA that is intended to ensure compliance
with European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
Google Maps
This site uses the Google Maps map service. The
provider is Google Ireland Limited ("Google"), Gordon House, Barrow
Street, Dublin 4, Ireland. With the help of this service, we can integrate map
material on our website. In order to use the functions of Google Maps, it is
necessary to store your IP address. This information is usually transmitted to
a Google server in the USA and stored there. The provider of this site has no
influence on this data transfer. If Google Maps is enabled, Google may use
Google Fonts for the purpose of displaying fonts consistently. When you call up
Google Maps, your browser loads the required web fonts into your browser cache
in order to display texts and fonts correctly. The use of Google Maps is in the
interest of an appealing presentation of our online offers and to make it easy
to find the places we indicate on the website. This constitutes a legitimate
interest within the meaning of Art. 6 (1) (f) GDPR. If a corresponding consent
has been requested, the processing is carried out exclusively on the basis of
Art. 6 para. 1 lit. a GDPR and § 25 para. 1 TDDDG, insofar as the consent
includes the storage of cookies or access to information in the user's end
device (e.g. device fingerprinting) within the meaning of the TDDDG. The consent
can be revoked at any time. The data transfer to the USA is based on the
standard contractual clauses of the EU Commission. Details can be found here:
https://privacy.google.com/businesses/gdprcontrollerterms/ and
https://privacy.google.com/businesses/gdprcontrollerterms/sccs/.
You can find more information on the handling
of user data in Google's privacy policy:
https://policies.google.com/privacy?hl=de. The company is certified according
to the "EU-US Data Privacy Framework" (DPF). The DPF is an agreement
between the European Union and the USA that is intended to ensure compliance
with European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
Google reCAPTCHA
We use "Google reCAPTCHA"
(hereinafter "reCAPTCHA") on this website. The provider is Google
Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4,
Ireland.
The purpose of reCAPTCHA is to check whether
the data input on this website (e.g. in a contact form) is made by a human or
by an automated program. To do this, reCAPTCHA analyzes the behavior of the
website visitor based on various characteristics. This analysis begins
automatically as soon as the website visitor enters the website. For analysis,
reCAPTCHA evaluates various information (e.g. IP address, time spent on the
website by the website visitor or mouse movements made by the user). The data
collected during the analysis is forwarded to Google. The reCAPTCHA analyses
run completely in the background. Website visitors are not informed that an
analysis is taking place. The storage and analysis of the data is carried out
on the basis of Art. 6 para. 1 lit. f GDPR. The website operator has a
legitimate interest in protecting its websites from abusive automated spying
and spam. If a corresponding consent has been requested, the processing is
carried out exclusively on the basis of Art. 6 para. 1 lit. a GDPR and § 25
para. 1 TDDDG, insofar as the consent includes the storage of cookies or access
to information in the user's end device (e.g. device fingerprinting) within the
meaning of the TDDDG. The consent can be revoked at any time. For more
information about Google reCAPTCHA, please refer to the Google Privacy Policy
and the Google Terms of Service at the following links:
https://policies.google.com/privacy?hl=de and
https://policies.google.com/terms?hl=de.
The company is certified according to the
"EU-US Data Privacy Framework" (DPF). The DPF is an agreement between
the European Union and the USA that is intended to ensure compliance with
European data protection standards for data processing in the USA. Every
company certified according to the DPF is committed to complying with these
data protection standards. For more information, please contact the provider at
the following link:
https://www.dataprivacyframework.gov/s/participant-search/participant-detail?contact=true&id=a2zt000000001L5AAI&status=Active
eCommerce and payment providers
Processing customer and contract data
We collect, process and use personal customer
and contract data to establish, design and amend our contractual relationships.
We collect, process and use personal data about the use of this website (usage
data) only to the extent necessary to enable the user to use the service or to
bill for it. The legal basis for this is Art. 6 (1) (b) GDPR. The customer data
collected will be deleted after completion of the order or termination of the
business relationship and expiry of any existing statutory retention periods.
Statutory retention periods remain unaffected.
Data transmission when concluding a contract
for online shops, retailers and goods dispatch
If you order goods from us, we will pass on
your personal data to the transport company entrusted with the delivery and to
the payment service provider commissioned to process the payment. Only such
data is released that the respective service provider needs to perform its
task. The legal basis for this is Art. 6 (1) (b) GDPR, which permits the
processing of data for the performance of a contract or pre-contractual
measures. If you have given your consent in accordance with Art. 6 (1) (a)
GDPR, we will pass on your e-mail address to the transport company entrusted
with the delivery so that they can inform you by e-mail about the shipping
status of your order; You can withdraw your consent at any time.
Data transmission when concluding a contract
for services and digital content
We only transmit personal data to third parties
if this is necessary in the context of the execution of the contract, for
example to the bank commissioned to process the payment.
The data will not be transmitted further or
will only take place if you have expressly consented to the transfer. Your data
will not be passed on to third parties without explicit consent, for example
for advertising purposes. The basis for data processing is Art. 6 (1) (b) GDPR,
which permits the processing of data for the performance of a contract or
pre-contractual measures.
Payment Services
We integrate third-party payment services on
our website. If you make a purchase from us, your payment data (e.g. name,
payment amount, bank account details, credit card number) will be processed by
the payment service provider for the purpose of payment processing. The
respective contractual and data protection provisions of the respective
providers apply to these transactions. The payment service providers are used
on the basis of Art. 6 (1) (b) GDPR (contract processing) and in the interest
of a payment process that is as smooth, convenient and secure as possible (Art.
6 (1) (f) GDPR). Insofar as your consent is requested for certain actions, Art.
6 (1) (a) GDPR is the legal basis for data processing; Consent can be revoked
at any time for the future.
We use the following payment services / payment
service providers in the context of this website:
PayPal
The provider of this payment service is PayPal
(Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg
(hereinafter referred to as "PayPal"). The data transfer to the USA
is based on the standard contractual clauses of the EU Commission. Details can
be found here: https://www.paypal.com/de/webapps/mpp/ua/pocpsa-full.
Details can be found in the privacy policy of
PayPal: https://www.paypal.com/de/webapps/mpp/ua/privacy-full.
Apple Pay
The provider of the payment service is Apple
Inc., Infinite Loop, Cupertino, CA 95014, USA. Apple's privacy policy can be
found at: https://www.apple.com/legal/privacy/de-ww/.
Google Pay
The provider is Google Ireland Limited, Gordon
House, Barrow Street, Dublin 4, Ireland. Google's privacy policy can be found
here: https://policies.google.com/privacy.
Stripe
The provider for customers within the EU is
Stripe Payments Europe, Ltd., 1 Grand Canal Street Lower, Grand Canal Dock,
Dublin, Ireland (hereinafter referred to as "Stripe").
The data transfer to the USA is based on the
standard contractual clauses of the EU Commission. Details can be found here:
https://stripe.com/de/privacy and
https://stripe.com/de/guides/general-data-protection-regulation. Details can be
found in Stripe's privacy policy at the following link:
https://stripe.com/de/privacy.
Klarna
The provider is Klarna AB, Sveavägen 46, 111 34
Stockholm, Sweden (hereinafter referred to as "Klarna"). Klarna
offers various payment options (e.g. installment purchase). If you choose to
pay with Klarna (Klarna checkout solution), Klarna will collect various
personal data from you. Klarna uses cookies to optimize the use of the Klarna
checkout solution. Details on the use of Klarna cookies can be found at the
following link:
https://cdn.klarna.com/1.0/shared/content/policy/cookie/de_de/checkout.pdf.
Details can be found in Klarna's privacy policy
under the following link: https://www.klarna.com/de/datenschutz/.
Instant bank transfer
The provider of this payment service is Sofort
GmbH, Theresienhöhe 12, 80339 Munich (hereinafter referred to as "Sofort
GmbH"). With the help of the "instant transfer" procedure, we
receive a payment confirmation from Sofort GmbH in real time and can
immediately start fulfilling our obligations. If you have opted for the
"Sofortüberweisung" payment method, transmit the PIN and a valid TAN
to Sofort GmbH, which they can use to log in to your online banking account.
After logging in, Sofort GmbH automatically checks your account balance and
carries out the transfer to us with the help of the TAN you have transmitted.
She then immediately sends us a transaction confirmation. After logging in,
your turnover, the credit limit of the overdraft facility and the existence of
other accounts as well as their holdings are also automatically checked. In
addition to the PIN and TAN, the payment data you enter as well as data about
yourself will also be transmitted to Sofort GmbH. The data about your person
includes first and last name, address, telephone number(s), e-mail address, IP
address and, if applicable, other data required for payment processing. The
transmission of this data is necessary to establish your identity beyond doubt
and to prevent fraud attempts. Details on payment with instant bank transfer
can be found at the following link: https://www.klarna.com/sofort/.
American Express
The provider of this payment service is
American Express Europe S.A., Theodor-Heuss-Allee 112, 60486 Frankfurt am Main,
Germany (hereinafter referred to as "American Express"). American
Express may transfer data to its parent company in the United States. Data
transfer to the USA is based on the Binding Corporate Rules. Details can be
found here:
https://www.americanexpress.com/en-cz/company/legal/privacy-centre/binding-corporate-rules/.
For more information, please see American Express' Privacy Policy: https://www.americanexpress.com/de-de/firma/legal/datenschutz-center/online-datenschutzerklarung/.
Mastercard
The provider of this payment service is
Mastercard Europe SA, Chaussée de Tervuren 198A, B-1410 Waterloo, Belgium
(hereinafter referred to as "Mastercard"). Mastercard may transfer
data to its parent company in the United States. Data transfer to the USA is
based on Mastercard's Binding Corporate Rules. Details can be found here:
https://www.mastercard.de/de-de/datenschutz.html and
https://www.mastercard.us/content/dam/mccom/global/documents/mastercard-bcrs.pdf.
VISAS
The provider of this payment service is Visa
Europe Services Inc., London Branch, 1 Sheldon Square, London W2 6TT, United
Kingdom (hereinafter referred to as "VISA"). Great Britain is
considered a third country that is safe in terms of data protection. This means
that the UK has a level of data protection equivalent to the level of data
protection in the European Union. VISA may transfer data to its parent company
in the United States. The data transfer to the USA is based on the standard
contractual clauses of the EU Commission. Details can be found here:
https://www.visa.de/nutzungsbedingungen/visa-globale-datenschutzmitteilung/mitteilung-zu-zustandigkeitsfragen-fur-den-ewr.html.
For more information, please refer to VISA's privacy policy: https://www.visa.de/nutzungsbedingungen/visa-privacy-center.html.