1. An overview of data protection
Data collection on our website
Who is responsible for data collection on this website?
The data collected on this website is processed by the website operator. The contact details of the operator can be found in the website imprint.
How do we collect your data?
Some data is collected when you provide it to us. This can be, for example, data that you enter in a contact form.
Other data is collected automatically by our IT systems when you visit the website. This data is primarily technical data, such as the browser and operating system you use or when you accessed the page. This data is collected automatically as soon as you enter our website.
What do we use your data for?
Some of the data is collected to ensure the proper functioning of the website. Other data may be used to analyse how visitors use the website.
What rights do you have regarding your data?
You have the right to request information about your stored data, its origin, its recipients and the purpose of the data collection free of charge at any time. You also have the right to request the correction, blocking or deletion of your data. If you have any further questions on the subject of privacy and data protection, you can contact us at any time at the address given in the imprint. Of course, you can also file a complaint with the relevant regulatory authorities.
Analysis and third-party tools
When you visit our website, statistical analyses of your surfing behaviour may be carried out. This is primarily done with the help of cookies and analytics. The analysis of your surfing behaviour is usually anonymous, i.e. we cannot identify you from this data. You can object to this analysis or prevent it by not using certain tools. You will find detailed information in the following data protection declaration.
You can object to this analysis. We will inform you below about how to exercise your options in this regard.
2. General information and mandatory data
The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this data protection declaration.
Please note that data transmission via the internet (e.g. when communicating by e-mail) can have security gaps. Complete protection of data against access by third parties is not possible.
Note on the person responsible for this website
The person responsible for processing the data on this website is:
Tilo Plöger, Anja Raiser, Florian Rederer, Calwer Str. 28, D-70173 Stuttgart, Germany
Telephone: +49 711 620 308 40
The person responsible is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data (names, e-mail addresses, etc.).
Withdrawal of your consent to the processing of your data
Many data processing operations are only possible with your explicit consent. You can revoke your consent at any time with effect for the future. An informal e-mail with this request is sufficient. Data processed prior to receiving your request may still be lawfully processed.
Right to lodge complaints with the regulatory authorities
If there has been a breach of data protection laws, the data subject may lodge a complaint with the relevant regulatory authorities. The competent regulatory authority for data protection matters is the data protection commissioner of the federal state in which our company is based. A list of data protection commissioners and their contact details can be found at the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.
Right to data portability
You have the right to have data that we process on the basis of your consent or in performance of a contract automatically delivered to yourself or to third parties in a standardised, machine-readable format. If you wish data to be sent directly to another responsible party, this will only be done as far as technically possible.
SSL or TLS encryption
This website uses SSL or TLS encryption for security reasons and to protect the transmission of confidential content, such as enquiries that you send to us as the website operator. You can recognise an encrypted connection in the address bar of your browser when it changes from “http://” to “https://” and the lock symbol is displayed in the address bar of your browser.
When SSL or TLS encryption is enabled, the data you transmit to us cannot be read by third parties.
Encrypted payments on this website
If you conclude a contract that requires the transmission of your payment data (e.g. account number for direct debits), we need this data to process your payment.
Payment transactions with the common means of payment (Visa/MasterCard, direct debit) are only carried out via encrypted SSL or TLS connections. You will recognise an encrypted connection in the address bar of your browser when it changes from “http://” to “https://” and the lock symbol is visible in your browser bar.
In the case of encrypted communication, the payment data you transmit cannot be read by third parties.
Information, blocking, deletion
Within the framework of the legal provisions, you have the right to receive information free of charge at any time about the personal data stored, its origin, the recipient and the purpose of the processing. In addition, you have the right to correct, block and delete this data. If you have any further questions on the subject of personal data, you can contact us at any time at the address given in the imprint.
Objection to advertising e-mails
The use of contact data published within the framework of the imprint obligation by third parties for the purpose of sending unsolicited advertising and information material is hereby expressly prohibited. The operators of the website expressly reserve the right to take legal action in the event of the unsolicited sending of advertising information, for example by spam mails.
3. Data collection on our website
Most of the cookies we use are so-called “session cookies”. They are automatically deleted after your visit. Other cookies remain in the memory of your device until you delete them. These cookies make it possible to recognise your browser the next time you visit the website.
Cookies that are necessary to enable electronic communication or certain functions that you wish to use (such as the shopping cart) are stored in accordance with Art. 6(1)(f) of the DSGVO. The website operator has a legitimate interest in storing cookies in order to ensure an optimal, technically flawless service. If other cookies (e.g. to analyse your surfing behaviour) are also stored, these will be dealt with separately in this data protection declaration.
Server log files
The website operator automatically collects and stores information in “server log files” that your browser automatically transmits to us. These are:
Browser type and browser version
Operating system used
Host name of the accessing computer
Time of the server request
The IP address
This data is not merged with data from other sources.
The basis for data processing is Art. 6(1)(f) DSGVO, which permits the processing of data for the performance of a contract or for measures preparatory to a contract.
If you send us questions via the contact form, we will store the information you enter in the form, including the contact details you provide, in order to answer your question and any follow-up questions. We will not share this information without your consent.
We will therefore only use the data you enter in the contact form with your consent pursuant to Art. 6 para. 1 lit. a) DSGVO. You can revoke your consent at any time. An informal e-mail with this request is sufficient. Data that was processed before we received your request may continue to be processed lawfully.
The data you provide in the contact form will be stored by us until you request us to delete it, revoke your consent to store it or the purpose of storage no longer applies (e.g. after your request has been fulfilled). Mandatory legal provisions, in particular regarding retention periods, remain unaffected by this regulation.
Registration on our website
You can register on our website to gain access to the additional functions offered here. The data entered will only be used for the use of the respective page or service for which you have registered. The mandatory information requested during registration must be provided in full. Otherwise we will refuse your registration.
In order to inform you about important changes, e.g. within the framework of our site or technical changes, we use the e-mail address provided during registration.
The data provided during registration will only be used by us on the basis of your consent in accordance with Art. 6 para. 1 lit. a) DSGVO. You can revoke your consent at any time with effect for the future. An informal e-mail to email@example.com with this request is sufficient. The data processed until receipt of your request can still be lawfully processed.
The data collected during registration will be stored by us for as long as you are registered on our website. Legal retention periods remain unaffected by this.
Processing of data (customer and contract data)
We collect, process and use personal data only insofar as this is necessary for the establishment or amendment of legal relationships with us (inventory data). This is done on the basis of Art. 6 (1) b) DSGVO, which permits the processing of data for the performance of a contract or for measures preparatory to a contract. We collect, process and use your personal data when you access our website (usage data) only insofar as this is necessary to enable you to use our offer or to bill you.
Collected customer data is deleted after the order has been processed or the business relationship has ended. Statutory retention periods remain unaffected by this.
Data transfer when concluding contracts with online shops, retailers and mail order companies
We only transfer personal data to third parties if this is necessary for the fulfilment of the contract, e.g. to companies entrusted with the delivery of goods to your place of residence or to banks entrusted with the processing of your payments. Your data will not be passed on for other purposes unless you have expressly consented to this. Your data will not be passed on to third parties for advertising purposes without your express consent.
The basis for data processing is Art. 6 para. 1 b) DSGVO, which permits the processing of data for the fulfilment of a contract or for measures preparatory to a contract.
4. Social media
On our website, functions of the service Instagram are integrated. These functions are offered by Instagram Inc, 1601 Willow Road, Menlo Park, CA 94025, USA.
If you are logged into your Instagram account, you can link the content of our pages to your Instagram profile by clicking on the Instagram button. This enables Instagram to link the visit to our pages with your user account. We expressly point out that we, as the provider of the pages, do not receive any information about the content of the transmitted data as well as its use by Instagram.
5. Analysis and advertising
This website uses Google Analytics, a web analytics service. It is operated by Google Inc, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Google Analytics uses so-called “cookies”. These are text files that are stored on your computer and enable an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there.
Google Analytics cookies are stored on the basis of Art. 6 (1) (f) DSGVO. The website operator has a legitimate interest in analysing user behaviour in order to optimise both its website and its advertising.
We have activated the IP anonymisation function on this website. Your IP address will be truncated by Google within the European Union or other contracting parties to the Agreement on the European Economic Area before being transmitted to the United States. Only in exceptional cases will the full IP address be sent to a Google server in the USA and shortened there. Google will use this information on behalf of the operator of this website for the purpose of evaluating your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with any other data held by Google.
You can prevent these cookies from being saved by selecting the appropriate settings in your browser. However, we would like to point out that in this case you may not be able to use all the functions of this website to their full extent. You can also prevent the data generated by cookies about your use of the website (including your IP address) from being forwarded to Google and the processing of this data by Google by downloading and installing the browser plug-in available at the following link: https://tools.google.com/dlpage/gaoptout?hl=en.
Objection to the collection of data
You can prevent the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie will be set to prevent your data from being collected on future visits to this website: Disable Google Analytics.
Collection of demographic data by Google Analytics
This website uses the demographic features of Google Analytics. This allows reports to be generated that contain statements about the age, gender and interests of website visitors. This data comes from interest-based advertising from Google and visitor data from third parties. This collected data cannot be assigned to a specific person. You can deactivate this function at any time by adjusting the ad settings in your Google account, or you can prohibit the collection of your data by Google Analytics, as described in the section “Refusal of data collection”.
Google Analytics Remarketing
Our websites use the functions of Google Analytics Remarketing in combination with the cross-device functions of Google AdWords and DoubleClick. This service is provided by Google Inc, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.
This function enables the linking of target groups for advertising marketing created with Google Analytics Remarketing with the cross-device functions of Google AdWords and Google DoubleClick. This allows advertisements to be displayed based on your personal interests, identified based on your past usage and browsing behaviour on one device (such as your mobile phone), on other devices (such as a tablet or computer).
Once you have given your consent, Google will link your web and app browsing history to your Google Account for this purpose. In this way, any device that logs into your Google Account will be able to use the same personalised advertising messages.
To support this feature, Google Analytics collects authenticated IDs of users from Google, which are temporarily linked to our Google Analytics data to define and create audiences for cross-device ad advertising.
You can permanently disable cross-device remarketing/targeting by deactivating personalised advertising in your Google Account. Follow this link: https://www.google.com/settings/ads/onweb/.
The aggregation of data collected in your Google account is based solely on your consent, which you can give or withdraw to Google per Art. 6(1)(a) DSGVO. In the case of data collection that is not aggregated in your Google Account (e.g. because you do not have a Google Account or have objected to the aggregation), the collection of the data is based on Art. 6 (1) (a) DSGVO. 6 (1) (f) DSGVO. The website operator has a legitimate interest in analysing anonymous user behaviour for advertising purposes.
Further information and the Google data protection regulations can be found at: https://www.google.com/policies/technologies/ads/.
Google Adwords and Google conversion tracking
This website uses Google AdWords. AdWords is an online advertising program provided by Google Inc, 1600 Amphitheater Parkway, Mountain View, CA 94043, United States (“Google”).
As part of Google AdWords, we use so-called conversion tracking. When you click on an ad placed by Google, a conversion tracking cookie is set. Cookies are small text files that your internet browser stores on your computer. These cookies expire after 30 days and are not used to personally identify the user. If the user visits certain pages of the website and the cookie has not yet expired, Google and the website will be able to determine that the user clicked on the ad and went to that page.
Each Google AdWords advertiser has a different cookie. Therefore, cookies cannot be tracked across an AdWords advertiser’s website. The information obtained with the conversion cookie is used to create conversion statistics for AdWords ad customers who have opted in to conversion tracking. Customers are told the total number of users who clicked on their ad and were redirected to a conversion tracking tag page. However, advertisers do not receive information that can be used to personally identify users. If you do not wish to participate in the tracking, you can disable this option by simply disabling Google’s conversion tracking cookie by changing your browser settings. This way, you will not be included in the conversion tracking statistics.
Conversion cookies are stored on the basis of Art. 6 (1) (f) DSGVO. The website operator has a legitimate interest in analysing user behaviour in order to optimise both its website and its advertising.
Use of Facebook Remarketing
If you would like to receive the newsletter offered on the website, we require a valid email address from you as well as information that allows us to verify that you are the owner of the email address provided and that the owner agrees to receive the newsletter. Further data is not collected or only collected on a voluntary basis. We only use this data to send the requested information and do not pass it on to third parties.
We will therefore only use the data you enter in the contact form with your consent in accordance with Art. 6(1)(a) DSGVO. You can revoke your consent to the storage of the data, the email address and their use for sending the newsletter at any time, e.g. via the “Unsubscribe” link in the newsletter. The data processed prior to receiving your request may still be lawfully processed.
The data provided when registering for the newsletter will be used for sending the newsletter until you cancel the subscription and the data will then be deleted. Data that we have stored for other purposes (e.g. e-mail addresses for the members’ area) remain unaffected by this.
In order to make our newsletter interesting for you, we statistically record which links users have clicked in the newsletter. By subscribing, you agree to this statistical recording.
This website uses Mailpoet to send newsletters. The provider is Mailpoet. Mailpoet is a service with which, among other things, the sending of newsletters can be organised and analysed. The data you enter for the purpose of receiving newsletters is not stored on Mailpoet’s servers, but only on the website operator’s server.
If you do not want any analysis by Mailpoet, you must unsubscribe from the newsletter here.
Data analysis by Mailpoet
With the help of Mailpoet, it is possible for us to analyse our newsletter campaigns. For example, we can see whether a newsletter message has been opened and which links, if any, have been clicked on. In this way, we can determine, among other things, which links were clicked on particularly often.
We can also see whether certain previously defined actions were carried out after opening/clicking (conversion rate). For example, we can see whether you have made a purchase after clicking on the newsletter.
Mailpoet also enables us to subdivide (“cluster”) the newsletter recipients according to various categories. In doing so, the newsletter recipients can be subdivided according to age, gender or place of residence, for example. In this way, the newsletters can be better adapted to the respective target groups.
The data processing is based on your consent (Art. 6 para. 1 lit. a DSGVO). You can revoke this consent at any time. The legality of the data processing operations already carried out remains unaffected by the revocation.
The data you provide us with for the purpose of receiving the newsletter will be stored by us until you unsubscribe from the newsletter and will both be deleted from our servers after you unsubscribe from the newsletter. Data stored by us for other purposes (e.g. e-mail addresses for the members’ area) remain unaffected by this.
For more details, please refer to the data protection provisions of Mailpoet at: https://www.mailpoet.com.
In accordance with Art. 7 (3) DSGVO, you can revoke your consent to receive the newsletter at any time with effect for the future. To do so, you only need to inform us of your revocation or click on the unsubscribe link contained in each newsletter.
7. Plugins and tools
Our website uses functions provided by the Vimeo video portal. This service is provided by Vimeo Inc, 555 West 18th Street, New York, New York 10011, USA.
When you visit one of our pages with a Vimeo plugin, a connection to the Vimeo servers is established. Here, the Vimeo server is informed which of our pages you have visited. In addition, Vimeo receives your IP address. This also applies if you are not logged in to Vimeo when you visit our website or do not have a Vimeo account. The information is transmitted to a Vimeo server in the USA and stored there.
If you are logged into your Vimeo account, Vimeo allows you to link your surfing behaviour directly to your personal profile. You can prevent this by logging out of your Vimeo account.
Google Web Fonts
For the uniform display of fonts, this site uses web fonts provided by Google. When you open a page, your browser loads the required web fonts into the browser cache in order to display texts and fonts correctly.
For this purpose, your browser must establish a direct connection to the Google servers. Google thereby learns that our website was accessed via your IP address. Google web fonts are used in the interest of a uniform and attractive presentation of our website. This constitutes a legitimate interest within the meaning of Art. 6(1)(f) DSGVO.
If your browser does not support web fonts, a standard font will be used by your computer.
Live Chat Smartsupp
This website uses the chat plugin Smartsupp. The provider is Smartsupp, Milady Horakove 13, 602 00 Brno, Czech Republic.
You can use Smartsupp to start a direct communication with staff members. The Smartsupp plugin on this website records data (browser information, page content visited and conversation) anonymously when the website is visited, and when information is exchanged between the visitor and our employee. This uses “session” cookies that are deleted after the website is visited. The cookies do not contain any personal data. The data is usually transferred to servers in the EU in encrypted form.
The storage is based on Art. 6 para. 1 lit. a and f DSGVO. The visitor can use this function voluntarily to contact the operator of the offer directly. The website operator also has a legitimate interest in analysing user behaviour in order to optimise both its web offer and its advertising.
You can prevent the collection of your data by Smartsupp by not using the chat function of this website. In addition, you can install an add-in in your browser that blocks this plug-in.
Processing of data occurs when you visit the website. Smartsupp describes the handling of the data transparently in accordance with the requirements of the DSGVO at https://www.smartsupp.com/de/privacy.
8. Payment service provider
Our website accepts payments via PayPal. The provider of this service is PayPal (Europe) S.à.r.l & Cie, S.C.A. (22-24 Boulevard Royal, L-2449 Luxembourg).
If you choose to pay via PayPal, the payment data you provide will be transferred to PayPal on the basis of Art. 6 (1) (a) (consent) and Art. 6 (1) (b) DSGVO (processing for contractual purposes). You have the option to revoke your consent at any time with effect for the future. The processing of data already collected remains unaffected.
9. shipping service provider
Order processing is carried out by checkrobin GmbH, Linsengasse 57, 9020 Klagenfurt am Wörthersee, Austria (“checkrobin”). Name, address and, if applicable, other personal data are passed on to checkrobin in accordance with Art. 6 Para. 1 lit. b DSGVO exclusively for the purpose of processing the online order. Your data will only be passed on to the extent that this is actually necessary for the processing of the order. Details on checkrobin’s data protection can be viewed at the following link: https://business.checkrobin.com/de/datenschutz