Privacy Policy

PRIVACY POLICY

1) INFORMATION ON THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER

1.1 We are pleased that you are visiting our website and thank you for your interest. Below we inform you about the handling of your personal data when using our website. Personal data is any data with which you can be personally identified.

1.2 The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is Shop Name. The controller is the natural or legal person who, alone or jointly with others, determines the purposes and means of processing personal data.

1.3 For security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or inquiries to the controller), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the string “https://” and the lock symbol in your browser line.


2) DATA COLLECTION WHEN VISITING OUR WEBSITE

When using our website purely for informational purposes, i.e. if you do not register or otherwise transmit information to us, we only collect the data that your browser transmits to our server (so-called “server log files”). When you access our website, we collect the following data, which is technically necessary for us to display the website to you:

  • Our visited website

  • Date and time at the time of access

  • Amount of data sent in bytes

  • Source/referrer from which you reached the page

  • Browser used

  • Operating system used

  • IP address used (possibly in anonymized form)

The processing is carried out in accordance with Art. 6 (1) lit. f GDPR on the basis of our legitimate interest in improving the stability and functionality of our website. A transfer or other use of the data does not take place. However, we reserve the right to subsequently check the server log files if there are specific indications of unlawful use.


3) COOKIES

In order to make visiting our website attractive and to enable the use of certain functions, we use so-called cookies on various pages. These are small text files that are stored on your device. Some of the cookies we use are deleted again after the end of the browser session, i.e. after you close your browser (so-called session cookies). Other cookies remain on your device and enable us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies).

When cookies are set, they collect and process certain user information such as browser and location data and IP address values to an individual extent. Persistent cookies are automatically deleted after a specified duration, which may vary depending on the cookie.

Some cookies serve to simplify the ordering process by storing settings (e.g. remembering the contents of a virtual shopping cart for a later visit to the website). If personal data is also processed by individual cookies implemented by us, the processing is carried out either in accordance with Art. 6 (1) lit. b GDPR for the execution of the contract or in accordance with Art. 6 (1) lit. f GDPR to safeguard our legitimate interests in the best possible functionality of the website as well as a customer-friendly and effective design of the website visit.

We may work with advertising partners who help us make our website more interesting for you. For this purpose, cookies from partner companies are also stored on your hard drive when you visit our website (third-party cookies). If we cooperate with such advertising partners, you will be informed individually and separately about the use of such cookies and the scope of the data collected in the following sections.

Please note that you can set your browser so that you are informed about the setting of cookies and can decide individually on their acceptance or exclude the acceptance of cookies for certain cases or in general. Each browser differs in the way it manages cookie settings. This is described in the help menu of each browser, which explains how you can change your cookie settings. You can find these for the respective browsers under the following links:

Please note that if you do not accept cookies, the functionality of our website may be limited.


4) CONTACT

When contacting us (e.g. via contact form or e-mail), personal data is collected. The specific data collected in the case of a contact form can be seen from the respective contact form. These data are stored and used exclusively for the purpose of responding to your request or for contacting you and the associated technical administration.

The legal basis for the processing of data is our legitimate interest in responding to your request in accordance with Art. 6 (1) lit. f GDPR. If your contact is aimed at the conclusion of a contract, the additional legal basis for the processing is Art. 6 (1) lit. b GDPR. Your data will be deleted once your inquiry has been fully processed, provided that there are no statutory retention requirements.


5) DATA PROCESSING WHEN OPENING A CUSTOMER ACCOUNT AND FOR CONTRACT PROCESSING

Pursuant to Art. 6 (1) lit. b GDPR, personal data will continue to be collected and processed if you provide it to us for the execution of a contract or when opening a customer account. The data collected can be seen from the respective input forms. Deletion of your customer account is possible at any time and can be requested by sending a message to the controller’s address mentioned above.

We store and use the data you provide to process contracts. After the complete processing of the contract or deletion of your customer account, your data will be blocked with respect to retention periods under tax and commercial law and deleted after expiry of these periods, unless you have expressly consented to further use of your data or a legally permitted further use of data has been reserved by us, of which we will inform you accordingly below.

6) DATA PROCESSING FOR ORDER PROCESSING

6.1 To process your order, we work together with service providers who support us in whole or in part in the execution of concluded contracts. Certain personal data will be transmitted to these service providers in accordance with the following information.

The personal data we collect will be passed on to the transport company commissioned with the delivery as part of the contract processing, to the extent necessary for the delivery of the goods. We pass on your payment data to the commissioned credit institution as part of payment processing, if this is necessary for payment processing. If payment service providers are used, we explicitly inform you about this below. The legal basis for the transfer of data is Art. 6 (1) lit. b GDPR.

6.2 Use of Payment Service Providers (PSP)

  • PayPal
    When paying via PayPal, credit card via PayPal, direct debit via PayPal or – if offered – "purchase on account" or "installment payment" via PayPal, we pass on your payment data to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter: “PayPal”), as part of the payment processing.
    The transfer takes place in accordance with Art. 6 (1) lit. b GDPR and only insofar as this is necessary for payment processing.
    For certain payment methods such as credit card via PayPal, direct debit via PayPal or – if offered – "purchase on account" or "installment payment" via PayPal, PayPal reserves the right to carry out a credit check. For this purpose, your payment data may be passed on to credit agencies based on PayPal’s legitimate interest in determining your solvency (Art. 6 (1) lit. f GDPR).
    You can find more information about data protection at PayPal at: https://www.paypal.com/webapps/mpp/ua/privacy-full

  • Shopify Payments
    We offer payment via Shopify Payments. The provider of this payment service is Shopify International Limited, Victoria Buildings, 2nd floor, 1-2 Haddington Road, Dublin 4, D04 XN32, Ireland.
    If you choose payment via Shopify Payments, your payment data will be transmitted to Shopify. The transmission of your data to Shopify is based on Art. 6 (1) lit. b GDPR (contract execution) and Art. 6 (1) lit. f GDPR (legitimate interests).
    More details about Shopify Payments data protection can be found here: https://www.shopify.com/legal/privacy


7) USE OF SOCIAL MEDIA: SOCIAL PLUGINS

7.1 Facebook plugins (Like & Share button)
Plugins from the social network Facebook are integrated into our website. Provider is Meta Platforms Ireland Ltd., 4 Grand Canal Square, Dublin 2, Ireland.
You can recognize the Facebook plugins by the Facebook logo or the "Like button" ("Like") on our website. An overview of Facebook plugins can be found here: https://developers.facebook.com/docs/plugins/

When you visit our pages, the plugin establishes a direct connection between your browser and the Facebook server. Facebook thereby receives the information that you have visited our website with your IP address. If you click the Facebook "Like button" while logged into your Facebook account, you can link the contents of our pages to your Facebook profile. This allows Facebook to assign the visit to our pages to your user account. We would like to point out that we, as the provider of the pages, have no knowledge of the content of the transmitted data or its use by Facebook. You can find more information in Facebook's privacy policy at: https://www.facebook.com/about/privacy/

If you do not want Facebook to associate your visit to our pages with your Facebook user account, please log out of your Facebook user account.

7.2 Instagram Plugin
Functions of the Instagram service are integrated on our pages. These functions are offered by Meta Platforms Ireland Ltd., 4 Grand Canal Square, Dublin 2, Ireland.
If you are logged into your Instagram account, you can link the contents of our pages to your Instagram profile by clicking the Instagram button. This allows Instagram to associate your visit to our pages with your user account. We would like to point out that we, as the provider of the pages, do not receive any knowledge of the content of the transmitted data or its use by Instagram.
Further information can be found in Instagram's privacy policy: https://help.instagram.com/519522125107875


8) ONLINE MARKETING

Google Analytics
This website uses Google Analytics, a web analysis service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland ("Google"). Google Analytics uses so-called "cookies", text files that are stored on your computer and that enable an analysis of your use of the website. The information generated by the cookie about your use of this website (including the shortened IP address) is usually transferred to a Google server and stored there.

This website uses Google Analytics exclusively with the extension “_anonymizeIp()”, which ensures anonymization of the IP address by shortening and excludes direct personal reference.

The legal basis for the use of Google Analytics is Art. 6 (1) lit. f GDPR. Our legitimate interest lies in the statistical analysis of user behavior for optimization and marketing purposes.

Further information about data protection at Google Analytics can be found here: https://support.google.com/analytics/answer/6004245


9) RIGHTS OF THE DATA SUBJECT

The applicable data protection law grants you the following rights with regard to the processing of your personal data (rights of access and intervention), whereby reference is made to the respective legal basis in the GDPR:

  • Right of access pursuant to Art. 15 GDPR;

  • Right to rectification pursuant to Art. 16 GDPR;

  • Right to erasure pursuant to Art. 17 GDPR;

  • Right to restriction of processing pursuant to Art. 18 GDPR;

  • Right to notification pursuant to Art. 19 GDPR;

  • Right to data portability pursuant to Art. 20 GDPR;

  • Right to withdraw consent pursuant to Art. 7 (3) GDPR;

  • Right to lodge a complaint pursuant to Art. 77 GDPR.


10) RIGHT TO OBJECT

If we process your personal data as part of a balancing of interests based on our overriding legitimate interest, you have the right at any time, for reasons arising from your particular situation, to object to this processing with effect for the future.

If you make use of your right to object, we will stop processing the data concerned. However, we reserve the right to further processing if we can demonstrate compelling legitimate grounds for the processing which override your interests, fundamental rights and freedoms, or if the processing serves to assert, exercise or defend legal claims.

If your personal data is processed by us for the purpose of direct advertising, you have the right to object at any time to the processing of personal data concerning you for the purpose of such advertising. You can exercise the objection as described above.

If you object to processing for direct marketing purposes, we will no longer process your personal data for these purposes.

11) DURATION OF STORAGE OF PERSONAL DATA

The duration of storage of personal data is based on the respective legal retention period (e.g. commercial and tax law retention periods). After expiry of this period, the corresponding data is routinely deleted, provided it is no longer required for contract fulfillment or contract initiation and/or we have no legitimate interest in further storage.


12) NEWSLETTER

If you subscribe to our email newsletter, we will regularly send you information about our offers. Mandatory information for sending the newsletter is only your email address. The provision of further data is voluntary and is used to be able to address you personally.

We use the so-called double opt-in procedure for sending the newsletter. This means that we will only send you an email newsletter once you have expressly confirmed that you consent to receiving newsletters. We will then send you a confirmation email asking you to confirm by clicking a link that you would like to receive the newsletter in the future.

By activating the confirmation link, you give us your consent for the use of your personal data in accordance with Art. 6 (1) lit. a GDPR.

When registering for the newsletter, we store your IP address entered by your Internet Service Provider (ISP) as well as the date and time of registration in order to be able to trace possible misuse of your email address at a later date.

The data collected by us when registering for the newsletter will be used exclusively for advertising purposes by means of the newsletter. You can unsubscribe from the newsletter at any time via the link provided in the newsletter or by sending us a corresponding message. After unsubscribing, your email address will be deleted immediately from our newsletter distribution list, unless you have expressly consented to further use of your data or we reserve the right to use the data beyond this, which is legally permitted and about which we inform you in this statement.


13) USE OF YOUR DATA FOR DIRECT ADVERTISING

13.1 Advertising by letter post
On the basis of our legitimate interest in personalized direct advertising, we reserve the right to store your first and last name, postal address and – insofar as we have received this additional information from you in the context of the contractual relationship – your title, academic degree, year of birth and your professional, industry or business name in accordance with Art. 6 (1) lit. f GDPR and to use this for sending interesting offers and information about our products by letter post.

You can object to the storage and use of your data for this purpose at any time by sending a corresponding message to the controller.

13.2 Email advertising for similar goods and services
If we receive your email address in connection with the sale of goods or services and you have not objected, we reserve the right to send you regular offers for similar goods or services from our range by email. You can object to this use of your email address at any time without incurring costs other than the transmission costs according to the basic rates.


14) FINAL PROVISIONS

We reserve the right to adapt this privacy policy so that it always complies with the current legal requirements or to implement changes to our services in the privacy policy, e.g. when introducing new services. Your new visit will then be subject to the new privacy policy.