Acerca de
Privacy policy
Privacy policy
Table of Contents
-
Privacy Policy
-
Automatic Data Retention
-
Cookies
-
Storage of Personal Data
-
Rights in accordance with the General Data Protection Regulation
-
Evaluation of Visitor Behaviour
-
Google Analytics Privacy Policy
-
Facebook Pixel Privacy Policy
-
Google Tag Manager Privacy Policy
-
Google Site Kit Privacy Policy
-
Hotjar Privacy Policy
-
Newsletter Privacy Policy
-
MailChimp Privacy Policy
-
Google Ads (Google AdWords) Conversion Tracking Privacy Policy
-
Embedded Social Media elements Privacy Policy
-
Facebook Data Policy
-
Instagram Privacy Policy
-
Pinterest Privacy Policy
-
Klarna Checkout Privacy Policy
Privacy Policy
We created this Privacy Policy (version 01.01.1970-121408452), to declare which information we collect, how we use data and which options the users of our website have, according to the guidelines of the General Data Protection Regulation (EU) 2016/679
Unfortunately, these subjects sound rather technical due to their nature, but we have put much effort into describing the most important things as simply and clearly as possible.
Automatic Data Retention
Every time you visit a website nowadays, certain information is automatically created and saved, just as it happens on this website.
Whenever you visit our website such as you are doing right now, our webserver (computer on which this website is saved/stored) automatically saves data such as
-
the address (URL) of the accessed website
-
browser and browser version
-
the used operating system
-
the address (URL) of the previously visited site (referrer URL)
-
the host name and the IP-address of the device the website is accessed from
-
date and time
in files (webserver-logfiles).
Generally, webserver-logfiles stay saved for two weeks and then get deleted automatically. We do not pass this information to others, but we cannot exclude the possibility that this data will be looked at in case of illegal conduct.
Cookies
Our website uses HTTP-cookies to store user-specific data.
For your better understanding of the following Privacy Policy statement, we will explain to you below what cookies are and why they are in use.
What exactly are cookies?
Every time you surf the internet, you use a browser. Common browsers are for example Chrome, Safari, Firefox, Internet Explorer and Microsoft Edge. Most websites store small text-files in your browser. These files are called cookies.
What should not be dismissed, is that cookies are very useful little helpers. Nearly all websites use cookies. More accurately speaking these are HTTP-cookies, since there are also different cookies for other uses. http-cookies are small files which our website stores on your computer. These cookie files are automatically put into the cookie-folder, which is like the “brain” of your browser. A cookie consists of a name and a value. Moreover, to define a cookie, one or multiple attributes must be specified.
Cookies save certain parts of your user data, such as e.g. language or personal page settings. When you re-open our website, your browser submits these “user specific” information back to our site. Thanks to cookies, our website knows who you are and offers you the settings you are familiar to. In some browsers every cookie has its own file, in others such as Firefox, all cookies are stored in one single file.
There are both first-party cookies and third-party coookies. First-party cookies are created directly by our site, while third-party cookies are created by partner-websites (e.g. Google Analytics). Every cookie is individual, since every cookie stores different data. The expiration time of a cookie also varies – it can be a few minutes, or up to a few years. Cookies are no software-programs and contain no computer viruses, trojans or any other malware. Cookies also cannot access your PC’s information.
This is an example of how cookie-files can look:
name: _ga
value: GA1.2.1326744211.152121408452-9
purpose: differentiation between website visitors
expiration date: after 2 years
A browser should support these minimum sizes:
-
at least 4096 bytes per cookie
-
at least 50 cookies per domain
-
at least 3000 cookies in total
Which types of cookies are there?
What exact cookies we use, depends on the used services. We will explain this in the following sections of the Privacy Policy statement. Firstly, we will briefly focus on the different types of HTTP-cookies.
There are 4 different types of cookies:
Essential Cookies
These cookies are necessary to ensure the basic function of a website. They are needed when a user for example puts a product into their shopping cart, then continues surfing on different websites and comes back later in order to proceed to the checkout. Even when the user closed their window priorly, these cookies ensure that the shopping cart does not get deleted.
Purposive Cookies
These cookies collect info about the user behaviour and record if the user potentially receives any error messages. Furthermore, these cookies record the website’s loading time as well as its behaviour within different browsers.
Target-orientated Cookies
These cookies care for an improved user-friendliness. Thus, information such as previously entered locations, fonts or data in forms stay saved.
Advertising Cookies
These cookies are also known as targeting-Cookies. They serve the purpose of delivering individually adapted advertisements to the user. This can be very practical, but also rather annoying.
Upon your first visit to a website you are usually asked which of these cookie-types you want to accept. Furthermore, this decision will of course also be saved in a cookie.
How can I delete cookies?
You yourself take the decision if and how you want to use cookies. Thus, no matter what service or website cookies are from, you always have the option to delete, deactivate or only partially allow them. Therefore, you can for example block cookies of third parties but allow any other cookies.
If you want change or delete cookie-settings and would like to determine which cookies have been saved to your browser, you can find this info in your browser-settings:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
If you generally do not want to allow any cookies at all, you can set up your browser in a way, to notify you whenever a potential cookie is about to be set. This gives you the opportunity to manually decide to either permit or deny the placement of every single cookie. The settings for this differ from browser to browser. Therefore, it might be best for you to search for the instructions in Google. If you are using Chrome, you could for example put the search phrase “delete cookies Chrome” or “deactivate cookies Chrome” into Google.
How is my data protected?
There is a “cookie policy” that has been in place since 2009. It states that the storage of cookies requires the user’s consent. However, among the countries of the EU, these guidelines are often met with mixed reactions. In Austria the guidelines have been implemented in § 96 section 3 of the Telecommunications Act (TKG).
If you want to learn more about cookies and do not mind technical documentation, we recommend https://tools.ietf.org/html/rfc6265, the Request for Comments of the Internet Engineering Task Force (IETF) called “HTTP State Management Mechanism”.
Storage of Personal Data
Any personal data you electronically submit to us on this website, such as your name, email address, home address or other personal information you provide via the transmission of a form or via any comments to the blog, are solely used for the specified purpose and get stored securely along with the respective submission times and IP-address. These data do not get passed on to third parties.
Therefore, we use personal data for the communication with only those users, who have explicitly requested being contacted, as well as for the execution of the services and products offered on this website. We do not pass your personal data to others without your approval, but we cannot exclude the possibility this data will be looked at in case of illegal conduct.
If you send us personal data via email – and thus not via this website – we cannot guarantee any safe transmission or protection of your data. We recommend you, to never send confidential data via email.
Rights in accordance with the General Data Protection Regulation
You are granted the following rights in accordance with the provisions of the GDPR (General Data Protection Regulation) and the Austrian Data Protection Act (DSG):
-
right to rectification (article 16 GDPR)
-
right to erasure (“right to be forgotten“) (article 17 GDPR)
-
right to restrict processing (article 18 GDPR)
-
righ to notification – notification obligation regarding rectification or erasure of personal data or restriction of processing (article 19 GDPR)
-
right to data portability (article 20 GDPR)
-
Right to object (article 21 GDPR)
-
right not to be subject to a decision based solely on automated processing – including profiling – (article 22 GDPR)
If you think that the processing of your data violates the data protection law, or that your data protection rights have been infringed in any other way, you can lodge a complaint with your respective regulatory authority. For Austria this is the data protection authority, whose website you can access at https://www.data-protection-authority.gv.at/.
Evaluation of Visitor Behaviour
In the following Privacy Policy, we will inform you on if and how we evaluate the data of your visit to this website. The evaluation is generally made anonymously, and we cannot link to you personally based on your behaviour on this website.
You can find out more about how to disagree with the evaluation of visitor data, in the Privacy Policy below.
Google Analytics Privacy Policy
We use the tracking and analysis tool Google Analytics (GA) of the US-American company Google LLC (1600 Amphitheatre Parkway Mountain View, CA 94043, USA). Google Analytics collects data on your actions on our website. Whenever you click a link for example, this action is saved in a cookie and transferred to Google Analytics. With the help of reports which we receive from Google Analytics, we can adapt our website and our services better to your wishes. In the following, we will explain the tracking tool in more detail, and most of all, we will inform you what data is saved and how you can prevent this.
What is Google Analytics?
Google Analytics is a tracking tool with the purpose of conducting data traffic analysis of our website. For Google Analytics to work, there is a tracking code integrated to our website. Upon your visit to our website, this code records various actions you perform on your website. As soon as you leave our website, this data is sent to the Google Analytics server, where it is stored.
Google processes this data and we then receive reports on your user behaviour. These reports can be one of the following:
-
Target audience reports: With the help of target audience reports we can get to know our users better and can therefore better understand who is interested in our service.
-
Advertising reports: Through advertising reports we can analyse our online advertising better and hence improve it.
-
Acquisition reports: Acquisition reports provide us helpful information on how we can get more people enthusiastic about our service.
-
Behaviour reports: With these reports, we can find out how you interact with our website. By the means of behaviour reports, we can understand what path you go on our website and what links you click.
-
Conversion reports: A conversion is the process of leading you to carry out a desired action due to a marketing message. An example of this would be transforming you from a mere website visitor into a buyer or a newsletter subscriber. Hence, with the help of these reports we can see in more detail, if our marketing measures are successful with you. Our aim is to increase our conversion rate.
-
Real time reports: With the help of these reports we can see in real time, what happens on our website. It makes us for example see, we can see how many users are reading this text right now.
Why do we use Google Analytics on our website?
The objective of our website is clear: We want to offer you the best possible service. Google Analytics’ statistics and data help us with reaching this goal.
Statistically evaluated data give us a clear picture of the strengths and weaknesses of our website. On the one hand, we can optimise our page in a way, that makes it easier to be found by interested people on Google. On the other hand, the data helps us to get a better understanding of you as our visitor. Therefore, we can very accurately find out what we must improve on our website, in order to offer you the best possible service. The analysis of that data also enables us to carry out our advertising and marketing measures in a more individual and more cost-effective way. After all, it only makes sense to show our products and services exclusively to people who are interested in them.
What data gets stored by Google Analytics?
With the aid of a tracking code, Google Analytics creates a random, unique ID which is connected to your browser cookie. That way, Google Analytics recognises you as a new user. The next time you visit our site, you will be recognised as a “recurring” user. All data that is collected gets saved together with this very user ID. Only this is how it is made possible for us to evaluate and analyse pseudonymous user profiles.
Your interactions on our website are measures by tags such as cookies and app instance IDs. Interactions are all kinds of actions that you perform on our website. If you are also using other Google systems (such as a Google Account), data generated by Google Analytics can be linked with third-party cookies. Google does not pass on any Google Analytics data, unless we as the website owners authorise it. In case it is required by law, exceptions can occur.
The following cookies are used by Google Analytics:
Name: _ga
Value:2.1326744211.152121408452-5
Purpose: By deafault, analytics.js uses the cookie _ga, to save the user ID. It generally serves the purpose of differenciating between website visitors.
Expiration date: After 2 years
Name: _gid
Value:2.1687193234.152121408452-1
Purpose: This cookie also serves the purpose of differentiating between website users
Expiration date: After 24 hours
Name: _gat_gtag_UA_
Value: 1
Verwendungszweck: It is used for decreasing the demand rate. If Google Analytics is provided via Google Tag Manager, this cookie gets the name _dc_gtm_ .
Expiration date: After 1 minute
Name: AMP_TOKEN
Value: No information
Purpose: This cookie has a token which is used to retrieve the user ID by the AMP Client ID Service. Other possible values suggest a logoff, a request or an error.
Expiration date: After 30 seconds up to one year
Name: __utma
Value:1564498958.1564498958.1564498958.1
Purpose: With this cookie your behaviour on the website can be tracked and the site performance can be measured. The cookie is updated every time the information is sent to Google Analytics.
Expiration date: After 2 years
Name: __utmt
Value: 1
Purpose: Just like _gat_gtag_UA_ this cookie is used for keeping the requirement rate in check.
Expiration date: Afer 10 minutes
Name: __utmb
Value:3.10.1564498958
Purpose: This cookie is used to determine new sessions. It is updated every time new data or information gets sent to Google Analytics.
Expiration date: After 30 minutes
Name: __utmc
Value: 167421564
Purpose: This cookie is used to determine new sessions for recurring visitors. It is therefore a session cookie, and only stays saved until you close the browser again.
Expiration date: After closing the browser
Name: __utmz
Value: m|utmccn=(referral)|utmcmd=referral|utmcct=/
Purpose: This cookie is used to identify the source of our website’s visitor number. This means, that the cookie saves information on where you came to our website from. This could be another site or an advertisement.
Expiration date: After 6 months
Name: __utmv
Value: No information
Purpose: The cookie is used to store custom user data. It gets updated whenever information is sent to Google Analytics.
Expiration date: After 2 years
Note: This list is by no means exhaustive, since Google are repeatedly changing the use of their cookies.
Below we will give you an overview of the most important data that can be evaluated by Google Analytics:
Heatmaps: Google creates so-called Heatmaps an. These Heatmaps make it possible to see the exact areas you click on, so we can get information on what routes you make on our website.
Session duration: Google calls the time you spend on our website without leaving it session duration. Whenever you are inactive for 20 minutes, the session ends automatically.
Bounce rate If you only look at one page of our website and then leave our website again, it is called a bounce.
Account creation: If you create an account or make an order on our website, Google Analytics collects this data.
IP-Address: The IP address is only shown in a shortened form, to make it impossible to clearly allocate it.
Location: Your approximate location and the country you are in can be defined by the IP address. This process is called IP location determination.
Technical information: Information about your browser type, your internet provider and your screen resolution are called technical information.
Source: Both, Google Analytics as well as ourselves, are interested what website or what advertisement led you to our site.
Further possibly stored data includes contact data, potential reviews, playing media (e.g. when you play a video on our site), sharing of contents via social media or adding our site to your favourites. This list is not exhaustive and only serves as general guidance on Google Analytics’ data retention.
How long and where is the data saved?
Google has servers across the globe. Most of them are in America and therefore your data is mainly saved on American servers. Here you can read detailed information on where Google’s data centres are located: https://www.google.com/about/datacenters/inside/locations/?hl=en
Your data is allocated to various physical data mediums. This has the advantage of allowing to retrieve the data faster, and of protecting it better from manipulation. Every Google data centre has respective emergency programs for your data. Hence, in case of a hardware failure at Google or a server error due to natural disasters, the risk for a service interruption stays relatively low.
Google Analytics has a 26 months standardised period of retaining your user data. After this time, your user data is deleted. However, we have the possibility to choose the retention period of user data ourselves. There are the following five options:
-
Deletion after 14 months
-
Deletion after 26 months
-
Deletion after 38 months
-
Deletion after 50 months
-
No automatical deletion
As soon as the chosen period is expired, the data is deleted once a month. This retention period applies to any of your data which is linked to cookies, user identification and advertisement IDs (e.g. cookies of the DoubleClick domain). Any report results are based on aggregated information and are stored independently of any user data. Aggregated information is a merge of individual data into a single and bigger unit.
How can I delete my data or prevent data retention?
Under the provisions of the European Union’s data protection law, you have the right to obtain information on your data and to update, delete or restrict it. With the help of a browser add on that can deactivate Google Analytics’ JavaScript (ga.js, analytics.js, dc.js), you can prevent Google Analytics from using your data. You can download this add on at https://tools.google.com/dlpage/gaoptout?hl=en-GB. Please consider that this add on can only deactivate any data collection by Google Analytics.
Should you generally want to deactivate, delete or manage all cookies (independently of Google Analytics), you can use one of the guides that are available for any browser:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
Google Analytics is an active participant of the EU-U.S. Privacy Shield Framework, which regulates correct and save transfer of personal data.
You can find more information on this at https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&tid=121408452. We hope we were able to make you more familiar with the most important information on Google Analytics’ data processing. If you want to learn more about the tracking service, we recommend both of the following links: https://marketingplatform.google.com/about/analytics/terms/gb/ and https://support.google.com/analytics/answer/6004245?hl=en.
Google Analytics Reports on demographic characteristics and interests
We have turned on Google Analytics’ functions for advertising reports. These reports on demographic characteristics and interests contain details about age, gender and interests. Through them we can get a better picture of our users – without being able to allocate any data to individual persons. You can learn more about advertising functions at auf https://support.google.com/analytics/answer/3450482?hl=en&%3Butm_id=ad.
You can terminate the use of your Google Account’s activities and information in “Ads Settings” at https://adssettings.google.com/authenticated via a checkbox.
Google Analytics‘ Data Processing Amendment
By accepting the amendment on data processing in Google Analytics, we entered a contract with Google concerning the use of Google Analytics.
You can find out more about the amendment on data processing for Google Analytics here: https://support.google.com/analytics/answer/3379636?hl=en&utm_id=ad
Google Analytics Google Signals Privacy Policy
We have activated Google signals in Google Analytics. Through this, any existing Google Analytics functions (advertising reports, remarketing, cross-device reports and reports on interests and demographic characteristics) are updated, to result in the summary and anonymisation of your data, should you have permitted personalised ads in your Google Account.
The special aspect of this is that it involves cross-device tracking. That means your data can be analysed across multiple devices. Through the activation of Google signals, data is collected and linked to the Google account. For example, it enables Google to recognise when you look at a product on a smartphone and later buy the product on a laptop. Due to activating Google signals, we can start cross-device remarketing campaigns, which would otherwise not be possible to this extent. Remarketing means, that we can show you our products and services across other websites as well.
Moreover, further visitor data such as location, search history, YouTube history and data about your actions on our website are collected in Google Analytics. As a result, we receive improved advertising reports and more useful information on your interests and demographic characteristics. These include your age, the language you speak, where you live or what your gender is. Certain social criteria such as your job, your marital status or your income are also included. All these characteristics help Google Analytics to define groups of persons or target audiences.
Those reports also help us to better assess your behaviour, as well as your wishes and interests. As a result, we can optimise and customise our products and services for you. By default, this data expires after 26 months. Please consider, that this data is only collected if you have agreed to personalised advertisement in your Google Account. The retained information is always exclusively summarised and anonymous data, and never any data on individual persons. You can manage or delete this data in your Google Account.
Facebook Pixel Privacy Policy
We use Facebook’s Facebook pixel on our website. For that, we have implemented a code on our website. The Facebook pixel is a segment of a JavaScript code, which, in case you arrived on our website via Facebook ads, loads an array or functions that enable Facebook to track your user actions. For example, if you buy a product on our website, the Facebook pixel is triggered and then saves your actions on our website in one or more cookies. These cookies enable Facebook to match your user data (customer data such as IP address, user ID) with the data of your Facebook account. After that, Facebook deletes your data again. The collected data is anonymous as well as inaccessible and can only be used for ad placement purposes. If you are a Facebook user and you are logged in, your visit to our website is automatically assigned to your Facebook user account.
We exclusively want to show our products or services to persons, who are interested in them. With the aid of the Facebook pixel, our advertising measures can get better adjusted to your wishes and interests. Therefore, Facebook users get to see suitable advertisement (if they allowed personalised advertisement). Moreover, Facebook uses the collected data for analytical purposes and for its own advertisements.
In the following we will show you the cookies, which were set on a test page through the integration of the Facebook pixel. Please consider that these cookies are only examples. Depending on the interaction that is made on our website, different cookies are set.
Name: _fbp
Value: fb.1.1568287647279.257405483-6121408452-7
Purpose: Dieses Cookie verwendet Facebook, um Werbeprodukte anzuzeigen.
Expiration date: nach 3 Monaten
Name: fr
Value: 0aPf312HOS5Pboo2r..Bdeiuf…1.0.Bdeiuf.
Purpose: Dieses Cookie wird verwendet, damit Facebook-Pixel auch ordentlich funktioniert.
Expiration date: nach 3 Monaten
Name: comment_author_50ae8267e2bdf1253ec1a5769f48e062121408452-3
Value: Name of the author
Purpose: This cookie saves the text and name of a user who e.g. leaves a comment.
Expiration date: after 12 months
Name: comment_author_url_50ae8267e2bdf1253ec1a5769f48e062
Value: https%3A%2F%2Fwww.testseite…%2F (URL of the author)
Purpose: This cookie saved the URL of the website that the user types into a text box on our website.
Expiration date: after 12 months
Name: comment_author_email_50ae8267e2bdf1253ec1a5769f48e062
Value: email address of the author
Purpose: This cookie saves the email address of the user, if they provided it on the website.
Expiration date: after 12 months
Note: The above-mentioned cookies relate to an individual user behaviour. Moreover, especially concerning the usage of cookies, changes at Facebook can never be ruled out.
If you are registered at Facebook, you can change the settings for advertisements yourself at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. If you are not a Facebook user, you can manage your user based online advertising at https://www.youronlinechoices.com/uk/your-ad-choices. You have the option to activate or deactivate any providers there.
If you want to learn more about Facebook’s data protection, we recommend you the view the company’s in-house data policies at https://www.facebook.com/policy.php.
Privacy Policy for Facebook‘s Automatic Advanced Matching
Along with Facebook’s pixel function, we have also activated the automatic advanced matching. This function allows us to send hashed emails, names, genders, cities, states, postcodes and dates of birth or telephone numbers as additional information to Facebook, provided you have made them available to us. This activation gives us the opportunity, to customise advertising campaigns even better to persons who are interested in our services or products.
Google Tag Manager Privacy Policy
We use Google Tag Manager by the company Google Inc. (1600 Amphitheatre Parkway Mountain View, CA 94043, USA) for our website.
This Tag Manager is one of Google’s many helpful marketing products. With it, we can centrally integrate and manage code sections of various tracking tools, that we use on our website.
In this privacy statement we will explain in more detail, what Google Tag Manager does, why we use it and to what extent your data is processed.
What is Google Tag Manager?
Google Tag Manager is an organising tool with which we can integrate and manage website tags centrally and via a user interface. Tags are little code sections which e.g. track your activities on our website. For this, segments of JavaScript code are integrated to our site’s source text. The tags often come from Google’s intern products, such as Google Ads or Google Analytics, but tags from other companies can also be integrated and managed via the manager. Since the tags have different tasks, they can collect browser data, feed marketing tools with data, embed buttons, set cookies and track users across several websites.
Why do we use Google Tag Manager for our website?
Everybody knows: Being organised is important! Of course, this also applies to maintenance of our website. In order to organise and design our website as well as possible for you and anyone who is interested in our products and services, we rely on various tracking tools, such as Google Analytics.
The collected data shows us what interests you most, which of our services we should improve, and which other persons we should also display our services to. Furthermore, for this tracking to work, we must implement relevant JavaScript Codes to our website. While we could theoretically integrate every code section of every tracking tool separately into our source text, this would take too much time and we would lose overview. This is the reason why we use Google Tag Manager. We can easily integrate the necessary scripts and manage them from one place. Additionally, Google Tag Manager’s user interface is easy to operate, and requires no programming skills. Therefore, we can easily keep order in our jungle of tags.
What data is saved by Google Tag Manager?
Tag Manager itself is a domain that neither uses cookies nor stores data. It merely functions as an “administrator“ of implemented tags. Data is collected by the individual tags of the different web analysis tools. Therefore, in Google Tag Manager the data is sent to the individual tracking tools and does not get saved.
However, with the integrated tags of different web analysis tools such as Google Analytics, this is quite different. Depending on the analysis tool used, various data on your internet behaviour is collected, stored and processed with the help of cookies. Please read our texts on data protection for more information on the articular analysis and tracking tools we use on our website.
We allowed Google via the account settings for the Tag Manager to receive anonymised data from us. However, this exclusively refers to the use of our Tag Manager and not to your data, which are saved via code sections. We allow Google and others, to receive selected data in anonymous form. Therefore, we agree to the anonymised transfer of our website data. However, even after extensive research we could not find out what summarised and anonymous data it is exactly that gets transmitted. What we do know is that Google deleted any info that could identify our website. Google combines the data with hundreds of other anonymous website data and creates user trends as part of benchmarking measures. Benchmarking is a process of comparing a company’s results with the ones of competitors. As a result, processes can be optimised based on the collected information.
How long and where is the data saved?
When Google stores data, this is done on Google’s own servers. These servers are located all over the world, with most of them being in America. At https://www.google.com/about/datacenters/inside/locations/?hl=en you can read in detail where Google’s servers are.
In our individual data protection texts on the different tools you can find out how long the respective tracking tools save your data.
How can I delete my data or prevent data retention?
Google Tag Manager itself does not set any cookies but manages different tracking websites’ tags. In our data protection texts on the different tracking tools you can find detailed information on how you can delete or manage your data.
Google actively participates in the EU-U.S. Privacy Shield Framework, which regulates safe transfer of personal data. You can find more information at https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&tid=121408452. If you want to learn more about Google Tag Manager, we recommend you to read https://marketingplatform.google.com/intl/en_uk/about/tag-manager/.
Google Site Kit Privacy Policy
We have integrated the WordPress plugin Google Site Kit of the American company Google Inc. to our website. For Europe, Google Ireland Limited (Gordon House, Barrow Street Dublin 4, Ireland) is responsible for all Google services. With Google Site Kit, we can quickly and easily view statistics of various Google products such as Google Analytics directly on our WordPress dashboard. The in Google Site Kit integrated tools also collect your personal data. In this privacy policy we will explain why we use Google Site Kit, how long and where your data is stored, and which other privacy policies may be relevant to you in this context.
What is Google Site Kit?
Google Site Kit is a plugin for the WordPress content management system. With this plugin we can view important website analysis statistics directly in our dashboard. These are statistics that are collected by other Google products – primarily by Google Analytics. In addition to Google Analytics, the services Google Search Console, Page Speed Insight, Google AdSense, Google Optimize and Google Tag Manager can also be linked to Google Site Kit.
Why do we use Google Site Kit on our website?
As a service provider, it is our job to offer you the best possible experience on our website. You should feel comfortable on our website. Moreover, you should be able to quickly and easily find exactly what you are looking for. Statistical evaluations help us to get to know you better and to adapt our offer to your wishes and interests. We use various Google tools for these evaluations. Site Kit makes our work a lot easier because we can view and analyse the statistics of Google products on its dashboard. Therefore, we must no longer register for using the respective tools. Site Kit always provides a good overview of the most important analysis data.
What data are stored by Google Site Kit?
If you have consented to the use of tracking tools in the cookie notice (also called script or banner), cookies will be set by Google products such as Google Analytics. Also, on about you, such as your user behavior, will be sent to Google, where it is stored and processed. This also includes personal data such as your IP address.
You can find more detailed information on the individual services in the respective separate sections of this privacy policy. In our privacy policy on Google Analytics for example, you will be able to view information on the exact types of data that are collected. You will also learn how long Google Analytics stores, manages and processes data, what cookies can be used and how you can prevent data retention. We also have respective comprehensive privacy policies for other Google services such as Google Tag Manager or Google AdSense.
In the following, we will show you exemplary Google Analytics cookies that may be set in your browser if you have consented to Google’s data processing. Please note that this list contains only a selection of potential cookies:
Name: _ga
Value:2.1326744211.152121408452-2
Purpose:Usually analytics.js uses the _ga cookie to store the user ID. Therefore, it serves to differentiate between website visitors.
Expiry date: after 2 years
Name: _gid
Value:2.1687193234.152121408452-7
Purpose: This cookie also serves to differentiate between website visitors.
Expiry date: after 24 hours
Name: _gat_gtag_UA_
Value: 1
Purpose: This cookie is used to lower the request rate.
Expiry date: after 1 minute
How long and where are the data stored?
Google stores the collected data on its own servers, which are distributed all around the world. Most servers are in the United States, so your data may likely be stored there. At https://www.google.com/about/datacenters/inside/locations/?hl=uk you can see exactly where the company provides servers.
Data that is collected by Google Analytics is stored for a standard period of 26 months. After this time, your user data will be deleted. This retention period applies to any data linked to cookies, user identification and advertising IDs.
How can I delete my data or prevent data retention?
You always reserve the right to either receive information about your data, or to have your data deleted, rectified, or reduced. You can also deactivate, delete, or manage cookies in your browser at any time. In the following we will show you the respective instructions to do this in the most common browsers:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
Google is an active participant in the EU-U.S. Privacy Shield Framework, which regulates correct and secure transfer of personal data. You can find more information on this at https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&tid=121408452. For more information on Google’s data processing, we recommend Google’s comprehensive privacy policy at https://policies.google.com/privacy?hl=en-GB.
Hotjar Privacy Policy
We use Hotjar of the company Hotjar Limited (Level 2, St Julian’s Business Centre, 3, Elia Zammit Street, St Julian’s STJ 1000, Malta) on our website, to statistically evaluate visitor data. Hotjar is a service which analyses the behaviour and feedback of you as a user of our website by combining analysis and feedback tools. We receive reports as well as visual displays from Hotjar, which show us how you move on our site. Personal data is anonymised automatically and never reaches Hotjar’s servers. This means you as the website user are not personally identified, while we can still learn much about your user behaviour.
What is Hotjar?
As mentioned in the above paragraph, Hotjar helps us analyse the behaviour of our site visitors. Some of the tools Hotjar offers are e.g. heatmaps, conversion funnels, visitor recording, incoming feedback, feedback polls and surveys (you can find more information about it at https://www.hotjar.com/). Therewith, Hotjar helps us to provide you a better user experience as well as an improved service. On the one hand it offers good analysis of online behaviour and on the other hand it gives us good feedback on our website’s quality. Besides the analytical aspects we of course also want to know your opinion about our website. This is possible thanks to the feedback tool.
Why do we use Hotjar on our website?
Within the last years the importance of websites’ user experience has gained in importance. And justifiably so – a website should be structured in a way that makes the user feel comfortable and is easy to navigate. Thanks to Hotjar’s analysis and the feedback tools, we can make our website and our offer more attractive. To us, Hotjar’s Heatmaps has proven particularly valuable, as it helps with presenting and visualising data. In that sense, Hotjar’s Heatmaps e.g. helps us see what you like to click on and where you scroll to.
What data is saved by Hotjar?
Hotjar automatically collects information on your user behaviour while you surf our website. In order to be able to collect this information, we implemented a tracking code. We integrated a tracking code, to be able to collect this information. The following data can be gathered via your computer or your browser:
-
Your computer’s IP address (is collected and saved in an anonymous format)
-
Screen size
-
Browser information (which browser and version etc.)
-
Your location (but only the country)
-
Your language preference
-
Visited websites (subpages)
-
Date and time of access to one of our subpages (websites)
Moreover, cookies also save data that have been placed on your computer (mostly your browser), although no personal data is collected. Generally, Hotjar does not pass collected data to third parties. However, Hotjar explicitly emphasises that it is sometimes necessary to share data with Amazon Web Services. _ parts of your information is saved on its servers. Nonetheless, Amazon is bound to a confidentiality obligation and cannot disclose these data.
Only a limited number of people (employees of Hotjar) have access to the stored information. Furthermore, Hotjar’s servers are protected by firewalls and IP restrictions (only authorised IP addresses have access). Firewalls are security systems which protect computers from unwanted network accesses. They serve as barriers between Hotjar’s secure internal network and the internet. Moreover, Hotjar also uses third-party companies for their services, such as Google Analytics or Optimizely. These firms can also save information that your browser sends to our website.
The following cookies are used by Hotjar. Since we refer to the cookie list in Hotjar’s privacy statement at https://www.hotjar.com/legal/policies/cookie-information, not every cookie has a sample value. The list shows examples of utilised Hotjar cookies and does not claim to be exhaustive.
Name: ajs_anonymous_id
Value: %2258832463-7cee-48ee-b346-a195f18b06c3%22121408452-5
Purpose: This cookie is generally used for analysis purposes and helps with counting our website’s visitors by tracking whether they have been to the website before.
Expiry date: after one year
Name: ajs_group_id
Value: 0
Purpose: This cookie collects data on user behaviour. Based on the similarities between website visitors, the data can then be assigned to a specific visitor group.
Expiry date: after one year
Name: _hjid
Value: 699ffb1c-4bfb-483f-bde1-22cfa0b59c6c
Purpose: This cookie is used to maintain a Hotjar user ID, which is unique for the website in the browser. That way, upon the next website visits, the user behaviour can be assigned to the same user ID.
Expiry date: after one year
Name: _hjMinimizedPolls
Value: 462568121408452-8
Verwendungszweck: Every time you minimise a feedback poll widget, Hotjar sets this cookie. It ensures that the widget stays minimised when you surf our sites.
Expiry date: after one year
Name: _hjIncludedInSample
Value: 1
Purpose: This session cookie is used to inform Hotjar if you are part of the selected individuals (sample), who are used for the creation of funnels.
Expiry date: after one year
Name: _hjClosedSurveyInvites
Purpose: This cookie is set when you see an invitation to a feedback poll in a popup window. It is used to ensure that this invitation appears to you only once.
Expiry date: after one year
Name: _hjDonePolls
Purpose: This cookie is set in your browser whenever you finish a round of questions for feedback in a poll widget. Therewith, Hotjar prevents you from receiving the same polls in the future.
Expiry date: after one year
Name: _hjDoneTestersWidgets
Purpose: This cookie is used when you enter your data in the “recruit user tester” widget. With this widget we want to engage you as a tester. The cookie is used to prevent the form from reappearing repeatedly.
Expiry date: after one year
Name: _hjMinimizedTestersWidgets
Purpose: This cookie is set to keep the “recruit user tester“ widget minimised accross all our pages. The cookie is set upon you minimising this widget once.
Expiry date: after one year
Name: _hjShownFeedbackMessage
Purpose: This cookie is set if you minimise or amend the given feedback. This is done so the feedback is instantly loaded as minimised when you navigate to another page, on which it is displayed.
Expiry date: after one year
How long and where is the data saved?
We integrated a tracking code to our website, which is transmitted to Hotjar’s servers in Ireland (EU). This tracking code contacts Hotjar’s servers and sends a script to your computer or any terminal device with which you are accessing our website. The script collects certain data concerning your interaction with our website. Then, the data is sent to Hotjar’s servers for processing. Moreover, Hotjar imposed a limit of retaining data for up to 365 days on itself. This means that all data collected by Hotjar which is over one year old are deleted automatically.
How can I delete my data or prevent data storage?
Hotjar saves none of your personal data for its analysis. The company even advertises with the slogan “We track behaviour, not individuals“. In addition, it is always possible for you to prevent the collection of your data. For this you simply need to visit Hotjar’s “Opt-out page“ and click on “deactivate Hotjar”. Please note that deleting cookies, using your browser’s private mode or utilising a different browser will result in the collection of data again. Furthermore, you can activate the “Do Not Track” button in your browser. To do this in Chrome for example, you must click on the three bars and select “Settings”. In the section “Data Protection“ you will find the option “Send a ‘Do Not Track’ request with your browsing traffic”. Finally, you must click on this button and no data will be collected by Hotjar.
You can find more details on the privacy policy and on what data Hotjar uses and how it is utilised at https://www.hotjar.com/legal/policies/privacy?tid=121408452.
Newsletter Privacy Policy
When you subscribe to our Newsletter you submit your personal data and give us the right to contact you via email. We use the data that is stored for the registration for the Newsletter exclusively for our Newsletter and do not pass them on.
If you unsubscribe from the newsletter – for which you can find a link in the bottom of every newsletter – we will delete all data that was saved when you registered for the newsletter.
MailChimp Privacy Policy
Like many other websites, we use the services of the newsletter company MailChimp on our website. The operator of MailChimp is the company The Rocket Science Group, LLC, 675 Ponce de Leon Ave NE, Suite 5000, Atlanta, GA 30308 USA. With the aid of MailChimp we can easily send you interesting news via newsletter. For the use of the service we do not have to install anything but can still access a pool of very efficient features. In the following we will give more details on this email marketing service and will inform you about the most important data protection aspects.
What is MailChimp?
MailChimp is a cloud-based newsletter management service. “Cloud-based“ means that we do not need to install MailChimp on our own computer or server. Instead, we use the service on an external server, or more specifically via an IT infrastructure, which is available via the internet. Using a software this way is also called SaaS (software as a service).
MailChimp allows us to chose from a wide range of different email types. Depending on what goal we want to reach with our newsletter, we can run individual campaigns, regular campaigns, auto responders (automated emails), A/B tests, RSS campaigns (mailings at pre-set times and frequencies) and follow-up campaigns.
Why do we use MailChimp on our website?
The reason we would use any newsletter service is so we can stay in contact with you. We want to keep you on the loop what news or attractive offers we have for you at the time. As we constantly seek out the easiest and best solutions for our marketing measures, we have decided on MailChimp as our newsletter management service. While the software is very easy to use, it offers many helpful features. For example, it allows us to create interesting and attractive newsletters in only a short time. With integrated design templates we can create every newsletter in an individual way. Due to the “responsive design” feature, our contents are also presented in a readable and pleasant way on your smartphone (or any other mobile device).
With tools such as A/B testing or the extensive analysis options, we can swiftly tell how you like our newsletters. This means that we can react if necessary and improve our offer or our services.
Another advantage is MailChimp’s “cloud system”. The data is not stored and processed directly on our server. We can retrieve the datafrom external servers and therefore save our memory space and also decrease maintenance effort.
What data is saved by MailChimp?
Rocket Science Group LLC (MailChimp) operate online platforms which enable us to get in contact with you, provided you subscribed to our newsletter. If you become a subscriber of our newsletter via our website, by email you agree to become a member of a MailChimp email list. Then, MailChimp saves your subscription data and your IP address, so it can verify your entry into the list provider. Moreover, MailChimp stores your email address, your name, your physical address and demographic information, such as language or location.
This information is used to send emails to you and to allow certain other MailChimp functions (e.g. the evaluation of newsletters).
MailChimp also shares information with third parties to improve its services. Moreover, MailChimp shares certain data with advertising partners of third parties to get a better understanding of its clients’ interests, in order to provide relevant contents and target-oriented advertising.
With so-called “web beacons” (small graphics in HTML emails), MailChimp can determine if an email has arrived, has been opened or if links have been clicked. This information is then stored on MailChimp’s servers. That way we receive statistical evaluations and can see how you liked our newsletter. Therefore, we can tailor our offer better to your wishes and improve our service.
Moreover, MailChimp are allowed to use this data for improving their own service. Thus, they can for example technically optimise the distribution or determine the location (or the country) of the recipient.
The following cookies can be set by MailChimp. The list is not exhaustive and is merely an exemplary selection:
Name: AVESTA_ENVIRONMENT
Value: Prod
Purpose: This cookie is necessary to provide the services of Mailchimp. It is always set when a user registers for a newsletter mailing list.
Expiry date: at the end of the session
Name: ak_bmsc
Value: F1766FA98C9BB9DE4A39F70A9E5EEAB55F6517348A7000001121408452-3
Purpose: The cookie is used to differentiate a human from a bot. That way secure reports on the use of a website can be created.
Expiry date: after 2 hours
Name: bm_sv
Value: A5A322305B4401C2451FC22FFF547486~FEsKGvX8eovCwTeFTzb8//I3ak2Au…
Purpose: This cookie comes from MasterPass Digital Wallet (a MasterCard service) and is used to offer a secure and easy virtual payment process to visitors. For this purpose, the user is anonymously identified on the website.
Expiry date: after 2 hours
Name: _abck
Value: 8D545C8CCA4C3A50579014C449B045121408452-9
Purpose: We could not find any further information about the purpose of this cookie.
Expiry date: after one year
For better display it could be that you would sometimes open our newsletter via a specified link. This can be the case if your email program does not work or if the newsletter is not displayed properly. The newsletter will then be shown via a MailChimp website. MailChimp also uses cookies on its websites (small text files which save data on your browser).
Personal data can be processed by MailChimp and their partners (e.g. Google Analytics). MailChimp is responsible for the collection of this data and we have no influence on it. MailChimp’s “Cookie Statement” (at: https://mailchimp.com/legal/cookies/) tells you exactly how and why the company uses cookies.
How long and where is the data saved?
Since MailChimp is an American company, all retained data is stored on American servers.
Generally, the data stays permanently saved on MailChimp’s servers and is deleted only when you request it. You can have your contact information with us deleted. This permanently removes all your personal data for us and anonymises you in MailChimp’s reports. However, you can also request the deletion of your data permanently at MailChimp. Then all your data are removed from there and we receive a notification from MailChimp. After we receive the email we have 30 days to delete your contact from all integrations.
How can I delete my data or prevent data retention?
You can withdraw your approval for the receipt of our newsletters anytime, by clicking the link in the lower area of the received newsletter email. When you click on the unsubscribe link, your data with MailChimp gets deleted.
When you land on a MailChimp website via a link in our newsletter and cookies are consequently set in your browser, you can delete or deactivate these cookies anytime.
Depending on the browser, the deactivation or deletion differs slightly. The following instructions show how to manage cookies in your browser:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
If you generally do not want to allow any cookies, you can set up your browser in a way so it would notify you whenever a potential cookie is about to be set. This lets you decide upon the placement of every single cookie.
MailChimp is an active participant in the EU-U.S. Privacy Shield Framework, which regulates the correct and secure transfer of personal data. You can find more information on this at https://www.privacyshield.gov/participant?id=a2zt0000000TO6hAAG&tid=121408452. You can find more information on MailChimp’s use of cookies at https://mailchimp.com/legal/cookies/, and you can learn more about data protection at MailChimp (Privacy) at https://mailchimp.com/legal/privacy/.
MailChimp Data Processing Addendum
We entered a contract with MailChimp on the Data Processing Addendum. This contract serves as a protection of your personal data and ensures that MailChimp follows the applicable data protection regulations and disclose your personal data to third parties.
You can find more information on this contract at https://mailchimp.com/legal/data-processing-addendum/.
Google Ads (Google AdWords) Conversion Tracking Privacy Policy
We use Google Ads (previously Google AdWords) as an online marketing measure, to advertise our products and services. Thus, we want to draw more people’s attention on the internet to the high quality of our offers. As part of our advertising measures with Google Ads, we use the conversion tracking of Google LLC., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”) on our website. With the aid of this free tracking tool we can tailor our advertising offer better to your interests and needs. In the following article we will explain, why we use conversion tracking, what data gets saved and how you can prevent this data retention.
What is Google Ads conversion tracking?
Google Ads (previously Google AdWords) is the internal online advertising sxstem of the company Google LLC. We are convinced of our offer‘s quality and would like as many people as possible to discover our website. For this, Google Ads offers the best platform within the online environment. Of course, we also want to get an overview of the cost-benefit factor of our advertising campaigns. Thence, we use Google Ads’ conversion tracking tool.
But what is a conversion actually? A conversion occurs, when you turn from an interested visitor into an acting website visitor. This happens every time you click on our ad and then make another action, such as paying a visit to our website. With Google’s conversion tracking tool, we can understand what happens after a user clicks our Google ad. It shows us for instance if products get bought, services are used or whether users have subscribed to our newsletter.
Why do we use Google Ads conversion tracking on our website?
We use Google Ads to show our offer also across other websites. Our aim is for our advertising campaigns to reach only those people, who are interested in our offers. With the conversion tracking tool, we see what keywords, ads, ad groups and campaigns lead to the desired customer actions. We see how many customers interact with our ads on a device, to then convert. With this data we can calculate our cost-benefit-factor, measure the success of individual ad campaigns and therefore optimise our online marketing measures. With the help of the obtained data we can give our website a more interesting design and customise our advertising offer better to your needs.
What data is stored with Google Ads conversion tracking?
For a better analysis of certain user actions, we have integrated a conversion tracking tag, or code snippet to our website. Therefore, if you click one of our Google ads, a Google domain stores the cookie “conversion” on your computer (usually in the browser) or on your mobile device. Cookies are little text files that save information on your computer.
Here are data of the most significant cookies for Google’s conversion tracking:
Name: Conversion
Value: EhMI_aySuoyv4gIVled3Ch0llweVGAEgt-mr6aXd7dYlSAGQ121408452-3
Purpose: This cookie saves every conversion you make on our website after you came to us via a Google ad.
Expiry date: after 3 months
Name: _gac
Value: 1.1558695989.EAIaIQobChMIiOmEgYO04gIVj5AYCh2CBAPrEAAYASAAEgIYQfD_BwE
Purpose: This is a classic Google Analytics Cookie that records various actions on our website.
Expiry date: after 3 months
Note: The cookie _gac only appears in connection with Google Analytics. The above list does not claim to be exhaustive, as Google repeatedly change the cookies they use for analytical evaluation.
As soon as you complete an action on our website, Google identifies the cookie and saves your action as a so-called conversion. For as long as you surf our website, provided the cookie has not expired, both Google and us can determine that you found your way to us via a Google ad. Then, the cookie is read and sent back to Google Ads, together with the conversion data. Moreover, other cookies may also be used for measuring conversions. Google Ads‘ conversion tracking can be fine-tuned and improved with the aid of Google Analytics. Furthermore, ads which Google displays in various places across the web, might be placed under our domain with the name “__gads” or “_gac”.
Since September 2017, analytics.js retains various campaign information with the _gac cookie. This cookie stores data, as soon as you open one of our sites that has been set up for Google Ads’ auto-tagging. In contrast to cookies that are placed for Google domains, Google can only read these conversion cookies when you are on our website. We do neither collect nor receive any personal data. We do obtain a report with statistical evaluations by Google. With the help thereof, we can not only see the total number of users who clicked our ad, but also what advertising measures were well received.
How long and where is the data stored?
At this point we want to reiterate, that we have no influence on how Google use the collected data. According to Google, the data are encrypted and saved on a secure server. In most cases, conversion cookies expire after 30 days, and do not transmit any personalised data. The cookies named “conversion“ and “_gac“ (which is used with Google Analytics) have an expiry date of 3 months.
How can I delete my data or prevent data retention?
You have the possibility to opt out of Google Ads’ conversion tracking. The conversion tracking can be blocked by deactivating the conversion tracking cookie via your browser. If you do this, you will not be considered for the statistic of the tracking tool. You can change the cookie settings in your browser anytime. Doing so, works a little different in every browser. Hence, in the following you will find an instruction on how to manage cookies in your browser:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
If you generally do not want to allow any cookies at all, you can set up your browser to notify you whenever a potential cookie is about to be set. This lets you decide upon permitting or denying the cookie’s placement. By downloading and installing the browser plugin at https://support.google.com/ads/answer/7395996 you can also deactivate all “advertising cookies”. Please consider that by deactivating these cookies, you cannot prevent all advertisements, only personalised ads.
Due to the certification for the American-European data protection convention “Privacy Shield”, the American corporation Google LLC must comply to the EU’s applicable data protection laws. If you want to find out more on data protection at Google, we recommend Google’s general Privacy Policy: https://policies.google.com/privacy?hl=en-GB.
Embedded Social Media elements Privacy Policy
We have embedded elements from social media services on our website, to display pictures, videos and texts. By visiting pages that present such elements, data is transferred from your browser to the respective social media service, where it is stored. We do not have access to this data.
The following links lead to the respective social media services’ sites, where you can find a declaration on how they handle your data:
-
Instagram Data Policy: https://help.instagram.com/519522125107875
-
For YouTube, the Google Privacy Policy applies: https://policies.google.com/privacy?hl=en-GB
-
Facebook Data Policy: https://www.facebook.com/about/privacy
-
Twitter Privacy Policy: https://twitter.com/en/privacy
Facebook Data Policy
We use selected Facebook tools on our website. Facebook is a social media network of the company Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2 Ireland. With the aid of this tool we can provide the best possible offers to you and anyone interested in our products and services. In the following we will give you an overview on the different Facebook tools, as well as on what data is sent to Facebook and how you can delete these data.
What are Facebook tools?
Along with many other products, Facebook also offers so called “Facebook Business Tools”. This is Facebook’s official name for the tools, but it is not very common. Therefore, we decided to merely call them “Facebook tools”. They include the following:
-
Facebook-Pixel
-
social plugins (e.g. the “Like” or “Share“ button)
-
Facebook Login
-
Account Kit
-
APIs (application programming interface)
-
SDKs (Softwart developmept kits)
-
Plattform-integrations
-
Plugins
-
Codes
-
Specifications
-
Documentations
-
Technologies and Services
With these tools Facebook can extend its services and is able to receive information on user activities outside of Facebook.
Why do we use Facebook tools on our website?
We only want to show our services and products to people who are genuinely interested in them. With the help of advertisements (Facebook Ads) we can reach exactly these people. However, to be able to show suitable adverts to users, Facebook requires additional information on people’s needs and wishes. Therefore, information on the user behaviour (and contact details) on our website, are provided to Facebook. Consequently, Facebook can collect better user data and is able to display suitable adverts for our products or services. Thanks to the tools it is possible to create targeted, customised ad campaigns of Facebook.
Facebook calls data about your behaviour on our website “event data” and uses them for analytics services. That way, Facebook can create “campaign reports” about our ad campaigns’ effectiveness on our behalf. Moreover, by analyses we can get a better insight in how you use our services, our website or our products. Therefore, some of these tools help us optimise your user experience on our website. With the social plugins for instance, you can share our site’s contents directly on Facebook.
What data is saved by the Facebook tools?
With the use of the Facebook tools, personal data (customer data) may be sent to Facebook. Depending on the tools used, customer data such as name, address, telephone number and IP address may be transmitted.
Facebook uses this information to match the data with the data it has on you (if you are a Facebook member). However, before the customer data is transferred to Facebook, a so called “Hashing” takes place. This means, that a data record of any size is transformed into a string of characters, which also has the purpose of encrypting data.
Moreover, not only contact data, but also “event data“ is transferred. These data are the information we receive about you on our website. To give an example, it allows us to see what subpages you visit or what products you buy from us. Facebook does not disclose the obtained information to third parties (such as advertisers), unless the company has an explicit permission or is legally obliged to do so. Also, “event data“ can be linked to contact information, which helps Facebook to offer improved, customised adverts. Finally, after the previously mentioned matching process, Facebook deletes the contact data.
To deliver optimised advertisements, Facebook only uses event data, if they have been combined with other data (that have been collected by Facebook in other ways). Facebook also uses event data for the purposes of security, protection, development and research. Many of these data are transmitted to Facebook via cookies. Cookies are little text files, that are used for storing data or information in browsers. Depending on the tools used, and on whether you are a Facebook member, a different number of cookies are placed in your browser. In the descriptions of the individual Facebook tools we will go into more detail on Facebook cookies. You can also find general information about the use of Facebook cookies at https://www.facebook.com/policies/cookies.
How long and where are the data saved?
Facebook fundamentally stores data, until they are no longer of use for their own services and products. Facebook has servers for storing their data all around the world. However, customer data is cleared within 48 hours after they have been matched with their own user data.
How can I delete my data or prevent data retention?
In accordance with the General Data Protection Regulation (GDPR) you have the right of information, rectification, transfer and deletion of your data.
The collected data is only fully deleted, when you delete your entire Facebook account. Deleting your Facebook account works as follows:
1) Click on settings in the top right side in Facebook.
2) Then, click “Your Facebook information“ in the left column.
3) Now click on “Deactivation and deletion”.
4) Choose “Permanently delete account“ and then click on “Continue to account deletion“.
5) Enter your password, click on “continue“ and then on “Delete account“.
The retention of data Facebook receives via our site is done via cookies (e.g. with social plugins), among others. You can deactivate, clear or manage both all and individual cookies in your browser. How this can be done differs depending on the browser you use. The following instructions show, how to manage cookies in your browser:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
If you generally do not want to allow any cookies at all, you can set up your browser to notify you whenever a cookie is about to be set. This gives you the opportunity to decide upon the permission or deletion of every single cookie.
Facebook is an active participant in the EU-U.S. Privacy Shield Framework, which regulates correct and secure transfer of personal data. You can find more information at https://www.privacyshield.gov/participant?id=a2zt0000000GnywAAC. We hope we could give you an understanding of the most important information about the use of Facebook tools and data processing. If you want to find out more on how Facebook use your data, we recommend reading the data policies at https://www.facebook.com/about/privacy/update.
Facebook Social Plugins Privacy Policy
We installed so-called social plugins from Facebook Inc. to our website. You can recognise these buttons by the classic Facebook logo, the “Like” button (hand with raised thumb) or by a “Facebook plugin” label. A social plugin is a small part of Facebook that is integrated into our page. Each plugin has its own function. The most used functions are the well-known “Like” and “Share” buttons.
Facebook offers the following social plugins:
-
“Save” button
-
“Like” button, Share, Send and Quote
-
Page plugin
-
Comments
-
Messenger plugin
-
Embedded posts and video player
-
Group Plugin
At https://developers.facebook.com/docs/plugins you will find more information on how the individual plugins are used. On the one hand, we use the social plug-ins to offer you a better user experience on our site, and on the other hand because Facebook can optimise our advertisements with it.
If you have a Facebook account or have already visited facebook.com, Facebook has already placed at least one cookie in your browser. In this case, your browser sends information to Facebook via this cookie as soon as you visit our website or interact with social plugins (e.g. the “Like” button).
The received information will be deleted or anonymised within 90 days. According to Facebook, this data includes your IP address, the websites you have visited, the date, time and other information relating to your browser.
In order to prevent Facebook from collecting much data and matching it with your Facebook data during your visit to our website, you must log out of Facebook while you visit our website.
If you are not logged in to Facebook or do not have a Facebook account, your browser sends less information to Facebook because you have fewer Facebook cookies. Nevertheless, data such as your IP address or which website you are visiting can be transmitted to Facebook. We would like to explicitly point out that we do not know what exact data is collected. However, based on our current knowledge, we want to try informing you as best we can about data processing. You can also read about how Facebook uses the data in the company’s data policy at https://www.facebook.com/about/privacy/update.
At least the following cookies are set in your browser when you visit a website with social plugins from Facebook:
Name: dpr
Value: no information
Purpose:This cookie is used to make the social plugins work on our website.
Expiry date: after end of session
Name: fr
Value: 0jieyh4121408452c2GnlufEJ9..Bde09j…1.0.Bde09j
Purpose:The cookie is also necessary for the plugins to function properly
Expiry date: after 3 months
Note: These cookies were set after our test and may be placed even if you are not a Facebook member.
If you are registered with Facebook, you can change your settings for advertisements yourself at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. If you are not a Facebook user, you can go to https://www.youronlinechoices.com/uk/your-ad-choices/ and manage your usage-based online advertising. There you have the option to deactivate or activate providers.
If you want to learn more about Facebook’s data protection, we recommend the company’s own data policies at https://www.facebook.com/policy.php.
Facebook Login Privacy Policy
We integrated the convenient Facebook Login to our website. With it, you can easily log into our site with your Facebook account, without having to create a new user account. If you decide to register via the Facebook Login, you will be redirected to the social media network Facebook. There, you can log in with your Facebook user data. By using this method to log in, data on you and your user behaviour is stored and transmitted to Facebook.
To save the data, Facebook uses various cookies. In the following we will show you the most significant cookies that are placed in your browser or that already exist when you log into our site via the Facebook Login:
Name: fr
Value: 0jieyh4c2GnlufEJ9..Bde09j…1.0.Bde09j
Purpose: This cookie is used to make the social plugin function optimally on our website.
Expiry date: after 3 months
Name: datr
Value: 4Jh7XUA2121408452SEmPsSfzCOO4JFFl
Purpose: Facebook sets the “datr” cookie, when a web browser accesses facebook.com. The cookie helps to identify login activities and protect users.
Expiry date: after 2 years
Name: _js_datr
Value: deleted
Purpose: Facebook sets this session cookie for tracking purposes, even if you do not have a Facebook account or are logged out.
Expiry date: after the end of the session
Note: The cookies we stated are only a small range of the cookies which are available to Facebook. Other cookies include for example _ fbp, sb or wd. It is not possible to disclose an exhaustive list, since Facebook have a multitude of cookies at their disposal which they use in variation.
On the one hand, Facebook Login enables a fast and easy registration process. On the other hand, it gives us the opportunity to share data with Facebook. In turn, we can customise our offer and advertising campaigns better to your needs and interests. The data we receive from Facebook by this means, is public data such as
-
your Facebook name
-
your profile picture
-
your stored email address
-
friends lists
-
button clicks (e.g. “Like“ button)
-
date of birth
-
language
-
place of residence
In return, we provide Facebook with information about your activities on our website. These include information on the terminal device you used, which of our subpages you visit, or what products you have bought from us.
By using Facebook Login, you agree to the data processing. You can terminate this agreement anytime. If you want to learn more about Facebook’s data processing, we recommend you to read Facebook’s Data Policy at https://www.facebook.com/policy.php.
If you are registered with Facebook, you can change your advertisement settings anytime at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen.
Instagram Privacy Policy
We have integrated functions of Instagram to our website. Instagram is a social media platform of the company Instagram LLC, 1601 Willow Rd, Menlo Park CA 94025, USA. Since 2012, Instagram is a subsidiary company of Facebook Inc. and is a part of Facebook’s products. The inclusion of Instagram’s contents on our website is called embedding. With this, we can show you Instagram contents such as buttons, photos or videos directly on our website. If you open websites of our online presence, that have an integrated Instagram function, data gets transmitted to, as well as stored and processed by Instagram. Instagram uses the same systems and technologies as Facebook. Therefore, your data will be processed across all Facebook firms.
In the following, we want to give you a more detailed insight on why Instagram collects data, what data these are and how you can control data processing. As Instagram belongs to Facebook Inc., we have, on the one hand received this information from the Instagram guidelines, and on the other hand from Facebook’s Data Policy.
What is Instagram?
Instagram is one of the most famous social media networks worldwide. Instagram combines the benefits of a blog with the benefits of audio-visual platforms such as YouTube or Vimeo. To “Insta“ (how the platform is casually called by many users) you can upload photos and short videos, edit them with different filters and also share them to other social networks. Also, if you do not want to be active on Instagram yourself, you can just follow other interesting users.
Why do we use Instagram on our website?
Instagram is a social media platform whose success has skyrocketed within recent years. Naturally, we have also reacted to this boom. We want you to feel as comfortable as possible on our website. Therefore, we attach great importance to diversified contents. With the embedded Instagram features we can enrich our content with helpful, funny or exciting Instagram contents. Since Instagram is a subsidiary company of Facebook, the collected data can also serve us for customised advertising on Facebook. Hence, only persons who are genuinely interested in our products or services can see our ads.
Instagram also uses the collected data for tracking and analysis purposes. We receive summarised statistics and therefore more insight to your wishes and interests. It is important to mention that these reports do not identify you personally.
What data is saved by Instagram?
Whenever you land on one of our sites, which have Instagram functions (i.e. Instagram photos or plugins) integrated to them, your browser automatically connects with Instagram’s servers. Thereby, data is sent to, as well as saved and processed by Instagram. This always happens, whether you have an Instagram account or not. Moreover, it includes information on our website, your computer, your purchases, the advertisements you see and on how you use our offer. The date and time of your interaction is also stored. If you have an Instagram account or are logged in, Instagram saves significantly more data on you.
Facebook distinguishes between customer data and event data. We assume this is also the case for Instagram. Customer data are for example names, addresses, phone numbers and IP addresses. These data are only transmitted to Instagram, if they have been “hashed” first. Thereby, a set of data is transformed into a string of characters, which encrypts any contact data. Moreover, the aforementioned “event data“ (data on your user behaviour) is transmitted as well. It is also possible, that contact data may get combined with event data. The collected data data is matched with any data Instagram already has on you.
Furthermore, the gathered data are transferred to Facebook via little text files (cookies) which usually get set in your browser. Depending on the Instagram function used, and whether you have an Instagram account yourself, the amount of data that gets stored varies.
We assume data processing on Instagram works the same way as on Facebook. Therefore, if you have an account on Instagram or have visited www.instagram.com, Instagram has set at least one cookie. If this is the case, your browser uses the cookie to send information to Instagram, as soon as you come across an Instagram function. No later than 90 days (after matching) the data is deleted or anonymised. Even though we have studied Instagram’s data processing in-depth, we cannot tell for sure what exact data Instagram collects and retains.
In the following we will show you a list of the least cookies placed in your browser when click on an Instagram function (e.g. button or an Insta picture). In our test we assume you do not have an Instagram account, since if you would be logged in to your Instagram account, your browser would place significantly more cookies.
The following cookies were used in our test:
Name: csrftoken
Value: “”
Purpose: This cookie is most likely set for security reasons to prevent falsifications of requests. We could not find out more information on it.
Expiry date: after one year
Name: mid
Value: “”
Purpose: Instagram places this cookie to optimise its own offers and services in- and outside of Instagram. The cookie allocates a unique user ID.
Expiry date: after end of session
Name: fbsr_121408452124024
Value: no information
Purpose: This cookie stores the login request of Instagram app users.
Expiry date: after end of session
Name: rur
Value: ATN
Purpose: This is an Instagram cookie which guarantees functionality on Instagram.
Expiry date: after end of session
Name: urlgen
Value: “{”194.96.75.33”: 1901}:1iEtYv:Y833k2_UjKvXgYe121408452”
Purpose: This cookie serves Instagram’s marketing purposes.
Expiry date: after end of session
Note: We do not claim this list to be exhaustive. The cookies that are placed in each individual case, depend on the functions embedded as well as on your use of Instagram.
How long and where are these data stored?
Instagram shares the information obtained within the Facebook businesses with external partners and persons you are globally connected with. Data processing is done according to Facebook’s internal data policy. Your data is distributed to Facebook’s servers across the world, partially for security reasons. Most of these servers are in the USA.
How can I delete my data or prevent data retention?
Thanks to the General Data Protection Regulation (GDPR), you have the right of information, rectification, transfer and deletion of your data. Furthermore, you can manage your data in Instagram’s settings. If you want to delete your data on Instagram completely, you will have to delete your Instagram account permanently.
And this is how an Instagram account can be deleted:
First, open the Instagram app. Then, navigate to your profile page, select the three bars in the top right, choose “Settings” and then click “Help”. Now, you will be redirected to the company’s website, where you must click on “Managing Your Account” and then “Delete Your Account”.
When you delete your account completely, Instagram deletes posts such as your photos and status updates. Any information other people shared about you are not a part of your account and do therefore not get deleted.
As mentioned before, Instagram primarily stores your data via cookies. You can manage, deactivate or delete these cookies in your browser. Depending on your browser, managing them varies a bit. We will show you the instructions of the most relevant browsers here.
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
Generally, you can set your browser to notify you whenever a cookie is about to be set. Then you can individually decide upon the permission of every cookie.
Instagram is a subsidiary company of Facebook Inc. and Facebook is an active participant in the EU-U.S. Privacy Shield Framework. This framework regulates correct transfer between the USA and the European Union. At https://www.privacyshield.gov/participant?id=a2zt0000000GnywAAC you can find out more about this. We gave our best to make you familiar with the most important information on data processing by Instagram. At https://help.instagram.com/519522125107875 you can find out more on Instagram’s data policies.
Pinterest Privacy Policy
On our website we use buttons and widgets of the social media network Pinterest, by the company Pinterest Inc., 808 Brannan Street, San Francisco, CA 94103, USA.
By opening pages that use these functions, data (IP address, browser data, date and time, cookies) are transmitted to, and stored and evaluated by Pinterest.
The privacy guidelines on what information Pinterest collects and how they use it, can be found at https://policy.pinterest.com/en-gb/privacy-policy.
Klarna Checkout Privacy Policy
On our website we use the Klarna Checkout online payment system by the Swedish company Klarna Bank AB. Klarna Bank is headquartered in Sveavägen 46, 111 34 Stockholm, Sweden. If you choose this service, your personal data will be sent to Klarna, where it will be stored and processed. With this privacy policy we want to give you an overview of Klarna’s data processing.
What is Klarna Checkout?
Klarna Checkout is a payment system for online shops. The user selects the payment method and Klarna Checkout takes over the entire payment process. Once a user has made payment via the checkout system and provided the relevant data, future online purchases can be made even faster and easier. Klarna’s system then recognises the existing customer after they enter their email address and postcode.
Why do we use Klarna Checkout on our website?
It is our goal to offer you the best possible service with our website and our integrated online shop. In addition to the overall website and offer experience this also includes smooth, fast and secure payment processing of your orders. To ensure this, we use the Klarna Checkout payment system.
What data is stored by Klarna Checkout?
As soon as you choose Klarna’s payment service and pay using Klarna Checkout, you transmit personal data to the company. On Klarna’s checkout page, technical data such as browser type, operating system, our web address, date and time, your IP address as well as your language and time zone settings are collected and transmitted to Klarna’s servers where they are stored. This data is stored even if you have not yet completed an order at that point.
If you order a product or service from our shop, you must enter your personal data in the provided fields. Klarna processes this data for handling the payment. The following personal data (along with general product information) may be stored and processed by Klarna to check your creditworthiness and identity:
-
Contact information: Name, date of birth, national ID number, title, invoice- und shipping address, email address, telephone number, nationality or salary.
-
Payment information such as credit cards or your account number
-
Product details such as shipment number, as well as type and price of the product
Furthermore, there are data which may optionally be collected if you have specifically decided for it. These are for example political, religious, or ideological beliefs or various health data.
In addition to the data mentioned above, Klarna can also collect data about the goods or services you order. It may also do this via third parties (such as e.g. us or public databases). This can for example be the type or tracking number of the ordered article, but also information on your creditworthiness, as well as your income or loan grants. Klarna can also pass on your personal data to service companies such as software and data storage providers or us as a retailer.
Every time data is automatically filled into a form, cookies are involved. If you do not want to use this function, you can deactivate these cookies anytime. Below you will find instructions on how to delete, deactivate or manage cookies in your browser. Our tests have shown that Klarna does not directly place cookies. If you choose the payment method “Klarna Sofort” and click on “Order”, you will be redirected to the “Sofort” website. After successful payment you will land on our thank-you page. There the following cookie is set by sofort.com:
Name: SOFUEB
Value: e8cipp378mdscn9e17kajlfhv7121408452-4
Purpose: This cookie stores your session ID.
Expiry date: after ending the browser session
How long and where are the data stored?
Klarna strives to store your data only within the EU or the European Economic Area (EEA). However, it can also happen that data is transferred outside the EU/EEA. If this happens, Klarna ensures that the data protection either complies with the GDPR, that the third country is subject to an adequacy decision of the European Union or that the country has the US Privacy Shield certificate. Any data is always stored for as long as Klarna requires it for processing.
How can I delete my data or prevent data retention?
You can withdraw your consent for Klarna to process personal data anytime. Moreover, you always have the right for information, rectification, and deletion of your personal data. For this you must simply contact the company or its data protection team by email at privacy@klarna.co.uk. You can also contact them directly via “My Privacy Request” on Klarna’s website.
Cookies that Klarna may use for their functions can be deleted, deactivated, or managed in your browser. These settings can vary slightly, depending on the browser you use. The following instructions will show you how to manage cookies in your browser:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
We hope we were able to give you a good overview of Klarna’s data processing. If you want to learn more about the handling of your data, we recommend Klarna’s privacy notice at https://cdn.klarna.com/1.0/shared/content/legal/terms/0/en_gb/privacy.