Data protection

1. Data protection at a glance

General information

The following information provides a simple overview of what happens to your personal data when you visit our website. Personal data are all data with which you can be personally identified. Detailed information on the subject of data protection can be found in our data protection declaration listed below this text.

Data collection on our website

Who is responsible for data collection on this website?

The data processing on this website is carried out by the website operator. You can find their contact details in the imprint of this website.

How do we collect your data?

On the one hand, your data is collected when you communicate it to us. This can, for example, be data that you enter in a contact form.

Other data are automatically recorded by our IT systems when you visit the website. This is mainly technical data (e.g. internet browser, operating system or time of the page was viewed). This data is collected automatically as soon as you enter our website.

What do we use your data for?

Some of the data is collected in order to ensure that the website is error-free. Other data can be used to analyze your user behavior.

What rights do you have with regard to your data?

You have the right to receive information about the origin, recipient and purpose of your stored personal data free of charge at any time. You also have the right to request the correction, blocking or deletion of this data. You can contact us at any time at the address given in the legal notice if you have further questions about data protection. You also have the right to lodge a complaint with the competent supervisory authority.

You also have the right to request that the processing of your personal data be restricted under certain circumstances. Details can be found in the data protection declaration under “Right to restriction of processing”.

Analysis tools and third party tools

When you visit our website, your surfing behavior can be statistically evaluated. This is mainly done with cookies and so-called analysis programs. Your surfing behavior is usually analyzed anonymously; surfing behavior cannot be traced back to you. You can object to this analysis or prevent it by not using certain tools. You can find detailed information on this in the following data protection declaration.

You can object to this analysis. We will inform you about the possibilities to object in this data protection declaration.

2. General information and mandatory information

Data protection

The person responsible for data processing is:
Mavior Beauty GmbH
Max Biermann
Talstrasse 4th
91093 Heßdorf
Germany
info@maviorbeauty.com

Thank you for your interest in our online shop. The protection of your privacy is very important to us. In the following we will inform you in detail about the handling of your data.

 

1. Access data and hosting

 

You can visit our website without giving any personal information. Each time a website is called up, the web server only automatically saves a so-called server log file, which contains, for example, the name of the requested file, your IP address, the date and time of the call, the amount of data transferred and the requesting provider (access data) and documents the call.

These access data are evaluated exclusively for the purpose of ensuring trouble-free operation of the site and improving our offer. According to Art. 6 Para. 1 S. 1 lit. All access data will be deleted no later than seven days after the end of your visit to the website.

 

Third party hosting services
As part of processing on our behalf, a third-party provider provides us with the services for hosting and displaying the website. All data that is collected as part of the use of this website or in the forms provided in the online shop as described below are processed on its servers. Processing on other servers only takes place within the framework explained here.

This service provider is located within a country of the European Union or the European Economic Area.

 

 

2. Data collection and use for contract processing, establishing contact and opening a customer account

 

We collect personal data if you voluntarily provide it to us as part of your order or when you contact us (e.g. using the contact form or email). Mandatory fields are marked as such, because in these cases we need the data to process the contract or to process your contact and you cannot send the order or contact without them. Which data is collected can be seen from the respective input forms. We use the data you have provided in accordance with Art. 6 Para. 1 S. 1 lit. b GDPR to process contracts and to process your inquiries.
Insofar as you have given your consent to this in accordance with Article 6 Paragraph 1 Clause 1 lit. a GDPR by deciding to open a customer account, we will use your data for the purpose of opening a customer account.
After the contract has been fully processed or your customer account has been deleted, your data will be restricted for further processing and deleted after the tax and commercial retention periods have expired, unless you have expressly consented to further use of your data or we reserve the right to use data beyond this is permitted by law and about which we will inform you in this declaration. The deletion of your customer account is possible at any time and can be done either by sending a message to the contact option described below or using a function provided in the customer account.

3. Data transfer

 

In order to fulfill the contract in accordance with Art. 6 Paragraph 1 Sentence 1 lit. Depending on which payment service provider you select in the ordering process, we will pass on the payment data collected for this purpose to the credit institute commissioned with the payment and, if applicable, to the payment service provider commissioned by us or to the selected payment service. In some cases, the selected payment service providers also collect this data themselves if you create an account there. In this case, you must log in to the payment service provider with your access data during the ordering process. The data protection declaration of the respective payment service provider applies in this respect.

 

 

4. Email newsletters and postal advertising

E-mail advertising with registration for the newsletter
If you register for our newsletter, we use the data required for this or separately provided by you in order to regularly send you our e-mail newsletter based on your consent in accordance with Art. 6 Para. 1 S. 1 lit.

 

 

E-mail advertising without registering for the newsletter and your right to object
If we receive your e-mail address in connection with the sale of a product or service and you have not objected, we reserve the right to offer you regular offers on products similar to those already purchased on the basis of Section 7 (3) UWG , to be sent from our range by e-mail. This serves to safeguard our predominantly legitimate interests in addressing our customers for advertising purposes.
You can object to this use of your email address at any time by sending a message to the contact option described below or via a link provided in the advertising email without incurring any costs other than the transmission costs according to the basic tariffs.

 

The newsletter is sent as part of processing on our behalf by a service provider to whom we pass on your e-mail address for this purpose. This service provider is located within a country of the European Union or the European Economic Area.

 

Postal advertising and your right to object
In addition, we reserve the right to use your first and last name and your postal address for our own advertising purposes, e.g. to send you interesting offers and information about our products by post. This serves to safeguard our legitimate interests, which predominate in the context of a weighing up of interests, in addressing our customers with advertising in accordance with Art. 6 Para. 1 S. 1 lit.

 

5. Use of data for payment processing

 

 

 

Identity and credit checks when choosing Klarna payment services
If you choose Klarna's payment services, we ask for your consent in accordance with Art. 6 Para. 1 S. 1 lit. In Germany you can use the Klarnas Data protection named credit agencies are used.
Klarna uses the information received about the statistical probability of a payment default for a balanced decision on the establishment, implementation or termination of the contractual relationship.
You can revoke your consent at any time by sending a message to the contact details below. As a result, we may no longer be able to offer you certain payment options. You can also revoke your consent to this use of personal data to Klarna at any time.

 

Hire purchase
When selecting the payment method "hire purchase" and granting the data protection consent required for this in accordance with Art. 6 Para. 1 S. 1 lit. a GDPR, personal data (first name, last name, address, email, telephone number, date of birth, IP address, gender) together with the data required for transaction processing (item, invoice amount, due dates, total amount, invoice number, taxes, currency, order date and time) for the purpose of processing this payment method to our partner Klarna Bank AB (publ), Sveavägen 46, 111 34 Stockholm.

To check the identity or creditworthiness of the customer, our partner carries out queries and information from publicly accessible databases and credit agencies. The providers from whom information and, if necessary, creditworthiness information are obtained on the basis of mathematical-statistical procedures, as well as further details on the processing of your data after transmission to our partner Klarna Bank AB (publ), please refer to their data protection declaration, which you can find here: https: / /www.klarna.com/at/datenschutz/

Our partner Klarna Bank AB (publ) uses the information received about the statistical probability of default in payment for a balanced decision on the establishment, implementation or termination of the contractual relationship. You have the opportunity to express your point of view by contacting our partner Klarna Bank AB (publ) and to contest the decision.

The consent given to the transfer of data in the order process can be revoked at any time, even without giving reasons, with effect for the future.

 

6. Integration of the Trusted Shops Trustbadge

 

The Trusted Shops Trustbadge is integrated on this website to display our Trusted Shops seal of approval and any reviews we may have collected, as well as to offer Trusted Shops products to buyers after an order has been placed.

 

This serves to safeguard our legitimate interests, which predominate in the context of a weighing of interests, in optimal marketing by enabling safe shopping in accordance with Art. 6 Para. 1 S. 1 lit. The Trustbadge and the services advertised with it are offered by Trusted Shops GmbH, Subbelrather Str.15C, 50823 Cologne. The Trustbadge is provided by a CDN provider (Content Delivery Network) as part of order processing. Trusted Shops GmbH also uses service providers from the USA. An adequate level of data protection is ensured. Further information on data protection at Trusted Shops GmbH can be found here. https://www.trustedshops.de/impressum/#datenschutz

When you call up the Trustbadge, the web server automatically saves a so-called server log file, which also contains your IP address, the date and time of the call, the amount of data transferred and the requesting provider (access data) and documents the call. Individual access data are stored in a security database for the analysis of security vulnerabilities. The log files are automatically deleted no later than 90 days after creation.

Further personal data is transferred to Trusted Shops GmbH if you decide to use Trusted Shops products after completing an order or if you have already registered for use. The contractual agreement made between you and Trusted Shops applies. For this purpose, personal data is automatically collected from the order data. Whether you as a buyer is already registered for a product use is automatically checked using a neutral parameter, the email address hashed by a cryptological one-way function. The e-mail address is converted into this hash value, which cannot be decrypted for Trusted Shops, before it is transmitted. After checking for a match, the parameter is automatically deleted.

This is necessary for the fulfillment of our and Trusted Shops ‘overriding legitimate interests in the provision of the buyer protection linked to the specific order and the transactional evaluation services in accordance with Art. 6 Para. 1 S. 1 lit.f GDPR. Further details, including the objection, can be found in the Trusted Shops data protection declaration linked above and in the Trustbadge.

 

7. Cookies

In order to make visiting our website attractive and to enable the use of certain functions, to display suitable products or for market research, we use so-called cookies on various pages. This serves to safeguard our predominantly legitimate interests in an optimized presentation of our offer in accordance with Art. 6 Para. 1 S. 1 lit.f GDPR. Cookies are small text files that are automatically saved on your device. Some of the cookies we use are deleted at the end of the browser session, i.e. after you close your browser (so-called session cookies). Other cookies remain on your device and enable us to recognize your browser the next time you visit (persistent cookies). You can see the duration of the storage in the overview in the cookie settings of your web browser. You can set your browser so that you are informed about the setting of cookies and individually decide whether to accept them or to exclude the acceptance of cookies for certain cases or in general. Each browser differs in the way it manages cookie settings. This is described in the help menu of every browser, which explains how you can change your cookie settings. You can find these for the respective browser under the following links:

Internet Explorer ™
Safari ™
Chrome ™
Firefox ™
Opera ™


If you do not accept cookies, the functionality of our website may be restricted.

 

8. Online Marketing

Google reCAPTCHA
For the purpose of protecting against misuse of our web forms and against spam, we use the Google reCAPTCHA service as part of some of the forms on this website. Google reCAPTCHA is an offer from Google Ireland Limited, a company incorporated and operated under Irish law with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland. (www.google.de). By checking manual input, this service prevents automated software (so-called bots) from carrying out abusive activities on the website. According to Art. 6 Para. 1 S. 1 lit.

Google reCAPTCHA uses a code integrated into the website, a so-called JavaScript, within the scope of the verification, methods that enable an analysis of the use of the website by you, such as cookies. The automatically collected information about your use of this website, including your IP address, is usually transferred to a Google server in the USA and stored there. In addition, other cookies stored in your browser by Google services are evaluated by Google reCAPTCHA.
Reading or saving of personal data from the input fields of the respective form does not take place.

As far as information is transmitted to and stored by Google on servers in the USA, the American company Google LLC is certified under the EU-US Privacy Shield. A current certificate can here can be viewed. Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield.

You can prevent Google from collecting the data generated by the JavaScript or the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by executing it in your browser settings prevent JavaScript or the setting of cookies. Please note that this may restrict the functionality of our website for your use.

You can find more information on Google's data protection policy here.

 

9. Social media

Our online presence on Facebook, Youtube, Instagram, Pinterest

Our presence on social networks and platforms serves for better, active communication with our customers and interested parties. There we provide information about our products and current special promotions.
When you visit our online presence on social media, your data can be automatically collected and saved for market research and advertising purposes. Using pseudonyms, so-called usage profiles are created from this data. These can be used, for example, to place advertisements inside and outside the platforms that presumably correspond to your interests. For this purpose, cookies are usually used on your device. The visitor behavior and the interests of the user are stored in these cookies. According to Art. 6 Para. 1 lit.f. GDPR, this serves to safeguard our legitimate interests, which predominate in the context of a weighing of interests, in an optimized presentation of our offer and effective communication with customers and interested parties. If you are asked for your consent (consent) to the data processing by the respective social media platform operator, e.g. with the help of a checkbox, the legal basis for the data processing is Art. 6 Para. 1 lit. a GDPR.
Insofar as the aforementioned social media platforms are headquartered in the USA, the following applies: The European Commission has issued an adequacy decision for the USA. This goes back to the EU-US Privacy Shield. A current certificate for the respective company can be herecan be viewed.
The detailed information on the processing and use of the data by the providers on their pages as well as a contact option and your related rights and setting options to protect your privacy, in particular options for objection (opt-out), can be found in the data protection information of the providers linked below. If you still need help in this regard, you can contact us.

Facebook: https://www.facebook.com/about/privacy/

Google / YouTube: https://policies.google.com/privacy?hl=en-GB

Instagram: https://help.instagram.com/519522125107875

Pinterest: https://about.pinterest.com/en/privacy-policy

Opposition option (opt-out):

Facebook: https://www.facebook.com/settings?tab=ads

Google / YouTube: https://adssettings.google.com/authenticated

Instagram: https://help.instagram.com/519522125107875

Pinterest: https://www.pinterest.co.uk/settings

10. Contact options and your rights

 

 

 

As a data subject, you have the following rights:
• In accordance with Art. 15 GDPR, the right to request information about your personal data processed by us to the extent specified therein;
• In accordance with Art. 16 GDPR, the right to immediately request the correction of incorrect personal data or the completion of your personal data stored by us;
• In accordance with Art. 17 GDPR, the right to request the deletion of your personal data stored by us, unless further processing
- to exercise the right to freedom of expression and information;
- to fulfill a legal obligation;
- for reasons of public interest or
- to assert, exercise or defend legal claims
is required;
• In accordance with Art. 18 GDPR, the right to request that the processing of your personal data be restricted, insofar as
- you dispute the accuracy of the data;
- the processing is unlawful, but you refuse to delete it;
- we no longer need the data, but you need them to assert, exercise or defend legal claims or
- You have lodged an objection to the processing in accordance with Art. 21 GDPR;
• In accordance with Art. 20 GDPR, the right to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request that it be transmitted to another person responsible;
• According to Art. 77 GDPR the right to complain to a supervisory authority. As a rule, you can contact the supervisory authority of your usual place of residence or work or our company headquarters.

If you have any questions about the collection, processing or use of your personal data, information, correction, restriction or deletion of data as well as revocation of granted consent or objection to a specific use of data, please contact us directly using the contact details in our imprint.

 

Right to object
Insofar as we process personal data as explained above in order to safeguard our legitimate interests, which are predominant in the context of a weighing of interests, you can object to this processing with effect for the future. If the processing is carried out for direct marketing purposes, you can exercise this right at any time as described above. If the processing takes place for other purposes, you only have a right of objection if there are reasons that arise from your particular situation.

After exercising your right of objection, we will no longer process your personal data for these purposes, unless we can prove compelling legitimate reasons for the processing that outweigh your interests, rights and freedoms, or if the processing requires the assertion, exercise or defense of Serves legal claims

This does not apply if the processing is carried out for direct marketing purposes. Then we will no longer process your personal data for this purpose.

 

Data protection created with the Trusted Shops Legal copywriter in cooperation with Wilde Beuger Solmecke Attorneys at Law.

 


Revocation of your consent to data processing

Many data processing operations are only possible with your express consent. You can revoke your consent at any time. An informal e-mail to us is sufficient. The legality of the data processing carried out before the revocation remains unaffected by the revocation.

Right to object to the collection of data in special cases and to direct advertising (Art. 21 GDPR)

If the data processing takes place on the basis of Art. 6 Paragraph 1 lit. e or f GDPR, you have the right to object to the processing of your personal data at any time for reasons that arise from your particular situation; this also applies to profiling based on these provisions. The respective legal basis on which processing is based can be found in this data protection declaration. If you object, we will no longer process your personal data concerned, unless we can prove compelling legitimate reasons for the processing that outweigh your interests, rights and freedoms or the processing serves to assert, exercise or defend legal claims ( Objection according to Art. 21 Para. 1 GDPR).

If your personal data are processed in order to operate direct mail, you have the right to object at any time to the processing of personal data concerning you for the purpose of such advertising; this also applies to profiling insofar as it is associated with such direct advertising. If you object, your personal data will then no longer be used for direct marketing purposes (objection according to Art. 21 Paragraph 2 GDPR).

Right of appeal to the competent supervisory authority

In the event of violations of the GDPR, the data subjects have the right to lodge a complaint with a supervisory authority, in particular in the member state of their habitual residence, their place of work or the place of the alleged violation. The right to lodge a complaint exists without prejudice to other administrative or judicial remedies.

Right to data portability

You have the right to have data that we process automatically on the basis of your consent or in fulfillment of a contract handed over to you or to a third party in a common, machine-readable format. If you request the direct transfer of the data to another person responsible, this will only be done if it is technically feasible.

SSL or TLS encryption

For security reasons and to protect the transmission of confidential content, such as orders or inquiries that you send to us as the website operator, this site uses an SSL or. TLS encryption. You can recognize an encrypted connection by the fact that the address line of the browser changes from “http: //” to “https: //” and by the lock symbol in your browser line.

If the SSL or TLS encryption is activated, the data that you transmit to us cannot be read by third parties.

Encrypted payment transactions on this website

If there is an obligation to provide us with your payment data (e.g. account number for direct debit authorization) after the conclusion of a fee-based contract, this data is required for payment processing.

Payment transactions using common means of payment (Visa / MasterCard, direct debit) are made exclusively via an encrypted SSL or TLS connection. You can recognize an encrypted connection by the fact that the address line of the browser changes from "http: //" to "https: //" and by the lock symbol in your browser line.

With encrypted communication, your payment data that you transmit to us cannot be read by third parties.

Information, blocking, deletion and correction

Within the framework of the applicable legal provisions, you have the right to free information about your stored personal data, their origin and recipient and the purpose of the data processing and, if necessary, a right to correct, block or delete this data. You can contact us at any time at the address given in the legal notice if you have any further questions on the subject of personal data.

Right to restriction of processing

You have the right to request that the processing of your personal data be restricted. You can contact us at any time at the address given in the legal notice. The right to restriction of processing exists in the following cases:

  • If you dispute the accuracy of your personal data stored by us, we usually need time to check this. For the duration of the test, you have the right to request that the processing of your personal data be restricted.
  • If the processing of your personal data happened / happens unlawfully, you can request the restriction of the data processing instead of deletion.
  • If we no longer need your personal data, but you need them to exercise, defend or assert legal claims, you have the right to request that the processing of your personal data be restricted instead of being deleted.
  • If you have lodged an objection in accordance with Art. 21 Paragraph 1 GDPR, your interests and ours must be weighed up. As long as it is not yet clear whose interests prevail, you have the right to request that the processing of your personal data be restricted.

If you have restricted the processing of your personal data, this data - apart from its storage - may only be allowed with your consent or for the establishment, exercise or defense of legal claims or for the protection of the rights of another natural or legal person or for reasons of important public interest processed by the European Union or a member state.

Objection to advertising emails

We hereby object to the use of the contact data published as part of the imprint obligation for sending unsolicited advertising and information materials. The operators of the pages expressly reserve the right to take legal action in the event of unsolicited sending of advertising information, such as spam e-mails.

3. Data collection on our website

Cookies

Some of the internet pages use so-called cookies. Cookies do not damage your computer and do not contain viruses. Cookies serve to make our offer more user-friendly, more effective and safer. Cookies are small text files that are stored on your computer and saved by your browser.

Most of the cookies we use are so-called “session cookies”. They are automatically deleted after your visit. Other cookies remain stored on your device until you delete them. These cookies enable us to recognize your browser the next time you visit.

You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general and activate the automatic deletion of cookies when you close the browser. If cookies are deactivated, the functionality of this website may be restricted.

Cookies that are required to carry out the electronic communication process or to provide certain functions you require (e.g. shopping cart function) are stored on the basis of Art. 6 Para. 1 lit.f GDPR. The website operator has a legitimate interest in the storage of cookies for the technically error-free and optimized provision of its services. If other cookies (e.g. cookies for analyzing your surfing behavior) are stored, these will be treated separately in this data protection declaration.

Server log files

The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:

  • Browser type and browser version
  • operating system used
  • Referrer URL
  • Host name of the accessing computer
  • Time of the server request
  • IP address

This data will not be merged with other data sources.

This data is recorded on the basis of Art. 6 Paragraph 1 lit. f GDPR. The website operator has a legitimate interest in the technically error-free presentation and optimization of his website - the server log files must be recorded for this.

contact form

If you send us inquiries using the contact form, your details from the inquiry form, including the contact details you provided there, will be stored by us for the purpose of processing the request and in case of follow-up questions. We do not pass on this data without your consent.

The processing of the data entered in the contact form takes place exclusively on the basis of your consent (Art. 6 Para. 1 lit. a GDPR). You can revoke this consent at any time. An informal e-mail to us is sufficient. The legality of the data processing operations carried out before the revocation remains unaffected by the revocation.

The data you enter in the contact form will remain with us until you ask us to delete it, revoke your consent to storage or the purpose for data storage no longer applies (e.g. after your request has been processed). Mandatory legal provisions - in particular retention periods - remain unaffected.

Inquiries by email, phone or fax

If you contact us by e-mail, telephone or fax, your request, including all personal data derived from it (name, request), will be stored and processed by us for the purpose of processing your request. We do not pass on this data without your consent.

This data is processed on the basis of Article 6 (1) (b) GDPR, provided that your request is related to the performance of a contract or is necessary to carry out pre-contractual measures. In all other cases, the processing is based on your consent (Art. 6 Para. 1 lit. a GDPR) and / or on our legitimate interests (Art. 6 Para. 1 lit.f GDPR), as we have a legitimate interest in the effective Processing the inquiries sent to us.

The data you send to us via contact requests will remain with us until you request us to delete it, revoke your consent to storage or the purpose for data storage no longer applies (e.g. after your request has been processed). Mandatory statutory provisions - in particular statutory retention periods - remain unaffected.

Registration on this website

You can register on our website in order to use additional functions on the site. We use the data entered for this purpose only for the purpose of using the respective offer or service for which you have registered. The mandatory information requested during registration must be given in full. Otherwise we will refuse the registration.

For important changes, for example in the scope of the offer or for technically necessary changes, we use the email address provided during registration to inform you in this way.

The processing of the data entered during registration takes place on the basis of your consent (Art. 6 Para. 1 lit. a GDPR). You can revoke your consent at any time. An informal e-mail to us is sufficient. The legality of the data processing that has already taken place remains unaffected by the revocation.

The data recorded during registration will be stored by us as long as you are registered on our website and will then be deleted. Statutory retention periods remain unaffected.

Processing of data (customer and contract data)

We collect, process and use personal data only insofar as they are necessary for the establishment, content design or change of the legal relationship (inventory data). This is done on the basis of Art. 6 Paragraph 1 lit. b GDPR, which allows the processing of data for the fulfillment of a contract or pre-contractual measures. We collect, process and use personal data on the use of our website (usage data) only insofar as this is necessary to enable the user to use the service or to bill them.

The customer data collected will be deleted after the order has been completed or the business relationship has ended. Statutory retention periods remain unaffected.

Data transfer when concluding a contract for online shops, dealers and dispatch of goods

We only transmit personal data to third parties if this is necessary in the context of contract processing, for example to the company entrusted with the delivery of the goods or the credit institution commissioned with the payment processing. A further transmission of the data does not take place or only if you have expressly consented to the transmission. Your data will not be passed on to third parties without your express consent, e.g. for advertising purposes.

The basis for data processing is Art. 6 Paragraph 1 lit. b GDPR, which allows the processing of data for the fulfillment of a contract or pre-contractual measures.

Data transfer when concluding a contract for services and digital content

We only transfer personal data to third parties if this is necessary in the context of contract processing, for example to the credit institute commissioned to process payments.

A further transmission of the data does not take place or only if you have expressly consented to the transmission. Your data will not be passed on to third parties without your express consent, e.g. for advertising purposes.

The basis for data processing is Art. 6 Paragraph 1 lit. b GDPR, which allows the processing of data for the fulfillment of a contract or pre-contractual measures.

4. Social media

Social media plugins with Shariff

Social media plugins are used on our website (e.g. Facebook, Twitter, Google+, Instagram, Pinterest, XING, LinkedIn, Tumblr).

You can usually recognize the plugins by their respective social media logos. In order to guarantee data protection on our website, we only use these plugins together with the so-called "Shariff" solution. This application prevents the plugins integrated on our website from transferring data to the respective provider when the page is entered for the first time.

Only when you activate the respective plug-in by clicking the associated button will a direct connection to the provider's server be established (consent). As soon as you activate the plugin, the respective provider receives the information that you have visited our site with your IP address. If you are logged into your respective social media account (e.g. Facebook) at the same time, the respective provider can assign your visit to our website to your user account.

Activating the plugin constitutes consent within the meaning of Article 6 (1) (a) GDPR. You can revoke this consent at any time with future effect.

Facebook plugins (like & share button)

Plugins of the social network Facebook, provider Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA, are integrated on our pages. You can recognize the Facebook plugins by the Facebook logo or the "Like" button on our website. You can find an overview of the Facebook plugins here: https://developers.facebook.com/docs/plugins/?locale=de_DE.

When you visit our website, the plug-in establishes a direct connection between your browser and the Facebook server. As a result, Facebook receives the information that you have visited our site with your IP address. If you click the Facebook "Like" button while you are logged into your Facebook account, you can link the content of our pages to your Facebook profile. This enables Facebook to assign your visit to our website to your user account. We would like to point out that, as the provider of the pages, we have no knowledge of the content of the data transmitted or its use by Facebook. You can find more information on this in Facebook's privacy policy at: https://de-de.facebook.com/privacy/explanation.

If you do not want Facebook to be able to assign your visit to our website to your Facebook user account, please log out of your Facebook user account.

The Facebook plugins are used on the basis of Art. 6 Para. 1 lit.f GDPR. The website operator has a legitimate interest in the widest possible visibility in social media.

Instagram plugin

Functions of the Instagram service are integrated on our website. These functions are offered by Instagram Inc., 1601 Willow Road, Menlo Park, CA 94025, USA.

If you are logged into your Instagram account, you can link the contents of our pages to your Instagram profile by clicking the Instagram button. This enables Instagram to assign your visit to our website to your user account. We would like to point out that, as the provider of the pages, we have no knowledge of the content of the data transmitted or its use by Instagram.

The Instagram plug-in is used on the basis of Art. 6 Para. 1 lit.f GDPR. The website operator has a legitimate interest in the widest possible visibility in social media.

You can find more information on this in Instagram's privacy policy: https://instagram.com/about/legal/privacy/.

Pinterest plugin

On our site we use social plugins from the social network Pinterest, which is operated by Pinterest Inc., 808 Brannan Street, San Francisco, CA 94103-490, USA ("Pinterest").

When you call up a page that contains such a plugin, your browser establishes a direct connection to the Pinterest servers. The plugin transmits log data to the Pinterest server in the USA. This log data may contain your IP address, the address of the websites you visit, which also contain Pinterest functions, the type and settings of the browser, the date and time of the request, your way of using Pinterest and cookies.

The Pinterest plug-in is used on the basis of Art. 6 Para. 1 lit.f GDPR. The website operator has a legitimate interest in the widest possible visibility in social media.

Further information on the purpose, scope and further processing and use of the data by Pinterest as well as your related rights and options for protecting your privacy can be found in Pinterest's data protection information: https://policy.pinterest.com/de/privacy-policy.

5. Analysis tools and advertising

Google Analytics

This website uses functions of the web analysis service Google Analytics. The provider is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

Google Analytics uses so-called "cookies". These are text files that are saved on your computer and that enable your use of the website to be analyzed. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there.

The storage of Google Analytics cookies and the use of this analysis tool are based on Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in analyzing user behavior in order to optimize both its website and its advertising.

IP anonymization

We have activated the IP anonymization function on this website. As a result, your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area before it is transmitted to the USA. The full IP address will only be transmitted to a Google server in the USA and shortened there in exceptional cases. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide the website operator with other services relating to website activity and internet usage. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.

Browser plugin

You can prevent the storage of cookies by setting your browser software accordingly; we would like to point out, however, that in this case you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by downloading the browser plug-in available under the following link and install: https://tools.google.com/dlpage/gaoptout?hl=de.

Objection against data collection

You can prevent Google Analytics from collecting your data by clicking on the following link. An opt-out cookie will be set which prevents your data from being recorded on future visits to this website: Deactivate Google Analytics.

You can find more information on how Google Analytics handles user data in Google's privacy policy: https://support.google.com/analytics/answer/6004245?hl=de.

Order processing

We have concluded an order processing contract with Google and fully implement the strict requirements of the German data protection authorities when using Google Analytics.

Demographic characteristics in Google Analytics

This website uses the “demographic characteristics” function of Google Analytics. This allows reports to be created that contain information on the age, gender and interests of the site visitors. This data comes from interest-based advertising from Google as well as from visitor data from third-party providers. These data cannot be assigned to a specific person. You can deactivate this function at any time via the ad settings in your Google account or generally prohibit the collection of your data by Google Analytics as described in the section “Objection to data collection”.

Storage period

Data stored by Google at user and event level that are linked to cookies, user IDs (e.g. user ID) or advertising IDs (e.g. DoubleClick cookies, Android advertising ID) are anonymized after 14 months or deleted. You can find details on this under the following link: https://support.google.com/analytics/answer/7667196?hl=de

Google AdSense

This website uses Google AdSense, a service for integrating advertisements from Google Inc. ("Google"). The provider is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

Google AdSense uses so-called "cookies", text files that are stored on your computer and that enable an analysis of the use of the website. Google AdSense also uses so-called web beacons (invisible graphics). These web beacons can be used to evaluate information such as visitor traffic on these pages.

The information generated by cookies and web beacons about the use of this website (including your IP address) and the delivery of advertising formats are transmitted to and stored by Google on servers in the United States. This information can be passed on by Google to contractual partners of Google. However, Google will not merge your IP address with other data stored about you.

The storage of AdSense cookies is based on Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in analyzing user behavior in order to optimize both its website and its advertising.

You can prevent the installation of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. By using this website, you consent to the processing of the data collected about you by Google in the manner described above and for the purpose stated above.

Google Analytics remarketing

Our websites use the functions of Google Analytics Remarketing in conjunction with the cross-device functions of Google AdWords and Google DoubleClick. The provider is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

This function enables the advertising target groups created with Google Analytics Remarketing to be linked with the cross-device functions of Google AdWords and Google DoubleClick. In this way, interest-based, personalized advertising messages that have been adapted to you depending on your previous usage and surfing behavior on one device (e.g. mobile phone) can also be displayed on another of your devices (e.g. tablet or PC).

If you have given your consent, Google will link your web and app browser history to your Google account for this purpose. In this way, the same personalized advertising messages can be displayed on every device on which you log in with your Google account.

To support this function, Google Analytics collects Google-authenticated user IDs, which are temporarily linked to our Google Analytics data in order to define and create target groups for cross-device advertising.

You can permanently object to cross-device remarketing / targeting by deactivating personalized advertising in your Google account; follow this link: https://www.google.com/settings/ads/onweb/.

The collected data is summarized in your Google account exclusively on the basis of your consent, which you can give to Google or revoke (Art. 6 Para. 1 lit. a GDPR). In the case of data collection processes that are not merged in your Google account (e.g. because you do not have a Google account or have objected to the merging), the collection of data is based on Art. 6 Paragraph 1 lit.f GDPR. The legitimate interest arises from the fact that the website operator has an interest in the anonymized analysis of the website visitors for advertising purposes.

Further information and the data protection provisions can be found in Google's data protection declaration at: https://policies.google.com/technologies/ads?hl=de.

Google AdWords and Google Conversion Tracking

This website uses Google AdWords. AdWords is an online advertising program from Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, United States (“Google”).

We use so-called conversion tracking as part of Google AdWords. If you click on an ad placed by Google, a conversion tracking cookie is set. Cookies are small text files that the Internet browser stores on the user's computer. These cookies lose their validity after 30 days and are not used to personally identify users. If the user visits certain pages on this website and the cookie has not yet expired, we and Google can see that the user clicked on the ad and was redirected to this page.

Every Google AdWords customer receives a different cookie. The cookies cannot be tracked via the websites of AdWords customers. The information obtained using the conversion cookie is used to generate conversion statistics for AdWords customers who have opted for conversion tracking. Customers find out the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not receive any information with which users can be personally identified. If you do not want to participate in tracking, you can object to this use by easily deactivating the Google conversion tracking cookie in your internet browser under user settings. You will then not be included in the conversion tracking statistics.

The storage of “conversion cookies” and the use of this tracking tool are based on Art. 6 Paragraph 1 lit. f GDPR. The website operator has a legitimate interest in analyzing user behavior in order to optimize both its website and its advertising.

You can find more information about Google AdWords and Google Conversion Tracking in Google's privacy policy: https://policies.google.com/privacy?hl=de.

You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general and activate the automatic deletion of cookies when you close the browser. If cookies are deactivated, the functionality of this website may be restricted.

Facebook pixel

Our website uses the visitor action pixel from Facebook, Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA (“Facebook”) to measure conversion.

In this way, the behavior of the page visitors can be tracked after they have been redirected to the provider's website by clicking on a Facebook ad. This enables the effectiveness of the Facebook advertisements to be evaluated for statistical and market research purposes and future advertising measures to be optimized.

The data collected is anonymous for us as the operator of this website; we cannot draw any conclusions about the identity of the user. However, the data is stored and processed by Facebook so that a connection to the respective user profile is possible and Facebook uses the data for its own advertising purposes, in accordance with the Facebook Data Usage Policy can use. This enables Facebook to place advertisements on Facebook pages as well as outside of Facebook. As the website operator, we cannot influence this use of the data.

The use of Facebook pixels is based on Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in effective advertising measures including social media.

You will find further information on protecting your privacy in Facebook's data protection information: https://de-de.facebook.com/about/privacy/.

You can also use the “Custom Audiences” remarketing function in the advertising settings area under https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen deactivate. To do this, you must be logged in to Facebook.

If you do not have a Facebook account, you can deactivate usage-based advertising from Facebook on the website of the European Interactive Digital Advertising Alliance: http://www.youronlinechoices.com/de/praferenzmanagement/.

6. Newsletter

Newsletter data

If you would like to receive the newsletter offered on the website, we need an e-mail address from you as well as information that allows us to verify that you are the owner of the e-mail address provided and that you agree to receive the newsletter . Further data is not collected or is only collected on a voluntary basis. We use this data exclusively for sending the requested information and do not pass it on to third parties.

The processing of the data entered in the newsletter registration form takes place exclusively on the basis of your consent (Art. 6 Para. 1 lit. a GDPR). You can revoke your consent to the storage of the data, the e-mail address and their use for sending the newsletter at any time, for example via the "Unsubscribe" link in the newsletter. The legality of the data processing operations that have already taken place remains unaffected by the revocation.

The data you have stored with us for the purpose of receiving the newsletter will be stored by us until you unsubscribe from the newsletter and will be deleted after you unsubscribe from the newsletter. This does not affect data that we have saved for other purposes.

7. Plugins and Tools

YouTube with extended data protection

Our website uses plugins from the YouTube website. The operator of the website is YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA.

We use YouTube in the extended data protection mode. According to YouTube, this mode ensures that YouTube does not store any information about visitors to this website before they watch the video. However, the transfer of data to YouTube partners is not necessarily excluded by the extended data protection mode. This is how YouTube connects to the Google DoubleClick network regardless of whether you are watching a video.

As soon as you start a YouTube video on our website, a connection to the YouTube servers is established. The YouTube server is informed which of our pages you have visited. If you are logged into your YouTube account, you enable YouTube to assign your surfing behavior directly to your personal profile. You can prevent this by logging out of your YouTube account.

Furthermore, YouTube can save various cookies on your device after starting a video. With the help of these cookies, YouTube can receive information about visitors to our website. This information is used, among other things. used to collect video statistics, improve usability and prevent fraud attempts. The cookies remain on your device until you delete them.

If necessary, further data processing operations can be triggered after the start of a YouTube video, over which we have no influence.

YouTube is used in the interest of an appealing presentation of our online offers. This represents a legitimate interest within the meaning of Art. 6 Para. 1 lit.f GDPR.

You can find more information about data protection at YouTube in their data protection declaration at: https://policies.google.com/privacy?hl=de.

Google Web Fonts

This page uses so-called web fonts, which are provided by Google, for the uniform display of fonts. The Google Fonts are installed locally. There is no connection to Google servers.

8. Payment Providers and Resellers

PayPal

On our website we offer payment via PayPal, among other things. The provider of this payment service is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter “PayPal”).

If you choose to pay via PayPal, the payment details you have entered will be transmitted to PayPal.

Your data is transmitted to PayPal on the basis of Art. 6 Paragraph 1 lit. a GDPR (consent) and Art. 6 Paragraph 1 lit. b GDPR (processing to fulfill a contract). You have the option of withdrawing your consent to data processing at any time. A revocation does not affect the effectiveness of data processing operations in the past.

Klarna

On our website we offer, among other things, payment with Klarna's services. The provider is Klarna AB, Sveavägen 46, 111 34 Stockholm, Sweden (hereinafter “Klarna”).

Klarna offers various payment options (e.g. installment purchase). If you decide to pay with Klarna (Klarna checkout solution), Klarna will collect various personal data from you. You can read details on this in Klarna's data protection declaration under the following link: https://www.klarna.com/de/datenschutz/.

Klarna uses cookies to optimize the use of the Klarna checkout solution. The optimization of the checkout solution represents a legitimate interest within the meaning of Article 6 (1) (f) GDPR. Cookies are small text files that are stored on your device and do not cause any damage. They remain on your device until you delete them. Details on the use of Klarna cookies can be found at the following link: https://cdn.klarna.com/1.0/shared/content/policy/cookie/de_de/checkout.pdf.

The transfer of your data to Klarna takes place on the basis of Art. 6 Paragraph 1 lit. a GDPR (consent) and Art. 6 Paragraph 1 lit. b GDPR (processing to fulfill a contract). You have the option of withdrawing your consent to data processing at any time. A revocation does not affect the effectiveness of data processing operations in the past.

Instant bank transfer

On our website we offer, among other things, payment by means of "instant transfer". The provider of this payment service is Sofort GmbH, Theresienhöhe 12, 80339 Munich (hereinafter “Sofort GmbH”).

With the help of the “Sofortüberweisung” process, we receive a real-time payment confirmation from Sofort GmbH and can immediately begin to meet our obligations.

If you have decided on the “Sofortüberweisung” payment method, send the PIN and a valid TAN to Sofort GmbH, which can be used to log into your online banking account. After logging in, Sofort GmbH automatically checks your account balance and transfers the money to us using the TAN you transmitted. It then immediately sends us a transaction confirmation. After logging in, your sales, the credit line of the overdraft facility and the existence of other accounts and their stocks are automatically checked.

In addition to the PIN and TAN, the payment data you have entered and your personal data are also transmitted to Sofort GmbH. Your personal data is your first and last name, address, telephone number (s), email address, IP address and any other data required for payment processing. The transmission of this data is necessary to establish your identity beyond doubt and to prevent attempted fraud.

The transfer of your data to Sofort GmbH takes place on the basis of Art. 6 Paragraph 1 lit. a GDPR (consent) and Art. 6 Paragraph 1 lit. b GDPR (processing to fulfill a contract). You have the option of withdrawing your consent to data processing at any time. A revocation does not affect the effectiveness of data processing operations in the past.

You can find details on payment with immediate transfer from the following links: https://www.sofort.de/datenschutz.html and https://www.klarna.com/sofort/.