- General
1.1 What is Personal Data? Personal data refers to information that reveals or can reveal the identity of the user. We adhere to the principle of data minimization. As far as possible, we refrain from collecting personal data.
1.2 Handling of Personal Data Personal data is used exclusively for the establishment, content-related design, execution, or termination of the contractual relationship (Art. 6 (1) sentence 1 lit. b GDPR).
Furthermore, personal data is only processed if we have received your consent (Art. 6 (1) sentence 1 lit. a GDPR) or if it is data whose processing is necessary for our legitimate interests and insofar as the balancing of interests shows that no overriding interests, fundamental rights, or freedoms on your part conflict with this (Art. 6 (1) sentence 1 lit. f GDPR).
We may use processors to process your personal data, with whom we have concluded a data processing agreement. However, personal data will generally not be passed on to third parties.
Solely for the fulfillment of the contract, data will be passed on to the shipping company commissioned with the delivery, insofar as this is necessary for the delivery of ordered goods. For the processing of payments, the necessary payment data will be passed on to the credit institution commissioned with the payment and, if applicable, to the commissioned and selected payment service provider.
Your personal data will be processed within the EU and in countries classified by the EU as safe or adequate. If personal data is processed in the USA, care will be taken to ensure that the services we use are certified under the “Data Privacy Framework.”
1.3 Usage Data When you visit the website, general technical information is collected. This includes the IP address used, time, duration of the visit, browser type, and, if applicable, the referring page. This usage data is technically recorded in a log file and can be used and stored for the purpose of statistical analysis of this website. No link is made between this usage data and your other personal data.
1.4 Duration of Storage We store your personal data, after the fulfillment of the purpose for which the data was collected, only for as long as is necessary due to legal (in particular tax law) regulations.
- Your Rights
2.1 Right of Access You can request information from us as to whether we process your personal data. If this is the case, you have a right to access this personal data and to the further information listed in Art. 15 GDPR.
2.2 Right to Rectification You have the right to demand the rectification of inaccurate personal data concerning you and, in accordance with Art. 16 GDPR, to demand the completion of incomplete personal data.
2.3 Right to Erasure You have the right to request from us that personal data concerning you be erased without undue delay. We are obliged to erase this data immediately, especially if one of the following reasons applies:
Your personal data is no longer necessary for the purposes for which it was collected or otherwise processed.
You withdraw your consent on which the processing of your data was based, and there is no other legal basis for the processing.
Your data has been unlawfully processed.The right to erasure does not exist insofar as your personal data is necessary for the establishment, exercise, or defense of our legal claims.
2.4 Right to Restriction of Processing You have the right to request the restriction of the processing of your personal data from us if:
You contest the accuracy of the data, and we therefore verify the accuracy.
The processing is unlawful, and you refuse erasure and instead request the restriction of its use.
We no longer need the data, but you require it for the establishment, exercise, or defense of legal claims.
You have lodged an objection to the processing of your data, and it has not yet been determined whether our legitimate grounds outweigh your grounds.2.5 Right to Data Portability You have the right to receive the personal data concerning you, which you have provided to us, in a structured, commonly used, and machine-readable format. You also have the right to transmit this data to another controller without hindrance from us, provided that the processing is based on consent or a contract and the processing is carried out by automated means.
2.6 Right to Withdraw Consent Insofar as the processing of your personal data is based on consent, you have the right to withdraw this consent at any time.
2.7 General and Right to Lodge a Complaint The exercise of your aforementioned rights is generally free of charge for you. You have the right to lodge a complaint directly with the supervisory authority responsible for us, the State Commissioner for Data Protection.
- Data Security
3.1 Data Security All data on our website is secured by technical and organizational measures against loss, destruction, access, modification, and dissemination.
3.2 Sessions and Cookies For the operation of the website, we may use cookies or server-side sessions in which data can be stored. We ensure that no personal data is adopted from sessions or through cookies and that cookies are only used if this is technically required for the website or if you have given explicit consent. Thus, the balancing of interests shows that no overriding interests on your part conflict with this (Art. 6 (1) sentence 1 lit. f GDPR).
- Newsletter
If you subscribe to our newsletter, we use the data required for this purpose or separately provided by you to regularly send you our email newsletter. Unsubscribing from the newsletter is possible at any time and can be done either by sending a message to us using the contact options provided in the legal notice or via the designated link in the newsletter.
- Presence on Social Media Platforms
We use the following social media platforms for company presentation and communication (explicit reference is made to the privacy policies and opt-out options linked below).
Facebook (Meta Platforms Ireland Ltd., 4 Grand Canal Square, Dublin 2, Ireland)
Privacy Policy: https://www.facebook.com/about/privacy/
Opt-Out: https://www.youronlinechoices.com
X (Twitter International Unlimited Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07, Ireland)
Privacy Policy: https://twitter.com/de/privacy
Opt-Out: https://twitter.com/personalization
Instagram (Meta Platforms Ireland Ltd., 4 Grand Canal Square, Dublin 2, Ireland)
Privacy Policy and Opt-Out: https://instagram.com/about/legal/privacy/
Pinterest (Pinterest Europe Ltd., Palmerston House, 2nd Floor, Fenian Street, Dublin 2, Ireland)
Privacy Policy and Opt-Out: https://about.pinterest.com/de/privacy-policy.
LinkedIn (LinkedIn Ireland Unlimited Company Wilton Place, Dublin 2, Ireland)
Privacy Policy: https://www.linkedin.com/legal/privacy-policy
Opt-Out: https://www.linkedin.com/psettings/guest-controls/retargeting-opt-out
Xing (New Work SE, Dammtorstraße 29-32, 20354 Hamburg, Germany)
Privacy Policy and Opt-Out: https://privacy.xing.com/de/datenschutzerklaerung.
YouTube (Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland)
Privacy Policy: http://www.youtube.com/t/privacy/.
TikTok (TikTok Technology Limited, 10 Earlsfort Terrace, Dublin, D02 T380, Ireland)
Privacy Policy: https://www.tiktok.com/legal/privacy-policy?lang=de
Tumblr (Aut O’Mattic A8C Ireland Ltd., Business Centre, No.1 Lower Mayor Street, International Financial Services Centre, Dublin 1, Ireland)
Privacy Policy: https://www.tumblr.com/privacy/de.
Snapchat (Snap Group Limited, 50 Cowcross Street, Floor 2, London, EC1M 6AL, United Kingdom)
Privacy Policy: https://www.snap.com/de-DE/privacy/privacy-policy/.These social media platforms may process personal data outside the EU. In this regard, we refer to the aforementioned privacy policies of the social media platforms. The respective social media platforms may create usage profiles from your usage behavior and the resulting interests and actions on your part, and store cookies on your computer that contain your usage behavior. If you have an account on the respective social media platform and are logged in, your usage behavior can even be stored across devices. Your usage profile can be used, for example, to place advertisements that presumably match your interests. We process personal data exclusively for communication with you via the social media platform chosen by you and for optimizing our online presence, ensuring that no interests on your part are affected that outweigh this legitimate interest of ours (Art. 6 (1) sentence 1 lit. f GDPR). Insofar as you have already given effective consent to the respective operator of the social media platform for the corresponding data processing, the processing of your personal data also takes place on the basis of this consent (Art. 6 (1) sentence 1 lit. a GDPR).
- Third-Party Services
6.1 Use of YouTube This website and the integrated offers contain so-called embeddings of videos on YouTube. These enable the connection to YouTube and the videos stored there. YouTube is a service of Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland (“Google”). Here, no user interests are affected that outweigh this technical necessity of integrating the videos (Art. 6 (1) sentence 1 lit. f GDPR). For the purpose and scope of data collection and data use by Google, as well as your rights and setting options for protection as a YouTube customer, please refer to YouTube’s privacy notices. These can be found at: http://www.youtube.com/t/privacy/.
6.2 Microsoft Teams We use Microsoft Teams (operated by Microsoft Corporation, One Microsoft Way, Redmond, WA 98052-6399, USA) to conduct telephone conferences, online meetings, video conferences, and/or webinars (hereinafter: “Meetings”). The legal basis for the use of Microsoft Teams is your consent in accordance with Art. 6 (1) sentence 1 lit. a GDPR. If you access/use the Microsoft Teams website and/or app, you are within Microsoft’s area of responsibility. You may need to enter the respective meeting ID and other access data. Microsoft may process the following personal data during online meetings, also outside the European Union (especially the USA):
User information: e.g., display name, email address (if applicable), profile picture (optional), preferred language.
Meeting metadata: e.g., date, time, meeting ID, phone numbers, location.
Text, audio, and video data: You may have the option to use the chat function in an online meeting. In this respect, the text entries you make are processed to display them in the online meeting. To enable the display of video and the playback of audio, data from your device's microphone and any video camera of the device are processed for the duration of the meeting. You can switch off or mute the camera or microphone yourself at any time using the Microsoft Teams application.Recordings of the events will only be made with your consent.
Microsoft’s privacy policy can be viewed here: https://privacy.microsoft.com/de-de/privacystatement
- Contact Us
For privacy-related inquiries, please feel free to contact us using the following contact details. Controller in the sense of the GDPR:
Attorney-at-Law Cornelius Matutis Berliner Straße 57 14467 Potsdam
Email: mail@matutis.de Phone: +49 (0)331 – 813 284 -70
