Privacy Policy
PRIVACY POLICY
1) INFORMATION ABOUT THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER
1.1 We are pleased that you are visiting our website and thank you for your interest. Below, we inform you about the processing of your personal data when using our website. Personal data refers to all data that can personally identify you.
1.2 The data controller for this website, as defined by the General Data Protection Regulation (GDPR), is [Store Name]. The data controller is the natural or legal person who determines the purposes and means of processing personal data, either alone or jointly with others.
1.3 This website uses SSL or TLS encryption for security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries sent to the controller). You can recognize an encrypted connection by the "https://" string and the lock symbol in your browser's address bar.
2) DATA COLLECTION WHEN VISITING OUR WEBSITE
If you use our website for purely informational purposes, meaning you do not register or provide us with any other information, we only collect the data your browser transmits to our server (known as "server log files"). When you visit our website, we collect the following data necessary to display the website:
- The specific page visited on our website
- Date and time of access
- Amount of data transmitted in bytes
- Source/reference from which you accessed the page
- Browser used
- Operating system used
- IP address used (if applicable, anonymized)
Data processing is carried out in accordance with Article 6(1)(f) GDPR based on our legitimate interest in improving the stability and functionality of our website. The data is not transferred or used for other purposes. However, we reserve the right to retrospectively review server log files if there are concrete indications of illegal use.
3) COOKIES
To make visiting our website more appealing and to enable certain features, we use cookies on various pages. These are small text files stored on your device. Some cookies are deleted after the end of your browser session (session cookies), while others remain on your device and enable us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies).
Cookies may collect and process user-specific information, such as browser and location data or IP address values, to a limited extent. Persistent cookies are automatically deleted after a specific period, which may vary depending on the cookie.
Cookies partly serve to simplify ordering processes by storing settings (e.g., remembering the contents of a virtual shopping cart for a future visit). Insofar as personal data is processed by individual cookies used by us, processing occurs in accordance with Article 6(1)(b) GDPR for the execution of a contract or in accordance with Article 6(1)(f) GDPR to safeguard our legitimate interests in providing the best possible functionality and a customer-friendly visit to our website.
We may collaborate with advertising partners who help make our online presence more interesting for you. For this purpose, third-party cookies may also be stored on your device when visiting our website. If we collaborate with such advertising partners, you will be informed individually and separately in the sections below about the use of such cookies and the scope of the information collected.
Cookie settings for different browsers:
You can configure your browser to notify you about the placement of cookies and decide whether to accept them individually, refuse them in specific cases, or generally. Each browser differs in its cookie management settings. These settings are described in the help menu of each browser, which explains how to modify cookie preferences.
- Internet Explorer: https://support.microsoft.com/en-us/help/17442/windows-internet-explorer-delete-manage-cookies
- Firefox: https://support.mozilla.org/en-US/kb/enable-and-disable-cookies-website-preferences
- Chrome: https://support.google.com/chrome/answer/95647?hl=en
- Safari: https://support.apple.com/en-us/guide/safari/sfri11471/mac
- Opera: https://help.opera.com/en/latest/web-preferences/#cookies
Please note that if cookies are not accepted, the functionality of our website may be limited.
4) CONTACTING US
Personal data is collected when you contact us (e.g., via a contact form or email). The specific data collected in the case of a contact form is evident from the form itself. This data is stored and used solely to respond to your inquiry or for related technical administration.
The legal basis for processing the data is our legitimate interest in responding to your inquiry per Article 6(1)(f) GDPR. If your contact aims at concluding a contract, an additional legal basis for processing is Article 6(1)(b) GDPR. Your data will be deleted after the final resolution of your inquiry, provided that this does not conflict with legal retention obligations.
5) PROCESSING DATA FOR ACCOUNT CREATION AND CONTRACT EXECUTION
Personal data is collected and processed in accordance with Article 6(1)(b) GDPR if you provide it to us to execute a contract or open a customer account. Data collected is outlined in the respective input forms. Deleting your customer account is possible at any time by notifying the controller at the above address.
Your data will be stored and used for contract execution purposes. After complete fulfillment of the contract or deletion of your customer account, your data will be blocked and deleted following applicable tax and commercial law retention periods unless you have expressly consented to further use or we reserve the right to legally permitted further data usage, of which we inform you in this declaration.
6) USE OF YOUR DATA FOR DIRECT ADVERTISING PURPOSES
6.1 Subscription to Our Email Newsletter
If you subscribe to our email newsletter, we will regularly provide information about our offers. Only your email address is required for the newsletter. Providing additional data is optional and helps us address you personally. We use the double opt-in process for newsletter registration. This means we will only send you a newsletter if you have explicitly confirmed that you agree to receive newsletters. We will then send a confirmation email asking you to confirm via a specific link that you wish to receive future newsletters.
By activating the confirmation link, you consent to the use of your personal data under Article 6(1)(a) of the GDPR. When registering for the newsletter, we store your IP address provided by the Internet Service Provider (ISP) as well as the date and time of registration to trace any misuse of your email address at a later date. The data collected during the newsletter registration process will be used exclusively for promotional purposes through the newsletter.
You can unsubscribe at any time by clicking the link in the newsletter or by notifying the contact person mentioned at the beginning of this statement. Upon unsubscribing, your email address will be promptly removed from the newsletter distribution list unless you have explicitly consented to further use of your data or we are legally entitled to retain such data, which we will inform you about in this declaration.
6.2 Sending Email Newsletters to Existing Customers
If you provide your email address when purchasing goods or services, we may use it to send regular offers for similar goods or services. This does not require separate consent. The data processing is based on our legitimate interest in personalized direct marketing under Article 6(1)(f) of the GDPR.
If you initially objected to the use of your email address for this purpose, we will not send any emails. You can object to the use of your email for advertising at any time by contacting the person mentioned at the beginning of this declaration. Basic transmission costs apply for such communications. Upon receiving your objection, we will immediately cease using your email for advertising purposes.
7. DATA PROCESSING FOR ORDER PROCESSING
7.1 Sharing Personal Data for Order Fulfillment
To fulfill your order, we share your personal data with the transportation company responsible for delivery insofar as it is necessary to deliver the goods. For payment processing, we may share your payment data with the authorized financial institution as needed. If we employ third-party payment service providers, you will be explicitly informed below. The legal basis for this data sharing is Article 6(1)(b) of the GDPR.
7.2 Use of Payment Service Providers (PSPs)
-
PayPal
When using PayPal for payment, your payment data is transferred to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg ("PayPal") as part of payment processing. This transfer occurs under Article 6(1)(b) of the GDPR and only to the extent necessary for payment processing.
PayPal may perform a credit check for certain payment methods, such as credit card payments, direct debits, or "purchase on account." For this purpose, your payment data may be shared with credit reference agencies under Article 6(1)(f) of the GDPR. The results may influence PayPal's decision to offer the respective payment method. Further details are available in PayPal's privacy policy: https://www.paypal.com/de/webapps/mpp/ua/privacy-full.
-
SOFORT
When choosing the "SOFORT" payment method, payments are processed by SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany. Your payment data is shared with SOFORT solely to process the payment. More information about SOFORT's data protection practices can be found at: https://www.klarna.com/sofort/datenschutz.
8. EVALUATION REMINDER
We use your email address to send a one-time reminder to evaluate your order, provided you have explicitly consented to this during or after your order under Article 6(1)(a) of the GDPR. You can revoke this consent at any time.
9. USE OF SOCIAL MEDIA: SOCIAL PLUGINS
9.1 Facebook Plugins with Shariff Solution
Our website uses plugins from Facebook, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook"). These buttons are integrated using HTML links, ensuring no connection to Facebook servers unless clicked. Clicking opens a new browser window to interact with Facebook plugins. Details about Facebook’s data policies are available at: https://www.facebook.com/policy.php.
9.2 Google+ Plugins with Shariff Solution
Our website integrates Google+ plugins via HTML links. Clicking the plugin button opens a new browser window to interact with Google+. Information on Google’s data practices can be found at: https://www.google.com/intl/de/policies/privacy/.
9.3 Instagram Plugins with Shariff Solution
Instagram plugins on our site are integrated as HTML links to ensure no automatic connection to Instagram servers. Details about Instagram’s privacy practices are available at: https://help.instagram.com/155833707900388/.
12. RETARGETING / REMARKETING / RECOMMENDATION ADVERTISING
Facebook Custom Audience via Pixel
This website uses Facebook’s "pixel" for tracking user interactions with advertisements. Data collected is anonymized for us but stored by Facebook for potential advertising purposes. Full details on Facebook’s privacy policy can be found at: https://www.facebook.com/about/privacy/. Users over 13 years of age can consent to this processing.
Cookies can be disabled to block such tracking. Visit the Digital Advertising Alliance website for more options: https://www.aboutads.info/choices/.
12. Remarketing Google AdWords
Our website uses Google AdWords Remarketing functions, enabling us to advertise this website in Google search results and on third-party websites. The provider is Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). For this purpose, Google places a cookie in your device's browser, which allows interest-based advertising through a pseudonymous cookie ID based on the pages you visit. This processing is conducted based on our legitimate interest in optimally marketing our website under Article 6(1)(f) of the GDPR.
No further data processing occurs unless you have authorized Google to link your browsing history across the web and apps to your Google account and use information from your Google account to personalize the ads you see online. In this case, if you are logged into Google while visiting our website, Google uses your data in combination with Google Analytics data to create and define cross-device remarketing target groups. For this purpose, Google temporarily links your personal data to Google Analytics data to form target audiences.
You can permanently disable cookies for ad preferences by downloading and installing the browser plug-in available at the following link: https://www.google.com/settings/ads/onweb/. Alternatively, you can contact the Digital Advertising Alliance at www.aboutads.info to learn about cookie settings and configuration options. Lastly, you can configure your browser to inform you about the placement of cookies, enabling you to decide on a case-by-case basis whether to accept or reject them. If you do not accept cookies, the functionality of our website may be limited.
Google LLC, based in the USA, is certified under the EU-US Privacy Shield, which guarantees compliance with the data protection level applicable in the EU. Further information and Google's privacy policy for advertising are available at https://www.google.com/policies/technologies/ads/.
13. Rights of Data Subjects
13.1 Rights to Information and Intervention
Applicable data protection law grants you the following extensive data subject rights (rights to information and intervention) regarding the processing of your personal data:
-
Right to Information (Art. 15 GDPR): You have the right to obtain information about your personal data processed by us, including the purposes of processing, the categories of personal data processed, recipients or categories of recipients to whom your data has been disclosed, the planned retention period or criteria for determining it, the existence of a right to rectification, erasure, restriction of processing, or objection, the right to lodge a complaint with a supervisory authority, the origin of your data if not collected by us, the existence of automated decision-making (including profiling), and meaningful information about the logic, significance, and intended effects of such processing. You are also entitled to information about guarantees pursuant to Article 46 GDPR when transferring your data to third countries.
-
Right to Rectification (Art. 16 GDPR): You have the right to request the correction of inaccurate data concerning you and/or the completion of incomplete data stored with us without undue delay.
-
Right to Erasure (Art. 17 GDPR): You have the right to request the deletion of your personal data if the requirements of Article 17(1) GDPR are met. However, this right does not apply if processing is necessary to exercise the right to freedom of expression and information, comply with a legal obligation, reasons of public interest, or to establish, exercise, or defend legal claims.
-
Right to Restriction of Processing (Art. 18 GDPR): You have the right to request the restriction of processing your personal data as long as the accuracy of your data is being verified, if you oppose the deletion of your data due to unlawful processing and request restriction instead, if you need your data to establish, exercise, or defend legal claims after we no longer need this data, or if you object to processing for reasons related to your particular situation, as long as it is not determined whether our legitimate reasons outweigh yours.
-
Right to Notification (Art. 19 GDPR): If you have asserted your right to rectification, erasure, or restriction of processing, the data controller is obligated to inform all recipients to whom the personal data was disclosed, unless this proves impossible or involves disproportionate effort. You are entitled to be informed of these recipients.
-
Right to Data Portability (Art. 20 GDPR): You have the right to receive your personal data that you provided to us in a structured, commonly used, and machine-readable format or to request its transfer to another controller, where technically feasible.
-
Right to Withdraw Consent (Art. 7(3) GDPR): You can withdraw your consent to data processing at any time with future effect. Upon withdrawal, we will delete the data concerned unless further processing can be based on a legal basis without consent. Withdrawal does not affect the legality of processing based on consent before its withdrawal.
-
Right to Lodge a Complaint (Art. 77 GDPR): If you believe that the processing of your personal data violates data protection laws, you have the right to lodge a complaint with a supervisory authority, particularly in the member state of your residence, workplace, or the location of the alleged infringement, without prejudice to other administrative or judicial remedies.
13.2 Right to Object
If we process your personal data based on a balance of interests due to our overriding legitimate interest, you have the right to object to this processing at any time for reasons arising from your particular situation, with effect for the future.
If you exercise your right to object, we will cease processing the data concerned unless we demonstrate compelling legitimate grounds for processing that outweigh your interests, rights, and freedoms, or the processing serves the establishment, exercise, or defense of legal claims.
If we process your personal data for direct marketing purposes, you have the right to object at any time to such processing. Upon exercising your right to object, we will stop processing your personal data for these purposes.
14. Retention Period for Personal Data
The retention period for personal data is determined based on statutory retention periods (e.g., commercial and tax retention periods). After the expiration of these periods, the relevant data is routinely deleted, provided it is no longer required to fulfill or initiate a contract and/or there is no legitimate interest in its continued retention.