Data protection

Data protection
Responsible for data processing is:

48g bio cosmetics GmbH 
Unter den Linden 32/34
10117 Berlin 
Germany

Mail support@48grams.com

Thank you for your interest in our online shop. The protection of your privacy is very important to us. In the following we will inform you in detail about the handling of your data. 

1. ACCESS DATA AND HOSTING 


You can visit our website without giving any personal information. Each time a website is called up, the web server only automatically saves a so-called server log file, which contains, for example, the name of the requested file, your IP address, the date and time of the call, the amount of data transferred and the requesting provider (access data) and documents the call. When you visit our website / application, the browser used on your device automatically sends information to the server of our website / application and temporarily stores it in a so-called log file. We have no influence on this. The following information is recorded without any action on your part and stored until it is automatically deleted: 
• the IP address of the requesting internet-enabled device, 
• the date and time of access, 
• the name and URL of the file called up, 
• the website / application from which the access was made (referrer URL), 
• the browser you are using and, if applicable, the operating system of your internet-enabled computer and the name of your access provider. 
These access data are evaluated exclusively for the purpose of ensuring trouble-free operation of the site and improving our offer. According to Art. 6 Para. 1 S. 1 lit. All access data will be deleted no later than seven days after the end of your visit to the website. 
Third party hosting services 
As part of processing on our behalf, a third-party provider provides us with the services for hosting and displaying the website. All data that is collected as part of the use of this website or in the forms provided in the online shop as described below are processed on its servers. Processing on other servers only takes place within the framework explained here. 
This service provider is located within a country of the European Union or the European Economic Area.

2. DATA COLLECTION AND USE FOR CONTRACT PROCESSING, CONTACTING AND OPENING A CUSTOMER ACCOUNT 


We collect personal data if you voluntarily provide it to us as part of your order or when you contact us (e.g. using the contact form or email). Mandatory fields are marked as such, because in these cases we need the data to process the contract or to process your contact and you cannot send the order or contact without them. Which data is collected can be seen from the respective input forms. We use the data you have provided in accordance with Art. 6 Para. 1 S. 1 lit. b GDPR to process contracts and to process your inquiries. 
Insofar as you have given your consent to this in accordance with Article 6 Paragraph 1 Clause 1 lit. a GDPR by deciding to open a customer account, we will use your data for the purpose of opening a customer account. 
After the contract has been fully processed or your customer account has been deleted, your data will be restricted for further processing and deleted after the retention periods under tax and commercial law have expired, unless you have expressly consented to further use of your data or we reserve the right to use data beyond this, as required by law is permitted and about which we will inform you in this declaration. The deletion of your customer account is possible at any time and can be done either by sending a message to the contact option described below or using a function provided in the customer account.
 

3. DATA TRANSFER 


In order to fulfill the contract in accordance with Art. 6 Paragraph 1 Sentence 1 lit. Depending on which payment service provider you select in the ordering process, we pass on the payment data collected for this purpose to the credit institution commissioned with the payment and, if applicable, to the payment service provider commissioned by us or to the selected payment service. In some cases, the selected payment service providers also collect this data themselves if you create an account there. In this case, you must log in to the payment service provider with your access data during the ordering process. The data protection declaration applies in this respect.
Of the respective payment service provider. 
The same applies to the transfer of data to our partners in those cases in which they take over the shipping for us (drop shipping). 
Data transfer to shipping service provider
If you have given us your express consent to this during or after your order, we will forward your e mail address to the selected shipping service provider in accordance with Art. 6 Para. 1 S. 1 lit. can contact you for the purpose of delivery notification or coordination. 
The consent can be revoked at any time by sending a message to the contact option described below or directly to the shipping service provider at the contact address listed below. After revocation, we will delete the data you have provided for this purpose, unless you have expressly consented to further use of your data or we reserve the right to use data beyond this, which is permitted by law and about which we will inform you in this declaration.

DHL Paket GmbH 
Sträßchenweg 10 
53113 Bonn 
Germany

Data transfer to debt collection companies 
In order to fulfill the contract in accordance with Art. 6 Paragraph 1 Sentence 1 lit. In this case, the debt will be collected directly from the debt collection company. In addition, the transfer serves to safeguard our predominantly legitimate interests in an effective assertion or enforcement of our payment claim in accordance with Art. 6 Para. 1 S. 1 lit.f GDPR.
 

4. EMAIL NEWSLETTER AND POSTAL ADVERTISING 


Email advertising with registration for the newsletter 
If you register for our newsletter, we use the data required for this or separately provided by you in order to regularly send you our e-mail newsletter based on your consent in accordance with Art. 6 Para. 1 S. 1 lit. 
Unsubscribing from the newsletter is possible at any time and can be done either by sending a message to the contact option described below or via a link provided in the newsletter. After unsubscribing, we will delete your e-mail address from the recipient list, unless you have expressly consented to further use of your data or we reserve the right to use data beyond this, which is permitted by law and about which we will inform you in this declaration. 
E-mail advertising without registering for the newsletter and your right to object If we receive your e-mail address in connection with the sale of a product or service and you have not objected, we reserve the right to offer you regular offers on similar products as those already purchased on the basis of Section 7 (3) UWG , to be sent from our range by e-mail. This serves to safeguard our predominantly legitimate interests in addressing our customers for advertising purposes. 
You can object to this use of your email address at any time by sending a message to the contact option described below or via a link provided in the advertising email without incurring any costs other than the transmission costs according to the basic tariffs. 
The newsletter is sent as part of processing on our behalf by a service provider to whom we pass on your e-mail address for this purpose. This service provider is located within a country of the European Union or the European Economic Area. 
Email advertising when registering for the product alert 
If you register for our product alarm for items that are not available, we will use the data required for this or separately provided by you to inform you by e-mail about a renewed availability of the products. These e-mails are sent on the basis of your consent in accordance with Art. 6 Para. 1 S. 1 lit. a GDPR. 
Unsubscribing from the product alarm is possible at any time and can be done either by sending a message to the contact option described below or via a link provided in the e-mail. After unsubscribing, we will delete your e-mail address, unless you have expressly consented to further use of your data or we reserve the right to use data beyond this, which is permitted by law and about which we will inform you in this declaration. 
Postal advertising and your right to object 
In addition, we reserve the right to use your first and last name and your postal address for our own advertising purposes, e.g. to send you interesting offers and information about our products by post. This serves to safeguard our predominantly legitimate interests in addressing our customers with advertising in accordance with Art. 6 Para. 1 S. 1 lit. 
The commercials will end within the scope of processing on our behalf by a service provider, to whom we pass on your data for this purpose. 
You can object to the storage and use of your data for these purposes at any time by sending a message to the contact option described below.

5. DATA PROCESSING FOR PAYMENT PROCESSING 


When processing payments in our online shop, we work together with these partners: technical service providers, credit institutions, payment service providers. 

5.1 Data processing for transaction processing 


Depending on the selected payment method, we pass on the data necessary for processing the payment transaction to our technical service providers who work for us in the context of order processing, or to the commissioned credit institutions or to the selected payment service provider, insofar as this is necessary to process the payment. This serves to fulfill the contract in accordance with Art. 6 Para. 1 S. 1 lit. b GDPR. In some cases, the payment service providers collect the data required to process the payment themselves, e.g. on their own website or through a technical integration in the ordering process. The data protection declaration of the respective payment service provider applies in this respect. 
If you have any questions about our partners for payment processing and the basis of our cooperation with them, please use the contact option described in this data protection declaration. 

5.2 Data processing for the purpose of fraud prevention and the optimization of our payment processes 


If necessary, we give our service providers further data, which they use together with the data necessary for processing the payment as our contract processors for the purpose of fraud prevention and the optimization of our payment processes (e.g. invoicing, processing of contested payments, support for accounting). According to Art. 6 Para. 1 S. 1 lit.

6. USE OF RATING AND SEAL GRAPHICS 


Integration of the Trusted Shops Trustbadge 
The Trusted Shops Trustbadge is integrated on this website to display our Trusted Shops seal of approval and any reviews that may have been collected, as well as to offer Trusted Shops products to buyers after an order has been placed. 
This serves to safeguard our legitimate interests, which predominate in the context of a weighing up of interests, in optimal marketing by enabling safe shopping in accordance with Art. 6 Para. 1 S. 1 lit.f GDPR. The Trustbadge and the services advertised with it are offered by Trusted Shops GmbH, Subbelrather Str.15C, 50823 Cologne. The Trustbadge is provided by a CDN provider (Content Delivery Network) as part of order processing. Trusted Shops GmbH also uses service providers from the USA. An adequate level of data protection is ensured. Further information on data protection at Trusted Shops GmbH can be found here. 
When you call up the Trustbadge, the web server automatically saves a so-called server log file, which also contains your IP address, the date and time of the call, the amount of data transferred and the requesting provider (access data) and documents the call. Individual access data are stored in a security database for the analysis of security vulnerabilities. The log files are automatically deleted no later than 90 days after creation. 
Further personal data is transferred to Trusted Shops GmbH if you decide to use Trusted Shops products after completing an order or if you have already registered to use them. The contractual agreement made between you and Trusted Shops applies. For this purpose, personal data is automatically collected from the order data. Whether you as a buyer is already registered for a product use is automatically checked using a neutral parameter, the email address hashed by a cryptological one-way function. The e-mail address is converted into this hash value, which cannot be decrypted for Trusted Shops, before it is transmitted. After checking for a match, the parameter is automatically deleted. 
This is necessary for the fulfillment of our and Trusted Shops ‘overriding legitimate interests in the provision of the buyer protection linked to the specific order and the transactional evaluation services according to Art. 6 Para. 1 S. 1 lit.f GDPR. Further details, including the objection, can be found in the Trusted Shops data protection declaration linked above and in the Trustbadge. 
EHI seal of approval widget 
We use the "EHI Geprüfter Online-Shop" seal on our website, a widget from EHI Retail Institute GmbH, Spichernstrasse 55, 50672 Cologne ("EHI"). When visiting our website, dynamic content (current shop rating, certificate, etc.) is loaded into the widget from the EHI servers. Your IP address, the previously visited website, the date and time of the call, the amount of data transferred, the browser type used, the operating system used by you and the requesting provider (referrer data) are transmitted to the EHI servers. The processing takes place on the basis of our predominantly legitimate interest in optimizing our offer in accordance with Art. 6 Para. 1 f GDPR. Further information on data protection at EHI can be found at: www.ehi-siegel.de/datenschutz 

7. COOKIES AND WEB ANALYSIS 


In order to make visiting our website attractive and to enable the use of certain functions, to display suitable products or for market research, we use so-called cookies on various pages, provided that you have given your consent in accordance with Art. 6 Para. 1 S. 1 lit. have granted. Cookies are small text files that are automatically saved on your device. Some of the cookies we use are deleted at the end of the browser session, i.e. after you close your browser (so-called session cookies). Other cookies remain on your device and enable us to recognize your browser the next time you visit (persistent cookies). You can see the duration of the storage in the overview in the cookie settings of your web browser. You can set your browser so that you are informed about the setting of cookies and individually decide whether to accept them or to exclude the acceptance of cookies for certain cases or in general. If you do not accept cookies, the functionality of our website may be restricted. Each browser differs in the way it manages cookie settings. This is described in the help menu of every browser, which explains how you can change your cookie settings. You can find these for the respective browser under the following links: Internet Explorer ™ 
Safari ™ 
Chrome ™ 
Firefox ™ 
Opera ™ 
In addition, you can revoke your consent at any time by sending a message to the contact option described in the data protection declaration. 
Use of Google (Universal) Analytics for web analysis insofar as you have given your consent to this in accordance with Art. 6 Para. 1 S. 1 lit. a GDPR, this website uses Google (Universal) Analytics for the purpose of website analysis. The web analysis service is offered by Google Ireland Limited, a company incorporated and operated under Irish law with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland. (www.google.de). Google (Universal) Analytics uses methods that enable your use of the website to be analyzed, such as cookies. The automatically collected information about your use of this website is usually transferred to a Google server in the USA and stored there. By activating the IP anonymization on this website, the IP address is shortened before transmission within the member states of the European Union or in other contracting states of the Agreement on the European Economic Area. The full IP address will only be transmitted to a Google server in the USA and shortened there in exceptional cases. The anonymized IP address transmitted by your browser as part of Google Analytics is generally not merged with other Google data. After the purpose and end of the use of Google Analytics by us, the data collected in this context will be deleted. 
As far as information is transmitted to and stored by Google on servers in the USA, the American company Google LLC is certified under the EU-US Privacy Shield. A current certificate can be viewed here. Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield. 
You can revoke your consent at any time with effect for the future by downloading and installing the browser plug-in available under the following link: https://tools.google.com/dlpage/gaoptout? hl=de. This prevents the collection of the data generated by the cookie and related to your use of  
the website (including your IP address) and the processing of this data by Google. As an alternative to the browser plug-in, you can click this link to prevent Google Analytics from collecting data on this website in the future. An opt-out cookie will be stored on your device. If you delete your cookies, you will be asked again for your consent. 
If you have given your consent to this in accordance with Article 6 Paragraph 1 Sentence 1 Letter a GDPR, this website also uses Google Signals. This is a He Extension function of Google Analytics, which enables so-called "cross-device tracking". This means that as far as your internet-enabled devices are linked to your Google account, Google can generate reports on usage behavior (in particular the number of users across devices), even if You change your device. Google uses data for this, provided you have activated the "personalized advertising" setting in your Google account. 
We do not process personal data in this respect, we only receive statistics based on Google Signals. You can revoke your consent at any time with effect for the future by downloading and installing the browser plug-in available under the following link: https://tools.google.com/dlpage/gaoptout? hl=de. This prevents the collection of the data generated by the cookie and related to your use of the website (including your IP address) and the processing of this data by Google. You can also 
deactivate the "personalized advertising" setting in your Google Account. Details can be found here. 
New Relic (New Relic Inc.) 
This offer uses the web analysis service New Relic, which is operated by New Relic, Inc., 188 Spear St, San Francisco, CA 94105, USA. With the help of New Relic, pseudonymised visitor data are collected, evaluated and stored on the basis of our legitimate interest in the statistical analysis of user behavior for optimization and marketing purposes in accordance with Article 6 (1) (f) GDPR. From this data, pseudonymised usage profiles can be created and evaluated for the same purpose. New Relic uses so-called cookies, which are small text files that are stored locally in the cache of the visitor's Internet browser. These cookies serve, among other things, to recognize the browser and thus enable a more precise determination of the statistical data. The data of the user's IP address is also collected, but is pseudonymised immediately after it is collected and before it is stored in order to exclude any personal reference. 
New Relic Inc., based in the USA, is certified for the US-European data protection agreement "Privacy Shield", which guarantees compliance with the data protection level applicable in the EU. New Relic will under no circumstances combine your personal data with other New Relic data. If you would like to object to the evaluation of user behavior via cookies, you can set your browser so that you are informed about the setting of cookies and individually decide whether to accept them or to exclude the acceptance of cookies for certain cases or in general. Alternatively, you can use the deactivation page for consumers from the EU http://www.youronlinechoices.com/de/ praferenzmanagement/ to check whether advertising cookies from New Relic are being used in your browser and deactivate them. 
You can access New Relic's data protection guidelines at the following Internet address: https:// www.newrelic.de/cookie-policy As far as legally required, we have your consent to the processing of your data described above in accordance with Art. 6 Para. 1 lit. a GDPR caught up. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option outlined above to make an objection. 
Pingdom (Pingdom AB) 
This website uses the monitoring service Pingdom, which is operated by the Swedish Pingdom AB, Kopparbergsvägen 8, 722 13, Västerås, Sweden. Pingdom uses so-called cookies, which are small text files that are stored locally in the cache of the visitor's Internet browser. These cookies are used to recognize the browser and thus enable an analysis of your accesses as well as the loading behavior ("performance") and the availability of our website in order to improve the loading behavior and the presentation of the content on the website Personal data are processed, this is 
done in accordance with Art. 6 Paragraph 1 lit. f GDPR due to our legitimate interest in continuous content and technical optimization of the online presence so that cookies can no longer be stored on your computer in the future or cookies that have already been stored are deleted. Switching off all cookies may, however, mean that some functions on our website can no longer be carried out. Pingdom's data protection guidelines can be found at https://www.pingdom.com/l no matter / privacy-policy / 
As far as legally required, we have your eggs to process your data as described above Obtained consent in accordance with Article 6 (1) (a) GDPR. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option outlined above to make an objection. 
Mouseflow (Mouseflow ApS) 
This website uses Mouseflow, a web analysis tool from Mouseflow ApS, Flaesketorvet 68, 1711 Copenhagen, Denmark, to record randomly selected individual visits (only with a pseudonymised IP address). This creates a log of mouse movements and clicks with the intention of randomly playing back individual website visits and deriving potential improvements for the website from them. If personal data is also processed here, this is done in accordance with Article 6 (1) (f) GDPR on the basis of our legitimate interest in the statistical analysis of user behavior for optimization purposes. The processed information will not be passed on to third parties. You can permanently object to Mouseflow's web analysis at any time by setting an opt-out cookie by downloading and installing the opt-out cookie available under the following link: www.mouseflow.de/opt-out/ Further information and the data protection provisions of You can view Mouseflow here: https:// mouseflow.co/privacy/ The opt-out cookie is set by Quantcast. 
As far as legally required, we have obtained your consent for the processing of your data described above in accordance with Article 6 (1) (a) GDPR. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option outlined above to make an objection. 
Use of etracker for web analysis 
Insofar as you have given your consent to this in accordance with Article 6 Paragraph 1 Sentence 1 lit. usage profiles are created using pseudonyms. Cookies may be used. The pseudonymized usage profiles will not be merged with personal data about the bearer of the pseudonym without express consent to be given separately. After the purpose and the end of the use of eTracker by us, the data collected in this context will be deleted. You can revoke your consent at any time with future effect by clicking this link.
After you withdraw your consent, an opt-out cookie will be stored on your device. If you delete your cookies, you will be asked again to give your consent. 

8. ONLINE MARKETING 


Google Ads 
We use Google Ads to advertise this website in Google search results and on third-party websites. For this purpose, the so-called remarketing cookie from Google is set when you visit our website, which automatically enables interest-based advertising by means of a pseudonymous CookieID and based on the pages you have visited. This serves to safeguard our predominantly legitimate interests in the optimal marketing of our website in accordance with Art. 6 Para. 1 S. 1 lit. a GDPR. After the purpose and the end of the use of Google Ads by us, the data collected in this context will be deleted. 
Any further data processing will only take place if you have agreed with Google that your web and app browser history will be linked by Google to your Google account and that information from your Google account will be used to personalize advertisements that you see on the web. In this case, if you are logged in to Google while visiting our website, Google will use your data together with Google Analytics data to create and define target group lists for cross-device remarketing. For this purpose, your personal data will be temporarily linked by Google with Google Analytics data in order to form target groups. 
Google Ads is an offer from Google Ireland Limited, a company incorporated and operated under Irish law with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland (www.google.de). 
As far as information is transmitted to and stored by Google on servers in the USA, the American company Google LLC is certified under the EU-US Privacy Shield. A current certificate can be viewed here. Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield. 
You can deactivate the remarketing cookie via this link. In addition, you can find out more about the setting of cookies from the Digital Advertising Alliance and make settings for this. Google customer reviews (formerly Google certiferter dealer program)
We work with Google as part of the "Google Customer Reviews" program. The provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google"). This program gives us the opportunity to receive customer reviews from users After making a purchase on our website, you will be asked whether you would like to take part in a Google e-mail survey. If you give your consent in accordance with Art. 6 Para. 1 lit. -Mail address to Google. You will receive an email from Google Customer Reviews, in which you are asked to rate the buying experience on our website. The rating you submitted is then summarized with our other reviews and shown in our Google Customer Reviews and logo in our Merchant Center dashboard. Your rating will also be used for Google seller ratings. As part of the use of Google customer reviews, it may also be used ch to the transmission of personal data to the servers of Google LLC. come in the US. You can revoke your consent at any time by sending a message to the person responsible for data processing or to Google. 
In the event that personal data is transmitted to Google LLC. based in the USA, Google LLC. certified for the US-European data protection agreement "Privacy Shield", which guarantees compliance with the data protection level applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list 
Further information on data protection from Google in connection with the Google Customer Reviews program can be found at the following link: https://support.google.com/merchants/ answer/7188525?hl=de Further information on data protection from Google seller reviews can be  
found here Read the link: https://support.google.com/google-ads/answer/2375474 Microsoft Advertising (Bing Ads) 
We use Microsoft Advertising to advertise this website in the Bing, Yahoo and MSN search results and on third-party websites. If you have given us your consent to this in accordance with Art. 6 Para. 1 S. 1 lit. enables. After the purpose and end of the use of Microsoft Advertising by us, the data collected in this context will be deleted. 
Microsoft Advertising is an offer from Microsoft Corporation (www.microsoft.com). Microsoft Corporation is headquartered in the USA and is certified under the EU-US Privacy Shield. A current certificate can be viewed here. Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield. 
You can revoke your consent at any time with future effect by deactivating the remarketing cookie via this link. In addition, you can find out more about the setting of cookies from the Digital Advertising Alliance and make settings for this. 
Criteo (Criteo SA)
On this website, the technology of Criteo SA, 32 Rue Blanche, 75009 Paris, France ("Criteo") uses cookie text files to collect information about the surfing behavior of website visitors based on our legitimate interest in displaying personalized advertising in accordance with Art. 6 Paragraph 1 lit. to personally identify the visitor to this website. There will be no other use or disclosure to third parties. To object to the collection of data and the creation of pseudonymised user profiles for the future, you can download the following so-called opt-out cookie: Criteo Austragung (https: // www.criteo.com/de/privacy/) 
Further information on Criteo's technology can be found in the Criteo data protection provisions: https://www.criteo.com/de/privacy/ 
As far as legally required, we have obtained your consent for the processing of your data described above in accordance with Article 6 (1) (a) GDPR. You can revoke your consent at any time with effect for the future. In order to exercise your revocation, please follow the option outlined above to make an objection. 
Sovendus 
Voucher offers from Sovendus GmbH: For the selection of a voucher offer that is currently interesting for you, we will use pseudonyms 
The hash value of your email address and your IP address is sent and encrypted to Sovendus GmbH, Moltkestr. 11, 76133 Karlsruhe (Sovendus) (Art. 6 Paragraph 1 f GDPR). The pseudonymised hash value of the email address is used to take into account any possible objection to advertising by Sovendus (Art. 21 Paragraph 3, Art. 6 Paragraph 1 c GDPR). The IP address is used by Sovendus exclusively for data security purposes and is usually anonymized after seven days (Art. 6 Paragraph 1 f GDPR). In addition, we transmit pseudonymized order number, order value with currency, session ID, coupon code and time stamp to Sovendus for billing purposes (Art. 6 Paragraph 1 f GDPR). If you are interested in a voucher offer from Sovendus, there is no advertising objection to your e-mail address and you click on the coupon banner that is only displayed in this case, we will encrypt your salutation, name and your e-mail address to Sovendus Preparation of the voucher transmitted (Art. 6 Paragraph 1 b, f GDPR). 
Special offers from Sovendus GmbH: In order to select a special offer that is currently of interest to you in the region, we pseudonymise and encrypt your salutation, year of birth, country, zip code, hash value of the e-mail address and your IP address to Sovendus GmbH, Moltkestr. 11, 76133 Karlsruhe (Sovendus) (Art. 6 Paragraph 1 f GDPR). The pseudonymised hash value of the email address is also used to take into account any possible objection to advertising by Sovendus (Art. 21 Paragraph 3, Art. 6 Paragraph 1 c GDPR). The IP address is used by Sovendus exclusively for data security purposes and is usually anonymized after seven days (Art. 6 Paragraph 1 f GDPR).
When you click on a special offer, we will also send your name, your address data and your e-mail address to Sovendus in encrypted form in order to prepare the personalized request for the special offer from the product provider (Art. 6 Paragraph 1 b, f GDPR). 
For more information on the processing of your data by Sovendus, please refer to the online data protection information at https://www.sovendus.de/datenschutz. 

9. SOCIAL MEDIA 


Use of single sign-on procedures 
Facebook Connect 
On our website you can create a customer account or register using the social plug-in "Facebook Connect" from the Facebook social network operated by Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbor, Dublin 2, Ireland (" Facebook "), if you have a Facebook profile, register using the so-called single sign-on technology. You can recognize the "Facebook Connect" social plugins on our website by the blue button with the Facebook logo and the label "Log in with Facebook" or "Connect with Facebook" or "Log in with Facebook" or "Sign in with." Facebook ". 
When you call up a page on our website that contains such a plugin, your browser establishes a direct connection to the Facebook servers. The content of the plugin is transmitted directly from Facebook to your browser and integrated into the page. Through this integration, Facebook receives the information that your browser has accessed the corresponding page of our website, even if you do not have a Facebook profile or are not currently logged into Facebook. This information (including your IP address) is sent directly from your browser to a Facebook Inc. server in the USA and stored there. These data processing operations are carried out in accordance with Article 6 (1) (f) GDPR on the basis of Facebook's legitimate interest in displaying personalized advertising based on your surfing behavior. 
By using this "Facebook Connect" button on our website, you also have the option of logging in or registering on our website using your Facebook user data. Only if you were informed about the exchange before the registration process If you give your express consent to data with Facebook in accordance with Art. 6 Paragraph 1 lit. publicly available information. This information includes user ID, name, profile picture, age and gender. 
We would like to point out that following changes to Facebook's data protection conditions and terms of use, if you have given your consent, your profile pictures, the user IDs of your friends and the friends list may also be transferred if this is marked as "public" in your privacy settings on Facebook The data transmitted by Facebook are used by us to create a user account with the necessary data (title, first name, surname, address data, country, email address, date of birth), saved and processed if you have approved them on Facebook. Conversely, on the basis of your consent, we can transfer data (e.g. information on your surfing or purchasing behavior) to your Facebook profile. 
The consent given can be revoked at any time by sending a message to the person responsible named at the beginning of this data protection declaration. 
Facebook Inc., based in the USA, is certified for the US-European data protection agreement "Privacy Shield", which guarantees compliance with the data protection level applicable in the EU. The purpose and scope of the data collection and the further processing and use of the data by Facebook as well as your related rights and setting options to protect your privacy can be found in Facebook's data protection information: https://www.facebook.com/policy.php If you do not want Facebook to assign the data collected via our website directly to your Facebook profile, you must log out of Facebook before visiting our website. You can also completely prevent the Facebook plugins from loading with add-ons for your browser, e.g. with "Adblock Plus" (https://adblockplus.org/de/). 
Use of social plugins from Facebook, Twitter, Instagram 
So-called social plugins ("plugins") from social networks are used on our website. 
When you call up a page on our website that contains such a plugin, your browser establishes a direct connection to the servers of the respective social network. The content of the plug-in is transmitted directly to your browser by the respective provider and integrated into the page. By integrating the plugins, the providers receive the information that your browser has accessed the corresponding page of our website, even if you do not have a profile or are not currently logged in. This information (including your IP address) is transmitted directly from your browser to a server of the respective provider (possibly in the USA) and stored there. If you are logged in to one of the services, the providers can directly assign your visit to our website to your profile in the respective social network. If you interact with the plugins, for example press the "Like" or the "Share" button, the corresponding information is also transmitted directly to a server of the provider and stored there. The information is also published on the social network and shown to your contacts there. This serves to safeguard our predominantly legitimate interests in the optimal marketing of our offer in accordance with Art. 6 Para. 1 S. 1 lit.f GDPR.
YouTube video plugins 
Third-party content is included on this website. This content is provided by Google ("provider"). YouTube is an offer from Google Ireland Limited, a company registered and operated under Irish law with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland (www.google.de ). The extended data protection setting is activated for videos from YouTube that are integrated on our site. This means that no information from website visitors is collected and stored on YouTube unless they play the video. The integration of the videos serves to safeguard our predominantly legitimate interests in the optimal marketing of our offer in accordance with Art. 6 Para. 1 S. 1 lit.f GDPR. 
The purpose and scope of the data collection and the further processing and use of the data by the providers on their pages as well as a contact option and your related rights and setting options to protect your privacy can be found in the data protection information of the providers: https://www.facebook.com/policy.php 
https://twitter.com/de/privacy 
https://help.instagram.com/155833707900388 
https://policies.google.com/privacy 
If you do not want the social networks to assign the data collected via our website directly to your profile in the respective service, you must log out of the relevant service before visiting our website. You can completely prevent the loading of the plugins with add-ons for your browser, e.g. B. with the script blocker "NoScript". 
Our online presence on Facebook, Twitter, Youtube, Instagram 
Our presence on social networks and platforms serves for better, active communication with our customers and interested parties. There we provide information about our products and current special promotions. 
When you visit our online presence on social media, your data can be automatically collected and saved for market research and advertising purposes. This data is created using pseudonyms so-called usage profiles created. These can be used, for example, to place advertisements inside and outside the platforms that presumably correspond to your interests. For this purpose, cookies are usually used on your device. The visitor behavior and the interests of the user are stored in these cookies. According to Art. 6 Paragraph 1 lit. If you are asked for your consent (consent) to the data processing by the respective social media platform operator, e.g. with the help of a checkbox, the legal basis for the data processing is Art. 6 Para. 1 lit. a GDPR.
Insofar as the aforementioned social media platforms are headquartered in the USA, the following applies: The European Commission has issued an adequacy decision for the USA. This goes back to the EU-US Privacy Shield. A current certificate for the respective company can be viewed here. The detailed information on the processing and use of the data by the providers on their pages as well as a contact option and your related rights and setting options to protect your privacy, in particular options for objection (opt-out), can be found in the data protection information of the providers linked below. If you still need help in this regard, you can contact us. Facebook: https://www.facebook.com/about/privacy/ 
The data processing takes place on the basis of an agreement between jointly responsible persons in accordance with Art. 26 GDPR, which you can view here. 
Further information on data processing when visiting a Facebook fan page (information on Insights data) can be found here. 
Google / YouTube: https://policies.google.com/privacy?hl=de 
Twitter: https://twitter.com/de/privacy 
Instagram: https://help.instagram.com/519522125107875 
Opposition option (opt-out): 
Facebook: https://www.facebook.com/settings?tab=ads 
Google / YouTube: https://adssettings.google.com/authenticated?hl=de 
Twitter: https://twitter.com/personalization 
Instagram: https://help.instagram.com/519522125107875 

10. SENDING EVALUATION REMINDERS BY EMAIL 


If you have given us your express consent to this during or after your order in accordance with Art. 6 Para. 1 S. 1 lit. Rating System. 
This consent can be revoked at any time by sending a message to the contact option described below. 
Evaluation reminder by Trusted Shops 
If you have given us your express consent to this during or after your order in accordance with Art. 6 Para. 1 S. 1 lit. a GDPR, we will transmit your email address to Trusted Shops GmbH, Subbelrather Str.15c, 50823 Cologne (www.trustedshops.de) so that they can send you a review reminder by email.
This consent can be revoked at any time by sending a message to the contact option described below or directly to Trusted Shops. 
If you have given us your express consent to this during or after your order in accordance with Art. 6 Para. 1 S. 1 lit. Rating System. This consent can be revoked at any time by sending a message to the contact option described below. 
Evaluation reminder by eKomi 
If you have given us your express consent to this during or after your order in accordance with Art. 6 Para. 1 S. 1 lit. a GDPR, we will send your e-mail address to eKomi Ltd. , Markgrafenstraße 11, 10969 Berlin (www.ekomi.de), so that they can send you a reminder to review your product by email. 
This consent can be given at any time by sending a message to the contact option described below or directly to eKomi Ltd. be revoked. 

11. CONTACT POSSIBILITIES AND YOUR RIGHTS 


As a data subject, you have the following rights: 
In accordance with Art. 15 GDPR, you have the right to request information about your personal data processed by us to the extent specified therein; 
In accordance with Art. 16 GDPR, you have the right to immediately request the correction of incorrect personal data or the completion of your personal data stored by us; In accordance with Art. 17 GDPR, you have the right to request the deletion of your personal data stored by us, unless further processing 
to exercise the right to freedom of expression and information; 
to fulfill a legal obligation; 
for reasons of public interest or 
is necessary for the establishment, exercise or defense of legal claims; 
In accordance with Art. 18 GDPR, you have the right to request that the processing of your personal data be restricted, insofar as 
you dispute the accuracy of the data; 
the processing is unlawful, but you refuse to delete it; 
we no longer need the data, but you need them to assert, exercise or defend legal claims, or you have lodged an objection to the processing in accordance with Art. 21 GDPR; In accordance with Art. 20 GDPR, you have the right to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request that it be transmitted to another person responsible.
According to Art. 77 GDPR the right to complain to a supervisory authority. As a rule, you can contact the supervisory authority of your usual place of residence or work or our company headquarters. 
If you have any questions about the collection, processing or use of your personal data, information, correction, restriction or deletion of data as well as revocation of granted consent or objection to a specific use of data, please contact us directly using the contact details in our imprint. 
Right to object 
Insofar as we process personal data as explained above in order to safeguard our legitimate interests, which are predominant in the context of a weighing of interests, you can object to this processing with effect for the future. If the processing is carried out for direct marketing purposes, you can exercise this right at any time as described above. If the processing takes place for other purposes, you only have a right of objection if there are reasons that arise from your particular situation. 
After exercising your right of objection, we will no longer process your personal data for these purposes, unless we can prove compelling legitimate reasons for the processing that outweigh your interests, rights and freedoms, or if the processing requires the assertion, exercise or defense of Serves legal claims. 
This does not apply if the processing is carried out for direct marketing purposes. Then we will no longer process your personal data for this purpose. 

12. CHANGES TO THIS STATEMENT 

If we introduce new products or services, change internet procedures or if internet and EDP security technology continues to develop, the "data protection declaration" must be updated. We therefore reserve the right to change or add to the declaration as required. The changes will be published here. You should therefore visit this website regularly to find out about the current status of the data protection declaration.

13. IMAGE RIGHTS

Instagram

unsplash.com/photos/0AwoTNSdwVM

unsplash.com/photos/6cFwskwFKyw

unsplash.com/photos/BeAouNmSgD4

unsplash.com/photos/FC59Au36moM

unsplash.com/photos/jJzS-_VFAFk

unsplash.com/photos/lRq0kAQ_qr4

unsplash.com/photos/p4_ALYX-OyE

unsplash.com/photos/9-OCsKoyQlk