Data protection
Automatic Data Storage
When you visit websites today, certain information is automatically created and stored, including on our website portance.de. This data should be collected as sparingly as possible and only for compelling reasons. By "website," we mean all web pages on our domain, i.e., everything from the homepage to the very last subpage (like this one). By "domain," we mean, for example, portance.de or portance.co
Even while you are currently visiting our website, our web server – which is the computer where this website is stored – usually automatically stores data such as:
- the complete internet address (URL) of the accessed website (e.g., https://www.examplewebsite.de/examplesubpage.html/)
- browser and browser version (e.g., Chrome 87)
- the operating system used (e.g., Windows 10)
- the address (URL) of the previously visited page (referrer URL) (e.g., https://www.examplesourcesite.de/whereicamefrom.html/)
- the hostname and IP address of the device from which access is made (e.g., COMPUTERNAME and 194.23.43.121)
- date and time
- in files, the so-called web server log files.
For illustration:
These files are generally stored for two weeks and then automatically deleted. We do not share this data. However, there is a possibility that authorities may access this data in the event of unlawful conduct.
In short: Your visit is logged by our internet provider, but we do not share your data!
Cookies
Our website uses HTTP cookies to store individual data. Below, we explain what cookies are and why we use them, so you can better understand our privacy policy.What exactly are cookies?
When you surf the internet, you use a browser like Chrome, Safari, Firefox, Internet Explorer, or Microsoft Edge. Most websites store small text files in your browser, called cookies.
Cookies are really useful little helpers. Almost all websites use them. Specifically, these are HTTP cookies, as there are other types of cookies for various applications. HTTP cookies are small files stored by our website on your computer. These files are automatically placed in a folder, comparable to the "brain" of your browser. A cookie consists of a name and a value, and additional attributes can be specified when a cookie is defined.
Cookies store certain user data about you, such as language or personal page settings. When you revisit our site, your browser transmits the "user-related" information back to our site. Thanks to cookies, our website knows who you are and offers you the settings you are used to. In some browsers, each cookie has its own file; in others, such as Firefox, all cookies are stored in a single file.
The following graphic shows a possible interaction between a web browser such as Chrome and the web server. The web browser requests a website and receives a cookie back from the server, which the browser uses again when another page is requested.
There are both first-party cookies and third-party cookies. First-party cookies are created directly by our site, while third-party cookies are created by partner websites (e.g., Google Analytics). Each cookie must be evaluated individually, as each cookie stores different data. The expiration time of a cookie also varies from a few minutes to a few years. Cookies are not software programs and do not contain viruses, Trojans, or other "malware." Cookies also cannot access information on your PC.
Here's what cookie data might look like, for example:
Name: _ga
Value: GA5.6.1267822293.152321283990-4
Purpose: Distinguish website visitors
Expiration: after 2 years
A browser should be able to support at least these minimum sizes:
- At least 4096 bytes per cookie
- At least 50 cookies per domain
- At least 3000 cookies in total
What types of cookies are there?
The type of cookies we use depends on the services we utilize and will be explained in the following sections of the privacy policy. Here, we would like to briefly discuss the different types of HTTP cookies.
There are four main types of cookies:
1. Essential cookies: These are crucial for ensuring basic website functions. For example, products remain in the shopping cart even if you close the browser window and return later.
2. Functional cookies: These collect information about your user behavior and display possible error messages. They also help measure website loading time and its behavior across different browsers.
3. Targeted cookies: These improve user experience by storing information such as locations, font sizes, or form data.
4. Advertising cookies: Also known as targeting cookies, these deliver customized advertising. This can be practical, but can also be perceived as annoying.
Normally, when you first visit a website, you will be asked which types of cookies you wish to allow. Your decision will then be stored in a cookie.
How can I delete cookies?
The decision of whether and how you want to use cookies is up to you. Regardless of which website or service the cookies originate from, you can always delete, disable, or partially allow cookies. For example, you can block third-party cookies while allowing all other cookies.
To see which cookies are stored in your browser, or to change your cookie settings or delete cookies, you will find corresponding options in your browser's settings:
Chrome: Delete, activate, and manage cookies in Chrome
Safari: Manage cookies and website data with Safari
Firefox: Clear cookies to remove data that websites have stored on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
If you generally do not want cookies, you can configure your browser to always inform you when a cookie is about to be set. This way, you can decide whether to allow or disallow each individual cookie. The procedure varies depending on the browser. It is best to search for instructions on Google using terms like "delete cookies Chrome" or "disable cookies Chrome" in the case of a Chrome browser.
What about my privacy?
Since 2009, there have been so-called "Cookie Directives". These state that storing cookies requires your consent. However, within EU countries, there are still very different reactions to these directives. In Austria, this directive was implemented in § 96 para. 3 of the Telecommunications Act (TKG). In Germany, the cookie directives were not implemented as national law. Instead, this directive was largely implemented in § 15 para. 3 of the Telemedia Act (TMG).
If you want to know more about cookies and are not afraid of technical documentation, we recommend https://tools.ietf.org/html/rfc6265, the Request for Comments from the Internet Engineering Task Force (IETF) named “HTTP State Management Mechanism”.
Storage of Personal Data
The data you provide to us on this website, such as name, email, address, or other information in forms or blog comments, will only be used for the stated purpose. We store it securely and do not share it. We only use it for communication with you, if you wish, and to offer you services or products. We do not share your data unless there is unlawful conduct.
If you send us data via email, we cannot guarantee the security of your data. It is safer not to send confidential data unencrypted via email.
The legal basis, according to Article 6 Paragraph 1 a GDPR (Lawfulness of processing), is that you give us consent to process the data you enter. You can withdraw this consent at any time – an informal email is sufficient; you can find our contact details in the impressum.
Rights according to the General Data Protection Regulation
According to the provisions of the GDPR, you generally have the following rights:
- Right to rectification (Article 16 GDPR)
- Right to erasure (“right to be forgotten”) (Article 17 GDPR)
- Right to restriction of processing (Article 18 GDPR)
- Right to notification – obligation to notify regarding rectification or erasure of personal data or restriction of processing (Article 19 GDPR)
- Right to data portability (Article 20 GDPR)
- Right to object (Article 21 GDPR)
- Right not to be subject to a decision based solely on automated processing — including profiling — (Article 22 GDPR)
If you believe that the processing of your data violates data protection law or that your data protection rights have otherwise been infringed, you can complain to the supervisory authority. For Austria, this is the Data Protection Authority, whose website you can find at https://www.dsb.gv.at/, and for Germany, you can contact the Federal Commissioner for Data Protection and Freedom of Information (BfDI).
Evaluation of Visitor Behavior
In the following privacy policy, we inform you about whether and how we evaluate data from your visit to this website. The evaluation of the collected data is usually anonymous, and we cannot draw conclusions about your person from your behavior on this website.
You can find more about how to object to this evaluation of visit data in the following privacy policy.
Google Analytics Privacy Policy
We use the analytics tool Google Analytics on our website to see how you use our site. Google Analytics records your actions and sends the data to Google. This allows us to receive reports that help us improve our website and our service.
Google Analytics works by embedding a code on our website. This code tracks your actions while you are on our website. The data is then sent to Google's servers and stored there.
The reports we receive from Google Analytics show us how you use our website. For example, we learn more about our visitors, can analyze our online advertising, and see how we can attract more people to our services.
Why do we use Google Analytics?
Our goal is to provide you with the best possible service. The data from Google Analytics helps us improve our website and better understand what our visitors want.
What data is stored?
Google Analytics creates a unique ID for your browser, which is linked to a cookie. This way, Google Analytics recognizes us when you visit our site. All collected data is linked to this ID and pseudonymized.
To use Google Analytics, we need to embed a special code that contains a property ID. Depending on the type of property, data is stored for different lengths of time.
Google Analytics measures your interactions on our website, such as clicking on links or filling out forms. If you also use other Google services, your data may be linked to your Google account.
Google Analytics uses various cookies to record your activities.
Name: _ga
Value: 2.1345744211.15232120774-2
Purpose: By default, analytics.js uses the _ga cookie to store the user ID. Essentially, it serves to distinguish website visitors.
Expiration: after 2 years
Name: _gid
Value: 2.1687193234.152321280889-1
Purpose: The cookie also serves to distinguish website visitors
Expiration: after 24 hours
Name: _gat_gtag_UA_<property-id>
Value: 1
Purpose: Used to throttle the request rate. If Google Analytics is provided via Google Tag Manager, this cookie is named _dc_gtm_ <property-id>.
Expiration: after 1 minute
Name: AMP_TOKEN
Value: no information
Purpose: The cookie has a token that can be used to retrieve a user ID from the AMP Client ID service. Other possible values indicate a logout, a request, or an error.
Expiration: from 30 seconds to one year
Name: __utma
Value: 1564498958.1564498958.1564498958.1
Purpose: This cookie allows tracking your behavior on the website and measuring performance. The cookie is updated each time information is sent to Google Analytics.
Expiration: after 2 years
Name: __utmt
Value: 1
Purpose: The cookie is used like _gat_gtag_UA_<property-id> to throttle the request rate.
Expiration: after 10 minutes
Name: __utmb
Value: 3.10.1564498958
Purpose: This cookie is used to determine new sessions. It is updated every time new data or information is sent to Google Analytics.
Expiration date: after 30 minutes
Name: __utmc
Value: 167421564
Purpose: This cookie is used to set new sessions for returning visitors. It is a session cookie and is only stored until you close your browser.
Expiration date: After closing the browser
Name: __utmz
Value: m|utmccn=(referral)|utmcmd=referral|utmcct=/
Purpose: This cookie is used to identify the source of traffic to our website. This means the cookie stores where you came to our website from. This could have been another page or an advertisement.
Expiration date: after 6 months
Name: __utmv
Value: not specified
Purpose: This cookie is used to store custom user data. It is always updated when information is sent to Google Analytics.
Expiration date: after 2 years
Note: This list cannot claim to be exhaustive, as Google constantly changes its choice of cookies.
Here we provide an overview of the most important data collected with Google Analytics:
Heatmaps: Google creates so-called heatmaps. Heatmaps show exactly which areas you click on. This gives us information about where you are "moving" on our site.
Session duration: Google defines session duration as the time you spend on our site without leaving it. If you have been inactive for 20 minutes, the session ends automatically.
Bounce rate: A bounce occurs when you view only one page on our website and then leave our website again.
Account creation: If you create an account or place an order on our website, Google Analytics collects this data.
IP address: The IP address is only displayed in an abbreviated form so that no unique assignment is possible.
Location: The country and your approximate location can be determined via the IP address. This process is also known as IP geolocation.
Technical information: Technical information includes your browser type, your internet provider, or your screen resolution.
Source of origin: Google Analytics and we are, of course, also interested in which website or advertisement led you to our site.
Further data includes contact details, any reviews, playing media (e.g., if you play a video via our site), sharing content via social media, or adding to your favorites. This list is not exhaustive and serves only as a general guide to data storage by Google Analytics.
How long and where is the data stored?
Google has its servers distributed all over the world. Most servers are located in America, and consequently, your data is mostly stored on American servers. You can read exactly where Google's data centers are located here: https://www.google.com/about/datacenters/inside/locations/?hl=de
Your data is distributed across various physical storage media, which means it can be retrieved quickly and is better protected against manipulation. Each Google data center has emergency programs to secure your data. Even if Google experiences hardware failures or natural disasters, the risk of interruption is low.
The duration for which your data is stored depends on the properties we use. With the newer Google Analytics 4 properties, your data is retained for 14 months by default. For other event data, we can choose between 2 and 14 months.
For Universal Analytics properties, the default retention period for your data is 26 months, after which it is deleted. However, we can choose the retention period for usage data from five options.
- Deletion after 14 months
- Deletion after 26 months
- Deletion after 38 months
- Deletion after 50 months
- No automatic deletion
Additionally, there is also the option that data is only deleted if you do not visit our website again within the period we have chosen. In this case, the retention period is reset each time you visit our website again within the specified period.
When the specified period has expired, data is deleted once a month. This retention period applies to your data linked to cookies, user recognition, and advertising IDs (e.g., cookies from the DoubleClick domain). Reporting results are based on aggregated data and are stored independently of user data. Aggregated data is a merging of individual data into a larger unit.
How can I delete my data or prevent data storage?
Under European Union data protection law, you have the right to obtain information about your data, update it, delete it, or restrict its use. By using the browser add-on to deactivate Google Analytics JavaScript (ga.js, analytics.js, dc.js), you prevent Google Analytics from using your data. You can download and install the browser add-on at https://tools.google.com/dlpage/gaoptout?hl=de. Please note that this add-on only deactivates data collection by Google Analytics.
If you want to generally deactivate, delete, or manage cookies (regardless of Google Analytics), there are separate instructions for each browser:
Chrome: Clear, enable, and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Delete cookies to remove data websites have stored on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
Please note that when using this tool, your data may also be stored and processed outside the EU. Most third countries (including the USA) are currently considered unsafe under European data protection law. Data may therefore not simply be transferred to unsafe third countries, stored and processed there, unless there are appropriate guarantees (such as EU standard contractual clauses) between us and the non-European service provider.
We hope we have provided you with the most important information about Google Analytics data processing. If you want to learn more about the tracking service, we recommend these two links: http://www.google.com/analytics/terms/de.html and https://support.google.com/analytics/answer/6004245?hl=de.
Google Analytics IP Anonymization
We have implemented IP address anonymization for Google Analytics on this website. This feature was developed by Google so that this website can comply with applicable data protection regulations and recommendations from local data protection authorities when they prohibit the storage of the full IP address. The anonymization or masking of the IP takes place as soon as the IP addresses arrive in the Google Analytics data collection network and before any data is stored or processed.
More information on IP anonymization can be found at https://support.google.com/analytics/answer/2763052?hl=de.
Google Analytics Demographics and Interests Reports
We have enabled the advertising reports features in Google Analytics. The demographics and interests reports provide information on age, gender, and interests. This allows us to get a better understanding of our users – without being able to attribute this data to individual persons. You can find out more about the advertising features at https://support.google.com/analytics/answer/3450482?hl=de_AT&utm_id=ad.
You can stop the use of your Google account activity and information under “Ad settings” at https://adssettings.google.com/authenticated by checking the box.
Google Analytics Deactivation Link
If you click on the following deactivation link, you can prevent Google from collecting further visits to this website. Caution: Deleting cookies, using your browser's incognito/private mode, or using a different browser will result in data being collected again.
Facebook Pixel Privacy Policy
We use the Facebook Pixel from Facebook on our website. We have implemented a code on our website for this purpose. The Facebook Pixel is a snippet of JavaScript code that loads a collection of functions that allow Facebook to track your user actions if you came to our website via Facebook Ads. For example, if you purchase a product on our website, the Facebook Pixel is triggered and stores your actions on our website in one or more cookies. These cookies allow Facebook to match your user data (customer data such as IP address, user ID) with the data from your Facebook account. Facebook then deletes this data. The collected data is anonymous to us and cannot be viewed, and is only usable in the context of advertising campaigns. If you are a Facebook user and logged in, your visit to our website will automatically be assigned to your Facebook user account.
We only want to show our services or products to people who are genuinely interested in them. With the help of the Facebook Pixel, our advertising measures can be better tailored to your wishes and interests. This way, Facebook users (if they have allowed personalized advertising) see relevant ads. Furthermore, Facebook uses the collected data for analysis purposes and its own advertisements.
Below, we show you the cookies that were set by integrating the Facebook Pixel on a test page. Please note that these are only example cookies. Different cookies are set depending on the interaction on our website.
Name: _fbp
Value: fb.1.1568287647279.257405483-6321280889-7
Purpose: This cookie is used by Facebook to display advertising products.
Expiration date: after 3 months
Name: fr
Value: 0aPf312HOS5Pboo2r..Bdeiuf...1.0.Bdeiuf.
Purpose: This cookie is used so that the Facebook Pixel also functions correctly.
Expiration date: after 3 months
Name: comment_author_50ae8267e2bdf1253ec1a5769f48e062321280889-3
Value: Author's name
Purpose: This cookie stores the text and name of a user who, for example, leaves a comment.
Expiration date: after 12 months
Name: comment_author_url_50ae8267e2bdf1253ec1a5769f48e062
Value: https%3A%2F%2Fwww.testseite…%2F (Author's URL)
Purpose: This cookie stores the URL of the website that the user enters in a text field on our website.
Expiration date: after 12 months
Name: comment_author_email_50ae8267e2bdf1253ec1a5769f48e062
Value: Author's email address
Purpose: This cookie stores the user's email address, provided they have given it on the website.
Expiration date: after 12 months
Note: The above cookies relate to individual user behavior. Changes to Facebook are never to be excluded, especially when using cookies.
If you are logged in to Facebook, you can change your ad settings yourself at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. If you are not a Facebook user, you can generally manage your usage-based online advertising at http://www.youronlinechoices.com/de/praferenzmanagement/. There you have the option to deactivate or activate providers.
If you want to learn more about Facebook's data protection, we recommend the company's own data policies at https://www.facebook.com/policy.php.
Google Tag Manager Privacy Policy
For our website, we use Google Tag Manager from Google Inc. For the European region, Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) is responsible for all Google services. This Tag Manager is one of many helpful marketing products from Google. Through Google Tag Manager, we can centrally embed and manage code snippets from various tracking tools that we use on our website.
In this privacy policy, we want to explain in more detail what Google Tag Manager does, why we use it, and in what form data is processed.
What is Google Tag Manager?
Google Tag Manager is an organizational tool that allows us to centrally embed and manage website tags through a single user interface. Tags are small code snippets that, for example, record (track) your activities on our website. For this purpose, JavaScript code snippets are inserted into the source code of our page. The tags often come from internal Google products such as Google Ads or Google Analytics, but tags from other companies can also be embedded and managed via the manager. Such tags perform various tasks. They can collect browser data, feed data to marketing tools, integrate buttons, set cookies, and also track users across multiple websites.
Why do we use Google Tag Manager for our website?
As the saying goes, organization is half the battle! And that certainly applies to maintaining our website. To make our website as good as possible for you and everyone interested in our products and services, we need various tracking tools, such as Google Analytics. The data collected by these tools shows us what interests you most, where we can improve our services, and which people we should still show our offers to. And for this tracking to work, we need to integrate corresponding JavaScript codes into our website. Basically, we could integrate each code snippet of the individual tracking tools separately into our source code. However, this is relatively time-consuming and it's easy to lose track. That's why we use Google Tag Manager. We can easily integrate the necessary scripts and manage them from one place. In addition, Google Tag Manager offers an easy-to-use interface and no programming knowledge is required. This is how we manage to keep our tag jungle organized.
What data is stored by Google Tag Manager?
The Tag Manager itself is a domain that does not set cookies and does not store any data. It acts as a mere "manager" of the implemented tags. The individual tags of the different web analysis tools collect the data. The data is practically funneled through the Google Tag Manager to the individual tracking tools and is not stored.
However, the situation is completely different with the integrated tags of various web analysis tools, such as Google Analytics. Depending on the analysis tool, various data about your web behavior is usually collected, stored, and processed with the help of cookies. For this, please read our data protection texts for the individual analysis and tracking tools that we use on our website.
In the Tag Manager account settings, we have allowed Google to receive anonymized data from us. However, this only relates to the use of our Tag Manager and not to your data that is stored via the code snippets. We enable Google and others to receive selected data in anonymized form. We thus agree to the anonymous transfer of our website data. Despite extensive research, we were unable to find out exactly what aggregated and anonymous data is forwarded. In any case, Google deletes all information that could identify our website. Google aggregates the data with hundreds of other anonymous website data and creates user trends as part of benchmarking measures. Benchmarking involves comparing one's own results with those of competitors. Based on the information collected, processes can be optimized.
How long and where is the data stored?
If Google stores data, this data is stored on Google's own servers. The servers are distributed all over the world. Most of them are located in America. You can read exactly where Google's servers are located at https://www.google.com/about/datacenters/inside/locations/?hl=de.
For how long the individual tracking tools store your data, please refer to our individual data protection texts for the respective tools.
How can I delete my data or prevent data storage?
Google Tag Manager itself does not set cookies; instead, it manages tags from various tracking websites. In our data protection texts for the individual tracking tools, you will find detailed information on how to delete or manage your data.
Please note that when using this tool, your data may also be stored and processed outside the EU. Most third countries (including the USA) are currently considered unsafe under European data protection law. Therefore, data may not simply be transferred to unsafe third countries, stored, and processed there unless there are appropriate safeguards (such as EU standard contractual clauses) between us and the non-European service provider.
If you want to learn more about Google Tag Manager, we recommend the FAQs at https://www.google.com/intl/de/tagmanager/faq.html.
Hotjar Privacy Policy
We use Hotjar from Hotjar Limited (Level 2, St Julian’s Business Centre, 3, Elia Zammit Street, St Julian’s STJ 1000, Malta) on our website to statistically evaluate visitor data. Hotjar is a service that analyzes user behavior and feedback on our website through a combination of analysis and feedback tools. We receive reports and visual representations from Hotjar that show us where and how you "move" on our site. Personal data is automatically anonymized and never reaches Hotjar's servers. This means you, as a website user, are not personally identified, yet we still learn a lot about your user behavior.
What is Hotjar?
As mentioned in the section above, Hotjar helps us analyze the behavior of our site visitors. The tools offered by Hotjar include heatmaps, conversion funnels, visitor recording, incoming feedback, feedback polls, and surveys (more information can be found at https://www.hotjar.com/). Hotjar thus helps us provide you with a better user experience and better service. It offers both good analysis of online behavior and good feedback on the quality of our website. In addition to all the analytical aspects, we naturally also want to know your opinion about our website. And the feedback tool makes exactly that possible.
Why do we use Hotjar on our website?
In recent years, the importance of User Experience (UX) on websites has greatly increased. And for good reason. A website should be designed so that you, as a visitor, feel comfortable and can easily find your way around. Thanks to Hotjar's analysis tools and feedback tool, we can make our website and our offerings more attractive. Hotjar's heatmaps prove particularly valuable to us. Heatmaps are a form of data visualization. Hotjar's heatmaps, for example, show us very precisely what you like to click, tap, and where you scroll.
What data is stored by Hotjar?
As you browse our website, Hotjar automatically collects information about your user behavior. To collect this information, we have installed a dedicated tracking code on our website. The following data may be collected from your computer or browser:
- IP address of your computer (collected and stored in an anonymous format)
- Screen size
- Browser information (which browser, which version, etc.)
- Your location (but only the country)
- Your preferred language setting
- Visited web pages (subpages)
- Date and time of access to one of our subpages (web pages)
In addition, cookies also store data that is placed on your computer (usually in your browser). No personal data is collected in these. In principle, Hotjar does not pass on any collected data to third parties. However, Hotjar explicitly states that it is sometimes necessary to share data with Amazon Web Services. In such cases, parts of your information are stored on their servers. However, Amazon is bound by a confidentiality obligation not to disclose this data.
Only a limited number of people (Hotjar employees) have access to the stored information. Hotjar's servers are protected by firewalls and IP restrictions (access only for approved IP addresses). Firewalls are security systems that protect computers from unwanted network access. They are intended to serve as a barrier between Hotjar's secure internal network and the internet. Furthermore, Hotjar also uses third-party companies for its services, such as Google Analytics or Optimizely. These companies can also store information that your browser sends to our website.
The following cookies are used by Hotjar. Since we refer, among other things, to the cookie list from Hotjar's privacy policy at https://www.hotjar.com/legal/policies/cookie-information, not every cookie has an exemplary value. The list shows examples of Hotjar cookies used and makes no claim to completeness.
Name: ajs_anonymous_id
Value: %2258832463-7cee-48ee-b346-a195f18b06c3%22321280889-5
Purpose: The cookie is usually used for analysis purposes and helps count visitors to our website by tracking whether you have visited this page before.
Expiration date: after one year
Name: ajs_group_id
Value: 0
Purpose: This cookie collects data about user behavior. This data can then be assigned to a specific visitor group based on similarities between website visitors.
Expiration date: after one year
Name: _hjid
Value: 699ffb1c-4bfb-483f-bde1-22cfa0b59c6c
Purpose: The cookie is used to maintain a Hotjar user ID that is unique to the website in the browser. This allows user behavior to be attributed to the same user ID on subsequent visits.
Expiration date: after one year
Name: _hjMinimizedPolls
Value: 462568321280889-8
Purpose: Whenever you minimize a Feedback Poll Widget, Hotjar sets this cookie. The cookie ensures that the widget remains minimized when you browse our pages.
Expiration date: after one year
Name: _hjIncludedInSample
Value: 1
Purpose: This session cookie is set to inform Hotjar whether you are part of the selected sample of individuals used to generate funnels.
Expiration date: after one year
Name: _hjClosedSurveyInvites
Purpose: This cookie is set when you see an invitation to a feedback survey via a pop-up window. The cookie is used to ensure that this invitation only appears once for you.
Expiration date: after one year
Name: _hjDonePolls
Purpose: Once you complete a feedback "question round" using the Feedback Poll Widget, this cookie is set in your browser. This prevents Hotjar from sending you the same surveys again in the future.
Expiration date: after one year
Name: _hjDoneTestersWidgets
Purpose: This cookie is used as soon as you enter your data in the "Recruit User Tester Widget". We want to recruit you as a tester with this widget. This cookie is used so that this form does not appear again and again.
Expiration date: after one year
Name: _hjMinimizedTestersWidgets
Purpose: This cookie is set to ensure that the "Recruit User Tester" remains minimized on all our pages once you have minimized it.
Expiration date: after one year
Name: _hjShownFeedbackMessage
Purpose: This cookie is set when you have minimized or completed the incoming feedback. This is done so that the incoming feedback loads immediately as minimized when you navigate to another page where it is supposed to be displayed.
Expiration date: after one year
How long and where is the data stored?
We have integrated a tracking code on our website, which is transmitted to Hotjar's servers in Ireland (EU). This tracking code contacts Hotjar's servers and sends a script to your computer or device that you use to access our site. The script collects certain data related to your interaction with our website. This data is then sent to Hotjar's servers for processing. Hotjar has imposed a 365-day data retention period on itself. This means that all data collected by Hotjar that is older than one year is automatically deleted.
How can I delete my data or prevent data storage?
Hotjar does not store any personal data about you for analysis. The company even advertises with the slogan "We track behavior, not individuals." You also always have the option to prevent the collection of your data. To do this, you just need to go to the "Opt-out page" and click on "Disable Hotjar." Please note that deleting cookies, using your browser's private mode, or using a different browser will result in data being collected again. Furthermore, you can also activate the "Do Not Track" button in your browser. In Chrome, for example, you have to click on the three bars in the top right corner and go to "Settings." There, in the "Privacy" section, you will find the option "Send a 'Do Not Track' request with your browsing traffic." Now simply activate this button and no data will be collected by Hotjar.
More details on the privacy policy and what data is collected by Hotjar and in what way can be found at https://www.hotjar.com/legal/policies/privacy?tid=321280889.
Email Marketing
Naturally, we want to stay in touch with you and always present you with the most important news about our company. For this purpose, we use email marketing, among other things, which is an essential part of our online marketing. Provided you agree or it is legally permitted, we will send you newsletters, emails, or other notifications. When we use the term "newsletter" in the following text, we primarily mean regularly sent emails.
How do you sign up for our email marketing?
If you wish to participate in our email marketing (mostly via newsletter), you usually just need to sign up with your email address. To do this, you fill out an online form and submit it. However, we may also ask for your salutation and name so that we can address you personally.
Basically, subscribing to newsletters works using the so-called "double opt-in procedure." After you have registered for our newsletter on our website, you will receive an email asking you to confirm your newsletter registration. This ensures that the email address belongs to you and that no one has registered with a fake email address. We, or a notification tool used by us, log every single registration. This is necessary so that we can prove the legally correct registration process. This usually involves storing the time of registration, the time of registration confirmation, and your IP address. In addition, any changes you make to your stored data are also logged.
How long are we allowed to store your email address?
If you unsubscribe your email address from our email/newsletter distribution list, we may store your address for up to three years based on our legitimate interests so that we can still prove your previous consent. We may only process this data if we need to defend ourselves against any claims.
However, if you confirm that you have given us consent to subscribe to the newsletter, you can submit an individual deletion request at any time. If you permanently object to the consent, we reserve the right to store your e-mail address in a blocking list. As long as you have voluntarily subscribed to our newsletter, we will naturally also keep your e-mail address.
On what legal basis do we conduct email marketing?
Our newsletter is sent based on your consent. This means we may only send you a newsletter if you have actively subscribed to it in advance. If consent is not necessary, the newsletter is sent based on a legitimate interest in direct marketing, provided this is legally permissible. Even if we engage a service provider, this is done based on our legitimate interest. We record your registration process so that we can always prove that it complies with our laws.
What is in our newsletters?
Of course, we do not want to bother you with our newsletter. That is why we always strive to offer only relevant and interesting content. For example, you will learn more about our company, our services or products. As we are constantly improving our offers, our newsletter will also keep you informed about any news or special, lucrative promotions we are currently offering.
If we use a service provider that offers a professional mailing tool for our email marketing, we do so to be able to offer you fast and secure newsletters.
What data is stored?
If you become a subscriber to our newsletter via our website, you confirm membership in an email list by email. In addition to your IP address and email address, your name, address, and telephone number may also be stored. However, only if you agree to this data storage. In addition, information about your device or your preferred content on our website may also be stored. More information about data storage when you visit a website can be found in the "Automatic data storage" section.
Information on specific email marketing services can be found - if available - in the following sections.
How can I cancel my subscription?
You have the option to cancel your newsletter subscription at any time. To do this, you only need to revoke your consent to newsletter registration. This usually takes only a few minutes or a few clicks. Most of the time you will find a link directly in our newsletter to cancel the subscription. If the link is really not in the newsletter, please contact us by email and we will cancel your newsletter subscription.
Social Media
In addition to our website, we are also active on social media. User data may be processed to enable us to specifically address users who are interested in us via social networks. In addition, elements of a social media platform may also be directly embedded in our website. This is the case, for example, if you click on a so-called social button on our website and are forwarded directly to our social media presence.
Why do we use social media?
For years, social media platforms have been the place where people communicate and connect online. With our social media presences, we can bring our products and services closer to interested parties. The social media elements integrated into our website help you to quickly and easily switch to our social media content.
For what purpose is data collected and stored?
The data stored and processed through your use of a social media channel primarily serves to conduct web analyses. The goal of these analyses is to develop more accurate and personalized marketing and advertising strategies. Depending on your behavior on a social media platform, appropriate conclusions can be drawn about your interests using the evaluated data, and so-called user profiles can be created. This also enables the platforms to present tailor-made advertisements to you. Most of the time, cookies are set in your browser for this purpose, which store data about your user behavior.
Please note that when using social media platforms or our embedded elements, your data may also be processed outside the European Union, as many social media channels, such as Facebook or Twitter, are American companies. As a result, you may not be able to easily claim or enforce your rights regarding your personal data.
What data is stored?
The exact data stored and processed depends on the respective provider of the social media platform. However, it is usually data such as phone numbers, email addresses, data you enter in a contact form, user data such as which buttons you click, whom you like or follow, when you visited which pages, information about your device, and your IP address. Most of this data is stored in cookies. Especially if you have a profile on the social media channel you visited and are logged in, data can be linked to your profile.
All data collected via a social media platform is also stored on the providers' servers. Thus, only the providers have access to the data and can give you the appropriate information or make changes.
If you want to know exactly what data is stored and processed by social media providers and how you can object to data processing, you should carefully read the respective company's privacy policy. Also, if you have questions about data storage and data processing or want to assert relevant rights, we recommend that you contact the provider directly.
Information on specific social media platforms can be found - if available - in the following sections.
Facebook Privacy Policy
We use selected Facebook tools on our website. Facebook is a social media network of the company Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2 Ireland. With the help of these tools, we can offer you and people who are interested in our products and services the best possible offer. In the following, we provide an overview of the various Facebook tools, what data is sent to Facebook and how you can delete this data.
What are Facebook tools?
Among many other products, Facebook also offers the so-called "Facebook Business Tools". This is Facebook's official name. However, since the term is hardly known, we have decided to simply call them Facebook tools. These include:
- Facebook Pixel
- Social plug-ins (such as the "Like" or "Share" button)
- Facebook Login
- Account Kit
- APIs (application programming interface)
- SDKs (software development kits)
- Platform integrations
- Plugins
- Codes
- Specifications
- Documentation
- Technologies and services
Through these tools, Facebook expands its services and has the ability to obtain information about user activities outside of Facebook.
Why do we use Facebook tools on our website?
We only want to show our services and products to people who are genuinely interested in them. With the help of advertisements (Facebook Ads), we can reach exactly these people. However, for Facebook to show users suitable advertising, it needs information about people's wishes and needs. Thus, information about user behavior (and contact details) on our website is made available to the company. This allows Facebook to collect better user data and show interested people appropriate advertising for our products or services. The tools thus enable tailored advertising campaigns on Facebook.
Facebook calls data about your behavior on our website "event data." This is also used for measurement and analysis services. Facebook can thus create "campaign reports" on our behalf about the effectiveness of our advertising campaigns. Furthermore, analyses give us a better insight into how you use our services, website, or products. This allows us to optimize your user experience on our website with some of these tools. For example, with the social plug-ins, you can share content on our page directly on Facebook.
What data is stored by Facebook tools?
By using individual Facebook tools, personal data (customer data) can be sent to Facebook. Depending on the tools used, customer data such as name, address, phone number, and IP address can be sent.
Facebook uses this information to match the data with the data it already has about you (if you are a Facebook member). Before customer data is transmitted to Facebook, a "hashing" process takes place. This means that a data set of any size is transformed into a string of characters. This also serves to encrypt data.
In addition to contact data, "event data" is also transmitted. "Event data" refers to the information we receive about you on our website. For example, which subpages you visit or which products you buy from us. Facebook does not share the received information with third parties (such as advertisers) unless the company has explicit permission or is legally obliged to do so. "Event data" can also be linked to contact data. This allows Facebook to offer better personalized advertising. After the aforementioned matching process, Facebook deletes the contact data again.
To deliver optimized advertisements, Facebook only uses event data when it has been combined with other data (collected by Facebook in other ways). Facebook also uses this event data for security, protection, development, and research purposes. Much of this data is transmitted to Facebook via cookies. Cookies are small text files used to store data or information in browsers. Depending on the tools used and whether you are a Facebook member, different numbers of cookies are created in your browser. In the descriptions of the individual Facebook tools, we will go into more detail about individual Facebook cookies. General information about the use of Facebook cookies can also be found at https://www.facebook.com/policies/cookies.
How long and where is the data stored?
In principle, Facebook stores data until it is no longer needed for its own services and Facebook products. Facebook has servers distributed all over the world where its data is stored. However, customer data is deleted within 48 hours after it has been matched with its own user data.
How can I delete my data or prevent data storage?
According to the General Data Protection Regulation, you have the right to information, rectification, portability, and erasure of your data.
Complete deletion of data only occurs if you completely delete your Facebook account. Here's how to delete your Facebook account:
1) Click on Settings on the right side of Facebook.
2) Then click on "Your Facebook Information" in the left column.
3) Now click "Deactivation and Deletion".
4) Now select "Delete Account" and then click "Continue to Account Deletion".
5) Now enter your password, click "Continue" and then "Delete Account".
The data that Facebook receives about our site is stored, among other things, via cookies (e.g., for social plugins). In your browser, you can deactivate, delete, or manage individual or all cookies. Depending on the browser you use, this works in different ways. The following instructions show you how to manage cookies in your browser:
Chrome: Delete, activate and manage cookies in Chrome
Safari: Manage cookies and website data with Safari
Firefox: Delete cookies to remove data websites have placed on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
If you generally do not want cookies, you can set up your browser so that it always informs you when a cookie is to be set. This way, you can decide for each individual cookie whether to allow it or not.
Please note that when using this tool, your data may also be stored and processed outside the EU. Most third countries (including the USA) are not considered secure under current European data protection law. Therefore, data cannot simply be transferred to unsafe third countries, stored and processed there, unless there are suitable guarantees (such as EU standard contractual clauses) between us and the non-European service provider.
We hope we have provided you with the most important information about the use and data processing by Facebook tools. If you want to learn more about how Facebook uses your data, we recommend you read the data policy at https://www.facebook.com/about/privacy/update.
Instagram Privacy Policy
We have integrated Instagram functions into our website. Instagram is a social media platform of the company Instagram LLC, 1601 Willow Rd, Menlo Park CA 94025, USA. Instagram has been a subsidiary of Facebook Inc. since 2012 and is one of the Facebook products. Embedding Instagram content on our website is called embedding. This allows us to show you content such as buttons, photos or videos from Instagram directly on our website. If you visit pages of our website that have an Instagram function integrated, data is transmitted, stored and processed by Instagram. Instagram uses the same systems and technologies as Facebook. Your data is therefore processed across all Facebook companies.
In the following, we want to give you a more detailed insight into why Instagram collects data, what data it is, and how you can largely control data processing. Since Instagram belongs to Facebook Inc., we obtain our information partly from the Instagram policies and partly from the Facebook data policies themselves.
What is Instagram?
Instagram is one of the most famous social media networks worldwide. Instagram combines the advantages of a blog with the advantages of audiovisual platforms such as YouTube or Vimeo. On "Insta" (as many users casually call the platform), you can upload photos and short videos, edit them with various filters, and also share them on other social networks. And if you don't want to be active yourself, you can also just follow other interesting users.
Why do we use Instagram on our website?
Instagram is a social media platform that has really taken off in recent years. And of course, we have reacted to this boom. We want you to feel as comfortable as possible on our website. That is why a diverse presentation of our content is a matter of course for us. Through the embedded Instagram functions, we can enrich our content with helpful, funny or exciting content from the Instagram world. Since Instagram is a subsidiary of Facebook, the data collected can also be used for personalized advertising on Facebook. This way, our advertisements are only shown to people who are truly interested in our products or services.
Instagram also uses the collected data for measurement and analysis purposes. We receive summarized statistics and thus gain more insight into your wishes and interests. It is important to mention that these reports do not personally identify you.
What data is stored by Instagram?
If you come across one of our pages that has Instagram functions (such as Instagram images or plug-ins) embedded, your browser automatically connects to Instagram's servers. Data is then sent to Instagram, stored and processed. This happens regardless of whether you have an Instagram account or not. This includes information about our website, about your computer, about purchases made, about advertisements you see and how you use our services. Furthermore, the date and time of your interaction with Instagram are also stored. If you have an Instagram account or are logged in, Instagram stores significantly more data about you.
Facebook distinguishes between customer data and event data. We assume that this is also the case with Instagram. Customer data includes, for example, name, address, phone number and IP address. This customer data is only transmitted to Instagram after it has been "hashed". Hashing means that a data record is converted into a string. This allows the contact data to be encrypted. In addition, the "event data" mentioned above is also transmitted. "Event data" is understood by Facebook – and consequently also by Instagram – as data about your user behavior. It can also happen that contact data is combined with event data. The collected contact data is compared with the data that Instagram already has about you.
The collected data is transmitted to Facebook via small text files (cookies), which are usually set in your browser. Depending on the Instagram functions used and whether you yourself have an Instagram account, different amounts of data are stored.
We assume that data processing on Instagram works the same way as on Facebook. This means that if you have an Instagram account or have visited www.instagram.com, Instagram has set at least one cookie. If this is the case, your browser sends information to Instagram via the cookie as soon as you come into contact with an Instagram function. At the latest after 90 days (after reconciliation), this data is deleted or anonymized. Although we have extensively researched Instagram's data processing, we cannot precisely state what data Instagram collects and stores.
Below, we show you cookies that are set in your browser at a minimum when you click on an Instagram function (such as a button or an Insta image). In our test, we assume that you do not have an Instagram account. If you are logged in to Instagram, significantly more cookies will, of course, be set in your browser.
These cookies were used in our test:
Name: csrftoken
Value: “”
Purpose: This cookie is most likely set for security reasons to prevent request forgeries. However, we were unable to find out more precisely.
Expiration date: after one year
Name: mid
Value: “”
Purpose: Instagram sets this cookie to optimize its own services and offers within and outside of Instagram. The cookie sets a unique user ID.
Expiration date: after the session ends
Name: fbsr_321280889124024
Value: no data
Purpose: This cookie stores the login request for users of the Instagram app.
Expiration date: after the session ends
Name: rur
Value: ATN
Purpose: This is an Instagram cookie that ensures functionality on Instagram.
Expiration date: after the session ends
Name: urlgen
Value: “{“194.96.75.33″: 1901}:1iEtYv:Y833k2_UjKvXgYe321280889”
Purpose: This cookie serves Instagram's marketing purposes.
Expiration date: after the session ends
Note: We cannot claim completeness here. Which cookies are set in individual cases depends on the embedded functions and your use of Instagram.
How long and where is the data stored?
Instagram shares the information it receives between Facebook companies, with external partners, and with people you connect with worldwide. Data processing is carried out in compliance with its own data policy. Your data is distributed across Facebook servers around the world, among other reasons for security. Most of these servers are located in the USA.
How can I delete my data or prevent data storage?
Thanks to the General Data Protection Regulation, you have the right to access, portability, rectification and erasure of your data. You can manage your data in the Instagram settings. If you want to completely delete your data on Instagram, you must permanently delete your Instagram account.
Here's how to delete your Instagram account:
First, open the Instagram app. On your profile page, scroll down and click "Help Center". You will then be taken to the company's website. On the website, click "Manage your account" and then "Delete your account".
If you delete your entire account, Instagram will delete posts such as your photos and status updates. Information that other people have shared about you does not belong to your account and will therefore not be deleted.
As mentioned above, Instagram primarily stores your data via cookies. You can manage, disable or delete these cookies in your browser. Depending on your browser, management always works a little differently. Here we show you the instructions for the most important browsers.
Chrome: Delete, activate and manage cookies in Chrome
Safari: Manage cookies and website data with Safari
Firefox: Delete cookies to remove data that websites have placed on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
You can also generally set up your browser so that you are always informed when a cookie is to be set. Then you can always decide individually whether you want to allow the cookie or not.
Please note that when using this tool, your data may also be stored and processed outside the EU. Most third countries (including the USA) are considered unsafe under current European data protection law. Data may therefore not simply be transferred to unsafe third countries, stored and processed there, unless there are suitable guarantees (such as EU standard contractual clauses) between us and the non-European service provider.
We have tried to provide you with the most important information about data processing by Instagram. You can find more detailed information on Instagram's data policy at https://help.instagram.com/519522125107875
.
YouTube Privacy Policy
We have embedded YouTube videos on our website. This allows us to present interesting videos directly on our site. YouTube is a video portal that has been a subsidiary of Google since 2006. The video portal is operated by YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. If you access a page on our website that has an embedded YouTube video, your browser automatically connects to the servers of YouTube or Google. Various data is then transmitted (depending on the settings). Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) is responsible for all data processing in the European area.
In the following, we want to explain in more detail what data is processed, why we have integrated YouTube videos and how you can manage or delete your data.
What is YouTube?
On YouTube, users can watch, rate, comment on and upload videos free of charge. Over the past few years, YouTube has become one of the most important social media channels worldwide. To display videos on our website, YouTube provides a code snippet that we have integrated into our site.
Why do we use YouTube videos on our website?
YouTube is the video platform with the most visitors and the best content. We strive to offer you the best possible user experience on our website. And of course, interesting videos should not be missing. With the help of our embedded videos, we provide you with additional helpful content in addition to our texts and images. In addition, our website is more easily found on the Google search engine through the embedded videos. Even if we place advertisements via Google Ads, Google can - thanks to the collected data - really only show these ads to people who are interested in our offers.
What data is stored by YouTube?
As soon as you visit one of our pages that has an embedded YouTube video, YouTube sets at least one cookie that stores your IP address and our URL. If you are logged into your YouTube account, YouTube can usually assign your interactions on our website to your profile with the help of cookies. This includes data such as session duration, bounce rate, approximate location, technical information such as browser type, screen resolution or your internet provider. Further data can be contact data, any ratings, sharing of content via social media or adding to your favorites on YouTube.
If you are not logged into a Google account or a YouTube account, Google stores data with a unique identifier associated with your device, browser or app. For example, your preferred language setting is retained. However, much interaction data cannot be stored because fewer cookies are set.
In the following list, we show cookies that were set in the browser during a test. We show cookies that are set without a logged-in YouTube account. On the other hand, we show cookies that are set with a logged-in account. The list cannot claim to be exhaustive, because the user data always depends on the interactions on YouTube.
Name: YSC
Value: b9-CV6ojI5Y321280889-1
Purpose: This cookie registers a unique ID to store statistics of the viewed video.
Expiration date: after end of session
Name: PREF
Value: f1=50000000
Purpose: This cookie also registers your unique ID. Google receives statistics via PREF on how you use YouTube videos on our website.
Expiration date: after 8 months
Name: GPS
Value: 1
Purpose: This cookie registers your unique ID on mobile devices to track the GPS location.
Expiration date: after 30 minutes
Name: VISITOR_INFO1_LIVE
Value: 95Chz8bagyU
Purpose: This cookie tries to estimate the user's bandwidth on our websites (with embedded YouTube video).
Expiration date: after 8 months
Additional cookies that are set when you are logged into your YouTube account:
Name: APISID
Value: zILlvClZSkqGsSwI/AU1aZI6HY7321280889-
Purpose: This cookie is used to create a profile of your interests. The data is used for personalized advertisements.
Expiration date: after 2 years
Name: CONSENT
Value: YES+AT.de+20150628-20-0
Purpose: The cookie stores the status of a user's consent to use various Google services. CONSENT also serves security purposes to verify users and protect user data from unauthorized attacks.
Expiration date: after 19 years
Name: HSID
Value: AcRwpgUik9Dveht0I
Purpose: This cookie is used to create a profile of your interests. This data helps to display personalized advertising.
Expiration date: after 2 years
Name: LOGIN_INFO
Value: AFmmF2swRQIhALl6aL…
Purpose: This cookie stores information about your login data.
Expiration date: after 2 years
Name: SAPISID
Value: 7oaPxoG-pZsJuuF5/AnUdDUIsJ9iJz2vdM
Purpose: This cookie works by uniquely identifying your browser and device. It is used to create a profile of your interests.
Expiration date: after 2 years
Name: SID
Value: oQfNKjAsI321280889-
Purpose: This cookie stores your Google Account ID and your last login time in digitally signed and encrypted form.
Expiration date: after 2 years
Name: SIDCC
Value: AN0-TYuqub2JOcDTyL
Purpose: This cookie stores information on how you use the website and what advertisements you may have seen before visiting our site.
Expiration date: after 3 months
How long and where is the data stored?
The data that YouTube receives and processes from you is stored on Google servers. Most of these servers are located in America. You can see exactly where Google's data centers are located at https://www.google.com/about/datacenters/inside/locations/?hl=de. Your data is distributed across the servers. This makes the data accessible faster and better protected against manipulation.
Google stores the collected data for different lengths of time. Some data can be deleted at any time, others are automatically deleted after a limited time, and still others are stored by Google for a longer period. Some data (such as items from "My Activity," photos or documents, products) stored in your Google account remain stored until you delete them. Even if you are not logged into a Google account, you can delete some data associated with your device, browser, or app.
How can I delete my data or prevent data storage?
You can generally delete data manually in your Google account. With the automatic deletion function for location and activity data introduced in 2019, information is stored for either 3 or 18 months, depending on your decision, and then deleted.
Regardless of whether you have a Google account or not, you can configure your browser to delete or disable Google cookies. Depending on the browser you use, this works in different ways. The following instructions show you how to manage cookies in your browser:
Chrome: Clear, enable, and manage cookies in Chrome
Safari: Manage cookies and website data with Safari
Firefox: Delete cookies to remove data that websites have placed on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
If you generally do not want cookies, you can set your browser to always inform you when a cookie is to be set. This way you can decide for each individual cookie whether to allow it or not. Since YouTube is a subsidiary of Google, there is a common privacy policy. If you want to learn more about how your data is handled, we recommend the privacy policy at https://policies.google.com/privacy?hl=de.
Google Fonts Local Privacy Policy
On our website, we use Google Fonts from Google Inc. For the European region, Google Ireland Limited (Gordon House, Barrow Street Dublin 4, Ireland) is responsible. We have integrated the Google fonts locally, i.e., on our web server – not on Google's servers. This means there is no connection to Google servers and therefore no data transfer or storage.
What are Google Fonts?
Google Fonts were formerly called Google Web Fonts. It is an interactive directory with over 800 fonts that Google provides free of charge. With Google Fonts, you could use fonts without uploading them to your own server. However, to prevent any information transfer to Google servers in this regard, we have downloaded the fonts to our server. In this way, we act in compliance with data protection and do not transmit any data to Google Fonts.
Unlike other web fonts, Google allows us unrestricted access to all fonts. So we can access an unlimited sea of fonts and thus get the best out of our website. You can find more about Google Fonts and other questions at https://developers.google.com/fonts/faq?tid=321280889.
Payment Providers
We use online payment systems on our website that enable secure and smooth payment processing for us and for you. In this process, personal data may also be sent, stored, and processed by the respective payment provider.
Thus, within the framework of contractual or legal relationships, due to legal obligations and on the basis of legitimate interest, we offer other payment service providers in addition to banks/credit institutions. The privacy policies of the individual payment providers (such as Amazon Payments, Apple Pay or Discover) provide a detailed overview of data processing and data storage. Furthermore, you can always contact the responsible parties if you have questions about data protection-relevant issues.
What is a payment provider?
Payment providers are online payment systems that allow you to place an order via online banking. The payment processing is carried out by the payment provider you choose. We then receive information about the payment made. This method can be used by any user who has an active online banking account with a PIN and TAN. There are hardly any banks left that do not offer or accept such payment methods.
Why do we use payment providers on our website?
We naturally want our website and integrated online shop to offer the best possible service so that you feel comfortable on our site and use our offers. We know that your time is precious and that payment processing in particular must function quickly and smoothly. For these reasons, we offer you various payment providers. You can choose your preferred payment provider and pay in your usual manner.
What data is stored?
Which data is processed exactly depends, of course, on the respective payment provider. However, data such as name, address, bank details (account number, credit card number, passwords, TANs, etc.) are generally stored. This data is necessary to carry out a transaction at all. In addition, any contract data and user data, such as when you visit our website, what content you are interested in, or which subpages you click on, can also be stored. Your IP address and information about the computer you are using are also stored by most payment providers.
The data is usually stored and processed on the servers of the payment providers. We, as the website operator, do not receive this data. We are only informed whether the payment worked or not. For identity and credit checks, payment providers may transmit data to the appropriate authority. All payment transactions are always subject to the business and data protection policies of the respective provider. Therefore, please always check the General Terms and Conditions and the privacy policy of the payment provider. You also have the right at any time, for example, to have data deleted or corrected. Please contact the respective service provider regarding your rights (right of withdrawal, right of access, and right to object).
Information about specific payment providers can be found - if available - in the following sections.
Amazon Payments Privacy Policy
We use Amazon Payments on our website, a service for online payment procedures. The service provider is the American company Amazon.com Inc. For the European region, Amazon Payments Europe S.C.A. (38 Avenue J.F. Kennedy, L-1855 Luxembourg) is responsible. You can find more about the data processed through the use of Amazon Payments in the Privacy Policy at https://pay.amazon.de/help/201212490.
Visa Privacy Policy
We use Visa on our website, a globally operating payment provider. The service provider is the American company Visa Inc. For the European region, Visa Europe Services Inc. (1 Sheldon Square, London W2 6TT, United Kingdom) is responsible. You can find more about the data processed through the use of Visa in the Privacy Policy at https://www.visa.de/nutzungsbedingungen/visa-privacy-center.html.
Shop Pay Privacy Policy
We use Shop Pay on our website, a service for online payment solutions. The service provider is the American company Shopify Inc. For the European region, Shopify International Limited (Victoria Buildings, 2nd Floor, 1-2 Haddington Road, Dublin 4, D04 XN32, Ireland) is responsible. You can find more about the data processed through the use of Shop Pay in the Privacy Policy at https://www.shopify.de/legal/datenschutz.
PayPal Privacy Policy
We use the online payment service PayPal on our website. The service provider is the American company PayPal Inc. For the European region, PayPal Europe (S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg) is responsible. You can find more about the data processed through the use of PayPal in the Privacy Policy at https://www.paypal.com/de/webapps/mpp/ua/privacy-full.
Mastercard Privacy Policy
We use the payment service provider Mastercard on our website. The service provider is the American company Mastercard Inc. For the European region, Mastercard Europe SA (Chaussée de Tervuren 198A, B-1410 Waterloo, Belgium) is responsible. You can find more about the data processed through the use of Mastercard in the Privacy Policy at https://www.mastercard.de/de-de/datenschutz.html.
Google Pay Privacy Policy
We use the online payment provider Google Pay on our website. The service provider is the American company Google Inc. For the European region, Google Ireland Limited (Gordon House, Barrow Street Dublin 4, Ireland) is responsible for all Google services. You can find more about the data processed through the use of Google Pay in the Privacy Policy at https://policies.google.com/privacy.
giropay Privacy Policy
We use the online payment provider giropay on our website. The service provider is the German company paydirekt GmbH, Stephanstraße 14-16, 60313 Frankfurt am Main, Germany. You can find more about the data processed through the use of giropay in the Privacy Policy at https://www.giropay.de/rechtliches/datenschutzerklaerung/.
We use two payment methods on our website: Apple Pay and Sofortüberweisung.With Apple Pay, you can pay securely online. The service is offered by Apple Inc. in the USA. You can learn more about the privacy policy on the Apple website.
For Sofortüberweisung, we use the service of Sofort GmbH, which is now part of Klarna. The company is based in Germany. If you choose Sofortüberweisung, some of your data will be transmitted to Sofort or Klarna and stored there.
Sofortüberweisung is a system for online payments via your bank account. If you use this method, Sofort GmbH stores some data such as name, account number, amount, etc. This information is also passed on to us.
Sofortüberweisung also uses cookies to make the service more user-friendly. You can manage these cookies in your browser. If you have any questions about the processing of your data or wish to delete your data, you can contact Sofort's data protection team at any time.
Chrome: Clear, enable, and manage cookies in Chrome
Safari: Manage cookies and website data with Safari
Firefox: Delete cookies to remove data that websites have placed on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
If you want to learn more about data processing by "Sofortüberweisung" from Sofort GmbH, we recommend their privacy policy at https://www.sofort.de/datenschutz.html.
Stripe Privacy Policy
On our website, we use a payment tool from the American technology company and online payment service Stripe. For customers within the EU, Stripe Payments Europe (Europe Ltd., 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland) is responsible. This means that if you choose Stripe as your payment method, your payment will be processed via Stripe Payments. In doing so, data necessary for the payment process will be transmitted to and stored by Stripe. In this privacy policy, we provide an overview of this data processing and storage by Stripe and explain why we use Stripe on our website.
What is Stripe?
The technology company Stripe offers payment solutions for online payments. With Stripe, it is possible to accept credit and debit card payments in our webshop. Stripe handles the entire payment process. A major advantage of Stripe is, for example, that you never have to leave our website or shop during the payment process and that payment processing is very fast.
Why do we use Stripe for our website?
We naturally want our website and integrated online shop to offer the best possible service so that you feel comfortable on our site and use our offers. We know that your time is precious and therefore payment processing in particular must function quickly and smoothly. In addition to our other payment providers, we have found a partner in Stripe who ensures secure and fast payment processing.
What data does Stripe store?
If you choose Stripe as your payment method, personal data from you will also be transmitted to and stored by Stripe. This involves transaction data. This data includes, for example, the payment method (i.e., credit card, debit card, or account number), bank code, currency, the amount, and the date of payment. For a transaction, your name, email address, billing or shipping address, and sometimes your transaction history may also be transmitted. This data is necessary for authentication. Furthermore, Stripe may also collect your name, address, phone number, and country, in addition to technical data about your device (such as IP address), for fraud prevention, financial reporting, and to fully provide its services.
Stripe does not sell any of your data to independent third parties, such as marketing agencies or other companies unrelated to Stripe. However, data may be shared with internal departments, a limited number of external Stripe partners, or to comply with legal requirements. Stripe also uses cookies to collect data. Here is a selection of cookies that Stripe may set during the payment process:
Name: m
Value: edd716e9-d28b-46f7-8a55-e05f1779e84e040456321280889-5
Purpose: This cookie appears when you select the payment method. It stores and recognizes whether you are accessing our website via a PC, tablet, or smartphone.
Expiration date: after 2 years
Name: __stripe_mid
Value: fc30f52c-b006-4722-af61-a7419a5b8819875de9321280889-1
Purpose: This cookie is required to carry out a credit card transaction. It stores your session ID for this purpose.
Expiration date: after one year
Name: __stripe_sid
Value: 6fee719a-c67c-4ed2-b583-6a9a50895b122753fe
Purpose: This cookie also stores your ID and is used by Stripe for the payment process on our website.
Expiration date: after the session ends
How long and where is the data stored?
Personal data is generally stored for the duration of the service provision. This means that the data is stored until we terminate our cooperation with Stripe. However, to fulfill legal and regulatory obligations, Stripe may store personal data beyond the duration of the service provision. As Stripe is a global company, data may also be stored in any country where Stripe offers services. Thus, data may also be stored outside your country, for example, in the USA.
How can I delete my data or prevent data storage?
Please note that when using this tool, your data may also be stored and processed outside the EU. Most third countries (including the USA) are currently considered insecure under European data protection law. Data may therefore not simply be transferred to insecure third countries, stored and processed there, unless there are suitable guarantees (such as EU standard contractual clauses) between us and the non-European service provider.
You always have the right to information, rectification, and deletion of your personal data. If you have any questions, you can also contact the Stripe team at any time via https://support.stripe.com/contact/email.
You can delete, disable, or manage cookies that Stripe uses for its functions in your browser. Depending on the browser you use, this works in different ways. Please note, however, that the payment process may then no longer work. The following instructions show how to manage cookies in your browser:
Chrome: Clear, enable, and manage cookies in Chrome
Safari: Manage cookies and website data with Safari
Firefox: Clear cookies to remove data that websites have stored on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
We have now given you a general overview of the processing and storage of data by Stripe. If you want more and even more precise information, the detailed Stripe privacy policy at https://stripe.com/at/privacy serves as a good source.
Klarna Checkout Privacy Policy
On our website, we use the online payment system Klarna Checkout from the Swedish company Klarna Bank AB. Klarna Bank has its main headquarters at Sveavägen 46, 111 34 Stockholm, Sweden. If you choose this service, personal data, among other things, will be sent to Klarna, stored, and processed. In this privacy policy, we would like to give you an overview of data processing by Klarna.
What is Klarna Checkout?
Klarna Checkout is a payment system for orders in an online shop. The user selects the payment method and Klarna Checkout handles the entire payment process. Once a user has made a payment through the Checkout system and provided the corresponding data, future online purchases can be made even faster and easier. The Klarna system then recognizes existing customers after entering their email address and postal code.
Why do we use Klarna Checkout for our website?
Our goal with our website and our integrated online shop is to offer you the best possible service. This includes a smooth, fast, and secure payment processing of your orders, in addition to the overall website experience and our offers. To ensure this, we use the Klarna Checkout payment system.
What data is stored by Klarna Checkout?
As soon as you opt for the Klarna payment service and pay via the Klarna Checkout payment method, you also transmit personal data to the company. On the Klarna Checkout page, technical data such as browser type, operating system, our internet address, date and time, language settings, time zone settings, and your IP address are collected and transmitted to Klarna's servers and stored there. This data is also stored even if you have not yet completed an order.
If you order a product or service through our shop, you must enter personal data into the provided fields. This data is processed by Klarna for payment processing. For creditworthiness and identity checks, the following specific personal data (as well as general product information) may be stored and processed by Klarna:
- Contact information: Name, date of birth, national identification number, title, billing and shipping address, email address, telephone number, nationality, or salary.
- Payment information such as credit card details or your account number
- Product information such as tracking number, type of item, and price of the product
In addition, there is also data that can be collected optionally, provided you consciously decide to do so. This includes political, religious, or philosophical beliefs or various health data.
Klarna can also collect data about the goods or services you buy or order, either itself or through third parties (such as through us or through public databases), in addition to the data mentioned above. This can be, for example, the tracking number or the type of item ordered, but also information about your creditworthiness, your income, or credit grants. Klarna can also pass on your personal data to service providers such as software providers, data storage providers, or us as a merchant.
When data is automatically entered into a form, cookies are always involved. If you do not want to use this function, you can deactivate these cookies at any time. Further down in the text, you will find instructions on how to delete, disable, or manage cookies in your browser in general. Our tests have shown that Klarna does not set any cookies directly. If you choose the payment method "Klarna Sofort" and click "Order", you will be redirected to the Sofort website. After successful payment, you will arrive at our thank you page. The following cookie is set there by sofort.com:
Name: SOFUEB
Value: e8cipp378mdscn9e17kajlfhv7321280889-4
Purpose: This cookie stores your session ID.
Expiration date: after ending the browser session
How long and where is the data stored?
Klarna strives to store your data only within the EU or the European Economic Area (EEA). However, data may also be transferred outside the EU/EEA. If this happens, Klarna ensures that data protection complies with the GDPR and that the third country is subject to an adequacy decision by the European Union. Data is always stored as long as Klarna needs it for the processing purpose.
How can I delete my data or prevent data storage?
You can revoke your consent for Klarna to process personal data at any time. You also always have the right to information, rectification, and deletion of your personal data. To do this, you simply need to contact the company or the company's data protection team by email at datenschutz@klarna.de. You can also contact Klarna directly via the Klarna website "My Privacy Request".
You can delete, disable, or manage cookies that Klarna may use for its functions in your browser. Depending on the browser you use, this works in different ways. The following instructions show how to manage cookies in your browser:
Chrome: Clear, enable, and manage cookies in Chrome
Safari: Manage cookies and website data with Safari
Firefox: Clear cookies to remove data that websites have stored on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
We hope to have provided you with a good overview of data processing by Klarna. If you would like to learn more about how your data is handled, we recommend Klarna's privacy policy at https://cdn.klarna.com/1.0/shared/content/legal/terms/0/de_at/privacy.
