1. The name and contact details of the data controller and of the company's data protection officer
- This data protection information applies to data processing carried out by:
- Responsible: Isabellenhütte Heusler GmbH & Co. KG, Eibacher Weg 3-5, 35683 Dillenburg, e-mail: firstname.lastname@example.org
- The data protection officer of Isabellenhütte Heusler GmbH & Co. KG is available at the above address (mark correspondence for the attention of the data protection officer), and also via e-mail at email@example.com.
2. Collection and storage of personal data and the nature and purpose of its use
a) When visiting the website
When you visit our website at http://www.isabellenhuette.de/ information is automatically sent to our website's server by the browser used on your device. This information is temporarily stored in a "log file". The following information is collected without your intervention and stored pending automated deletion:
IP address of the requesting computer
Date and time of access
Name and URL of the retrieved file
Website from which access is made (referrer URL)
The browser used and, if applicable, the operating system of your computer as well as the name of your access provider
The aforementioned data is processed by us for the following purposes:
To ensure a smooth connection to the website
To ensure comfortable use of our website
For evaluation of system safety and stability as well as
For other administrative purposes
The legal basis for the data processing is Art. 6 (1) (1f) GDPR (German law). Our justified interest in the collection of data follows from the purposes listed above. Under no circumstances do we use the collected data for the purpose of identifying you.
b) When using our contact form
If you have any questions, we give you the option to contact us via a form provided on our website. It is necessary to enter your name and a valid e-mail address so that we know who sent the inquiry and can then respond accordingly. Additional information can be provided voluntarily.
Data processing for the purpose of contacting us is carried out in accordance with Art. 6 (1) (1a) GDPR on the basis of your voluntary consent.
The personal data collected by us for the use of the contact form is automatically deleted once your inquiry has been processed, unless further processing of the data is necessary for the exercise of the right to freedom of expression and information, to fulfill a legal obligation, for reasons of public interest or to assert, exercise or defend legal claims.
c) When using the distributor login
At https://www.isabellenhuette.de/distributoren-login we offer you the opportunity to register with us as a distributor of our products. The registration of an account is necessary to use the distributor login. The registration of your account is carried out via a registration form. It is necessary to enter your name, e-mail address and your company name and address so that we can create a user account for you and know which user the account is assigned to. Additional information can be provided voluntarily.
Data processing for the purpose of using the distributor login is carried out in accordance with Art. 6 (1) (1b) GDPR.
The personal data collected by us for your use of the distributor login will be automatically deleted at the latest after the deletion of your account, unless further processing of the data is necessary for the exercise of the right to freedom of expression and information, to fulfill a legal obligation, for reasons of public interest or to assert, exercise or defend legal claims.
d) When using our RMA form
If you have a complaint about our products, we offer you the opportunity to submit your complaint using a form provided on our website. When doing so, we require your customer number, your company name and address, your name, a valid e-mail address and a telephone number as well as various product-related information so that we know from whom the complaint originates, which product it concerns and in order to process the complaint. Additional information can be provided voluntarily.
The processing of personal data for the purpose of processing complaints is carried out in accordance with Art. 6 (1) (1b) GDPR if you already have a contractual relationship with us.
The personal data collected by us for the purpose of processing the complaint will be automatically deleted after the processing of the complaint submitted by you, unless further processing of the data is necessary for the exercise of the right to freedom of expression and information, for the fulfillment of a legal obligation, for reasons of public interest or for the assertion, exercise or defense of legal claims.
e) When using the applicant portal
On our website, we also offer you the opportunity to submit applications to our company via an applicant portal. When you send your application, the data you enter is processed in our applicant management system. Your data is kept strictly confidential at all times. The following information is collected from you and stored pending its deletion:
References / qualification certificates
Educational level / professional experience
The above data is processed for the following purposes:
To process your application
In anonymous form for internal statistical purposes
Data processing for the purpose of processing your application is carried out in accordance with Art. 6 (1) (1a) GDPR on the basis of your voluntary consent.
After your data has been entered and sent, it is transferred via a connection to the server of our external service provider BITE GmbH, Resi-Weglein-Gasse 9, 89077 Ulm, Germany, which operates our applicant management system and hosts the recorded applicant data on its server n its capacity as a contract data processor in accordance with Art. 28 GDPR. All data is encrypted on the basis of the SSL procedure.
At the end of the selection procedure, and no later than six months after the collection of the data, we will automatically delete the personal data about you that we have collected and stored, unless further storage is necessary to fulfill a legal obligation, for reasons of public interest or to assert, exercise or defend legal claims.
We may continue to use anonymous applicant data for internal statistical purposes. In doing so, we ensure that data used is anonymized completely.
3. Disclosure of data
We will not transfer your personal data to third parties for purposes other than those listed below.
We will only share your personal data with third parties if:
You have given your express consent to this in accordance with Art. 6 (1) (1a) GDPR
The disclosure pursuant to Art. 6 (1) (1f) GDPR is necessary for the assertion, exercise or defense of legal claims and there is no reason to assume that you have an overriding legitimate interest in not disclosing your data
In the event that there is a legal obligation to disclose data pursuant to Art. 6 (1) (1c) GDPR, and that
this is legally permissible and required for the execution of contractual relationships with you pursuant to Art. 6 (1) (1b) GDPR.
The cookie contains information that relates to the respective end device. This does not mean, however, that we will gain immediate knowledge of your identity.
In addition, we also use temporary cookies to make our website more user-friendly, which are stored on your device for a specified period. If you visit our site again to use our services, we will automatically recognized that you have previously visited us and will restore the inputs and settings you previously made so that you do not have to enter them again.
The data processed by cookies is required for the aforementioned purposes in order to safeguard our legitimate interests and those of third parties pursuant to Art. 6 (1) (1f) GDPR.
Most browsers automatically accept cookies. However, you can configure your browser so that no cookies are stored on your computer or a message always appears before a new cookie is created. However, if you disable cookies completely, you may not be able to use all the features of our website.
5. Analysis and third-party tools
We use the tracking measures listed below on the basis of Art. 6 (1) (1) f GDPR. When using these tracking measures our goal is to ensure that our website is designed to meet your needs and is continually optimized. Furthermore, we use tracking measures to record the use of our website statistically and to evaluate it for the purpose of optimizing our services for you. These interests are deemed to be justified within the meaning of the aforementioned provision.
The respective data processing purposes and data categories can be found in the corresponding tracking tools.
We use Google Analytics, a web analysis service provided by Google Inc., for the purpose of tailoring our pages to meet your needs and continuously optimizing them https://www.google.de/intl/de/about/ (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; hereinafter "Google"). In this context, pseudonymized user profiles are created and cookies (see Section 4) are used. The information generated by the cookie about your use of this site, including
your browser type/version
your operating system
the Referrer URL (the previously visited page)
the host name of the accessing computer (IP address)
the time of the server request
is transferred to a Google server in the USA and stored there. This information is used to evaluate your use of the website, to compile reports on website activities and to provide other services related to website and internet use for market research purposes, and to design these web pages in line with the respective requirements. This information may also be transferred to third parties if this is required by law or if third parties process this data on our behalf. Under no circumstances will your IP address be merged with other Google data. The IP addresses are anonymized so that they cannot be used to identify you (IP masking).
You can also prevent the collection of data generated by the cookie and relating to your use of the website (including your IP address) and the processing of this data by Google by downloading and installing a browser add-on at https://tools.google.com/dlpage/gaoptout?hl=de.
As an alternative to the browser add-on, especially for browsers on mobile devices, you can also prevent Google Analytics from storing your data by clicking this link. If you do so, an opt-out cookie is stored, which prevents your data from being collected in the future when you visit this website. The opt-out cookie applies only to this browser and to our website, and is stored on your device. If you delete the cookies in this browser, you must download the opt-out cookie again.
For more information about privacy in connection with Google Analytics, see the Google Analytics Help page https://support.google.com/analytics/answer/6004245?hl=de.
Google AdWords and conversion tracking
This website uses the online advertising program "Google AdWords" and, in this context, conversion tracking from Google Inc. ("Google"). When you click on an ad placed by Google, a conversion tracking cookie is stored on your computer. These cookies have a limited expiration period, do not contain any personal data and therefore do not allow personal identification. If you visit certain pages of our website and the cookie has not expired, Google and we may recognize that you clicked on the ad and were directed to that page. Each Google AdWords customer receives a different cookie. Therefore, there is no possibility that cookies can be tracked via the websites of AdWords customers.
The information collected with the help of the conversion cookie is used to create conversion statistics. This tells us the total number of users who clicked on one of our ads and were redirected to a page with a conversion tracking tag. However, we do not receive information that personally identifies users.
You can prevent cookies from being saved by configuring the respective settings in your browser software. You will then not be included in the conversion tracking statistics. You can also disable personalized advertising via Google's advertising preferences. You can find instructions on how to do this at https://support.google.com/ads/answer/2662922?hl=de.
To disable "Google AdWords" and, in this context, conversion tracking on our website ("opt-out"), please send us an e-mail: Marketing@isabellenhuette.de
The processing is based on our legitimate interest in targeted advertising and analysis of the effect and efficiency of this advertising, as well as this is not precluded by your legitimate interests (Art. 6 (1) (f) GDPR).
External fonts, Google Fonts, are used on our web pages. Google Fonts is a service of Google Inc. ("Google"). The integration of these web fonts takes place via a server query, usually to a Google server in the USA. This tells the server which of our web pages you have visited. The IP address of the browser device used by the visitor to these web pages is also stored by Google. For more information, please refer to the Google Fonts privacy notice, which can be found here: www.google.com/fonts#AboutPlace:about.
For the integration of videos we use the services provided by YouTube, among others. YouTube is operated by YouTube LLC, headquartered in 901 Cherry Avenue, San Bruno, CA 94066, USA. YouTube is owned by Google Inc., with registered office at 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
On some of our websites we use plugins from YouTube. If you access our web pages with these plugins – for example our media library – a connection to the YouTube servers is established and the plugin is displayed. This tells the YouTube server which of our web pages you have visited. If you are logged into YouTube as a member, YouTube will assign this information to your personal account. When using the plugin, e.g., by clicking the start button of a video, this information is also assigned to your user account. You can prevent this assignment by logging out of your YouTube user account and other YouTube LLC and Google Inc. user accounts and deleting the corresponding cookies before visiting our website.
Further information on data processing and data protection by YouTube (Google) can be found at www.google.de/intl/de/policies/privacy/.
Google Tag Manager
In addition, you can prevent Google from collecting the data generated by the cookies and related to your use of the websites, and can prevent Google from processing this data, by downloading and installing the browser plugin that is available via the following link and listed under the DoubleClick deactivation extension.
We use the technologies of Inxmail GmbH, based at Wentzingerstr. 17 79106 Freiburg, for the automated dispatch of e-mail newsletters. These can be subscribed to on the websites or at conclusion of the contract. When subscribing to the newsletter, we collect personal data such as your name and e-mail address.
Purpose and contents of the newsletter
Isabellenhütte sends electronic newsletters (hereinafter referred to as "newsletters") containing advertising information to users who have expressly consented to receive them by registering and confirming their e-mail address.
Logging of the registration process
The registration for the newsletter is only complete after successful confirmation of the e-mail address by the recipient. For this purpose, the recipient receives a so-called "double opt-in e-mail" with a confirmation link immediately after sending the newsletter registration form. The registration to the newsletter is only completed when the confirmation link is activated.
To prove that we have received valid consent to send out the newsletter, the date and time of the activation of the confirmation link, the IP address of the activating user and the e-mail address of the recipient are stored together in a log file.
Login data of the user
The user's e-mail address is sufficient to register for the newsletter. Voluntary information such as a salutation, first name and surname are merely used to personalize the newsletter.
By registering for the newsletter, the user expressly consents to the collection, storage and processing of the data entered for the dispatch of the newsletter.
Notes on the evaluation of usage behavior
Isabellenhütte always uses so-called anonymous tracking in its newsletters. The recipient's actions (opening an e-mail, clicking on text and image links, downloading images with an e-mail program) are collected and stored anonymously for statistical purposes. It is not possible to identify individual users on the basis of the stored data without their explicit consent.
If you have agreed to receive our newsletter tailored to your individual interests and to use personalized user profiles, we will process your e-mail address and your name in particular for the purpose of sending the newsletter.
With your consent, we record your user behavior on the websites connected to www.isabellenhuette.de, mobile apps and newsletters.
Our evaluation of user behavior includes in particular which areas of the respective website, mobile app or newsletter you are visiting and which links you click there. During this process, personalized user profiles are created with reference to your identity and/or your e-mail address for the purpose of better tailoring advertising approaches to your personal interests, in particular in the form of newsletters and print advertising, and to improve the respective websites.
You can revoke your consent to receive the newsletter or to our creation of personalized user profiles at any time with effect for the future, e.g., by unsubscribing from the newsletter directly in the newsletter itself or via our website. The link to the unsubscribe page can be found here www.isabellenhuette.de/unsubscribe or at the end of each newsletter. If you revoke your consent we will delete the collected user data.
The user can cancel the newsletter at any time and thus revoke their consent to receive the newsletter. Any existing consent to personal tracking in the newsletter will also expire. Any existing personal data relating to recipient actions will then be deleted or made anonymous.
The user also has the option of revoking their consent to the storage and processing of personal data relating to recipient actions separately from their consent to receive the newsletter. The existing personal data relating to recipient actions will then be deleted or made anonymous.
To cancel the newsletter or to revoke your consent to the storage and processing of personal data relating to recipient actions, simply send an e-mail to firstname.lastname@example.org.
Furthermore, the user has the option to cancel the newsletter or to revoke their consent to the storage and processing of personal data relating to recipient actions by activating the unsubscribe link or cancellation link contained in each newsletter.
6. Social media plugins
We use social plugins from the social networks Facebook, Instagram, Xing and LinkedIn on our website on the basis of Art. 6 (1) (1f) GDPR in order to increase awareness about our company. The underlying advertising purpose is to be regarded as a legitimate interest within the meaning of the GDPR. The responsibility for ensuring operative compliance with data protection legislation rests with the respective providers.
Plugins from Facebook and Facebook Ireland Ltd., 4 Grand Canal Square Grand Canal Harbour, Dublin 2, Ireland are integrated on our website. You can recognize the Facebook plugins via the Facebook logo on our website. Use of the offered functions (e.g., comment, share, rate) is at your own risk.
When you visit our Facebook page, Facebook automatically collects various information. The information collected by Facebook in this process can be viewed at https://www.facebook.com/about/privacy/update?ref=old_policy "What kind of information do we collect?"
Part of this information is used to provide us, as the operator of the Facebook page, with statistical information about the use of the Facebook page. More information about this can be found on Facebook via the following link http://de-de.facebook.com/help/pages/insights
The data mentioned is transferred from Facebook for the purposes mentioned at https://www.facebook.com/about/privacy/update?ref=old_policy ("How do we use this information?"), whereby it may be transferred to countries outside the European Union.
When you access a Facebook page, the IP address assigned to your end device is transmitted to Facebook. According to Facebook, this IP address is anonymized (for "German" IP addresses) and deleted after 90 days. In addition, Facebook stores information about its users' end devices (e.g., as part of the "registration notification" function); Facebook may thus be able to assign IP addresses to individual users. If you are currently logged on to Facebook as a user, a cookie with your Facebook identification is stored on your end device. This enables Facebook to see that you have visited this page and how you have used it. This also applies to all other Facebook pages. Facebook buttons embedded in web pages allow Facebook to track your visits to these web pages and associate them with your Facebook profile. This data can be used to tailor content or advertising to your needs. You can find out more at https://www.facebook.com/policies/cookies/
If you want to avoid this, you should log out of Facebook or deactivate the "stay logged in" function, delete the cookies on your device and close and restart your browser. By doing so, any Facebook information that directly identifies you will be deleted. This allows you to use our Facebook page without revealing your Facebook identifier. When you access the interactive features on the page (like, comment, share, news, etc.), a Facebook login screen appears. If you log in, you will again be recognized by Facebook as a specific user.
The legal basis for the data processing is explained by Facebook at https://www.facebook.com/about/privacy/update?ref=old_policy "What is our legal basis for processing data?"
You have the right to information, correction, transferability and deletion of your data. You can find your exact rights at https://www.facebook.com/about/privacy/update?ref=old_policy "How can you exercise your rights under the GDPR?"
Plugins from the social network Instagram, i.e. Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland are integrated on our website. You can recognize the Instagram plugins via the Instagram logo on our website. Please note that the plugin establishes a connection between your internet browser and Instagram's server when you use it. This tells Instagram that you have visited our site via your IP address. If you click the Instagram logo while logged in to your Instagram account, Instagram can assign your visit to our web pages to your user account. We would like to point out that, as the provider of these pages, we do not have any knowledge of the content of the transmitted data or its use by Instagram.
If you do not want Instagram to be able to identify your visits to our website, please log out from your Instagram user account.
Plugins from the social network Xing and Xing SE, Dammtorstraße 30, 20354 Hamburg are integrated on our website. You can recognize the Xing plugins via the Xing logo on our site. Please note that the plugin establishes a connection between your internet browser and the Xing server when you use it. Xing receives information that you have visited our site via your IP address. If you click on the Xing logo while logged into your Xing account, Xing may assign your visit to our web pages to your user account. We would like to point out that, as the provider of the web pages, we do not have any knowledge of the content of the transmitted data or its use by Xing.
If you do not wish Xing to be able to identify your visits to our website, please log out of your Xing user account.
Plugins from the social network LinkedIn, i.e. the LinkedIn Corporation, 2029 Stierlin Court, Mountain View, CA 94043, USA (hereinafter referred to as "LinkedIn") are integrated on our website. The plugins from LinkedIn can be recognized via the corresponding logo or the "Recommend" button. Please note that the plugin establishes a connection between your internet browser and the LinkedIn server when you use it. LinkedIn is thus informed that our website has been visited via your IP address. If you click on the "Recommend" button for LinkedIn and are simultaneously logged into your LinkedIn account, you have the option to link content from our website to your profile page at LinkedIn/Profile. By doing so, you enable LinkedIn to assign your visit to our website to you or your user account. Please be aware that we do not have any knowledge of the content of the transmitted data or its use by LinkedIn.
For more details on the collection of the data and your legal options and the available settings, please visit LinkedIn. These can be viewed at http://www.linkedin.com/static?key=privacy_policy&trk=hb_ft_priv.
7. Rights of data subjects
You have the right:
- to request information about your personal data that is processed by us in accordance with Art. 15 GDPR. In particular, you may request information about the purposes of the processing, the category of personal data, the categories of recipients to whom your data has been or will be disclosed, the planned storage period, the existence of a right of rectification, deletion, limitation of processing or objection, the existence of a right of appeal, the origin of your data if it has not been collected from us, as well as the existence of an automated decision-making process including profiling and, if applicable, detailed information about this;
- in accordance with Art. 16 GDPR, to immediately request the correction of incorrect or incomplete personal data stored by us;
- to demand the deletion of your personal data stored by us in accordance with Art. 17 GDPR, unless the processing is necessary for the purpose of exercising the right to freedom of expression and information, for fulfilling a legal obligation, for reasons of public interest or for asserting, exercising or defending legal claims;
- to demand the restriction of the processing of your personal data in accordance with Art. 18 GDPR if the accuracy of the data is disputed by you, the processing is unlawful but you reject its deletion and we no longer need the data; however you need it to assert, exercise or defend legal claims or you have objected to the processing in accordance with Art. 21 GDPR;
- in accordance with Art. 20 GDPR, to receive your personal data which you have provided to us in a structured, common and machine-readable format or to request its transmission to another data controller;
- in accordance with Art. 7 (3) GDPR, to revoke your previously granted consent at any time. The consequence of this is that we may not continue the data processing based on this consent in the future, and
- to appeal to a supervisory authority pursuant to Art. 77 GDPR. As a rule, you can contact the supervisory authority at your usual place of residence or workplace or at our company headquarters.
8. Right of objection
If your personal data is processed on the basis of legitimate interests pursuant to Art. 6 (1) (1f) GDPR, you have the right, pursuant to Art. 21 GDPR, to object to the processing of your personal data if there are reasons for doing so which arise from your particular situation or if the objection is directed against direct advertising. In the latter case, you have a general right of objection, which will be implemented by us without reference to a particular situation.
If you wish to make use of your right of revocation or objection, simply sending a corresponding e-mail to email@example.com is sufficient.
9. Data security
We use the most common SSL (Secure Socket Layer) method in connection with the highest level of encryption supported by your browser. As a rule, this is a 256-bit encryption. If your browser does not support 256-bit encryption, we use 128-bit v3 technology instead. You can tell whether an individual page of our website is transmitted in encrypted form via a closed key or padlock icon in the lower status bar of your browser.
We also use suitable technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction, as well as unauthorized access by third parties. Our security measures are continuously improved in line with technological developments.