Data Protection Provisions
Overview
Types of Data |
For Billing: Customer Account: –Date and Time of the Request –Time Zone Difference to Greenwich Mean Time (GMT) –Content of the Request (specific page) –Access Status/HTTP Status Code –Amount of Data Transferred Each Time –Website from which the Request Originates –Browser –Operating System and its Interface - Language and Version of the Browser Software |
Data Sharing |
Payment Service Providers (paypal, heidelpay) Newsletter (cleverreach) |
Cloud Usage |
none |
Tracking |
Google Analytics Hotjar |
Advertising |
only within the legal framework for similar products by e-mail |
§ 1 Information on the Collection of Personal Data and Provider Identification
- Below we inform you about the collection of personal data when using this website. Personal data are all data that can be related to you personally, e.g. name, address, e-mail addresses, user behaviour.
- Responsible according to Art. 4 para. 7 EU General Data Protection Regulation (GDPR) is REPROGRAFIE EICHLER GmbH, Mohrenstraße 11-17, D-50670 Cologne, support@repro-online.de (see our imprint). Our data protection officer is Mr Andreas Pinheiro LL.M., a.pinheiro@ap-datenschutz.de
- If we use commissioned service providers for individual functions of our offer or want to use your
data for advertising purposes, we will inform you in detail about the respective
processes below. We will also specify the established criteria for the storage period.
§ 2 Rights, Especially to Information and Revocation
- You have the following rights towards us regarding your personal data:
– Right to information,
– Right to correction or deletion,
– Right to restriction of processing,
– Right to object to processing,
– Right to data portability. - If you have given consent to the use of data, you can revoke it at any time. If the lawfulness of the processing is based on consent, it remains valid until the revocation is exercised.
- Please send all information requests, requests for information or objections to data processing by e-mail to Support@repro-online.de or to the address stated in § 1 para. 2.
- You can request us to delete your data at any time. There may be statutory retention periods that allow us to keep your data until the expiry of the period.
- If your data should be incorrect, you have the right to request us to correct it. We will comply with this request immediately.
- You have the right to receive the personal data you have provided to us in a readable format, as far as technically possible, to provide it to another company (right to data portability).
- You have the right to complain to the supervisory authority responsible for you.
§ 3 Data Security
- We maintain current technical measures to ensure data security, especially to
protect your personal data from dangers during data transmission and from access by
third parties. These are adapted to the current state of technology accordingly.
§ 4 Collection of Personal Data for Informational Use
- When using the website purely for informational purposes, i.e. if you do not register,
sign up or otherwise provide us with information, we only collect the personal data
that your browser transmits to our server. When you view our website, we collect
the following data which are technically necessary for us to display our website and
to ensure stability and security (legal basis is Art. 6 para. 1 sentence 1 lit. f GDPR):
– IP address
– Date and time of the request
– Time zone difference to Greenwich Mean Time (GMT)
– Content of the request (specific page)
– Access status/HTTP status code
– Amount of data transferred each time
– Website from which the request originates
– Browser
– Operating system and its interface
– Language and version of the browser software - When you contact us by e-mail or via the contact form, your e-mail address, your name and, if you provide it, your telephone number will be stored by us. The purpose of this storage is solely to contact you in order to answer your questions.
- The legal basis for the collection stated is the consent you have given by visiting our website and confirming the cookie banner (Art. 6 para. 1 lit. a GDPR).
- We will only use your data for advertising purposes to the extent permitted by law. In particular, we use your e-mail address only for direct advertising of our own similar goods or services. You can object to the use of your data for advertising purposes at any time in writing or in text form (e-mail to support@repro-online.de). We rely on our legitimate interest in advertising our products to our customers pursuant to Art. 6 para. 1 lit. f GDPR.
- In addition to the data mentioned above, cookies are stored on your computer when you use our website. Cookies are small text files that are stored on your hard drive and assigned to the browser you use, through which the party setting the cookie (here us) receives certain information. Cookies cannot execute programs or transmit viruses to your computer. They serve to make the internet offer overall more user-friendly and effective.
§ 5 Cookies
- We use cookies on our website. Such cookies are necessary so that you can move freely on the website and use its features; this includes, among other things, access to secured areas of the website. Through cookies, we can track who has visited the page(s) and derive from this how often certain pages are visited, which parts of the site are particularly popular. Session cookies store information about your activities on our website.
- This website uses the following types of cookies, whose scope and functionality are explained below:
– Transient Cookies (temporary use)
– Persistent Cookies (time-limited use)
– Third Party Cookies - Transient cookies are automatically deleted when you close the browser. These include in particular session cookies. These store a so-called session ID, with which various requests from your browser can be assigned to the common session. This allows your computer to be recognised again when you return to the website. The session cookies are deleted when you log out or close the browser.
- Persistent cookies are automatically deleted after a specified period, which can vary depending on the cookie. You can delete the cookies at any time in the security settings of your browser.
- You can configure your browser settings according to your wishes and, for example, reject the acceptance of third-party cookies or all cookies. We point out that you may not be able to use all functions of this website.
- We use cookies to be able to identify you for subsequent visits if you have an account with us. Otherwise, you would have to log in again for each visit.
- The following cookies are used:
Name |
Persistence |
Description |
_ga |
SESSION |
Cookie for the use of Google Analytics |
_gid |
1 day |
Cookie for the use of Google Analytics |
hj* |
1 day |
Cookie for the use of Hotjar |
PHPSESSID |
3 days |
Your session ID on the server. |
lang |
1 day |
The store view or language you have selected. |
form_key |
3 days |
Stores randomly generated key used to prevent forged requests. |
mage-cache-sessid |
1 day |
Facilitates caching of content on the browser to make pages load faster. |
mage-cache-storage |
1 day |
Facilitates caching of content on the browser to make pages load faster. |
mage-cache-storage-section-invalidation |
1 day |
Facilitates caching of content on the browser to make pages load faster. |
mage-messages |
1 day |
Cookie for the use of the webpage |
mage-translation-file-version |
SESSION |
Facilitates translation of content to other languages. |
mage-translation-storage |
SESSION |
Facilitates translation of content to other languages. |
product_data_storage |
3 days |
Data about the products in the shopping cart. |
recently_compared_product |
1 day |
Data about the selected or compared products. |
recently_compared_product_previous |
1 day |
Data about the selected or compared products. |
recently_viewed_product |
1 day |
Data about the selected or compared products. |
recently_viewed_product_previous |
1 day |
Data about the selected or compared products. |
section_data_ids |
1 day |
Facilitates caching of content on the browser to make pages load faster. |
private_content_version |
1 year |
Adds a random, unique number and time to pages with customer content to prevent them from being cached on the server. |
_gcl_au |
1 month |
Used by Google AdSense to experiment with ad efficiency on websites that use their services. |
_ga_# |
1 month |
Used by Google Analytics to collect data on how often a user has visited the website, as well as the date of the first and last visit. |
collect |
SESSION |
Used to send data about the device and visitor behaviour to Google Analytics. Tracks the visitor across devices and marketing channels. |
_uetsid |
1 day |
Used to track visitors across multiple websites to present relevant advertising based on visitor preferences. |
_uetvid |
25 days |
Used to track visitors across multiple websites to present relevant advertising based on visitor preferences. |
MUID |
25 days |
Frequently used by Microsoft as a unique user ID. The cookie enables user tracking by synchronising the ID across many Microsoft domains. |
MSPTC |
25 days |
This cookie records data about the visitor. The information is used to optimise ad relevance. |
pagead/landing |
Collects data about visitor behaviour across multiple websites to present more relevant advertising. This also allows the website to limit how often the same ad is shown to you. |
|
uetsid_exp |
Contains the expiry date of the cookie with the corresponding name. |
|
_uetvid_exp |
Contains the expiry date of the cookie with the corresponding name. |
|
mage-cache-timeout |
This cookie is necessary for the cache function. The website uses a cache to optimise the response time between the visitor and the website. The cache is usually stored in the visitor's browser. |
|
s_sq |
SESSION |
The purpose of this cookie is to enable persistent ID tracking in the first-party context and is used as a reference ID when the AMCV cookie has expired. |
s_fid |
1 day |
This cookie is used to identify a unique visitor when the standard s_vi cookie is not available due to third-party cookie restrictions. |
s_cc |
SESSION |
Only one cookie for all accounts |
amcookie_policy_restriction |
10 days |
Stores the status of cookies |
CookieConsent |
Stores the status of cookies |
§ 6 Data Sharing for Website Maintenance
- We will not share your personal data with third parties unless we inform you in this section about a transfer.
- Our IT service providers have access to our stored data to fix errors and enable us to implement the required technical and organisational measures. We rely on our legitimate interest in securing our IT pursuant to Art. 6 para. 1 lit. f GDPR or on the fulfilment of legal obligations pursuant to Art. 6 para. 1 lit. c GDPR.
- To provide the newsletter service, we pass your data to CleverReach GmbH & Co. KG (https://www.cleverreach.de/). This service enables us to organise the sending and management of newsletters, as well as the visual design. Your data will not be passed on by CleverReach GmbH & Co. KG.
- The IT service provider(s) have been carefully selected and commissioned by us in writing. They are bound by our instructions and are regularly monitored by us. The service providers will not pass on this data to third parties.
- Your data will not be transferred outside the EU (EEA) area.
§ 7 Use of Our Webshop
- If you want to order in our webshop, it is necessary for the conclusion of the contract that you provide your personal data which we need to process your order. Mandatory information necessary for the processing of contracts is marked separately, other information is voluntary. The data you provide will be processed to process your order. For this purpose, we may pass your payment data to our house bank. The legal basis for this is Art. 6 para. 1 sentence 1 lit. b GDPR.
- You can voluntarily create a customer account through which we can store your data for future purchases. When creating an account under "My Account", the data you provide will be stored revocably. All other data, including your user account, can be deleted at any time in the customer area.
- We may also process the data you provide to inform you about other interesting products from our portfolio or to send you e-mails with technical information.
- Due to commercial and tax law requirements, we are obliged to store your address, payment and order data for ten years. However, after two years, we restrict processing, i.e. your data will only be used to comply with legal obligations.
- If you choose the payment method "prepayment", we store your IBAN and BIC to process the payment and according to the statutory retention periods (e.g. § 147 para. 1 AO – 10 years). The legal basis for the collection here is Art. 6 para. 1 lit. b GDPR (performance of a contract) and lit. c (storage due to a legal obligation).
- We use the data you provide to process your order. For this purpose, we pass your address data to a commissioned shipping company. We delete these after the contract has been processed and the expiry of the tax and commercial retention obligations. The legal basis for the collection stated is your consent, which you have given by creating the customer account or by ordering (Art. 6 para. 1 lit. a GDPR).
- The payment processing takes place with the options "Sofort-Überweisung" and "Credit Card" via the service provider Heidelberger Payment GmbH. This is the responsible body within the meaning of the BDSG and service provider within the meaning of the TMG. Please note the privacy policy of Heidelberger Payment GmbH at https://www.heidelpay.de/unternehmen/impressum/datenschutz/.
- If you choose the payment method "paypal", the payment is made via PayPal (Europe) S.à r.l. et Cie, S.C.A. PayPal is also solely responsible for processing the payment towards you within the meaning of the BDSG as a telemedia service provider. Please note the privacy policy at https://www.paypal.com/de/webapps/mpp/ua/privacy-full?locale.x=de_DE
- To prevent unauthorised access by third parties to your personal data, especially financial data, the ordering process is encrypted using SSL technology.
§ 8 Newsletter
- With your consent, you can subscribe to our newsletter, with which we inform you about our current interesting offers. The advertised goods and services are named in the consent declaration. When registering to use the user account, you can choose to subscribe to the Repro Eichler newsletter. To do this, you must check the box before "Subscribe to newsletter".
- For registration to our newsletter, we use the so-called double opt-in procedure. This means that after your registration, we send you an e-mail to the specified e-mail address asking you to confirm that you want to receive the newsletter. If you do not confirm your registration within 24 hours, your information will be blocked and automatically deleted after one month. In addition, we store your IP addresses used and the times of registration and confirmation. The purpose of the procedure is to be able to prove your registration and, if necessary, clarify possible misuse of your personal data.
- The only mandatory information for sending the newsletter is your e-mail address. The provision of other, separately marked data is voluntary and is used to address you personally. After your confirmation, we store your e-mail address for the purpose of sending the newsletter. The legal basis is Art. 6 para. 1 sentence 1 lit. a GDPR.
- You can revoke your consent to receive the newsletter at any time and unsubscribe from the newsletter. You can declare the revocation by clicking on the link provided in every newsletter e-mail, via this form on the website, by e-mail to info@repro-eichler.de or by a message to the contact details given in the imprint.
- We point out that when sending the newsletter, we evaluate your user behaviour. For this evaluation, the sent e-mails contain so-called web beacons, also called tracking pixels. These are one-pixel image files that link to our website and thus enable us to evaluate your user behaviour. This is done by collecting the data mentioned in § 4 as well as web beacons, which are assigned to your e-mail address and linked with their own ID. The data is collected exclusively pseudonymously, i.e. the IDs are not linked to your other personal data, thus excluding direct personal reference. The information collected in this way is stored by the newsletter provider CleverReach on its server in Germany. Such tracking is also not possible if you have disabled the display of images by default in your e-mail program. In this case, however, the newsletter will not be displayed completely and you may not be able to use all functions. If you manually display the images, the above-mentioned tracking takes place.
- If you have subscribed to a newsletter with us, you can revoke your consent to receive the newsletter at any time. You can declare the revocation by e-mail to support@repro-online.de or by a message to the contact details given in the imprint. Your data will not be passed on to third parties.
- You can also switch the newsletter subscription on or off at any time via the function in your user account.
§ 9 Web Tracking - Google Analytics
- This website uses, if you have given consent, Google Analytics, a web analytics service of Google Inc. ("Google"). Google Analytics uses so-called "cookies", text files that are stored on your computer and allow an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there. In the case of activation of IP anonymisation on this website, your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area beforehand. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide other services related to website and internet usage to the website operator.
- The IP address transmitted by your browser within the scope of Google Analytics will not be merged with other data from Google.
- You can prevent the storage of cookies by adjusting your browser software accordingly; however, we point out that in this case you may not be able to use all functions of this website fully. You can also prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) by Google as well as the processing of this data by Google by downloading and installing the browser plug-in available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de.
- This website uses Google Analytics with the extension "_anonymizeIp()". This means that IP addresses are processed in a shortened form, making personal reference impossible. If personal reference applies to the data collected about you, it is immediately excluded and the personal data is deleted immediately.
- We use Google Analytics to analyse and regularly improve the use of our website. Through the statistics obtained, we can improve our offer and make it more interesting for you as a user. For the exceptional cases in which personal data is transferred to the USA, Google has committed to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework. The legal basis for the use of Google Analytics is your consent, thus Art. 6 para. 1 sentence 1 lit. a GDPR.
- Information about the third party: Google Dublin, Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland, Fax: +353 (1) 436 1001. Terms of use: http://www.google.com/analytics/terms/de.html, privacy overview: http://www.google.com/intl/de/analytics/learn/privacy.html, and the privacy policy: http://www.google.de/intl/de/policies/privacy.
- This website also uses Google Analytics for cross-device analysis of visitor flows, which is carried out via a user ID. You can deactivate the cross-device analysis of your usage in your customer account under "My Data", "personal data".
§ 10 Hotjar Analysis Tool
- We use the web analytics service Hotjar on our websites by Hotjar Ltd, Level 2, St Julians Business Centre, 3 Elia Zammit Street, St Julians STJ 1000, Malta, Europe, +1 (855) 464-6788.
- This tool records movements on the observed websites in so-called heatmaps. This allows us to anonymously see where visitors click and how far they scroll. This enables us to design our website better and more user-friendly.
- The protection of your personal data is very important to us when using this tool. All data is collected without us being able to assign it to specific users. We can only track how the mouse is moved, where clicked and how far scrolled. Furthermore, the screen size of the device, device type, browser information, the country from which access was made and the preferred language are recorded. If personal data of you or third parties is displayed on a website, it is automatically hidden by Hotjar. Therefore, it is not traceable for us.
- You can prevent the use of the Hotjar tool by a "Do Not Track" header. Then no data will be collected about your visit to our website. To do this, you must set your browser accordingly. Instructions in German can be found at http://www.akademie.de/wissen/do-not-track-datenschutz. You can also deactivate the Hotjar tool alone using the opt-out switch at https://www.hotjar.com/opt-out.
- More information about Hotjar Ltd. and the Hotjar tool can be found at https://www.hotjar.com. The privacy policy of Hotjar Ltd. can be found at https://www.hotjar.com/privacy
- Regarding the use of Hotjar, we rely on our legitimate interest in optimising and improving the presentation of websites. Since Hotjar does not transmit personal data but tracks anonymously, this interest based on our entrepreneurial freedom (Art. 15 GrCh) outweighs pursuant to Art. 6 para. 1 lit. f GDPR.
- Since we also store cookies for the use of the service, we need your consent for this (ECJ ruling of 1.10.2019 – Planet 49). We obtain this before storing the cookies (see § 5). We store these on the basis of Art. 6 para. 1 lit. a GDPR.
§ 11 Use of Google AdSense
- This website uses the online advertising service Google AdSense, through which advertising tailored to your interests can be presented to you. Our interest is to show you advertising that might be of interest to you to make our website more interesting for you. For this purpose, statistical information about you is collected, which is processed by our advertising partners. These advertisements are identifiable by the note "Google Ads" in the respective ad.
- By visiting our website, Google receives the information that you have accessed our website. Google uses a web beacon to set a cookie on your computer. The data mentioned in § 2 of this declaration is transmitted. We have no influence on the data collected, nor do we know the full extent of data collection and storage duration. Your data is transferred to the USA and evaluated there. If you are logged in with your Google account, your data can be directly assigned to it. If you do not want the assignment with your Google profile, you must log out. It is possible that this data is passed on to Google's contractual partners, third parties and authorities. The legal basis for processing your data is Art. 6 para. 1 sentence 1 lit. f GDPR. OR: This website does not display third-party ads via Google AdSense.
- You can prevent the installation of cookies from Google AdSense in various ways: a) by adjusting your browser software accordingly, in particular suppressing third-party cookies so that you do not receive ads from third parties; b) by deactivating interest-based ads at Google via the link http://www.google.de/ads/preferences, whereby this setting is deleted when you delete your cookies; c) by deactivating interest-based ads of providers who are part of the self-regulation campaign "About Ads" via the link http://www.aboutads.info/choices, whereby this setting is deleted when you delete your cookies; d) by permanent deactivation in your browsers Firefox, Internet Explorer or Google Chrome under the link http://www.google.com/settings/ads/plugin. We point out that in this case you may not be able to use all functions of this offer fully.
- Further information on the purpose and scope of data collection and processing as well as further information on your rights and settings options to protect your privacy can be found at: Google Inc., 1600 Amphitheater Parkway, Mountainview, California 94043, USA; Privacy conditions for advertising: http://www.google.de/intl/de/policies/technologies/ads. Google has committed to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.
§ 12 PLUGIN: Google Web Fonts
- This site uses so-called web fonts provided by Google for uniform font display. When a page is called up, your browser loads the required web fonts into its browser cache to display texts and fonts correctly.
- For this purpose, the browser you use must connect to Google's servers. This gives Google knowledge that our website was accessed via your IP address. The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online offers. This constitutes a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR.
- If your browser does not support web fonts, a standard font from your computer is used.
- Further information on Google Web Fonts can be found at https://developers.google.com/fonts/faq and in Google's privacy policy: https://www.google.com/policies/privacy/
§ 13 Use of Google Tag Manager:
- Google Tag Manager is a solution that allows marketers to manage website tags via an interface. The Tag Manager tool itself (which implements the tags) is a cookie-free domain and does not collect personal data. The tool triggers other tags, which in turn may collect data. Google Tag Manager does not access this data. If a deactivation has been made at the domain or cookie level, it remains in effect for all tracking tags implemented with Google Tag Manager. http://www.google.de/tagmanager/use-policy.html. Click here to be excluded from collection via Google Tag Manager.