Privacy policies usually sound very technical. However, this version should describe the most important things as simply and clearly as possible. Moreover, technical terms are explained in a reader-friendly manner whenever possible. We would also like to convey that we only collect and use information via this website if there is a corresponding legal basis for it. This is certainly not possible if you give very brief technical explanations, as are often standard on the Internet when it comes to data protection. We hope you find the following explanations interesting and informative. Maybe you will also find some information that you did not know yet.
Should you still have questions, we kindly ask you to follow the existing links to see further information on third-party websites, or to simply write us an email. You can find our contact information in our website’s imprint.
If you have any question about data protection, please find the contact details of the body or person responsible for data protection below:
TEL: +43 / 316 / 822521 0
FAX: +43 / 316 / 822521 7
If you think that the processing of your data violates the data protection law, or that your data protection rights have been infringed in any other way, you can lodge a complaint with your respective regulatory authority. For Austria this is the data protection authority, whose website you can access at https://www.data-protection-authority.gv.at/.
The terms TLS, encryption and https sound very technical, which they are indeed. We use HTTPS (Hypertext Transfer Protocol Secure) to securely transfer data on the Internet.
This means that the entire transmission of all data from your browser to our web server is secured – nobody can “listen in”.
We have thus introduced an additional layer of security and meet privacy requirements through technology design Article 25 Section 1 GDPR). With the use of TLS (Transport Layer Security), which is an encryption protocol for safe data transfer on the internet, we can ensure the protection of confidential information.
You can recognise the use of this safeguarding tool by the little lock-symbol , which is situated in your browser’s top left corner in the left of the internet address (e.g. examplepage.uk), as well as by the display of the letters https (instead of http) as a part of our web address.
If you want to know more about encryption, we recommend you to do a Google search for “Hypertext Transfer Protocol Secure wiki” to find good links to further information.
Every time you visit a website nowadays, certain information is automatically created and stored, just as it happens on this website. This data should be collected as sparingly as possible, and only with good reason. By website, we mean the entirety of all websites on your domain, i.e. everything from the homepage to the very last subpage (like this one here). By domain we mean example.uk or examplepage.com.
Even while you are currently visiting our website, our web server – this is the computer this website is stored on, usually automatically retains data such as the below – for reasons such as operational security or for creating access statistics etc.
As an illustration:
Generally, these files are stored for two weeks and are then automatically deleted. We do not pass these data to others, but we cannot exclude the possibility that this data may be looked at by the authorities in case of illegal conduct.
In short: your visit is logged by our provider (company that runs our website on servers), but we do not pass on your data!
Our website uses HTTP-cookies to store user-specific data.
Every time you surf the internet, you use a browser. Common browsers are for example Chrome, Safari, Firefox, Internet Explorer and Microsoft Edge. Most websites store small text-files in your browser. These files are called cookies.
Cookies save certain parts of your user data, such as e.g. language or personal page settings. When you re-open our website, your browser submits these “user specific” information back to our site. Thanks to cookies, our website knows who you are and offers you the settings you are familiar to. In some browsers every cookie has its own file, in others such as Firefox, all cookies are stored in one single file.
There are both first-party cookies and third-party cookies. First-party cookies are created directly by our site, while third-party cookies are created by partner-websites (e.g. Google Analytics). Every cookie is individual, since every cookie stores different data. The expiration time of a cookie also varies – it can be a few minutes, or up to a few years. Cookies are no software-programs and contain no computer viruses, trojans or any other malware. Cookies also cannot access your PC’s information.
This is an example of how cookie-files can look:
purpose: differentiation between website visitors
expiration date: after 2 years
A browser should support these minimum sizes:
There are 4 different types of cookies:
These cookies are necessary to ensure the basic function of a website. They are needed when a user for example puts a product into their shopping cart, then continues surfing on different websites and comes back later in order to proceed to the checkout. Even when the user closed their window priorly, these cookies ensure that the shopping cart does not get deleted.
These cookies collect info about the user behaviour and record if the user potentially receives any error messages. Furthermore, these cookies record the website’s loading time as well as its behaviour within different browsers.
These cookies care for an improved user-friendliness. Thus, information such as previously entered locations, fonts or data in forms stay saved.
These cookies are also known as targeting-Cookies. They serve the purpose of delivering individually adapted advertisements to the user. This can be very practical, but also rather annoying.
Upon your first visit to a website you are usually asked which of these cookie-types you want to accept. Furthermore, this decision will of course also be saved in a cookie.
If you want change or delete cookie-settings and would like to determine which cookies have been saved to your browser, you can find this info in your browser-settings:
If you generally do not want to allow any cookies at all, you can set up your browser in a way, to notify you whenever a potential cookie is about to be set. This gives you the opportunity to manually decide to either permit or deny the placement of every single cookie. The settings for this differ from browser to browser. Therefore, it might be best for you to search for the instructions in Google. If you are using Chrome, you could for example put the search phrase “delete cookies Chrome” or “deactivate cookies Chrome” into Google.
If you want to learn more about cookies and do not mind technical documentation, we recommend https://tools.ietf.org/html/rfc6265, the Request for Comments of the Internet Engineering Task Force (IETF) called “HTTP State Management Mechanism”.
We exclusively want to show our products or services to persons, who are interested in them. With the aid of the Facebook pixel, our advertising measures can get better adjusted to your wishes and interests. Therefore, Facebook users get to see suitable advertisement (if they allowed personalised advertisement). Moreover, Facebook uses the collected data for analytical purposes and for its own advertisements.
In the following we will show you the cookies, which were set on a test page through the integration of the Facebook pixel. Please consider that these cookies are only examples. Depending on the interaction that is made on our website, different cookies are set.
Purpose: Dieses Cookie verwendet Facebook, um Werbeprodukte anzuzeigen.
Expiration date: nach 3 Monaten
Purpose: Dieses Cookie wird verwendet, damit Facebook-Pixel auch ordentlich funktioniert.
Expiration date: nach 3 Monaten
Value: Name of the author
Purpose: This cookie saves the text and name of a user who e.g. leaves a comment.
Expiration date: after 12 months
Value: https%3A%2F%2Fwww.testseite…%2F (URL of the author)
Purpose: This cookie saved the URL of the website that the user types into a text box on our website.
Expiration date: after 12 months
Value: email address of the author
Purpose: This cookie saves the email address of the user, if they provided it on the website.
Expiration date: after 12 months
Note: The above-mentioned cookies relate to an individual user behaviour. Moreover, especially concerning the usage of cookies, changes at Facebook can never be ruled out.
If you are registered at Facebook, you can change the settings for advertisements yourself at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. If you are not a Facebook user, you can manage your user based online advertising at https://www.youronlinechoices.com/uk/your-ad-choices. You have the option to activate or deactivate any providers there.
If you want to learn more about Facebook’s data protection, we recommend you the view the company’s in-house data policies at https://www.facebook.com/policy.php.
Along with Facebook’s pixel function, we have also activated the automatic advanced matching. This function allows us to send hashed emails, names, genders, cities, states, postcodes and dates of birth or telephone numbers as additional information to Facebook, provided you have made them available to us. This activation gives us the opportunity, to customise advertising campaigns even better to persons who are interested in our services or products.
We use the tracking and analysis tool Google Analytics (GA) of the US-American company Google LLC (1600 Amphitheatre Parkway Mountain View, CA 94043, USA). Google Analytics collects data on your actions on our website. Whenever you click a link for example, this action is saved in a cookie and transferred to Google Analytics. With the help of reports which we receive from Google Analytics, we can adapt our website and our services better to your wishes. In the following, we will explain the tracking tool in more detail, and most of all, we will inform you what data is saved and how you can prevent this.
Google Analytics is a tracking tool with the purpose of conducting data traffic analysis of our website. For Google Analytics to work, there is a tracking code integrated to our website. Upon your visit to our website, this code records various actions you perform on your website. As soon as you leave our website, this data is sent to the Google Analytics server, where it is stored.
Google processes this data and we then receive reports on your user behaviour. These reports can be one of the following:
The objective of our website is clear: We want to offer you the best possible service. Google Analytics’ statistics and data help us with reaching this goal.
Statistically evaluated data give us a clear picture of the strengths and weaknesses of our website. On the one hand, we can optimise our page in a way, that makes it easier to be found by interested people on Google. On the other hand, the data helps us to get a better understanding of you as our visitor. Therefore, we can very accurately find out what we must improve on our website, in order to offer you the best possible service. The analysis of that data also enables us to carry out our advertising and marketing measures in a more individual and more cost-effective way. After all, it only makes sense to show our products and services exclusively to people who are interested in them.
With the aid of a tracking code, Google Analytics creates a random, unique ID which is connected to your browser cookie. That way, Google Analytics recognises you as a new user. The next time you visit our site, you will be recognised as a “recurring” user. All data that is collected gets saved together with this very user ID. Only this is how it is made possible for us to evaluate and analyse pseudonymous user profiles.
Your interactions on our website are measures by tags such as cookies and app instance IDs. Interactions are all kinds of actions that you perform on our website. If you are also using other Google systems (such as a Google Account), data generated by Google Analytics can be linked with third-party cookies. Google does not pass on any Google Analytics data, unless we as the website owners authorise it. In case it is required by law, exceptions can occur.
The following cookies are used by Google Analytics:
Purpose: By deafault, analytics.js uses the cookie _ga, to save the user ID. It generally serves the purpose of differenciating between website visitors.
Expiration date: After 2 years
Purpose: This cookie also serves the purpose of differentiating between website users
Expiration date: After 24 hours
Verwendungszweck: It is used for decreasing the demand rate. If Google Analytics is provided via Google Tag Manager, this cookie gets the name _dc_gtm_ .
Expiration date: After 1 minute
Value: No information
Purpose: This cookie has a token which is used to retrieve the user ID by the AMP Client ID Service. Other possible values suggest a logoff, a request or an error.
Expiration date: After 30 seconds up to one year
Purpose: With this cookie your behaviour on the website can be tracked and the site performance can be measured. The cookie is updated every time the information is sent to Google Analytics.
Expiration date: After 2 years
Purpose: Just like _gat_gtag_UA_ this cookie is used for keeping the requirement rate in check.
Expiration date: Afer 10 minutes
Purpose: This cookie is used to determine new sessions. It is updated every time new data or information gets sent to Google Analytics.
Expiration date: After 30 minutes
Purpose: This cookie is used to determine new sessions for recurring visitors. It is therefore a session cookie, and only stays saved until you close the browser again.
Expiration date: After closing the browser
Purpose: This cookie is used to identify the source of our website’s visitor number. This means, that the cookie saves information on where you came to our website from. This could be another site or an advertisement.
Expiration date: After 6 months
Value: No information
Purpose: The cookie is used to store custom user data. It gets updated whenever information is sent to Google Analytics.
Expiration date: After 2 years
Note: This list is by no means exhaustive, since Google are repeatedly changing the use of their cookies.
Below we will give you an overview of the most important data that can be evaluated by Google Analytics:
Heatmaps: Google creates so-called Heatmaps an. These Heatmaps make it possible to see the exact areas you click on, so we can get information on what routes you make on our website.
Session duration: Google calls the time you spend on our website without leaving it session duration. Whenever you are inactive for 20 minutes, the session ends automatically.
Bounce rate If you only look at one page of our website and then leave our website again, it is called a bounce.
Account creation: If you create an account or make an order on our website, Google Analytics collects this data.
IP-Address: The IP address is only shown in a shortened form, to make it impossible to clearly allocate it.
Location: Your approximate location and the country you are in can be defined by the IP address. This process is called IP location determination.
Technical information: Information about your browser type, your internet provider and your screen resolution are called technical information.
Source: Both, Google Analytics as well as ourselves, are interested what website or what advertisement led you to our site.
Further possibly stored data includes contact data, potential reviews, playing media (e.g. when you play a video on our site), sharing of contents via social media or adding our site to your favourites. This list is not exhaustive and only serves as general guidance on Google Analytics’ data retention.
Google has servers across the globe. Most of them are in America and therefore your data is mainly saved on American servers. Here you can read detailed information on where Google’s data centres are located: https://www.google.com/about/datacenters/inside/locations/?hl=en
Your data is allocated to various physical data mediums. This has the advantage of allowing to retrieve the data faster, and of protecting it better from manipulation. Every Google data centre has respective emergency programs for your data. Hence, in case of a hardware failure at Google or a server error due to natural disasters, the risk for a service interruption stays relatively low.
Google Analytics has a 26 months standardised period of retaining your user data. After this time, your user data is deleted. However, we have the possibility to choose the retention period of user data ourselves. There are the following five options:
As soon as the chosen period is expired, the data is deleted once a month. This retention period applies to any of your data which is linked to cookies, user identification and advertisement IDs (e.g. cookies of the DoubleClick domain). Any report results are based on aggregated information and are stored independently of any user data. Aggregated information is a merge of individual data into a single and bigger unit.
Should you generally want to deactivate, delete or manage all cookies (independently of Google Analytics), you can use one of the guides that are available for any browser:
Google Analytics is an active participant of the EU-U.S. Privacy Shield Framework, which regulates correct and save transfer of personal data.
You can find more information on this at https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&tid=111753538. We hope we were able to make you more familiar with the most important information on Google Analytics’ data processing. If you want to learn more about the tracking service, we recommend both of the following links: https://marketingplatform.google.com/about/analytics/terms/gb/ and https://support.google.com/analytics/answer/6004245?hl=en.
Of course, we want to stay in contact with you and keep you in the loop of the most important news about our company. For this, we use email marketing, which is an essential part of our online marketing. If you agree to this or if it is permitted by law, we will send you newsletters, emails or other notifications. When the term “newsletter” is used in the following text, it mainly refers to emails that are sent regularly.
If you want to participate in our email marketing (usually via newsletter), you usually have to register with your email address only. You will simply have to fill an online form and submit it. However, we may also ask you to fill in your title and name so we will be able to address you more personally.
Generally, the registration for newsletters is carried out with the so-called “double opt-in procedure”. After registering for our newsletter on our website, you will receive an email for you to confirm the newsletter registration. This will ensure that you own your email address and that no one registers with an email address that is not owned by them. Every single registration is stored either by us or by a notification tool we use. This is necessary for us to ensure that registration processes are legally correct. Therefore, the time of your registration, the time of confirmation of your registration and your IP address are usually retained. It will also be logged if you make changes to your stored data.
If you unsubscribe from our email/newsletter distribution list, we may store your address for up to three years on the basis of our legitimate interests, so that we can still prove your consent at the time. We are only allowed to process this data if we have to defend ourselves against any claims.
However, if you confirm that you have given us your consent to subscribe to the newsletter, you can submit an individual request for deletion at any time. Should you object to your consent permanently, we reserve the right to save your email address in a blacklist. We will of course keep your email address for as long as you are voluntarily subscribed to our newsletter.
Our newsletter is sent on the basis of your consent. This means that we are only allowed to send you a newsletter if you have actively registered for it beforehand. If consent is not required, newsletters will be sent on the basis of the legitimate interest in direct marketing, provided it is legally permitted. Should we commission a service provider, this will be done on the basis of our legitimate interest also. We record your registration process for the purpose of using it as proof that it is in compliance with our laws.
Of course, we do not want to bother you with our newsletter in any way. Therefore, we really strive to offer only relevant and interesting content, such as more information about our company, our services or our products. Since we are continuously improving our offers, our newsletter will always update you on any news or special offers and lucrative promotions.
If we commission a service provider with a professional mailing tool for our email marketing, we do this in order to be able to offer you our newsletter fast and securely.
If you subscribe to our newsletter via our website, you will confirm your membership in our email list via an email that we will send to you. In addition to your IP address and email address, your name, address and telephone number may also be saved. However, this will only be done if you agree to this data retention. Moreover, information about your device or the type of content you prefer on our website may also be stored. In the “Automatic data storage” section you can find out more about how your data is stored when you visit a website.
You can find information on special email marketing services in the following sections, provided the information you are looking for is available.
You have the option to cancel your newsletter subscription at any time. All you have to do is revoke your consent to the newsletter subscription. This usually only takes a few minutes or a few clicks. Most of the time you will find a link directly in our newsletter, with which you will be able to cancel the subscription. Should you not be able to find the link in the newsletter, you can contact us by email and we will cancel your newsletter subscription for you.
Like many other websites, we use the services of the newsletter company MailChimp on our website. The operator of MailChimp is the company The Rocket Science Group, LLC, 675 Ponce de Leon Ave NE, Suite 5000, Atlanta, GA 30308 USA. With the aid of MailChimp we can easily send you interesting news via newsletter. For the use of the service we do not have to install anything but can still access a pool of very efficient features. In the following we will give more details on this email marketing service and will inform you about the most important data protection aspects.
MailChimp is a cloud-based newsletter management service. “Cloud-based“ means that we do not need to install MailChimp on our own computer or server. Instead, we use the service on an external server, or more specifically via an IT infrastructure, which is available via the internet. Using a software this way is also called SaaS (software as a service).
MailChimp allows us to chose from a wide range of different email types. Depending on what goal we want to reach with our newsletter, we can run individual campaigns, regular campaigns, auto responders (automated emails), A/B tests, RSS campaigns (mailings at pre-set times and frequencies) and follow-up campaigns.
The reason we would use any newsletter service is so we can stay in contact with you. We want to keep you on the loop what news or attractive offers we have for you at the time. As we constantly seek out the easiest and best solutions for our marketing measures, we have decided on MailChimp as our newsletter management service. While the software is very easy to use, it offers many helpful features. For example, it allows us to create interesting and attractive newsletters in only a short time. With integrated design templates we can create every newsletter in an individual way. Due to the “responsive design” feature, our contents are also presented in a readable and pleasant way on your smartphone (or any other mobile device).
With tools such as A/B testing or the extensive analysis options, we can swiftly tell how you like our newsletters. This means that we can react if necessary and improve our offer or our services.
Another advantage is MailChimp’s “cloud system”. The data is not stored and processed directly on our server. We can retrieve the datafrom external servers and therefore save our memory space and also decrease maintenance effort.
Rocket Science Group LLC (MailChimp) operate online platforms which enable us to get in contact with you, provided you subscribed to our newsletter. If you become a subscriber of our newsletter via our website, by email you agree to become a member of a MailChimp email list. Then, MailChimp saves your subscription data and your IP address, so it can verify your entry into the list provider. Moreover, MailChimp stores your email address, your name, your physical address and demographic information, such as language or location.
This information is used to send emails to you and to allow certain other MailChimp functions (e.g. the evaluation of newsletters).
MailChimp also shares information with third parties to improve its services. Moreover, MailChimp shares certain data with advertising partners of third parties to get a better understanding of its clients’ interests, in order to provide relevant contents and target-oriented advertising.
With so-called “web beacons” (small graphics in HTML emails), MailChimp can determine if an email has arrived, has been opened or if links have been clicked. This information is then stored on MailChimp’s servers. That way we receive statistical evaluations and can see how you liked our newsletter. Therefore, we can tailor our offer better to your wishes and improve our service.
Moreover, MailChimp are allowed to use this data for improving their own service. Thus, they can for example technically optimise the distribution or determine the location (or the country) of the recipient.
The following cookies can be set by MailChimp. The list is not exhaustive and is merely an exemplary selection:
Purpose: This cookie is necessary to provide the services of Mailchimp. It is always set when a user registers for a newsletter mailing list.
Expiry date: at the end of the session
Purpose: The cookie is used to differentiate a human from a bot. That way secure reports on the use of a website can be created.
Expiry date: after 2 hours
Purpose: This cookie comes from MasterPass Digital Wallet (a MasterCard service) and is used to offer a secure and easy virtual payment process to visitors. For this purpose, the user is anonymously identified on the website.
Expiry date: after 2 hours
Purpose: We could not find any further information about the purpose of this cookie.
Expiry date: after one year
Since MailChimp is an American company, all retained data is stored on American servers.
Generally, the data stays permanently saved on MailChimp’s servers and is deleted only when you request it. You can have your contact information with us deleted. This permanently removes all your personal data for us and anonymises you in MailChimp’s reports. However, you can also request the deletion of your data permanently at MailChimp. Then all your data are removed from there and we receive a notification from MailChimp. After we receive the email we have 30 days to delete your contact from all integrations.
You can withdraw your approval for the receipt of our newsletters anytime, by clicking the link in the lower area of the received newsletter email. When you click on the unsubscribe link, your data with MailChimp gets deleted.
When you land on a MailChimp website via a link in our newsletter and cookies are consequently set in your browser, you can delete or deactivate these cookies anytime.
Depending on the browser, the deactivation or deletion differs slightly. The following instructions show how to manage cookies in your browser:
If you generally do not want to allow any cookies, you can set up your browser in a way so it would notify you whenever a potential cookie is about to be set. This lets you decide upon the placement of every single cookie.
On our website we use Google Maps of the company Google Inc. (1600 Amphitheatre Parkway Mountain View, CA 94043, USA). With the use of Google Maps, we can show you locations in a better way and can therefore adjust our service to your needs. Due to the utilisation of Google Maps, data gets transferred to Google and is saved on Google’s servers. In the following, we want to explain in detail what Google Maps is, why we use this Google service, what data is stored and how you can prevent this.
Google Maps is an internet maps service of the company Google Inc. With Google Maps you can search for exact locations of cities, sights, accommodations or businesses online via a PC, a tablet or an app. If businesses are represented on Google My Business, the respective location as well as other information about the company are shown there. In order to show route directions, a location’s map sections can be integrated in a website through a HTML-code. Google Maps depicts the earth’s surface as either a road map or as air and satellite images. Due to the street view and high-quality satellite images, it is possible for exact representations to be made.
The efforts we make on this page have the goal of giving you a useful and meaningful experience on our website. Through the integration of Google Maps, we can offer you essential information on various locations. Therefore, you can spot our office address with one glance. Furthermore, the route directions always show you the best and fastest way to us. You can retrieve the route directions for traveling either by car, by public transport, on foot or by bike. The integration of Google Maps is a part of our customer service.
For Google Maps to offer its full services, the company must collect and store your data. This includes your entered search terms, your IP-address as well as your longitude and latitude coordinates. When you use the route-planner function, the entered start address is stored also. However, this data retention happens on Google Maps‘ websites. We can only inform you about it but cannot influence it in any way. Since we have included Google Maps on our website, Google will set at least one cookie (Name: NID) into your browser. This cookie saves data on your user behaviour. Google primarily uses this data to optimise ist own services and to provide you with individual, personalised advertisements.
The following cookies are set in your browser due to the integration of Google Maps:
Purpose: Google uses NID in order to adjust advertisments to your Google searches. With the cookie’s help Google “remembers“ your most frequently entered search queries or your previous interaction with ads. That way you always receive customised adertisments. The cookie contains a unique ID, wich Google uses to collect your personal settings for advertising porposes.
Expiration date: after 6 months
There are Google servers in data centres across the entire planet. However, most servers are in America. For this reason, your data is widely stored in the USA. Here you can read in detail about where the Google servers are located: https://www.google.com/about/datacenters/inside/locations/?hl=en
Google distributes data to various data carriers. This makes it possible to retrieve the data faster and to better protect it from possible attempted manipulations. Every server has emergency programs. Thus, should for example a problem with Google’s hardware occur or should a natural disaster impact the servers, any data will quite certainly stay protected.
Moreover, Google saves some data for a specified period. With some other data on the other hand, Google only offers the opportunity for deleting it manually. Furthermore, the company anonymises information (e.g. advertising data) in server logs, by deleting a part of the IP-address and cookie information after 9 to 18 months.
Due to the automatic delete function for location and activity data, which was introduced in 2019, information that is used for determining your location and web or app activity is saved for either 3 or 18 months, depending on your preferred decision, and is deleted thereafter.
Furthermore, it is possible to delete this data manually from your browser history via your Google account anytime. If you want to prevent the determination of your location altogether, you must pause the category “Web and app activity” in your Google account. Click on “Data and personalisation” and then choose the option “Activity controls”. Here you can switch the activities on or off.
Moreover, in your browser you can deactivate, delete or manage individual cookies. This function can differ a little, depending on what browser you are using. The following instructions will show you how to manage cookies in your browser:
If you generally do not want to permit any cookies, you can set up your browser in a way that ensures you get informed whenever a cookie is about to be placed. That way you can decide to either permit or refuse every single cookie.
Google is an active participant of the EU-U.S. Privacy Shield Framework, which regulates the correct and safe transfer of personal data. You can find more information on this on https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI.
If you want to find out more about Google’s data processing, we recommend the company’s internal privacy statement on https://policies.google.com/privacy?hl=en-GB.
Source: Created with the Datenschutz Generator by AdSimple