Free shipping for orders over €75**
Orders ship within 2-4 days
Made in Germany
Free hotline +49 (0)8152 998587-0
 

Data policy

1) Information on the collection of personal data and contact details of the Controller

1.1 We are delighted that you have visited our website and thank you for your interest. In the following, we have provided information on how we handle your personal data when you use our website. Hereby, personal data means any data by means of which you can be identified.

1.2 The Controller responsible for processing data on this website within the meaning of the General Data Protection Regulation (GDPR) is mySPOTTi GmbH, Stampfgasse 6, 82229 Seefeld, Germany, Tel.: +49 8152-99858-70, email: info@myspotti.de. Controller means the natural or legal person which, alone or jointly with others, determines the purposes and means of the processing of personal data.

1.3 For security reasons, and to protect the transmission of personal data and other confidential content (e.g. orders or enquiries sent to the Controller), this website uses SSL and TLS encryption, respectively.  Encrypted connections can be identified by the series of characters reading “https://” and the lock icon in your browser.

 

2) Data collected during your visit to our website

When you merely use our website for informative purposes, meaning if you do not register or transmit information to us by any other means, we only collect such data as is transferred to our server by your browser (known as server log files). When you access our website, we collect the following data that we require from a technical standpoint to display the website:

• our website visited
• date and time of access
• amount of transmitted data in byte
• source/reference that sent you to our website
• browser used
• operating system used
• IP address used (anonymized, if applicable)

Processing is conducted in accordance with Art. 6 (1) lit. f GDPR, based on our legitimate interests in improving the stability and functionality of our website. We do not transmit or otherwise use these data. We do, however, reserve the right to check server log files at a later date, should we have concrete indication of unlawful use.

 

3) Cookies

To make visits to our website appealing and enable the use of specific functions, we use cookies on various pages. Cookies are small text files that are stored on your end device. Some of the cookies we use are deleted once the browser session has ended, meaning when you close your browser (these are known as session cookies). Other cookies remain on your end device and enable us or our partner companies (third-party cookies) to recognise your browser when you next visit us (persistent cookies). When cookies are used, they collect and process certain user information, such as browser and location data as well as IP addresses. The scope of collected and processed data varies by cookie. Persistent cookies are automatically deleted after a predefined period of time; this may differ from cookie to cookie.

Some cookies are there to simplify the ordering process by saving settings (e.g. remembering the contents of a virtual shopping cart for a later visit to the website). If individual cookies we have implemented process personal data, said processing is conducted to perform a contract in accordance with Art. 6 (1) lit. b GDPR or to maintain our legitimate interests in the best possible functionality of our website and ensuring visits to our website are customer-friendly and effective in accordance with Art. 6 (1) lit. f GDPR.

We may cooperate with advertising partners that help us create a more interesting Internet offer. In this case and for this purpose, partner company cookies will also be stored on your hard drive when you visit our website (third-party cookies). If we cooperate with the aforementioned advertising partners, we will inform you personally and separately of the use of such cookies and the scope of the respective data collected in the following paragraphs.

Please note that you can change your browser settings so that you are informed of any cookies that have been set and can decide on whether to accept them individually or exclude the acceptance of cookies in specific cases or in general. Browsers differ in how they manage cookie settings. The process is described in the help menu of every browser, which provides information on how to change your cookie settings. These can be found as follows for the respective browsers:

Internet Explorer: https://support.microsoft.com/en-us/topic/delete-and-manage-cookies-168dab11-0753-043d-7c16-ede5947fc64d

Firefox: https://support.mozilla.org/en-US/kb/block-websites-storing-cookies-site-data-firefox

Chrome: https://support.google.com/chrome/answer/95647?co=GENIE.Platform%3DDesktop&hl=en-GB

Safari: https://support.apple.com/kb/ph21411?locale=de_DE

Opera: https://help.opera.com/en/latest/web-preferences/

Please note that the functionality of our website may be restricted if cookies are not accepted.

 

4) Contact

When you contact us (e.g. via our contact form or by email), we collect personal data. When using the contact form, the data collected is apparent from the respective form. These data are exclusively stored and used for the purpose of responding to your enquiry or for contacting you as well as for the associated technical administration. The legal basis for this data processing are our legitimate interests in responding to your enquiry in accordance with Art. 6 (1) lit. f GDPR. If you have contacted us with the aim of concluding a contract, Art. 6 (1) lit. b GDPR is the additional legal basis for the processing. We will erase your data once we have completed your request; this is the case when circumstances indicate that the matter in question has been fully resolved, providing this does not conflict with legal retention periods.

 

5) Data processing when opening a customer account and during the performance of the contract

In accordance with Art. 6 (1) lit. b GDPR, we will continue to collect and process personal data if you have provide these to us to perform a contract or open a customer account. The data collected is apparent from the respective input forms. You can delete your customer account at any time by sending a message to the Controller at the address mentioned above. We will store and use the information you have provided to us to perform the contract. Once the contract has been performed in full or your customer account has been deleted, your data will be blocked, taking retention periods regulated by tax and trade law into account, and will be erased once these periods have lapsed, unless you have expressly consented to the further use of your data or we have reserved the right to further use of your data as permitted by law, of which we will inform you accordingly hereinafter.

 

6) Comment function

As part of this website’s comment function, we store your comments along with information on the time at which comments are created as well as the commentator name you have selected; these are all published on our website. Your IP address is also recorded and stored. This is done for security reasons and in case the person concerned infringes third-party rights with their comment or posts unlawful content. We need your email address to be able to contact you in the event that a third party considers the content you have published unlawful. The legal bases for storing your data are Art. 6 (1) lit. b and f GDPR. We reserve the right to delete comments if we receive complaints from third parties that consider said comments unlawful.

 

7) Use of your data for direct marketing

Subscribing to our email newsletter

When you subscribe to our email newsletter, we will send you information on our offers on a regular basis. Your email address is the only mandatory information required to send you the newsletter. The provision of further possible data is voluntary and is used to be able to address you personally. When sending out our newsletter, we use the double opt-in method. This means that we will only send you the email newsletter after you have expressly confirmed that you consent to receiving the newsletter. We will then send you a confirmation email asking you to click a corresponding link to confirm that you want to receive the newsletter in future.

By activating the confirmation link, you give us your consent to use your personal data in accordance with Art. 6 (1) lit. a GDPR. When you subscribe to the newsletter, we store the IP address registered by your Internet Service Provider (ISP) as well as the date and time of subscription. This allows us to track possible misuse of your email address at a later time. The data we collect when you subscribe to the newsletter is used exclusively for promotional purposes by way of the newsletter. You can unsubscribe to the newsletter at any time via the link provided in the newsletter for this purpose or by sending an according message to the Controller mentioned above. Once you have unsubscribed, we will immediately erase your email address from our distribution list, unless you have expressly consented to the further use of your data or we have reserved the right to further use of your data as permitted by law and of which we have informed you in this statement.

 

8) Data processing when handling orders

8.1 To handle your order, we cooperate with the following service providers that support us in whole or in part in performing contracts concluded. We transmit certain personal data to these service providers in accordance with the following information.

In the course of the performance of the contract, the personal data we have collected are transmitted to the carrier responsible for delivery, provided this is required to deliver the goods. In the course of payment, we transmit your payment data to the competent banking institute, provided this is required for payment. If payment service providers are used, we will inform you explicitly hereinafter. Hereby, the legal basis for the transmission of data is Art. 6 (1) lit. b GDPR.

8.2 Transmitting personal data to shipping service providers

DHL:

If goods are delivered via transport service provider DHL (Deutsche Post AG, Charles-de Gaulle-Strasse 20, 53113 Bonn, Germany), we will transmit your email address to DHL in accordance with Art. 6 (1) lit. a GDPR prior to the delivery of the goods for the purpose of agreeing a delivery date and/or notifying DHL of delivery, provided you have given your express consent to this during the ordering process. Otherwise, we will only transmit the recipient’s name and delivery address to DHL for the purpose of delivery in accordance with Art. 6 (1) lit. b GDPR. Said transmission will only occur if this is required to deliver the goods. In this case, prior agreement on the delivery date with DHL and/or notification of delivery is not possible.

You can withdraw your consent at any time with effect for the future by notifying the above mentioned Controller or transport service provider DHL.

 

DPD:

If goods are delivered via transport service provider DPD (DPD Deutschland GmbH, Wailandtstraße 1, 63741 Aschaffenburg, Germany), we will transmit your email address to DHL in accordance with Art. 6 (1) lit. a GDPR prior to the delivery of the goods for the purpose of agreeing a delivery date and/or notifying DPD of delivery, provided you have given your express consent to this during the ordering process. Otherwise, we will only transmit the recipient’s name and delivery address to DPD for the purpose of delivery in accordance with Art. 6 (1) lit. b GDPR. Said transmission will only occur if this is required to deliver the goods. In this case, prior agreement on the delivery date with DPD and/or notification of delivery is not possible.

You can withdraw your consent at any time with effect for the future by notifying the above mentioned Controller or transport service provider DPD.

8.3 Use of payment service providers

PayPal:

When making payments via PayPal, paying by credit card via PayPal, paying by direct debit via PayPal or – if applicable – paying by “purchase on account” or “payment in instalments” via PayPal, we will transmit your payment data to PayPal (Europe) S.a.r.l. Et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (“PayPal”) in the course of processing payment. This transmission is conducted in accordance with Art. 6 (1) lit. b GDPR and only insofar as this is necessary to process payment.

PayPal reserves the right to conduct a credit check when payments are made by credit card via PayPal,  by bank transfer via PayPal or – if applicable – by “purchase on account” or “payment in instalments” via PayPal. For this purpose, your payment data may be transmitted to credit agencies in accordance with Art. 6 (1) lit. f on the basis of PayPal’s legitimate interests in establishing your solvency. PayPal uses the results of this credit check with regard to the statistic probability of debt defaults to decide whether to provide the respective method of payment. The credit check may contain credit scores. If credit scores are included in the results of the credit check, these have their basis in a scientifically recognised mathematical-statistical method. The calculation of credit scores includes, but is not limited to, access to address data. For further information on data privacy, including the credit agencies employed, please refer to PayPal’s privacy statement: https://www.paypal.com/de/webapps/mpp/ua/privacy-full?locale.x=en_DE

You can object to the processing of your data at any time by notifying PayPal. However, PayPal may still be entitled to process your personal data if this is necessary for processing payments in accordance with contracts.

 

9) Review reminders

In-house review reminders (not sent by a customer review system)

We will use your email address to send a one-off reminder to review your order using the review system we employ, provided you have given us your express consent to do so in accordance with Art. 6 (1) lit. a GDPR during or after the placing of your order.

You can withdraw your consent at any time by notifying the Controller.

Trusted Shops review reminders

If during or after the placing of your order you have given us your express consent to do so in accordance with Art. 6 (1) lit. a GDPR, we will transmit your email address to the Trusted Shops review platform operated by Trusted Shops GmbH, Subbelrather Str. 15c, 50823 Cologne, Germany (www.trustedshops.de) so that it can send you a review reminder via email.

You can withdraw your consent at any time by notifying the Controller or the review platform.

 

10) Social media: social plugins

10.1 Facebook plugins using the Shariff solution

Our website uses social plugins (“plugins”) provided by the Facebook social network, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook").

To increase the protection of your data when you visit our website, these buttons are not fully embedded plugins; instead, a HTML link has been embedded into our website. This embedding method guarantees that, when you access a page on our website that contains these buttons, no connection is established to Facebook’s servers at that time. A click on the button opens a new browser window that accesses the Facebook website, where you can than interact with local plugins (after entering your login data, if applicable.)

Facebook Inc. has its headquarters in the USA and has been certified in accordance with the EU-US Privacy Shield data protection agreement. This guarantees compliance with the level of data protection applicable in the EU.

For more information on the purpose and scope of data collected and the further processing and use of data by Facebook as well as your relevant data privacy rights and settings options, please see Facebook’s data policy : http://www.facebook.com/policy.php

10.2 Instagram plugins using the Shariff solution

Our website uses social plugins (“plugins”) provided by the Instagram online service, operated by Instagram LLC. 11601 Willow Rd, Menlo Park, CA 94025, USA (“Instagram“").

To increase the protection of your data when you visit our website, these buttons are not fully embedded plugins; instead, a HTML link has been embedded into our website. This embedding method guarantees that, when you access a page on our website that contains these buttons, no connection is established to Instagram’s servers at that time. A click on the button opens a new browser window that accesses the Instagram website, where you can than interact with local plugins (after entering your login data, if applicable.)

Instagram LLC. has its headquarters in the USA and has been certified in accordance with the EU-US Privacy Shield data protection agreement. This guarantees compliance with the level of data protection applicable in the EU.

For more information on the purpose and scope of data collected and the further processing and use of data by Instagram as well as your relevant data privacy rights and settings options, please see Instagram’s data policy :  https://help.instagram.com/155833707900388/ 

 

11) Social media: videos

11.1 Vimeo videos

We have embedded plugins provided by the Vimeo video portal, operated by Vimeo LLC, 555 West 18th Street, New York, New York 10011, USA, into our website. When you access a page on our website that contains one of these plugins, your browser establishes a direct connection to Vimeo’s servers. Vimeo transmits the content of the plugin directly to your browser and embeds it on the page. This embedding informs Vimeo that your browser has accessed the corresponding page on our website, even if you do not have a Vimeo account or are not currently logged on to Vimeo. Your browser transmits this information (including your IP address) directly to a Vimeo server in the USA, where it is then stored.

If you have logged on to Vimeo, Vimeo can immediately allocate your visit to our website to your Vimeo account. Information on interactions with these plugins  (e.g. clicking the start button on a video) is also transmitted directly to a Vimeo server, where it is then stored.

The data processing procedures described above are conducted on the basis of Vimeo’s legitimate interests in market research and the appropriate design of the service in accordance with Art. 6 (1) lit. f GDPR.

If you do not want Vimeo to immediately allocate the data collected via our website directly to your Vimeo account, please ensure you are not logged onto Vimeo prior to visiting our site.

For more information on the purpose and scope of data collected and the further processing and use of data by Instagram as well as your relevant data privacy rights and settings options, please see Vimeo’s privacy policy :  http://vimeo.com/privacy 

The Google Analytics tracking tool has automatically been integrated into Vimeo videos embedded on our website. Said tracking is conducted by Vimeo; we have no access to this tool and cannot influence it from our side. Google Analytics uses cookies to track websites. Cookies are text files that are stored on your computer and enable an analysis of your use of the website. Information on your use of this website generated by the cookie is generally transferred to a Google server in the USA, where it is then stored.

This processing is conducted on the basis of Vimeo’s legitimate interests in the statistical analysis of user behaviours for optimisation and marketing purposes in accordance with Art. 6 (1) lit. f GDPR.

11.2 YouTube videos

This website uses YouTube’s embedding function to display and play videos hosted by “YouTube”, part of Google LLC., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).

Here, the extended data protection mode is in use; according to the provider, this means that user data is only stored once the video begins to play. Once the embedded YouTube video begins to play, the provider employs YouTube cookies to collect information on user behaviour. According to information provided by YouTube, this information is collected to capture video statistics, improve user-friendliness and prevent improper use. If you are logged on to Google, your data will be allocated directly to your account when you click on a video. If you do not want your data to be allocated to your YouTube profile, you must log off before activating the button. Google stores your data (even if users have not logged on) as user profiles and evaluates said profiles. These evaluations are conducted in particular on the basis of Google’s legitimate interest in inserting personalised ads, market research and/or the appropriate design of its website in accordance with Art. 6 (1) lit. f GDPR. You have the right to object to the forming of these user profiles, whereby you must address YouTube to exercise said right.

Regardless of whether the embedded videos are played or not, a connection to Google’s DoubleClick network is established every time our website is accessed. This may initiate further data processing procedures without our influence.

Google LLC has its headquarters in the USA and has been certified in accordance with the EU-US Privacy Shield data protection agreement. This guarantees compliance with the level of data protection applicable in the EU.

For more information on data protection at YouTube, please see the provider’s privacy policy: https://policies.google.com/privacy?hl=en-GB

 

12) Online marketing

Google AdWords conversion tracking

This website uses the Google AdWords online advertising programme and, as part of Google Adwords, conversion tracking provided by Google LLC., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). We use the Google Adwords offer to attract attention to our attractive offers on external websites using advertising means (known as Google Adwords). This allows us to determine the success of individual advertising campaigns in relation to the data of these advertising campaigns. In doing so, we pursue our interest in showing you ads that are relevant to you, in designing our website in a more appealing manner and in achieving a fair calculation of advertising costs.

The conversion tracking cookie is set whenever a user clicks on a Google Adwords ad. Cookies are small text files that are stored on your computer system. As a rule, these cookies become invalid after 30 days and no longer serve the purpose of personal identification. If a user visits specific pages on this website, and the cookie has not yet expired, Google and we can see that the user has clicked on the ad and has been forwarded to this page. Every Google Adwords customer is given a different cookie. This means that cookies cannot by tracked via the websites of Adwords customers. Information obtained with the aid of conversion cookies help compile conversion statistics for Adwords customers who have opted for conversion tracking. Customers obtain information on the total number of users who have clicked on their ad and have been forwarded to a page equipped with a conversion tracking tab. However, they do not obtain information that would allow them to identify users. If you do not want to participate in tracking, you may block said tracking by deactivating the Google conversion tracking cookie in your browser’s user settings. You will then not be included in conversion tracking statistics. We employ Google Adwords on the basis of our legitimate interest in targeted advertising in accordance with Art. 6 (1) lit. f GDPR.

Google LLC has its headquarters in the USA and has been certified in accordance with the EU-US Privacy Shield data protection agreement. This guarantees compliance with the level of data protection applicable in the EU.

For more information on Google’s privacy policy, please go to: https://policies.google.com/privacy?hl=en-GB

You can permanently deactivate AdSense cookies by preventing cookies from being set. This can be done by changing your browser software settings accordingly or by downloading and installing the browser plugin available at:

http://www.google.com/settings/ads/plugin?hl=de

Please note that you may not be able to use some functions of this website or that some functions of this website may be restricted if you have deactivated cookies.

 

13) Web analytics services

Google (Universal) Analytics

Google Analytics:

This website uses Google Analytics, a web analytics service provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). Google Analytics uses cookies; these are text files that are stored on your computer and enable an analysis of your use of the website. Information on your use of this website (including the shortened IP address) generated by the cookie is generally transferred to a Google server in the USA, where it is then stored.

This website exclusively uses Google Analytics along with the “_anonymizeIp()” expansion; this shortens your IP address, thus ensuring anonymisation and excluding direct reference to individuals. By using this expansion, Google shortens your IP address within the Member States of the European Union and other States that are party to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there. In these exceptional cases, processing is conducted on the basis of our legitimate interest in the statistical analysis of user behaviour for optimisation and marketing purposes in accordance with Art. 6 (1) lit. f GDPR.

Google uses this information on our behalf to evaluate your use of our website, to compile reports on website activities and to render further services related to the use of our website and the Internet. The IP address transmitted by your browser as part of Google Analytics will not be linked to any other Google data.

You can prevent cookies from being stored by changing your browser settings accordingly; however, we would like to point out that in this case, you may not have full access to all functions of this website. In addition, you can also prevent Google from collecting and processing data generated by the cookie and related to your use of this website (incl. your IP address) by downloading and installing the browser plugin available under this link:

https://tools.google.com/dlpage/gaoptout?hl=en

 

As an alternative to the browser plugin as well as for browsers on mobile devices, please click on the following link to set an opt-out cookie that prevents the future collection of data by Google Analytics on this website (this opt-out cookie will only work with this browser and for this domain; if you delete cookies in this browser, you will need to click on the link again): Deactivate Google Analytics Google Analytics Google LLC has its headquarters in the USA and has been certified in accordance with the EU-US Privacy Shield data protection agreement. This guarantees compliance with the level of data protection applicable in the EU.

For more information on how Google Analytics handles user data, please see Google’s privacy policy: https://policies.google.com/privacy?hl=en-GB

Google Universal Analytics:

This website uses Google Analytics, a web analytics service provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). Google Analytics uses cookies; these are text files that are stored on your computer and enable an analysis of your use of the website. Information on your use of this website (including the shortened IP address) generated by the cookie is generally transferred to a Google server in the USA, where it is then stored.

This website exclusively uses Google Analytics along with the “_anonymizeIp()” expansion; this shortens your IP address, thus ensuring anonymisation and excluding direct reference to individuals. By using this expansion, Google shortens your IP address within the Member States of the European Union and other States that are party to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there. In these exceptional cases, processing is conducted on the basis of our legitimate interest in the statistical analysis of user behaviour for optimisation and marketing purposes in accordance with Art. 6 (1) lit. f GDPR.

Google uses this information on our behalf to evaluate your use of our website, to compile reports on website activities and to render further services related to the use of our website and the Internet. The IP address transmitted by your browser as part of Google Analytics will not be linked to any other Google data.

You can prevent cookies from being stored by changing your browser settings accordingly; however, we would like to point out that in this case, you may not have full access to all functions of this website. In addition, you can also prevent Google from collecting and processing data generated by the cookie and related to your use of this website (incl. your IP address) by downloading and installing the browser plugin available under this link:

https://tools.google.com/dlpage/gaoptout?hl=en

 

As an alternative to the browser plugin as well as for browsers on mobile devices, please click on the following link to set an opt-out cookie that prevents the future collection of data by Google Analytics on this website (this opt-out cookie will only work with this browser and for this domain; if you delete cookies in this browser, you will need to click on the link again): Deactivate Google Analytics Google Analytics Google LLC has its headquarters in the USA and has been certified in accordance with the EU-US Privacy Shield data protection agreement. This guarantees compliance with the level of data protection applicable in the EU.

This website also uses Google Analytics to analyse the flow of visitors across devices; this is done via a user ID. You can deactivate this analysis across devices in your customer account under “My data”, “Personal data”.

For more information on how Google Analytics handles user data, please see Google’s privacy policy: https://policies.google.com/privacy?hl=en-GB

 

14) Retargeting / remarketing / recommendations

Google AdWords remarketing

Our website uses the Google Adwords remarketing function. This allows us to advertise this website in Google’s search results as well as on third-party websites. This service is provided by Google LLC., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). For this purpose, Google sets a cookie in the browser of your end device that automatically enables interest-based ads by means of a pseudonymous cookie ID and on the basis of sites you have visited. The legal basis for this data processing is our legitimate interest in marketing our website in an ideal manner in accordance with Art. 6 (1) lit. f GDPR.

Data is only processed beyond this if you have given Google consent to link your Internet and app browser histories to your Google account and to use your Google account information to personalise ads you view on the net. If you have logged on to Google during your visit to our website, Google will use your data in combination with Google Analytics data to compile and define lists of target groups for remarketing across devices. To do so, Google will temporarily link your personal data to Google Analytics data to form target groups.

 

You can permanently deactivate AdSense cookies by downloading and installing the browser plugin available under following link: https://www.google.com/settings/ads/onweb/

Alternatively, please visit the Digital Advertising Alliance website at www.aboutads.info for more information on setting cookies and to change your settings accordingly. Last but not least, you can change your browser settings so that you are informed of any cookies that have been set and can decide on whether to accept them individually or exclude the acceptance of cookies in specific cases or in general. If you do not accept cookies, the functionality of our website may be restricted.

Google LLC has its headquarters in the USA and has been certified in accordance with the EU-US Privacy Shield data protection agreement. This guarantees compliance with the level of data protection applicable in the EU.

For more information and privacy policies related to advertising and Google, please visit

https://policies.google.com/technologies/ads?hl=en-GB

 

15) Tools and other matters

The Trusted Shops Trustbadge

To be able to display our Trusted Shops seal and to offer purchasers Trusted Shop membership after ordering, we have embedded the Trusted Shops Trustbadge on this website.

This maintains our overriding legitimate interests in the optimal marketing of our offer on the basis of a balancing of interests in accordance with Art. 6 (1) lit. f GDPR. The Trustbadge and the services advertised thereby are an offer of Trusted Shops GmbH, Subbelrather Str. 15C, 50823 Cologne, Germany.

When the Trustbadge is accessed, the web server automatically saves a server logfile that contains a range of data including your IP address, the date and time of access, the amount of transmitted data and the requesting provider (access data) and that documents said access. These access data are not evaluated and are automatically overwritten seven days after your visit to the page has ended at the latest.

Other personal data is only transferred to Trusted Shops if you have opted to use Trusted Shops products after concluding your order or if you have already registered for use. In this case, the contractual agreement between yourself and Trusted Shops applies.

 

16) Rights of the data subject

16.1 Applicable data protection law grants you comprehensive rights (rights of access and intervention) towards the Controller with regard to the processing of your personal data. In the following, we would like to inform you of these rights:

•Right of access by the data subject in accordance with Art. 15 GDPR: You in particular have the right to obtain information on personal data processed by us; the purposes of the processing; the categories of processed personal data; the recipients or categories of recipients to whom the personal data has been disclosed; the envisaged period for which the personal data will be stored or the criteria used to determine that period; the existence of the right to request rectification, erasure, restriction of processing or to object to such processing; to lodge a complaint with a supervisory authority; where we have not collected personal data from you, any available information as to their source; the existence of automated decision-making, including profiling, and meaningful information about the logic involved, if applicable, as well as the significance and the envisaged consequences of such processing for you; as well as your right to be informed of the appropriate safeguards pursuant to Art. 46 GDPR where personal data are transferred to a third country.

•Right to rectification in accordance with Art. 16 GDPR: You have the right to obtain without undue delay the rectification of inaccurate data and/or the completion of incomplete personal data concerning you that we have stored;

•Right to erasure in accordance with Art. 17 GDPR: You have the right to obtain the erasure of your personal data where one of the following grounds stated in Art. 17 (1) applies. However, this right shall not apply in particular when processing is necessary to exercise the right of freedom of expression and information; for compliance with a legal obligation; for reasons of public interest; or for the establishment, exercise or defence of legal claims;

•Right to restriction of processing in accordance with Art. 18 GDPR: You have the right to demand the restriction of processing of your personal data, provided the accuracy of the data you contest is verified; when processing is unlawful and you oppose the erasure of the personal data and request the restriction instead; if we no longer need the personal data for the purposes of the processing but you require them to establish, exercise or defend legal claims; or if you have objected to processing pending the verification whether our legitimate interests override yours;

•Right to be informed in accordance with Art. 19 GDPR: If you have exercised your right to rectification, to erasure or to restriction of processing by notifying the Controller, the Controller shall communicate this rectification or erasure of personal data or restriction of processing to each recipient to whom the personal data have been disclosed, unless this proves impossible or involves disproportionate effort. You have the right to be informed about these recipients.

•Right to data portability in accordance with Art. 20 GDPR: You have the right to receive the personal data you have provided to us in a structured, commonly used and machine-readable format or to have the personal data transmitted to another controller, where technically feasible;

•Right to withdraw your consent in accordance with Art. 7 (3) GDPR: You have the right to withdraw your consent to the processing of data at any time with effect for the future. If you withdraw your consent, we will immediately erase the data concerned, unless further processing is supported by a legal basis on processing without consent. Withdrawing your consent does not affect the lawfulness of processing based on consent before your withdrawal.

•Right to lodge a complaint in accordance with Art. 77 GDPR: If you consider that the processing of personal data concerning you infringes the GDPR, you have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work or place of the alleged infringement, without prejudice to any other administrative or judicial remedy.

 

16.2 RIGHT TO OBJECT

IF WE PROCESS YOUR PERSONAL DATA ON THE BASIS OF BALANCING INTERESTS DUE TO OUR OVERRIDING LEGITIMATE INTERESTS, YOU HAVE THE RIGHT TO OBJECT, ON GROUNDS RELATING TO YOUR PARTICULAR SITUATION, AT ANY TIME TO THIS PROCESSING WITH EFFECT FOR THE FUTURE.

IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL NO LONGER PROCESS THE DATA CONCERNED. HOWEVER, WE RESERVE THE RIGHT TO CONTINUE PROCESSING IF WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING WHICH OVERRIDE YOUR INTERESTS, RIGHTS AND FREEDOMS OR FOR THE ESTABLISHMENT, EXERCISE OR DEFENCE OF LEGAL CLAIMS.

WHERE WE PROCESS PERSONAL DATA FOR DIRECT MARKETING PURPOSES, YOU HAVE THE RIGHT TO OBJECT AT ANY TIME TO PROCESSING OF PERSONAL DATA CONCERNING YOU FOR SUCH DIRECT MARKETING. YOU MAY EXERCISE SAID OBJECTION AS DESCRIBED ABOVE.

IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL NO LONGER PROCESS THE DATA CONCERNED FOR DIRECT MARKETING PURPOSES.

 

17) Duration of the storage of personal data

The duration of the storage of personal data is determined by the respective legal retention periods (e.g. retention periods governed by tax and trade laws). Once these periods have lapsed, the corresponding data are routinely erased, unless they are necessary to conclude or initiate a contract and/or we no longer have legitimate interests in continuing to store them.

 

Viewed