Privacy Policy

1) INFORMATION ON THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER

1.1 We are pleased that you are visiting our website and thank you for your interest. Below we inform you about the processing of your personal data when using our website. Personal data is all data by which you can be personally identified.

1.2 The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is [Store Name]. The controller of personal data is the natural or legal person who, alone or jointly with others, determines the purposes and means of processing personal data.

1.3 For security reasons and to protect the transmission of personal data and other confidential content (e.g. orders or inquiries to the controller), this site uses SSL or TLS encryption. You can recognize an encrypted connection by the character string “https://” and the lock symbol in your browser’s address bar.


2) DATA COLLECTION WHEN VISITING OUR WEBSITE

When using our website purely for information purposes, i.e. if you do not register or otherwise provide us with information, we only collect the data that your browser transmits to our server (so-called “server log files”). When you access our website, we collect the following data, which are technically necessary for us to display the website to you:

  • Our visited website

  • Date and time of access

  • Amount of data sent in bytes

  • Source/reference from which you accessed the page

  • Browser used

  • Operating system used

  • IP address used (possibly anonymized)

Processing is carried out in accordance with Art. 6(1)(f) GDPR based on our legitimate interest in improving the stability and functionality of our website. The data will not be transferred or used in any other way. However, we reserve the right to check server log files retrospectively if there are concrete indications of illegal use.


3) COOKIES

To make visiting our website attractive and to enable the use of certain functions, we use cookies on various pages. These are small text files stored on your device. Some of the cookies we use are deleted after the end of the browser session, i.e. after closing your browser (session cookies). Other cookies remain on your device and allow us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies).

When cookies are set, they collect and process specific user information such as browser and location data and IP address values. Persistent cookies are automatically deleted after a specified period, which may vary depending on the cookie.

Some cookies serve to simplify the order process by storing settings (e.g. remembering the contents of a virtual shopping cart for a later visit to the site). If personal data is also processed by cookies implemented by us, the processing is carried out either in accordance with Art. 6(1)(b) GDPR for the performance of a contract or in accordance with Art. 6(1)(f) GDPR to protect our legitimate interests in the best possible functionality of the website and a customer-friendly and effective design of the site visit.

We may work with advertising partners who help us make our internet offering more interesting for you. For this purpose, cookies from partner companies (third-party cookies) are also stored on your hard drive when you visit our website. If we cooperate with such advertising partners, you will be individually and separately informed about the use of these cookies and the scope of the collected information.

Please note that you can configure your browser to be informed about the setting of cookies and decide individually on their acceptance or exclude the acceptance of cookies for certain cases or in general. Each browser differs in the way it manages cookie settings. This is described in the help menu of each browser, which explains how to change your cookie settings.

Be aware that if you do not accept cookies, the functionality of our website may be limited.


4) CONTACT

When contacting us (e.g. via contact form or email), personal data is collected. The data collected in the case of a contact form is visible on the respective form. These data are stored and used exclusively for the purpose of responding to your request or for contacting you and for the associated technical administration.

The legal basis for processing data is our legitimate interest in responding to your request in accordance with Art. 6(1)(f) GDPR. If your contact is aimed at concluding a contract, the additional legal basis for processing is Art. 6(1)(b) GDPR. Your data will be deleted after final processing of your request, provided that it can be inferred from the circumstances that the matter in question has been conclusively clarified and provided that there are no statutory retention obligations.


5) DATA PROCESSING WHEN OPENING A CUSTOMER ACCOUNT AND FOR CONTRACT EXECUTION

Pursuant to Art. 6(1)(b) GDPR, personal data will continue to be collected and processed if you provide them to us for the execution of a contract or when opening a customer account. The data collected is visible on the respective input forms. Deletion of your customer account is possible at any time and can be done by sending a message to the above-mentioned controller.

We store and use the data you provide to fulfill the contract. After complete execution of the contract or deletion of your customer account, your data will be blocked considering tax and commercial retention periods and deleted after expiry of these periods, unless you have expressly consented to further use of your data or further legally permitted data use has been reserved by us, which we inform you about below.


6) USE OF YOUR DATA FOR DIRECT ADVERTISING

6.1 Subscription to our Email Newsletter
If you subscribe to our email newsletter, we will regularly send you information about our offers. The only mandatory detail for sending the newsletter is your email address. The provision of further data is voluntary and will be used to address you personally. For sending the newsletter, we use the so-called double opt-in procedure. This means that we will only send you an email newsletter if you have expressly confirmed that you consent to the sending of newsletters. We will then send you a confirmation email in which you will be asked to confirm that you wish to receive newsletters in the future by clicking on a corresponding link.

By activating the confirmation link, you give us your consent to use your personal data in accordance with Art. 6(1)(a) GDPR. At the time of subscription to the newsletter, we store your IP address entered by the Internet service provider (ISP) as well as the date and time of registration to be able to trace any possible misuse of your email address at a later date. The data collected when registering for the newsletter is used exclusively for advertising via the newsletter. You can unsubscribe from the newsletter at any time via the link provided in the newsletter or by sending a message to the controller named above. After unsubscribing, your email address will be immediately deleted from our mailing list, unless you have expressly consented to further use of your data or unless we reserve the right to use the data in any other way permitted by law, which we inform you of in this declaration.

6.2 Newsletter Dispatch to Existing Customers
If you have provided us with your email address when purchasing goods or services, we reserve the right to regularly send you offers by email for similar goods or services from our range. For this, we do not need to obtain a separate consent from you. Data processing is carried out solely on the basis of our legitimate interest in personalized direct advertising in accordance with Art. 6(1)(f) GDPR. If you initially objected to the use of your email address for this purpose, no email will be sent by us. You are entitled to object at any time to the use of your email address for advertising purposes with effect for the future by notifying the controller named above. For this, you will only incur transmission costs according to basic rates. After receipt of your objection, the use of your email address for advertising purposes will be immediately discontinued.

7) DATA PROCESSING FOR ORDER FULFILMENT
7.1 The personal data we collect are transmitted to the transport company commissioned to deliver the goods, insofar as this is necessary for delivery. Your payment data will be transmitted to the commissioned financial institution as part of payment processing, insofar as this is necessary for payment processing. If payment service providers are used, we will inform you explicitly below. The legal basis for the transfer of data is Art. 6(1)(b) GDPR.
7.2 Use of payment service providers (payment service providers)

PayPal
In the case of payment via PayPal, credit card via PayPal, direct debit via PayPal or—if offered—“purchase on account” or “instalment payment” via PayPal, we transmit your payment data to PayPal (Europe) S.à r.l. et Cie, S.C.A., 22–24 Boulevard Royal, L-2449 Luxembourg (“PayPal”) as part of payment processing. Data is transmitted pursuant to Art. 6(1)(b) GDPR and only insofar as necessary for payment processing.
PayPal reserves the right to carry out a credit check for the payment methods credit card via PayPal, direct debit via PayPal or—if offered—“purchase on account” or “instalment payment” via PayPal. For this purpose, your payment data may be transmitted to credit agencies pursuant to Art. 6(1)(f) GDPR on the basis of PayPal’s legitimate interest in determining your creditworthiness. The result of the credit check in relation to the statistical probability of default is used by PayPal to decide on the provision of the respective payment method. The credit check may include probability values (“score values”). If score values are included in the result of the credit check, they are based on a scientifically recognized mathematical-statistical procedure. Address data are included in the calculation of the score values, among other factors. For more information on data protection, including the credit agencies used, please refer to PayPal’s privacy policy.
You may object to this processing of your data at any time by sending a message to PayPal. However, PayPal may still be entitled to process your personal data if this is necessary for contractual payment processing.

SOFORT
If you choose the “SOFORT” payment method, payment processing is carried out by the payment service provider SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany (“SOFORT”), to whom we transmit the information you provided during the ordering process as well as information about your order in accordance with Art. 6(1)(b) GDPR. SOFORT GmbH is part of the Klarna Group (Klarna Bank AB (publ), Sveavägen 46, 11134 Stockholm, Sweden). Your data are transmitted exclusively for the purpose of payment processing with SOFORT and only insofar as necessary. For more information, please consult SOFORT’s privacy policy.


8) CONTACT FOR REVIEW REMINDERS

Own review reminder (no dispatch via a customer review system)
We use your email address for a one-time reminder to review your order for the review system we use, provided you have given us your explicit consent pursuant to Art. 6(1)(a) GDPR during or after your order. You can revoke your consent at any time by sending a message to the data controller.


9) USE OF SOCIAL MEDIA: SOCIAL PLUGINS
9.1 Facebook plugins with Shariff solution

Additional special customs clearance costs and/or import duties are not included in the price and are borne by the customer.

On our website, social plugins (“plugins”) of the social network Facebook, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA (“Facebook”), are used.
To protect your data when visiting our website, these buttons are not fully integrated as plugins but only using an HTML link. This integration ensures that no connection to Facebook’s servers is established when you access a page of our website containing such buttons. If you click the button, a new browser window opens and goes to Facebook, where you can interact with the plugins (possibly after entering your login data).
Facebook Inc., based in the USA, is certified for the EU–US Privacy Shield, ensuring compliance with the data protection level applicable in the EU.
For the purpose and scope of data collection and the further processing and use of data by Facebook, as well as your rights and settings options for protecting your privacy, please refer to Facebook’s privacy policy.

9.2 Google+ plugins with Shariff solution
On our website, social plugins (“plugins”) of the Google+ social network, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”), are used.
To protect your data when visiting our website, these buttons are not fully integrated as plugins but only using an HTML link. This ensures that no connection to Google+ servers is established when you access a page with such buttons. If you click the button, a new browser window opens and goes to Google+, where you can interact with the plugins (possibly after entering your login data).
Google LLC, based in the USA, is certified for the EU–US Privacy Shield, ensuring compliance with the data protection level applicable in the EU.
For the purpose and scope of data collection and further processing and use of data by Google, as well as your rights and settings options for protecting your privacy, please refer to Google’s privacy policy.

9.3 Instagram plugin with Shariff solution
On our website, social plugins (“plugins”) of the online service Instagram, operated by Instagram LLC, 1601 Willow Rd, Menlo Park, CA 94025, USA (“Instagram”), are used.
To protect your data when visiting our website, these buttons are not fully integrated as plugins but only using an HTML link. This ensures that no connection to Instagram servers is established when you access a page with such buttons. If you click the button, a new browser window opens and goes to Instagram, where you can interact with the plugins (possibly after entering your login data).
Instagram LLC, based in the USA, is certified for the EU–US Privacy Shield, ensuring compliance with the data protection level applicable in the EU.


10) ONLINE MARKETING
10.1 DoubleClick by Google
This website uses the online marketing tool DoubleClick by Google, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“DoubleClick”).
DoubleClick uses cookies to display ads relevant to users, improve campaign performance reports or prevent users from seeing the same ads multiple times. Using a cookie ID, Google can record which ads are displayed in which browser and thus prevent them from being shown multiple times. Processing is based on our legitimate interest in optimal marketing of our website pursuant to Art. 6(1)(f) GDPR.
In addition, DoubleClick can use cookie IDs to record conversions related to ad requests—for example, when a user sees a DoubleClick ad and later visits the advertiser’s website with the same browser and makes a purchase. According to Google, DoubleClick cookies do not contain personal information.
Due to the marketing tools used, your browser automatically establishes a direct connection to Google’s server. We have no influence on the scope and further use of the data collected by Google using this tool. As far as we know: by integrating DoubleClick, Google receives the information that you have accessed the corresponding part of our internet presence or clicked on one of our ads. If you are registered with a Google service, Google can assign the visit to your account. Even if you are not registered with Google or are not logged in, the provider may obtain and store your IP address.
If you wish to object to this tracking procedure, you can deactivate conversion tracking cookies by setting your browser to block cookies from the domain www.googleadservices.com (see google.de/settings/ads); note that this setting will be deleted if you delete your cookies. Alternatively, visit the Digital Advertising Alliance site at www.aboutads.info to learn about cookie settings and make the necessary adjustments. Finally, you can configure your browser to inform you about the placement of cookies and decide individually whether to accept them, accept them in certain cases or generally exclude them. Refusing cookies may limit the functionality of our website.
Google LLC, based in the USA, is certified for the EU–US Privacy Shield, ensuring compliance with the data protection level applicable in the EU.
For more information on DoubleClick by Google’s privacy rules, visit: https://www.google.de/policies/privacy/

10.2 Use of Google AdWords Conversion Tracking
This website uses the online advertising program “Google AdWords” and, within the framework of Google AdWords, conversion tracking by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). We use Google AdWords to draw attention to our attractive offers on external websites using advertising materials (so-called Google AdWords). In relation to campaign data, we can determine how successful individual advertising measures are. Our aim is to show you ads that are of interest to you, make our website more interesting for you and achieve a fair calculation of advertising costs.
The conversion tracking cookie is set when a user clicks on an AdWords ad served by Google. These cookies usually expire after 30 days and are not intended to personally identify the user. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user clicked on the ad and was redirected to this page. Each Google AdWords customer receives a different cookie; cookies cannot therefore be tracked across AdWords customers’ websites. The information obtained using the conversion cookie is used to compile conversion statistics for AdWords customers who have opted for conversion tracking. Customers learn the total number of users who clicked on their ad and were redirected to a page tagged with a conversion tracking tag. However, they do not receive information that personally identifies users. If you do not wish to participate in tracking, you can block this use by deactivating the Google conversion tracking cookie in your internet browser’s user settings. You will then not be included in the conversion tracking statistics. We use Google AdWords on the basis of our legitimate interest in targeted advertising pursuant to Art. 6(1)(f) GDPR.
Google LLC, based in the USA, is certified for the EU–US Privacy Shield, ensuring compliance with the data protection level applicable in the EU.
Further information on Google’s privacy policy: https://www.google.de/policies/privacy/
You can permanently disable cookies for ad preferences either by adjusting your browser software accordingly or by downloading and installing the browser plug-in available at: https://www.google.com/settings/ads/plugin?hl=en
Please note that some functions of this website may not be fully usable if you disable cookies.


11) WEB ANALYTICS
Google (Universal) Analytics
This website uses Google Analytics, a web analytics service of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). Google Analytics uses “cookies”, text files stored on your computer to help analyze your use of the website. The information generated by the cookie about your use of this website (including your truncated IP address) is usually transmitted to a Google server in the USA and stored there.
This website uses Google Analytics exclusively with the extension “_anonymizeIp()”, which ensures anonymization of the IP address by truncation and excludes direct personal references. With the extension, your IP address is shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases is the full IP address transmitted to a Google server in the USA and shortened there. In these exceptional cases, processing is carried out pursuant to Art. 6(1)(f) GDPR on the basis of our legitimate interest in the statistical analysis of user behavior for optimization and marketing purposes.
Google will use this information on our behalf to evaluate your use of the website, compile reports on website activity and provide us with other services related to website and internet usage. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.
You can prevent the storage of cookies by selecting the appropriate settings in your browser software; however, please note that if you do so, you may not be able to use all features of this website in full. You can also prevent the collection by Google of the data generated by the cookie and related to your use of the website (including your IP address) as well as the processing of this data by Google by downloading and installing the browser plug-in available at: https://tools.google.com/dlpage/gaoptout?hl=en
As an alternative to the browser plug-in or in browsers on mobile devices, please click the following link to set an opt-out cookie that will prevent collection by Google Analytics on this website.


12) RETARGETING/REMARKETING/RECOMMENDED ADVERTISING
Facebook Custom Audience via the Pixel method
This website uses the “Facebook Pixel” of Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA (“Facebook”). With express consent, user behavior can be tracked after viewing or clicking a Facebook ad. This method allows the effectiveness of Facebook ads to be evaluated for statistical and market research purposes and can help optimize future advertising measures.
The data collected are anonymous to us and do not allow us to draw conclusions about the identity of users. However, the data is stored and processed by Facebook, enabling a connection to the respective user profile, and Facebook may use this data for its own advertising purposes in accordance with Facebook’s data policy.
You can allow Facebook and its partners to serve ads on and outside Facebook. A cookie may also be stored on your computer for these purposes. These processing operations are carried out only with express consent pursuant to Art. 6(1)(a) GDPR.
Consent to the use of the Facebook Pixel can only be given by users over 13 years of age. If you are younger, please ask your legal guardians for permission. Facebook Inc., based in the USA, is certified for the EU–US Privacy Shield, ensuring compliance with the data protection level applicable in the EU.
To disable the use of cookies on your computer, configure your internet browser so that no cookies can be stored in the future or delete cookies already stored. Disabling all cookies may, however, result in limited functionality on our website. You can also disable the use of cookies by third parties, such as Facebook, on the Digital Advertising Alliance website: https://www.aboutads.info/choices/

Google AdWords Remarketing
Our website uses the functions of Google AdWords Remarketing, with which we advertise this website in Google search results as well as on third-party websites. The provider is Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). For this purpose, Google places a cookie in your device’s browser that automatically enables interest-based advertising using a pseudonymous cookie ID and on the basis of the pages you visit. Processing is based on our legitimate interest in optimal marketing of our website pursuant to Art. 6(1)(f) GDPR.
Further data processing only takes place if you have consented with Google to linking your web and app browsing history to your Google account and to using information from your Google account to personalize ads you see on the web. If you are logged into Google when visiting our website, Google uses your data together with Google Analytics data to create and define target group lists for cross-device remarketing. For this purpose, your personal data is temporarily linked by Google with Google Analytics data to form target groups.
You can permanently deactivate cookies for ad preferences by downloading and installing the browser plug-in available via the following link: https://www.google.com/settings/ads/onweb/
You can also learn about cookie settings and make adjustments on the Digital Advertising Alliance site at www.aboutads.info. Finally, you can configure your browser to inform you about cookie placement and decide on a case-by-case basis whether to accept them, or to refuse them in certain cases or generally. Refusing cookies may limit the functionality of our website.
Google LLC, based in the USA, is certified for the EU–US Privacy Shield, ensuring compliance with the data protection level applicable in the EU.
For more information on Google’s advertising privacy rules, please see: https://www.google.com/policies/technologies/ads/


13) DATA SUBJECT RIGHTS
13.1 Data protection law grants you extensive rights regarding the processing of your personal data by the controller, which we inform you about below:

  • Right of access (Art. 15 GDPR): In particular, you have the right to obtain information about your personal data that we process, the purposes of processing, the categories of personal data processed, the recipients or categories of recipients to whom your data has been or will be disclosed, the planned storage period or the criteria for determining this period, the existence of the right to rectification, erasure, restriction of processing, objection to processing, the right to lodge a complaint with a supervisory authority, the origin of your data if it was not collected by us, the existence of automated decision-making including profiling and, where applicable, meaningful information about the logic involved as well as the scope and intended effects of such processing, and your right to be informed about the appropriate safeguards pursuant to Art. 46 GDPR in the event of transfer of your data to third countries;

  • Right to rectification (Art. 16 GDPR): You have the right to obtain without undue delay the rectification of inaccurate data concerning you and/or the completion of your incomplete data stored by us;

  • Right to erasure (Art. 17 GDPR): You have the right to obtain the erasure of your personal data if the conditions of Art. 17(1) GDPR are met. This right does not apply, in particular, when processing is necessary for exercising the right of freedom of expression and information, for compliance with a legal obligation, for reasons of public interest or for the establishment, exercise or defence of legal claims;

  • Right to restriction of processing (Art. 18 GDPR): You have the right to obtain restriction of processing of your personal data as long as the accuracy of your data is being verified, if you refuse erasure of your data due to unlawful processing and instead request restriction of its use, if you need your data for the establishment, exercise or defence of legal claims after we no longer need them for our own purposes, or if you have objected to processing for reasons relating to your particular situation, pending verification of whether our legitimate grounds override yours;

  • Right to be informed (Art. 19 GDPR): If you have asserted the right to rectification, erasure or restriction of processing against the controller, the controller is obliged to notify each recipient to whom the personal data have been disclosed of this rectification or erasure of data or restriction of processing, unless this proves impossible or involves disproportionate effort. You have the right to be informed about these recipients;

  • Right to data portability (Art. 20 GDPR): You have the right to receive the personal data concerning you that you have provided to us in a structured, commonly used and machine-readable format, or to request transmission to another controller, where technically feasible;

  • Right to withdraw consent (Art. 7(3) GDPR): You have the right to withdraw consent to data processing at any time with effect for the future. In the event of withdrawal, we will delete the data concerned without delay, unless further processing can be based on a legal basis permitting processing without consent. The lawfulness of processing carried out on the basis of consent until withdrawal remains unaffected;

  • Right to lodge a complaint (Art. 77 GDPR): If you consider that the processing of personal data concerning you infringes the GDPR, you have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work or place of the alleged infringement, without prejudice to any other administrative or judicial remedy.

13.2 RIGHT TO OBJECT
IF WE PROCESS YOUR PERSONAL DATA ON THE BASIS OF OUR OVERRIDING LEGITIMATE INTERESTS WITHIN THE FRAMEWORK OF A BALANCING OF INTERESTS, YOU HAVE THE RIGHT TO OBJECT AT ANY TIME TO SUCH PROCESSING WITH EFFECT FOR THE FUTURE ON GROUNDS RELATING TO YOUR PARTICULAR SITUATION.
IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL CEASE PROCESSING THE DATA CONCERNED. FURTHER PROCESSING WILL BE RESERVED IF WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING WHICH OVERRIDE YOUR INTERESTS, FUNDAMENTAL RIGHTS AND FREEDOMS, OR IF THE PROCESSING SERVES THE ESTABLISHMENT, EXERCISE OR DEFENCE OF LEGAL CLAIMS.
IF YOUR PERSONAL DATA ARE PROCESSED BY US FOR DIRECT ADVERTISING PURPOSES, YOU HAVE THE RIGHT TO OBJECT AT ANY TIME TO THE PROCESSING OF YOUR PERSONAL DATA FOR SUCH ADVERTISING. YOU MAY EXERCISE THE RIGHT TO OBJECT AS DESCRIBED ABOVE.
IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL CEASE PROCESSING THE DATA CONCERNED FOR DIRECT ADVERTISING PURPOSES.


14) DURATION OF STORAGE OF PERSONAL DATA
The duration of storage of personal data is determined by the respective statutory retention period (e.g. commercial and tax retention periods). After expiry of the period, the corresponding data are routinely deleted, provided that they are no longer necessary for contract performance or initiation and/or we no longer have a legitimate interest in further storage.

Back to blog