1. Legal Basis
1.1. The protection of personal data is important to us and also required by law. The EU General Data Protection Regulation, the Data Protection Act and the Telecommunications Act serve the right to the protection of personal data. We process your data exclusively on the basis of these legal provisions in the currently applicable version (GDPR, DSG, TKG 2003).
2. Basic information about the data protection manager
2.1. Responsible according to Art. 4 Para. 7 EU General Data Protection Regulation (GDPR) is:
Diana Kordisch ; dr Christian. Feurstein Strasse 16/3 ; 4810 Gmunden ; email@example.com ; 0043677/61549200
2.2. It is particularly important to us to protect and keep safe all personal data that you entrust to us. In this document you will learn more about how we use and process your personal data.
3. How do we get your data?
3.1. Data that you provide/communicate to us In principle, you do not have to provide us with any personal information directly when using our website. For our contact form or our newsletter subscription, however, you must provide us with personal data such as your name or your e-mail address in order to be able to use the respective service at all. However, you will be informed separately about this in the respective services.
3.2. Data that you provide/communicate through your use of our services In addition, we receive some data automatically and for technical reasons when you visit our website. Every time a user accesses our website and every time a file is called up, access data about this process is stored in the form of log files. The following data is collected: eg - the website from which you access our site, - the IP address assigned to you by your provider etc... - (This information must be clarified with the hosting provider in individual cases). This data is technically required for us to display our website to you and to ensure stability and security.
4. Purpose limitation, legal basis, storage period and data recipient
4.1. We need the collected personal data to fulfill the contract, billing, assertion of contractual claims and for customer service purposes. The data is collected, stored, processed and used for this purpose.
4.2. The legal basis for the processing of your personal data is, on the one hand, the fulfillment of a contract (e.g. online shopping), legitimate interests, the fulfillment of our legal or contractual obligations and, on the other hand, your consent (e.g. contact form, cookies). Failure to provide the data can have different consequences.
4.3. We also process data that we have legitimately received from [name, contact details or categories of recipient]. This is basic personal data such as [e.g.: your name, your professional position, your preferred contact details (e-mail address, address, telephone number, etc.).] These come from publicly accessible sources.
4.4. We process your personal data [name, address, telephone number, e-mail address], if necessary, for the duration of the entire business relationship (from the initiation, processing to the termination of a contract) and also in accordance with the statutory storage and documentation obligations, resulting from the German Commercial Code (UGB), the Federal Tax Code (BAO), as well as until the end of any legal dispute, ongoing warranty and guarantee periods, etc.
4.5. As part of the operation of our websites, we commission Shopify, PayPal, who can gain access to your personal data in the course of their activities, provided they need the data to fulfill their respective service. They have committed themselves to us to comply with the applicable data protection regulations. Order processing contracts have been concluded in accordance with Art. 28 GDPR. You can request more information about the processors commissioned by us at firstname.lastname@example.org.
5. Contact Form
5.1. Your details, including personal data, from our contact form will be sent to us via our own mail server to process your request, processed and stored by us. This data will not be collected or passed on without your consent. We cannot process your inquiries without this data.
5.2. Data processing takes place on the basis of the legal provisions of Section 96 (3) TKG and Art 6 (1) (a) (consent) GDPR.
6.1. You can register for our newsletter on the website using the double opt-in procedure. After registering, you will receive an email asking you to confirm your registration. Without the disclosure of this data, the transmission of our newsletter is not possible. You can unsubscribe from the newsletter by clicking the unsubscribe link at the end of each newsletter.
6.2. We commission processors to send our newsletter. They have committed themselves to us to comply with the applicable data protection regulations. An order processing contract was concluded in accordance with Art. 28 GDPR. You can request more information about the processors commissioned by us at [email address].
6.3. Data processing takes place on the basis of the legal provisions of Section 96 (3) TKG and Art 6 (1) (a) (consent) GDPR.
7. Online purchase
7.1. We would like to point out that the IP data of the connection owner, as well as the name, address and credit card number of the buyer are stored by the web shop operator Canapa in the context of cookies for the purpose of simplifying the purchasing process and for subsequent contract processing. In addition, the following voluntary data is also stored with us for the purpose of contract processing: name, address, e-mail address, telephone number; bank details. The data you provide is required to fulfill the contract or to carry out pre-contractual measures. Without this data we cannot conclude the contract with you.
7.2. The data [name, address, e-mail address, telephone number] is transmitted to [e.g. the processing bank/payment service provider] for the purpose of [debiting the purchase price to the transport company/shipping company commissioned by us] for the purpose of [delivering the goods and to our tax advisor] for the purpose [of fulfilling our tax obligations]. They have committed themselves to us to comply with the applicable data protection regulations. An order processing contract was concluded in accordance with Art. 28 GDPR. You can request more information about the processors commissioned by us at email@example.com.
7.3. Data processing takes place on the basis of the legal provisions of Section 96 (3) TKG and Art 6 GDPR (in particular consent and/or the need to fulfill the contract).
8. Cookies, other tracking tools and web analysis [when using web analysis tools such as Google Analytics, eTracker etc.]
8.1. Cookies, other tracking technologies, and web analytics service features [Shopify Inc., a Canadian company located at 151 O'Connor Street, Ground Floor, Ottawa, Ontario, K2P 2L8, Canada] can be used in a variety of ways on our Internet platform come. Cookies are small pieces of text information that make it possible to recognize the user and analyze your use of our website. The information generated in this way is transferred to the provider's server and stored there. They serve to make our website more user-friendly, more effective and more secure overall. Cookies are also used to measure the frequency of page views and for general navigation.
8.2. By using our website, you agree that we set cookies. You can refuse to accept cookies in your browser settings. How this works in detail can be found in the instructions of your browser manufacturer. If you decide against certain technical and/or functional cookies, the functionality of our website may be restricted. Some cookies remain stored on your end device until you delete them.
8.3. We have concluded a corresponding contract for order data processing with the provider. They have committed themselves to us to comply with the applicable data protection regulations. You can request more information about the processors commissioned by us at firstname.lastname@example.org.
8.4. Your IP address is recorded but pseudonymised immediately [e.g. by deleting the last 8 bits]. As a result, only a rough localization is possible.
8.5. The relationship with the web analytics provider is based on standard contractual clauses/an adequacy decision by the European Commission.
8.6. Data processing takes place on the basis of the legal provisions of Section 96 (3) TKG and Art 6 GDPR (particularly consent). Since the privacy of our users is important to us, the user data is pseudonymized [pseudonymization must be clarified with the web analysis service].
9. Consent and Right of Withdrawal
9.1. If your consent is required for the processing of your data, we will only process it after your express consent.
9.2. In principle, we do not process any data of minors and are not authorized to do so. By submitting your consent, you confirm that you have reached the age of 14 or that you have the consent of your legal representative.
9.3. You can revoke your consent at any time at the following e-mail address: email@example.com. In such a case, the data previously stored about you will be anonymized and subsequently only used for statistical purposes without personal reference. The revocation of the consent does not affect the lawfulness of the processing carried out on the basis of the consent up to the point of revocation.
10. Data Security
10.1. Shopify Canapa Shop uses technical and organizational security measures to protect the stored personal data against accidental or intentional manipulation, loss or destruction and against access by unauthorized persons. Our security measures are continuously improved in line with technical progress.
11. Your e Rights
11.1. You have the right to information from the person responsible [Diana Kordisch; dr Christian. Feurstein Strasse 16/3 ; 4810 Gmunden ; firstname.lastname@example.org] about the relevant personal data. If there is no statutory storage obligation, you have the right to delete this data and to object to the processing. You also have the right to correction, restriction, data portability, revocation and objection. If you are of the opinion that the processing of your data violates data protection law or your data protection rights have otherwise been violated in any way, you can complain to the supervisory authority. In Austria, this is the data protection authority (Barichgasse 40-42, 1030 Vienna; email: email@example.com).
11.2. Regarding your rights, please contact us at firstname.lastname@example.org or write to: Canapa/Diana Kordisch ; dr Christian. Feurstein Strasse 16/3 ; 4810 Gmunden