PRIVACY POLICY – We create comprehensive transparency for fair data processing!
Last updated: 8/3/2018
I. General information about data processing
We, Wehrfritz GmbH, August-Grosch-Str. 28-38, 96476 Bad Rodach (hereinafter Wehrfritz) are responsible for the processing of your data when you visit our website pursuant to Art. 4(7) EU General Data Protection Regulation (GDPR).
If you have any questions regarding data protection, please contact our Data Protection Officer by post: Wehrfritz GmbH, Data Protection, 96475 Bad Rodach or by e-mail: service(at)wehrfritz.de with the subject: Privacy.
The following Privacy Policy gives you an overview of how we guarantee the protection of your data pursuant to the GDPR and the Federal Data Protection Act (BDSG). In particular, we would like to explain to you as a visitor to our website what kind of data we collect, why we collect these data, how we use these data, and how you can determine how your personal data are handled at any time. When contacting us by post, e-mail, or via a contact form, the data you provide such as your surname, first name, e-mail address, and message will be processed and stored by us exclusively for the purposes of processing and handling your request. Processing is carried out on the basis of your consent pursuant to Art. 6(1) a) GDPR. We delete the data arising in this context after storage is no longer necessary, or limit the processing if statutory storage obligations exist.
Children’s data – Our websites are not directed at people under the age of 16 and we ask that people under the age of 16 do not provide us with any personal data whatsoever. Data must only be provided by or with the consent of the parent or guardian. If we learn that we have unlawfully collected personal data of a child under the age of 16, we will take steps to delete these data as quickly as possible.
II. What happens when I visit the Wehrfritz website?
When using our website for information purposes only, i.e. if you do not register or otherwise provide us with information, we collect the personal data that your browser transfers to our server. Your visit to our website will be logged. These data are technically necessary for us to display our website to you and to ensure stability and security. We collect the following data on the basis of legitimate interests as defined by Art. 6(1) Clause 1 f) GDPR:
IP address; date and time of the request; time zone difference; content of the request; access status/HTTP status code; amount of data transmitted in each case; website from which the request comes; browser; operating system and its interface; language and version of the browser software.
III. What are cookies?
Our website uses cookies. Cookies are text files that are stored in the Internet browser or by the Internet browser on your IT system. If you as the user visit a website, a cookie may be stored on your operating system.
A cookie is a small data file that we transfer to your browser when you surf our site. A cookie can only contain information that we ourselves send to your end device – it cannot be used to read out private data. We do not have access to your personal information, but with the help of cookies we can identify your browser.
The following data are stored and transferred in the cookies:
- • Language settings
- • Log-in information
- • Search terms entered
- • Frequency of page views
- • Use of website features
Your data collected in this way will be pseudonymized using technical precautions. Therefore, it is no longer possible to assign the data to you as a user. The data will not be stored together with other personal data of the user.
We use cookies for the following purposes:
- So that we recognize you on future visits, in order to display your desired settings in the shopping cart (language, country of delivery, user name).
So that you can use other specific services: e.g. displaying the site in your language, personalizing our site, etc.
- So that we can tailor our site to the needs of our customers even more effectively.
Most browsers accept cookies by default. The help feature in the menu bar of most Internet browsers explains how to prevent your browser from accepting new cookies, how to have your browser notify you when you receive a new cookie, or how to disable all cookies received. If you disable cookies, certain features on our site may not be available to you and some websites may not be displayed correctly. The websites youronlinechoices.com and meine-cookies.org provide information about usage-based and behavior-based online advertising and how you can avoid them.
IV. Web analytics and online advertising
When you visit our website, we carry out analyses, e.g. to find out which information is most in demand or how you accessed our website. The analysis tools require the determination of individual visitors to be able to evaluate individual behavior. Personal identification, however, is generally not necessary, as only statistical data are to be generated. It is therefore customary, also due to the method applied by the supervisory authority, for IP addresses to only be collected in a shortened form.
The legal basis for processing this analytical data is our legitimate interest in how our customers interact with our website so that we can optimize the user experience and the features of our website, Art. 6(1) Clause 1 f).
The aim of online advertising is to design ads that are as individual as possible based on your interests. Technically, online tracking is usually carried out using advertising IDs in which user profiles are created via cookies by the providers of advertising networks and the advertisements are placed when a website is accessed on the basis of the cookie profile. By using tracking pixels on our website, when a user visits our website cookies are stored on the user’s end devices by the advertising partners. This enables us to send the user interesting offers even outside our website.
The following are some of the third-party providers of analysis services, online advertising, and similar services we currently work with:
“Google Analytics” and “Google Tag Manager”
Our website uses Google Analytics and Google Tag Manager, web analysis services of Google Inc. (“Google”). Google Analytics and Google Tag Manager use cookies, text files which are stored on your computer and which allow an analysis of your use of the website. This allows us to regularly improve our website and make it more interesting. The legal basis for the use of Google Analytics is Art. 6(1) Clause 1 f) GDPR.
The information generated by the cookie about your use of our website (including your IP address in anonymous form) is transmitted to a Google server in the USA and stored there. Google will use this information to evaluate your use of the website, compile reports on website activity for us as the website operator, and provide other services related to the use of the website and the Internet. In addition, Google may also share this information with third parties to the extent that this is required by law or to the extent that third parties process these data on behalf of Google. Google will under no circumstances associate your IP address with any other data held by Google. By using this website, you consent to the processing by Google of data compiled about you in the manner described above and for the above-stated purpose. The collection and storage of data can be objected to at any time with effect for the future.
Furthermore, you can prevent the recording of the data created by the cookie and related to your use of the website (including your IP address) as well as the processing of these data by Google by downloading and installing the browser plugin available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de.
Alternatively to the browser add-on or within browsers on mobile devices, please click on this link, to prevent Google Analytics from collecting data within this website in the future (the opt-out only works in the browser and only for this domain). An opt-out cookie is stored on your device. If you delete your cookies in this browser, you must click on this link again.
Information about the third-party provider: Google Dublin, Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland, fax: +353 (1) 436 1001. User conditions: http://www.google.com/analytics/terms/de.html, Overview of data protection: http://www.google.com/intl/de/analytics/learn/privacy.html, and the privacy policy: http://www.google.de/intl/de/policies/privacy.
V. Use of social media
a) Social plugins
Our website uses “social plugins”. This is currently the plugin of the service Facebook. You can recognize the provider of plugins by the marking on the box above its initial or the logo. We offer you the chance to communicate directly with the provider of the plugin via the button. Only if you click on the marked field and thereby activate it will the plugin provider be informed that you have accessed our website. This plugin may be used to send information, which may include personal data, to the service provider, who may use these data. Our website prevents the unknowing and unintentional collection and transmission of data to the service provider by means of a “2-click solution”. To activate a desired plugin, it must first be activated by clicking on the corresponding button. Only this activation of the plugin triggers the collection of information and its transmission to the service provider. Our website itself does not collect any personal data by means of social plugins or about their use.
Our website has no influence on which data an activated plugin collects and how they are used by the provider.
If you do not want social networks to collect data about you via our website, you must log out of the social networks before visiting our website.
We have integrated the social plugins of the following companies into our website:
Facebook Inc., 1601 S California Ave, Palo Alto, California 94304, USA; http://www.facebook.com/policy.php; further information about data collection: http://www.facebook.com/help/186325668085084, http://www.facebook.com/about/... and http://www.facebook.com/about/privacy/your-info#everyoneinfo. Facebook is subject to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.
Google Inc., 1600 Amphitheater Parkway, Mountainview, California 94043, USA; https://www.google.com/policies/privacy/partners/?hl=de. Google is subject to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.
Twitter, Inc., 1355 Market St, Suite 900, San Francisco, California 94103, USA; https://twitter.com/privacy. Twitter is subject to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.
Pinterest Inc., 808 Brannan Street, San Francisco, CA 94103, USA, https://policy.pinterest.com/de/privacy-policy.
b) AddThis bookmarking
Our websites also contain AddThis plugins. These plugins allow you to bookmark or share interesting content with other users. Through the plugins we offer you the chance to interact with social networks and other users, so that we can improve our website and make it more interesting for you as a user. The legal basis for the use of plugins is Art. 6(1) Clause 1 f) GDPR.
Via these plugins, your Internet browser establishes a direct connection to the AddThis servers and, if applicable, the selected social network or bookmarking service. The recipients are informed that you have accessed our website and receive the data mentioned under item IV. of this Policy. This information is processed on AddThis servers in the USA. When you send content on our website to social networks or bookmarking services, a link can be established between the visit to our website and your user profile on the relevant network. We have no influence on the data collected and data processing operations, nor are we aware of the full extent of data collection, the purposes of processing, or the storage periods. We also have no information about the deletion of the data collected by the plugin provider.
The plugin provider stores these data as usage profiles and uses them for purposes of advertising, market research, and/or demand-oriented design of its website. Such analysis takes place in particular (even for users who are not logged in) to provide demand-oriented advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact the plugin provider to exercise this right.
If you do not wish to participate in this process, you can object to the collection and storage of data at any time by setting an opt-out cookie with effect for the future: http://www.addthis.com/privacy/opt-out. Alternatively, you can adjust your browser to prevent the setting of a cookie.
For more information about the purpose and scope of data collection and processing by the plugin provider, and to learn more about your rights and setting options for the protection of your privacy, please contact: AddThis LLC, 1595 Spring Hill Road, Sweet 300, Vienna, VA 22182, USA, www.addthis.com/privacy.
c) Integration of YouTube videos
We have integrated YouTube videos into our website, which are stored on http://www.YouTube.com and can be played directly from our website. These are all integrated into the “extended privacy mode”, which means that no data about you as a user will be transmitted to YouTube if you do not play the videos. Only when you play the videos will the data listed below be transmitted. We have no influence on this data transmission.
When you visit the website, YouTube receives a notification that you have accessed the particular subpage of our website. In addition, the data mentioned under item IV. of this Policy are transferred. This is independent of whether YouTube provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your information will be directly associated with your account. If you do not wish to be associated with your profile on
YouTube you must log out before activating the button. YouTube stores your data as user profiles and uses them for purposes of advertising, market research, and/or demand-oriented design of its website. Such analysis takes place in particular (even for users who are not logged in) to provide demand-oriented advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact YouTube to exercise this right.
For more information on the purpose and scope of data collection and processing by YouTube, please refer to the privacy policy. There you will also find further information about your rights and configuration options to protect your privacy: https://www.google.de/intl/de/policies/privacy. Google also processes your personal data in the USA and is subject to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.
VI. Which categories of recipients do we share your data with?
The data we collect will not be sold. We only pass on the information we receive to third parties to the extent described below:
- Within the scope of Art. 6(1) f) GDPR, we enable carefully selected mail order companies, brand manufacturers, publishers, and our affiliated companies to send you information and offers in the context of advertising. Data are only passed on for external marketing purposes if this is legally permitted. If you do not want this, you can object to the use of your data for advertising purposes at any time.
- In all other cases, we will inform you when personal information is passed on to third parties.
VII. Data security
To prevent the loss or misuse of data stored by us, we take extensive technical and operational security precautions which are regularly reviewed and adapted to technological advancements. We use SSL (RSA 1024 Bit) as an encryption and security software. This procedure is successfully used throughout the World Wide Web. You can tell that you are in the secure area when you see an icon (closed padlock) in the lower window bar of your browser.
All your personal data (name, address, credit card number, bank code, account number, etc.) are encrypted and transmitted securely over the Internet.
Only our Wehrfritz server can decrypt your data again. Unauthorized persons cannot read your information during transmission!
However, it is also your responsibility to protect the data you provide against misuse by encryption or other measures.
VIII. How long do we store your data for?
We will make your personal data anonymous and/or delete them as soon as they are no longer required for the above-mentioned purposes and insofar as we are not legally obliged to store them further (e.g. pursuant to the German Commercial Code Handelsgesetzbuch), Fiscal Code (Abgabenordnung)).
IX. What rights do you have?
The GDPR governs the rights of the “data subject”, primarily in Articles 15–22 GDPR. According to these, you have the right to information at any time about the data stored relating to you, its origin, and recipient as well as the purpose of storage. In addition, you have the right, under certain conditions, to request the deletion of your data and a restriction of the processing, correction of your data, and transmission of your data in a common machine-readable format. In addition to this is information about the existence of automated decision-making, including profiling, pursuant to Art. 22(1) and (4) GDPR and – at least in these cases – meaningful information about the logic involved as well as the significance and envisaged consequences of such processing for you.
Please address your request to service(at)wehrfritz.de or by post to Wehrfritz GmbH, Data Protection, 96475 Bad Rodach.
Objection to the processing of your data or withdrawal of consent
If you have given your consent to the processing of your data, you may withdraw this at any time. Such a withdrawal influences the permissibility of processing your personal data after you have given it to us.
To the extent that we base the processing of your personal data on the weighing of interests pursuant to Art. 6(1) Clause 1 f) GDPR, you may lodge an objection to the processing. This is the case if the processing is not necessary to fulfill a contract with you. When exercising such an objection, we ask you to explain the reasons why we should not process your personal data as we have done. In the event of a justified objection, we will examine the situation and either cease or adapt data processing, or we will point out to you our compelling legitimate reasons, on the basis of which we will continue processing.
Of course, you may object to the processing of your personal data for purposes of advertising and data analysis at any time. Please address your advertising objection to service(at)wehrfritz.de or by post to Wehrfritz GmbH, Data Protection, 96475 Bad Rodach.
X. Which complaints authority can you contact?
You also have the option of contacting the Data Protection Officer at the address above or a data protection supervisory authority with a complaint. The data protection supervisory authority responsible for us is:
Bavarian State Office for Data Protection Supervision
P.O. Box 606
91511 Ansbach
Germany
Telephone: +49 (0) 981 53 1300
Fax: +49 (0) 981 53 98 1300
E-mail: poststelle@lda.bayern.de
If you wish to lodge a complaint, you can use the supervisory authority’s online complaints form (available at: https://www.lda.bayern.de/de/beschwerde.html).
XI. Our full contact details
Wehrfritz GmbH
August-Grosch Str. 28–38
96476 Bad Rodach
Tel.: +49 9564 60113
Fax: +49 9564 662300
E-mail: service(at)wehrfritz.de
Internet: www.wehrfritz.de
Managing partner: Klaus Habermaass
Managing Directors: Harald Grosch, Karl Fischer
Registered at: Coburg District Court, HRB 259
Wehrfritz GmbH is a part of the HABA Family of Companies.