Privacy Policy
Privacy is a matter of trust, and your trust is important to us. We respect your privacy. The protection and lawful collection, processing, and use of your personal data is therefore an important concern for us. So that you can feel secure when visiting our websites, we strictly observe the legal provisions when handling your personal data and would like to inform you here about our data collection and use.
The terms used below follow those applied by the European legislator in the context of the GDPR and have been incorporated accordingly. Our stated goal is to be as easy to read and understand as possible for our customers, users, and business partners. To achieve this goal, we have first reproduced the most important definitions used, which you can also find in Art. 4 of the GDPR.
1. Definitions
1.1. Personal Data
Personal data means any information relating to an identified or identifiable natural person (hereinafter referred to as “data subject”); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier, or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural, or social identity of that natural person.
1.2. Data Subject
A data subject is any identified or identifiable natural person whose personal data is processed by the controller responsible for the processing.
1.3. Processing
Processing is any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination, or otherwise making available, alignment or combination, restriction, erasure, or destruction.
1.4. Restriction of Processing
Restriction of processing is the marking of stored personal data with the aim of limiting their future processing.
1.5. Profiling
Profiling is any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to a natural person, in particular to analyze or predict aspects concerning that natural person’s work performance, economic situation, health, personal preferences, interests, reliability, behavior, location, or movements.
1.6. Pseudonymization
Pseudonymization is the processing of personal data in such a manner that the personal data can no longer be attributed to a specific data subject without the use of additional information, provided that such additional information is kept separately and is subject to technical and organizational measures to ensure that the personal data is not attributed to an identified or identifiable natural person.
1.7. Controller (for Data Processing)
The controller is the natural or legal person, public authority, agency, or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data. Where the purposes and means of such processing are determined by Union or Member State law, the controller or the specific criteria for its nomination may be provided for by Union or Member State law.
1.8. Processor
A processor is a natural or legal person, public authority, agency, or other body which processes personal data on behalf of the controller.
1.9. Recipient
A recipient is a natural or legal person, public authority, agency, or other body to which personal data are disclosed, whether a third party or not. However, public authorities which may receive personal data in the framework of a particular inquiry in accordance with Union or Member State law shall not be regarded as recipients; the processing of such data by those public authorities shall be in compliance with the applicable data protection rules according to the purposes of the processing.
1.10. Third Party
A third party is a natural or legal person, public authority, agency, or other body other than the data subject, the controller, the processor, and persons who, under the direct authority of the controller or processor, are authorized to process personal data.
1.11. Consent
Consent of the data subject means any freely given, specific, informed, and unambiguous indication of the data subject’s wishes by which he or she, by a statement or by a clear affirmative action, signifies agreement to the processing of personal data relating to him or her.
2. Controller
The controller within the meaning of Art. 4 No. 7 GDPR and in accordance with other applicable data protection provisions in the Member States of the EU is:
Digi Planet
Industriestraße 2B
DE-22869 Schenefeld
Germany
E-mail: [email protected]
3. Contact
You have various options to contact us at [email protected] — via email, telephone, fax, or post. If you contact us, we will use the personal data you voluntarily provide solely for the purpose of getting in touch with you and processing your inquiry.
4. Log Data
Whenever you access the pages of [email protected], usage data is transmitted by the respective internet browser and stored in log files, the so-called logfiles. The stored data records contain the following data: date and time of access, name of the accessed page, IP address, referrer URL (the source URL from which you arrived at our websites), the amount of data transferred, loading time, as well as product and version information of the browser used. We evaluate the logfile data in anonymized form in order to further improve our services and make them more user-friendly, to quickly detect and fix errors, and to manage server capacities.
5. Collection, Processing, and Use of Personal Data
5.1. Personal Data
Personal data refers to information about the factual or personal circumstances of a specific or identifiable natural person. This includes, for example, your name, telephone number, address, and all master data you provide to us during registration and the creation of your customer account. Statistical data that we collect when you visit our online shop and that cannot be directly linked to your person is not included in this definition. For example, statistics on which pages of our shop are particularly popular or how many users visit specific pages of [email protected].
5.2. Customer Account
For every customer who registers accordingly, we set up a password-protected direct access to their stored master data (customer account). Here, you can view data on your completed, open, and recently shipped orders and manage your address data and newsletter preferences. You agree to treat your personal access data confidentially and not to make it accessible to any unauthorized third party. We cannot accept liability for the misuse of passwords unless we are responsible for such misuse.
Unless you log out, you will remain automatically logged in. This function allows you to use part of our services without having to log in again each time. For security reasons, however, you will be prompted to re-enter your password, for example, if you wish to change your personal data or place an order.
5.3. Collection, Processing, and Use of Your Personal Data
Privacy protection is important to us. Therefore, when collecting, processing, and using your personal data, we strictly comply with the legal provisions of the Federal Data Protection Act. We collect, store, and process your data for the complete processing of your purchase, including any subsequent warranty claims, for our customer service, technical administration, and our own marketing purposes. Your personal data is only passed on to third parties or otherwise transmitted if this is necessary for contract processing or billing purposes, or if you have given your prior consent.
In the course of order processing, for example, the service providers we use (such as carriers, logistics providers, banks) receive the necessary data for order and contract processing. The data passed on may only be used by our service providers to perform their tasks. Any other use of the information is not permitted and does not occur with any of the service providers we engage.
For your order, we require your correct name, address, and payment details. We need your email address to confirm receipt of your order and to communicate with you. We also use it for your identification (customer login). Additionally, you will receive your shipping confirmation via your email address.
Your personal data will be deleted if there are no legal retention obligations to prevent this and if you have asserted a deletion claim, if the data is no longer required for the purpose pursued with the storage, or if storage is otherwise inadmissible for legal reasons.
5.4. Use of Your Data for Advertising Purposes
In addition to processing your data to handle your purchase at Digi Planet, we also use your data to communicate with you about your orders, specific products, or marketing campaigns, and to recommend products or services that may interest you.
You can object to the use of your personal data for advertising purposes at any time, in whole or for specific measures, without incurring any costs for the future. A simple notification in text form (e.g., email, fax, letter) to the contact details mentioned in Section 2 is sufficient.
5.5. Competitions, Market, and Opinion Research
For competitions, we use your data to notify winners and to promote our offers. Detailed instructions can be found, if applicable, in the specific participation terms for each competition.
We also use your data for market and opinion research. Of course, we only use these anonymously for statistical purposes and only for Digi Planet. Your responses to surveys will not be passed on to third parties or published. We do not store the responses from our surveys together with your email address or other personal data.
You can object to the use of your data for market and opinion research at any time, in whole or for specific measures, without incurring any costs for the future. A simple notification in text form (e.g., email, fax, letter) to the contact details mentioned in Section 2 is sufficient.
6. Data Processing in Online Shopping
Through Digi Planet, you can order items from our range for a fee. In this context, we process personal data to fulfill the contract and, in particular, to process your order, deliver the goods, check your creditworthiness, handle payment, and any possible warranty cases. For these purposes, we primarily process your first and last name, gender, date of birth, delivery and billing address, and email address, as well as, if applicable, your password and telephone number.
For the purpose of contract processing or billing, your personal data will only be passed on to third parties or otherwise transmitted if this is necessary for contract processing or billing or if you have given your prior consent. In the course of processing your order, for example, logistics companies we use will receive the necessary data for order fulfillment.
7. Newsletter
For sending our newsletter, we use the so-called double opt-in procedure. This means we will only send you a newsletter by email once you have expressly confirmed to us beforehand that we should activate the newsletter service. We will then send you a notification email asking you to confirm your wish to receive our newsletter by clicking on a link contained in this email.
If you later no longer wish to receive newsletters from us, you can unsubscribe at any time and without further costs with future effect by clicking on the “unsubscribe newsletter” link contained in all Digi Planet emails and following the subsequent instructions. Alternatively, you can unsubscribe from the newsletter by sending a message in text form (e.g., email, fax, letter) to the contact details mentioned in Section 2.
8. Cookies
We use cookies on our pages to make visiting our website attractive and to enable the use of certain functions.
Cookies are small files that are stored on your device and store certain settings and data for exchange with our system via your browser. Basically, two types of cookies can be distinguished: session cookies, which are deleted as soon as you close your browser, and temporary cookies, which are stored on your device for a longer period. This storage helps us tailor our websites and offers to you and makes use easier, for example, by saving certain entries you make so that you do not have to repeat them constantly.
Most of the cookies we use are automatically deleted from your hard drive at the end of the browser session (hence “session cookies”). With these, we can offer you, for example, a cross-page shopping cart display, in which you can see how many items are currently in your cart and the current purchase value. In addition, we also use cookies that remain on your hard drive. On your next visit, it will automatically be recognized that you have already visited us and which entries and settings you prefer. Thanks to these files, it is possible, for example, for you to see information on the page specifically tailored to your interests. These cookies delete themselves automatically after one year.
Our cookies collect, among other things, the following information: session ID, hash for shopping cart, hash for wish list, origin of the user, gender of the visited category, last visited pages at Digi Planet.
No personal data is stored in the cookies used by Digi Planet. The cookies we use cannot be assigned to a specific person and therefore not to you. When the cookie is activated, it is assigned an identification number. At no time is it possible to assign your personal data to this identification number, and this is not done. Your name, IP address, or similar data that would make it possible to assign the cookie to you are never collected. Based on cookie technology, we only receive pseudonymized information, such as which pages of our shop were visited, which products were viewed, etc.
Accepting cookies is not a prerequisite for visiting our websites. However, we point out that the use of the shopping cart function and ordering products is only possible if you allow us to set cookies.
Of course, you can configure your browser so that it does not store our cookies on your hard drive. The help function in the menu bar of most web browsers explains how you can prevent your browser from accepting new cookies, how you can have your browser notify you when you receive a new cookie, or how you can delete all cookies you have already received and block them for all future cookies.
Instructions for Common Browsers:
Internet Explorer:
- Select “Internet Options” from the “Tools” menu.
- Click the “Privacy” tab.
- Here you can set the security settings for the internet zone. Determine whether and which cookies should be accepted or rejected.
- Confirm your settings with OK.
Firefox:
- Select “Options” from the “Tools” menu.
- Click on “Privacy”.
- From the drop-down menu, select “Use custom settings for history”.
- Now you can choose whether to accept cookies, how long to keep these cookies, and add exceptions for websites to which you always or never want to allow cookies.
- Confirm your settings with OK.
Google Chrome:
- Click on the Chrome menu in the browser toolbar.
- Select “Settings”.
- Click on “Show advanced settings”.
- Under “Privacy”, click on “Content settings”.
- Under “Cookies” you can make the following settings:
- Delete cookies
- Block cookies by default
- Delete cookies and site data when the browser is closed
- Allow exceptions for cookies from certain websites or domains
9. Analysis and Tracking Tools as well as Internet Technologies
9.1. Google
This website uses Google Analytics, a web analysis service provided by Google Inc. (Google). Google Analytics uses so-called cookies, which are text files stored on your computer that enable an analysis of your use of the website. The information generated by the cookie regarding your use of this website is usually transmitted to and stored on a Google server in the USA. In the event that IP anonymization is activated on this website, your IP address will first be shortened by Google within member states of the European Union or other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there.
On behalf of the operator of this website, Google will use this information to evaluate your use of the website, compile reports on website activity, and provide other services related to website usage and internet usage to the website operator. The IP address transmitted by your browser within the framework of Google Analytics will not be merged with other Google data. You may refuse the storage of cookies by selecting the appropriate settings on your browser software; however, please note that in this case, you may not be able to fully use all functions of this website.
We also use Google Conversion Tracking as an AdWords customer, an analysis service by Google. In doing so, a cookie (conversion cookie) is set on your computer by Google AdWords if you arrived at our website via a Google ad. These cookies expire after 30 days and are not used for personal identification. If you visit certain pages of ours and the cookie has not yet expired, we and Google can recognize that someone clicked on the ad and was redirected to our site. Each AdWords customer receives a different cookie, so cookies cannot be tracked across the websites of AdWords customers. The information collected using the conversion cookie is used to create conversion statistics for AdWords customers who have opted in to conversion tracking. AdWords customers learn the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not receive information that could personally identify users. If you do not wish to participate in tracking, you can refuse the setting of the cookie required for this purpose. Please follow the instructions described above in Section 8.
9.2. Microsoft
Our online services also use Conversion Tracking from Microsoft Corporation (One Microsoft Way, Redmond, WA 98052-6399, USA) (Microsoft). A cookie is set on your computer by Microsoft Bing Ads if you arrive at our website via a Microsoft Bing ad. Microsoft Bing and we can thus recognize that someone clicked on an ad, was redirected to our website, and reached a predetermined target page (conversion page). We only learn the total number of users who clicked on a Bing ad and were then redirected to the conversion page. No personal information identifying the user is provided. If you do not wish to participate in tracking, you can refuse the setting of the required cookie. Please follow the instructions described above in Section 8.
9.3. Retargeting
This website uses retargeting technologies operated by other providers. Retargeting allows users who have already shown interest in our shop and products to be specifically targeted with advertising on our partners’ websites. The display of advertisements in retargeting is based on a cookie-based analysis of prior user behavior. Of course, no personal data is stored, and the use of retargeting technology is carried out in compliance with applicable legal data protection regulations. If you do not agree to the display of such advertisements, you can disable cookies in your internet browser settings and/or delete existing cookies. Please follow the instructions described above in Section 8.
9.4. Other Internet Technologies
On this website, as part of other internet technologies, information about the browsing behavior of website visitors is collected and stored in anonymized form. This data is stored using so-called cookie text files on your computer and allows us to analyze browsing behavior in an anonymized form — for example, from which city a website visitor comes, which browser type and operating system they use, and which pages of our website they visited. Under no circumstances can the collected data be used to personally identify the visitor to this website. The collected data is used solely to improve our offer. Therefore, all IP addresses are shortened so that IP addresses are only processed in anonymized form. No other use or transfer to third parties takes place.
9.5. Objection Option
You may generally object to the collection, processing, and use of data by the analytics services and retargeting technologies used on this website with future effect. An opt-out cookie will be stored on your device for this purpose. This objection will remain in effect as long as you do not delete the cookie.
10. Social Plugins
10.1. Facebook Connect / Login
Digi Planet offers users the option to log in to the service using their Facebook account (so-called Facebook Connect function). Facebook Connect is a service of the social network Facebook, operated by Facebook Inc. (1601 S. California Ave, Palo Alto, CA 94304, USA) (Facebook). An additional registration with Digi Planet is then not required. To log in, the user is redirected to Facebook’s website, where they can log in with their credentials. This links the Facebook profile with Digi Planet’s service. Through this link, Digi Planet automatically receives from Facebook the information the user has consented to share (e.g., first name, last name, email address). We use this information to identify you within Digi Planet’s service. For more information about Facebook Connect and privacy settings, please see the privacy notices: https://www.facebook.com/about/privacy.
10.2. Facebook, Google+ and YouTube
This website uses social plugins from Facebook and Google (Google+ and YouTube). These are services offered by the US company Facebook and the Irish company Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) (Google). When you visit a page containing such a plugin, your browser connects to Facebook or Google, and the content is loaded from these sites. Your visit to this website may therefore be tracked by Facebook and Google, even if you do not actively use the social plugin. If you have an account with Facebook or Google, you can use such a social plugin or share information with your friends. Digi Planet has no influence on the content of the plugins or the transmission of information.
On their websites, Facebook and Google provide detailed information on the scope, type, purpose, and further processing of your data. You will also find more information on your rights and settings to protect your privacy there.
Facebook privacy notices: https://www.facebook.com/about/privacy
Google privacy notices: https://google.com/intl/en/policies/privacy
10.3. Pinterest
This website also integrates plugins from the social network Pinterest Inc. (635 High Street, Palo Alto, CA 94301, USA) (Pinterest). You can recognize the Pinterest plugin by the “Pin it” button on our site. If you click the Pinterest “Pin it” button while logged into your Pinterest account, you can link the content of our pages to your Pinterest profile. This allows Pinterest to associate your visit to our pages with your user account. We point out that we have no knowledge of the content of the transmitted data or its use by Pinterest. For more information, please see Pinterest’s privacy policy: http://about.pinterest.com/en/privacy.
10.4. X
This website also includes functions of the service Twitter. These functions are offered by Twitter Inc. (795 Folsom St., Suite 600, San Francisco, CA 94107, USA) (X). By using Twitter and the Retweet function, the websites you visit on Digi Planet are linked to your Twitter account and made known to other users. Data is also transmitted to Twitter in the process. Your internet browser establishes a direct connection to Twitter’s servers and transmits data to Twitter.
We point out that we have no knowledge of the content of the transmitted data nor its use by Twitter. Further information can be found in Twitter’s privacy policy: https://twitter.com/privacy.
10.5. Instagram
This website also integrates plugins from the social network Instagram Inc. (1601 Willow Road, Menlo Park, 94025, USA) (Instagram). You can recognize the Instagram plugin by the Instagram button on our site.
If you click the Instagram button while logged into your Instagram account, you can link the content of our pages on your Instagram profile. This allows Instagram to associate your visit to our pages with your user account. We point out that we do not receive any knowledge about the content of the transmitted data or its use by Instagram. Further information can be found in Instagram’s privacy policy: http://instagram.com/about/legal/privacy.
10.6. Logging out
By logging out in advance on the social network pages and deleting cookies set by them, you can prevent social networks from assigning the information collected about you during your visit to Digi Planet to your user account on the respective network.
If you do not want social networks to immediately assign the data collected through our website to your profile, you must log out of the respective social networks before visiting our website.
11. Payment Methods
11.1. Stripe
If you choose the payment method of the payment service provider Stripe, the payment processing is carried out via the payment service provider Stripe Payments Europe Ltd., 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland, to whom we transmit the information you provide during the ordering process along with the information about your order (name, address, account data such as IBAN and BIC, possibly credit card number, invoice amount, currency, and transaction number) in accordance with Art. 6 para. 1 lit. b GDPR. More information about data protection from Stripe can be found at: https://stripe.com/de/privacy#translation.
11.2. Amazon Pay
When paying via Amazon Pay, we primarily transmit payment data within the scope of payment processing to Amazon Payments Europe s.c.a., and secondarily to Amazon EU SARL and Amazon Media EU SARL (all three located at 5, Rue Plaetis L-2338 Luxembourg) (Amazon Payments). Amazon Payments reserves the right to carry out a credit check. The result of the credit check regarding the statistical probability of payment default is used by Amazon Payments to decide on the provision of the respective payment method. The credit report may contain probability values (so-called score values). As far as score values are included in the credit report, these are based on a scientifically recognized mathematical-statistical procedure. The calculation of score values includes, among other things, address data. Furthermore, Amazon Payments is entitled to pass your data on to unnamed third parties (e.g., banks, e-service providers, service partners, analysis services). Further data protection information can be found in Amazon Payments’ privacy policy: https://pay.amazon.com/de/help/201761600.
11.3. PayPal
As part of payment processing, when paying via PayPal, credit card via PayPal, direct debit via PayPal, or—if offered—purchase on account via PayPal, we transmit your payment data to PayPal (Europe) S.à.r.l. et Cie, S.C.A. (22-24 Boulevard Royal, L-2449 Luxembourg) (PayPal). PayPal reserves the right to carry out a credit check for payment methods credit card via PayPal, direct debit via PayPal, or—if offered—purchase on account via PayPal. The result of a credit check regarding the statistical probability of payment default is used by PayPal to decide on the provision of the respective payment method. The credit report may contain probability values (so-called score values). As far as score values are included in the credit report, these are based on a scientifically recognized mathematical-statistical procedure. The calculation of score values includes, among other things, address data. Furthermore, PayPal is entitled to pass your data on to known third parties (e.g., banks, e-service providers, service partners, analysis services). Further data protection information can be found in PayPal’s privacy policy: https://paypal.com/de/webapps/mpp/ua/privacy-full.
11.4. Credit Cards (VISA, MasterCard or American Express)
We have integrated the simple and secure credit card payment option via VISA, MasterCard, or American Express in our online shop. The credit card of the data subject will only be charged upon shipment of the order. If an order is shipped in several partial deliveries, a corresponding partial debit is made with the shipment of each partial delivery.
If the data subject selects the credit card payment method during the ordering process in our online shop, data of the data subject is automatically transmitted to the respective credit card institution issuing the credit card. By selecting this payment option, the data subject consents to the transmission of personal data required for payment processing.
The following data are collected and transmitted by us:
- Name of the cardholder
- Credit card number
- Expiry date
- Card verification number (this is a three-digit number on the back of the credit card that enhances payment security on the Internet)
Payment transactions via VISA, MasterCard, or American Express take place exclusively via an encrypted SSL connection. An encrypted connection is indicated by the browser’s address line changing from “http://” to “https://” and a lock symbol appearing in the browser bar of the data subject.
With encrypted communication, your payment data transmitted to us cannot be read by third parties.
VISA, MasterCard, or American Express are technology companies in the field of global payment transactions, granting customers, companies, and financial service providers access to electronic payment options. VISA, MasterCard, or American Express themselves do not issue credit cards and do not operate the merchant business. VISA, MasterCard, or American Express have no access to the bank account and do not store transaction data. This is done via the credit card issuing bank of the data subject, which is also responsible for the entire card management. For further questions regarding data protection, the data subject can contact the issuing credit institution.
11.5. Instant transfer
We have integrated components from Sofortüberweisung on this website. Sofortüberweisung is an online payment service provider that enables cashless payments on the internet. Sofortüberweisung uses a technical procedure by which the online retailer receives a payment confirmation immediately, allowing the retailer to deliver goods and services to the customer immediately after the order is placed.
The operating company of Sofortüberweisung is SOFORT GmbH, Fußbergstraße 1, 82131 Gauting, Germany.
If the data subject chooses Sofortüberweisung as the payment method during the ordering process in our online shop, data of the data subject is automatically transmitted to Sofortüberweisung. By choosing this payment option, the data subject consents to the transmission of personal data necessary for payment processing.
In the purchase process via Sofortüberweisung, the buyer transmits the PIN and TAN of their own credit institution to Sofort GmbH. After checking the account balance and retrieving additional data to verify account coverage, Sofortüberweisung executes a transfer to the online retailer. The execution of the financial transaction is then automatically communicated to the online retailer.
The personal data exchanged with Sofortüberweisung includes name, address, email address, IP address, telephone number, or other data necessary for payment processing and also useful for fraud prevention. The controller will also transmit other personal data to Sofortüberweisung if there is a legitimate interest in transmission. The personal data exchanged between Sofortüberweisung and the controller may be transmitted by Sofortüberweisung to credit agencies for identity and credit checks. Sofortüberweisung may pass on the personal data to affiliated companies and service providers or subcontractors if necessary for fulfilling contractual obligations or if the data is to be processed on behalf of the controller.
The data subject has the possibility to revoke consent to the handling of personal data with Sofortüberweisung at any time. A revocation does not affect personal data that must necessarily be processed, used, or transmitted for (contractual) payment processing.
The privacy policy of Sofortüberweisung can be accessed at https://www.sofort.com/ger-DE/datenschutzerklaerung-sofort-gmbh/.
12. Secure Data Transmission
Your personal data is securely transmitted to us through encryption. This applies to your order and also to customer login. We use the encoding system SSL (Secure Socket Layer). Although no absolute protection can be guaranteed, we secure our websites and other systems against loss, destruction, access, alteration, or dissemination of your data by unauthorized persons through technical and organizational measures.
13. Data Processing Outside the European Economic Area
Personal data is not processed in countries outside the scope of Directive 95/46/EC unless the service providers or third parties named in this privacy policy are involved who have their registered office outside the European Economic Area.
14. Your Rights: Information, Correction, Deletion, Blocking
You can request information at any time about the personal data stored about you by Digi Planet. Please send written or text-form requests to the customer service at [email protected] or by mail to Digi Planet, Industriestraße 2B, DE-22869 Schenefeld, Germany.
You also have the option to have your personal data corrected, blocked, or deleted at any time if the legal requirements are met. In case of inaccuracies, we will promptly correct the data stored with us upon notification by you. For corrections, you can contact the above address and email.
Personal data will be deleted if the collection or processing was unlawful from the outset, if the processing or use subsequently becomes unlawful, or if the knowledge of the data is no longer necessary for us to fulfill the purpose of processing or use. Data that we need for handling outstanding tasks or enforcing our rights and claims, as well as data that we must retain according to legal provisions, are excluded from deletion. Such data will, however, be blocked.
15. Legal Basis for Data Processing
The legal basis for processing operations for which we obtain consent for a specific processing purpose is Article 6(1)(a) of the GDPR.
The legal basis for the necessary processing of personal data to fulfill a contract to which the data subject is a party is Article 6(1)(b) of the GDPR. The same applies to processing operations required to carry out pre-contractual measures at the request of the data subject.
The legal basis for a legal obligation requiring the processing of personal data by our company, such as for fulfilling tax obligations, is Article 6(1)(c) of the GDPR.
In rare cases, processing of personal data may be necessary to protect the vital interests of the data subject or another natural person. This would apply, for example, in the case of data processing for humanitarian purposes, natural disasters, or other man-made disasters. In such cases, the processing would be based on Article 6(1)(d) of the GDPR (Recital 46).
Furthermore, processing operations may be based on Article 6(1)(f) of the GDPR. This applies to processing operations that are not covered by any of the aforementioned legal bases, where processing is necessary to safeguard a legitimate interest of our company or a third party, provided that the interests, fundamental rights, and freedoms of the data subject do not override these interests. Such processing operations are particularly permitted because they are specifically mentioned by the European legislator. A simple but understandable legitimate interest is, for example, the prevention of fraud by a customer of the controller (Recital 47 of the GDPR).
16. Final Information
We inform you that the provision of personal data is partly legally required (e.g., according to commercial or tax law regulations) or may also result from contractual arrangements and requirements (e.g., information about the contractual partner for identification purposes).
Sometimes, it may be necessary for a data subject to provide us with personal data to conclude a contract, which must then be processed by us. For example, the data subject is obliged to provide us with personal data if our company concludes a purchase contract with them. Without this personal data, the contract with the data subject could not be effectively concluded or we are not willing to conclude such a contract.
Before providing personal data, the data subject can contact our company to find out whether the provision of personal data is legally or contractually required or necessary for the conclusion of the contract, whether there is an obligation to provide the personal data, and what consequences non-provision of the personal data would have. Employees can provide case-specific information upon request.