Privacy Policy
This English translation is provided for convenience only. In the event of any discrepancies, the legally binding version shall be the original German version.
1) Introduction and Contact Details of the Controller
The controller responsible for data processing on this website, within the meaning of the General Data Protection Regulation (GDPR), is Leander Abend. You can find the relevant contact details on the website's legal notice page.
The controller is the natural or legal person who, alone or jointly with others, determines the purposes and means of processing personal data.
2) Data Collection When Visiting Our Website
When you use our website purely for informational purposes, i.e. if you do not register or otherwise transmit information to us, we only collect data that your browser transmits to our server (so-called "server log files"). When you visit our website, we collect the following data, which is technically necessary for us to display the website to you:
- Our visited website
- Date and time at the moment of access
- Amount of data sent in bytes
- Source/reference from which you reached the page
- Browser used
- Operating system used
- IP address used (if applicable: in anonymized form)
Processing is carried out pursuant to Art. 6(1)(f) GDPR based on our legitimate interest in improving the stability and functionality of our website. There is no further processing or use of the data. However, we reserve the right to retrospectively check the server log files if concrete indications point to unlawful use.
3) Hosting & Content Delivery Network
This website is hosted by an external service provider (host). Personal data collected on this website is stored on the host’s servers. This may include IP addresses, contact requests, meta and communication data, contract data, contact details, names, website access, and other data generated via a website.
The use of the host is for the purpose of fulfilling contracts with our potential and existing customers (Art. 6(1)(b) GDPR) and in the interest of a secure, fast, and efficient provision of our online services by a professional provider (Art. 6(1)(f) GDPR).
Our host will only process your data to the extent necessary to fulfill its service obligations and will follow our instructions regarding this data.
4) Cookies
To make visiting our website attractive and to enable the use of certain functions, we use cookies. These are small text files stored on your device. Some of the cookies we use are deleted after the browser session ends (so-called session cookies). Others remain on your device and enable us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies).
Cookies that are necessary to carry out the electronic communication process or to provide certain functions you have requested (e.g. shopping cart function) are stored based on Art. 6(1)(f) GDPR. We have a legitimate interest in storing cookies to ensure the technically error-free and optimized provision of our services. If consent has been requested (e.g. consent to the storage of cookies), processing is carried out exclusively on the basis of Art. 6(1)(a) GDPR; consent can be revoked at any time.
5) Contacting Us
When you contact us (e.g. via contact form or email), personal data is collected. The respective contact form indicates which data is collected. This data is stored and used exclusively for the purpose of responding to your inquiry or for establishing contact and the associated technical administration.
The legal basis for processing the data is our legitimate interest in responding to your request pursuant to Art. 6(1)(f) GDPR. If your contact aims at concluding a contract, the additional legal basis for processing is Art. 6(1)(b) GDPR.
Your data will be deleted after final processing of your inquiry if it can be inferred from the circumstances that the matter in question has been conclusively resolved and if there are no legal storage obligations to the contrary.
6) Data Processing When Opening a Customer Account
Personal data will continue to be collected and processed if you voluntarily provide it to us when opening a customer account. The data collected can be seen from the respective input forms. Data provided for the purpose of opening a customer account will be processed pursuant to Art. 6(1)(b) GDPR. You may delete your customer account at any time by sending a message to the controller’s contact details above.
After deletion of your customer account, your data will be blocked for further processing and deleted after the expiration of applicable retention periods unless you have expressly consented to further use of your data or we reserve the right to further data use that is legally permitted.
7) Use of Customer Data for Direct Advertising
We use your email address provided in connection with a purchase to send you direct advertising for our own similar goods or services. You may object to the use of your email address at any time by notifying us. There will be no additional costs beyond the basic transmission costs.
The legal basis for this processing is our legitimate interest in direct advertising pursuant to Art. 6(1)(f) GDPR.
8) Data Processing for Order Handling
To fulfill your order, we work with service providers who support us in whole or in part in the execution of concluded contracts. These service providers receive personal data as necessary for their tasks. The data provided is limited to the minimum required.
Payment is processed via external payment service providers depending on the payment method selected in the ordering process. These may include PayPal, Stripe, or others integrated into our shop system. Data processing is governed by Art. 6(1)(b) GDPR.
9) Data Subject Rights
You have the right:
- pursuant to Art. 15 GDPR to obtain information about your personal data processed by us,
- pursuant to Art. 16 GDPR to demand rectification of inaccurate or incomplete personal data,
- pursuant to Art. 17 GDPR to demand erasure of your personal data,
- pursuant to Art. 18 GDPR to demand restriction of processing,
- pursuant to Art. 20 GDPR to receive your data in a structured, commonly used, and machine-readable format,
- and pursuant to Art. 77 GDPR to lodge a complaint with a supervisory authority.
You also have the right to object to the processing of your data pursuant to Art. 21 GDPR.
10) Duration of Storage of Personal Data
The duration of storage of personal data is determined by the respective statutory retention period. After expiration of that period, the corresponding data is routinely deleted, provided it is no longer necessary for contract fullfillment or initiation and/or there is no legitimate interest in further storage.