PRIVACY POLICY
This website is operated by HEROLD Business Data GmbH, 2340, Guntramsdorfer Str.105, Mödling ("we" or "us").
We describe here how we, as the website operator and thus as the person responsible for data protection, process your personal data in connection with this website, which can be accessed under this domain (hereinafter referred to as 'our website'), in compliance with the applicable data protection regulations, in particular the General Data Protection Regulation (GDPR) as well as any applicable national implementing regulations.
1. What data about you do we process?
If you visit this website, we will collect the following information:
- Date and time of access to a page of our website, your IP address, URL, status and version of your web browser (user agent), the URL of the website you visited before accessing this website (referrer) (so-called server log files, see point 6 below),
- Information obtained through the use of certain cookies and related technologies in order to present our website and advertising to you in the most effective and interesting way possible (see point 4 below)
- the information that you may provide yourself, in particular by filling out a contact form.
2. Purposes and legal bases of data processing
Data protection law protects personal data and understands it to mean information that can individualize a person (hereinafter: "data"), such as a name. We will process your personal data for the following purposes, relying in particular on the legal bases set out above:
- To provide you with this website, including its basic functions, and to further improve and develop this website (on the basis of our predominantly legitimate interest [pursuant to Article 6 (1) (f) GDPR]);
- to compile usage statistics and thus be able to continuously improve our online offering and the user experience of our website (based on your consent [pursuant to Art. 6 para. 1 lit. a GDPR]);
- to be able to detect, prevent and investigate attacks on our website (on the basis of our overriding legitimate interest [pursuant to Art. 6 (1) (f) GDPR]) and
- to respond to your enquiries (on the basis of your consent [pursuant to Article 6(1)(a) GDPR] and our overriding legitimate interest [pursuant to Article 6(1)(f) GDPR]).
3. Transfer of personal data
If, in the context of the above-mentioned processing, we disclose, transmit or otherwise grant them access to the data to other persons and companies (such as processors such as in particular technical service providers for the provision of our website, affiliated companies or other third parties), this will only take place if it is permitted by law (e.g. transfers to a payment service provider for the performance of contracts pursuant to Art. 6 para. 1 lit a GDPR), if you have given your consent or if we are legally obliged to do so (e.g. authorities in the context of investigative proceedings) or on the basis of our legitimate interests (e.g. when appointing agents, etc.). If we commission third parties to process data on the basis of a so-called "data processing agreement", this is done in accordance with Art. 28 GDPR.
Some of the above-mentioned recipients are located outside your country or process your personal data there. The level of data protection in other countries may not be the same as in your country. However, we only transfer your personal data to countries or (US) companies for which the EU Commission has decided that they have an adequate level of data protection (e.g. US companies certified according to the EU-US Privacy Framework) or we take measures to ensure that recipients commit to an adequate level of data protection. To this end, for example, we conclude standard contractual clauses for the transfer of personal data to third countries in accordance with Regulation (EU) 2016/679 or ensure that they are concluded by our service providers.
4. Cookies, similar Technologies and Tracking
So-called cookies are used on this website. A cookie is a small file, i.e. a data storage consisting of a name (key) and a value, which can be stored on your device or web browser when you visit a website. When you visit our website for the first time, a so-called "cookie banner" appears. If you select "Reject all", all cookies and similar technologies - with the exception of (technically) necessary cookies - will be blocked and will not be loaded due to your lack of consent and associated data processing will be prevented.
Technically necessary cookies are used to provide users with essential functions on a website. They may be used, for example, to make it easier for you to navigate a website, to allow you to continue using a website where you left it, to remember your preferences and settings (e.g. language) or your shopping cart when you visit the website again. The setting of these technically necessary cookies does not require your consent, as it is in our legitimate interest as a website operator to be able to provide you with a functioning website (legal basis of a predominantly legitimate interest of the controller pursuant to Article 6 (1) (f) GDPR), therefore these cookies cannot be deselected in the cookie banner.
Please note that blocking or deleting cookies may affect your experience of using the website and prevent you from using the full functionality of the website.
Non-essential cookies serve the following purposes: 1. function, 2. statistics and analysis or 3. marketing and require your consent (Art. 6 para. 1 lit. a GDPR). Functional cookies enable you to use functionalities of our website, such as sending enquiries, provided that a third-party provider is technically used for this purpose. Information obtained from the use of analysis or marketing technologies enables us to learn more about the interests of our users through aggregated statistics in order to continuously improve our web offering, to measure the success of our marketing measures and to align them with the interests of our users and customers and to show you only advertising that is most likely to actually interest you.
Links in the footer of the website, you can adjust your consents at any time under the image link. There you can also see when you last made a corresponding selection.
Most of the cookies on this website are so-called session cookies. They are automatically deleted when you leave our website. Persistent cookies, on the other hand, remain on your computer until you manually delete them in your browser. We use such persistent cookies to recognise you the next time you visit our website. In the following table you will find an overview of the cookies used, including the required information: expiry time, type (purpose), provider and the corresponding data protection notice of the provider.
"Third-party cookies" are cookies that are offered by providers other than us (otherwise, if they are only their cookies, they are called "first-party cookies"). In principle, such third-party cookies will be blocked as long as you do not accept them. If you only want to accept our own cookies, but not the cookies of our service providers and partners, you can also select the "Block third-party cookies" setting in your browser. In the following paragraph, we explain certain services behind these third-party cookies, whose operators are only allowed to process the data concerned within the framework of an order processing agreement in accordance with Article 28 GDPR. Please note, however, that they may in turn transfer your data to third parties if this is required by law or if third parties process this data on their behalf. It cannot be ruled out that the recipients associate your IP address with other data. It is technically possible that the recipients could identify at least individual users on the basis of the data obtained. We have no control over the fact that personal data and personality profiles of users of the website are processed by such third parties for other purposes.
Cookie Liste folgt
5. Embedded third-party content
Vendor Liste folgt
Our contact form
The data that you enter via our contact form will be transmitted to us via e-mail for processing. The service of Sendgrid (Twilio: more information under https://www.twilio.com/legal/aup and https://www.twilio.com/legal/privacy) is used to transmit the e-mail notification , whereby the log files are stored for 30 days. However, these do not contain any content submitted via the form.
SSL encryption of our website
Our website uses SSL encryption through Let's Encrypt – SSL Certificates (https://letsencrypt.org/repository/). This encryption is used, for example, for enquiries that you send to us via our website. Please make sure that SSL encryption is activated for such activities on your part. The use of encryption is easy to recognize: the display in your browser address bar shows "https://". Data encrypted via SSL is not readable by third parties.
Anti-Spam System
hCaptcha is intended to identify contact requests that have been generated by machines as spam or bots and to eliminate them, so that they are used on the basis of our legitimate interest (in accordance with Article 6 (1) (f) GDPR). The service and the cookies used for it are provided by Intuition Machines, Inc., based in the USA. The transfer of data is secured by EU standard data protection clauses. For more information, please refer to Intuition Machines Inc.'s Terms of Use and Privacy Notice at https://hcaptcha.com/privacy/, https://www.hcaptcha.com/gdpr and https://hcaptcha.com/terms.
Our online presence on social media
We maintain online presences within social networks and platforms in order to communicate with customers, interested parties and users who are active there and to be able to inform them about our services. When accessing the respective networks and platforms, the terms and conditions and data protection notices of the respective social networks apply. We process the data of users when they communicate with us within social networks and platforms, e.g. write posts on our profile or send us messages. Requests for information and the assertion of data subjects' rights can be most effectively asserted against the providers. Only the providers have access to the user's data and can directly take appropriate measures and provide information.
6. Storage location (hosting and content delivery network) and storage duration
The personal data collected on this website is stored on the servers of the hoster, an external service provider, on servers located in the EU. The use of the hoster (mono solutions ApS., Denmark, Amagerfælledvej 106 2300 Copenhagen) takes place within the framework of order processing in accordance with Article 28 GDPR for the purpose of fulfilling the contract with our potential and existing customers (Article 1 (b) GDPR) and in the interest of a secure, fast and efficient provision of our online presence by a professional provider (Article 6 (1) (f) GDPR). A content delivery network (CDN) is also used to deliver content and to secure our digital offerings by making content from our website (e.g. images, fonts) available on various geographically distributed servers. This shortens the loading time of the website, achieves a higher level of reliability and increased protection (including the protection of your data from unauthorized access), so that this processing is carried out in our legitimate interest in accordance with Article 6 (1) (f) GDPR. As a matter of principle, we will only store your data for as long as is necessary to fulfil the purposes for which it was collected. Server log files (above under point 1.) are stored for 30 days.
7. Your rights in relation to personal data
Under the conditions of applicable law, you have the following rights:
- Right of access (Article 15 GDPR)
- Right to rectification (Article 16 GDPR)
- Right to erasure ("right to be forgotten") (Article 17 GDPR)
- Right to restriction of processing (Article 18 GDPR)
- Right to notification – obligation to notify in connection with the rectification or erasure of personal data or restriction of processing (Article 19 GDPR)
- Right to data portability (Article 20 GDPR)
- Right to object (Article 21 GDPR)
- Right not to be subject to a decision based solely on automated processing, including profiling (Article 22 GDPR)
- Right to lodge a complaint with the competent supervisory authority
8. Our contact details
If you have any questions or concerns about the processing of your personal data, please contact us:
HEROLD Business Data GmbH
2340 Mödling, Guntramsdorfer Str.105
laura.liesegang@herold.at
Last updated on 01/03/2024
