Icon

Mon - Fri: 8:00 - 17:00

Icon

Mon - Fri: 8:00 - 17:00

struktur-blau-verlauf

Privacy Policy

Privacy Policy – General Information

The following notes provide a simple overview of what happens to your personal data when you visit our website. Personal data refers to any information that can personally identify you. Detailed information on data protection can be found in the full privacy policy listed below.


Data Collection on Our Website

Who is responsible for data collection on this website?
Data processing on this website is carried out by the website operator. You can find the operator’s contact details in the legal notice (Impressum) of this website.

How do we collect your data?
Some data is collected when you provide it to us—for example, by entering it into a contact form.

Other data is automatically collected by our IT systems when you visit the website. This includes technical data (e.g., internet browser, operating system, time of page visit). This data is collected automatically as soon as you access our website.

What do we use your data for?
Part of the data is collected to ensure the proper functioning of the website. Other data may be used to analyze user behavior.

What rights do you have regarding your data?
You have the right to request information, free of charge, about the origin, recipients, and purpose of your stored personal data at any time. You also have the right to request correction, blocking, or deletion of this data. If you have further questions about data protection, you can contact us at any time using the contact information provided in the legal notice.

You also have the right to file a complaint with the appropriate supervisory authority.

Additionally, you have the right to request the restriction of the processing of your personal data under certain conditions. For details, please refer to the section “Right to Restriction of Processing” in this privacy policy.


Analysis Tools and Third-Party Tools

When you visit our website, your browsing behavior may be statistically evaluated. This is mainly done using cookies and analytics tools. The analysis is usually anonymous and cannot be traced back to you.

You can object to this analysis or prevent it by not using certain tools. Detailed information on these tools and your options to object can be found in the full privacy policy below.


General Information and Mandatory Disclosures

Data Protection
We take the protection of your personal data very seriously. We treat your personal data as confidential and in accordance with the legal data protection regulations and this privacy policy.

When you use this website, various personal data is collected. This privacy policy explains which data we collect and what we use it for. It also explains how and for what purpose this happens.

Please note that data transmission over the Internet (e.g., communication by email) can have security gaps. A complete protection of the data against access by third parties is not possible.

Notice Concerning the Responsible Party

The party responsible for data processing on this website is:

AM Worx GmbH
Phone: +49 5232 69990 – 13
Email: info@am-worx.de

The responsible party is the natural or legal person who, alone or jointly with others, decides on the purposes and means of processing personal data (e.g., names, email addresses, etc.).

Withdrawal of Your Consent to Data Processing

Many data processing operations are only possible with your explicit consent. You may revoke your consent at any time. To do so, simply send us an informal message via email. The legality of data processing carried out prior to the withdrawal remains unaffected.

Right to Object to Data Collection in Special Cases and to Direct Marketing (Art. 21 GDPR)

If data processing is carried out on the basis of Art. 6(1)(e) or (f) GDPR, you have the right to object to the processing of your personal data at any time for reasons arising from your particular situation; this also applies to profiling based on these provisions. The specific legal basis for each data processing activity can be found in this privacy policy.

If you object, we will no longer process your personal data concerned unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights and freedoms, or if the processing serves the establishment, exercise or defense of legal claims (objection pursuant to Art. 21(1) GDPR).

If your personal data is processed for direct marketing purposes, you have the right to object to this at any time. This also applies to profiling insofar as it is related to such direct marketing. If you object, your personal data will no longer be used for direct marketing purposes (objection pursuant to Art. 21(2) GDPR).

Right to Lodge a Complaint with a Supervisory Authority

In the event of violations of the GDPR, data subjects have the right to lodge a complaint with a supervisory authority, particularly in the Member State of their habitual residence, place of work, or place of the alleged infringement. This right is without prejudice to any other administrative or judicial remedy.

You can find a list of data protection authorities and their contact information at the following links:
Germany: https://www.bfdi.bund.de/DE/Service/Anschriften/anschriften_table.html
Austria: https://www.dsb.gv.at/ueber-die-website/kontakt.html

Right to Data Portability

You have the right to receive the data we process automatically based on your consent or in fulfillment of a contract in a commonly used, machine-readable format. If you request that the data be transferred directly to another controller, this will only be done where technically feasible.

SSL or TLS Encryption

For security reasons and to protect the transmission of confidential content (such as orders or inquiries you send to us), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the fact that the browser’s address line changes from “http://” to “https://” and by the lock icon in your browser address bar.

When SSL or TLS encryption is active, the data you transmit to us cannot be read by third parties.

Encrypted Payment Transactions

If, after concluding a contract requiring payment, you are required to submit your payment details (e.g., account number for direct debit), this data is needed to process the payment.

Payment transactions via common methods (e.g., Visa/MasterCard, direct debit) are carried out exclusively via an encrypted SSL or TLS connection. You can recognize an encrypted connection by the change in the browser’s address line from “http://” to “https://” and the lock icon in your browser.

When communication is encrypted, your payment data transmitted to us cannot be read by third parties.

Access, Blocking, Deletion, and Correction

Within the scope of applicable legal provisions, you have the right to receive information free of charge at any time about your stored personal data, its origin, recipient, and the purpose of data processing. You may also have the right to request correction, blocking, or deletion of this data. For further questions about personal data, you may contact us at any time using the contact information provided in the legal notice.

Right to Restriction of Processing

You have the right to request the restriction of the processing of your personal data. You can contact us at any time via the address provided in the legal notice. The right to restriction of processing applies in the following cases:

  • If you dispute the accuracy of your personal data stored by us, we usually need time to verify this. For the duration of the verification, you have the right to request the restriction of the processing of your personal data.

  • If the processing of your personal data was or is unlawful, you may request the restriction of data processing instead of deletion.

  • If we no longer need your personal data, but you require it to establish, exercise, or defend legal claims, you have the right to request restriction of processing instead of deletion.

  • If you have objected pursuant to Art. 21(1) GDPR, a balance must be struck between your interests and ours. As long as it has not been determined whose interests prevail, you have the right to request the restriction of the processing of your personal data.

If processing has been restricted, such data may – apart from being stored – only be processed with your consent or for the establishment, exercise, or defense of legal claims or to protect the rights of another natural or legal person or for reasons of important public interest of the European Union or a Member State.

Objection to Promotional Emails

We hereby object to the use of contact data published in accordance with the legal notice obligation for the purpose of sending unsolicited advertising and informational materials. The operators of this website expressly reserve the right to take legal action in the event of the unsolicited sending of promotional information, such as spam emails.

Data Collection on Our Website

Cookies

This website uses cookies and similar technologies that are either strictly necessary or functional in order to provide the website and its features as requested by you, in accordance with Section 25 (2) No. 2 of the Telecommunications and Telemedia Data Protection Act (TDDDG) and Article 6 (1) Sentence 1 lit. f of the GDPR.

If you consent to the use of optional services and non-essential cookies, the legal basis is Section 25 (1) TDDDG and Article 6 (1) Sentence 1 lit. a GDPR (Consent). Details on the cookies and services used can be found in our consent management tool. You can revoke your consent at any time, freely and without disadvantage, with effect for the future. Please note that the functionality of our website may be limited without certain cookies.

You can view all cookies used and manage or revoke your consent at any time in our consent management tool. Revoking your consent does not affect the lawfulness of the data processing carried out up to the point of revocation.

Cookies necessary for electronic communication or the provision of certain functions requested by you (e.g., shopping cart functionality) are stored on the basis of Article 6 (1) lit. f GDPR. The website operator has a legitimate interest in storing such cookies to ensure the technically flawless and optimized provision of its services. Other cookies (e.g., for analyzing your browsing behavior) are addressed separately in this privacy policy.

Server Log Files

The provider of this website automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. This information includes:

  • Browser type and version

  • Operating system used

  • Referrer URL

  • Hostname of the accessing computer

  • Time of the server request

  • IP address

These data are not merged with other data sources. The processing of this data is based on Article 6 (1) lit. f GDPR. The website operator has a legitimate interest in the technically error-free presentation and optimization of its website, for which the server log files must be recorded.

Contact Form

If you contact us via our contact form, your details from the form, including the contact data you provide, will be stored by us for the purpose of processing your inquiry and in case of follow-up questions. The legal basis for this is Article 6 (1) Sentence 1 lit. b GDPR. We do not share this data without your consent.

Your data will remain with us until you request deletion, revoke your consent to storage, or the purpose for storing the data no longer applies (e.g., once your request has been fully processed). Mandatory statutory provisions – in particular retention periods – remain unaffected.

Inquiries by Email, Phone or Fax

If you contact us by email, phone, or fax, your request including all personal data resulting from it (e.g., name, inquiry) will be stored and processed by us for the purpose of handling your request. We do not share this data without your consent.

The processing of this data is based on Article 6 (1) lit. b GDPR, if your request is related to the performance of a contract or necessary for pre-contractual measures. In all other cases, processing is based on your consent (Article 6 (1) lit. a GDPR) and/or on our legitimate interests (Article 6 (1) lit. f GDPR), as we have a legitimate interest in effectively handling inquiries directed to us.

The data you send to us via contact inquiries will remain with us until you request deletion, revoke your consent, or the purpose for storing the data no longer applies. Mandatory statutory provisions – in particular legal retention periods – remain unaffected.

Registration on This Website

You can register on our website to use additional features. The data entered during registration will be used only for the purpose of using the respective offer or service you have registered for. All mandatory fields must be filled in completely; otherwise, we will reject the registration. The legal basis is Article 6 (1) Sentence 1 lit. b GDPR.

We use the email address provided during registration to notify you of important changes, such as to the scope of the offer or technically necessary updates.

The processing of the data entered during registration is based on your consent (Article 6 (1) lit. a GDPR). You can revoke your consent at any time with future effect by sending us an informal email. The lawfulness of the data processing carried out up until revocation remains unaffected.

The data collected during registration will be stored as long as you are registered on our website and will be deleted thereafter. Statutory retention obligations remain unaffected.

Processing of Data (Customer and Contract Data)

We collect, process, and use personal data only to the extent necessary to establish, define the content of, or modify the legal relationship (inventory data). This is based on Article 6 (1) lit. b GDPR, which permits the processing of data to fulfill a contract or pre-contractual measures.

We collect, process, and use personal data concerning the use of our website (usage data) only to the extent necessary to enable or bill the user for the use of the service.

Customer data collected will be deleted after completion of the order or termination of the business relationship, unless statutory retention periods apply.

Data Transfer for Contract Fulfillment in Online Shops, Retail, and Shipping

We transfer personal data to third parties only to the extent necessary to fulfill a contract, such as to companies responsible for delivering goods or financial institutions handling payments. No further data transmission takes place unless you have expressly consented to it. Your data will not be passed on to third parties for advertising purposes without your explicit consent.

The legal basis for this data processing is Article 6 (1) lit. b GDPR.

Data Transfer for Services and Digital Content

We transfer personal data to third parties only where necessary for contractual performance, for example to the financial institution handling payment processing. Any further data transfer will only take place with your express consent. Your data will not be passed on to third parties for advertising purposes without your explicit consent. The legal basis for this processing is Article 6 (1) lit. b GDPR.

Registration via Facebook Connect

Instead of registering directly on our website, you can also register via Facebook Connect. This service is provided by Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland.

If you choose to register with Facebook Connect, you will be redirected to the Facebook platform, where you can log in with your Facebook credentials. This links your Facebook profile with our website or services. As a result, we gain access to your Facebook-stored data, including:

  • Facebook name

  • Facebook profile and cover photo

  • Email address linked to Facebook

  • Facebook ID

  • Friend lists

  • Facebook Likes

  • Birthday

  • Gender

  • Country

  • Language

These data are used to create, provide, and personalize your account.

Registration via Facebook Connect and the associated data processing are based on your consent (Article 6 (1) lit. a GDPR), which you can revoke at any time with future effect.

For more information, please refer to Facebook’s Privacy Policy and Terms of Use:
https://de-de.facebook.com/about/privacy/ and https://de-de.facebook.com/legal/terms/.

Comment Function on This Website

When using the comment function on this site, in addition to your comment, we store the time of the comment, your email address, and, if not posting anonymously, the username you chose.

IP Address Storage

We store the IP addresses of users who post comments. This is necessary so that we can take action against the author in the case of violations such as insults or propaganda, since we do not review comments before they are published.

Subscribing to Comments

As a user, you can subscribe to comments after registering. You will receive a confirmation email to verify that you are the owner of the email address provided. You can unsubscribe from this function at any time using a link in the notification emails. Any data entered in the course of subscribing to comments will be deleted upon unsubscribing. If you have submitted this data to us for other purposes (e.g., newsletter), it will remain with us.

Comment Retention

Comments and associated data (e.g., IP address) are stored and remain on our website until the commented content is completely deleted or the comments must be deleted for legal reasons (e.g., offensive content).

Legal Basis

The storage of comments is based on your consent (Article 6 (1) lit. a GDPR) or for the performance of a contract (Article 6 (1) lit. b GDPR). You may revoke your consent at any time with future effect by sending us an informal email. The lawfulness of data processing operations already carried out remains unaffected by the revocation.

Plugins and Tools

Google Web Fonts

This website uses so-called web fonts provided by Google to ensure a uniform presentation of fonts. The Google Fonts are installed locally. No connection to Google servers takes place.

Google Maps

This website uses the Google Maps service via an API. The provider is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

To use the functions of Google Maps, it is necessary to store your IP address. This information is usually transmitted to a Google server in the USA and stored there. The provider of this website has no influence on this data transmission.

The use of Google Maps serves the purpose of attractive presentation of our online offers and easy findability of the locations indicated on our website. This constitutes a legitimate interest within the meaning of Art. 6(1)(f) GDPR. Otherwise, Google services are only loaded actively if you have given your prior consent, Art. 6(1)(a) GDPR.

More information on handling user data can be found in Google’s privacy policy: https://policies.google.com/privacy?hl=de.

Adobe Fonts

Our website uses web fonts from Adobe to ensure uniform display of certain fonts. The provider is Adobe Systems Incorporated, 345 Park Avenue, San Jose, CA 95110-2704, USA (Adobe).

When you access our pages, your browser loads the required fonts directly from Adobe in order to display them correctly on your device. In doing so, your browser establishes a connection to Adobe’s servers in the USA. Adobe thereby becomes aware that our website was accessed via your IP address. According to Adobe, no cookies are stored when providing the fonts.

Adobe is certified under the EU-US Privacy Shield, an agreement between the United States and the European Union that ensures compliance with European data protection standards. More information can be found at: https://www.adobe.com/de/privacy/eudatatransfers.html.

The use of Adobe Fonts is necessary to ensure a uniform font appearance on our website. This constitutes a legitimate interest within the meaning of Art. 6(1)(f) GDPR. Otherwise, the services are only actively loaded if you have previously given your consent, Art. 6(1)(a) GDPR.

More information about Adobe Fonts is available at: https://www.adobe.com/de/privacy/policies/adobe-fonts.html.

Adobe’s privacy policy can be found at: https://www.adobe.com/de/privacy/policy.html.

YouTube with Extended Data Protection

Our website uses plugins from the website YouTube. The operator of the pages is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

We use YouTube in extended data protection mode. According to YouTube, this mode ensures that YouTube does not store information about visitors to this website before they watch the video. However, the extended data protection mode does not necessarily exclude the transfer of data to YouTube partners. For example, YouTube establishes a connection to the Google DoubleClick network independently of whether you watch a video or not.

As soon as you start a YouTube video on our website, a connection to YouTube servers is established. The YouTube server is informed about which of our pages you visited. If you are logged into your YouTube account, you enable YouTube to directly associate your browsing behavior with your personal profile. You can prevent this by logging out of your YouTube account.

Furthermore, YouTube may store various cookies on your device after starting a video. Using these cookies, YouTube can collect information about visitors to our website. This information is used to record video statistics, improve user-friendliness, and prevent fraud attempts. The cookies remain on your device until you delete them.

Additional data processing operations may be triggered after starting a YouTube video, over which we have no influence.

The use of YouTube is in the interest of an attractive presentation of our online offerings. This constitutes a legitimate interest within the meaning of Art. 6(1)(f) GDPR. Otherwise, Google services are only actively loaded if you have previously given your consent, Art. 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to revoke it under Article 7 GDPR with effect for the future. The legality of the processing carried out based on the consent until revocation remains unaffected.

More information about data protection at YouTube can be found in their privacy policy at: https://policies.google.com/privacy?hl=de.

Vimeo

Our website uses plugins from the video portal Vimeo. The provider is Vimeo Inc., 555 West 18th Street, New York, New York 10011, USA.

When you visit one of our pages equipped with a Vimeo plugin, a connection to Vimeo servers is established. Vimeo is informed about which of our pages you visited. Vimeo also obtains your IP address. This applies even if you are not logged into Vimeo or do not have a Vimeo account. The information collected by Vimeo is transmitted to Vimeo servers in the USA.

If you are logged into your Vimeo account, you enable Vimeo to directly associate your browsing behavior with your personal profile. You can prevent this by logging out of your Vimeo account.

The use of Vimeo is in the interest of an attractive presentation of our online offerings. This constitutes a legitimate interest within the meaning of Art. 6(1)(f) GDPR. Otherwise, the services are only actively loaded if you have previously given your consent, Art. 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to revoke it under Article 7 GDPR with effect for the future. The legality of the processing carried out based on the consent until revocation remains unaffected.

More information on handling user data can be found in Vimeo’s privacy policy at: https://vimeo.com/privacy.

SoundCloud

Plugins from the social network SoundCloud (SoundCloud Limited, Berners House, 47-48 Berners Street, London W1T 3NF, United Kingdom) may be integrated on our pages. You can recognize the SoundCloud plugins by the SoundCloud logo on the affected pages.

When you visit our pages, activating the plugin establishes a direct connection between your browser and the SoundCloud server. SoundCloud thereby receives the information that you visited our site with your IP address. If you click the “Like” or “Share” button while logged into your SoundCloud account, you can link and/or share content from our pages with your SoundCloud profile. This allows SoundCloud to associate the visit to our pages with your user account. We point out that as the provider of the pages, we do not have any knowledge of the content of the transmitted data or its use by SoundCloud.

The use of SoundCloud is based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in as extensive a visibility as possible on social media. Otherwise, the services are only actively loaded if you have previously given your consent, Art. 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to revoke it under Article 7 GDPR with effect for the future. The legality of the processing carried out based on the consent until revocation remains unaffected.

More information can be found in SoundCloud’s privacy policy at: https://soundcloud.com/pages/privacy.

If you do not want SoundCloud to associate the visit to our pages with your SoundCloud user account, please log out of your SoundCloud user account before activating content from the SoundCloud plugin.

Spotify

Our pages include functions of the music service Spotify. The provider is Spotify AB, Birger Jarlsgatan 61, 113 56 Stockholm, Sweden. You can recognize the Spotify plugins by the green logo on our page. An overview of Spotify plugins can be found at: https://developer.spotify.com.

This allows a direct connection to be established between your browser and the Spotify server when visiting our pages via the plugin. Spotify thereby receives the information that you visited our site with your IP address. If you click the Spotify button while logged into your Spotify account, you can link the content of our pages to your Spotify profile. This allows Spotify to assign the visit to our pages to your user account.

The data processing is based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in an appealing acoustic design of his website. Otherwise, the services are only actively loaded if you have previously given your consent, Art. 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to revoke it under Article 7 GDPR with effect for the future. The legality of the processing carried out based on the consent until revocation remains unaffected.

More information can be found in Spotify’s privacy policy: https://www.spotify.com/de/legal/privacy-policy/.

If you do not want Spotify to associate the visit to our pages with your Spotify user account, please log out of your Spotify user account.

Zendesk

To process user requests, we use the CRM system Zendesk. The provider is Zendesk, Inc, 1019 Market Street, San Francisco, CA 94103 USA.

We use Zendesk to process your requests quickly and efficiently. The legal basis for processing your data is the legitimate interest under Art. 6(1)(f) GDPR.

Zendesk is certified under the US Privacy Shield and thus commits to comply with EU data protection law. Additionally, we have concluded a Data Processing Agreement (DPA) with Zendesk. This ensures that Zendesk uses user data only within the framework of EU data protection standards exclusively for processing the requests and does not pass it on to third parties.

You can submit requests only by providing your email address and without giving your name.

If you do not agree to the processing of your request via Zendesk, you can alternatively contact us by email, telephone, or fax.

More information is available in Zendesk’s privacy policy: https://www.zendesk.de/company/customers-partners/privacy-policy/.

Google reCAPTCHA

We use “Google reCAPTCHA” (hereinafter “reCAPTCHA”) on our websites. The provider is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

reCAPTCHA is used to verify whether data input on our websites (e.g., in a contact form) is made by a human or an automated program. To do this, reCAPTCHA analyzes the behavior of the website visitor based on various features. This analysis starts automatically as soon as the visitor enters the website. For the analysis, reCAPTCHA evaluates various information (e.g., IP address, time spent on the website, or mouse movements made by the user). The data collected during the analysis is transmitted to Google.

The reCAPTCHA analyses run entirely in the background. Visitors are not notified that an analysis is taking place.

Data processing is based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in protecting its web offerings from abusive automated spying and spam. Otherwise, the services are only actively loaded if you have previously given your consent, Art. 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to revoke it under Article 7 GDPR with effect for the future. The legality of the processing carried out based on the consent until revocation remains unaffected.

More information about Google reCAPTCHA and Google’s privacy policy can be found at: https://policies.google.com/privacy?hl=de and https://www.google.com/recaptcha/intro/v3.html.

Use of EverCAPTCHA

To secure our contact form against unwanted use, we use the service EverCAPTCHA from our website creator and host WN Online-Service GmbH & Co. KG, An der Hansalinie 1, 48163 Münster. This service is provided by the subprocessor wwwe GmbH, Hansaallee 299, 40549 Düsseldorf. EverCAPTCHA enables distinguishing whether the data input into the contact form is actually made by a human or abusively automated by a machine, a so-called spambot.

To this end, various questions are asked when using our forms (e.g., “Click on an X symbol,” etc.). EverCAPTCHA stores all failed attempts of a user, an IP address via a session ID saved in LocalStorage. The session ID is transmitted via JavaScript with each request to the server. If 30 incorrect entries occur, the user’s IP address is permanently stored in a database for spam protection. Otherwise, IP addresses are deleted within 7 days. Data processing is based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in protecting its web offerings from abusive automated spying and spam.

Widget YourRate

We have implemented a rating widget on our website. General information about widgets can be found here: https://de.wikipedia.org/wiki/Widget.

The widget we use is implemented as part of our website offer by yourrate.com. The provider of this service is the subcontractor of our provider, namely Euroweb Internet GmbH, Hansaallee 299, 40549 Düsseldorf. We have concluded corresponding agreements with our processor and their subcontractor. Further details on data processing can also be found in the terms and conditions at https://www.yourrate.com/de/agb (hereinafter: YourRate).

When using the rating widget on our website, YourRate requests data. When calling up the widget, your device establishes a connection to YourRate servers via the browser used. Your IP address is primarily collected in this process. There is no merging of this data with other data sources. The temporary storage of the IP address by the system is technically necessary to enable delivery of the website including widgets to your device, Art. 6(1)(f) GDPR. No tracking or statistical evaluation takes place.

Social Media
Embedding Social Media Content

On this website, we have integrated a tool for embedding social media content from the provider Curator Group, 69 Ruthven Street, Bondi Junction, NSW 2022 Australia. Details regarding data processing related to this service can be found in the provider’s privacy policy at https://curator.io/privacy-policy. The legal basis for integrating this tool is Article 6(1)(f) GDPR. Our legitimate interest lies in optimizing user-friendliness of the website and enabling the embedding of social media posts. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Social Media Plugins with Shariff

Our website uses plugins from social media platforms (e.g., Facebook, X, Google+, Instagram, Pinterest, XING, LinkedIn, Tumblr).

You can generally recognize the plugins by their respective social media logos. To ensure data protection on our website, we only use these plugins together with the so-called “Shariff” solution. This application prevents the integrated plugins from transmitting data to the respective provider as soon as you enter the website.

Only when you activate the respective plugin by clicking the corresponding button is a direct connection established to the provider’s server (consent). Once you activate the plugin, the provider receives information that you have visited our site with your IP address. If you are simultaneously logged into your respective social media account (e.g., Facebook), the provider can associate your visit with your user account.

Activating the plugin constitutes consent within the meaning of Article 6(1)(a) GDPR. You may revoke this consent at any time with future effect.

Facebook Plugins (Like & Share Button)

Our website integrates plugins from the social network Facebook, provider Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA. You can recognize the Facebook plugins by the Facebook logo or the “Like” button (“Gefällt mir”) on our site. An overview of Facebook plugins can be found here: https://developers.facebook.com/docs/plugins/?locale=de_DE.

When you visit our pages, a direct connection is established via the plugin between your browser and the Facebook server. Facebook thereby receives the information that you visited our site with your IP address. If you click the Facebook “Like” button while logged into your Facebook account, you can link the content of our pages to your Facebook profile. As a result, Facebook can associate your visit with your user account. Please note that as the website provider, we do not receive information about the content of the transmitted data or its use by Facebook. Further information can be found in Facebook’s privacy policy at: https://de-de.facebook.com/privacy/explanation.

If you do not want Facebook to associate your visit to our pages with your Facebook user account, please log out of your Facebook account. The use of Facebook plugins is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in the widest possible visibility on social media. Otherwise, the services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have given consent to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of the processing based on consent until withdrawal remains unaffected.

Use of juicer.io

On this website, we have integrated a tool for embedding social media content from the provider saas.group LLC, 304 S. Jones Blvd #1205, Las Vegas NV 89107, USA. Details regarding data processing related to this service are provided in the provider’s privacy policy at https://www.juicer.io/privacy. The legal basis for integrating this tool is Article 6(1)(f) GDPR. Our legitimate interest lies in optimizing user-friendliness of the website and enabling the embedding of social media posts. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Twitter / X Plugin

Our pages include functions from the Twitter / X service. These functions are provided by Twitter International Unlimited Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07, Ireland. By using Twitter / X and the “Re-Tweet” function, the websites you visit are linked to your Twitter / X account and made known to other users. Data is also transmitted to Twitter / X. Please note that as the website provider, we do not receive information about the content of the transmitted data or its use by Twitter / X. Further information is available in Twitter / X’s privacy policy at: https://x.com/de/privacy.

The use of the Twitter / X plugin is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in the widest possible visibility on social media. You can change your privacy settings at Twitter / X in your account settings at https://x.com/settings/account. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Instagram Plugin

Our pages include functions from the Instagram service. These functions are provided by Instagram Inc., 1601 Willow Road, Menlo Park, CA 94025, USA.

If you are logged into your Instagram account, you can link the content of our pages to your Instagram profile by clicking the Instagram button. Instagram can thereby associate your visit with your user account. Please note that as the website provider, we do not receive information about the content of the transmitted data or its use by Instagram.

The use of the Instagram plugin is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in the widest possible visibility on social media.

Further information can be found in Instagram’s privacy policy: https://instagram.com/about/legal/privacy/. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Tumblr Plugin

Our pages use buttons from the Tumblr service. The provider is Tumblr, Inc., 35 East 21st St, 10th Floor, New York, NY 10010, USA.

These buttons allow you to share a post or page on Tumblr or to follow the provider on Tumblr. When you visit one of our websites containing a Tumblr button, the browser establishes a direct connection with Tumblr’s servers. We have no influence over the extent of data Tumblr collects and transmits using this plugin. Currently, the user’s IP address and the URL of the respective website are transmitted.

The use of the Tumblr plugin is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in the widest possible visibility on social media. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Further information is available in Tumblr’s privacy policy at: https://www.tumblr.com/privacy/de.

LinkedIn Plugin

Our website uses functions of the LinkedIn network. The provider is LinkedIn Corporation, 2029 Stierlin Court, Mountain View, CA 94043, USA.

Whenever one of our pages containing LinkedIn functions is accessed, a connection to LinkedIn’s servers is established. LinkedIn is informed that you have visited our website with your IP address. If you click the LinkedIn “Recommend” button while logged into your LinkedIn account, LinkedIn can associate your visit with your user account. Please note that as the website provider, we do not receive information about the content of the transmitted data or its use by LinkedIn.

The use of the LinkedIn plugin is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in the widest possible visibility on social media. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Further information is available in LinkedIn’s privacy policy at: https://www.linkedin.com/legal/privacy-policy.

XING Plugin

Our website uses functions of the XING network. The provider is XING AG, Dammtorstraße 29-32, 20354 Hamburg, Germany.

Whenever one of our pages containing XING functions is accessed, a connection to XING’s servers is established. To our knowledge, no personal data is stored. In particular, no IP addresses are stored or usage behavior evaluated.

The use of the XING plugin is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in the widest possible visibility on social media. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Further information about data protection and the XING share button is available in XING’s privacy policy at: https://www.xing.com/app/share?op=data_protection.

Pinterest Plugin

Our site uses social plugins of the social network Pinterest, operated by Pinterest Inc., 808 Brannan Street, San Francisco, CA 94103-490, USA (“Pinterest”).

When you visit a page containing such a plugin, your browser establishes a direct connection to Pinterest’s servers. The plugin transmits log data to Pinterest’s servers in the USA. These log data may include your IP address, the address of the websites visited which also contain Pinterest functions, browser type and settings, date and time of the request, how you use Pinterest, as well as cookies.

The use of the Pinterest plugin is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in the widest possible visibility on social media. Otherwise, these services are only activated if you have previously given your consent, pursuant to Article 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw this consent at any time with future effect under Article 7 GDPR. The legality of processing carried out based on consent until withdrawal remains unaffected.

Further information on the purpose, scope, and further processing and use of data by Pinterest, as well as your rights and options to protect your privacy, can be found in Pinterest’s privacy policy: https://policy.pinterest.com/de/privacy-policy.

Analysis Tools and Advertising

Hotjar

This website uses Hotjar. The provider is Hotjar Ltd., Level 2, St Julians Business Centre, 3, Elia Zammit Street, St Julians STJ 1000, Malta, Europe (website: https://www.hotjar.com).

Hotjar is a tool used to analyze your user behavior on our website. With Hotjar, we can record your mouse movements, scroll behavior, and clicks. Hotjar can also determine how long your mouse pointer remains on a specific area. From this data, Hotjar generates so-called heatmaps, which help identify which areas of the website visitors focus on the most.

Furthermore, we can determine how long you stayed on a page and when you left it. We can also identify where you abandoned your input in a contact form (so-called conversion funnels).

In addition, Hotjar allows us to collect direct feedback from website visitors. This feature serves to improve the website offerings of the site operator.

Hotjar uses cookies. Cookies are small text files stored on your computer by your browser. They help make our website more user-friendly, effective, and secure. These cookies allow us, in particular, to identify whether our website was accessed using a specific device or whether Hotjar functions have been disabled for the respective browser. Hotjar cookies remain on your device until you delete them.

You can configure your browser to inform you about cookie placements and to allow cookies only in individual cases, to block cookies for certain cases or in general, and to enable automatic deletion of cookies when closing the browser. Disabling cookies may limit the functionality of this website.

The use of Hotjar and the storage of Hotjar cookies are based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize both its web offerings and advertising. Otherwise, the services are only activated if you have given your prior consent pursuant to Art. 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw your consent at any time according to Article 7 GDPR, with effect for the future. The legality of the processing carried out based on the consent until withdrawal remains unaffected.

Disabling Hotjar

If you wish to deactivate data collection by Hotjar, please click the following link and follow the instructions: https://www.hotjar.com/policies/do-not-track/

Please note that disabling Hotjar must be done separately for each browser or device.

Further information about Hotjar and the data collected can be found in Hotjar’s privacy policy at: https://www.hotjar.com/legal/policies/privacy/

Data Processing Agreement

We have concluded a data processing agreement with Hotjar to comply with strict European data protection regulations.


Google Analytics

This website uses features of the web analytics service Google Analytics. The provider is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

Google Analytics uses so-called “cookies,” which are text files stored on your computer and enable analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to and stored on a Google server in the USA.

The storage of Google Analytics cookies and the use of this analysis tool are based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize both its web offerings and advertising. Otherwise, the services are only activated if you have given your prior consent pursuant to Art. 6(1)(a) GDPR. If you have consented to the processing of personal data, you have the right to withdraw your consent at any time according to Article 7 GDPR, with effect for the future. The legality of the processing carried out based on the consent until withdrawal remains unaffected.

IP Anonymization

We have activated IP anonymization on this website. As a result, your IP address is shortened by Google within member states of the European Union or other signatory states to the Agreement on the European Economic Area before transmission to the USA. Only in exceptional cases is the full IP address transmitted to a Google server in the USA and shortened there. On behalf of the operator of this website, Google uses this information to evaluate your use of the website, compile reports on website activity, and provide other services related to website and internet usage to the website operator. The IP address transmitted by your browser within Google Analytics is not merged with other Google data.

Browser Plugin

You can prevent the storage of cookies by adjusting your browser settings accordingly; however, please note that this may prevent you from fully using all functions of this website. You can also prevent Google from collecting data generated by the cookie and related to your use of the website (including your IP address) and the processing of this data by Google by downloading and installing the browser plugin available at: https://tools.google.com/dlpage/gaoptout?hl=en.

Objection to Data Collection

You can prevent the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie will be set that prevents the collection of your data during future visits to this website: [Google Analytics Opt-Out].

More information about handling user data in Google Analytics can be found in Google’s privacy policy: https://support.google.com/analytics/answer/6004245?hl=en.

Data Processing Agreement

We have concluded a data processing agreement with Google and fully comply with the strict requirements of the German data protection authorities when using Google Analytics.

Demographic Features in Google Analytics

This website uses the “demographic features” function of Google Analytics. This allows reports to be generated that contain statements about the age, gender, and interests of website visitors. This data originates from interest-based advertising by Google and from visitor data from third parties. This data cannot be attributed to any specific person. You can deactivate this feature at any time via your Google account ad settings or generally prohibit data collection by Google Analytics as described under “Objection to Data Collection.”

Data Retention

User and event data stored by Google that are linked to cookies, user IDs (e.g., User ID), or advertising IDs (e.g., DoubleClick cookies, Android advertising ID) are anonymized or deleted after 14 months. Details can be found here: https://support.google.com/analytics/answer/7667196?hl=en.


Google Analytics Remarketing

Our websites use the features of Google Analytics Remarketing in conjunction with the cross-device functionalities of Google AdWords and Google DoubleClick. The provider is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

This feature allows the advertising audiences created with Google Analytics Remarketing to be linked with the cross-device functions of Google AdWords and Google DoubleClick. This enables interest-based, personalized advertising messages tailored to your previous usage and browsing behavior on one device (e.g., mobile phone) to be shown on another of your devices (e.g., tablet or PC).

If you have given your consent, Google links your web and app browser history with your Google account for this purpose. This way, the same personalized advertising messages can be displayed on every device on which you log in with your Google account.

To support this function, Google Analytics collects Google-authenticated user IDs that are temporarily linked with our Google Analytics data to define and create audiences for cross-device advertising.

You can permanently object to cross-device remarketing/targeting by disabling personalized advertising via this link: https://adssettings.google.com/.

The aggregation of the collected data in your Google account is solely based on your consent, which you can give or withdraw at Google (Art. 6(1)(a) GDPR). Data collection processes that are not merged in your Google account (e.g., because you do not have a Google account or objected to merging) are based on Art. 6(1)(f) GDPR. The legitimate interest results from the website operator’s interest in anonymized analysis of website visitors for advertising purposes. Otherwise, the services are only activated if you have given your prior consent (Art. 6(1)(a) GDPR). If you have consented to the processing of personal data, you have the right to withdraw your consent at any time according to Article 7 GDPR, with effect for the future. The legality of the processing carried out based on the consent until withdrawal remains unaffected.

Further information and Google’s privacy policy can be found at: https://policies.google.com/technologies/ads?hl=en.


Google AdSense

This website uses Google AdSense, a service for embedding advertising from Google Inc. (“Google”). The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. Google AdSense uses so-called “cookies,” text files stored on your computer that enable analysis of your website usage. Google AdSense also uses so-called web beacons (invisible graphics). These web beacons allow information such as visitor traffic on these pages to be evaluated. The information generated by cookies and web beacons about the use of this website (including your IP address) and the delivery of advertising formats is transmitted to a Google server in the USA and stored there. This information may be passed on by Google to contractual partners of Google. However, Google will not merge your IP address with other data stored about you. The storage of AdSense cookies is based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize both its web offerings and advertising. You can prevent the installation of cookies by adjusting your browser software settings; however, please note that you may not be able to use all functions of this website to their full extent in this case. By using this website, you agree to the processing of the data collected about you by Google as described above and for the aforementioned purpose. Otherwise, the services are only activated if you have given your prior consent (Art. 6(1)(a) GDPR). If you have consented to the processing of personal data, you have the right to withdraw your consent at any time according to Article 7 GDPR, with effect for the future. The legality of the processing carried out based on the consent until withdrawal remains unaffected.


Google AdWords and Google Conversion Tracking

This website uses Google AdWords. AdWords is an online advertising program of Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

As part of Google AdWords, we use so-called conversion tracking. When you click on an ad placed by Google, a cookie for conversion tracking is set. Cookies are small text files that the internet browser stores on the user’s computer. These cookies expire after 30 days and do not serve to personally identify users. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user clicked on the ad and was redirected to that page.

Each Google AdWords customer receives a different cookie. Cookies cannot be tracked across websites of AdWords customers. The information obtained with the conversion cookie is used to create conversion statistics for AdWords customers who have opted for conversion tracking. The customers learn the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. They do not receive any information that can personally identify users. If you do not wish to participate in tracking, you can object by disabling the Google conversion tracking cookie via your browser settings; otherwise, it expires automatically after 30 days. The storage and use of AdWords and conversion cookies take place in accordance with Art. 6(1)(f) GDPR. The legitimate interest is the analysis of user behavior to optimize the website and advertising. Otherwise, the services are only activated if you have given your prior consent (Art. 6(1)(a) GDPR). If you have consented to the processing of personal data, you have the right to withdraw your consent at any time according to Article 7 GDPR, with effect for the future. The legality of the processing carried out based on the consent until withdrawal remains unaffected.

More information on Google AdWords and Google conversion tracking can be found at: https://support.google.com/adwords/answer/1722022?hl=en.


WordPress Stats

This website uses WordPress Stats, a statistical service provided by Automattic Inc., 60 29th Street #343, San Francisco, CA 94110, USA.

Automattic Inc. places cookies and web beacons to count page views, collect website performance data, and aggregate visitor data. No personal data is processed, and data is anonymized. The use of WordPress Stats is based on Art. 6(1)(f) GDPR.

More information can be found here: https://automattic.com/privacy/.


Meta-Pixel (Facebook Pixel)

This website uses Meta Pixel (formerly Facebook Pixel). The provider is Meta Platforms Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland.

Meta Pixel allows tracking of your actions on our website after interacting with Facebook advertising. This helps us measure the effectiveness of Facebook ads and to optimize them for our target audiences.

Meta Pixel uses cookies and similar technologies to collect data such as your IP address, browser type, operating system, and your interactions with the website.

The data processing is based on your consent under Art. 6(1)(a) GDPR or alternatively on our legitimate interest (Art. 6(1)(f) GDPR) to optimize advertising.

You can manage and withdraw your consent in your Facebook privacy settings or opt-out via the EU privacy controls.

More details about Meta Pixel and Facebook’s privacy policy can be found here: https://www.facebook.com/privacy/explanation.


Newsletter

On this website, you can subscribe to a newsletter to receive regular information. To subscribe, you must provide your email address. Before your subscription is activated, you will receive a confirmation email (double opt-in). This confirmation helps verify that you are the owner of the provided email address and agree to receive the newsletter.

Your email address is used solely for sending the newsletter and is not shared with third parties. You can unsubscribe from the newsletter at any time via a link in each newsletter or by contacting us directly.

The legal basis for sending the newsletter is your consent (Art. 6(1)(a) GDPR). Your consent can be withdrawn at any time without affecting the lawfulness of prior processing.

Own Services

Applications

If you send us a job application, we will process the personal data you provide therein in order to review your application and contact you. Your personal data will not be disclosed to third parties without your explicit consent, unless we are legally obliged to do so, you have requested such disclosure, or the data transfer is necessary for the initiation or execution of a contractual relationship with you or for the application process. The legal basis for this is Article 6(1)(a) and (b) GDPR, Article 88(1) GDPR, and Section 26(1) of the German Federal Data Protection Act (BDSG).

We delete applications no later than three months after the application process is completed. If the data is still required after the conclusion of the application process for the purpose of legal prosecution, data processing may be carried out based on the requirements of Article 6 GDPR, particularly for the purpose of safeguarding legitimate interests in accordance with Article 6(1)(f) GDPR. Our legitimate interest in this case lies in the assertion or defense of legal claims.

If your application is successful, we will continue to process your personal data for the purpose of the employment relationship.

If you have expressly given your consent, you may revoke it at any time with future effect, whereupon we will delete your data.


Scope and Purpose of Data Collection

When you send us an application, we process the related personal data (e.g., contact and communication data, application documents, interview notes, etc.) to the extent necessary for deciding on the establishment of an employment relationship. The legal basis for this is Section 26 of the revised BDSG (for initiating an employment relationship under German law), Article 6(1)(b) GDPR (general contract initiation), and – if you have given consent – Article 6(1)(a) GDPR. Consent can be withdrawn at any time. Your personal data will be shared within our company only with individuals involved in processing your application.

If the application is successful, the data you submitted will be stored in our data processing systems for the purpose of managing the employment relationship, based on Section 26 BDSG and Article 6(1)(b) GDPR.


Duration of Storage

Stored server log files and IP addresses are deleted no later than seven days after collection.

Session cookies are automatically deleted after the session ends. Other cookies are stored on your device, and you have control over their use and deletion (see above).

Data from your inquiries via email or contact form will be processed until your request has been fully resolved. Afterwards, the data will be deleted. However, please note that due to legal obligations related to commercial or tax law, certain data may be subject to retention periods of at least six years (§ 257 HGB) or ten years (§ 147 AO). This may also apply to the content of contact requests and emails.

If you apply via email, we will delete your transmitted personal data and application documents three months after the application process has ended. If your application is successful, we will continue to process your personal data for the purpose of the employment relationship. If you have given explicit consent, you may withdraw it at any time with future effect, and we will delete your data accordingly (see above).

In addition, we review annually whether stored data can be deleted. This is the case if the purpose of processing and the legal basis for the data processing no longer apply and there is no legal retention obligation.


Online Marketing and Affiliate Programs

Amazon Affiliate Program

The operators of this site participate in the Amazon EU Affiliate Program. Amazon advertisements and links to the Amazon.de website are integrated on our pages, through which we can earn advertising fees by means of reimbursement.

Amazon uses cookies to track the origin of the orders. This enables Amazon to recognize that you clicked the affiliate link on our website. The storage of “Amazon cookies” is based on Article 6(1)(f) GDPR. The website operator has a legitimate interest in this, as only through the use of cookies can the amount of the affiliate commission be determined.

For more information about how Amazon uses data, please refer to Amazon’s privacy policy:
https://www.amazon.de/gp/help/customer/display.html/ref=footer_privacy?ie=UTF8&nodeId=3312401

Payment Providers and Resellers

PayPal

On our website, we offer payment via PayPal, among other options. The provider of this payment service is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22–24 Boulevard Royal, L-2449 Luxembourg (hereinafter referred to as “PayPal”).

If you choose to pay via PayPal, the payment data you enter will be transmitted to PayPal.

The transmission of your data to PayPal is based on Article 6(1)(a) GDPR (consent) and Article 6(1)(b) GDPR (processing for the performance of a contract). You may revoke your consent at any time. Revocation does not affect the lawfulness of data processing carried out prior to the revocation.


Klarna

We also offer payment using Klarna services on our website. The provider is Klarna AB, Sveavägen 46, 111 34 Stockholm, Sweden (hereinafter referred to as “Klarna”).

Klarna offers various payment options (e.g., installment payments). If you choose to pay using Klarna (Klarna Checkout solution), Klarna will collect various personal data from you. For details, please refer to Klarna’s privacy policy: https://www.klarna.com/de/datenschutz.

Klarna uses cookies to optimize the use of the Klarna Checkout solution. This optimization constitutes a legitimate interest within the meaning of Article 6(1)(f) GDPR. Cookies are small text files stored on your device that do not cause any harm. They remain on your device until you delete them. For more details on Klarna’s use of cookies, please visit: https://cdn.klarna.com/1.0/shared/content/policy/cookie/de_de/checkout.pdf.

The transmission of your data to Klarna is based on Article 6(1)(a) GDPR (consent) and Article 6(1)(b) GDPR (processing for the performance of a contract). You may revoke your consent at any time. Revocation does not affect the lawfulness of data processing carried out prior to the revocation.


Stripe

We also offer payment via Stripe and its associated payment methods. The provider of this service is Stripe Payments Europe Ltd., Block 4, Harcourt Centre, Harcourt Road, Dublin 2, Ireland.

If you choose to pay using Stripe, the payment data you enter will be transmitted to Stripe. The transmission of your data to Stripe is based on Article 6(1)(a) GDPR (consent) and Article 6(1)(b) GDPR (processing for the performance of a contract). You may revoke your consent at any time. Revocation does not affect the lawfulness of data processing carried out prior to the revocation. All data required for payment processing is used solely for that purpose and transmitted via SSL encryption. Stripe is PCI DSS certified and may transfer, process, and store personal data outside the EU under the Safe Harbor Agreement. Stripe’s privacy policy is available here: https://stripe.com/de/privacy.


Paydirekt

We also offer payment via Paydirekt. The provider is Paydirekt GmbH, Hamburger Allee 26–28, 60486 Frankfurt am Main, Germany (hereinafter referred to as “Paydirekt”).

When you make a payment via Paydirekt, Paydirekt collects various transaction data and forwards it to the bank where you are registered with Paydirekt. In addition to the data required for payment, Paydirekt may also collect further data as part of transaction processing, such as your shipping address or individual items in your shopping cart.

Paydirekt then authenticates the transaction using the authentication method stored with your bank. Afterwards, the payment amount is transferred from your bank account to ours. Neither we nor third parties have access to your account details.

For more information on payment via Paydirekt, please refer to their terms and privacy policy: https://www.paydirekt.de/agb/index.html.


Our Social Media Presence

Data Processing by Social Networks

We maintain publicly accessible profiles on social networks. The specific platforms we use are listed below.

Social networks such as Facebook or Google+ can typically analyze your user behavior extensively when you visit their websites or sites with integrated social media content (e.g., like buttons or ads). Visiting our social media profiles may trigger various data processing activities. Specifically:

If you are logged into your social media account while visiting our profile, the social media platform may associate this visit with your user account. Your personal data may also be collected even if you are not logged in or do not have an account with the platform. This can happen through cookies stored on your device or by capturing your IP address.

Using this data, social media operators can create user profiles and tailor advertisements to your interests both within and outside the platform. If you have an account with a particular network, interest-based ads can appear on all your devices where you’re logged in or have been logged in.

Please note: we cannot track all processing activities on social networks. Additional operations may be carried out by the operators themselves. For more details, please refer to the privacy policies and terms of use of the respective providers.


Legal Basis

Our social media presence is intended to provide a broad online presence, which constitutes a legitimate interest under Article 6(1)(f) GDPR. Any analytics performed by the platforms may be based on other legal grounds, such as user consent under Article 6(1)(a) GDPR, as determined by the network operators.


Controller and Assertion of Rights

If you visit one of our social media profiles (e.g., on Facebook), we are jointly responsible with the platform operator for the data processing that occurs. You may assert your rights (access, rectification, deletion, restriction, data portability, and complaint) either against us or the respective platform.

Please note that despite the joint responsibility, we have limited influence over data processing carried out by the platforms. Our options depend primarily on the platform’s corporate policies.


Data Retention

Data collected directly by us through our social media profiles is deleted when the purpose for storage no longer applies, you request deletion, revoke your consent, or the purpose of storage no longer exists. Stored cookies remain on your device until manually deleted. Statutory retention periods remain unaffected.

We have no control over how long social media platform operators retain your data for their own purposes. For details, consult their respective privacy policies.


Specific Platforms

Facebook

We operate a profile on Facebook. Provider: Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA. Facebook is certified under the EU–US Privacy Shield.

We have signed a joint processing agreement (Controller Addendum) with Facebook defining the responsibilities of both parties. This agreement is available at: https://www.facebook.com/legal/terms/page_controller_addendum

You can manage your ad preferences here: https://www.facebook.com/settings?tab=ads

Facebook’s privacy policy: https://www.facebook.com/about/privacy/

Facebook Fanpage Insights

Facebook Ireland Ltd. provides us with statistical data (“Insights”) related to the use of our Facebook page. This data may include personal information collected during interactions. For further information on the processing involved, see:

Joint controllers under Article 26 GDPR:

Facebook Ireland primarily assumes responsibility for:

  • Articles 12–13 GDPR information duties

  • Data subject rights (Articles 15–21 GDPR)

  • Notifications under Articles 33–34 GDPR

You may assert your rights with either Facebook or us.

We process Insights data based on our legitimate interest in analyzing activity and marketing performance (Art. 6(1)(f) GDPR).

Your rights include:

  • Right to access, rectify, erase, restrict, and transfer your data

  • Right to object (Art. 21 GDPR)

  • Right to withdraw consent (Art. 7 GDPR)

  • Right to lodge a complaint with a supervisory authority (Art. 77 GDPR)

Complaints may be addressed to:


Information on Your Right to Object (Article 21 GDPR)

  1. General Objection
    You have the right to object at any time to the processing of your personal data under Article 6(1)(f) GDPR for reasons arising from your specific situation. We will stop processing unless compelling legitimate grounds override your interests.

  2. Objection to Direct Marketing
    If your data is used for direct advertising, you may object at any time, and your data will no longer be used for this purpose.

Objections may be submitted informally.


Other Platforms