Mai 24th 2018
# Gathering and use of data
Whenever you navigate our Website, data about you is collected and processed. We collect the following data:
· Information related to the browser or device you use to access our website
· IP address
· Country you are browsing from
· Browsing habits, including sites visited
· E-Mail adress
· Other demographics and statistical information
The data is collected through the session cookies (with regard to cookies see also below) we use on our Website and by using the contact formular.
We use this information to make our offers more individual or better suited to the needs of our customers.
For what purposes and on what legal basis do we use your data?
We process your personal data in accordance with the provisions of the General Data Protection Regulation (GDPR) and the Federal Data Protection Act (BDSG). Please also note our information about your right of objection under Article 21 GDPR.
a) For fulfilment of contractual obligations (Art. 6 para. 1b GDPR)
The processing of personal data takes place for the performance of a contract, as well as for the implementation of pre-contractual measures, which take place at your request.
b) In the context of balancing interests (Article 6 para. 1f GDPR)
If necessary, we process your data in addition to the actual fulfilment of the contract for the protection of our legitimate interests or those of third parties.
Asserting legal claims and defence in legal disputes
Ensuring IT security
For direct marketing
Answering your request
c) On the basis of your consent (Article 6 para. 1f GDPR)
Insofar as you have given us consent to the processing of personal data for specific purposes, the legality of this processing is based on your consent. Once given, consent can be revoked at any time. Please note that revocation is not retroactive. Processing that occurred before the revocation is not affected.
Sending informational material
Provision of newsletters: To send the newsletter, we use the so-called double opt-in procedure. This means that we will only send you an email newsletter if you have explicitly confirmed to us that you agree to receive the newsletter. With every newsletter you get the option to unsubscribe directly.
d) Due to legal requirements (Art. 6 para. 1c GDPR) or in the public interest (Art. 6 para. 1E GDPR)
In addition, we as a company are subject to various legal obligations (e.g. commercial code, tax laws).
# Data transmittion?
Within BESL, those entities gain access to your data, which need it to fulfil our contractual and legal obligations or in the context of balance of interests. Our service providers and vicarious agents may also receive data for these purposes if they protect confidentiality and our instructions under data protection law. Forwarding to third parties takes place exclusively within the regulations of GDPR and the BDSG.
Is data transmitted to a third-party country?
A transfer of data to countries outside the EU or the EEA (so-called third-party countries) does not take place.
# Strorage of data
We process and store your personal data as long as it is necessary for fulfilment of our contractual and legal obligations or in the context of balance of interests. If the data are no longer required for the fulfilment of these purposes, these are regularly deleted, unless their – temporary – further processing is required to fulfil commercial and tax retention periods, such as the Commercial Code and the Tax Code. The deadlines for storage and documentation specified therein are six to ten years.
# Data protection rights
You have the right to information under Article 15 GDPR, the right to rectification under Article 16 GDPR, the right to a cancellation under Article 17 GDPR, the right to restriction of processing under Article 18 GDPR, the right to object under Article 21 GDPR and the right to data portability under Article 20 GDPR. In addition, you are also entitled to a right of appeal to a data protection supervisory authority (Article 77 GDPR in conjunction with Article 19 BDSG).
A list of supervisory authorities and their contact details can be found on the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html
You may revoke your consent to the processing of personal data at any time. Please note that revocation is not retroactive. Processing that occurred before the revocation is not affected. Please also note our information concerning your right of objection under Article 21 GDPR.
To exercise your rights, please use the above contact details of our data protection officer.
# Providing data
In the context of a contact request or the ordering of information material, you must provide the personal data required for its processing (marked mandatory fields). Without this data, we cannot answer your request or deliver the information you requested.
a) Usage-related information
By calling our web pages we receive usage data. This includes information such as screen resolution, browser version, internet access, operating system, language, plugins used, country/region origin and search engines. The stored data will be evaluated only for statistical purposes and for optimization of our websites. Transfer to third parties and a user-related evaluation is not performed. Furthermore, we also store the connection data to our websites (IP addresses), for short periods of a few days, to safeguard IT security.
When opening individual pages so-called session cookies are used to facilitate navigation. These cookies expire at the end of the session and do not contain any personal information, i.e. the contents of the cookies are not evaluated user-related. You can set your browser so that you only allow cookies on a case-by-case basis or not at all.
Cookies used to carry out the electronic communication process or which are required to facilitate certain functions, are saved acc. to Art. 6 para. 1 lit. f GDPR. In this case the cookies are stored to assist error-free, optimized provision of our services. Disabling cookies may limit the functionality of this website.
How safe is my data?
To protect the personal data of our customers and prospective customers, we use a secure online transmission method, so-called “Secure Socket Layer” (SSL) transmission. All information transmitted using this secure method is encrypted before being sent. Your personal data will be processed exclusively in data centres and on computers featuring industry-standard security technologies (e.g. firewalls, password protection, access control, etc.).
Which plugins and tools are used on the website?
a) Social Plugins
Our websites may contain so-called social plugins (“plugins”) of the social networks facebook.com and pinterest.com. The plugin then transmits data (including your IP address) to the operators of the said social networks. We have no influence on the amount of data that the social networks collect using the plugins. In any case, as far as we know, Facebook and pinterest receive information about which of our web pages you have accessed and are currently using. By calling up the plugins, Facebook and Pinterest will also receive the information that your browser has accessed the corresponding page of our website if you do not have a profile on the corresponding social networks or not are logged in. This information (including your IP address) will be transmitted from your browser directly to a server of the operators of Facebook and pinterest in the USA and stored there. The information may be posted on the social network and displayed there to your contacts.
If you are a member of one of the social networks and you want to limit the collection of data through our webpages and the aggregation of your user data with the data stored about you on the respective social network, you should log out before visiting our website.
b) Google Analytics
We only use Google Analytics with activated IP anonymization. This means that the IP address of the users will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be sent to a Google server in the US and shortened there. The IP address provided by the user’s browser will not be merged by Google with other provided data. Users can prevent the storage of cookies by setting their browser software accordingly. In addition, the transfer of the data to Google generated by the cookie and related to the use of the online offer and the processing of this data by Google can be prevented by downloading and installing the browser plug-in available under the following link: http://tools.google.com/dlpage/gaoptout?hl=de.
c) Use of Vimeo plugins
We use the provider Vimeo for the video integration and other things. Vimeo is operated by Vimeo, LLC, headquartered at 555 West 18th Street, NY, New York 10011.
On some of our websites we use plugins from the provider Vimeo. If you call up the internet pages of our websites which feature such a plugin, e.g. our media library, a connection to the Vimeo servers will be established and the plugin will be displayed. This will transmit to the Vimeo server, which of our websites you have visited. If you are logged in as a member of Vimeo, Vimeo associates this information with your personal user account. When using the plugin, e.g. by clicking on the start button of a video, this information is also associated with your user account. You can prevent this association by logging out of your Vimeo user account before using our website and deleting the corresponding cookies from Vimeo.
For more information about data processing and privacy by Vimeo, see https://vimeo.com/privacy.
d) Use of Google AdWords Conversion Tracking
This website uses the Google AdWords online advertising program and, as part of Google AdWords, Google LLC conversion tracking, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (“Google”). We use the offer of Google Adwords to draw attention to our attractive offers with the help of advertising materials (so-called Google Adwords) on external websites. In relation to the data of the advertising campaigns, we can determine how successful the individual advertising measures are. We are interested in showing you advertisements that are of interest to you, to make our website more interesting to you and to achieve a fair calculation of advertising costs.
The conversion tracking cookie is set when a user clicks on an AdWords ad provided by Google. Cookies are small text files that are stored on your computer system. These cookies usually lose their validity after 30 days and are not used for personal identification. If the user visits certain pages of this website and the cookie has not expired yet, both we and Google can identify that the user clicked on the ad and was redirected to this page. Each Google AdWords customer receives a different cookie. Cookies cannot be tracked through AdWords advertisers’ websites. The information gathered using the conversion cookie is used to generate conversion statistics for AdWords advertisers who have opted for conversion tracking. Customers are told the total number of users who clicked on their ad and were redirected to a conversion tracking tag page. However, they do not receive information that personally identifies users. If you do not want to participate in tracking, you can block this function by disabling the Google Conversion Tracking cookie through your internet browser under User Preferences. You will not be included in the conversion tracking statistics. We use Google Adwords based on our legitimate interest in a targeted advertising acc. to Art. 6 para. 1 lit. f GDPR. US-based Google LLC is certified to the US Privacy Shield, which ensures compliance with the level of data protection in the EU.
# Links to websites of other providers