We only process personal data (mostly referred to as "data" in the following) to the necessary extent and for the purpose of providing a functional and user-friendly website, including its contents and the services offered therein.
According to Art. 4 (1) of Regulation (EU) 2016/679, i.e. the General Data Protection Regulation (hereinafter referred to as "GDPR"),"processing" is any process or series of operations related to personal data with or without the aid of automated procedures, such as collection, recording, organisation, ordering, storage, adaptation or modification, reading, querying, application, disclosure by submission, dissemination or other form of provision, matching or linking, restriction, erasure or destruction.
The following Privacy Policy is provided to inform you in particular about the type, scope, purpose, duration and legal basis of the processing of personal data, insofar as we decide either alone or together with others about the purposes and means of the processing. Below you will also find information regarding the third-party components we use to optimise our website and increase its quality of use, if these entail the processing of data by third parties under their own responsibility.
Our Privacy Policy is structured as follows:
I. Information regarding us as the controller
II. Rights of users and data subjects
III. Information on data processing
I. Information about us as the controller
The data controller of this website within the meaning of data protection law is:
Sonja Burger
Schürlimattring 52
5103 Wildegg
Telefon: 062 896 07 65
E-Mail:
II. Rights of users and data subjects
With regard to the data processing described in more detail below, users and data subjects have the right to
- confirmation of whether we process their personal data, information about the processed data, further information regarding data processing and copies of the data (cf. also Art. 15 GDPR);
- correction or completion of incorrect or incomplete data (cf. also Art. 16 GDPR);
- the immediate deletion of their personal data (cf. also Art. 17 GDPR), or, alternatively, if further processing is required pursuant to Art. 17 (3) GDPR, to the restriction of processing pursuant to Art. 18 GDPR;
- receipt of the personal data provided by them and transmission of this data to other providers/controllers (cf. also Art. 20 GDPR);
- complain to the supervisory authority if in their opinion the provider is processing their personal data in violation of data protection provisions (cf. also Art. 77 GDPR).
In addition, the provider is obliged to inform all recipients to whom the provider has given the data about any correction or deletion of the data or the restriction of its processing on the basis of Articles 16, 17, (1), 18 GDPR. However, this obligation shall not apply if such notification is impossible or involves a disproportionate effort. Notwithstanding this, the user has a right to information about these recipients.
Users and data subjects also have the right to object to the future processing of their personal data in accordance with Art. 21 GDPR, provided that the data is processed by the provider in accordance with Art. 6 (1) (f) GDPR. In particular, an objection to data processing for the purpose of direct advertising is permissible.
III. Information on data processing
When using our website, your data processed will be deleted or blocked as soon as the storage purpose ceases to apply, the deletion of the data does not conflict with any legal storage obligations and no other subsequent statements regarding individual processing procedures exists.
Server data
For technical reasons, in particular to ensure a secure and stable website, your internet browser transmits data to us or to our web space provider. In these server log files, the type and version of your internet browser, the operating system, the website that directed you to our website (referrer URL), the website(s) of our website that you visit, the date and time of the respective access as well as the IP address of the internet connection from which our website is used are collected.
This data collected in this way will be temporarily stored, but not in conjunction with other data you have provided.
The legal basis for this storage is Art. 6 (1) (f) GDPR. Our legitimate interest lies in the improvement, stability, functionality and security of our website.
The data will be deleted after seven days at the latest, unless further storage is required for evidence purposes. Otherwise, all or part of the data will be excluded from deletion until such an incident is finally resolved.
Cookies
a) Session cookies
We use cookies on our website. Cookies are small text files or other storage technologies that are stored on your end device by the internet browser you use. These cookies process certain unique information about you, such as your browser or location data or your IP address.
This processing makes our website more user-friendly, effective and secure, as the processing enables, for example, the reproduction of our website in different languages or the provision of a shopping basket function.
The legal basis for this processing is Art. 6 (1) (b) GDPR, if these cookies process data for contract initiation or contract processing.
If the processing does not serve to initiate or process a contract, our legitimate interest lies in improving the functionality of our website. The legal basis is then Art. 6 (1) (f) GDPR.
When you close your internet browser, these session cookies are deleted.
b) Third-party cookies
If necessary, our website may also use cookies from partner companies with whom we cooperate for the purpose of advertising, analysis or the functionalities of our website.
Please refer to the following information for details, in particular for the purposes and the legal basis of the processing of such third-party cookies.
c) Preventing cookies
You can prevent or restrict the installation of cookies by setting your internet browser accordingly. You can also delete cookies that have already been saved at any time. However, the required steps and measures vary depending on the internet browser you are using. If you have any questions, please use the help function or documentation of your internet browser or contact its manufacturer or support. However, for flash cookies, processing cannot be prevented via the browser settings. Instead, you must change the setting of your Flash Player. The steps and measures required for this also depend on the Flash Player you are using. If you have any questions, please also use the help function or documentation of your Flash Player or contact the manufacturer or user support.
Should you prevent or restrict the installation of cookies, this may however cause a state in which not all functions of our website are fully usable.
Customer account/registration function
If you create a customer account with us via our website, we only collect and store the data you enter during registration (e.g. your name, address or email address) for pre-contractual services, to fulfil a contract or for customer care purposes (e.g. to provide you with an overview of your previous orders with us or for the provision of the notepad function). At the same time, we also save the IP address and the date of your registration together with the time. Your data is not transferred to third parties.
In the course of the further registration process, we will obtain your consent to this processing and make reference to this Privacy Policy. The data collected we collect is used exclusively for the provision of the customer account.
If you have consented to this processing, the legal basis is Art. 6 (1) (a) GDPR.
If opening the customer account also serves the performance of pre-contractual measures or the fulfilment of the contract, the legal basis for this processing is also Art. 6 (1) (b) GDPR.
You may revoke your granted consent to the opening and maintenance of the customer account at any time with future effect in accordance with Art. 7 (3) GDPR. To do so, you must simply inform us of your revocation.
We will delete the data collected in this respect as soon as processing is no longer necessary. However, we must observe retention periods under tax and commercial law.
Newsletter
If you register for our free newsletter, the data we request from you for this purpose, i.e. your email address and - optionally - your name and address, will be sent to us. At the same time we store the IP address of the internet connection from which you access our website as well as the date and time of your registration. As part of the further registration process, we will obtain your consent to the sending of the newsletter, describe the content in detail and refer you to this Privacy Policy. We use the collected data exclusively for sending the newsletter – it will therefore not be transferred to third parties.
The legal basis for this is Art. 6 (1) (a) GDPR.
At any time, you may revoke your granted consent to the sending of the newsletter with future effect in accordance with Art. 7 (3) GDPR. To do so, you must simply inform us of your revocation or click the unsubscribe link provided in each newsletter.
Contact inquiries / contact options
If you contact us using the contact form or by email, the data you provide will be used to process your inquiry. Providing this data is necessary to process and respond to your inquiry - non-provision of this data means that we cannot respond to your inquiry or, at best, only respond to a limited extent.
The legal basis for this processing is Art. 6 (1) (b) GDPR.
We will delete your data if your inquiry has been finally answered and there is no legal obligation to store your data, e.g. in the event of possible subsequent contract processing.
Google Analytics
We use Google Analytics on our website. This is a web analytics service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, hereinafter referred to as “Google”.
With its certification according to the EU-US Privacy Shield
https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active,
Google guarantees that the EU's data protection regulations are also observed when processing data in the USA.
We use the Google Analytics service to analyse the usage behaviour of our website. The legal basis is Art. 6 (1) (f) GDPR. Our legitimate interest lies in the analysis, optimisation and economic operation of our website.
Usage and user-related information, such as IP address, location, time or frequency of the visit to our website, are transmitted to a Google server in the USA and stored there. However, we use Google Analytics with the anonymisation function. This means that Google abridges IP addresses before they leave EU or the EEA.
In turn, Google uses the data collected in this way to provide us with an evaluation of the visit to our website and the usage activities therein. This data can also be used to provide other services related to the use of our website and the use of the internet.
Google states that it will not associate your IP address with other data. In addition, at
https://www.google.com/intl/en/policies/privacy/partners
Google provides further information on data protection law as well as, for example, the possibilities to prevent the use of data.
In addition, at
https://tools.google.com/dlpage/gaoptout?hl=en
Google provides a deactivation add-on together with additional information. This add-on can be installed with most common internet browsers and offers you further control over the data that Google collects when you visit our website. The add-on informs Google Analytics' JavaScript (ga.js) that no information about your website visit should be transmitted to Google Analytics. However, this does not prevent information from being transmitted to us or to other web analysis services. You can of course learn about the additional web analysis serves we use in this Privacy Policy.
Google Maps
We use Google Maps on our website to display our location and to create a route plan. This is a service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, hereinafter referred to as “Google”.
With its certification according to the EU-US Privacy Shield
https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active,
Google guarantees that the EU's data protection regulations are also observed when processing data in the USA.
To enable the display of certain fonts on our website, a connection to the Google server in the USA is established when our website is accessed.
If you call the Google Maps component that is integrated into our website, Google stores a cookie on your end device via your internet browser. Your user settings and data are processed to display our location and create a route description. We cannot rule out that Google uses servers in the USA for this purpose.
The legal basis is Art. 6 (1) (f) GDPR. Our legitimate interest lies in optimising the functionality of our website.
By connecting to Google in this way, Google can determine the website from which your request was sent and to which IP address the directions must be transmitted.
If you do not agree to this processing, you can prevent the installation of cookies by changing the appropriate settings in your internet browser. You can find details regarding this under "Cookies" above.
In addition, Google Maps and the information obtained via Google Maps are used in accordance with Google's Terms of Service https://policies.google.com/terms?gl=DE&hl=en and the Google Maps Platform Terms of Service https://cloud.google.com/maps-platform/terms/.
Google provides additional information about this at
https://adssettings.google.com/authenticated
https://policies.google.com/privacy
Google reCAPTCHA
We use Google reCAPTCHA on our website to check and avoid automated interactions on our website carried out by, for example, bots. This is a service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, hereinafter referred to as “Google”.
With its certification according to the EU-US Privacy Shield
https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active,
Google guarantees that the EU's data protection regulations are also observed when processing data in the USA.
This service allows Google to determine the website from which a request is sent and from which IP address you use the reCAPTCHA input box. In addition to your IP address, Google may collect other information necessary to provide and guarantee this service.
The legal basis is Art. 6 (1) (f) GDPR. Our legitimate interest lies in the security of our website and in the prevention of unwanted, automated access in the form of spam or similar.
At
https://policies.google.com/privacy,
Google provides additional information on the general handling of your user data.
Google Fonts
We use Google Fonts on our website to display external fonts. This is a service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, hereinafter referred to as “Google”.
With its certification according to the EU-US Privacy Shield
https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active,
Google guarantees that the EU's data protection regulations are also observed when processing data in the USA.
To enable the display of certain fonts on our website, a connection to the Google server in the USA is established when our website is accessed.
The legal basis is Art. 6 (1) (f) GDPR. Our legitimate interest lies in the analysis, optimisation and economic operation of our website.
With the connection to Google established by visiting our website, Google can determine the website from which your request was sent and to which IP address the displayed fonts must be transmitted.
At
https://adssettings.google.com/authenticated
https://policies.google.com/privacy,
Google provides additional information, in particular regarding the possibilities of preventing the use of data
YouTube
We use YouTube on our website. This is a video portal from YouTube LLC, 901 Cherry Ave, 94066 San Bruno, CA, USA, hereinafter referred to as "YouTube".
YouTube is a subsidiary of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, hereinafter referred to as "Google".
With its certification according to the EU-US Privacy Shield,
https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active
Google and thus its subsidiary YouTube guarantee that the EU's data protection regulations are also observed when processing data in the USA.
We use YouTube in conjunction with the "Privacy-Enhanced Mode" feature to show you videos. The legal basis is Art. 6 (1) (f) GDPR. Our legitimate interest lies in improving the quality of our website. According to YouTube, the "Privacy-Enhanced Mode" function entails that the data specified below will only be transmitted to the YouTube server if you actually play a video.
Without this "Privacy-Enhanced Mode", a connection to the YouTube server in the USA will be established as soon as you access one of our internet pages on which a YouTube video is embedded.
This connection is required in order to be able to display the respective video on our website via your internet browser. In the course of this, YouTube will at least record and process your IP address, the date and time as well as the website you visited. In addition, a connection to the Google advertising network "DoubleClick" is established.
If you are logged in to YouTube at the same time, YouTube will assign the connection information to your YouTube account. If you wish to prevent this, you must either log out of YouTube before visiting our website or make the appropriate settings in your YouTube user account.
For the purpose of functionality and analysis of usage behaviour, YouTube permanently stores cookies on your device via your internet browser. If you do not agree to this processing, you can prevent the storage of cookies by changing the appropriate settings in your internet browser. Further information about this can be found under "Cookies":
Google provides further information on the collection and use of data as well as your rights and protection options in this regard in its Privacy Policies specified below
https://policies.google.com/privacy
Online job applications/publication of job advertisements
We offer you the opportunity to send us an application via our website. In the event of digital applications, we collect and process your applicant and application data electronically in order to process the application process.
The legal basis for this processing is Section 26 (1) (1) of the German Federal Data Protection Act (BDSG) in conjunction with Art. 88 (1) GDPR.
If an employment contract is concluded after the application procedure, we will store the data you provided during the application in your personnel file for the purpose of the usual organisational and administrative process – naturally in compliance with continuing legal obligations.
The legal basis for this processing is also Section 26 (1) (1) of the German Federal Data Protection Act (BDSG) in conjunction with Art. 88 (1) GDPR.
If an application is rejected, we will automatically delete the data submitted to us two months following notification of rejection. However, the data will not be deleted if a longer storage period of up to four months, or until the conclusion of legal proceedings due to statutory provisions, is required, for example, due to the obligation to provide evidence in accordance with the German General Act on Equal Treatment (AGG).
The legal basis in this case is Art. 6 (1) (f) GDPR and Section 24 (1) (2) German Federal Data Protection Act (BDSG). Our legitimate interest lies in legal defence and enforcement.
If you expressly consent to longer storage of your data, for example, for your inclusion in a database of applicants or interested parties, the data is further processed on the basis of your consent. The legal basis is then Art. 6 (1) (a) GDPR. However, you can of course revoke your consent at any time pursuant to Art. 7 Para. 3 GDPR with effect for the future by declaring your revocation to us.
Muster-Datenschutzerklärung der Anwaltskanzlei Weiß & Partner