Data Privacy

The responsible persons within the meaning of data protection laws, in particular the EU General Data Protection Regulation (GDPR), are:
Dr. Steffen Zoller and Marius Hein (Managing Director)

Your rights as a data subject

You can exercise the following rights at any time using the contact details of our data protection officer:

  • Information about your data stored by us and their processing (Art. 15 GDPR)
  • Correction of inaccurate personal data (Art. 16 DSGVO)
  • Deletion of your stored data (Art. 17 DSGVO)
  • Restriction of data processing if we are not yet allowed to delete your data due to legal obligations (Art. 18 GDPR)
  • Objection to the processing of your data by us (Art. 21 GDPR)
  • Data portability, provided you have consented to the data processing or have concluded a contract with us (Art. 20 GDPR).

If you have given us your consent, you can revoke it at any time with effect for the future. You can contact a supervisory authority at any time with a complaint, e.g. the competent supervisory authority of the federal state of your place of residence or the authority responsible for us as the responsible body.

A list of the supervisory authorities (for the non-public area) with addresses can be found at: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html

Comment Function

Type and purpose of processing:

When users leave comments on our website, the time they were created and the user name previously selected by the website visitor are saved in addition to this information. This is for our security, as we can be prosecuted for illegal content on our website, even if it was created by users.

Legal basis:

The processing of the data entered as a comment is based on a legitimate interest (Art. 6 Para. 1 lit. f GDPR).
By providing the comment function, we would like to enable you to interact easily. The information you provide will be stored for the purpose of processing the request and for possible follow-up questions.

Receiver:

The recipients of the data may be contract processors.

Storage period:

The data will be deleted as soon as they are no longer required for the purpose of the survey. This is generally the case when the communication with the user has been completed and the company can infer from the circumstances that the matter in question has been finally clarified.

Provision mandatory or required:

The provision of your personal data is voluntary. Without providing your personal data, we cannot grant you access to our comment function.

Newsletter

Type and purpose of processing:

Your data will only be used to send you the newsletter you have subscribed to by email. Your name is given in order to be able to address you personally in the newsletter and, if necessary, to identify you if you want to exercise your rights as a person concerned.
To receive the newsletter, it is sufficient to provide your e-mail address. When you register to receive our newsletter, the data you provide will only be used for this purpose. Subscribers can also be informed by email about circumstances that are relevant for the service or registration (e.g. changes to the newsletter offer or technical circumstances).
We need a valid email address for effective registration. In order to check that the registration is actually made by the owner of an e-mail address, we use the “double opt-in” procedure. For this purpose, we log the order for the newsletter, the dispatch of a confirmation email and the receipt of the response requested. Further data is not collected. The data will only be used to send the newsletter and will not be passed on to third parties.

Legal basis:

On the basis of your expressly given consent (Art. 6 Para. 1 lit. a GDPR), we will regularly send you our newsletter or comparable information by e-mail to the e-mail address you provided. 
You can revoke your consent to the storage of your personal data and its use for sending the newsletter at any time with effect for the future. There is a corresponding link in every newsletter. You can also unsubscribe directly on this website at any time or inform us of your revocation using the contact option given at the end of this data protection notice.

Receiver:

The recipients of the data may be contract processors.

Storage period:

The data will only be processed in this context as long as the corresponding consent is available. Then they will be deleted. 

Provision mandatory or required:

The provision of your personal data is voluntary, based solely on your consent. Unfortunately, we cannot send you our newsletter without your consent.

Contact Form

Type and purpose of processing:

The data you enter will be stored for the purpose of personal communication with you. To do this, you must provide a valid email address and your name. This is used to assign the request and then answer it. The specification of further data is optional. 

Legal basis:

The data entered in the contact form is processed on the basis of a legitimate interest (Art. 6 Para. 1 lit. f GDPR).
By providing the contact form, we would like to make it easy for you to contact us. The information you provide will be stored for the purpose of processing the request and for possible follow-up questions.
If you contact us to inquire about an offer, the data entered in the contact form will be processed to carry out pre-contractual measures (Art. 6 Para. 1 lit.b GDPR).

Receiver:

The recipients of the data may be contract processors.

Storage period:

Data will be deleted no later than 6 months after processing the request.
If there is a contractual relationship, we are subject to the statutory retention periods according to the German Commercial Code and delete your data after these periods have expired. 

Provision mandatory or required:

The provision of your personal data is voluntary. However, we can only process your request if you provide us with your name, your e-mail address and the reason for the request.


Use of Google Analytics 

Type and purpose of processing:

This website uses Google Analytics, a web analysis service provided by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043 USA (hereinafter: “Google”). Google Analytics uses so-called “cookies”, text files that are stored on your computer and that enable your use of the website to be analyzed. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there.
However, due to the activation of IP anonymization on this website, your IP address will be shortened beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. The full IP address is only transmitted to a Google server in the USA and shortened there in exceptional cases. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide the website operator with other services relating to website activity and internet usage. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.
The purpose of data processing is to evaluate the use of the website and to compile reports on activities on the website. Based on the use of the website and the Internet, further related services are then to be provided.

Legal basis:

The data is processed on the basis of the user’s consent (Art. 6 Para. 1 lit. a GDPR).

Receiver:

The recipient of the data is Google as the processor. We have concluded the corresponding order processing contract with Google for this purpose.

Storage period:

The data is deleted as soon as it is no longer required for our recording purposes.

Third country transfer:

Google processes your data in the USA and has submitted it to the EU_US Privacy Shield – https://www.privacyshield.gov/EU-US-Framework

Provision mandatory or required:

The provision of your personal data is voluntary, based solely on your consent. If you prevent access, this can lead to functional restrictions on the website.

Withdrawal of consent:

You can prevent the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by downloading the browser plug-in available under the following link and install: Browser add-on to deactivate Google Analytics.
In addition or as an alternative to the browser add-on, you can prevent tracking by Google Analytics on our website by clicking this link. An opt-out cookie will be installed on your device. This will prevent future collection by Google Analytics for this website and for this browser as long as the cookie remains installed in your browser.

Profiling:

With the help of the tracking tool Google Analytics, the behavior of the website visitors can be evaluated and the interests analyzed. To do this, we create a pseudonymous user profile.

Use of Google Tag Manager


This type of service helps the Owner to manage the tags or scripts needed on this Website in a centralized fashion.
This results in the Users’ Data flowing through these services, potentially resulting in the retention of this Data.
Google Tag Manager is a tag management service provided by Google LLC or by Google Ireland Limited, depending on the location this Website is accessed from.
Personal Data processed: Usage Data.

Place of processing: United States – Privacy Policy; Ireland – Privacy Policy.


Use of Script Libraries (Google Web Fonts)

Type and purpose of processing:

In order to display our content correctly and graphically appealing across browsers, we use “Google Web Fonts” from Google LLC (1600 Amphitheater Parkway, Mountain View, CA 94043, USA; hereinafter “Google”) to display fonts. The privacy policy of the library operator Google can be found here: https://www.google.com/policies/privacy/

Legal basis:

The legal basis for the integration of Google web fonts and the associated data transfer to Google is your consent (Art. 6 Para. 1 lit. a GDPR).

Receiver:

Calling up script libraries or font libraries automatically triggers a connection to the library operator. It is theoretically possible – but currently also unclear whether and, if so, for what purposes – that the operator collects Google data in this case.

Storage period:

We do not collect any personal data through the integration of Google web fonts. You can find more information about Google Web Fonts at https://developers.google.com/fonts/faq and in Google’s data protection declaration: https://www.google.com/policies/privacy/.

Third country transfer:

Google processes your data in the USA and has submitted to the EU_US Privacy Shield https://www.privacyshield.gov/EU-US-Framework.

Provision mandatory or required:

The provision of personal data is not required by law or contract. However, the correct representation of the content using standard fonts may not be possible.

Withdrawal of consent:

The JavaScript programming language is regularly used to display the content. You can therefore object to the data processing by deactivating the execution of JavaScript in your browser or by installing a JavaScript blocker. Please note that this can lead to functional restrictions on the website.


Use of Google Maps

Type and purpose of processing:

We use Google Maps on this website. Google Maps is operated by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (hereinafter “Google”). This enables us to show you interactive maps directly on the website and enables you to conveniently use the map function.
You can find more information about data processing by Google in the Google data protection page. There you can also change your personal data settings in the data protection center.
You can find detailed instructions for managing your own data in connection with Google products here.

Legal basis:

The legal basis for the integration of Google Maps and the associated data transfer to Google is your consent (Art. 6 Para. 1 lit. a GDPR).

Receiver:

When you visit the website, Google receives information that you have accessed the corresponding subpage of our website. This happens regardless of whether Google provides a user account that you are logged in to or whether there is no user account. If you are logged into Google, your data will be assigned directly to your account.
If you do not want the assignment in your Google profile, you must log out of Google before activating the button. Google stores your data as a usage profile and uses it for advertising, market research and / or needs-based design of its website. Such an evaluation takes place in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, although you must contact Google to exercise this right.

Storage period:

We do not collect any personal data through the integration of Google Maps.

Third country transfer:

Google processes your data in the USA and has submitted to the EU_US Privacy Shield https://www.privacyshield.gov/EU-US-Framework.

Withdrawal of consent:

If you do not want Google to collect, process or use data about you via our website, you can deactivate JavaScript in your browser settings. In this case, however, you will be unable to use our website or only to a limited extent.

Provision mandatory or required:

The provision of your personal data is voluntary, based solely on your consent. If you prevent access, this can lead to functional restrictions on the website.


Embedded YouTube Videos

Type and purpose of processing:

We embed YouTube videos on some of our websites. The operator of the corresponding plugins is YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA (hereinafter “YouTube”). When you visit a page with the YouTube plug-in, a connection to YouTube servers is established. YouTube will be told which pages you are visiting. If you are logged into your YouTube account, YouTube can assign your surfing behavior to you personally. You can prevent this by logging out of your YouTube account beforehand. If a YouTube video is started, the provider uses cookies that collect information about user behavior.
Further information on the purpose and scope of the data collection and its processing by YouTube can be found in the provider’s data protection declaration, where you will also find further information on your rights in this regard and setting options to protect your privacy (https://policies.google.com/privacy). Google processes your data in the USA and has submitted to the EU-US Privacy Shield https://www.privacyshield.gov/EU-US-Framework

Legal basis:

The legal basis for the integration of YouTube and the associated data transfer to Google is your consent (Art. 6 Para. 1 lit. a GDPR).

Receiver:

Calling up YouTube automatically triggers a connection to Google.

Storage period and withdrawal of consent:

If you have deactivated the storage of cookies for the Google ad program, you will not have to expect such cookies when watching YouTube videos. However, YouTube also stores non-personal usage information in other cookies. If you want to prevent this, you must block the storage of cookies in your browser.
Further information on data protection at YouTube can be found in the provider’s data protection declaration at:  https://www.google.de/intl/de/policies/privacy/ 

Third country transfer:

Google processes your data in the USA and has submitted to the EU_US Privacy Shield https://www.privacyshield.gov/EU-US-Framework.

Provision mandatory or required:

The provision of your personal data is voluntary, based solely on your consent. If you prevent access, this can lead to functional restrictions on the website.


Social Plugins

Type and purpose of processing:

Social plugins from the providers listed below are used on our website. You will recognize the plugins because they are marked with the corresponding logo.
Via these plugins, information, which may also include personal data, may be sent to the service operator and may be used by the operator. We prevent the unconscious and unwanted collection and transmission of data to the service provider with a 2-click solution.

In order to activate a desired social plugin, it must first be activated by clicking on the corresponding switch. Only when the plug-in is activated is the collection of information and its transmission to the service provider triggered. We do not collect any personal data ourselves using the social plugins or their use.
We have no influence on which data an activated plug-in collects and how it is used by the provider. It must currently be assumed that a direct connection to the provider’s services will be established and that at least the IP address and device-related information will be recorded and used. There is also the possibility that the service provider will try to save cookies on the computer used. Please refer to the data protection information of the respective service provider to find out which specific data is recorded and how it is used. Note: If you are logged in to Facebook at the same time, Facebook can identify you as a visitor to a specific page.

We have integrated the social media buttons of the following companies on our website:

Google AdWords
Type and purpose of processing:

Our website uses Google conversion tracking. The operating company for the services of Google AdWords is Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA. If you reached our website via an advertisement placed by Google, Google Adwords will set a cookie on your computer. The conversion tracking cookie is set when a user clicks on an ad placed by Google.
If the user visits certain pages on our website and the cookie has not yet expired, we and Google can see that the user clicked on the ad and was forwarded to this page. Every Google AdWords customer receives a different cookie. Cookies cannot therefore be tracked via the websites of AdWords customers. The information obtained using the conversion cookie is used to generate conversion statistics for AdWords customers who have opted for conversion tracking. Customers find out the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not receive any information with which users can be personally identified.

Legal basis:

The legal basis for the integration of Google AdWords and the associated data transfer to Google is your consent (Art. 6 Para. 1 lit. a GDPR).

Receiver:

Every time you visit our website, personal data, including your IP address, is transferred to Google in the USA. These personal data are stored by Google. Google may pass this personal data collected through the technical process on to third parties. Our company does not contain any information from Google that could be used to identify the data subject.

Storage period:

These cookies lose their validity after 30 days and are not used for personal identification.

Third country transfer:

Google processes your data in the USA and has submitted to the EU_US Privacy Shield https://www.privacyshield.gov/EU-US-Framework.

Withdrawal of consent:

If you do not want to be tracked, you can refuse the setting of a cookie required for this – for example, via a browser setting that generally deactivates the automatic setting of cookies or setting your browser so that cookies from the domain “googleleadservices.com” are blocked.
Please note that you must not delete the opt-out cookies as long as you do not want measurement data to be recorded. If you have deleted all of your cookies in your browser, you have to set the respective opt-out cookie again.

Provision mandatory or required:

The provision of your personal data is voluntary, based solely on your consent. If you prevent access, this can lead to functional restrictions on the website.

Facebook lookalike audience (Facebook, inc.)

Facebook Lookalike Audience is an advertising and behavioral targeting service provided by Facebook, Inc. that uses Data collected through Facebook Custom Audience in order to display ads to Users with similar behavior to Users who are already in a Custom Audience list on the base of their past use of this Website or engagement with relevant content across the Facebook apps and services.
On the base of these Data, personalized ads will be shown to Users suggested by Facebook Lookalike Audience. Users can opt out of Facebook’s use of cookies for ads personalization by visiting this opt-out page.
Personal Data processed: Cookies; Usage Data.

Place of processing: United States – Privacy Policy – Opt Out.

HubSpot

We use HubSpot for our online marketing activities. This is an integrated software solution with which we cover various aspects of our online marketing.
These include:

  • Content Management (website and blog),
  • E-mail marketing (newsletters and automated mailings, e.g. to provide downloads),
  • Social media publishing & reporting,
  • Reporting (e.g. traffic sources, accesses, etc. …),
  • Contact management (e.g. user segmentation & CRM),
  • Landing pages and contact forms


Our registration service enables visitors to find out more about our company, download content and provide their contact information and other demographic information.
This information and the content of our website are stored on the servers of our software partner HubSpot. Can be used by us to get in contact with visitors of our website and to determine which services from our company are of interest to them.

All information we collect is subject to this privacy policy. We use all information collected exclusively to optimize our marketing.HubSpot is a US software company with a subsidiary in Ireland. 
Contact:
HubSpot
2nd Floor 30 North Wall Quay
Dublin 1, Ireland,
Phone: +353 1 5187500.

HubSpot is under the terms of the “EU – US Privacy Shield Frameworks” and is subject to the TRUSTe’s Privacy Seal and the“ U.S. – Swiss Safe Harbor ”framework.

• More information on HubSpot’s data protection provisions »
• More information from HubSpot regarding EU data protection regulations »

• You can find more information about the cookies used by HubSpot here here »

Remarketing and behavioral targeting


This type of service allows this Website and its partners to inform, optimize and serve advertising based on past use of this Website by the User.
This activity is facilitated by tracking Usage Data and by using Trackers to collect information which is then transferred to the partners that manage the remarketing and behavioral targeting activity.
Some services offer a remarketing option based on email address lists.
Users may also opt-out of certain advertising features through applicable device settings, such as the device advertising settings for mobile phones or ads settings in general.

Facebook Custom Audience (Facebook, Inc.)

Facebook Custom Audience is a remarketing and behavioral targeting service provided by Facebook, Inc. that connects the activity of this Website with the Facebook advertising network.
Personal Data processed: Cookies; email address.
Place of processing: US – Privacy Policy – Opt Out

Google Ads Remarketing (Google Ireland Limited)

Google Ads Remarketing is a remarketing and behavioral targeting service provided by Google Ireland Limited that connects the activity of this Website with the Google Ads advertising network and the DoubleClick Cookie. Users can opt out of Google’s use of cookies for ads personalization by visiting Google’s Ads Settings.
Personal Data processed: Cookies; Usage Data.
Place of processing: Ireland – Privacy Policy – Opt Out.

SSL Encryption

In order to protect the security of your data during transmission, we use state-of-the-art encryption methods (e.g. SSL) over HTTPS. 


Userlike


DCI collects user data, which is passed on to the chat support “Userlike” to ensure communication tailored to customers. Userlike is a live chat plugin for WordPress. With it, communication with customers can be handled clearly. The chat data of the end users is processed in Germany by the external service provider Hetzner Online GmbH. The data centers used for this purpose meet the highest data protection standards.
Userlike is a German provider. A contract has been concluded for data transfer with Userlike to ensure GDPR-compliant processing.
The chat widget is delivered to the site using the Amazon Cloudfront CDN. However, with the exception of the IP address and other information necessary for the technical delivery of the content, no personal data of the end users is processed by Amazon.
All other services, beyond these core functions, can be used optionally. If these services are not activated, or if they are not included in the package, no data will be processed via these providers.
We have also taken appropriate technical and organizational measures for the availability and access to the Userlike software.
For more information on how Userlike uses the data: https://www.userlike.com/de/terms#privacy-policy
Users can object to data storage and data transfer at any time.

The use of Userlike does not require consent. It can be carried out on one of the other applicable legal bases of Art. 6 GDPR. When activating the chat function of our website, additional personal data is processed. The legal basis for processing in this case is consent pursuant to Art. 6 (1) a GDPR.

A transfer of data takes place to the processor Userlike UG, Probsteigasse 44-46, 50670 Cologne, Germany.

Change of our Data Protection Regulations

We reserve the right to adapt this data protection declaration so that it always complies with current legal requirements or to implement changes to our services in the data protection declaration, e.g. when introducing new services. The new data protection declaration will then apply to your next visit.

Questions to the Data Protection Officer

For questions regarding the collection, processing or use of your personal data, for data subject rights such as information, correction, blocking or deletion of data or other topics related to data protection law, you can now reach us at

[email protected] (Mr. Patrick Knittel and Mr. Hans Peter Becher / ext. data protection officer) or at [email protected]
 
The data protection declaration was created with the help of activeMind AG, experts for external data protection officers (Version # 2019-04-10).