Privacy & Disclaimer

Privacy policy Masalo KG

Privacy policy

The protection and security of your personal data is very important to us.

In principle, you can use our website without providing any personal data. If a data subject wants to use services of our enterprise via our website, processing of personal data could become necessary. If the processing of personal data is necessary and there is no legal basis for such processing, we always obtain the consent of the data subject.
The processing of personal data (e.g. the name, address, e-mail address, or telephone number of a data subject) shall always be in line with the General Data Protection Regulation (GDPR), and in accordance with the country-specific data protection regulations applicable to us.

With the following data protection declaration, we would like to inform the public about the type, scope and purpose of the personal data we collect, use and process. Likewise, data subjects are informed by this privacy policy about the rights to which they are entitled.
As the controller, we have implemented numerous technical and organizational measures to ensure the most complete protection of personal data processed through our website. However, data transmissions via the Internet can always contain security vulnerabilities. Therefore, 100% protection cannot be guaranteed. Therefore, every data subject can of course also alternatively transmit personal data to us, e.g. by telephone or by post.

1) Definitions
This data protection declaration is based on the definitions used by the European Directive and Regulation Maker when adopting the DSGVO (Article 4 DSGVO). This privacy policy is intended to be both easy to read and easy to understand for any person. To ensure this, we would first like to explain the terminology used. This Privacy Policy uses these definitions, among others:

“personal data”
Any information relating to an identified or identifiable natural person (hereinafter “data subject”). An identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.

“person concerned”
Any identified or identifiable natural person whose personal data are processed by the controller.

“Processing”
Any operation or set of operations which is performed upon personal data, whether or not by automatic means, such as collection, recording, organization, filing, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.

“Restriction of processing”
The marking of stored personal data with the aim of limiting their future processing.

“Profiling”
Any type of automated processing of personal data consisting in using such personal data to evaluate certain personal aspects relating to a natural person, in particular to analyze or predict aspects relating to that natural person’s performance at work, economic situation, health, personal preferences, interests, reliability, behavior, location or change of location.

“Responsible”
The natural or legal person, public authority, agency or other body which alone or jointly with others determines the purposes and means of the processing of personal data; where the purposes and means of such processing are determined by Union or Member State law, the controller or the specific criteria for its designation may be provided for by Union or Member State law.

“Receiver”
A natural or legal person, public authority, agency or other body to whom personal data is disclosed, whether or not a third party. However, authorities that may receive personal data in the context of a specific investigation mandate under Union or Member State law shall not be considered as recipients; the processing of such data by the aforementioned authorities shall be carried out in accordance with the applicable data protection rules, in line with the purposes of the processing.

“Third”
A natural or legal person, public authority, agency or other body, other than the data subject, the controller, the processor and the persons authorized to process the personal data under the direct responsibility of the controller or the processor.

“Consent”
any freely given specific, informed and unambiguous indication of the data subject’s wishes in the form of a statement or other unambiguous affirmative act by which the data subject signifies his or her agreement to personal data relating to him or her being processed.

2) Information on the collection of personal data and contact details of the person responsible.
2.1 We are pleased that you are visiting our website and thank you for your interest. In the following, we inform you about the handling of your personal data when using our website. Personal data is any data with which you can be personally identified.

2.2 The controller of data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is Masalo KG, Luener Weg 32a, 21337 Lueneburg, Germany, Tel.: +49 (0) 4131 777 18 52, e-mail: shop@masalo.eu. The controller of personal data is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data.

2.3 For security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or inquiries to the person responsible), this website uses an SSL or SSL protocol. TLS encryption. You can recognize an encrypted connection by the string “https://” and the lock symbol in your browser bar.

3) Data collection when visiting our website
During the mere informational use of our website, i.e. if you do not register or otherwise transmit information to us, we only collect such data that your browser transmits to our server (so-called “server log files”). When you visit our website, we collect the following data, which is technically necessary for us to display the website to you:
– Our visited website
– Date and time at the time of access
– Amount of data sent in bytes
– Source/reference from which you reached the page
– Browser used
– Operating system used
– IP address used in anonymized form
The processing is carried out in accordance with Art. 6 para. 1 lit. f DSGVO on the basis of our legitimate interest in improving the stability and functionality of our website. The data will not be passed on or used in any other way. However, we reserve the right to check the server log files retrospectively if there are concrete indications of illegal use.

4) Cookies
In order to make visiting our website attractive and to enable the use of certain functions, we use cookies, i.e. small text files that are stored on your end device. Some of these cookies are automatically deleted after you close your browser (so-called “session cookies”), while others remain on your device for longer and enable page settings to be saved (so-called “persistent cookies”). In the latter case, you can find the storage period in the cookie settings overview of your web browser.
If personal data is also processed by individual cookies used by us, the processing is carried out in accordance with Art. 6 para. 1 lit. b GDPR either for the execution of the contract, in accordance with Art. 6 para. 1 lit. a GDPR in the case of consent given or in accordance with Art. 6 para. 1 lit. f GDPR to safeguard our legitimate interests in the best possible functionality of the website and a customer-friendly and effective design of the page visit.
You can set your browser so that you are informed about the setting of cookies and can decide individually whether to accept them or to exclude the acceptance of cookies for certain cases or in general.
Please note that if you do not accept cookies, the functionality of our website may be restricted.

5) Contacting
When contacting us (e.g. via contact form or e-mail), personal data is processed – exclusively for the purpose of processing and responding to your request and only to the extent necessary for this purpose. The legal basis for the processing of this data is our legitimate interest in responding to your request pursuant to Art. 6 para. 1 lit. f GDPR. If your contact is aimed at a contract, the additional legal basis for the processing is Art. 6 para. 1 lit. b GDPR. Your data will be deleted when it is clear from the circumstances that the matter in question has been conclusively clarified and provided that there are no statutory retention obligations to the contrary.

6) Data processing when opening a customer account
According to Art. 6 para. 1 lit. b DSGVO, personal data will continue to be collected and processed to the extent necessary in each case if you provide it to us when opening a customer account. The data required for opening an account can be found in the input mask of the corresponding form on our website. Deletion of your customer account is possible at any time and can be done by sending a message to the above address of the responsible person. After deletion of your customer account, your data will be deleted, provided that all contracts concluded via it have been fully processed, no legal retention periods are opposed and no legitimate interest on our part in the continued storage exists.

7) collection and storage of personal data as well as type and purpose of their use
7.1 … when ordering via our website
You can either place orders through our website as a guest without registering, or register in our store as a customer for future orders. Registration has the advantage for you that in case of a future order you can log in directly to our store with your e-mail address and password without having to enter your contact details again.
Your personal data is entered in an input mask and transmitted to us and stored. When you place an order via our website, we first collect the following data, both in the case of a guest order and in the case of registration in the store:
– Salutation, first name, last name,
– a valid e-mail address,
– Address,
– Phone number (landline and/or mobile)

The collection of this data takes place,
– to be able to identify you as our customer
– to be able to process, fulfill and handle your order
– for correspondence with you
– for invoicing
– for the settlement of any existing liability claims, as well as the assertion of any claims against you
– to ensure the technical administration of our website
– to manage our customer data

As part of the ordering process, consent is obtained from you for the processing of this data.
The data processing is carried out in response to your order and/or registration and is in accordance with Art. 6 para. 1 p. 1 lit. b DSGVO for the aforementioned purposes for the appropriate processing of your order and for the mutual fulfillment of obligations arising from the purchase contract.
The personal data collected by us for the processing of your order will be stored until the expiry of the legal obligation to keep records and will be deleted thereafter, unless we are required to do so pursuant to Article 6 para. 1 p. 1 lit. c DSGVO due to tax and commercial law retention and documentation obligations (from HGB, StGB or AO) are obliged to a longer storage or you consent to a storage beyond that according to Art. 6 Para. 1 p. 1 lit. a DSGVO have consented.

7.2 …for orders by telephone or e-mail
You can also order from us by phone or by e-mail.
As part of the ordering process, we first collect the following data:
– Salutation, first name, last name,
– valid e-mail address, if applicable,
– Address,
– Phone number (landline and/or mobile)

The collection of this data takes place,
– to be able to identify you as our customer
– to be able to process, fulfill and handle your order
– for correspondence with you
– for invoicing
– for the settlement of any existing liability claims, as well as the assertion of any claims against you
– to manage our customer data

As part of the ordering process, consent is obtained from you for the processing of this data.
The data processing is based on your order and is in accordance with Art. 6 para. 1 p. 1 lit. b DSGVO for the aforementioned purposes for the appropriate processing of your order and for the mutual fulfillment of obligations arising from the purchase contract.
The personal data collected by us for the processing of your order are manually entered and stored by us in our store database.
The personal data collected by us for the processing of your order will be stored until the expiry of the legal obligation to keep records and then deleted, unless we are required by Article 6 para. 1 p. 1 lit. c DSGVO due to tax and commercial law retention and documentation obligations (from HGB, StGB or AO) are obliged to a longer storage or you consent to a storage beyond that according to Art. 6 Para. 1 p. 1 lit. a DSGVO have consented.

7.3 …When using our “Testimonials” form
We offer you the possibility to share your experience with our products with other visitors of our website by means of “testimonials”. To do this, you can star rate with us using a form provided on our website and leave a personal testimonial. It is necessary to provide a valid e-mail address and your name (can be shortened) so that we know who the testimonial is from, so that we can assign it to a customer and thus verify the authenticity of the testimonial.
Your e-mail address will not be published. It is up to you to decide whether you want to enter this data as part of the form and entering your testimonial.
Data processing for the purpose of publishing a field report with us is carried out in accordance with Art. 6 para. 1 p. 1 lit. a DSGVO on the basis of your voluntarily given consent.
The personal data collected by us for the use of the input form will be stored until the expiry of the legal obligation to retain the data and then deleted, unless we are required by Article 6 para. 1 p. 1 lit. c DSGVO due to tax and commercial law retention and documentation obligations (from HGB, StGB or AO) are obliged to a longer storage or you consent to a storage beyond that according to Art. 6 Para. 1 p. 1 lit. a DSGVO have consented.

8) Use of customer data for direct marketing purposes
8.1 Subscription to our e-mail newsletter
If you subscribe to our e-mail newsletter, we will send you regular information about our offers. The only mandatory information for sending the newsletter is your e-mail address. The provision of further data is voluntary and will be used to address you personally. For the newsletter dispatch, we use the so-called double opt-in procedure, which ensures that you will only receive newsletters if you have expressly confirmed your consent to receive the newsletter by clicking on a verification link sent to the specified e-mail address.
By activating the confirmation link, you give us your consent for the use of your personal data in accordance with Art. 6 para. 1 lit. a GDPR. We store your IP address entered by your Internet service provider (ISP) as well as the date and time of registration in order to be able to track any possible misuse of your e-mail address at a later date. The data we collect when you register for the newsletter is used strictly for the intended purpose. You can unsubscribe from the newsletter at any time via the link provided for this purpose in the newsletter or by sending a corresponding message to the responsible person named at the beginning. After unsubscribing, your e-mail address will be deleted from our newsletter distribution list immediately, unless you have expressly consented to further use of your data or we reserve the right to use your data for any other purpose that is permitted by law and about which we inform you in this declaration.

8.2 Sending the e-mail newsletter to existing customers
If you have provided us with your email address when purchasing goods or services, we reserve the right to periodically email you offers for goods or services similar to those you have already purchased from our product line. For this purpose, we must, in accordance with § 7 para. 3 UWG, we do not need to obtain separate consent from you. In this respect, the data processing is carried out solely on the basis of our legitimate interest in personalized direct advertising pursuant to Art. 6 para. 1 lit. f GDPR. If you have initially objected to the use of your e-mail address for this purpose, we will not send you any e-mail. You are entitled to object to the use of your e-mail address for the aforementioned advertising purpose at any time with effect for the future by notifying the responsible person named at the beginning. You will only incur transmission costs in accordance with the prime rates. Upon receipt of your objection, the use of your e-mail address for advertising purposes will cease immediately.

8.3 – Newsletter dispatch via rapidmail
Our e-mail newsletters are sent via the technical service provider rapidmail GmbH, Augustinerplatz 2, 79098 Freiburg (“rapidmail “), to whom we pass on the data you provided when registering for the newsletter. This disclosure is made in accordance with Art. 6 para. 1 lit. f DSGVO and serves our legitimate interest in using a promotional, secure and user-friendly newsletter system. The data entered by you for the purpose of receiving the newsletter (e.g. e-mail address) will be stored on the servers of rapidmail in Germany.
rapidmail uses this information to send and statistically evaluate the newsletters on our behalf. For evaluation purposes, the e-mails sent contain so-called web beacons or tracking pixels, which are single-pixel image files stored on our website. This makes it possible to determine whether a newsletter message has been opened and which links, if any, have been clicked on. With the help of so-called conversion tracking, it can also be analyzed whether a predefined action (e.g. purchase of a product on our website) has taken place after clicking on the link in the newsletter. In addition, technical information is collected (e.g. time of retrieval, IP address, browser type and operating system). The data is collected exclusively pseudonymously and is not linked with your other personal data, a direct personal reference is excluded. This data is used exclusively for statistical analysis of newsletter campaigns. The results of these analyses can be used to better adapt future newsletters to the interests of the recipients.
If you wish to object to the data analysis for statistical evaluation purposes, you must unsubscribe from the newsletter.
We have concluded an order processing agreement with rapidmail, in which we oblige rapidmail to protect our customers’ data and not to pass it on to third parties.
For more information on rapidmail’s data protection, please refer to rapidmail’s privacy policy: https://www.rapidmail.de/datenschutz

9) Data processing for order processing
9.1 Transfer of personal data to shipping service providers
As far as necessary for the execution of the contract for delivery and payment purposes, the personal data collected by us will be processed in accordance with Art. 6 para. 1 lit. b DSGVO to the contracted transport company and the contracted credit institution.
Insofar as we owe you updates for goods with digital elements or for digital products on the basis of a corresponding contract, we process the contact data (name, address, e-mail address) provided by you when placing the order in order to inform you within the scope of our statutory information obligations pursuant to Art. 6 Para. 1 lit. c DSGVO by appropriate means of communication (e.g. by mail or e-mail) about upcoming updates in person within the period provided for by law. Your contact data will be used strictly for the purpose of notifying you of updates owed by us and will be processed by us for this purpose only insofar as this is necessary for the respective information.
In order to process your order, we also work together with the following service provider(s), who support us in whole or in part in the execution of concluded contracts. Certain personal data is transferred to these service providers in accordance with the following information.

– DHL
If the goods are delivered by the transport service provider DHL (Deutsche Post AG, Charles-de-Gaulle-Straße 20, 53113 Bonn, Germany), we will provide an encrypted e-mail address (not the one you provided during the ordering process) in accordance with Art. 6 para. 1 lit. a DSGVO to DHL before delivery of the goods for the purpose of coordinating a delivery date or for delivery notification. Otherwise, for the purpose of delivery, we will disclose pursuant to Art. 6 para. 1 lit. b DSGVO only the name of the recipient and the delivery address to DHL. The disclosure is made only to the extent necessary for the delivery of goods. In this case, prior coordination of the delivery date with DHL or the delivery notice is not possible. The consent can be revoked at any time with effect for the future vis-à-vis the responsible person named above or vis-à-vis the transport service provider DHL.

9.2 Use of special service providers for order processing and handling
The order is processed by the shipping service provider “emoose” (emoose GmbH, In den Hallen 9-13, 66115 Saarbrücken, Germany).
Name, address and, if applicable, other personal data are collected in accordance with Art. 6 para. 1 lit. b DSGVO exclusively for the processing of the online order to emoose. Your data will only be passed on to the extent that this is actually necessary for the processing of the order. Details on data protection at emoose and emoose’s privacy policy can be viewed on emoose’s website at “emoose.de“.

9.3 Use of payment service providers (payment services)
– Paypal
In case of payment via PayPal, credit card via PayPal, direct debit via PayPal or – if offered – “purchase on account” or “installment payment” via PayPal, we pass on your payment data to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter referred to as “PayPal”) within the framework of the payment processing. The transfer takes place in accordance with Art. 6 para. 1 lit. b DSGVO and only insofar as this is necessary for payment processing.
PayPal reserves the right to conduct a credit check for the payment methods credit card via PayPal, direct debit via PayPal or – if offered – “purchase on account” or “installment payment” via PayPal. For this purpose, your payment data may be processed in accordance with Art. 6 para. 1 lit. f DSGVO on the basis of PayPal’s legitimate interest in determining your ability to pay. PayPal uses the result of the credit check in terms of the statistical probability of non-payment for the purpose of deciding whether to provide the respective payment method. The credit report may contain probability values (so-called score values). Insofar as score values are included in the result of the credit report, they have their basis in a scientifically recognized mathematical-statistical procedure. The calculation of the score values includes, but is not limited to, address data. For further information on data protection law, including information on the credit agencies used, please refer to PayPal’s data protection declaration: https://www.paypal.com/de/webapps/mpp/ua/privacy-full
You can object to this processing of your data at any time by sending a message to PayPal. However, PayPal may still be entitled to process your personal data if this is necessary for the contractual processing of payments.

10) Web analytics services
Google Analytics 4
This website uses Google Analytics 4, a service provided by Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”), to analyze the use of websites.
When using Google Analytics 4, so-called “cookies” are used by default. Cookies are text files that are stored on your terminal device and enable an analysis of your use of a website. The information collected by cookies about your use of the website (including the IP address transmitted by your terminal device, shortened by the last digits, see below) is usually transmitted to a Google server and stored and processed there. This may also result in the transmission of information to the servers of Google LLC, a company based in the USA, where the information may be further processed.
When using Google Analytics 4, the IP address transmitted by your terminal device when you use the website is always collected and processed by default and automatically only in an anonymous manner, so that a direct personal reference of the collected information is excluded. This automatic anonymization is carried out by shortening the IP address transmitted by your terminal device by Google within member states of the European Union (EU) or other contracting states of the Agreement on the European Economic Area (EEA) by the last digits.
On our behalf, Google uses this and other information to evaluate your use of the website, to compile reports about your website activities and usage behavior, and to provide us with other services related to your website and internet usage. In the process, the IP address transmitted and shortened by your terminal device within the scope of Google Analytics 4 is not merged with other data from Google. The data collected in the context of the use of Google Analytics 4 will be kept for 2 months and then deleted.
Google Analytics 4 also enables the creation of statistics with statements about age, gender and interests of website users on the basis of an evaluation of interest-based advertising and with the involvement of third-party information via a special function, the so-called “demographic characteristics”. This makes it possible to determine and distinguish user groups of the website for the purpose of targeting marketing measures. However, data collected via the “demographic characteristics” cannot be assigned to a specific person and thus also not to you personally. This data collected via the “demographic characteristics” function is retained for two months and then deleted.
All processing described above, in particular the setting of Google Analytics cookies for the storage and reading of information on the terminal device used by you for the use of the website, will only take place if you have given us permission to do so in accordance with Art. 6 para. 1 lit. a DSGVO have given your express consent. Without your consent, Google Analytics 4 will not be used during your use of the website. You can revoke your consent once given at any time with effect for the future. To exercise your revocation, please deactivate this service via the “cookie consent tool” provided on the website.
We have concluded a so-called order processing agreement with Google for our use of Google Analytics 4, which obliges Google to protect the data of our website users and not to pass it on to third parties.
To ensure compliance with the European level of data protection also in the event of any transfer of data from the EU or EEA to the USA and possible further processing there, Google refers to the so-called standard contractual clauses of the European Commission, which we have contractually agreed with Google.
Further legal information on Google Analytics 4, including a copy of the aforementioned standard contractual clauses, can be found at https://policies.google.com/privacy?hl=de&gl=de and at https://policies.google.com/technologies/partner-sites.

Google Tag Manager
This website uses the “Google Tag Manager”, a service of the following provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland (hereinafter: “Google”).
Google Tag Manager provides a technical basis for bundling various web applications, including tracking and analysis services, and for calibrating, controlling and linking them to conditions via a standardised user interface. Google Tag Manager itself does not store or read any information on user devices. The service also does not carry out any independent data analyses. However, Google Tag Manager transmits your IP address to Google when you access a page and may store it there. It may also be transmitted to servers of Google LLC. in the USA is possible.
This processing is only carried out if you have given us your express consent to do so in accordance with Art. 6 para. 1 lit. a GDPR. Without this consent, Google Tag Manager will not be used during your visit to our website. You can revoke your consent at any time with effect for the future. To exercise your revocation, please deactivate this service in the “cookie consent tool” provided on the website.
We have concluded an order processing contract with the provider, which ensures the protection of the data of our website visitors and prohibits unauthorised disclosure to third parties.
For data transfers to the USA, the provider has signed up to the EU-US Data Privacy Framework, which ensures compliance with the European level of data protection on the basis of an adequacy decision by the European Commission.
Further legal information on Google Tag Manager can be found at https://policies.google.com/privacy 

11) Retargeting / Remarketing and conversion tracking
Meta Pixel
Within our online offering, we use the “Meta Pixel” service of the following provider: Meta Platforms Ireland Limited, 4 Grand Canal Quare, Dublin 2, Ireland (“Meta”)
If a user clicks on an advert placed by us on Facebook and/or Instagram, “Meta Pixel” is used to add a parameter to the URL of our linked page. This URL parameter is then entered into the user’s browser after redirection by a cookie that our linked page sets itself.
This makes it possible for Meta to determine the visitors to our online offering as a target group for the display of adverts. Accordingly, we use the service to display the Facebook and/or Instagram ads placed by us only to those users who have also shown an interest in our online offering or who have certain characteristics (e.g. interests in certain topics or products determined on the basis of the websites visited), which we transmit to Meta (so-called “custom audiences”).
On the other hand, the “Meta Pixel” can be used to track whether users have been redirected to our website after clicking on an advert and what actions they take there (so-called “conversion tracking”).
The data collected is anonymous to us and therefore does not allow us to draw any conclusions about the identity of the user. However, the data is stored and processed by Meta so that a connection to the respective user profile is possible and Meta can use the data for its own advertising purposes.
All processing described above, in particular the setting of cookies for reading information on the terminal device used, will only be carried out if you have given us your express consent to do so in accordance with Art. 6 para. 1 lit. a GDPR. You can revoke your consent at any time with effect for the future by deactivating this service in the “cookie consent tool” provided on the website.
We have concluded an order processing contract with the provider, which ensures the protection of the data of our website visitors and prohibits unauthorised disclosure to third parties.
The information generated by Meta is generally transferred to a Meta server and stored there; in this context, it may also be transferred to servers of Meta Platforms Inc. in the USA.
For data transfers to the USA, the provider has joined the EU-US Data Privacy Framework, which ensures compliance with the European level of data protection on the basis of an adequacy decision by the European Commission.

Microsoft Advertising Universal Event Tracking
This website uses conversion tracking technology from the following provider: Microsoft Corporation, One Microsoft Way, Redmond, WA 98052-6399, USA
For the use of Universal Event Tracking, a tag is stored on each page of our website that interacts with the conversion cookie set by Microsoft. This interaction makes user behaviour on our website traceable and sends the information collected in this way to Microsoft. The purpose of this is that certain predefined goals, such as purchases or leads, can be statistically recorded and analysed in order to make the orientation and content of our offers more interest-oriented. The tags are not used to personally identify users at any time.
All processing described above, in particular the setting of cookies for reading information on the end device used, will only be carried out if you have given us your express consent to do so in accordance with Art. 6 para. 1 lit. a GDPR. Without this consent, retargeting technology will not be used during your visit to our website.
You can revoke your consent at any time with effect for the future. To exercise your revocation, please deactivate this service in the “cookie consent tool” provided on the website.
For data transfers to the USA, the provider has joined the EU-US Data Privacy Framework, which ensures compliance with the European level of data protection on the basis of an adequacy decision by the European Commission.

12) Page functionalities
12.1 Use of Youtube videos
This website uses plugins to display and play videos from the following provider: Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland.
Data may also be transmitted to: Google LLC, USA
When you access a page on our website that contains such a plugin, your browser establishes a direct connection to the provider’s servers in order to load the plugin. Certain information, including your IP address, is transmitted to the provider.
If playback of embedded videos is started via the plugin, the provider also uses cookies to collect information about user behaviour, compile playback statistics and prevent abusive behaviour.
If you are logged into a user account with the provider during your visit to the site, your data will be assigned directly to your account when you click on a video. If you do not wish your data to be associated with your account, you must log out before clicking the play button.
All of the aforementioned processing, in particular the setting of cookies for reading information on the end device used, will only take place if you have given us your express consent to do so in accordance with Art. 6 para. 1 lit. a GDPR. You can revoke your consent at any time with effect for the future by deactivating this service via the “cookie consent tool” provided on the website.
For data transfers to the USA, the provider has joined the EU-US Data Privacy Framework, which ensures compliance with the European level of data protection on the basis of an adequacy decision by the European Commission.

12.2 Use of Vimeo videos
This website uses plugins to display and play videos from the following provider: Vimeo.com, Inc, 330 West 34th Street, 10th Floor, New York, NY 10001, USA.
When you access a page on our website that contains such a plugin, your browser establishes a direct connection to the provider’s servers in order to load the plugin. Certain information, including your IP address, is transmitted to the provider.
If playback of embedded videos is started via the plugin, the provider also uses cookies to collect information about user behaviour, compile playback statistics and prevent abusive behaviour.
If you are logged into a user account with the provider during your visit to the site, your data will be assigned directly to your account when you click on a video. If you do not wish your data to be associated with your account, you must log out before clicking the play button.
All of the aforementioned processing, in particular the setting of cookies for reading information on the end device used, will only take place if you have given us your express consent to do so in accordance with Art. 6 para. 1 lit. a GDPR. You can revoke your consent at any time with effect for the future by deactivating this service via the “cookie consent tool” provided on the website.
For data transfers to the USA, the provider has joined the EU-US Data Privacy Framework, which ensures compliance with the European level of data protection on the basis of an adequacy decision by the European Commission.

12.3 – Google Web Fonts
This site uses so-called web fonts from the following provider for the standardised display of fonts: Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland.
When you access a page, your browser loads the required web fonts into your browser cache in order to display texts and fonts correctly and establishes a direct connection to the provider’s servers. Certain browser information, including your IP address, is transmitted to the provider.
Data may also be transmitted to Google LLC, USA
The processing of personal data in the course of establishing a connection with the provider of the fonts is only carried out if you have given us your express consent to do so in accordance with Art. 6 para. 1 lit. a GDPR. You can revoke your consent at any time with effect for the future by deactivating this service via the “cookie consent tool” provided on the website. If your browser does not support web fonts, a standard font will be used by your computer.
For data transfers to the USA, the provider has joined the EU-US Data Privacy Framework, which ensures compliance with the European level of data protection on the basis of an adequacy decision by the European Commission.

12.4 Google reCAPTCHA
On this website we use the reCAPTCHA function of Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”). This function is primarily used to distinguish whether an input is made by a natural person or is abused by machine and automated processing. The service includes the sending of the IP address and possibly other data required by Google for the reCAPTCHA service to Google and is carried out in accordance with Art. 6 para. 1 lit. f DSGVO on the basis of our legitimate interest in establishing individual ownership on the Internet and preventing abuse and spam. In the context of the use of Google reCAPTCHA, personal data may also be transmitted to the servers of Google LLC. come in the USA.
Further information on Google reCAPTCHA as well as Google’s privacy policy can be viewed at: https://www.google.com/intl/de/policies/privacy/
To the extent legally required, we have obtained your consent to the processing of your data as described above in accordance with Art. 6 para. 1 lit. a DSGVO obtained. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option described above for making an objection.
For the transfer of data from the EU to the USA, Google invokes so-called standard data protection clauses of the European Commission, which are intended to ensure compliance with the European level of data protection in the USA.

12.5 Google Maps
This website uses an online map service from the following provider: Google Maps (API) from Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”).
Google Maps is a web service for displaying interactive (land) maps in order to visualise geographical information. By using this service, you will be shown our location and it will be easier for you to find us.
Information about your use of our website (such as your IP address) is transmitted to Google servers and stored there as soon as you access the subpages in which the Google Maps map is integrated; this information may also be transmitted to the servers of Google LLC. in the USA. This occurs regardless of whether Google provides a user account through which you are logged in or whether a user account exists. If you are logged in to Google, your data will be assigned directly to your account. If you do not wish your data to be associated with your Google profile, you must log out before activating the button. Google stores your data (even for users who are not logged in) as usage profiles and analyses them.
The collection, storage and evaluation are carried out in accordance with Art. 6 para. 1 lit. f GDPR on the basis of Google’s legitimate interest in the display of personalised advertising, market research and/or the needs-based design of Google websites. You have the right to object to the creation of these user profiles, whereby you must contact Google to exercise this right. If you do not agree to the future transmission of your data to Google in connection with the use of Google Maps, you also have the option of completely deactivating the Google Maps web service by switching off the JavaScript application in your browser. Google Maps and thus also the map display on this website can then not be used.
Where legally required, we have obtained your consent to the processing of your data as described above in accordance with Art. 6 para. 1 lit. a GDPR. You can revoke your consent at any time with effect for the future. To exercise your right of revocation, please follow the option described above for making an objection.
For data transfers to the USA, the provider has joined the EU-US Data Privacy Framework, which ensures compliance with the European level of data protection on the basis of an adequacy decision by the European Commission.

13) Tools and miscellaneous
Gambio
This website uses a service for the automatic transmission of error reports from the following provider: Gambio GmbH, Parallelweg 30, 28219 Bremen, Germany.
In the event of technical complications or functional impairments in connection with the operation of the provider’s software, the system sends automatic error reports to the provider containing information on the respective source of the error and its origin. Both server information and usage parameters such as the IP address, the browser used, time stamp and the URL accessed are transmitted.
Depending on the source of the error, error reports may also contain further personal customer data that we have collected and stored in the course of concluding contracts (in particular first name and surname, address, email address). This is always conceivable if the error occurs in connection with software-based processing of customer data.
If the information transmitted in this way also includes personal data, the processing is carried out in accordance with Art. 6 para. 1 lit. f GDPR on the basis of our legitimate interest in efficiently analysing the causes of errors in order to improve the reliability and functionality of our website.

14) Rights of the data subject
The applicable data protection law grants you the following data subject rights (rights of information and intervention) vis-à-vis the controller with regard to the processing of your personal data, whereby reference is made to the stated legal basis for the respective exercise prerequisites:
– Right to information according to Art. 15 DSGVO;
– Right to rectification pursuant to Art. 16 DSGVO;
– Right to erasure according to Art. 17 DSGVO;
– Right to restriction of processing pursuant to Art. 18 DSGVO;
– Right to information pursuant to Art. 19 GDPR;
– Right to data portability according to Art. 20 DSGVO;
– Right to revoke consent given in accordance with Art. 7 para. 3 GDPR;
– Right to lodge a complaint pursuant to Art. 77 GDPR.

15) Right of objection
If, in the context of a balancing of interests, we process their personal data on the basis of our overriding legitimate interest, they have the right to object to this processing with effect for the future at any time for reasons arising from their particular situation.
If they exercise their right to object, we will stop processing the data concerned. However, we reserve the right to further processing if we can demonstrate compelling legitimate grounds for the processing which override their interests, fundamental rights and freedoms, or if the processing serves the purpose of asserting, exercising or defending legal claims.
If their personal data is processed by us for the purpose of direct marketing, they have the right to object at any time to the processing of personal data concerning them for the purpose of such marketing. You can exercise the objection as described above.
If they exercise their right to object, we will stop processing the data concerned for direct marketing purposes.

16) Duration of the storage of personal data
The duration of the storage of personal data is determined on the basis of the respective legal basis, the purpose of processing and – if relevant – additionally on the basis of the respective statutory retention period (e.g. retention periods under commercial and tax law).
When processing personal data on the basis of explicit consent pursuant to Art. 6 para. 1 lit. a DSGVO, this data is stored until the data subject revokes his/her consent.
If there are legal retention periods for data that are required in the context of legal transactions or obligations similar to legal transactions on the basis of Art. 6 Para. 1 lit. b DSGVO, this data is routinely deleted after expiry of the retention periods, provided that it is no longer required for the fulfillment of the contract or the initiation of the contract and/or there is no legitimate interest on our part to continue storing it.
When processing personal data on the basis of Art. 6 para. 1 lit. f DSGVO, this data is stored until the data subject exercises his or her right to object pursuant to Art. 21 Para. 1 DSGVO, unless we can demonstrate compelling legitimate grounds for the processing which override the interests, rights and freedoms of the data subject, or for the establishment, exercise or defense of legal claims.
When processing personal data for the purpose of direct marketing on the basis of Art. 6 para. 1 lit. f DSGVO, this data is stored until the data subject exercises his or her right to object pursuant to Art. 21 Para. 2 GDPR exercises.
Unless otherwise stated in the other information in this statement about specific processing situations, stored personal data will otherwise be deleted when it is no longer necessary for the purposes for which it was collected or otherwise processed.

17) Data security
Within the website visit we use the widespread SSL procedure (Secure Socket Layer) in connection with the highest encryption level supported by your browser. As a rule, this is a 256-bit encryption. If your browser does not support 256-bit encryption, we use 128-bit v3 technology instead. You can tell whether an individual page of our website is transmitted in encrypted form by the closed display of the key or lock symbol in the lower status bar of your browser or in the browser line at the top.
We also use appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction or against unauthorized access by third parties. Our security measures are continuously improved in line with technological developments.

18) Up-to-dateness and modification of this privacy policy
This privacy policy is currently valid and has the status December 2022.
Due to the further development of our website and offers on it or due to changed legal or regulatory requirements, it may become necessary to change this privacy policy. The current privacy policy can be accessed and printed out at any time on our website under the following link:
Click here!

Disclaimer & disclaimer

1) Content of the online offer
All content available on the website has been carefully reviewed. Nevertheless, no absolute guarantee or warranty can be given for the correctness, completeness or up-to-dateness of the information or for trouble-free access.

We are also not liable for any damages related to this content or the use of this content. Links to external sites do not fall within our area of responsibility and are not subject to legal liability. We hereby expressly distance ourselves from the contents of all linked pages on this homepage and do not adopt their contents as our own. The use of the Internet is at the user’s own risk. We request immediate notification of all violations of applicable law, custom or morality. The link will then be deleted immediately.

2) References and links
We would like to point out that any links on the website may lead to external providers. The respective authors are responsible for the content of these pages.
In the case of direct or indirect references to external websites (“hyperlinks”) that lie outside our area of responsibility, a liability obligation would only come into force if we were aware of the content and it would be technically possible and reasonable for us to prevent use in the case of illegal content.
We hereby expressly declare that at the time of linking, no illegal content was identifiable on the linked pages. We have no influence on the current and future design, content or authorship of the linked pages. Therefore, we hereby expressly distance ourselves from all contents of all linked pages that were changed after the link was set. This statement applies to all links and references set within our own Internet offer as well as to external entries in guest books, discussion forums, link directories, mailing lists and all other forms of databases to which external write access is possible. For illegal, incorrect or incomplete contents and especially for damages resulting from the use or non-use of such information, only the provider of the linked page is liable, not the one who has linked to the respective publication.

3) Liability for downloading files
The download of any files from our pages is at your own risk. We are not liable for any damage resulting from the installation or use of software from the download area. Claims for damages of any kind (including claims for compensation for consequential damages such as loss of data) are excluded.

4) Copyright and trademark law
The copyright for published objects created by the author himself remains solely with the author of the pages. Any duplication or use of objects such as diagrams, sounds or texts in other electronic or printed publications is not permitted without the author’s agreement.
For our part, we strive to respect all applicable copyrights. Should there nevertheless be an unmarked sound, text or graphic on this or linked pages that is protected by a third-party copyright, the corresponding object will be removed or marked with copyright immediately after notification in the event of this unintentional copyright infringement.

5) Legal validity of this disclaimer
This disclaimer is to be regarded as part of the internet publication which you were referred from. If sections or individual terms of this statement are not legal or correct, the content or validity of the other parts remain uninfluenced by this fact.