DATA PROTECTION

We are pleased that you are interested in our online shop. Protecting your privacy is very important to us. That is why we want to inform you in the best possible, detailed and transparent manner about which of your data we collect, process and use, how and for what purpose.

Personal data is individual information about the personal or factual circumstances of a specific or identifiable natural person. This includes, for example, information such as the civil name, address and date of birth. We comply with the applicable data protection regulations, in particular the General Data Protection Regulation (GDPR), when collecting, processing and using data. The following data protection declaration applies to the use of our website www.artmuth.com.


1. Controller

Responsible for the collection, processing and use of your data within the meaning of Art. 4 No. 7 DSGVO is:

medienentwicklung heusinger von waldegge

Paulinenstr. 8

32427 Minden, Germany

contact.artmuth@gmail.com

If you want to object to the collection, processing or use of your data or individual measures (see below), you can inform us using the contact details provided.

We would like to point out that data transmission on the Internet (e.g. when communicating by e-mail) can have security gaps. A complete protection of the data against access by third parties is not possible.

The data protection declaration can be saved and/or printed out at any time.

2. Collection, processing and use of personal data

We only use information and data provided by you to process your request and to process your order or the purchase contract. The data includes title, name, address, e-mail address and bank details. Other information is voluntary and does not have to be provided. Setting up a customer account is also voluntary and is not necessary to place an order with us.

You can visit our website and find out more without having to provide any information. You remain anonymous during this visit to our website. However, every time a page is called up, connection data is transmitted by your Internet browser, such as the date, the length of stay or the name of your Internet service provider (see paragraph 2.1.).

We use your data to ensure trouble-free operation of the website, to process your order or the purchase contract, to deliver the products you have ordered and to analyze and improve our website. In the following, we present in detail which data we collect, process and use for which purpose.

2.1. Access data in server log files

Each time you use the Internet, certain information is automatically transmitted by your Internet browser and stored by us in so-called log files. We store these log files exclusively to identify faults and for security reasons (e.g. to investigate attempted attacks). Log files, the further storage of which is necessary for evidence purposes, are excluded from deletion until the respective incident has been finally clarified and can be passed on to investigating authorities in individual cases.

Specifically, these are:

  • IP address of the end device,

  • operating system of the end device,

  • browser type and version,

  • referrer URL (the previously visited page),

  • date and time of access,

  • name and URL of the retrieved files,

  • notification of successful retrieval

We use this data without assignment to your person or other profiling. We use the log files for statistical evaluations for the purpose of operation, security and optimization of our website, but also for anonymous recording of the number of visitors to our website (traffic) and the scope and type of use of our website. Based on this information, we can provide personalized and location-based content and analyze data traffic, find and fix errors and improve and optimize our offer for you.

This is also our legitimate interest in accordance with Article 6 Paragraph 1 Sentence 1 f) GDPR.

2.2. Third Party Hosting Services

In order to ensure that our website works properly, we use hosting services from a third party who provide us with the following: infrastructure and platform services, computing capacity, storage space and database services, security services and technical maintenance services that we use for the purpose of operating the website.

As part of these services, inventory data, contact data, content data, contract data, usage data, meta and communication data from customers, interested parties and visitors are collected on the basis of our legitimate interests in making our website available efficiently and securely in accordance with Article 6 Paragraph 1 Sentence 1 f ) GDPR in conjunction with Art. 28 GDPR.

Our third-party hosting service provider is located within a country of the European Union or European Economic Area.

2.3. Contacting and opening a customer account

We collect your data if you voluntarily provide it to us when contacting us (e.g. via contact form, e-mail) or when opening a customer account. If you contact us, your data and the information you provide will be forwarded to us via our provider. The information you provide will remain with us until you ask us to delete it, revoke your consent to storage or the purpose for data storage no longer applies (e.g. after your request has been processed). Mandatory legal provisions - in particular retention periods - remain unaffected.

You do not have to open a customer account to place an order in our online shop. If you still want to do it, you can see in the input fields which data we collect for this purpose. After your customer account has been deleted, your data will be restricted for further processing and deleted after the tax and commercial retention periods have expired. Unless you have expressly consented to further use of your data. You can delete your customer account at any time by sending us a message or by using our contact form.

2.4. Collection of data during the ordering process

If you want to purchase products on our website/in our online shop, we need specific data about you, which enables us to provide mutual services. When you place your order

  • Salutation

  • First and Last Name

  • E-mail address

  • billing and delivery address as well

  • Payment information requested.

The mandatory fields are marked as such. We collect this data in order to process your order and to be able to fulfill the contract.

2.5. Data transfer to the shipping service provider

If you have given us your express consent during your order, we will pass on your e-mail address to our shipping service provider on the basis of this in accordance with Article 6 Paragraph 1 Sentence 1 lit a GDPR of the delivery of your packages via email and can send you a tracking number. The consent can be revoked at any time by sending a message to us. After revocation, we will delete your data provided for this purpose, unless you have expressly consented to further use of your data.

2.6. Data transfer to payment service providers

Depending on which payment service provider you select in the ordering process (PayPal, SOFORTÜberweisung/Klarna, stripe), we pass on the payment data collected for this purpose to the credit institution commissioned with the payment and any payment service provider commissioned by us or to the selected payment service to process payments. Some of the selected payment service providers also collect this data themselves if you create an account there. In this case you have to log in to the payment service provider with your access data during the ordering process. In this respect, the data protection declaration of the respective payment service provider applies.

Your data is transmitted to PayPal on the basis of Article 6 (1) (a) GDPR (consent) and Article 6 (1) (b) GDPR (processing to fulfill a contract). You have the option to revoke your consent to data processing at any time. A revocation does not affect the effectiveness of past data processing operations.

You will also receive further information on data protection from our payment service providers

from PayPal directly here: PayPal privacy policy

from Klarna directly here: Klarna AB Privacy Policy.

For the processing of credit card payments we use stripe, an offer from the American Stripe Inc. (legal basis according to the GDPR, if and to the extent applicable: Art. 6 Para. 1 Letter b and f GDPR). Stripe is certified according to the EU-American Privacy Shield and thus guarantees appropriate data protection. In particular, Stripe has published the following information on the type, scope and purpose of data processing: data protection declaration, entry in the Privacy Shield list.

3. Newsletters

If you would like to register for our newsletter, we will use the data required for this or separately provided by you in order to regularly send you our e-mail newsletter based on your consent in accordance with Article 6 (1) sentence 1 lit.

If you would like to receive the newsletter, we need a valid e-mail address from you as well as information that allows us to verify that you are the owner of the e-mail address provided or that the owner agrees to receive the newsletter. In addition, the name and first name must be given. This information is also used exclusively for personal contact when sending the newsletter. A comparison of the data collected in this way with data that may be collected by other components of our site does not take place either. After registering, you will receive an email to confirm your registration (“double opt-in”). This is how we ensure that you do not receive our newsletter unwanted, abusively or accidentally.

Unsubscribing from the newsletter is possible at any time and can be done either by sending a message to us or via a link provided for this purpose in the newsletter. After unsubscribing, we will delete your e-mail address unless you have expressly consented to further use of your data or we reserve the right to use data beyond this, which is permitted by law and about which we will inform you in this declaration.

3.1. Disclosure of data to Mailchimp

The data stored when registering to receive the newsletter will only be sent to our email marketing tool Mailchimp and stored there. The provider is Rocket Science Group LLC, 675 Ponce De Leon Ave NE, Suite 5000, Atlanta, GA 30308, USA.

MailChimp is a service with which, among other things, the sending of newsletters can be organized and analyzed. If you enter data for the purpose of subscribing to the newsletter (e.g. e-mail address), this will be stored on the MailChimp servers in the USA. MailChimp is certified according to the "EU-US Privacy Shield". The "Privacy Shield" is an agreement between the European Union (EU) and the USA, which is intended to ensure compliance with European data protection standards in the USA.

You can find more information about the “EU-US Privacy Shield” at:

The Federal Commissioner for Data Protection and Freedom of Information

http://ec.europa.eu/justice/data-protection/international-transfers/eu-us-privacy-shield/index_en.htm

With the help of MailChimp we can analyze our newsletter campaigns. When you open an email sent with MailChimp, a file contained in the email (so-called web beacon) connects to MailChimp's servers in the USA. In this way it can be determined whether a newsletter message has been opened and which links have been clicked on. Technical information is also recorded (e.g. time of retrieval, IP address, browser type and operating system). This information cannot be assigned to the respective newsletter recipient. They are used exclusively for the statistical analysis of newsletter campaigns. The results of these analyzes can be used to better adapt future newsletters to the interests of the recipients.

You can find more information about data protection at MailChimp here: http://mailchimp.com/legal/privacy/.

4. Product recommendations via email and post

As a customer, you will occasionally receive product recommendations from us via email. If we receive your e-mail address in connection with the sale of goods or services and you have not objected to this, we reserve the right to irregularly send you offers for similar products to those you have already purchased on the basis of Section 7 (3) UWG , from our range by e-mail. This serves to safeguard our overriding legitimate interests in advertising to our customers within the framework of a balancing of interests. We send these product recommendations regardless of whether you have signed up to receive our newsletter.

If you no longer wish to receive any product recommendations or advertising messages from us, you can object to this at any time. Of course you will find an unsubscribe link in every e-mail. Alternatively, you can also contact us directly.

In addition, we reserve the right to use your first and last name as well as your postal address for our own advertising purposes, e.g. to send interesting offers and information about our products by post. This serves to safeguard our overriding legitimate interests in advertising to our customers in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR.

5. Integration of the Trusted Shops seal of approval and the ratings

The Trusted Shops Trustbadge is integrated on this website to display our Trusted Shops seal of approval and the collected reviews as well as to offer Trusted Shops products to buyers after an order. This serves to safeguard our overriding legitimate interests in optimal marketing of our offer in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR. The Trustbadge and the services advertised with it are an offer from Trusted Shops GmbH, Subbelrather Str. 15C, 50823 Cologne.

When the Trustbadge is called up, the web server automatically saves a so-called server log file, which contains e.g. your IP address, date and time of the call, amount of data transferred and the requesting provider (access data) and documents the call. This access data is not evaluated and automatically overwritten no later than seven days after the end of your visit to the site.

Other personal data will only be transmitted to Trusted Shops if you have consented to this, if you decide to use Trusted Shops products after completing an order or if you have already registered for use. In this case, the contractual agreement made between you and Trusted Shops applies.

6. Cookies and web analytics

When you visit our website, your surfing behavior can be statistically evaluated. This is mainly done with cookies and so-called analysis programs. Your surfing behavior is analyzed anonymously. Your behavior cannot be traced back to you. You can object to this analysis or prevent it by not using certain tools.

6.1. cookies

In order to make visiting our website attractive and to enable the use of certain functions, to display suitable products or for market research, we use so-called cookies on various pages. This serves to protect our overriding legitimate interests in an optimized presentation of our offer in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR. Cookies are small text files that are automatically saved on your end device. Some of the cookies we use are deleted after the end of the browser session, i.e. after closing your browser (so-called session cookies). Other cookies remain on your end device and enable us to recognize your browser the next time you visit (persistent cookies). You can see the duration of storage in the overview in the cookie settings of your web browser. You can set your browser so that you are informed about the setting of cookies and can decide individually whether to accept them or exclude the acceptance of cookies for certain cases or in general. Each browser differs in the way it manages cookie settings. This is described in the help menu of each browser, which explains how you can change your cookie settings. You can find these for the respective browsers under the following links:

  • internet explorer

  • Mozilla Firefox

  • Google Chrome

  • AppleSafari

  • Opera

When you visit our website, your surfing behavior can be statistically evaluated. This is mainly done with cookies and so-called analysis programs. Your surfing behavior is analyzed anonymously. Your behavior cannot be traced back to you. You can object to this analysis or prevent it by not using certain tools. You can find detailed information on this and options to object here.

6.2. Use of Google (Universal) Analytics for web analysis

We use Google Analytics, a web analytics service provided by Google Inc. ("Google"). It is used on the basis of Article 6 Paragraph 1 Sentence 1 Letter f GDPR to analyze user behavior and to optimize our offer. Google Analytics also uses so-called "cookies", text files that are stored on your computer and enable an analysis of your use of the website.

The information generated by the cookie about your use of the website, such as

  • browser type/version,

  • operating system used,

  • referrer URL (the previously visited page),

  • Host name of the accessing computer (IP address) or

  • time of server request,

are usually transferred to a Google server in the USA and stored there. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.

We have also added the “anonymizeIP” code to Google Analytics on this website. This guarantees that your IP address is masked so that all data is collected anonymously. Only in exceptional cases will the full IP address be sent to a Google server in the USA and shortened there. Basically, no conclusions can be drawn about you here either.

On our behalf, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide us with other services related to website activity and internet usage. You can prevent the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all the functions of our website to their full extent.

You can prevent Google from collecting the data generated by the cookie and related to your use of the website (including your IP address) and from processing this data by Google by clicking here: Prohibit Google Analytics from sending me pursue. You can also download and install the browser plugin available at the following link: http://tools.google.com/dlpage/gaoptout?hl=en.

You can find more information about the use of data for advertising purposes by Google, setting and objection options on the Google websites:

  • https://www.google.com/intl/de/policies/privacy/partners ("Use of data by Google when you use our partners' websites or apps"),

  • http://www.google.com/policies/technologies/ads (“Use of data for advertising purposes”),

  • http://www.google.de/settings/ads (“Manage information that Google uses to show you advertising”) and

  • http://www.google.com/ads/preferences (“Control which ads Google shows you”)

Precautions for data protection between us and Google Inc. have been agreed and comply with applicable law.

6.3. Conversion tracking with Google Adwords

We use Google AdWords. AdWords is an online advertising program from Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, United States ("Google").

As part of Google AdWords, we use so-called conversion tracking. When you click on an ad served by Google, a conversion tracking cookie is set. Cookies are small text files that the Internet browser stores on the user's computer. These cookies lose their validity after 30 days and are not used to personally identify users. If the user visits certain pages of this website and the cookie has not yet expired, we and Google can recognize that the user clicked on the ad and was redirected to this page.

Each Google AdWords customer receives a different cookie. The cookies cannot be tracked through AdWords advertisers' websites. The information obtained using the conversion cookie is used to create conversion statistics for AdWords customers who have opted for conversion tracking. Customers find out the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not contain any information with which users can be personally identified. If you do not wish to participate in the tracking, you can object to this use by deactivating the Google conversion tracking cookie in your internet browser under user settings. You will then not be included in the conversion tracking statistics.

"Conversion cookies" are stored on the basis of Article 6 (1) (f) GDPR. We have a legitimate interest in analyzing user behavior in order to optimize both our website and our advertising.

You can find more information about Google AdWords and Google Conversion Tracking in Google's data protection regulations: https://www.google.de/policies/privacy/.

6.4. Google reCAPTCHA

For the purpose of protecting our web forms from misuse and spam, we use the Google reCAPTCHA service from Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (hereinafter: Google) for some forms on this website. By verifying a manual entry, this service prevents automated software (so-called bots) from performing abusive activities on the website. In accordance with Article 6 Paragraph 1 Sentence 1 Letter f GDPR, this serves to safeguard our legitimate interests in protecting our website from misuse and in ensuring that our online presence is presented without disruption.

Google reCAPTCHA uses a code embedded in the website, a so-called JavaScript, as part of the verification process that enables an analysis of your use of the website, such as cookies. The automatically collected information about your use of this website, including your IP address, is usually transferred to a Google server in the USA and stored there. In addition, other cookies stored in your browser by Google services are evaluated by Google reCAPTCHA.

A reading or saving of personal data from the input fields of the respective form does not take place.

Google is certified under the EU-US Privacy Shield. A current certificate can be viewed here. Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield.

You can prevent the data generated by the JavaScript or the cookie and related to your use of the website (including your IP address) being sent to Google and the processing of this data by Google by deactivating the execution in your browser settings of JavaScripts or the setting of cookies. Please note that this may limit the functionality of our website for your use.

7. Our online presence on YouTube, Instagram

Our presence on social networks and platforms serves to improve, active communication with our customers and prospects. We provide information there about our products and current special offers.

When you visit our online presence in social media, your data can be automatically collected and stored for market research and advertising purposes. So-called usage profiles are created from this data using pseudonyms. These can be used, for example, to place advertisements inside and outside the platforms that presumably correspond to your interests. Cookies are usually used on your end device for this purpose. Visitor behavior and user interests are stored in these cookies. According to Art. 6 (1) lit. f GDPR, this serves to protect our legitimate interests in an optimized presentation of our offer and effective communication with customers and interested parties. If you are asked by the respective social media platform operators for your consent (consent) to the data processing, e.g. with the help of a checkbox, the legal basis for the data processing is Article 6 Paragraph 1 lit.

Insofar as the aforementioned social media platforms are headquartered in the USA, the following applies: The European Commission has issued an adequacy decision for the USA. This goes back to the EU-US Privacy Shield. A current certificate for the respective company can be viewed here.

For detailed information on the processing and use of the data by the providers on their websites, as well as a contact option and your related rights and setting options to protect your privacy, in particular opt-out options, please refer to the providers’ data protection notices linked below.

YouTube: https://www.youtube.com/static?gl=DE&template=terms&hl=de

Instagram: http://instagram.com/about/legal/privacy/

Possibility of objection (opt-out):

Instagram: http://instagram.com/about/legal/privacy/

8. Data Security

We have taken a variety of security measures to protect personal information to a reasonable extent and adequately against loss, destruction, access, alteration or dissemination of your data by unauthorized persons.

Our databases are protected by physical, technical and procedural measures that limit access to information to specifically authorized persons in accordance with this Privacy Policy. Our information system is behind a software firewall to block access from other networks that are connected to the Internet. Only employees who need the information to perform a specific job are granted access to personally identifiable information. Our employees are trained in security and privacy practices.

When personal information is collected via our website, the transmission is encrypted using industry-standard Secure Socket Layer ("SSL") technology. Sensitive information, such as credit card numbers or account information, is encrypted for further protection. You can recognize an encrypted connection by the fact that the address line of the browser changes from "http://" to "https://" and by the lock symbol in your browser line. If SSL or TLS encryption is activated, the data that you transmit to us cannot be read by third parties.

You should never give your password for access to our customer account to third parties and change this password regularly.

9. Duration of Data Storage

In accordance with the principles of data avoidance and economy, your information will not be processed by us for longer than is necessary for the purpose for which it was collected or as provided for by law. As soon as the purpose of the data processing no longer applies and/or statutory storage periods have expired, the data stored by you will be deleted.

10. Your rights and contact options

As a data subject, you have the following rights:

  • pursuant to Art. 15 GDPR, the right to request information about your personal data processed by us to the extent specified there;

  • pursuant to Art. 16 GDPR, you have the right to immediately request the correction of incorrect or incomplete personal data stored by us;

  • pursuant to Art. 17 GDPR, you have the right to request the deletion of your personal data stored by us, unless further processing is required

          - to exercise the right to freedom of expression and information;

          - to fulfill a legal obligation;

          - for reasons of public interest or

          - to assert, exercise or defend legal claims

is required;

  • according to Art. 18 DSGVO the right to request the restriction of the processing of your personal data, insofar as

          - the correctness of the data is contested by you;

          - the processing is unlawful but you oppose its erasure;

          - we no longer need the data, but you need them to assert, exercise or defend legal claims or

          - you have lodged an objection to the processing in accordance with Art. 21 GDPR;

  • pursuant to Art. 20 GDPR, the right to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request transmission to another person responsible;

  • according to Art. 77 DSGVO the right to complain to a supervisory authority. As a rule, you can contact the supervisory authority at your usual place of residence or work or at our company headquarters.

If you have any questions about the collection, processing or use of your personal data, information, correction, blocking or deletion of data and revocation of consent given or objection to a specific use of data, please contact us directly using the contact details in our imprint or the contact details given in this Privacy Policy (see paragraph 1).

************************************************** ******************

Right to object

Insofar as we process personal data as explained above in order to protect our legitimate interests, which prevail in the context of a balancing of interests, you can object to this processing with effect for the future. If the processing is for direct marketing purposes, you can exercise this right at any time as described above. If the processing is for other purposes, you only have the right to object if there are reasons that arise from your particular situation.

After you have exercised your right to object, we will no longer process your personal data for these purposes unless we can demonstrate compelling legitimate grounds for processing that outweigh your interests, rights and freedoms, or if the processing is necessary for the establishment, exercise or defense of serves legal claims.

This does not apply if the processing is for direct marketing purposes. Then we will no longer process your personal data for this purpose.