Dieser Artikel ist auch verfügbar in: Deutsch

1) Introduction and contact details of the person responsible

1.1 We are pleased that you are visiting our website and thank you for your visit Interest. Below we will inform you about how your personal data is handled when you use our website. Personal data is all data with which you can be personally identified.

1.2 Responsible for data processing on this website within the meaning of General Data Protection Regulation (GDPR).

Inhaberin: Esther Lichtel
Starpaint e.K.
An der Ziegelhütte 14
97320 Mainstockheim
Deutschland.

Tel.: 09321-927982


E-Mail:  

STARPAINT Industries Industrieausrüster für Oberflächentechnik in der Lackindustrie Austria, Germany, Switzerland, Netherlands, France, Belguim, Czechia, Poland, EU.

Internet: www.starpaint.de

The one for processing The person responsible for personal data is the natural or legal person who, alone or jointly with others, decides on the purposes and means of processing personal data.

2) Data collection when you visit our website

2.1 When using our website for informational purposes only, i.e. if you are not If you register or otherwise provide us with information, we only collect data that your browser transmits to the site server (so-called “server log files”). When you access our website, we collect the following data, which is technically necessary for us to display the website to you:

-Our visited website

-Date and time at the time of access- Amount of data sent in bytes

-Source/reference from which you came to the page- Browser used

-Operating system used

-IP address used (if necessary: ​​in anonymized form)

The processing takes place in accordance with Article 6 Paragraph 1 Letter f of the GDPR on the basis of our authorization Interested in improving the stability and functionality of our website. The data will not be passed on or used in any other way. However, we reserve the right to subsequently check the server log files if there are concrete indications of illegal use.

2.2 This website uses data for security reasons and to protect transmission personal data and other confidential content (e.g. orders or inquiries to the person responsible) an SSL or. TLS encryption. You can recognize an encrypted connection by the string “https://” and the lock symbol in your browser bar.

3) Hosting & Content Delivery Network

Cloudflare

We use a content delivery network from the following provider: Cloudflare Inc., 101Townsend St. San Francisco, CA 94107, USA

This service allows us to store large media files such as graphics, page content or Deliver scripts faster via a network of regionally distributed servers. The processing is carried out to protect our legitimate interest in improving the stability and functionality of our website in accordance with Article 6 (1) (f) GDPR. We have concluded an order processing agreement with the provider, which ensures the protection of our site visitors’ data and prohibits unauthorized disclosure to third parties.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

We host the content of our website with the following providers:

Unser Hosting-Service ist Hostgator, der mit der GDPR konform ist. Als Sicherheitsmaßnahme verarbeiten wir den Datenverkehr über einen sicheren CDN-Dienst von Cloudflare (bitte lesen Sie den Text unten).

Hostgator ist für die Verarbeitung der personenbezogenen Daten verantwortlich, die wir ihnen zur Verfügung stellen, wenn ein Kunde ein Konto für den Kauf eines Produkts einrichtet. Ab dem 25. Mai 2018 wird Hostgator die personenbezogenen Daten aus der EU nicht mehr veröffentlichen. Sie verlangen von uns als Unternehmen, dass wir bei der Verarbeitung von Daten in Bezug auf die GDPR konform sind. Als Unternehmen in der EU sind wir mit den Datenschutzbestimmungen vollständig konform. Wenn Sie Fragen haben, können Sie sich an den Datenschutzbeauftragten von Hostgator wenden: 

4) Cookies

Um to make visiting our website attractive and the use of certain To enable functions, we use cookies, which are small text files that are stored on your device. Some of these cookies are automatically deleted after you close the browser (so-called “session cookies”), while some of these cookies remain on your device for a longer period of time and enable you to save page settings (so-called “persistent cookies”). In the latter case, you can find out the storage period in the overview of the cookie settings in your web browser.

If individual cookies we use also contain personal data are processed, the processing takes place in accordance with Art. 6 Para. 1 lit. b GDPR either to execute the contract, in accordance with Art. 6 Para. 1 lit GDPR to protect our legitimate interests in the best possible functionality of the website as well as a customer-friendly and effective design of the page visit.

You can set your browser to inform you when cookies are set and can decide individually whether to accept them or exclude the acceptance of cookies for certain cases or in general.

Please note that if you do not accept cookies, the functionality of our website will be affected Website may be restricted.

5) Contact us

5.1 WhatsApp business

We offer visitors to our website the opportunity to contact us via the WhatsApp messaging service of WhatsApp Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland. For this we use the so-called “business version” of WhatsApp.

If you contact us on the occasion of a specific transaction (e.g. one that has been carried out Order) via WhatsApp, we store and use the mobile phone number you use on WhatsApp as well as – if provided – your first and last name in accordance with Art. 6 Para. 1 lit. b. GDPR to process and respond to your request. On the same legal basis, we may ask you via WhatsApp to provide additional data (order number, customer number, address or email address) in order to be able to assign your request to a specific process.

NUse our WhatsApp contact for general inquiries (e.g Range of services, availability or our website) we store and use the mobile phone number you use on WhatsApp as well as – if provided – your first and last name in accordance with Art. 6 Para. 1 lit. f GDPR on the basis of our legitimate interest in the efficient and Prompt provision of the requested information.

Your data will only ever be used to answer your request via WhatsApp. A disclosure to third parties does not occur.

Please note that WhatsApp Business has access to our address book receives the mobile device used for this purpose and automatically transfers the telephone numbers stored in the address book to a server of the parent company Meta Platforms Inc. in the USA. To operate our WhatsApp business account, we use a mobile device whose address book only contains the

WhatsApp contact details of users who communicate with us via WhatsApp are stored also came into contact.

This ensures that every person whose WhatsApp contact details are in stored in our address book, has already consented to the transmission of his WhatsApp phone number from the address books of his chat contacts in accordance with Art. 6 Para. 1 lit. a GDPR when using the app on his device for the first time by accepting the WhatsApp terms of use. A transmission of data from users who do not use WhatsApp and/or have not contacted us via WhatsApp is therefore excluded.

Purpose and scope of data collection and further processing and use Data through WhatsApp as well as your related rights and setting options to protect your privacy can be found in WhatsApp’s data protection information: https://www.whatsapp.com/legal/?eea=1#privacy-policy

The above-mentioned processing may involve data transfer  Servers come from Meta Platforms Inc. in the USA.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

5.2  As part of contacting us (e.g. via contact form or email)Personal data will be processed – exclusively for the purpose of processing and answering your request and only to the extent necessary for this purpose.

The legal basis for processing this data is our legitimate interest to answer your request in accordance with Art. 6 Para. 1 lit. f GDPR. If your contact is aimed at a contract, the additional legal basis for the processing is Article 6 (1) (b) GDPR. Your data will be deleted if the circumstances indicate that the matter in question has been conclusively clarified and provided that there are no legal retention obligations to the contrary.

6) Comment function

IAs part of the comment function on this website, next to your comment Information about the time the comment was created and the commenter name you chose are also stored and published on this website. Furthermore, your IP address is logged and stored. This storage of the

IP-Adress is done for security reasons and in the event that the data subject violates the rights of third parties through a comment or posts illegal content. We need your email address in order to contact you if a third party should complain that your published content is illegal.

The legal basis for the storage of your data is Article 6 Paragraph 1 Letter b and GDPR. We reserve the right to delete comments if they are criticized by third parties as being unlawful.

7) Data processing when opening a customer account

According to Art. 6 Para. 1 lit. b GDPR, personal data is stored in each case will continue to be collected and processed to the extent necessary if you inform us of this when opening a customer account. You can find out which data is required to open an account in the input mask of the corresponding form on our website.

Your customer account can be deleted at any time by sending a message to the above address of the person responsible. After your customer account has been deleted, your data will be deleted provided that all contracts concluded regarding it have been completely processed, there are no statutory retention periods to the contrary and we have no legitimate interest in further storage.

8) Use of customer data for direct advertising

8.1 Sign up for our email newsletter

If you sign up for our email newsletter, we will regularly send you information about our offers. The only mandatory information for sending the newsletter is your email address. Providing further data is voluntary and is used to address you personally. To send the newsletter, we use the so-called double opt-in procedure, which ensures that you only receive the newsletter once you have expressly confirmed your consent to receive the newsletter by clicking on a verification link sent to the email address provided

By activating the confirmation link, you give us your consent for this Use of your personal data in accordance with Article 6 Paragraph 1 Letter a GDPR. We store your IP address entered by the Internet Service Provider (ISP) as well as the date and time of registration in order to be able to trace any possible misuse of your email address at a later date. The data we collect when registering for the newsletter is used strictly for a specific purpose.

You can subscribe to the newsletter at any time using the link provided in the newsletter or unsubscribe by sending a message to the person responsible mentioned above. Once you have unsubscribed, your email address will be immediately deleted from our newsletter distribution list unless you have expressly consented to further use of your data or we reserve the right to use your data beyond this, which is permitted by law and about which we inform you in this declaration.

8.2 Shopping Cart reminders via email

If you cancel your purchase with us before completing the order, you have the Possibility to receive a one-time reminder via email about the contents of your virtual shopping cart.

The only information you need to send this reminder is your email address. The Providing further data is voluntary and may be used to address you personally. We use the so-called double opt-in procedure to send emails, which ensures that you only receive a notification once you have expressly confirmed your consent to this by clicking on a verification link sent to the email address provided.

By activating the confirmation link, you give us your consent for this Use of your personal data in accordance with Art. 6 Para. 1 lit. a GDPR to send a shopping cart reminder. We store your IP address entered by the Internet Service Provider (ISP) as well as the date and time of registration in order to be able to trace any possible misuse of your email address at a later date. The data we collect when you register for our email notification service is used strictly for the intended purpose.

You can unsubscribe from shopping cart reminders at any time by sending a message to the person responsible listed at the beginning. After you have logged out Your e-mail address will be deleted immediately from our mailing list set up for this purpose, unless you have expressly consented to further use of your data or we reserve the right to use your data beyond this, which is permitted by law and about which we inform you in this declaration.

9) Data processing for order processing

9.1 To the extent necessary for contract processing for delivery and payment purposes, The personal data we collect will be passed on to the commissioned transport company and the commissioned credit institution in accordance with Article 6 Paragraph 1 Letter b of the GDPR.

If we provide you with updates for based on a corresponding contract If you owe goods with digital elements or for digital products, we process the contact details you provided when ordering (name, address, email address) to provide you with an appropriate means of communication within the scope of our legal information obligations in accordance with Article 6 Paragraph 1 Letter c GDPR ( (e.g. by post or email) about upcoming updates within the legally stipulated period. Your contact details will be used strictly for the purpose of communicating updates owed by us and will only be processed by us for this purpose to the extent that this is necessary for the respective information.

We also work with you to process your order/the following Service providers who support us in whole or in part in the implementation of concluded contracts. Certain personal data will be transmitted to these service providers in accordance with the following information.

9.2 Transfer of personal data to shipping service providers

-German postal service

AAs a transport service provider we use the following provider: Deutsche Post AG, Charles-de-Gaulle-Straße 20, 53113 Bonn, Germany

We provide your email address and/or telephone number in accordance with Art. 6 Para. 1 lit. DSGVO to the provider before delivery of the goods for the purpose of agreeing a delivery date or to announce delivery, provided you have given your express consent to this in the ordering process. Otherwise, for the purpose of delivery in accordance with Article 6 Paragraph 1 Letter b GDPR, we will only pass on the name of the recipient and the delivery address to the provider. The data will only be passed on to the extent that this is necessary for the delivery of the goods. In this case, prior coordination of the delivery date with the provider or delivery notification is not possible.

Consent can be given at any time with future effect compared to the above designated person responsible or to the provider. – DHL

AAs a transport service provider we use the following provider: DHL Paket GmbH, Sträßchensweg 10, 53113 Bonn, Germany

We provide your email address and/or telephone number in accordance with Art. 6 Para. 1 lit. DSGVO  to the provider before delivery of the goods for the purpose of agreeing a delivery date or to announce delivery, provided you have given your express consent to this in the ordering process. Otherwise, for the purpose of delivery in accordance with Article 6 Paragraph 1 Letter b GDPR, we will only pass on the name of the recipient and the delivery address to the provider. The data will only be passed on to the extent that this is necessary for the delivery of the goods. In this case, prior coordination of the delivery date with the provider or delivery notification is not possible.

Consent can be given at any time with future effect compared to the above designated person responsible or to the provider. – DHL Freight

AAs a transport service provider we use the following provider: DHL Freight GmbH, Godesberger Allee 102-104, 53175 Bonn, Germany

We provide your email address and/or telephone number in accordance with Art. 6 Para. 1 lit. DSGVO  to the provider before delivery of the goods for the purpose of agreeing a delivery date or to announce delivery, provided you have given your express consent to this in the ordering process. Otherwise, for the purpose of delivery in accordance with Article 6 Paragraph 1 Letter b GDPR, we will only pass on the name of the recipient and the delivery address to the provider. The data will only be passed on to the extent that this is necessary for the delivery of the goods. In this case, prior coordination of the delivery date with the provider or delivery notification is not possible.

Consent can be given at any time with future effect compared to the above designated person responsible or to the provider. – DPD

AAs a transport service provider we use the following provider: DPD Germany GmbH, Wailandtstraße 1, 63741 Aschaffenburg, Germany

We provide your email address and/or telephone number in accordance with Art. 6 Para. 1 lit. DSGVO  to the provider before delivery of the goods for the purpose of agreeing a delivery date or to announce delivery, provided you have given your express consent to this in the ordering process. Otherwise, for the purpose of delivery in accordance with Article 6 Paragraph 1 Letter b GDPR, we will only pass on the name of the recipient and the delivery address to the provider. The data will only be passed on to the extent that this is necessary for the delivery of the goods. In this case, prior coordination of the delivery date with the provider or delivery notification is not possible.

Consent can be given at any time with future effect compared to the above designated person responsible or to the provider.

9.3 Use of payment service providers (payment services)

-Stripe

One or more of the following online payment methods are available on this website Provider available: Stripe Payments Europe Ltd., 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland

If you choose a payment method from the provider where you pay in advance (e.g Credit card payment), your payment data provided during the ordering process (including name, address, bank and payment card information, currency and transaction number) as well as information about the content of your order will be passed on to you in accordance with Art. 6 Para. 1 lit. b GDPR. In this case, your data will be passed on exclusively for the purpose of processing payments with the provider and only to the extent that it is necessary for this purpose.

If you select a payment method in which the provider pays in advance (e.g Invoice or installment purchase or direct debit), you will also be asked to provide certain personal data during the ordering process (first and last name, street, house number, postal code, city, date of birth, email address, telephone number, and if necessary, data on an alternative means of payment). ) to specify.

Um our legitimate interest in determining our solvency In order to protect our customers, we will forward this data to the provider for the purpose of a credit check in accordance with Article 6 Paragraph 1 Letter f of the GDPR. Based on the personal data you provide and other data (such as shopping cart, invoice amount, order history, payment history), the provider checks whether the payment option you have selected can be granted with regard to payment and/or default risks.

The credit report can contain probability values ​​(so-called score values).As far as score values ​​are included in the result of the credit report, they are based on a scientifically recognized mathematical-statistical process. The calculation of the score values ​​includes, but is not limited to, address data.

You can object to this processing of your data at any time by sending us a message or contradict the provider. However, the provider may still be entitled to process your personal data if this is necessary for contractual payment processing.

10) Online Marketing

10.1 Google AdSense

This website uses Google AdSense, a web advertising service provided by Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”). Google AdSense uses so-called cookies, i.e. text files that are stored on your computer and which enable your use of the website to be analyzed. In addition, Google AdSense also uses so-called “web beacons” (small invisible graphics) to collect information. Simple actions such as visitor traffic on the website can be recorded, collected and evaluated. The information generated by the cookie and/or web beacon (including your IP address) about your use of this website are usually transferred to a Google server and stored there. This may also result in a transmission to the Google LLC servers. come to the USA.

Google uses the information obtained in this way to evaluate you to carry out usage behavior with regard to the AdSense advertisements. The IP address transmitted by your browser as part of Google AdSense is not combined with other Google data. The information collected by Google may be transferred to third parties if this is required by law and/or if third parties process this data on behalf of Google.

All the processing described above, in particular reading out information the device used via cookies and/or web beacons will only be carried out if you have given us your express consent to this in accordance with Article 6 Paragraph 1 Letter a of the GDPR. Without this consent, Google AdSense will not be used during your visit to the site.

You can revoke your consent at any time with effect for the future, by deactivating this service in the “cookie consent tool” provided on the website.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

Google’s privacy policy can be viewed here: https://www.google.de/policies/privacy/

10.2 Own affiliate program

IIn connection with the product presentations on our website, we maintain  Our own affiliate program, within which we provide interested third-party website operators with partner links for placement on their websites, which lead to our offers. Cookies are used for the affiliate program, which are generally set on the partner site after clicking on a corresponding partner link and for which we are therefore not responsible under data protection law. Cookies are small text files that are stored on your device in order to be able to trace the origin of transactions (e.g. “sales leads”) that were generated via such links. Among other things, we can see that you clicked the partner link and were redirected to our website. This information is required for payment processing between us and the affiliate partners.

If you want to block the evaluation of user behavior via cookies, you can You can set your browser so that you are informed about the setting of cookies and decide individually whether to accept them or to exclude the acceptance of cookies for certain cases or in general.

11) Web analytics services

11.1 Google Analytics 4

This website uses Google Analytics 4, a web analysis service provided by Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”), which enables an analysis of your use of our website.

By default, Google Analytics uses 4 cookies when you visit the website which are stored as small text modules on your device and collect certain information. The scope of this information also includes your IP address, which, however, is shortened by Google by the last digits in order to exclude any direct personal reference.

The information is transferred to Google servers and further processed there. Transfers to Google LLC based in the USA are also possible.

Google uses the information collected on our behalf to monitor your use of the website Evaluate the website, compile reports on website activity for us and provide other services related to website and internet use. The shortened IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. The data collected as part of the use of Google Analytics 4 is stored for a period of two months and then deleted.

All the processing described above, in particular the setting of cookies on the device used, will only take place if you have given us your express consent in accordance with Article 6 Paragraph 1 Letter a of the GDPR.

Without your consent, Google Analytics 4 will not be used during your period Page visits. You can revoke your consent at any time with future effect. To exercise your right of withdrawal, please deactivate this service using the “cookie consent tool” provided on the website.

We have concluded an order processing agreement with Google that provides protection which ensures the data of our site visitors and prohibits unauthorized disclosure to third parties.

Further legal information about Google Analytics 4 can be found athttps://policies.google.com/privacy?hl=de&gl=de and at https://policies.google.com/technologies/partner-sites

Demographic characteristics

Google Analytics 4 uses the special “demographic characteristics” function and can create statistics that provide information about the age, gender and interests of site visitors. This is done by analyzing advertising and information from third parties. This allows target groups for marketing activities to be identified. However, the data collected cannot be assigned to a specific person and will be deleted after being stored for a period of two months.

Google Signals

AAs an extension to Google Analytics 4, Google Signals can be used on this website can be used to create cross-device reports. If you have activated personalized ads and have linked your devices to your Google account, Google can, subject to your consent to the use of Google Analytics in accordance with Article 6 (1) (a) GDPR, analyze your usage behavior across devices and use database models, including cross-device data Conversions, create. We do not receive any personal data from Google, only statistics. If you want to stop cross-device analysis, you can use the “Personalized Advertising” feature in your settings

Deactivate Google account. To do this, follow the instructions on this page: https://support.google.com/ads/answer/2662922?hl=de Further information about Google Signals can be found at the following link: https://support.google.com/analytics/answer/7532985?hl=de

UserIDs

AAs an extension to Google Analytics 4, the “UserIDs” function can be used on this website.be used. If you have consented to the use of Google Analytics 4 in accordance with Article 6 Para. 1 lit. a GDPR, have set up an account on this website and log in with this account on different devices, your activities, including conversions, can be analyzed across devices become.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

12) Page functionalities

12.1 Youtube

This website uses plugins to display and play videos from the following Provider: Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland

Data can also be transmitted to: Google LLC., USA

If you access a page on our website that contains such a plugin, Your browser establishes a direct connection to the provider’s servers to load the plugin. This involves certain information, including yours

IP-address, transmitted to the provider.

If the playback of embedded videos is started via the plugin, the provider sets We also use cookies to collect information about user behavior, create playback statistics and prevent abusive behavior.

If you are logged into a user account with the provider while you are visiting the site, When you click on a video, your data will be assigned directly to your account. If you do not want it to be associated with your account, you must log out before clicking the play button.

All of the aforementioned processing, in particular the setting of cookies for this purpose Reading information on the device used will only take place if you have given us your express consent to do so in accordance with Article 6 Paragraph 1 Letter a of the GDPR. You can revoke your consent at any time with future effect by deactivating this service using the “cookie consent tool” provided on the website.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

12.2 Google Maps

This website uses an online map service from the following provider: Google Maps(API) from Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”).

Google Maps is a web service for displaying interactive (land) maps display geographical information visually. By using this service, our location will be displayed to you and any journey will be made easier.

Already when calling up those subpages in which the map from Google Maps is integrated, information about your use of our website (such as your IP address) is transmitted to Google servers and stored there; this may also be transmitted to the servers of Google LLC. come to the USA. This occurs regardless of whether Google provides a user account through which you are logged in or whether a user account exists. If you are logged in to Google, your data will be assigned directly to your account. If you do not want your profile to be associated with Google, you must log out before activating the button. Google saves your data (even for users who are not logged in) as usage profiles and evaluates them.

The collection, storage and evaluation are carried out in accordance with Art. 6 Para. 1 lit.f GDPR based on Google’s legitimate interest in the display personalized advertising, market research and/or the needs-based design of Google websites. You have the right to object to the creation of these user profiles, although you must contact Google to exercise this right. If you do not agree to the future transmission of your data to Google when using Google Maps, you also have the option of completely deactivating the Google Maps web service by turning off the JavaScript application in your browser. Google Maps and therefore the map display on this website cannot then be used.

To the extent legally required, we have the processing of your data as described above Data obtained your consent in accordance with Article 6 Paragraph 1 Letter a GDPR. You can revoke your consent at any time with future effect. To exercise your revocation, please follow the option described above for making an objection.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

12.3 Google Web Fonts (local hosting)

This site uses so-called web fonts to display fonts uniformly of the following provider: Google Ireland Limited, Gordon House, 4 Barrow St, Dublin,

D04 E5W5, Ireland

When you access a page, your browser loads the required web fonts into it

Browser cache to display text and fonts correctly and provides a direct Connect to the provider’s servers. Certain browser information, including your IP address, is transmitted to the provider.

Data can also be transmitted to: Google LLC, USA

The processing of personal data in the course of establishing a connection with the provider of the fonts will only be carried out if you have given us your express consent in accordance with Article 6 Paragraph 1 Letter a GDPR. You can revoke your consent at any time with future effect by deactivating this service using the “cookie consent tool” provided on the website. If your browser does not support web fonts, a standard font will be used by your computer.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

You can find more information about Google Fonts at

https://developers.google.com/fonts/faq and in Google’s privacy policy:

https://policies.google.com/privacy?hl=de

12.4 Google reCAPTCHA

On this website we use the CAPTCHA service from the following provider: Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland

Data can also be transmitted to: Google LLC, USA. For the optical The Captcha window is designed by the provider “Google Fonts”, i.e. fonts downloaded from the Internet by Google. No further information is processed than that mentioned above, which is already transmitted to Google via the ReCaptcha functionality .

The service checks whether an entry was made by a natural person or abusive through machine and automated processing, and blocks spam,

DDoS attacks and similar automated malicious access. To ensure, that If an action is carried out by a human and not by an automated bot, Cloudflare Turnstile collects the IP address of the device used, identification data for the type of browser and operating system used, as well as the date and duration of the visit and transmits these to the provider’s servers for evaluation.

The legal basis is our legitimate interest in determining the individual Personal responsibility on the Internet and the avoidance of misuse and spam in accordance with Art. 6 Para. 1 lit. f GDPR.

We have concluded an order processing contract with the provider, which Protects the data of our site visitors and prohibits unauthorized disclosure to third parties.

The provider has agreed to this for data transfers to the USA

EU-US Data Privacy Framework is connected, which is based on Based on an adequacy decision by the European Commission, compliance with the European data protection level is ensured.

12.5 Zoom

For conducting online meetings, video conferences and/or webinars We use this provider: Zoom Video Communications Inc., 55 Almaden Blvd, Suite 600, San Jose, CA 95113, USA

The provider processes different data, depending on the scope of the data processed Data depends on what data you share before or during participation in an online meeting, video conference or webinar. Your data as a communication participant will be processed and stored on the provider’s servers. This may include, in particular, your login details (name, email address, telephone number (optional) and password) and session data (topic,

Subscriber IP address, device information, description (optional).

In addition, image and sound contributions from participants as well as voice input can be included Chats are processed.

For the processing of personal data necessary for the fulfillment of a contract with you (this also applies to processing operations that are necessary to carry out pre-contractual measures), Art. 6 Para. 1 lit. b GDPR serves as the legal basis. If you have given us your consent to process your data, the processing is carried out on the basis of Art. 6 Para. 1 lit. a GDPR. You can revoke your consent at any time with effect for the future.

Otherwise, the legal basis for data processing is the implementation of Online meetings, video conferences or webinars are our legitimate interest in accordance with Article 6 (1) (f) GDPR in the effective implementation of the online meeting, webinar or video conference.

We have concluded an order processing contract with the provider, which…We ensure that the data of our site visitors is protected and unauthorized disclosure to third parties is prohibited.

The provider relies on the transfer of data to the USA Standard contractual clauses from the European Commission, which are intended to ensure compliance with European data protection levels.

12.6 According to the prevailing opinion of the data protection authorities and courts, you are only allowed to use many services

use with consent. This particularly applies to analysis and marketing tools (e.g. Google Analytics or MetaPixel). There is a requirement for consent in particular for the following tools you have selected:

Facebook, Google Maps, Instagram, Pinterest, Tumblr, Twitter, YouTube

12.7 Font Awesome (local hosting)

This site uses Font Awesome to display fonts uniformly. Font Awesome is local

Installed. There is no connection to Fonticons, Inc. servers.

For more information about Font Awesome, please see the Font Awesome privacy policy at:

https://fontawesome.com/privacy

12.8 Cloudflare gymnastics styles

We use Cloudflare Turnstile (hereinafter “Turnstile”) on this website. The provider is Cloudflare Inc., 101 Townsend St., San Francisco, CA 94107, USA (hereinafter “Cloudflare”).

Turnstile is intended to check whether data entry on this website (e.g. in a contact form) is done by a human or by an automated program. To do this, Turnstile analyzes the behavior of website visitors based on various characteristics.

This analysis begins automatically as soon as the website visitor enters a website with Turnstile activated. For analysis, Turnstile evaluates various information (e.g. IP address, how long the website visitor spends on the website or mouse movements made by the user). The data collected during the analysis is forwarded to Cloudflare.

The storage and analysis of the data is based on Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in protecting its web offerings from abusive automated spying and SPAM. If appropriate consent has been requested, processing is carried out exclusively on the basis of Article 6 Paragraph 1 Letter a GDPR and Section 25 Paragraph 1

TTDSG, insofar as the consent includes the storage of cookies or access to information on the user’s end device (e.g. device fingerprinting) within the meaning of the TTDSG. Consent can be revoked at any time.

Data processing is based on standard contractual clauses, which you can find here:

https://www.cloudflare.com/cloudflare-customer-scc/.

For more information about Cloudflare Turnstile, please see the privacy policy at

https://www.cloudflare.com/cloudflare-customer-dpa/.

The company is certified according to the “EU-US Data Privacy Framework” (DPF). The DPF is an agreement between the European Union and the USA that is intended to ensure compliance with European data protection standards when data is processed in the USA. Every DPF certified company undertakes to comply with these data protection standards. More

You can obtain information about this from the provider using the following link:

https://www.dataprivacyframework.gov/s/participant-search/participantdetail?contact=true&id=a2zt0000000GnZKAA0&status=Active

12.9 Wordfence

We have integrated Wordfence on this website. The provider is Defiant Inc., Defiant, Inc., 800 5th Ave Ste 4100, Seattle, WA 98104, USA (hereinafter “Wordfence”).

Wordfence is used to protect our website from unwanted access or malicious cyberattacks. For this purpose, our website establishes a permanent connection to the servers of

Wordfence so that Wordfence can compare its databases with the access made to our website and, if necessary, block them.

The use of Wordfence is based on Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in protecting its website from cyber attacks as effectively as possible.

If appropriate consent has been requested, processing is carried out exclusively on the basis of Art. 6 Para. 1 lit . B. Device fingerprinting) within the meaning of the TTDSG. Consent can be revoked at any time.

Data transfer to the USA is based on the EU Commission’s standard contractual clauses.

Details can be found here:

https://www.wordfence.com/help/general-data-protection-regulation/.

Order processing

We have concluded an order processing contract (AVV) for the use of the above-mentioned service. This is a contract required by data protection law, which ensures that we only process the personal data of our website visitors in accordance with our instructions and in compliance with the GDPR.

13) Tools and miscellaneous

Cookie consent tool compliance

To obtain effective user consent for cookies and cookie-based applications that require consent, this website uses a so-called

“Cookie consent tool”. The “cookie consent tool” is provided to users when they visit the page an interactive user interface on which consent can be given for certain cookies and/or cookie-based applications by ticking a box. By using the tool, all cookies/services requiring consent are only loaded if the respective user gives their consent by checking the box. This ensures that such cookies are only set on the user’s device if consent has been given.

The tool sets technically necessary cookies to store your cookie preferences. Personal user data is generally not processed here.

In individual cases this occurs for the purpose of storage, allocation or logging of cookie settings but for the processing of personal data (such as the IP address), this is carried out in accordance with Art. 6 Para. 1 lit. f GDPR on the basis of our legitimate interest in legally compliant, user-specific and user-friendly consent management for cookies and therefore in a legally compliant design of our website.

Another legal basis for the processing is Article 6 Paragraph 1 Letter c GDPR. We As those responsible, we are subject to the legal obligation to make the use of cookies that are not technically necessary dependent on the respective user consent.

If necessary, we have an order processing agreement with the provider closed, which ensures the protection of the data of our site visitors and prohibits unauthorized disclosure to third parties.

Further information about the operator and the setting options

Cookie consent tools can be found directly in the corresponding user interface our website.

14) Rights of the person concerned

14.1 The applicable data protection law grants you vis-à-vis the person responsible With regard to the processing of your personal data, the following data subject rights (rights of information and intervention), whereby reference is made to the legal basis listed for the respective exercise requirements:

-Right to information in accordance with Art. 15 GDPR;

-Right to rectification in accordance with Art. 16 GDPR;- Right to deletion in accordance with Art. 17 GDPR;

-Right to restriction of processing in accordance with Art. 18 GDPR;- Right to information in accordance with Art. 19 GDPR;

-Right to data portability in accordance with Art. 20 GDPR;

-Right to revoke consent given in accordance with Art. 7 Para. 3 GDPR;- Right to complain in accordance with Art. 77 GDPR.

14.2 RIGHT OF APPEAL

WHEN THE FRAMEWORK OF A BALANCE OF INTERESTS YOUR PERSONAL INTERESTS PROCESSING DATA BASED ON OUR OVERWHELMING LEGITIMATE INTEREST, YOU HAVE THE RIGHT AT ANY TIME TO OBJECT TO THIS PROCESSING WITH EFFECT FOR THE FUTURE FOR REASONS ARISING FROM YOUR PARTICULAR SITUATION.

IF YOU USE YOUR RIGHT TO OBJECT, WE WILL STOP IT PROCESSING OF THE DATA AFFECTED. HOWEVER, FURTHER PROCESSING IS RESERVED IF WE CAN PROOF COMPLEX REASONS FOR THE PROCESSING THAT ARE worthy of protection, which OUTWEIGH YOUR INTERESTS, FUNDAMENTAL RIGHTS AND FUNDAMENTAL FREEDOMS, OR IF THE PROCESSING SERVES THE ASSERTMENT, EXERCISE OR DEFENSE OF LEGAL CLAIMS.

WHEN YOUR PERSONAL DATA IS PROCESSED BY US,AROUNDTO DO DIRECT ADVERTISING, YOU HAVE THE RIGHT TO OBJECT AT ANY TIME TO THE PROCESSING OF PERSONAL DATA CONCERNING YOU FOR THE PURPOSE OF SUCH ADVERTISING. YOU MAY EXERCISE YOUR OPT-OUT AS DESCRIBED ABOVE.

IF YOU USE YOUR RIGHT TO OBJECT, WE WILL STOP ITPROCESSING OF THE AFFECTED DATA FOR DIRECT ADVERTISING PURPOSES.

15) Duration of storage of personal data

The duration of storage of personal data is determined based on the respective legal basis, the purpose of processing and – if relevant – additionally based on the respective legal retention period (e.g. commercial and tax law retention periods).

When processing personal data on the basis of an express Consent in accordance with Article 6 Paragraph 1 Letter a GDPR, the data concerned will be stored until you revoke your consent.

Are there statutory retention periods for data stored within the framework? If legal or transaction-like obligations are processed on the basis of Article 6 Para. 1 lit continues to be stored.

When processing personal data on the basis of Art. 6 Para. 1 lit.f  GDPR, this data will be stored until you exercise your right to object in accordance with Article 21 Paragraph 1 GDPR, unless we can demonstrate compelling legitimate reasons for the processing that outweigh your interests, rights and freedoms, or the processing serves the assertion, exercise or defense of legal claims.

When processing personal data for the purpose of direct advertising Based on Article 6 Paragraph 1 Letter f of the GDPR, this data will be stored until you exercise your right to object in accordance with Article 21 Paragraph 2 of the GDPR.

If the other information in this declaration indicates specific Unless otherwise indicated in the processing situations, stored personal data will be deleted if they are no longer necessary for the purposes for which they were collected or otherwise processed.

Copyright © 2023, IT-Recht-Kanzlei · Alter Messeplatz 2 · 80339 Munich Tel: +49 (0)89 / 130 1433 – 0 · Fax: +49 (0)89 / 130 1433 – 60