Data protection declaration
Unless stated otherwise below, the provision of your personal data is neither legally nor contractually obligatory,nor required for conclusion of a contract. You are not obliged to provide your data. Not providing it will have no consequences. This only applies as long as the processing procedures below do not state otherwise. “Personal data” is any information relating to an identified or identifiable natural person.
Server log files
You can use our websites without submitting personal data.
Every time our website is accessed, user data is transferred to us or our web hosts/IT service providers by your internet browser and stored in server log files. This stored data includes for example the name of the site called up, date and time of the request, the IP address, amount of data transferred and the provider making the request. The processing is carried out on the basis of Article 6(1) f) GDPR due to our legitimate interests in ensuring the smooth operation of our website as well as improving our services.
Customer account Orders
When you open a customer account, we will collect your personal data in the scope given there. The data processing is for the purpose of improving your shopping experience and simplifying order processing. The processing will be carried out on the basis of art. 6 (1) lit. a GDPR with your consent. You can withdraw your consent at any time by contacting us without affecting the legality of the processing carried out with your consent up to the withdrawal. Your customer account will then be deleted.
Collection, processing, and transfer of personal data in orders
When you submit an order we only collect and use your personal data insofar as this is necessary for the fulfilment and handling of your order as well as processing of your queries. The provision of data is necessary for conclusion of a contract. Failure to provide it will prevent the conclusion of any contract. The processing will occur on the basis of Article 6(1) b) GDPR and is required for the fulfilment of a contract with you. Your data is transferred here for example to the shipping companies and dropshipping providers, payment service providers, service providers for handling the order and IT service providers that you have selected. We will comply strictly with legal requirements in every case. The scope of data transmission is restricted to a minimum.
Contact Evaluations Newsletter
Collection and processing when using the contact form. When you use the contact form we will only collect your personal data (name, email address, message text) in the scope provided by you. The data processing is for the purpose of making contact. By submitting your message you agree to the processing of your transmitted data. Processing will be carried out on the basis of art. 6 (1) lit. a GDPR with your consent.You can withdraw your consent at any time by contacting us without affecting the legality of the processing carried out with your consent up to the withdrawal. We will only use your email address to process your request. Finally your data will be deleted, unless you have agreed to further processing and use.
Data collection when you post a comment
When you comment on an article or a contribution, we collect your personal data (name, email address, comment text) only in the scope provided by you. The processing serves to allow you to comment and to display comments. By submitting the comment you agree to the processing of the transmitted data. The processing will be carried out on the basis of art. 6 (1) lit. a GDPR with your consent. You can withdraw your consent at any time by contacting us without affecting the legality of the processing carried out with your consent up to the withdrawal. You personal data will then be deleted. On publication of your comment only the name you have entered will be published.
Use of your email address for mailing of newsletters
We use your email address outside of contractual processing exclusively to send you a newsletter for our own marketing purposes, if you have explicitly agreed to this. The processing will be carried out on the basis of art. 6 (1) lit. a GDPR with your consent. You can withdraw your consent at any time without affecting the legality of the processing carried out with your consent up to the withdrawal. You can unsubscribe from the newsletter at any time using the relevant link in the newsletter or by contacting us. Your email address will then be removed from the distributor.
Your data will be forwarded to a service provider for email marketing in the course of order processing. It will not be forwarded to other third parties. Your data will be transferred to a third country, which is covered by an adequacy decision by the European Commission.
Shipping companies Merchandise management
Forwarding of your email address to shipping companies for information on shipping status We forward your email address to the shipping company in the course of contractual processing, if you have explicitly agreed to this in the order process. The forwarding is for the purpose of informing you by email on the
shipping status of your order. The processing will be carried out on the basis of art. 6 (1) lit. a GDPR with your consent. You can withdraw your consent at any time by contacting us or the transport company without affecting the legality of the processing carried out with your consent up to the withdrawal.
Use of an external merchandise management system
We use a merchandise management system in the course of order processing for the purposes of contractual processing. For this purpose your personal data as collected in the course of the order will be sent to Haufe-Lexware GmbH & Co. KG Ein Unternehmen der Haufe Group Munzinger Straße 9 79111 Freiburg
Payment service providers
All PayPal transaction are covered by the PayPal Data Privacy Statement. You can found this at https://www.paypal.com/de/webapps/mpp/ua/privacy-full?locale.x=en
We would, however, like to point out that this may prevent you from making full use of all the functions of this website.
Using the links below, you can find out how to manage cookies (or deactivate them, among other things) in major browsers:
Chrome Browser: https://support.google.com/accounts/answer/61416?hl=en
Mozilla Firefox: https://support.mozilla.org/de/kb/cookies-erlauben-und-ablehnen
The data processing described subsequently in this section, especially the setting of cookies, will be carried out on the basis of art. 6 (1) lit. f GDPR due to our largely justified interest:
– in the needs-based and target-oriented design of our website, for example, with tools for analysis and statistics
– in addressing the website visitors in a targeted manner using interest-based advertisement, e.g. using
You have the right to veto this processing of your personal data according to art. 6 (1) lit. f GDPR, for reasons relating to your personal situation.
European data protection laws. You can prevent collection of the data (including your IP address) generated by the cookies and related to your use of the website by Google as well as the processing of this data by Google by downloading and installing the browser plug-in available at the following link [https://tools.google.com/dlpage/gaoptout?hl=en]. You can set an opt-out cookie to prevent collection by Google Analytics across devices. Opt-out cookies prevent the future collection of your data when you visit this website. You need to opt-out on all systems and devices in use for this to work comprehensively. If you click here, the opt-out cookie is set: Disable Google Analytics.
You can find more detailed information on the terms and conditions of use and data protection at https://www.google.com/analytics/terms/gb.html and at https://policies.google.com/?hl=en.
Use of the remarketing or “similar target groups” function by Google
will then be shown adverts which are more likely to take previous areas of product and information interest into account. Your data may also be transmitted to the USA. Following the US-EU Data Protection Agreement,
Google has become “Privacy Shield“ certified and is therefore obliged to observe European data protection laws.
Use of Bing Ads
Our website uses Bing Ads, provided by the Microsoft Corporation (Microsoft Corporation, One Microsoft Way, Redmond, WA 98052-6399, USA; “Microsoft”). If you click on an advert placed by Microsoft Bing Ads, a cookie is placed on your computer for conversion tracking. This cookie has a limited validity and does not serve purposes of personal identification. If you visit
certain pages on our website and the cookie has not yet expired, we and Microsoft can recognise that you have clicked on the advert and were forwarded to this page. The information collected using the conversion cookie serves the purpose of producing conversion statistics. This allows us to find out the total number of users who have clicked on our adverts and were forwarded to a page
equipped with a conversion tracking tag. It does not however enable personal identification of the user. Your data may also be transmitted to the USA. Following the US-EU Data Protection Agreement, Microsoft has
become “Privacy Shield“ certified and is therefore obliged to observe European data protection laws.
You can prevent the storage of cookies by choosing corresponding technical settings in your internet browser. After doing this, it is however possible that you will not be able to use all functions of the website fully. As a result,
you will not be part of the conversion tracking statistics. You can find further information on data protection and the cookies used by Microsoft Bing at: https://privacy.microsoft.com/de-de/privacystatement
Use of social plug-ins via the “2-click solution”
Our website uses social network plug-ins via the “2-click solution”. No connection is made to the social network servers and no data submitted without your explicit consent.Standard integration of plug-ins set up a connection between your computer and the provider’s servers when you call up pages on our website which contain such a plugin, allowing the plug-in to be shown on the web page by a notice sent to your browser. Both your IP address and the fact that you have visited our web pages are transmitted to the provider’s servers.
This happens regardless of whether you are registered with or logged into the social network. The information is transferred even if users are not registered or logged in. If you are also logged into the social network, this information is also
assigned to your user profile. When you use plug-in functions (e.g. activate the button) this information is also assigned to your user account, which you can only prevent by logging out before using the plug-in. To ensure that you retain control over your data we have decided to initially deactivate the corresponding button. This is shown by the greyed-out button. No connection is made to the social network servers and no data submitted without your explicit consent – in the form of activation of the button.Only when you activate the button does it become active (highlighted) and set up a direct connection to the social network’s servers. By logging in, you give your permission for the transfer of your data to the respective social media provider. At this time, information such as your IP address and which websites you have visited is transmitted. Should you be connected simultaneously with one or more of your social network accounts, the information collected is also assigned to your corresponding profiles. Therefore, you can only prevent this assignment by logging yourself out before visiting our website and before activating the button for your social media accounts.
Facebook by Facebook Inc. (1601 S. California Ave, Palo Alto, CA 94304, USA) https://www.facebook.com/policy.php
Twitter (Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA): https://twitter.com/privacy https://twitter.com/personalization
Instagram by Instagram LLC. (1601 Willow Road, Menlo Park, CA 94025, USA):
http://instagram.com/legal/privacy/Xing by XING SE (Dammtorstraße 30, 20354 Hamburg):
Using Twitter plugins
The functions of the Twitter service are integrated on our website. Twitter is a social media portal of the company Twitter Inc.,795 Folsom St., Suite 600, San Francisco, CA 94107, (USA). We use Twitter plugins. If you invoke a corresponding website that has such a plugin, the data is exchanged with
the Twitter servers located in the USA. Even in case of interactions, which are possible with various Twitter plugins, the corresponding information about
you is collected and transmitted to Twitter and stored there. Moreover, if you are a member of Twitter, and if your are logged in on Twitter during the period in which you use the plugin, the information collected about your website visit is linked to your Twitter account and disclosed to other users.
If you do not wish that Twitter links and combines the information with the data of your Twitter account, you must log out from Twitter before visiting our website. Log on to https://twitter.com/privacy for more information on the collection and use of data through Twitter.
Using the XING Share-Button
On this webpage, the “XING Share-Button” is used. When this webpage is invoked, a link to the servers of XING AG (“XING”) is established for a brief period through your browser; with the help of these servers, “XING
Share-Button” functions (especially the calculation/display of the counter value) are carried out. XING does not save your personal data if this webpage is invoked. XING does not save any IP-addresses, in particular. Even
your usage behaviour is not analysed by using cookies in connection with the “XING Share-Button”. The latest data protection information about “XING Share-Button” and additional information can be retrieved on this webpage:
Using Instagram plug-ins
These websites use the plug-in from online service provider Instagram, which is provided by Instagram LLC., 1601 Willow Road, Menlo Park, CA 94025, USA (“Instagram”). If you access pages on our website that contain this plug-in, this will generate a connection to the Instagram server and indicate the plug-in on the site by means of message in your browser. Information such as your IP
address and which websites you have visited is transmitted to the Instagram server. If you are logged into Instagram, Instagram will assign this information to your personal user account. When using the plug-in functions (e.g. clicking the “Instagram” button”) this information is also assigned to your Instagram
account, which you can only prevent by logging out prior to using the plug-in.
If you do not want Instagram to directly add the information collected to your Instagram account, you must either log out of Instagram prior to visiting our site or use an add-on or the script blocker “NoScript” (noscript.net) to block the Instagram plug-in loading on our websites. Further information on the data collected and used by Instagram, your rights and privacy can be found in
Use of YouTube
Our website uses the function for the embedding of YouTube videos provided by Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland; “YouTube”). YouTube is an affiliated company of Google LLC (1600
Amphitheatre Parkway, Mountain View, CA 94043, USA;“Google”).
This feature shows YouTube videos in an iFrame on the website. The option “advanced privacy mode” is enabled here. This prevents YouTube from storing information on visitors to the website. It is only if you watch a video that
information is transmitted to and stored by YouTube. Your data may also be transmitted to the USA. Following the US-EU Data Protection Agreement, Google has become “Privacy Shield“ certified and is therefore obliged to observe European data protection laws. Further information on the data collected and used by YouTube and Google, your rights and privacy can be found
Use of Vimeo
On our website, we use plug-ins from Vimeo Inc. (555 West 18th Street New York, New York 10011, USA; “Vimeo”) to embed videos of the portal “Vimeo”. When you access pages of our website that contain such a plug-in, a connection is established to Vimeo’s servers and the plug-in is displayed on the page by notifying your browser. This will transmit to Vimeo’s servers both your IP address and the information which of our pages you have visited. If you are logged into Vimeo, Vimeo assigns this information to your personal user account. When you use the plug-in functions (e.g. by starting a video by pressing the corresponding button), this information is also assigned to your Vimeo account. Your data may also be transmitted to the USA. Following the US-EU Data Protection Agreement, Vimeo has become “Privacy Shield“ certified and is therefore obliged to observe European data protection laws. The processing is carried out on the basis of Art. 6 (1) lit. f GDPR out of Vimeo’s legitimate interest in market analysis and in improving its services in a demand-oriented and targeted manner. For reasons arising from your particular situation, you have the right at any time to object to this processing of your personal data based on Art. 6 (1) lit. f GDPR. If you do not want Vimeo to associate the information collected directly with your Vimeo account, you must log out of Vimeo before visiting our website. For more information about the purpose and scope of the collection and the wider use and processing of the data by Vimeo, as well as your related rights and privacy protections, please see Vimeo’s data protection policy:
https://vimeo.com/privacy Vimeo can use Google Analytics for the videos integrated on this website. Tracking is carried out completely independently by Vimeo. We have no influence on the design of the tracking nor do we have access to it. Processing is based on Art. 6 (1) lit. f GDPR out of Vimeo’s legitimate interest in analysing user behavior for the demand-oriented and targeted design of its services and for marketing purposes. Google’s data protection policy can be found at https://www.google.com/policies/privacy and the opt-out options
for Google Analytics at http://tools.google.com/dlpage/gaoptout?hl=en.
Use of GoogleMaps
Use of Google reCAPTCHA
Our website uses the reCAPTCHA service by Google LLC (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; “Google”). The request serves to distinguish whether the input was made by a human or automatic machine processing. For this purpose your input will be transmitted to Google and used by them further. In addition, the IP address and any other data required by Google for the reCAPTCHA service will be transferred to Google. This data will be processed by Google within the EU and potentially also in the USA. Transmission of data to the USA is covered by an adequacy decision by the European Commission, the “Privacy Shield”. Google participates in “Privacy Shield” and has submitted to its requirements. Processing is carried out on the basis of Article 6(1)f) GDPR due to our legitimate interest in protecting our website from automated spying, misuse and SPAM. You can find more detailed information on Google reCAPTCHA and the associated data protection declaration at: https://www.google.com/recaptcha/intro/android.html and https://www.google.com/privacy.
Rights of persons affected and storage duration
Duration of storage
After contractual processing has been completed, the data is initially stored for the duration of the warranty period, then in accordance with the retention periods prescribed by law, especially tax and commercial law, and then deleted after the period has elapsed, unless you have agreed to further processing and use.
Rights of the affected person
If the legal requirements are fulfilled, you have the following rights according to art. 15 to 20 GDPR: Right to information, correction, deletion, restriction of processing, data portability. You also have a right of objection against processing based on art. 6 (1) GDPR, and to processing for the purposes of direct marketing, according to art. 21 (1) GDPR. Contact us at any time. Our contact details can be found in our imprint.
Right to complain to the regulatory authority
You have the right to complain to the regulatory authority according to art. 77 GDPR if you believe that your data is not being processed legally.
Right to object
If the data processing outlined here is based on our legitimate interests in accordance with Article 6(1)f) GDPR, you have the right for reasons arising from your particular situation to object at any time to the processing of your data with future effect. If the objection is successful, we will no longer process the personal data, unless we can demonstrate compelling legitimate grounds for the processing that outweigh your interests or rights and freedoms, or the processing is intended for the assertion, exercise or defence of legal claims.
If personal data is being processed for the purposes of direct advertising, you can object to this at any time by notifying us. If the objection is successful, we will no longer process the personal data for the purposes of direct advertising.
last update: 19.11.2018