Privacy policy
PRIVACY POLICY
1) INFORMATION ON THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER
1.1 We are pleased that you are visiting our website and thank you for your interest. Below, we inform you about how we handle your personal data when you use our website. Personal data refers to any information that can be used to identify you personally.
1.2 The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is [Store Name]. The controller is the natural or legal person who, alone or jointly with others, determines the purposes and means of processing personal data.
1.3 For security reasons and to protect the transmission of personal data and other confidential content (such as orders or inquiries to the controller), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the string “https://” and the padlock symbol in your browser’s address bar.
2) DATA COLLECTION WHEN VISITING OUR WEBSITE
When using our website purely for informational purposes, i.e., if you do not register or otherwise transmit information to us, we only collect data that your browser transmits to our server (so-called “server log files”). When you access our website, we collect the following data, which is technically necessary to display the website:
-
The website visited
-
Date and time of access
-
Amount of data transferred (in bytes)
-
Referring source/URL
-
Browser used
-
Operating system used
-
IP address used (where applicable: in anonymized form)
Data processing is carried out in accordance with Art. 6(1)(f) GDPR based on our legitimate interest in improving the stability and functionality of our website. The data is not passed on or used for other purposes. However, we reserve the right to retrospectively check the server log files if there are concrete indications of unlawful use.
3) COOKIES
To make your visit to our website more attractive and to enable the use of certain features, we use so-called cookies on various pages. These are small text files stored on your device. Some cookies we use are deleted after the browser session ends (so-called session cookies). Other cookies remain on your device and allow us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies). When cookies are set, they collect and process certain user information to a limited extent, such as browser and location data and IP addresses. Persistent cookies are automatically deleted after a defined period, which may vary depending on the cookie.
In some cases, cookies serve to simplify order processes by storing settings (e.g., remembering the contents of a virtual shopping cart for a later visit). Where we or our partners use cookies that also process personal data, such processing is carried out either under Art. 6(1)(b) GDPR for the performance of a contract or under Art. 6(1)(f) GDPR to safeguard our legitimate interests in providing the best possible functionality and a user-friendly and efficient website experience.
We may work with advertising partners who help make our website more interesting for you. For this purpose, cookies from partner companies (third-party cookies) may also be stored on your device when you visit our website. If we cooperate with such advertising partners, you will be informed individually and separately in the sections below about the use of such cookies and the scope of the information collected in each case.
Please note that you can configure your browser to notify you about the setting of cookies and to allow you to decide individually on their acceptance or to exclude the acceptance of cookies in certain cases or in general. Each browser differs in how it manages cookie settings. These are described in the help menu of each browser, which explains how you can change your cookie preferences. You can find these for the respective browsers at the following links:
-
Internet Explorer: https://support.microsoft.com/de-de/help/17442/windows-internet-explorer-delete-manag e-cookies
-
Firefox: https://support.mozilla.org/de/kb/cookies-erlauben-und-ablehnen
-
Chrome: https://support.google.com/chrome/answer/95647?hl=de&hlrm=en
-
Safari: https://support.apple.com/kb/ph21411?locale=de_DE
-
Opera: https://help.opera.com/en/latest/web-preferences/#cookies
Please note that if you do not accept cookies, the functionality of our website may be limited.
4) CONTACTING US
When you contact us (e.g., via a contact form or email), we collect personal data. The specific data collected through a contact form is shown in the respective form. This data is used exclusively for the purpose of responding to your inquiry and the associated technical administration. The legal basis for the processing of this data is our legitimate interest in responding to your request in accordance with Art. 6(1)(f) GDPR. If your contact is aimed at entering into a contract, the additional legal basis for processing is Art. 6(1)(b) GDPR. Your data will be deleted once your inquiry has been fully resolved, provided that no statutory retention obligations exist.
5) DATA PROCESSING FOR ACCOUNT CREATION AND CONTRACT FULFILLMENT
In accordance with Art. 6(1)(b) GDPR, personal data is also collected and processed if you provide it to us to fulfill a contract or to open a customer account. The data collected is evident from the respective input forms. You can delete your customer account at any time by sending a message to the contact address mentioned above. We store and use the data you provide to process the contract. After the contract has been fully fulfilled or your customer account has been deleted, your data will be blocked for further use and deleted after the statutory retention periods under tax and commercial law, unless you have expressly consented to further use of your data or we are legally permitted to continue using it, in which case you will be informed accordingly.
6) USE OF YOUR DATA FOR DIRECT ADVERTISING
6.1 Subscription to our email newsletter
If you subscribe to our email newsletter, we will regularly send you information about our offers. The only required information for receiving the newsletter is your email address. Providing other data is voluntary and will be used to address you personally. We use the so-called double opt-in procedure to send the newsletter. This means that we will only send you a newsletter by email once you have expressly confirmed to us that you consent to receiving it. We will then send you a confirmation email asking you to confirm that you wish to receive future newsletters by clicking on a link.
By activating the confirmation link, you give us your consent to use your personal data in accordance with Art. 6(1)(a) GDPR. When registering for the newsletter, we store your IP address as provided by your Internet service provider (ISP) as well as the date and time of registration in order to be able to trace any potential misuse of your email address at a later time. The data collected when registering for the newsletter is used solely for advertising purposes via the newsletter.
You can unsubscribe from the newsletter at any time via the link provided in the newsletter or by sending a message to the controller mentioned above. Once you unsubscribe, your email address will be immediately removed from the mailing list, unless you have expressly consented to the further use of your data or we reserve the right to use your data for other purposes permitted by law, which we inform you about in this declaration.
6.2 Sending newsletters to existing customers
If you have provided us with your email address when purchasing goods or services, we reserve the right to regularly send you offers by email for similar goods or services from our range. For this, we do not need to obtain separate consent. Data processing is carried out solely on the basis of our legitimate interest in personalized direct advertising in accordance with Art. 6(1)(f) GDPR. If you initially objected to the use of your email address for this purpose, we will not send you any emails. You may object to the use of your email address for advertising purposes at any time with effect for the future by sending a message to the controller mentioned above. The only costs you incur are those for the basic transmission rates. Upon receiving your objection, we will immediately stop using your email address for advertising purposes.
7) DATA PROCESSING FOR ORDER HANDLING
7.1 The personal data collected by us will be forwarded to the shipping company commissioned with the delivery, to the extent necessary for the delivery of the goods. Your payment data will be forwarded to the authorized credit institution within the framework of payment processing, where this is necessary for the processing of the payment. If payment service providers are used, we will explicitly inform you about this below. The legal basis for data transfer is Art. 6(1)(b) GDPR.
7.2 Use of payment service providers
-
PayPal
When paying via PayPal, credit card via PayPal, direct debit via PayPal, or – if offered – “purchase on account” or “installment payment” via PayPal, we transfer your payment data to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereafter “PayPal”) as part of the payment process.
This transfer takes place pursuant to Art. 6(1)(b) GDPR and only to the extent necessary for payment processing.
PayPal reserves the right to carry out a credit check for the payment methods credit card via PayPal, direct debit via PayPal, or – if offered – “purchase on account” or “installment payment” via PayPal. For this purpose, your payment data may be disclosed to credit agencies based on PayPal’s legitimate interest in determining your creditworthiness pursuant to Art. 6(1)(f) GDPR. The credit report may contain so-called score values (probability values), calculated using scientifically recognized mathematical-statistical methods, including address data.
Further information on data protection, including the credit agencies used, can be found in PayPal’s privacy policy:
https://www.paypal.com/de/webapps/mpp/ua/privacy-full
You can object to this processing of your data at any time by contacting PayPal. However, PayPal may still be authorized to process your personal data if this is necessary for contractual payment processing.
-
SOFORT
If you select the payment method “SOFORT,” payment is processed via the payment service provider SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany (hereafter “SOFORT”), to whom we pass on your information provided during the order process, along with information about your order, in accordance with Art. 6(1)(b) GDPR. SOFORT GmbH is part of the Klarna Group (Klarna Bank AB (publ), Sveavägen 46, 11134 Stockholm, Sweden). Your data is transferred exclusively for the purpose of payment processing and only to the extent necessary for this.
You can find further information on SOFORT’s privacy policy at: https://www.klarna.com/sofort/datenschutz
8) CONTACTING US FOR REVIEW REMINDERS
Own review reminder (no use of a customer review system)
We use your email address for a one-time reminder to submit a review of your order using our review system, provided that you have given us your explicit consent to do so during or after placing your order in accordance with Art. 6(1)(a) GDPR.
You can revoke your consent at any time by contacting the data controller.
USE OF SOCIAL MEDIA: SOCIAL PLUGINS
9.1 Facebook plugins with Shariff solution
Our website uses social plugins (“plugins”) from the social network Facebook, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA (“Facebook”).
To better protect your data when visiting our website, these buttons are not fully integrated plugins but only embedded using an HTML link. This ensures that no connection is established to Facebook servers when a page containing such buttons is accessed. Only if you click the button will a new browser window open, loading the Facebook page where you can interact with the plugins (after logging in if necessary).
Facebook Inc. is certified under the EU-U.S. Privacy Shield Framework, ensuring compliance with EU data protection levels.
For information on the purpose and scope of data collection, further processing and use by Facebook, and your rights and privacy settings, please refer to Facebook’s privacy policy:
https://www.facebook.com/policy.php
9.2 Google+ plugins with Shariff solution
Our website uses social plugins (“plugins”) from the Google+ network, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
These buttons are embedded using an HTML link to ensure no connection is established to Google+ servers unless you click the button. When clicked, a new browser window opens and the Google+ page is loaded, where you can interact with the plugins (after logging in if needed).
Google LLC is certified under the EU-U.S. Privacy Shield Framework.
You can find more information on Google’s privacy policy here:
https://www.google.com/intl/no/policies/privacy/
9.3 Instagram plugin with Shariff solution
Our website uses plugins from the Instagram service, operated by Instagram LLC., 1601 Willow Rd, Menlo Park, CA 94025, USA (“Instagram”).
These buttons are also embedded via an HTML link to prevent automatic connection to Instagram servers. Clicking the button opens a new browser window that loads Instagram’s page, where you can interact with plugins (after logging in if applicable).
Instagram LLC is certified under the EU-U.S. Privacy Shield Framework.
More on Instagram’s privacy policy:
https://help.instagram.com/155833707900388/
ONLINE MARKETING
10.1 DoubleClick by Google
This website uses the online marketing tool DoubleClick by Google, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“DoubleClick”).
DoubleClick uses cookies to display ads that are relevant to users, improve campaign performance reporting, or prevent users from seeing the same ads multiple times. Using a cookie ID, Google identifies which ads have been shown in which browser and can thus prevent them from being displayed repeatedly. The processing is carried out based on our legitimate interest in the optimal marketing of our website pursuant to Art. 6(1)(f) GDPR.
DoubleClick cookies can also track conversions related to ad requests. For example, this occurs when a user views a DoubleClick ad and later visits the advertiser’s website using the same browser and makes a purchase. According to Google, DoubleClick cookies do not contain any personal data.
Due to the marketing tools used, your browser automatically establishes a direct connection with Google’s servers. We have no control over the scope and further use of the data collected by Google through the use of this tool and therefore inform you to the best of our knowledge: By integrating DoubleClick, Google is informed that you have accessed the relevant part of our website or clicked on an ad from us. If you are registered with a Google service, Google can associate the visit with your account. Even if you are not registered or logged in with Google, it is still possible that Google will obtain and store your IP address.
If you wish to object to this tracking process, you can disable cookies for conversion tracking by setting your browser to block cookies from the domain www.googleadservices.com (https://www.google.de/settings/ads). Note that this setting will be deleted if you clear your cookies. Alternatively, you can visit the Digital Advertising Alliance website at www.aboutads.info to learn more about setting preferences related to cookies. You can also configure your browser to notify you before cookies are set and decide individually whether to accept them or to block cookies entirely. Disabling cookies may limit the functionality of our website.
Google LLC, based in the USA, is certified under the “Privacy Shield” framework, which ensures compliance with European data protection levels.
You can find more information on DoubleClick’s privacy policy at: https://www.google.de/policies/privacy/
10.2 Use of Google AdWords Conversion Tracking
This website uses the online advertising program “Google AdWords” and, as part of Google AdWords, conversion tracking provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). We use Google AdWords to draw attention to our attractive offers through advertisements (called Google AdWords) on external websites. We can assess the success of individual advertising campaigns based on the data from the advertising campaigns. Our interest is to show you ads that are of interest to you, to make our website more attractive to you, and to calculate advertising costs fairly.
The cookie for conversion tracking is set when a user clicks on a Google ad. Cookies are small text files that are stored on your device. These cookies usually expire after 30 days and are not intended to personally identify users. If a user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user clicked on the ad and was redirected to this page. Each Google AdWords customer receives a different cookie. Cookies cannot be tracked across websites of AdWords customers. The information collected using the conversion cookie is used to generate conversion statistics for AdWords advertisers who have opted for conversion tracking. Advertisers learn the total number of users who clicked on their ad and were redirected to a page tagged with a conversion tracking tag. However, they do not receive any information that personally identifies users.
If you do not wish to participate in tracking, you can opt out by disabling the Google conversion tracking cookie via your browser settings. You will then not be included in the conversion tracking statistics. We use Google AdWords based on our legitimate interest in targeted advertising in accordance with Art. 6(1)(f) GDPR.
Google LLC, based in the USA, is certified under the “Privacy Shield” framework, which ensures compliance with European data protection levels.
More information on Google’s privacy policy can be found at: https://www.google.de/policies/privacy/
You can permanently opt out of cookies for advertising settings by preventing their storage by adjusting your browser settings or by downloading and installing the browser plugin available at: https://www.google.com/settings/ads/plugin?hl=no
Please note that some functions of this website may not work properly or may be limited if you disable the use of cookies.
RETARGETING / REMARKETING / RECOMMENDATION ADVERTISING
Facebook Custom Audience via Pixel Method
This website uses the “Facebook Pixel” provided by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA (“Facebook”). If explicit consent is given, user behavior can be tracked after users have viewed or clicked on a Facebook ad. This process is used to evaluate the effectiveness of Facebook ads for statistical and marketing purposes and may help optimize future advertising strategies.
The data collected is anonymous to us, meaning it does not allow us to draw any conclusions about the user’s identity. However, the data is stored and processed by Facebook, allowing a connection to the respective user profile. Facebook may also use the data for its own advertising purposes in accordance with its data usage policy (https://www.facebook.com/about/privacy/).
You may allow Facebook and its partners to display ads on and off Facebook. A cookie may also be stored on your device for these purposes.
These processing operations only take place if explicit consent is given in accordance with Art. 6(1)(a) GDPR. Consent for the use of Facebook Pixel may only be granted by users over the age of 13. If you are younger, you must ask your parents or guardians for permission.
Facebook Inc., based in the USA, is certified under the “Privacy Shield” framework, ensuring compliance with the data protection standards applicable in the EU.
To disable the use of cookies on your computer, you can configure your browser to prevent cookies from being stored in the future, or you can delete already stored cookies. Disabling all cookies may result in some functions of our website no longer working.
You can also disable the use of third-party cookies, such as those from Facebook, via the Digital Advertising Alliance website: https://www.aboutads.info/choices/
Google AdWords Remarketing
Our website uses the features of Google AdWords Remarketing, which enables us to advertise this website in Google search results and on third-party websites. The provider is Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). For this purpose, Google sets a cookie in your browser that automatically enables interest-based advertising using a pseudonymous cookie ID based on the pages you have visited. The processing is carried out based on our legitimate interest in the optimal marketing of our website pursuant to Art. 6(1)(f) GDPR.
Further data processing will only occur if you have consented to Google linking your browsing and app history to your Google Account and using information from your Google Account to personalize the ads you see online. If you are logged into Google while visiting our website, Google will use your data together with Google Analytics data to create and define target audiences for cross-device remarketing. For this purpose, Google temporarily links your personal data to Google Analytics data to form audiences.
You can permanently disable the use of cookies for ad personalization by adjusting your browser settings or by downloading and installing the browser plugin available via the following link: https://www.google.com/settings/ads/onweb/
Alternatively, you can visit the Digital Advertising Alliance at www.aboutads.info to learn more about settings related to cookie use. You can also configure your browser to notify you when cookies are set and decide individually whether to accept them or block them in general. Disabling cookies may limit the functionality of our website.
Google LLC, based in the USA, is certified under the “Privacy Shield” framework, ensuring compliance with the data protection standards applicable in the EU.
More information and Google’s privacy policy on advertising can be found here: https://www.google.com/policies/technologies/ads/
-
RIGHTS OF THE DATA SUBJECT
13.1 Applicable data protection laws grant you comprehensive rights regarding the processing of your personal data, which we inform you about below:
-
Right of access pursuant to Art. 15 GDPR: You have the right in particular to obtain information about your personal data we process, the purposes of the processing, the categories of personal data processed, the recipients or categories of recipients to whom your data have been or will be disclosed, the planned retention period or the criteria for determining it, the existence of the right to rectification, erasure, restriction of processing, objection to processing, the right to lodge a complaint with a supervisory authority, the origin of your data if they were not collected by us, the existence of automated decision-making including profiling and, where applicable, meaningful information about the logic involved and the significance and envisaged consequences of such processing, as well as your right to be informed about what safeguards exist pursuant to Art. 46 GDPR if your data are transferred to third countries;
-
Right to rectification pursuant to Art. 16 GDPR: You have the right to the immediate correction of inaccurate data concerning you and/or the completion of your incomplete data stored by us;
-
Right to erasure pursuant to Art. 17 GDPR: You have the right to request the deletion of your personal data if the conditions of Art. 17(1) GDPR are met. However, this right does not apply if processing is necessary for exercising the right to freedom of expression and information, for compliance with a legal obligation, for reasons of public interest, or for the establishment, exercise, or defense of legal claims;
-
Right to restriction of processing pursuant to Art. 18 GDPR: You have the right to request the restriction of the processing of your personal data if the accuracy of your data is contested by you, if you oppose the erasure of your data due to unlawful processing and instead request restriction of their use, if you need the data for the establishment, exercise, or defense of legal claims after we no longer need them for the purpose of processing, or if you have objected to processing pending verification of whether our legitimate grounds override yours;
-
Right to notification pursuant to Art. 19 GDPR: If you have exercised your right to rectification, erasure, or restriction of processing, the controller is obligated to inform all recipients to whom your personal data have been disclosed about this rectification or erasure of data or restriction of processing, unless this proves impossible or involves disproportionate effort. You have the right to be informed about these recipients.
-
Right to data portability pursuant to Art. 20 GDPR: You have the right to receive your personal data, which you have provided to us, in a structured, commonly used, and machine-readable format, or to request transmission to another controller, where technically feasible;
-
Right to withdraw consent pursuant to Art. 7(3) GDPR: You have the right to withdraw previously given consent to the processing of your data at any time with future effect. Upon withdrawal, we will immediately delete the affected data unless further processing can be based on a legal basis without consent. Withdrawal of consent does not affect the lawfulness of processing carried out before the withdrawal;
-
Right to lodge a complaint pursuant to Art. 77 GDPR: If you believe that the processing of your personal data infringes the GDPR, you have the right to lodge a complaint with a supervisory authority, particularly in the Member State of your residence, workplace, or the location of the alleged infringement, without prejudice to any other administrative or judicial remedy.
13.2 RIGHT TO OBJECT
IF WE PROCESS YOUR PERSONAL DATA ON THE BASIS OF OUR LEGITIMATE INTEREST FOLLOWING A BALANCING OF INTERESTS, YOU HAVE THE RIGHT TO OBJECT TO THIS PROCESSING AT ANY TIME WITH FUTURE EFFECT FOR REASONS ARISING FROM YOUR PARTICULAR SITUATION.
IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL CEASE PROCESSING THE AFFECTED DATA. HOWEVER, FURTHER PROCESSING MAY BE RETAINED IF WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING THAT OVERRIDE YOUR INTERESTS, FUNDAMENTAL RIGHTS, AND FREEDOMS, OR IF THE PROCESSING SERVES TO ESTABLISH, EXERCISE, OR DEFEND LEGAL CLAIMS.
IF YOUR PERSONAL DATA ARE PROCESSED FOR DIRECT MARKETING PURPOSES, YOU HAVE THE RIGHT TO OBJECT TO SUCH PROCESSING AT ANY TIME. YOU MAY EXERCISE THIS RIGHT AS DESCRIBED ABOVE.
IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL STOP PROCESSING YOUR DATA FOR DIRECT MARKETING PURPOSES.
RETENTION PERIOD OF PERSONAL DATA
The retention period of personal data is based on the respective statutory retention period (e.g. commercial and tax retention periods). After the deadline expires, the corresponding data are routinely deleted, provided they are no longer necessary for contract fulfillment or initiation and/or there is no longer a legitimate interest on our part for further storag
-