Privacy Policy

1) INFORMATION ABOUT THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE CONTROLLER

1.1 We are pleased that you are visiting our website and thank you for your interest. Below, we inform you about how we handle your personal data when you use our website. Personal data refers to all information that can be used to personally identify you.

1.2 The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is [Shop Name]. The controller is the natural or legal person who, alone or jointly with others, determines the purposes and means of processing personal data.

1.3 For security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries sent to the controller), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the "https://" prefix and the padlock icon in your browser's address bar.

 


2) DATA COLLECTION WHEN VISITING OUR WEBSITE

When you use our website for informational purposes only—meaning you do not register or otherwise provide us with information—we collect only the data that your browser transmits to our server (so-called "server log files"). When you visit our website, we collect the following data, which is technically necessary for us to display the website:

  • The website visited
  • Date and time of access
  • Amount of data sent in bytes
  • Source/referrer from which you accessed the page
  • Browser used
  • Operating system used
  • IP address (if applicable, in anonymized form)

Processing is carried out in accordance with Art. 6 (1)(f) GDPR based on our legitimate interest in improving the stability and functionality of our website. This data is not shared or used for other purposes. However, we reserve the right to review server log files retrospectively if there are concrete indications of unlawful use.


3) COOKIES

To enhance your experience on our website and enable the use of certain functions, we use cookies on various pages. Cookies are small text files stored on your device. Some of the cookies we use are deleted at the end of your browser session (session cookies). Other cookies remain on your device and allow us or our partner companies (third-party cookies) to recognize your browser the next time you visit (persistent cookies).

If cookies are set, they collect and process specific user information such as browser and location data and IP address values. Persistent cookies are automatically deleted after a predetermined period, which varies depending on the cookie.

Some cookies serve to simplify the ordering process by storing settings (e.g., remembering the contents of a virtual shopping cart for a later visit). If any personal data is processed through cookies, this is done based on Art. 6 (1)(b) GDPR for contract execution or based on Art. 6 (1)(f) GDPR to maintain the website’s optimal functionality and a user-friendly experience.

We may work with advertising partners who help make our online presence more attractive. In such cases, third-party cookies may be stored on your device when you visit our website. If we cooperate with such advertising partners, you will be informed separately about the use of these cookies and the type of data collected.

You can configure your browser to notify you about cookie settings, allow cookies on a case-by-case basis, exclude cookies for specific cases, or disable them altogether. Each browser manages cookie settings differently. Below are links to instructions for common browsers:

Please note that disabling cookies may limit the functionality of our website.


4) CONTACTING US

When you contact us (e.g., via a contact form or email), we collect personal data. The specific data collected via a contact form is indicated in the form itself. This data is stored and used solely to respond to your inquiry or for related administrative processes. The legal basis for processing is our legitimate interest in responding to your request under Art. 6 (1)(f) GDPR.

If your inquiry is aimed at concluding a contract, an additional legal basis for processing is Art. 6 (1)(b) GDPR. Your data will be deleted after your request has been fully processed, provided that no legal retention obligations apply.


5) DATA PROCESSING FOR ACCOUNT CREATION AND CONTRACT EXECUTION

In accordance with Art. 6 (1)(b) GDPR, we collect and process personal data when you provide it to us to execute a contract or open a customer account. The data collected is shown in the respective input forms. You can delete your customer account at any time by contacting the controller at the address provided above.

We store and use the provided data to process contracts. After contract completion or account deletion, your data will be restricted for further use in compliance with tax and commercial retention periods. Once these periods expire, the data will be deleted unless you have explicitly consented to further use or we are legally permitted to retain it for other purposes.

6) USE OF YOUR DATA FOR DIRECT ADVERTISING

6.1 Subscription to our email newsletter

If you subscribe to our email newsletter, we will regularly send you information about our offers. The only mandatory detail required for sending the newsletter is your email address. Providing any additional data is voluntary and is used to address you personally. We use the double opt-in procedure for sending newsletters. This means that we will only send you an email newsletter after you have explicitly confirmed that you consent to receiving it. You will receive a confirmation email in which you are asked to confirm your subscription by clicking on a corresponding link.

By activating the confirmation link, you give us your consent to use your personal data in accordance with Article 6 (1) (a) GDPR. When subscribing to the newsletter, we store your IP address, as registered by your Internet Service Provider (ISP), as well as the date and time of registration. This is to track any potential misuse of your email address. The data collected during newsletter registration is used exclusively for advertising purposes via the newsletter. You may unsubscribe at any time via the link provided in the newsletter or by notifying the responsible party mentioned at the beginning. Once unsubscribed, your email address will be immediately removed from our newsletter distribution list, unless you have expressly consented to further use of your data, or we reserve the right to use the data beyond this, as permitted by law and as outlined in this declaration.

6.2 Sending the email newsletter to existing customers

If you have provided your email address while purchasing goods or services, we reserve the right to send you regular offers for similar goods or services from our range via email. In this case, no separate consent is required. Data processing is carried out based solely on our legitimate interest in personalized direct marketing in accordance with Article 6 (1) (f) GDPR. If you initially objected to the use of your email address for this purpose, we will not send any marketing emails. You have the right to object to the use of your email address for advertising purposes at any time by notifying the responsible party mentioned at the beginning. You will only incur transmission costs according to the basic rates. After receiving your objection, we will immediately cease using your email address for advertising purposes.


7) DATA PROCESSING FOR ORDER HANDLING

7.1 Transmission of personal data for order processing

We transfer the personal data collected as part of the contract execution to the transport company responsible for the delivery, provided this is necessary for the delivery of the goods. We also pass on your payment data to the responsible financial institution as part of the payment process, if required for payment processing. If we use payment service providers, we will explicitly inform you about them below. The legal basis for transferring this data is Article 6 (1) (b) GDPR.

7.2 Use of payment service providers

- PayPal

If you choose to pay via PayPal, credit card via PayPal, direct debit via PayPal, or—if available—"purchase on account" or "installment payment" via PayPal, we will transmit your payment data to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg ("PayPal") for processing. This transfer is based on Article 6 (1) (b) GDPR and occurs only to the extent necessary for payment processing.

PayPal reserves the right to conduct a credit check for certain payment methods, such as credit card via PayPal, direct debit via PayPal, or "purchase on account" or "installment payment." For this, PayPal may share your payment data with credit agencies based on its legitimate interest in verifying your payment ability in accordance with Article 6 (1) (f) GDPR. The result of this credit check, which may include probability values (so-called score values), is used by PayPal to decide whether to provide the respective payment method. The calculation of score values is based on a scientifically recognized mathematical-statistical process, which may include address data. More information on PayPal’s data protection policies, including the credit agencies used, can be found in PayPal’s privacy policy: https://www.paypal.com/de/webapps/mpp/ua/privacy-full.

You may object to this data processing at any time by notifying PayPal. However, PayPal may still process your personal data if it is necessary for contractual payment processing.

- SOFORT

If you choose the "SOFORT" payment method, the payment process is handled by SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany ("SOFORT"), part of the Klarna Group (Klarna Bank AB (publ), Sveavägen 46, 11134 Stockholm, Sweden). We transfer your payment information along with details of your order to SOFORT for payment processing, based on Article 6 (1) (b) GDPR. The data transfer is strictly limited to the required scope. Further information on SOFORT’s data protection policies can be found here: https://www.klarna.com/sofort/datenschutz.


8) CONTACT FOR REVIEW REMINDERS

Own review reminder (not sent via a customer review system)

We use your email address to send a one-time reminder to leave a review of your order in our review system, provided you have given us your explicit consent during or after your order in accordance with Article 6 (1) (a) GDPR.
You can revoke your consent at any time by notifying the responsible party for data processing.

9) USE OF SOCIAL MEDIA: SOCIAL PLUGINS

9.1 Facebook Plugins with Shariff Solution

Our website uses social plugins ("Plugins") from the Facebook social network, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook").

To better protect your data, these buttons are embedded using an HTML link instead of unrestricted plugins. This ensures that when you visit a page on our website containing such buttons, no immediate connection is established with Facebook servers. Only when you click the button will a new browser window open, directing you to Facebook, where you can interact with the plugins (possibly after logging in).

Facebook Inc. is certified under the US-EU Privacy Shield framework, ensuring compliance with EU data protection standards. More information about data processing by Facebook can be found here: https://www.facebook.com/policy.php.

9.2 Google+ Plugins with Shariff Solution

Our website also includes social plugins from the Google+ social network, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google").

To protect your data, these buttons are integrated using an HTML link. This prevents an automatic connection to Google+ servers when you visit a page on our site containing such buttons. If you click the button, a new browser window will open, allowing interaction with Google+ plugins (possibly after logging in).

Google LLC is certified under the US-EU Privacy Shield framework. Further details on data processing by Google can be found here: https://www.google.com/intl/de/policies/privacy/.

9.3 Instagram Plugin with Shariff Solution

Our website also includes social plugins from Instagram, operated by Instagram LLC, 1601 Willow Rd, Menlo Park, CA 94025, USA ("Instagram").

These plugins are also embedded using an HTML link to protect your data. This prevents automatic contact with Instagram servers when you visit our site. Clicking the button opens a new browser window, taking you to Instagram, where you can interact with the plugins (possibly after logging in).

Instagram LLC is certified under the US-EU Privacy Shield framework. More details on Instagram’s data policies can be found here: https://help.instagram.com/155833707900388/.

10) ONLINE MARKETING

10.1 DoubleClick by Google

This website uses the online marketing tool DoubleClick by Google, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("DoubleClick").

DoubleClick uses cookies to display relevant ads to users, improve campaign performance reports, or prevent a user from seeing the same ads multiple times. Using a cookie ID, Google records which ads are shown in which browser, preventing duplicate displays. Processing is based on our legitimate interest in the optimal marketing of our website according to Art. 6 (1) (f) GDPR.

Additionally, DoubleClick can track conversions using cookie IDs, linking them to ad requests. This happens, for example, when a user sees a DoubleClick ad, later visits the advertiser’s website with the same browser, and makes a purchase. According to Google, DoubleClick cookies do not contain personal information.

Due to the marketing tools used, your browser automatically establishes a direct connection to Google's servers. We have no control over the extent and further use of data collected by Google and can only inform you based on our knowledge:

  • By integrating DoubleClick, Google receives the information that you visited a specific part of our website or clicked on an ad.
  • If you are registered with a Google service, Google can associate this visit with your account.
  • Even if you are not registered or logged in, Google may still obtain and store your IP address.

If you wish to opt out of this tracking, you can disable cookies for conversion tracking by setting your browser to block cookies from www.googleadservices.com (https://www.google.de/settings/ads). Note that this setting is deleted if you clear your cookies.

Alternatively, you can get more information and manage cookie settings through the Digital Advertising Alliance at www.aboutads.info. You can also configure your browser to notify you when cookies are set and decide whether to accept them individually or reject them altogether. However, blocking cookies may limit the functionality of our website.

Google LLC, based in the USA, is certified under the EU-US Privacy Shield, ensuring compliance with EU data protection standards.

For more details on DoubleClick by Google’s privacy policy, visit: https://www.google.de/policies/privacy/


10.2 Use of Google AdWords Conversion Tracking

This website uses the Google AdWords online advertising program, including Google AdWords Conversion Tracking, provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google").

We use Google AdWords to promote our attractive offers on external websites. By analyzing ad campaign data, we can determine how successful our ads are. This helps us show relevant ads, enhance our website for users, and fairly calculate advertising costs.

A conversion-tracking cookie is set when a user clicks on a Google AdWords ad. Cookies are small text files stored on your computer, typically expiring after 30 days. They do not serve personal identification. If a user visits certain pages on this website and the cookie is still active, Google and we can recognize that the user clicked on the ad and was redirected to our page.

  • Each Google AdWords customer receives a unique cookie.
  • Cookies cannot be tracked across different AdWords customers’ websites.

The information collected by conversion cookies helps generate conversion statistics for AdWords customers who use conversion tracking. Customers receive data on how many users clicked on their ads and were redirected to a conversion-tracked page. However, they do not receive personal user information.

If you do not wish to participate in tracking, you can disable Google AdWords conversion tracking by adjusting your browser settings. This prevents your data from being included in conversion tracking statistics.

We use Google AdWords based on our legitimate interest in targeted advertising according to Art. 6 (1) (f) GDPR.

Google LLC, based in the USA, is certified under the EU-US Privacy Shield, ensuring compliance with EU data protection standards.

For more details on Google’s privacy policy, visit: https://www.google.de/policies/privacy/

To permanently disable cookies for ad preferences, you can:

Please note that disabling cookies may restrict certain functions of this website.


11) WEB ANALYTICS SERVICES

Google (Universal) Analytics

This website uses Google Analytics, a web analytics service from Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google").

Google Analytics uses cookies (text files stored on your computer) to analyze website usage. The data collected (including your anonymized IP address) is typically transferred to and stored on a Google server in the USA.

This website uses Google Analytics with the "_anonymizeIp()" extension, ensuring IP anonymization within EU and EEA countries before transmission. In rare cases, the full IP address is sent to a Google server in the USA and shortened there.

Processing is based on our legitimate interest in user behavior analysis for optimization and marketing purposes under Art. 6 (1) (f) GDPR.

Google uses this data to evaluate your website usage, generate reports, and provide additional website and internet-related services. Your IP address will not be merged with other Google data.

You can:

  • Disable cookies in your browser settings.
  • Prevent Google from collecting and processing your data by installing this browser plugin: https://tools.google.com/dlpage/gaoptout?hl=en.
  • Click the following link to set an opt-out cookie, preventing Google Analytics from collecting data in the future (only works for this browser and domain; clearing cookies requires reactivating it): Google Analytics Opt-Out.

Google LLC is certified under the EU-US Privacy Shield, ensuring compliance with EU data protection standards.

For more information on Google Universal Analytics, visit: https://support.google.com/analytics/answer/2838718?hl=en&ref_topic=6010376.


12) RETARGETING / REMARKETING / RECOMMENDATION ADVERTISING

Facebook Custom Audience via Pixel Method

This website uses the Facebook Pixel from Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA. With explicit user consent, it allows tracking of behavior after interacting with a Facebook ad.

This statistical and market research tool helps optimize future advertising. The collected data is anonymous for us but is stored by Facebook, linking it to user profiles and allowing targeted advertising.

  • Facebook may store a cookie on your device.
  • Processing occurs only with explicit consent under Art. 6 (1) (a) GDPR.

Consent can only be given by users over 13 years old. If you are younger, please ask your parent or guardian for permission.

Facebook Inc. is certified under the EU-US Privacy Shield, ensuring compliance with EU data protection standards.

To disable cookies, adjust your browser settings or use the Digital Advertising Alliance: https://www.aboutads.info/choices/.

For more on Facebook’s data policies, visit: https://www.facebook.com/about/privacy/.

 

13) RIGHTS OF THE DATA SUBJECT

13.1 The applicable data protection law grants you, as a data subject, comprehensive rights regarding the processing of your personal data by the data controller. These rights (rights to information and intervention) are outlined below:

Right of access pursuant to Article 15 GDPR:
You have the right to obtain information about your personal data processed by us, including the purposes of processing, the categories of personal data processed, the recipients or categories of recipients to whom your data has been or will be disclosed, the planned storage duration or the criteria for determining the storage duration, the existence of rights to rectification, erasure, restriction of processing, objection to processing, the right to lodge a complaint with a supervisory authority, the source of your data if it was not collected from you directly, the existence of automated decision-making, including profiling, and, where applicable, meaningful information about the logic involved and the significance and intended consequences of such processing. You also have the right to be informed about the guarantees in place under Article 46 GDPR regarding the transfer of your data to third countries.

Right to rectification pursuant to Article 16 GDPR:
You have the right to request the immediate correction of inaccurate personal data concerning you and/or the completion of incomplete personal data stored by us.

Right to erasure pursuant to Article 17 GDPR:
You have the right to request the deletion of your personal data if the conditions of Article 17(1) GDPR are met. However, this right does not apply if processing is necessary for exercising the right to freedom of expression and information, for compliance with a legal obligation, for reasons of public interest, or for the establishment, exercise, or defense of legal claims.

Right to restriction of processing pursuant to Article 18 GDPR:
You have the right to request the restriction of processing of your personal data if:

  • You contest the accuracy of your data, for the period necessary for verification;
  • The processing is unlawful, but you oppose erasure and request restriction instead;
  • We no longer need the data for processing purposes, but you require it for the establishment, exercise, or defense of legal claims; or
  • You have objected to processing based on your particular situation, and it is not yet determined whether our legitimate interests override yours.

Right to notification pursuant to Article 19 GDPR:
If you have exercised your right to rectification, erasure, or restriction of processing, the controller must notify all recipients to whom your personal data has been disclosed, unless this proves impossible or involves disproportionate effort. You also have the right to be informed about these recipients.

Right to data portability pursuant to Article 20 GDPR:
You have the right to receive your personal data, which you have provided to us, in a structured, commonly used, and machine-readable format or to request the transfer of this data to another controller, where technically feasible.

Right to withdraw consent pursuant to Article 7(3) GDPR:
You have the right to withdraw your consent to data processing at any time with future effect. Upon withdrawal, we will immediately delete the affected data unless further processing is based on a legal basis that does not require consent. The withdrawal of consent does not affect the lawfulness of processing carried out before the withdrawal.

Right to lodge a complaint pursuant to Article 77 GDPR:
If you believe that the processing of your personal data violates the GDPR, you have the right—without prejudice to other administrative or judicial remedies—to lodge a complaint with a supervisory authority, particularly in the member state of your residence, workplace, or the location of the alleged infringement.

13.2 RIGHT TO OBJECT

IF WE PROCESS YOUR PERSONAL DATA BASED ON OUR OVERRIDING LEGITIMATE INTEREST AS PART OF A BALANCING OF INTERESTS, YOU HAVE THE RIGHT TO OBJECT TO THIS PROCESSING AT ANY TIME FOR REASONS ARISING FROM YOUR PARTICULAR SITUATION, WITH FUTURE EFFECT.

IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL CEASE PROCESSING THE AFFECTED DATA. HOWEVER, CONTINUED PROCESSING MAY BE POSSIBLE IF WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS THAT OUTWEIGH YOUR INTERESTS, RIGHTS, AND FREEDOMS, OR IF THE PROCESSING SERVES THE ESTABLISHMENT, EXERCISE, OR DEFENSE OF LEGAL CLAIMS.

IF YOUR PERSONAL DATA IS PROCESSED FOR DIRECT MARKETING PURPOSES, YOU HAVE THE RIGHT TO OBJECT TO THE PROCESSING OF YOUR PERSONAL DATA FOR SUCH MARKETING AT ANY TIME. YOU CAN EXERCISE YOUR RIGHT TO OBJECT AS DESCRIBED ABOVE.

IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL STOP PROCESSING YOUR PERSONAL DATA FOR DIRECT MARKETING PURPOSES.

14) DURATION OF STORAGE OF PERSONAL DATA

The duration of storage of personal data is determined based on the respective statutory retention period (e.g., commercial and tax retention periods). After the expiration of this period, the relevant data is routinely deleted, provided it is no longer required for contract fulfillment or initiation and/or there is no legitimate interest in further storage on our part.