Data Protection Officer of Equitania Software GmbH:
c/o TÜV SÜD Akademie GmbH
80339 Munich, Germany
The use of our site is possible without providing personal data. For the use of individual services of our site, different rules may apply, which in this case are explained separately below. Your personal data (e.g. name, address, e-mail, telephone number, etc.) will only be processed by us in accordance with the provisions of German data protection law. Data are personal if they can be clearly assigned to a specific natural person. The legal basis for data protection can be found in the German Data Protection Regulation (DSGVO). The following regulations inform you in this respect about the nature, scope and purpose of the collection, use and processing of personal data by the provider.
1. basic information on data processing and legal basis
1.2 The terms used, such as "personal data" or their "processing" we refer to the definitions in Art. 4 of the General Data Protection Regulation (GDPR).
1.3 The personal data of users processed within the scope of this online offer includes inventory data (e.g., names and addresses of customers), contract data (e.g., services used, names of clerks, payment information), usage data (e.g., the web pages visited on our online offer, interest in our products) and content data (e.g., entries in the contact form).
1.4 The term "user" includes all categories of persons affected by data processing. They include our business partners, customers, interested parties and other visitors to our online offering. The terms used, such as "users", are to be understood as gender-neutral.
1.5 We process users' personal data only in compliance with the relevant data protection provisions. This means that the users' data will only be processed if a legal permission exists. I.e., in particular if the data processing is necessary for the provision of our contractual services (e.g. processing of orders) as well as online services, or is required by law, consent of the users is available, as well as due to our legitimate interests (i.e. interest in the analysis, optimization and economic operation and security of our online offer within the meaning of Art. 6 para. 1 lit. f. DSGVO, in particular in the case of range measurement, creation of profiles for advertising and marketing purposes as well as collection of access data and use of third-party services.
1.6 We point out that the legal basis for the consents Art. 6 para. 1 lit. a. and Art. 7 DSGVO, the legal basis for the processing for the fulfillment of our services and implementation of contractual measures Art. 6 para. 1 lit. b. DSGVO, the legal basis for processing to fulfill our legal obligations Art. 6 para. 1 lit. c. DSGVO, and the legal basis for processing to protect our legitimate interests Art. 6 para. 1 lit. f. DSGVO is.
2. security measures
2.1 We take organizational, contractual and technical security measures in accordance with the state of the art to ensure that the provisions of data protection laws are complied with and thus to protect the data processed by us against accidental or intentional manipulation, loss, destruction or against access by unauthorized persons.
2.2 The security measures include in particular the encrypted transmission of data between your browser and our server.
Our website uses SSL encryption when transmitting confidential or personal content of our users. This encryption is activated, for example, when processing payment transactions and when you make inquiries to us via our website. Please make sure that SSL encryption is activated for corresponding activities on your part. The use of encryption is easy to recognize: The display in your browser bar will change from "http://" to "https://". Data encrypted via SSL cannot be read by third parties. Only transmit your confidential information when SSL encryption is activated and contact us in case of doubt.
3. disclosure of data to third parties and third-party providers
3.1 Your data will only beused by us withinEquitania Software GmbH and its affiliated companies withintheCMC Group. We will only pass on your data to other third parties to the extent described below.
3.2 Data is only passed on to third parties within the framework of legal requirements. We only pass on users' data to third parties if this is necessary, for example, on the basis of Art. 6 para. 1 lit. b) DSGVO for contractual purposes or on the basis of legitimate interests pursuant to Art. 6 para. 1 lit. f. DSGVO in the economic and effective operation of our business.
3.3 If we use subcontractors to provide our services, we will take appropriate legal precautions and corresponding technical and organizational measures to ensure the protection of personal data in accordance with the relevant statutory provisions.
3.4 If content, tools or other means from other providers (hereinafter collectively referred to as "third party providers") are used within the scope of this data protection declaration and their named registered office is located in a third country, it is to be assumed that a data transfer takes place to the third party providers' countries of domicile. Third countries are countries in which the GDPR is not directly applicable law, i.e. basically countries outside the EU or the European Economic Area. The transfer of data to third countries takes place either if there is an adequate level of data protection, user consent or otherwise legal permission.
4. provision of contractual services
4.1 We process inventory data (e.g., names and addresses as well as contact data of users), contract data (e.g., services used, names of contact persons, payment information) for the purpose of fulfilling our contractual obligations and services pursuant to Art. 6 para. 1 lit b. DSGVO.
4.2 If you wish to use the paid services offered on our website, we may need to collect further data from you for billing purposes and for security reasons. As a rule, this involves your name, a valid e-mail address and, if applicable, your address and telephone number, as well as other information depending on the individual case. This may also involve content that allows us to verify the data provided, such as your ownership with regard to the e-mail address provided. For legal reasons, we must ensure that you actually wish to receive the services offered and that we can properly invoice you for the service. We work in payment transactions to secure your data with the encryption standard SSL, recognizable by the browser line "https://".
4.3. Nutzer können optional ein Nutzerkonto anlegen, indem sie insbesondere ihre Bestellungen einsehen können. Im Rahmen der Registrierung, werden die erforderlichen Pflichtangaben den Nutzern mitgeteilt. Die Nutzerkonten sind nicht öffentlich und können von Suchmaschinen nicht indexiert werden. Wenn Nutzer ihr Nutzerkonto gekündigt haben, werden deren Daten im Hinblick auf das Nutzerkonto gelöscht, vorbehaltlich deren Aufbewahrung ist aus handels- oder steuerrechtlichen Gründen entspr. Art. 6 Abs. 1 lit. c DSGVO notwendig. Es obliegt den Nutzern, ihre Daten bei erfolgter Kündigung vor dem Vertragsende zu sichern. Wir sind berechtigt, sämtliche während der Vertragsdauer gespeicherten Daten des Nutzers unwiederbringlich zu löschen.
4.4 Within the scope of registration and renewed logins as well as the use of our online services, we store the IP address and the time of the respective user action. The storage is based on our legitimate interests, as well as those of the users in protection against abuse and other unauthorized use. This data is not passed on to third parties, unless it is necessary for the pursuit of our claims or there is a legal obligation according to Art. 6 para. 1 lit. c DSGVO.
4.5 We process usage data (e.g., the web pages visited on our website, interest in our products) and content data (e.g., entries in the contact form or user profile) for advertising purposes in a user profile, e.g., to display product information to users based on the services they have used to date.
5.1 When contacting us (via contact form or e-mail), the user's details are processed for the purpose of handling the contact request and its processing pursuant to Art. 6 para. 1 lit. b) DSGVO.
5.2 The user's data may be stored in our Customer Relationship Management System ("CRM System") or comparable inquiry organization.
6. collection of access data and log files
6.1 We collect data on the basis of our legitimate interests within the meaning of Art. 6 para. 1 lit. f. DSGVO, we collect data about each access to the server on which this service is located (so-called server log files). The access data includes the name of the accessed website, file, date and time of access, amount of data transferred, notification of successful access, browser type and version, the user's operating system, referrer URL (the previously visited page), IP address and the requesting provider.
6.2 Log file information is stored for security reasons (e.g. to clarify acts of abuse or fraud) for a maximum of seven days and then deleted. Data whose further storage is required for evidentiary purposes is exempt from deletion until final clarification of the respective incident.
7 Cookies & Reach Measurement
7.1 Cookies are information that is transmitted from our web server or third-party web servers to the users' web browsers and stored there for later retrieval. Cookies may be small files or other types of information storage.
7.2 We use "session cookies", which are only stored for the duration of the current visit to our online presence (e.g. to enable the storage of your login status or the shopping cart function and thus the use of our online offer at all). In a session cookie, a randomly generated unique identification number is stored, a so-called session ID. In addition, a cookie contains information about its origin and the storage period. These cookies cannot store any other data. Session cookies are deleted when you have finished using our online offer and log out or close the browser, for example.
7.4 If the Users do not want cookies to be stored on their computer, they are asked to disable the corresponding option in the system settings of their browser. Stored cookies can be deleted in the system settings of the browser. The exclusion of cookies can lead to functional restrictions of this online offer.
8. integration of services and contents of third parties
8.1 We use content or service offers of third party providers within our online offer on the basis of our legitimate interests (i.e. interest in the analysis, optimization and economic operation of our online offer within the meaning of Art. 6 para. 1 lit. f. DSGVO) to integrate content or services offered by third-party providers, such as videos or fonts (hereinafter uniformly referred to as "content"). This always requires that the third-party providers of this content are aware of the IP address of the user, since without the IP address they could not send the content to their browser. The IP address is thus required for the display of this content. We endeavor to use only such content whose respective providers use the IP address only for the delivery of the content. Third-party providers may also use so-called pixel tags (invisible graphics, also known as "web beacons") for statistical or marketing purposes. The "pixel tags" can be used to evaluate information such as visitor traffic on the pages of this website. The pseudonymous information may also be stored in cookies on the user's device and may contain, among other things, technical information about the browser and operating system, referring websites, time of visit and other information about the use of our online offer, as well as be linked to such information from other sources.
8.2 The following lists provide an overview of third-party providers and their content, along with links to their privacy statements, which contain further information on the processing of data and, in part already mentioned here, opt-out options:
9. google analytics with anonymization function
9.2 Google is certified under the Privacy Shield Agreement and thereby offers a guarantee of compliance with European data protection law ( https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active ).
9.3 Google will use this information on our behalf to evaluate the use of our online offer by users, to compile reports on the activities within this online offer and to provide us with other services related to the use of this online offer and internet usage. In doing so, pseudonymous usage profiles of the users can be created from the processed data.
9.4. Wir setzen Google Analytics ein, um die durch innerhalb von Werbediensten Googles und seiner Partner geschalteten Anzeigen, nur solchen Nutzern anzuzeigen, die auch ein Interesse an unserem Onlineangebot gezeigt haben oder die bestimmte Merkmale (z.B. Interessen an bestimmten Themen oder Produkten, die anhand der besuchten Webseiten bestimmt werden) aufweisen, die wir an Google übermitteln (sog. „Remarketing-“, bzw. „Google-Analytics-Audiences“). Mit Hilfe der Remarketing Audiences möchten wir auch sicherstellen, dass unsere Anzeigen dem potentiellen Interesse der Nutzer entsprechen und nicht belästigend wirken.
9.5 We use Google Analytics onlywith activated IP anonymization. This means that the IP address of the user is shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there.
9.6. Die von dem Browser des Nutzers übermittelte IP-Adresse wird nicht mit anderen Daten von Google zusammengeführt. Die Nutzer können die Speicherung der Cookies durch eine entsprechende Einstellung ihrer Browser-Software verhindern; die Nutzer können darüber hinaus die Erfassung der durch das Cookie erzeugten und auf ihre Nutzung des Onlineangebotes bezogenen Daten an Google sowie die Verarbeitung dieser Daten durch Google verhindern, indem sie das unter folgendem Link verfügbare Browser-Plugin herunterladen und installieren: http://tools.google.com/dlpage/gaoptout?hl=de .
9.7 You can find out more information about the use of data by Google, setting and objection options on Google's websites: https://www.google.com/intl/de/policies/privacy/partners ("Data use by Google when you use our partners' websites or apps"), http://www.google.com/policies/technologies/ads ("Data Use for Advertising Purposes"), http://www.google.de/settings/ads ("Manage information that Google uses to serve ads to you").
10. google re/marketing services
10.1 We use on the basis of our legitimate interests (i.e. interest in the analysis, optimization and economic operation of our online offering within the meaning of Art. 6 para. 1 lit. f. DSGVO) the marketing and remarketing services (in short "Google Marketing Services") of Google Inc, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, ("Google").
10.2 Google is certified under the Privacy Shield Agreement and thereby offers a guarantee of compliance with European data protection law ( https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active ).
10.3. Die Google-Marketing-Services erlauben uns Werbeanzeigen für und auf unserer Website gezielter anzuzeigen, um Nutzern nur Anzeigen zu präsentieren, die potentiell deren Interessen entsprechen. Falls einem Nutzer z.B. Anzeigen für Produkte angezeigt werden, für die er sich auf anderen Webseiten interessiert hat, spricht man hierbei vom „Remarketing“. Zu diesen Zwecken wird bei Aufruf unserer und anderer Webseiten, auf denen Google-Marketing-Services aktiv sind, unmittelbar durch Google ein Code von Google ausgeführt und es werden sog. (Re)marketing-Tags (unsichtbare Grafiken oder Code, auch als "Web Beacons" bezeichnet) in die Webseite eingebunden. Mit deren Hilfe wird auf dem Gerät der Nutzer ein individuelles Cookie, d.h. eine kleine Datei abgespeichert (statt Cookies können auch vergleichbare Technologien verwendet werden). Die Cookies können von verschiedenen Domains gesetzt werden, unter anderem von google.com , doubleclick.net , invitemedia.com , admeld.com , googlesyndication.com or googleadservices.com . In dieser Datei wird vermerkt, welche Webseiten der Nutzer aufgesucht, für welche Inhalte er sich interessiert und welche Angebote er geklickt hat, ferner technische Informationen zum Browser und Betriebssystem, verweisende Webseiten, Besuchszeit sowie weitere Angaben zur Nutzung des Onlineangebotes. Es wird ebenfalls die IP-Adresse der Nutzer erfasst, wobei wir im Rahmen von Google-Analytics mitteilen, dass die IP-Adresse innerhalb von Mitgliedstaaten der Europäischen Union oder in anderen Vertragsstaaten des Abkommens über den Europäischen Wirtschaftsraum gekürzt und nur in Ausnahmefällen ganz an einen Server von Google in den USA übertragen und dort gekürzt wird. Die IP-Adresse wird nicht mit Daten des Nutzers innerhalb von anderen Angeboten von Google zusammengeführt. Die vorstehend genannten Informationen können seitens Google auch mit solchen Informationen aus anderen Quellen verbunden werden. Wenn der Nutzer anschließend andere Webseiten besucht, können ihm entsprechend seiner Interessen die auf ihn abgestimmten Anzeigen angezeigt werden.
10.4 User data is processed pseudonymously as part of the Google marketing services. I.e. Google does not store and process e.g. the name or email address of the users, but processes the relevant data cookie-related within pseudonymous user profiles. I.e. from Google's perspective, the ads are not managed and displayed for a specifically identified person, but for the cookie holder, regardless of who this cookie holder is. This does not apply if a user has expressly allowed Google to process the data without this pseudonymization. The information collected by Google marketing services about users is transmitted to Google and stored on Google's servers in the USA.
10.5 Furthermore, we mayuse the "Google Tag Manager" to integrate and manage the Google analytics and marketing services on our website.
10.7 If you wish to object to interest-based advertising by Google marketing services, you can use the settings and opt-out options provided by Google: http://www.google.com/ads/preferences.
11. use of PayPal as payment method
If you decide to pay with the online payment service provider PayPal during your order process, your contact details will be transmitted to PayPal as part of the order triggered in this way. PayPal is an offer of PayPal (Europe) S.à.r.l. & Cie. S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg. PayPal assumes the function of an online payment service provider as well as a trustee and offers buyer protection services.
The personal data transferred to PayPal is mostly first name, last name, address, phone number, IP address, email address, or other data required for order processing, as well as data related to the order, such as number of items, item number, invoice amount and tax percentage, billing information, etc.
This transmission is necessary to process your order with the payment method you have selected, in particular to confirm your identity, to administer your payment and the customer relationship.
Please note, however, that PayPal may also disclose personal data to service providers, subcontractors or other affiliated companies to the extent necessary to fulfill the contractual obligations arising from your order or to process the personal data on your behalf.
Depending on the payment method selected via PayPal, e.g. invoice or direct debit, the personal data transmitted to PayPal will be transmitted by PayPal to credit agencies. This transmission serves to check your identity and creditworthiness in relation to the order you have placed. You can find out which credit agencies are involved and which data is generally collected, processed, stored and passed on by PayPal in PayPal's data protection statement at https://www.paypal.com/de/webapps/mpp/ua/privacy-full
12. use of Google maps
We use the component "Google Maps" of the company Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter "Google", on our website.
With each individual call of the "Google Maps" component, a cookie is set by Google in order to process user settings and data when displaying the page on which the "Google Maps" component is integrated. As a rule, this cookie is not deleted by closing the browser, but expires after a certain time, unless you delete it manually beforehand.
If you do not agree with this processing of your data, you have the option of deactivating the "Google Maps" service and in this way preventing the transfer of data to Google. To do this, you must deactivate the Java Script function in your browser. However, we would like to point out that in this case you will not be able to use "Google Maps" or only to a limited extent.
and the additional terms and conditions for "Google Maps
13. use of reCAPTCHA
In order to protect input forms on our site, we use the service "reCAPTCHA" of the company Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter "Google". The use of this service makes it possible to distinguish whether the corresponding input is of human origin or misused by automated machine processing.
To our knowledge, the referrer URL, the IP address, the behavior of website visitors, information about the operating system, browser and dwell time, cookies, display instructions and scripts, the user's input behavior and mouse movements in the area of the "reCAPTCHA" checkbox are transmitted to "Google".
Google uses the information obtained in this way to digitize books and other printed matter and to optimize services such as Google Street View and Google Maps (e.g., house number and street name recognition).
The IP address transmitted as part of "reCAPTCHA" is not merged with other data from Google, unless you are logged into your Google account at the time of using the "reCAPTCHA" plug-in. If you want to prevent this transmission and storage of data about you and your behavior on our website by "Google", you must log out of "Google" before you visit our site or use the reCAPTCHA plug-in.
14. use of YouTube components with extended data protection mode
On our website we use components (videos) of the company YouTube, LLC 901 Cherry Ave, 94066 San Bruno, CA, USA, a company of Google Inc, Amphitheatre Parkway, Mountain View, CA 94043, USA.
Here we use the option provided by YouTube " - enhanced privacy mode - ".
When you visit a page that has an embedded video, a connection to the YouTube servers is established and the content is displayed on the website by notifying your browser.
According to the information provided by YouTube, in " - extended data protection mode -" only data is transmitted to the YouTube server, in particular which of our Internet pages you have visited when you watch the video. If you are logged into YouTube at the same time, this information will be assigned to your member account at YouTube. You can prevent this by logging out of your member account before visiting our website.
Further information on YouTube privacy is provided by Google at the following link:
15. use of Twitter
17. rights of the users
17.1 Users have the right to receive, upon request and free of charge, information about the personal data that we have stored about them.
17.2 In addition, Users have the right to correct inaccurate data, restrict processing and delete their personal data, if applicable, to assert their rights to data portability and, in the event of the assumption of unlawful data processing, to file a complaint with the competent supervisory authority.17.3 Likewise, Users may revoke consents, in principle with effect for the future.