In the following, we provide information about the collection of personal data when using our website. Personal data is all data that can be related to you personally, e.g. name, address, e-mail addresses, user behaviour. We have taken extensive technical and operational precautions to protect your data from accidental or intentional manipulation, loss, destruction or access by unauthorised persons. Our security procedures are regularly reviewed and adapted to technological progress.
Further information about the collection and processing of your personal data can be found at here.
1 Person responsible for data processing
The controller pursuant to Art. 4 (7) of the EU General Data Protection Regulation (GDPR) is Thomas Wentz, Heizhausgasse 1, 5500 Bischofshofen, datenschutz(at)egpromotion.com
2 Your rights
You have the following rights vis-Ã -vis us with regard to your personal data:
2.1 General rights
You have the right to information, rectification, erasure, restriction of processing, objection to processing and data portability. If processing is based on your consent, you have the right to withdraw this consent with effect for the future.
2.2 Rights in data processing according to the legitimate interest
In accordance with Art. 21 para. 1 GDPR, you have the right to object at any time, on grounds relating to your particular situation, to the processing of personal data concerning you which is based on Art. 6 para. 1 e GDPR (data processing in the public interest) or on Art. 6 para. 1 f GDPR (data processing to protect a legitimate interest); this also applies to profiling based on this provision. If you object, we will no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves the establishment, exercise or defence of legal claims.
2.3 Rights in the case of direct advertising
If we process your personal data for direct marketing purposes, you have the right under Art. 21 (2) GDPR to object at any time to the processing of personal data concerning you for such marketing, which includes profiling to the extent that it is related to such direct marketing.
If you object to processing for the purposes of direct marketing, we will no longer process your personal data for these purposes
2.4 Right to lodge a complaint with a supervisory authority
You also have the right to complain to a competent data protection supervisory authority about the processing of your personal data by us. The supervisory authority responsible for us is: Austrian Data Protection Authority, Wickenburggasse 8, 1080 Vienna, telephone: +43 1 52 152-0, e-mail:Â dsb(at)dsb.gv.at
3 Collection of personal data when visiting our website
If you use the website for information purposes only, i.e. if you do not register or otherwise provide us with information, we only collect the personal data that your browser transmits to our server. If you wish to view our website, we collect the following data, which is technically necessary for us to display our website to you and to ensure stability and security. The legal basis for this is Art. 6 para. 1 f GDPR:
Doman, IP address, date and time of the request, time zone difference to Greenwich Mean Time (GMT), content of the request (specific page), access status/HTTP status code, amount of data transferred in each case, website from which the request originates, browser, operating system and its interface, language and version of the browser software.
The data is stored for 3 days and then discarded.
4 Contact by e-mail or contact form
When you contact us by e-mail or via a contact form, the data you provide (your e-mail address, possibly your name and telephone number) will be stored by us in order to answer your questions. If we request information via our contact form that is not required to contact you, we have always labelled this as optional. We use this information to specify your enquiry and to improve the processing of your request. This information is provided expressly on a voluntary basis and with your consent, Art. 6 para. 1 a GDPR. If this involves information on communication channels (e.g. email address, telephone number), you also consent to us contacting you via this communication channel in order to respond to your enquiry. You can of course revoke this consent at any time for the future.
We delete the data arising in this context after storage is no longer required, or restrict processing if there are statutory retention obligations.
5 Newsletter
5.1 General information
With your consent in accordance with Art. 6 para. 1 a GDPR, you can subscribe to our newsletter, which we use to inform you about our current offers.
We use the so-called double opt-in procedure to subscribe to our newsletter. This means that after you have registered, we will send you an e-mail to the e-mail address you have provided in which we ask you to confirm that you wish to receive the newsletter. If you do not confirm your registration, your information will be blocked and automatically deleted after one month.
In addition, we store the IP addresses you use and the times of registration and confirmation. The purpose of this procedure is to be able to prove your registration and, if necessary, to clarify any possible misuse of your personal data.
The only mandatory information for sending the newsletter is your e-mail address. The provision of further, separately marked data is voluntary and is used to address you personally. After your confirmation, we will save your e-mail address for the purpose of sending you the newsletter. The legal basis is Art. 6 para. 1 a GDPR.
You can revoke your consent to the sending of the newsletter at any time and unsubscribe from the newsletter. You can declare your cancellation by clicking on the link provided in every newsletter email or by sending a contact request to the data protection officer specified above.
6 Registration and portal use
You have the option of registering with us and creating a customer account. To register, we collect and store the following data from you:
- Salutation
- First name
- Surname
- E-mail (user name)
- password
- Address
We use the so-called double opt-in procedure for registration, i.e. your registration is not complete until you have confirmed your registration by clicking on the link contained in a confirmation e-mail sent to you for this purpose. If you do not confirm your registration within 48 hours, your registration will be automatically deleted from our database. The provision of the aforementioned data is mandatory; you can provide all other information voluntarily by using our portal.
Once you have registered, you will receive personal, password-protected access and can view and manage the data you have stored. Registration is voluntary, but may be a prerequisite for using our services.
When you use our portal, we store your data required for the fulfilment of the contract, including details of the method of payment if applicable, until you finally delete your access. We also store the voluntary data you provide for the duration of your use of the portal, unless you delete it beforehand. You can manage and change all information in the protected customer area. The legal basis is Art. 6 para. 1 a, b and f GDPR.
7 applications
You can apply to our company electronically, in particular by e-mail. We will of course only use your details to process your application and will not pass them on to third parties. Please note that e-mails sent unencrypted are not protected against unauthorised access.
If you have applied for a specific position and it has already been filled or we consider you to be equally or even more suitable for another position, we would like to forward your application within our company. Please let us know if you do not agree to your application being forwarded.
Your personal data will be deleted immediately after completion of the application process, or after a maximum of 6 months, unless you have expressly given us your consent to store your data for longer or a contract has been concluded. The legal basis is Art. 6 para. 1 a, b and f.
8 Use of social plugins
This website uses social plugins from the provider(s)
- Facebook (Operator: Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA)
These plugins normally collect data from you by default and transmit it to the servers of the respective provider. To ensure the protection of your privacy, we have taken technical measures to ensure that your data cannot be collected by the providers of the respective plugin without your consent. When you call up a page on which the plugins are integrated, they are initially deactivated. The plugins are only activated when you click on the respective symbol, thereby giving your consent for your data to be transferred to the respective provider. The legal basis for the use of the plugins is Art. 6 para. 1 a and f GDPR.
Once activated, the plugins also collect personal data such as your IP address and send it to the servers of the respective provider, where it is stored. In addition, activated social plugins set a cookie with a unique identifier when the relevant website is accessed. This also allows the providers to create profiles about your usage behaviour. This happens even if you are not a member of the social network of the respective provider. If you are a member of the provider's social network and are logged in to the social network during your visit to this website, your data and information about your visit to this website may be linked to your profile on the social network. We have no influence on the exact scope of the data collected from you by the respective provider. For more information about the scope, type and purpose of data processing and about rights and setting options to protect your privacy, please refer to the data protection information of the respective provider of the social network. These are available at the following addresses:
Facebook:Â https://www.facebook.com/policy.php
9 Use of cookies:
When you use our website, cookies are stored on your computer. Cookies are small text files that are stored on your hard drive and assigned to the browser you are using and through which certain information flows to the organisation that sets the cookie. Cookies cannot execute programmes or transfer viruses to your computer. They are used to make the website more user-friendly and effective overall. We also use cookies to identify you for subsequent visits if you have an account with us. Otherwise you would have to log in again for each visit.
This website uses the following types of cookies, the scope and function of which are explained below:
9.1 Transient cookies
These cookies are automatically deleted when you close the browser. These include session cookies in particular. These store a so-called session ID, with which various requests from your browser can be assigned to the joint session. This allows your computer to be recognised when you return to our website. The session cookies are deleted when you log out or close the browser.
9.2 Prevention of cookies
You can configure your browser settings according to your wishes and, for example, refuse to accept third-party cookies or all cookies. We would like to point out that you may then not be able to use all the functions of this website.
9.3 Legal basis and storage period
The legal bases for possible processing of personal data and their storage duration vary and are presented in the following sections.
10 Website analysis
We use various services for the purpose of analysing and optimising our websites, which are described below. For example, we can analyse how many users visit our site, which information is most in demand or how users find the offer. Among other things, we collect data on which website a data subject came to a website from (so-called referrer), which subpages of the website were accessed or how often and for how long a subpage was viewed. This helps us to design and improve our services in a user-friendly way. The data collected is not used to personally identify individual users. Anonymous or at most pseudonymous data is collected. The legal basis for this is Art. 6 para. 1 f GDPR.
10.1 Google Analytics
This website uses Google Analytics, a web analytics service provided by Google Inc, (1600 Amphitheatre Parkway Mountain View, CA 94043, USA) The use includes the Universal Analytics operating mode. This makes it possible to assign data, sessions and interactions across multiple devices to a pseudonymous user ID and thus to analyse the activities of a user across devices.
Google Analytics uses cookies that enable your use of the website to be analysed. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there. However, if IP anonymisation is activated on this website, your IP address will first be truncated by Google within member states of the European Union or in other signatory states to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and truncated there. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. On behalf of the operator of this website, Google will use this information to analyse your use of the website, to compile reports on website activity and to provide the website operator with other services relating to website activity and internet usage. Our legitimate interest in data processing also lies in these purposes. The legal basis for the use of Google Analytics is Section 15 (3) TMG and Art. 6 (1) f GDPR. The data sent by us and linked to cookies, user identifiers (e.g. user ID) or advertising IDs are automatically deleted after 14 months. Data that has reached the end of its retention period is automatically deleted once a month. Further information on terms of use and data protection can be found at https://www.google.com/analytics/terms/de.html or under https://policies.google.com/?hl=de
You may refuse the use of cookies by selecting the appropriate settings on your browser, however please note that if you do this you may not be able to use the full functionality of this website. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by selecting the appropriate settings on your browser. https://tools.google.com/dlpage/gaoptout?hl=de and install it. Opt-out cookies prevent the future collection of your data when you visit this website. To prevent Universal Analytics from collecting data across different devices, you must opt out on all systems used. If you click here, the opt-out cookie will be set: Deactivate Google Analytics
11 Data transmission
Your data will not be transferred to third parties unless we are legally obliged to do so, or the transfer of data is necessary to fulfil the contractual relationship, or you have previously expressly consented to the transfer of your data.
External service providers and partner companies such as online payment providers or the shipping company commissioned with the delivery will only receive your data if this is necessary to process your order. In these cases, however, the scope of the transmitted data is limited to the necessary minimum. Insofar as our service providers come into contact with your personal data, we ensure that they comply with the provisions of the data protection laws in the same way as part of order processing in accordance with Art. 28 GDPR. Please also note the respective data protection notices of the providers. The respective service provider is responsible for the content of external services, whereby we check the services for compliance with the legal requirements within the scope of reasonableness.
We attach great importance to processing your data within the EU/EEA. However, we may use service providers who process data outside the EU/EEA. In these cases, we ensure that an adequate level of data protection is established at the recipient before your personal data is transferred. This means that a level of data protection comparable to the standards within the EU is achieved via EU standard contracts or an adequacy decision, such as the EU Privacy Shield.
12 Data security
We have taken extensive technical and operational precautions to protect your data from accidental or intentional manipulation, loss, destruction or access by unauthorised persons. Our security procedures are regularly reviewed and adapted to technological progress.
Status May 2018