Privacy policy

1) Information on the collection of personal data and contact details of the person responsible
1.1 We are pleased that you are visiting our website and thank you for your interest. In the following, we inform you about the handling of your personal data when using our website. Personal data in this context is any data by which you can be personally identified.
1.2 The person responsible for data processing on this website within the meaning of the General Data Protection Regulation (DSGVO) is Dmitrij Lehmann, Hirschberger Str. 18, 57072 Siegen, Germany, Tel.: +49 (0) 271 - 235 77 842, e-mail: service@mirkada.de. The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data.
1.3 This website uses SSL or TLS encryption for security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or enquiries to the controller). You can recognize an encrypted connection by the string "https://" and the lock symbol in your browser line.
2) Data collection when you visit our website
When you use our website for information purposes only, i.e. if you do not register or otherwise transmit information to us, we only collect the data that your browser transmits to our server (so-called "server log files"). When you access our website, we collect the following data, which is technically necessary for us to display the website to you:
- Our visited website
- Date and time at the time of access
- Amount of data sent in bytes
- Source/reference from which you came to the page
- Browser used
- Operating system used
- IP address used (if applicable: in anonymised form) - IP address used (if applicable: in anonymised form).
The processing is carried out in accordance with Art. 6 Para. 1 lit. f DSGVO on the basis of our legitimate interest in improving the stability and functionality of our website. The data is not passed on or used in any other way. However, we reserve the right to check the server log files retrospectively if there are concrete indications of illegal use.
3) Content Delivery Network
Cloudflare
On our website we use a so-called Content Delivery Network ("CDN") of the technology service provider Cloudflare Inc, 101 Townsend St. San Francisco, CA 94107, USA ("Cloudflare"). A Content Delivery Network is an online service that is used in particular to deliver large media files (such as graphics, page content or scripts) through a network of regionally distributed servers connected via the Internet. The use of Cloudflare's Content Delivery Network helps us to optimize the loading speeds of our website.
The processing is carried out pursuant to Art. 6 (1) lit. f DSGVO on the basis of our legitimate interest in a secure and efficient provision, as well as improvement of the stability and functionality of our website.
Cloudflare, based in the USA, is certified for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU.
For more information, please see Cloudflare's privacy policy at: https://www.cloudflare.com/privacypolicy/
4) Cookies
In order to make visiting our website attractive and to enable the use of certain functions, we use so-called cookies on various pages. These are small text files that are stored on your terminal device. Some of the cookies we use are deleted after the end of the browser session, i.e. after you close your browser (so-called session cookies). Other cookies remain on your end device and enable your browser to be recognised on your next visit (so-called persistent cookies). If cookies are set, they collect and process certain user information such as browser and location data as well as IP address values to an individual extent. Persistent cookies are automatically deleted after a specified period of time, which may vary depending on the cookie. The duration of the respective cookie storage can be found in the overview of the cookie settings of your web browser.
In some cases, cookies are used to simplify the ordering process by storing settings (e.g. remembering the contents of a virtual shopping basket for a later visit to the website). If personal data is also processed by individual cookies used by us, the processing is carried out in accordance with Art. 6 Para. 1 lit. b DSGVO either for the execution of the contract, in accordance with Art. 6 Para. 1 lit. a DSGVO in the case of consent given or in accordance with Art. 6 Para. 1 lit. f DSGVO to protect our legitimate interests in the best possible functionality of the website as well as a customer-friendly and effective design of the page visit.
Please note that you can set your browser in such a way that you are informed about the setting of cookies and can decide individually about their acceptance or can exclude the acceptance of cookies for certain cases or in general. Each browser differs in the way it manages cookie settings. This is described in the help menu of each browser, which explains how you can change your cookie settings. These can be found for the respective browsers under the following links:
Internet Explorer: https://support.microsoft.com/de-de/help/17442/windows-internet-explorer-delete-manage-cookies
Firefox: https://support.mozilla.org/de/kb/cookies-erlauben-und-ablehnen
Chrome: https://support.google.com/chrome/answer/95647?hl=de&hlrm=en
Safari: https://support.apple.com/de-de/guide/safari/sfri11471/12.0/mac/10.14
Opera: https://help.opera.com/de/latest/web-preferences/#cookies
Please note that if you do not accept cookies, the functionality of our website may be limited.
5) Contact
When contacting us (e.g. via contact form or e-mail), personal data is collected. Which data is collected in the case of a contact form can be seen from the respective contact form. This data is stored and used exclusively for the purpose of answering your request or for contacting you and the associated technical administration. The legal basis for processing this data is our legitimate interest in responding to your request in accordance with Art. 6 (1) lit. f DSGVO. If your contact aims at the conclusion of a contract, the additional legal basis for the processing is Art. 6 (1) lit. b DSGVO. Your data will be deleted after final processing of your request. This is the case if it can be inferred from the circumstances that the matter in question has been conclusively clarified and provided that there are no statutory retention obligations to the contrary.
6) Data processing when opening a customer account and for contract processing
In accordance with Art. 6 Para. 1 lit. b DSGVO, personal data will continue to be collected and processed if you provide it to us for the purpose of executing a contract or opening a customer account. Which data is collected can be seen from the respective input forms. Deletion of your customer account is possible at any time and can be done by sending a message to the above address of the person responsible. We store and use the data provided by you for the purpose of processing the contract. After complete processing of the contract or deletion of your customer account, your data will be blocked with regard to tax and commercial law retention periods and deleted after expiry of these periods, unless you have expressly consented to a further use of your data or a legally permitted further use of data has been reserved by us.
7) Use of single sign-on procedures
7.1 Facebook Connect
On our website, you can log in to create a customer account or register using the social plugin "Facebook Connect" of the social network Facebook, which is operated by Facebook Ireland Ltd, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland ("Facebook"), within the framework of the so-called single sign-on technique, if you have a Facebook profile. You can recognise the social plugins from "Facebook Connect" on our website by the blue button with the Facebook logo and the words "Log in with Facebook" or "Connect with Facebook" or "Log in with Facebook" or "Sign in with Facebook".
When you access a page of our website that contains such a plugin, your browser establishes a direct connection to Facebook's servers. The content of the plugin is transmitted by Facebook directly to your browser and integrated into the page. Through this integration, Facebook receives the information that your browser has accessed the corresponding page of our website, even if you do not have a Facebook profile or are not currently logged in to Facebook. This information (including your IP address) is transmitted by your browser directly to a Facebook Inc. server in the USA and stored there. These data processing operations are carried out in accordance with Art. 6 (1) lit. f DSGVO on the basis of Facebook's legitimate interest in displaying personalised advertising based on your surfing behaviour.
By using this "Facebook Connect" button on our website, you also have the option of logging in or registering on our website using your Facebook user data. Exclusively if you give your express consent in accordance with Art. 6 (1) lit. a DSGVO prior to the registration process on the basis of a corresponding notice about the exchange of data with Facebook, we receive the general and publicly accessible information stored in your profile when using the "Facebook Connect" button from Facebook, depending on your personally made data protection settings at Facebook. This information includes the user ID, name, profile picture, age and gender.
Please note that following changes to Facebook's privacy policy and terms of use, if you give consent, your profile pictures, friends' user IDs and friends list may also be transferred if they have been marked as "public" in your privacy settings on Facebook. The data transmitted by Facebook will be stored and processed by us for the creation of a user account with the necessary data (title, first name, last name, address data, country, e-mail address, date of birth), if these have been released by you at Facebook for this purpose. Conversely, data (e.g. information on your surfing or purchasing behaviour) may be transferred from us to your Facebook profile on the basis of your consent.
The consent granted can be revoked at any time by sending a message to the responsible person named at the beginning of this data protection declaration.
Facebook Inc. with headquarters in the USA is certified for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU.
The purpose and scope of the data collection and the further processing and use of the data by Facebook, as well as your rights in this regard and setting options for protecting your privacy, can be found in Facebook's privacy policy: https://www.facebook.com/policy.php
If you do not want Facebook to assign the data collected via our website directly to your Facebook profile, you must log out of Facebook before visiting our website. You can also completely prevent the loading of Facebook plugins with add-ons for your browser, e.g. with "Adblock Plus" (https://adblockplus.org/de/).
7.2 Google Sign-In
On our website, you can log in to create a customer account or register using the "Google Sign-In" service of Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google") as part of the so-called single sign-on technology, if you have a Google profile. You can recognise the Google login function on our website by the button "Sign in via Google" "Sign in with Google account" or "Sign in with Google".
When you call up a page of our website that contains a Google sign-in function, your browser establishes a direct connection to Google's servers. The content of the login button is transmitted by Google directly to your browser and integrated into the page. Through this integration, Google receives the information that your browser has called up the corresponding page of our website, even if you do not have a Google profile or are not currently logged in to Google. This information (including your IP address) is transmitted by your browser directly to a Google server and stored there; this may also involve transmission to the servers of Google LLC. in the USA. These data processing operations are carried out in accordance with Art. 6 Para. 1 lit. f DSGVO on the basis of Google's legitimate interest in displaying personalised advertising based on surfing behaviour.
By using the Google login button on our website, you also have the option of logging in or registering on our website using your Google user data. Only if you give your express consent in accordance with Art. 6 (1) lit. a DSGVO prior to the registration process on the basis of a corresponding notice about the exchange of data with Google, we will receive the general and publicly accessible information stored in your profile when you use the Google button from Google, depending on your personally made data protection settings at Google. This information includes the user ID, name, profile picture, age and gender.
Please note that following changes to Google's privacy policy and terms of use, if you give consent, Google may also transfer your profile pictures, your friends' user IDs and friends list if they have been marked as "public" in your privacy settings on Google. The data transmitted by Google will be stored and processed by us for the creation of a user account with the necessary data (title, first name, last name, address data, country, e-mail address, date of birth), if these have been released by you at Google for this purpose. Conversely, data (e.g. information on your surfing or purchasing behaviour) may be transferred from us to your Google profile on the basis of your consent.
The consent granted can be revoked at any time by sending a message to the responsible person named at the beginning of this data protection declaration.
In the event that personal data is transferred to Google LLC. based in the USA, Google LLC. has certified itself for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
The purpose and scope of the data collection and the further processing and use of the data by Google, as well as your rights in this regard and setting options for protecting your privacy, can be found in Google's privacy policy: https://policies.google.com/privacy?hl=de&gl=de
The terms of use for the use of "Google Sign-In" can be viewed here: https://policies.google.com/terms
If you do not want Google to assign the data collected via our website directly to your Google profile, you must log out of Google before visiting our website. You can also completely prevent the loading of Google plugins with add-ons for your browser, e.g. with "Adblock Plus" (https://adblockplus.org/de/).
8) Comment function
In the context of the comment function on this website, in addition to your comment, information on the time of creation of the comment and the commentator name you have chosen will be stored and published on this website. Furthermore, your IP address will be logged and stored. This storage of the IP address is done for security reasons and in case the person concerned violates the rights of third parties or posts illegal content through a submitted comment. We need your e-mail address in order to contact you if a third party should object to your published content as being illegal. The legal basis for the storage of your data is Art. 6 para. 1 lit. b and f DSGVO. We reserve the right to delete comments if they are objected to by third parties as unlawful.
9) Use of your data for direct advertising
Registration for our e-mail newsletter
If you register for our e-mail newsletter, we will regularly send you information about our offers. Mandatory information for sending the newsletter is only your e-mail address. The specification of further data is voluntary and will be used to address you personally. We use the so-called double opt-in procedure for sending the newsletter. This means that we will only send you an e-mail newsletter if you have expressly confirmed that you consent to receiving newsletters. We will then send you a confirmation e-mail asking you to confirm that you wish to receive the newsletter in future by clicking on an appropriate link.
By activating the confirmation link, you give us your consent for the use of your personal data in accordance with Art. 6 Para. 1 lit. a DSGVO. When you register for the newsletter, we store your IP address entered by your Internet service provider (ISP) as well as the date and time of registration in order to be able to trace any possible misuse of your e-mail address at a later date. The data collected by us when you register for the newsletter will be used exclusively for the purpose of addressing you in an advertising manner by way of the newsletter. You can unsubscribe from the newsletter at any time via the link provided for this purpose in the newsletter or by sending a corresponding message to the responsible person named at the beginning. After unsubscribing, your e-mail address will be deleted from our newsletter distribution list immediately, unless you have expressly consented to further use of your data or we reserve the right to use your data in a way that goes beyond this, which is permitted by law and about which we inform you in this declaration.
10) Data processing for order processing
10.1 To process your order, we work together with the following service provider(s), who support us in whole or in part in the execution of concluded contracts. Certain personal data is transmitted to these service providers in accordance with the following information.
The personal data collected by us will be passed on to the transport company commissioned with the delivery as part of the contract processing, insofar as this is necessary for the delivery of the goods. We pass on your payment data to the commissioned credit institution within the framework of payment processing, insofar as this is necessary for payment processing. If payment service providers are used, we will inform you explicitly about this below. The legal basis for the transfer of data is Art. 6 Para. 1 lit. b DSGVO.
10.2 Use of special service providers for order processing and handling
- Billbee
Order processing is carried out by the service provider "Billbee" (Billbee GmbH, Paulinenstrasse 54, 32756 Detmold). Name, address and, if applicable, other personal data will be passed on to Billbee in accordance with Art. 6 Para. 1 lit. b DSGVO exclusively for the purpose of processing the online order. Your data will only be passed on to the extent that this is actually necessary for the processing of the order. Details of Billbee's data protection and its privacy policy can be viewed on Billbee's website at "billbee.io".
10.3 Use of payment service providers (payment services)
- Amazon Pay
If you select the payment method "Amazon Pay", the payment is processed via the payment service provider Amazon Payments Europe s.c.a., 38 avenue J.F. Kennedy, L-1855 Luxembourg (hereinafter: "Amazon Payments"), to whom we pass on the information you provided during the ordering process, together with information about your order, in accordance with Art. 6 (1) lit. b DSGVO. The transfer of your data takes place exclusively for the purpose of payment processing with the payment service provider Amazon Payments and only insofar as it is necessary for this purpose. You can obtain further information about the data protection provisions of Amazon Payments at the following Internet address: https://pay.amazon.com/de/help/201751600
- Apple Pay
If you opt for the "Apple Pay" payment method of Apple Distribution International (Apple), Hollyhill Industrial Estate, Hollyhill, Cork, Ireland, the payment processing is carried out via the "Apple Pay" function of your terminal device operated with iOS, watchOS or macOS by charging a payment card deposited with "Apple Pay". Apple Pay uses security functions that are integrated into the hardware and software of your device to protect your transactions. For the release of a payment, the entry of a code previously defined by you as well as the verification by means of the "Face ID" or "Touch ID" function of your terminal device is therefore required.
For the purposes of payment processing, the information you provide during the checkout process, along with information about your order, will be shared with Apple in encrypted form. Apple then re-encrypts this data with a developer-specific key before transmitting the data to the payment service provider of the payment card stored in Apple Pay to process the payment. The encryption ensures that only the website through which the purchase was made can access the payment data. After the payment is made, Apple sends your device account number and a transaction-specific dynamic security code to the originating website to confirm the success of the payment.
If personal data is processed during the described transfers, the processing is carried out exclusively for the purpose of payment processing in accordance with Art. 6 (1) lit. b DSGVO.
Apple keeps anonymised transaction data, including the approximate amount of the purchase, the approximate date and time, and whether the transaction was completed successfully. Anonymization completely eliminates the possibility of any personal reference. Apple uses the anonymised data to improve Apple Pay and other Apple products and services.
When you use Apple Pay on iPhone or Apple Watch to complete a purchase made through Safari on Mac, the Mac and the authorization device communicate over an encrypted channel on Apple's servers. Apple does not process or store any of this information in a format that can identify you personally. You can disable the ability to use Apple Pay on your Mac in your iPhone settings. Go to "Wallet & Apple Pay," and uncheck "Allow payments on Mac."
For more information about Apple Pay privacy, please visit the following web address: https://support.apple.com/de-de/HT203027
- Klarna
If you select a Klarna payment service, payment processing will be carried out by Klarna Bank AB (publ) [https://www.klarna.com/de], Sveavägen 46, 111 34 Stockholm, Sweden (hereinafter "Klarna"). In order to enable the processing of the payment, your personal data (first name and surname, street, house number, postcode, town, gender, e-mail address, telephone number and IP address) as well as data related to the order (e.g. invoice amount, article, delivery type) will be passed on to Klarna for the purpose of checking your identity and creditworthiness, provided that you have expressly consented to this in accordance with Art. 6 Para. 1 lit. a DSGVO during the ordering process. You can see which credit agencies your data may be forwarded to here:
https://cdn.klarna.com/1.0/shared/content/legal/terms/0/de_de/credit_rating_agencies
The credit check may contain probability values (so-called score values). Insofar as score values are included in the result of the credit report, they have their basis in a scientifically recognised mathematical-statistical procedure. The calculation of the score values includes, but is not limited to, address data. The information obtained about the statistical probability of non-payment is used by Klarna for a weighed decision on the establishment, implementation or termination of the contractual relationship.
You can withdraw your consent at any time by sending a message to the data controller or to Klarna. However, Klarna may still be entitled to process your personal data to the extent necessary to process payments in accordance with the contract.
Your personal data will be handled in accordance with the applicable data protection regulations and as specified in Klarna's Privacy Policy for data subjects located in Germany https://cdn.klarna.com/1.0/shared/content/legal/terms/0/de_de/privacy
or for data subjects located in Austria https://cdn.klarna.com/1.0/shared/content/legal/terms/0/de_at/privacy
.
- Paypal
When paying via PayPal, credit card via PayPal, direct debit via PayPal or - if offered - "purchase on account" or "payment by instalments" via PayPal, we pass on your payment data to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter "PayPal") as part of the payment processing. The transfer takes place in accordance with Art. 6 Para. 1 lit. b DSGVO and only insofar as this is necessary for the payment processing.
PayPal reserves the right to carry out a credit check for the payment methods credit card via PayPal, direct debit via PayPal or - if offered - "purchase on account" or "payment by instalments" via PayPal. For this purpose, your payment data may be passed on to credit agencies in accordance with Art. 6 Para. 1 lit. f DSGVO on the basis of PayPal's legitimate interest in determining your solvency. PayPal uses the result of the credit check in terms of the statistical probability of non-payment for the purpose of deciding on the provision of the respective payment method. The credit report may contain probability values (so-called score values). Insofar as score values are included in the result of the credit report, they have their basis in a scientifically recognised mathematical-statistical procedure. The calculation of the score values includes, but is not limited to, address data. For further information on data protection law, including information on the credit agencies used, please refer to PayPal's data protection declaration: https://www.paypal.com/de/webapps/mpp/ua/privacy-full
You can object to this processing of your data at any time by sending a message to PayPal. However, PayPal may still be entitled to process your personal data if this is necessary for the contractual processing of payments.
- Shopify Payments
We use the payment service provider "Shopify Payments", 3rd Floor, Europa House, Harcourt Building, Harcourt Street, Dublin 2. If you choose a payment method offered via the payment service provider Shopify Payments, the payment processing is carried out by the technical service provider Stripe Payments Europe Ltd, 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland, to whom we pass on the information you provided during the ordering process, together with information about your order (name, address, account number, bank code, any credit card number, invoice amount, currency and transaction number) in accordance with Art. 6 (1) lit. b DSGVO. Your data will only be passed on for the purpose of processing payments with Stripe Payments Europe Ltd. and only to the extent necessary for this purpose. You can find more information on the data protection of Shopify Payments at the following Internet address: https://www.shopify.com/legal/privacy.
Data protection information on Stripe Payments Europe Ltd. can be found here: https://stripe.com/de/privacy
- SOFORT
If you select the payment method "SOFORT", the payment will be processed by the payment service provider SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany (hereinafter referred to as "SOFORT"), to whom we pass on the information you provided during the ordering process, together with information about your order, in accordance with Art. 6 Para. 1 lit. b DSGVO. Sofort GmbH is part of the Klarna Group (Klarna Bank AB (publ), Sveavägen 46, 11134 Stockholm, Sweden). Your data will only be passed on for the purpose of payment processing with the payment service provider SOFORT and only insofar as it is necessary for this purpose. Under the following internet address you will receive further information about the data protection regulations of SOFORT: https://www.klarna.com/sofort/datenschutz.
11) Use of evaluation and test seal graphics
Trusted Shops Trustbadge
The Trusted Shops Trustbadge is integrated on this website to display our Trusted Shops seal of approval and to offer Trusted Shops membership to buyers after an order.
This serves to protect our legitimate interests in an optimal marketing of our offer, which prevail in the context of a balancing of interests, Art. 6 (1) lit. f DSGVO. The Trustbadge and the services advertised with it are an offer of Trusted Shops GmbH, Subbelrather Str. 15C, 50823 Cologne.
When the Trustbadge is called up, the web server automatically saves a so-called server log file, which contains, for example, your IP address, the date and time of the call-up, the amount of data transferred and the requesting provider (access data) and documents the call-up. This access data is not evaluated and is automatically overwritten at the latest seven days after the end of your visit to the site.
Further personal data is only transferred to Trusted Shops if you decide to use Trusted Shops products after completing an order or have already registered to use them. In this case, the contractual agreement between you and Trusted Shops applies.
12) Use of social media: social plugins
12.1 Facebook plugins with 2-click solution
Our website uses so-called social plugins ("plugins") of the social network Facebook, which is operated by Facebook Ireland Ltd, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland ("Facebook").
To increase the protection of your data when visiting our website, the plugins are initially deactivated by means of a so-called "2-click" solution integrated into the page. You can recognise deactivated plugins by the fact that they are greyed out. This integration ensures that when you call up a page of our website that contains such plugins, no connection is established with the Facebook servers. Only when you activate the plugins and thus give your consent to the data transfer in accordance with Art. 6 (1) lit. a DSGVO, your browser establishes a direct connection to the Facebook servers. The content of the respective plugin is transmitted directly to your browser and integrated into the page. The plugin then transmits data (including your IP address) to Facebook. We have no influence on the scope of the data that Facebook collects with the help of the plugins. According to our knowledge, Facebook in any case receives information about which of our websites you have currently and previously accessed. By integrating the plugins, Facebook also receives the information that your browser has accessed the corresponding page of our website if you do not have a profile on Facebook or are not currently logged in. The information collected (including your IP address) is transmitted from your browser directly to a Facebook Inc. server in the USA and stored there. If you interact with the plugins, the corresponding information is also transmitted directly to a Facebook server and stored there. The information is also published on Facebook and displayed there to your contacts.
You can revoke your consent at any time by deactivating the activated plugin by clicking on it again. However, the revocation has no influence on the data that has already been transferred to Facebook.
Facebook Inc. with headquarters in the USA is certified for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU.
The purpose and scope of data collection and the further processing and use of data by Facebook, as well as your rights in this regard and setting options for protecting your privacy, can be found in Facebook's privacy policy: https://www.facebook.com/policy.php
12.2 Instagram plugin as Shariff solution
Our website uses so-called social plugins ("plugins") of the online service Instagram, which is operated by Instagram LLC., 1601 Willow Rd, Menlo Park, CA 94025, USA ("Instagram").
In order to increase the protection of your data when visiting our website, these buttons are not unrestricted plugins, but only integrated into the page using an HTML link. This type of integration ensures that when you call up a page of our website that contains such buttons, no connection is yet established with the servers of Instagram. When you click on the button, a new browser window opens and calls up the Instagram page, on which you can interact with the plugins there (if necessary, after entering your login data).
Instagram LLC. based in the USA is certified for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU.
For the purpose and scope of data collection and the further processing and use of data by Instagram, as well as your rights in this regard and setting options for protecting your privacy, please refer to the privacy policy of Instagram: https://help.instagram.com/155833707900388/
12.3 Pinterest plugin as Shariff solution
So-called social plugins ("plugins") of the social network Pinterest, which is operated by Pinterest Europe Ltd, Palmerston House, 2nd Floor, Fenian Street, Dublin 2, Ireland ("Pinterest"), are used on the pages of the seller.
In order to increase the protection of your data when visiting our website, these buttons are not unrestricted plugins, but are only integrated into the page using an HTML link. This type of integration ensures that when you call up a page on our website that contains such buttons, no connection is yet established with Pinterest's servers. When you click on the button, a new browser window opens and calls up the Pinterest page, on which you can interact with the plugins there (if necessary, after entering your login data).
In the event that personal data is transferred to Pinterest Inc., which is based in the USA, Pinterest Inc. has certified itself for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
The purpose and scope of the data collection and the further processing and use of the data by Pinterest, as well as your rights in this regard and setting options for protecting your privacy, can be found in Pinterest's privacy policy: https://about.pinterest.com/de/privacy-policy
12.4 Twitter plugin as Shariff solution
So-called social plugins ("plugins") of the microblogging service Twitter, which is operated by Twitter Inc., 1355 Market St, Suite 900, San Francisco, CA 94103, USA ("Twitter"), are used on our website.
In order to increase the protection of your data when visiting our website, these buttons are not fully integrated into the page as plugins, but only using an HTML link. This type of integration ensures that when you call up a page of our website that contains such buttons, no connection is yet established with the servers of Twitter. When you click on the button, a new browser window opens and calls up the Twitter page, on which you can interact with the plugins there (if necessary, after entering your login data).
Twitter Inc. with headquarters in the USA is certified for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU.
The purpose and scope of the data collection and the further processing and use of the data by Twitter, as well as your rights in this regard and setting options for protecting your privacy, can be found in Twitter's privacy policy: https://twitter.com/privacy.
13) Use of social media: videos
Use of Youtube videos
This website uses the Youtube embedding function to display and play videos from the provider "Youtube", which belongs to Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google").
The extended data protection mode is used here, which, according to the provider, only triggers the storage of user information when the video(s) is/are played. If the playback of embedded Youtube videos is started, the provider "Youtube" uses cookies to collect information about user behaviour. According to information from "Youtube", these are used, among other things, to collect video statistics, to improve user-friendliness and to prevent abusive behaviour. If you are logged in to Google, your data is directly assigned to your account when you click on a video. If you do not wish to have your data associated with your YouTube profile, you must log out before activating the button. Google stores your data (even for users who are not logged in) as usage profiles and evaluates them. Such an evaluation is carried out in particular in accordance with Art. 6 para. 1 lit. f DSGVO on the basis of Google's legitimate interests in the insertion of personalised advertising, market research and/or needs-based design of its website. You have the right to object to the creation of these user profiles, whereby you must contact YouTube to exercise this right. In the course of using YouTube, personal data may also be transmitted to the servers of Google LLC. in the USA.
Independently of a playback of the embedded videos, a connection to the Google network is established each time this website is called up, which may trigger further data processing operations without our influence.
In the event that personal data is transferred to Google LLC., which is based in the USA, Google LLC. has certified itself for the us-European data protection agreement "Privacy Shield", which guarantees compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
Further information on data protection at "YouTube" can be found in the provider's data protection declaration at: https://www.google.de/intl/de/policies/privacy
To the extent legally required, we have obtained your consent pursuant to Art. 6 (1) lit. a DSGVO for the processing of your data as described above. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option described above for making an objection.
14) Online marketing
Use of Google Ads Conversion tracking
This website uses the online advertising program "Google Ads" and within the framework of Google Ads the conversion tracking of Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google"). We use the offer of Google Ads to draw attention to our attractive offers with the help of advertising media (so-called Google Adwords) on external websites. We can determine how successful the individual advertising measures are in relation to the data of the advertising campaigns. Our aim is to show you advertising that is of interest to you, to make our website more interesting for you and to achieve a fair calculation of the advertising costs incurred.
The conversion tracking cookie is set when a user clicks on an ad placed by Google Ads. Cookies are small text files that are stored on your terminal device. These cookies usually lose their validity after 30 days and are not used for personal identification. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user clicked on the ad and was redirected to this page. Each Google Ads customer receives a different cookie. Therefore, cookies cannot be tracked across Google Ads customers' websites. The information collected using the conversion cookie is used to generate conversion statistics for Google Ads customers who have opted in to conversion tracking. Clients will learn the total number of users who clicked on their ad and were redirected to a page tagged with a conversion tracking tag. However, they do not receive information that personally identifies users. If you do not wish to participate in the tracking, you can block this use by deactivating the Google conversion tracking cookie via your internet browser under the keyword "user settings". You will then not be included in the conversion tracking statistics. We use Google Ads based on our legitimate interest in targeted advertising pursuant to Art. 6 (1) lit. f DSGVO. In the context of the use of Google Ads, there may also be a transmission of personal data to the servers of Google LLC. in the USA.
In the event that personal data is transferred to Google LLC., which is based in the USA, Google LLC. has certified itself for the us-European data protection agreement "Privacy Shield", which guarantees compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
You can obtain further information on Google's privacy policy at the following Internet address: https://www.google.de/policies/privacy/
You can permanently disable cookies for ad preferences by setting your browser software accordingly or by downloading and installing the browser plug-in available at the following link:
https://www.google.com/settings/ads/plugin?hl=de
Please note that certain functions of this website may not be available or may only be available to a limited extent if you have disabled the use of cookies.
To the extent legally required, we have obtained your consent pursuant to Art. 6 (1) lit. a DSGVO for the processing of your data as outlined above. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option described above for making an objection.
15) Web analytics services
Google (Universal) Analytics
Google (Universal) Analytics with Google Signals
This website uses Google (Universal) Analytics, a web analytics service provided by Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google"). Google (Universal) Analytics uses "cookies", which are text files placed on your computer, to help the website analyze how users use the site. The information generated by the cookie about your use of the website (including your IP address) will be transmitted to and stored by Google on servers in the United States.
This website uses Google (Universal) Analytics exclusively with the extension "_anonymizeIp()", which ensures anonymization of the IP address by shortening and excludes a direct personal reference. Through this extension, your IP address is shortened beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google LLC.server in the USA and shortened there. In these exceptional cases, this processing is carried out in accordance with Art. 6 (1) lit. f DSGVO on the basis of our legitimate interest in the statistical analysis of user behaviour for optimisation and marketing purposes.
On our behalf, Google will use this information for the purpose of evaluating your use of the website, compiling reports on website activity and providing us with other services relating to website activity and internet usage. The IP address transmitted by your browser as part of Google (Universal) Analytics will not be merged with other Google data.
You may refuse the use of cookies by selecting the appropriate settings on your browser. However, we would like to point out that in this case you may not be able to use all the functions of this website to their full extent. You can also prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) to Google and the processing of this data by Google by downloading and installing the browser plugin available at the following link:
https://tools.google.com/dlpage/gaoptout?hl=de
As an alternative to the browser plugin or within browsers on mobile devices, please click on the following link to set an opt-out cookie that will prevent the collection by Google Analytics within this website in the future (this opt-out cookie only works in this browser and only for this domain. If you delete your cookies in this browser, you will need to click this link again): <a onclick="alert('Google Analytics has been disabled');" href="javascript:gaOptout()">Disable Google Analytics</a>
Further information on Google (Universal) Analytics can be found here: https://policies.google.com/privacy?hl=de&gl=de
In the event that personal data is transferred to Google LLC. based in the USA, Google LLC. has certified itself for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
This website also uses the Google Signals service as an extension of Google Analytics. With Google Signals, we can have Google create cross-device reports (so-called "cross-device tracking"). If you have activated "personalized ads" in your Google Account settings and you have linked your Internet-enabled devices to your Google Account, Google can analyze user behavior across devices and create database models based on this. This takes into account the logins and device types of all site visitors who were logged into a Google account and performed a conversion. The data shows, among other things, on which device you first clicked on an ad and on which device the associated conversion took place. We do not receive any personal data from Google in this regard, but only statistics compiled on the basis of Google Signals. The processing is carried out in accordance with Art. 6 (1) lit. f DSGVO on the basis of our legitimate interest in the statistical analysis of user behaviour for optimisation and marketing purposes, which outweighs our interests. You can object to the data processing by following the aforementioned objection options. In addition, you have the option to deactivate your settings in your Google account for "personalized ads", follow the instructions on this page: https://support.google.com/ads/answer/2662922?hl=de
You can read more information about Google Signals here: https://support.google.com/analytics/answer/7532985?hl=de
To the extent legally required, we have obtained your consent for the processing of your data as described above in accordance with Art. 6 (1) lit. a DSGVO. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option described above for making an objection.
16) Retargeting/ Remarketing/ Recommendation advertising
Google Ads Remarketing
Our website uses the functions of Google Ads Remarketing, with this we advertise for this website in the Google search results, as well as on third-party websites. The provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google"). For this purpose, Google sets a cookie in the browser of your terminal device, which automatically enables interest-based advertising by means of a pseudonymous cookie ID and on the basis of the pages you visit. The processing is based on our legitimate interest in the optimal marketing of our website in accordance with Art. 6 para. 1 lit. f DSGVO.
Additional data processing only takes place if you have consented to Google linking your internet and app browsing history to your Google account and using information from your Google account to personalise the ads you view on the web. In this case, if they are logged into Google while viewing pages on our website, Google will use your data together with Google Analytics data to create and define targeting lists for cross-device remarketing. For this purpose, your personal data will be temporarily linked by Google with Google Analytics data in order to form target groups. In the context of the use of Google Ads Remarketing, personal data may also be transmitted to the servers of Google LLC. in the USA.
You can permanently deactivate the setting of cookies for ad preferences by downloading and installing the browser plug-in available at the following link: https://www.google.com/settings/ads/onweb/
Alternatively, you can obtain information about the setting of cookies and make settings for this from the Digital Advertising Alliance at the internet address www.aboutads.info. Finally, you can set your browser so that you are informed about the setting of cookies and decide individually about their acceptance or exclude the acceptance of cookies for certain cases or in general. If you do not accept cookies, the functionality of our website may be limited.
In the event that personal data is transferred to Google LLC., which is based in the USA, Google LLC. has certified itself for the us-European data protection agreement "Privacy Shield", which guarantees compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
Further information and the data protection provisions regarding advertising and Google can be viewed here:
https://www.google.com/policies/technologies/ads/
To the extent legally required, we have obtained your consent pursuant to Art. 6 (1) lit. a DSGVO for the processing of your data as described above. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option described above for making an objection.
17) Tools and other
17.1 - Google Web Fonts
This site uses so-called web fonts provided by Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google") for the uniform display of fonts. When you call up a page, your browser loads the required web fonts into its browser cache in order to display texts and fonts correctly.
For this purpose, the browser you use must connect to Google's servers. This may also result in the transmission of personal data to the servers of Google LLC. in the USA. In this way, Google obtains knowledge that our website was accessed via your IP address. Google Web Fonts are used in the interest of a uniform and appealing presentation of our online offers. This represents a legitimate interest within the meaning of Art. 6 Para. 1 lit. f DSGVO. If your browser does not support web fonts, a standard font will be used by your computer.
In the event that personal data is transferred to Google LLC. based in the USA, Google LLC. has certified itself for the us-European data protection agreement "Privacy Shield", which ensures compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
Further information on Google Web Fonts can be found at https://developers.google.com/fonts/faq and in Google's privacy policy: https://www.google.com/policies/privacy/
17.2 Google reCAPTCHA
On this website we also use the reCAPTCHA function of Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google"). This function is primarily used to distinguish whether an input is made by a natural person or is abused by machine and automated processing. The service includes the sending of the IP address and possibly other data required by Google for the reCAPTCHA service to Google and is carried out in accordance with Art. 6 (1) lit. f DSGVO on the basis of our legitimate interest in determining individual responsibility on the Internet and the prevention of abuse and spam. In the context of the use of Google reCAPTCHA, there may also be a transmission of personal data to the servers of Google LLC. in the USA.
In the event that personal data is transferred to Google LLC., which is based in the USA, Google LLC. has certified itself for the us-European data protection agreement "Privacy Shield", which guarantees compliance with the level of data protection applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list
Further information on Google reCAPTCHA as well as Google's privacy policy can be viewed at: https://www.google.com/intl/de/policies/privacy/
To the extent legally required, we have obtained your consent pursuant to Art. 6 (1) lit. a DSGVO for the processing of your data as described above. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option described above for making an objection.
18) Rights of the data subject
18.1 The applicable data protection law grants you comprehensive data subject rights (rights of information and intervention) vis-à-vis the controller with regard to the processing of your personal data, which we inform you about below:
- Right of information pursuant to Art. 15 DSGVO: In particular, you have a right to information about your personal data processed by us, the processing purposes, the categories of personal data processed, the recipients or categories of recipients to whom your data have been or will be disclosed, the planned storage period or the criteria for determining the storage period. the criteria for determining the storage period, the existence of a right to rectification, erasure, restriction of processing, objection to processing, complaint to a supervisory authority, the origin of your data if it has not been collected from you by us, the existence of automated decision-making, including profiling, and, if applicable, meaningful information about the processing of your data. meaningful information about the logic involved and the scope and the intended effects of such processing concerning you, as well as your right to be informed which guarantees exist in accordance with Art. 46 DSGVO when your data is transferred to third countries;
- Right to rectification in accordance with Art. 16 DSGVO: You have a right to the immediate correction of incorrect data relating to you and/or completion of your incomplete data stored by us;
- Right to deletion pursuant to Art. 17 DSGVO: You have the right to demand the deletion of your personal data if the conditions of Art. 17 (1) DSGVO are met. However, this right does not exist in particular if the processing is necessary for the exercise of the right to freedom of expression and information, for compliance with a legal obligation, for reasons of public interest or for the establishment, exercise or defence of legal claims;
- Right to restriction of processing pursuant to Art. 18 DSGVO: You have the right to request the restriction of the processing of your personal data as long as the accuracy of your data, which you dispute, is being verified, if you object to the erasure of your data due to unlawful data processing and instead request the restriction of the processing of your data, if you need your data to assert, exercise or defend legal claims after we no longer need this data after the purpose has been achieved, or if you have lodged an objection on grounds relating to your particular situation as long as it has not yet been determined whether our legitimate grounds prevail;
- Right to information pursuant to Art. 19 DSGVO: If you have asserted the right to rectification, erasure or restriction of processing against the controller, the controller is obliged to inform all recipients to whom the personal data concerning you have been disclosed of this rectification or erasure of the data or restriction of processing, unless this proves impossible or involves a disproportionate effort. You have the right to be informed about these recipients.
- Right to data portability pursuant to Art. 20 DSGVO: You have the right to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request that it be transferred to another controller, insofar as this is technically feasible;
- Right to revoke consent given pursuant to Art. 7 (3) DSGVO: You have the right to revoke consent to the processing of data once given at any time with effect for the future. In the event of revocation, we will delete the data concerned without delay, unless further processing can be based on a legal basis for processing without consent. The revocation of consent does not affect the lawfulness of the processing carried out on the basis of consent up to the time of revocation;
- Right to lodge a complaint pursuant to Art. 77 DSGVO: If you consider that the processing of personal data concerning you infringes the GDPR, you have - without prejudice to any other administrative or judicial remedy - the right to lodge a complaint with a supervisory authority, in particular in the Member State of your residence, workplace or the place of the alleged infringement.
18.2 RIGHT OF OBJECTION
IF WE PROCESS YOUR PERSONAL DATA WITHIN THE FRAMEWORK OF A BALANCING OF INTERESTS ON THE BASIS OF OUR OVERRIDING LEGITIMATE INTEREST, YOU HAVE THE RIGHT TO OBJECT TO THIS PROCESSING AT ANY TIME FOR REASONS ARISING FROM YOUR PARTICULAR SITUATION, WITH EFFECT FOR THE FUTURE.
IF YOU MAKE USE OF YOUR RIGHT OF OBJECTION, WE WILL TERMINATE THE PROCESSING OF THE DATA CONCERNED. HOWEVER, WE RESERVE THE RIGHT TO CONTINUE PROCESSING IF WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING WHICH OVERRIDE YOUR INTERESTS, FUNDAMENTAL RIGHTS AND FREEDOMS, OR IF THE PROCESSING IS FOR THE PURPOSE OF ASSERTING, EXERCISING OR DEFENDING LEGAL CLAIMS.
IF WE PROCESS YOUR PERSONAL DATA FOR THE PURPOSES OF DIRECT MARKETING, YOU HAVE THE RIGHT TO OBJECT AT ANY TIME TO THE PROCESSING OF YOUR PERSONAL DATA FOR THE PURPOSES OF SUCH MARKETING. YOU CAN EXERCISE THE OBJECTION AS DESCRIBED ABOVE.
IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL STOP PROCESSING THE DATA CONCERNED FOR DIRECT MARKETING PURPOSES.
19) Duration of the storage of personal data
The duration of the storage of personal data is measured on the basis of the respective legal basis, the purpose of processing and - if relevant - additionally on the basis of the respective statutory retention period (e.g. retention periods under commercial and tax law).
If personal data is processed on the basis of explicit consent pursuant to Art. 6 (1) a DSGVO, this data is stored until the data subject revokes his/her consent.
If there are statutory retention periods for data that is processed within the scope of legal or quasi-legal obligations on the basis of Art. 6 (1) (b) DSGVO, this data will be routinely deleted after expiry of the retention periods, provided that it is no longer required for the performance of the contract or the initiation of the contract and/or there is no legitimate interest on our part in continuing to store it.
When processing personal data on the basis of Art. 6(1)(f) DSGVO, this data is stored until the data subject exercises his or her right to object pursuant to Art. 21(1) DSGVO, unless we can demonstrate compelling legitimate grounds for the processing which override the interests, rights and freedoms of the data subject, or the processing serves to assert, exercise or defend legal claims.
When processing personal data for the purpose of direct marketing on the basis of Art. 6(1)(f) DSGVO, such data shall be stored until the data subject exercises his or her right to object pursuant to Art. 21(2) DSGVO.
Unless otherwise stated in the other information in this statement about specific processing situations, stored personal data will otherwise be deleted when it is no longer necessary for the purposes for which it was collected or otherwise processed.