The person responsible within the meaning of the data protection laws, in particular the EU General Data Protection Regulation (GDPR), is:
Ecom Brands GmbH
Telephone: 040-716 68 954
We appreciate your interest in our website. Protecting your privacy is very important to us. Below we inform you in detail about the handling of your data on our websites.
1. Storage of access data in server log files and hosting
You can visit our website without providing any personal information. Each time a website is called up, the web server automatically saves a so-called server log file, which contains, for example, the name of the requested file, your IP address, date and time of the call, the amount of data transferred and the requesting provider (access data) and documents the call.
This access data is evaluated exclusively for the purpose of ensuring trouble-free operation of the site and improving our offer. In accordance with Article 6 Paragraph 1 Sentence 1 Letter f GDPR, this serves to protect our legitimate interests in a correct presentation of our offer, which predominate within the framework of a weighing of interests. All access data will be deleted no later than seven days after the end of your visit to the site.
Third Party Hosting Services
As part of processing on our behalf, a third-party provider provides the services for hosting and displaying the website. This serves to protect our overriding legitimate interests in a correct presentation of our offer within the framework of a balancing of interests. All data that is collected as part of the use of this website or in the forms provided for this purpose in the online shop as described below is processed on its servers. Processing on other servers only takes place within the framework explained here.
This service provider is located within a country of the European Union or the European Economic Area.
2. Data collection and use for contract processing and when opening a customer account
We collect personal data if you voluntarily provide it to us as part of your order, when contacting us (e.g. via the contact form or e-mail) or when opening a customer account. Mandatory fields are marked as such, since in these cases we need the data to process the contract or to process your contact or opening of the customer account and you cannot complete the order and/or open an account or send the contact without providing them . Which data is collected can be seen from the respective input forms. We use the data provided by you in accordance with Article 6 Paragraph 1 Sentence 1 lit. b GDPR to process the contract and your inquiries. After the contract has been completed or your customer account has been deleted, your data will be restricted for further processing and deleted after the retention periods under tax and commercial law have expired, unless you have expressly consented to further use of your data or we reserve the right to use the data beyond that is permitted by law and about which we inform you in this statement. The deletion of your customer account is possible at any time and can be done either by sending a message to the contact option described below or using a function provided for this purpose in the customer account.
3. Data transfer to fulfill the contract
In order to fulfill the contract in accordance with Article 6 Paragraph 1 Sentence 1 lit. b GDPR, we pass on your data to the shipping company commissioned with the delivery, insofar as this is necessary for the delivery of the goods ordered. We use YouSellWeSend GmbH as a logistics service provider. YouSellWeSend GmbH provides logistics services on our behalf. For this purpose, we send YouSellWeSend GmbH your name and the recipient's address, your e-mail address, telephone number, customer reference number, the name of the invoice recipient and the billing address. YouSellWeSend GmbH is contractually obliged to use this data only for the purpose described above and according to our instructions. Depending on which payment service provider you select in the ordering process, we pass on the payment data collected for this purpose to the bank commissioned with the payment and any payment service provider commissioned by us or to the selected payment service to process payments. Some of the selected payment service providers also collect this data themselves if you create an account there. In this case, you must register with the payment service provider with your access data during the ordering process. In this respect, the data protection declaration of the respective payment service provider applies.
For service purposes in customer support, we use software-as-a-service solutions from companies whose headquarters are in a country outside the European Union. The data is not transmitted to the companies themselves, but only processed further by our employees in the corresponding software solutions. The transmission of personal data to this company is only necessary to fulfill the contract. Solutions from the providers Zendesk, Inc., 1019 Market Street, 6th Floor, San Francisco, California 94103 and Google Inc., 1600 Amphitheater Parkway Mountain View, CA 94043, USA (www.google.de), both of which have their headquarters in the USA and have been certified under the EU-US Privacy Shield. Current certificates can be viewedHERE . Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield.
4. Email Newsletter
If you register for our newsletter, we use the data required for this or separately provided by you in order to regularly send you our e-mail newsletter based on your consent in accordance with Article 6 Paragraph 1 Sentence 1 lit.
Unsubscribing from the newsletter is possible at any time and can be done either by sending a message to the contact option described below or via a link provided for this purpose in the newsletter. After you have unsubscribed, we will delete your e-mail address, unless you have expressly consented to further use of your data or we reserve the right to use data beyond this, which is permitted by law and about which we will inform you in this declaration.
The newsletter is sent by a service provider as part of processing on our behalf, to whom we pass on your e-mail address for this purpose.
This service provider is located within a country of the European Union or the European Economic Area.
5. Contact requests & contact options
If you contact us via the contact form or email, the data you provide will be used to process your request. Providing the data is necessary for processing and answering your request - without providing it, we cannot answer your request or can only answer it to a limited extent.
The legal basis for this processing is Article 6 Paragraph 1 Letter b) GDPR.
If you send us inquiries via the contact form, your details from the inquiry form, including the contact details you provided, will be stored by us for the purpose of processing the application and in the event of follow-up questions. We do not pass on this data without further consent.
Your data will be deleted if your request has been answered conclusively and the deletion does not conflict with any statutory retention requirements, such as in the case of any subsequent contract processing.
6. Use of data for payment processing
We use external payment service providers, via whose platforms the users and we can carry out payment transactions (e.g., each with a link to the data protection declaration, PayPal ( https://www.paypal.com/de/webapps/mpp/ua/privacy-full ), Klarna ( https://www.klarna.com/de/datenschutz /), Giropay ( https://www.giropay.de/rechts/datenschutz-agb/ ), Visa ( https://www.visa.de/ data protection ), Mastercard ( https://www.mastercard.de/de-de/datenschutz.html ), American Express ( https://www.americanexpress.com/de/content/privacy-policy-statement.html )
As part of the fulfillment of contracts, we use the payment service providers on the basis of Article 6 Paragraph 1 lit. b. GDPR a. In addition, we use external payment service providers on the basis of our legitimate interests in accordance with Article 6 (1) (f) GDPR in order to offer our users effective and secure payment options.
The data processed by the payment service provider includes inventory data such as name and address, bank details such as account numbers or credit card numbers, passwords, TANs and checksums, as well as contract, total and recipient-related information. The information is required to carry out the transactions. However, the data entered will only be processed and stored by the payment service providers. This means that we do not receive any account or credit card-related information, only information with confirmation or negative information about the payment. Under certain circumstances, the payment service provider may transmit the data to credit agencies. The purpose of this transmission is to check identity and creditworthiness. We refer to the terms and conditions and data protection notices of the payment service providers.
The terms and conditions and the data protection notices of the respective payment service provider apply to the payment transactions, which can be accessed within the respective websites or transaction applications. We also refer to this for the purpose of further information and the assertion of revocation, information and other data subject rights.
7. Cookies and Web Analysis
In order to make visiting our website attractive and to enable the use of certain functions, to display suitable products or for market research, we use so-called cookies on various pages. This serves to protect our overriding legitimate interests in an optimized presentation of our offer in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR. Cookies are small text files that are automatically saved on your end device. Some of the cookies we use are deleted after the end of the browser session, i.e. after closing your browser (so-called session cookies). Other cookies remain on your end device and enable us to recognize your browser the next time you visit (persistent cookies). You can see the duration of storage in the overview in the cookie settings of your web browser. You can set your browser so that you are informed about the setting of cookies and decide individually whether to accept them or exclude the acceptance of cookies for certain cases or in general. Each browser differs in the way it manages cookie settings. This is described in the help menu of each browser, which explains how you can change your cookie settings.
These can be found for the respective browsers under the following links:
Cookie settings in Internet Explorer™
Cookie settings in Safari™
Cookie settings in Chrome™
Cookie settings in Firefox™
Cookie settings in Opera™
If cookies are not accepted, the functionality of our website may be restricted.
8. SSL Encryptions
For security reasons and to protect the transmission of confidential content, such as the inquiries you send to us as the site operator, this site uses SSL encryption. You can recognize an encrypted connection by the fact that the address line of the browser changes from "http://" to "https://" and by the lock symbol in your browser line. If SSL encryption is activated, the data you transmit to us cannot be read by third parties.
9. Use of Google (Universal) Analytics for web analysis
For website analysis, this website uses Google (Universal) Analytics, a web analysis service provided by Google Inc., 1600 Amphitheater Parkway Mountain View, CA 94043, USA (www.google.de). This serves to protect our overriding legitimate interests in an optimized presentation of our offer in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR. Google (Universal) Analytics uses methods that enable an analysis of your use of the website, such as cookies. The automatically collected information about your use of this website is usually transferred to a Google server in the USA and stored there. By activating IP anonymization on this website, the IP address is shortened before transmission within the member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be sent to a Google server in the USA and shortened there. The anonymized IP address transmitted by your browser as part of Google Analytics is generally not merged with other Google data. After the end of our use of Google Analytics, the data collected in this context will be deleted.
Google Inc is headquartered in the USA and is certified under the EU-US Privacy Shield. A current certificate can be found at: List of companies in the US-EU Privacy Shield . You can prevent Google Analytics from collecting your data by clicking on the following link. An opt-out cookie will be set to prevent your data from being collected on future visits to this website: Disable Google Analytics
This website uses the "demographic characteristics" function of Google Analytics. This allows reports to be created that contain statements about the age, gender and interests of the site visitors. This data comes from interest-based advertising from Google and visitor data from third-party providers. This data cannot be assigned to a specific person. You can deactivate this function at any time via the ad settings in your Google account or generally prohibit the collection of your data by Google Analytics as described in the point "Objection to data collection".
We have concluded an order data processing contract with Google and fully implement the strict requirements of the German data protection authorities when using Google Analytics.
You can find more information on how Google Analytics handles user data in Google's data protection declaration: Google data protection declaration
10. Google reCAPTCHA
For the purpose of protecting our web forms from misuse and spam, we use the Google reCAPTCHA service for some forms on this website. Google reCAPTCHA is an offer from Google Ireland Limited, a company incorporated and operated under Irish law with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland. ( www.google.de ). By verifying a manual entry, this service prevents automated software (so-called bots) from performing abusive activities on the website. In accordance with Article 6 Paragraph 1 Sentence 1 Letter f GDPR, this serves to safeguard our legitimate interests in protecting our website from misuse and in ensuring that our online presence is presented without disruption.
Insofar as information is transferred to Google servers in the USA and stored there, the American company Google LLC is certified under the EU-US Privacy Shield. A current certificate can be viewed here . Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield.
11. Use of Google Web Fonts
In order to display our content correctly and graphically appealing across browsers, we use "Google Web Fonts" from Google LLC (1600 Amphitheater Parkway, Mountain View, CA 94043, USA; hereinafter "Google") to display fonts on this website.
12. Use of Google Maps
On this website we use the offer of Google Maps. Google Maps is operated by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (hereinafter “Google”). This enables us to show you interactive maps directly on the website and enables you to conveniently use the map function.
You can find more information about data processing by Google in the Google data protection information: https://policies.google.com/privacy . There you can also change your personal data protection settings in the data protection center.
Detailed instructions for managing your own data in connection with Google products can be found here: https://www.dataliberation.org
By visiting the website, Google receives information that you have accessed the corresponding subpage of our website. This occurs regardless of whether Google provides a user account through which you are logged in or whether there is no user account. If you are logged in to Google, your data will be assigned directly to your account.
If you do not wish to be assigned to your profile on Google, you must log out of Google before activating the button. Google stores your data as usage profiles and uses them for advertising, market research and/or needs-based design of its websites. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact Google to exercise this right.
The provider currently offers no option for a simple opt-out or blocking of data transmission. If you want to prevent your activities on our website from being tracked, please revoke your consent for the corresponding cookie category or all technically unnecessary cookies and data transmissions in the cookie consent tool. In this case, however, you may not be able to use our website or only to a limited extent.
13. Advertising via Marketing Networks
Use of Google Adwords Conversion
We use Google Adwords to draw attention to our attractive offers with the help of advertising material (so-called Google Adwords) on external websites. In relation to the advertising campaign data, we can determine how successful the individual advertising measures are. We are interested in showing you advertising that is of interest to you, in making our website more interesting for you and in achieving a fair calculation of advertising costs.
These advertising media are delivered by Google via so-called »ad servers«. To do this, we use ad server cookies, which can be used to measure certain parameters for measuring success, such as the display of ads or clicks by users. If you access our website via a Google ad, Google Adwords will store a cookie on your PC. These cookies usually expire after 30 days and are not intended to identify you personally. For this cookie, the unique cookie ID, number of ad impressions per placement (frequency), last impression (relevant for post-view conversions) and opt-out information (marking that the user does not wants to be addressed more) is saved.
These cookies enable Google to recognize your internet browser. If a user visits certain pages of an Adwords customer's website and the cookie stored on their computer has not yet expired, Google and the customer can recognize that the user clicked on the ad and was redirected to this page. Each Adwords customer is assigned a different cookie. This means that cookies cannot be tracked via the websites of Adwords customers. We ourselves do not collect or process any personal data in the advertising measures mentioned. We only receive statistical evaluations from Google. Based on these evaluations, we can see which of the advertising measures used are particularly effective. We do not receive any further data from the use of the advertising material, in particular we cannot identify the user based on this information.
Due to the marketing tools used, your browser automatically establishes a direct connection to the Google server. We have no influence on the scope and further use of the data collected by Google through the use of this tool and are therefore informing you according to our state of knowledge: By integrating AdWords Conversion, Google receives the information that you have accessed the relevant part of our website viewed or clicked on one of our advertisements. If you are registered with a Google service, Google can assign the visit to your account. Even if you are not registered with Google or have not logged in, there is a possibility that the provider will find out and store your IP address.
You can prevent participation in this tracking process in a number of ways:
- by setting your browser software accordingly, in particular by suppressing third-party cookies, you will not receive any third-party ads;
- by deactivating cookies for conversion tracking by setting your browser so that cookies from the domain "www.googleadservices.com" are blocked, www.google.de/settings/ads, whereby this setting is deleted if you delete your cookies;
- by deactivating the interest-based ads of the providers who are part of the self-regulatory campaign "About Ads" via the link www.aboutads.info/choices, whereby this setting will be deleted if you delete your cookies;
- by permanent deactivation in your browsers Firefox, Internet Explorer or Google Chrome under the link www.google.com/settings/ads/plugin. We would like to point out that in this case you may not be able to use all the functions of this offer to their full extent.
The legal basis for the processing of your data is Article 6 Paragraph 1 Clause 1 Letter f GDPR.
Further information on data protection at Google can be found here: www.google.com/intl/de/policies/privacy and services.google.com/sitestats/de.html .
Alternatively, you can visit the Network Advertising Initiative (NAI) website at www.networkadvertising.org . Google has submitted to the EU-US Privacy Shield, www.privacyshield.gov/EU-US-Framework .
Google AdWords Remarketing
We use Google Adwords to advertise this website in Google search results and on third-party websites. For this purpose, when you visit our website, the so-called remarketing cookie is set by Google, which automatically enables interest-based advertising using a pseudonymous cookie ID and based on the pages you visit. This serves to safeguard our overriding legitimate interests in optimal marketing of our website in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR. After the end of our use of Google AdWords Remarketing, the data collected in this context will be deleted.
Any further data processing will only take place if you have given your consent to Google that your web and app browser history will be linked to your Google account by Google and that information from your Google account will be used to personalize ads that you see on the web see. In this case, if you are logged in to Google while visiting our website, Google will use your data together with Google Analytics data to create and define target group lists for cross-device remarketing. To do this, Google will temporarily link your personal data to Google Analytics data in order to form target groups.
Google Inc., 1600 Amphitheater Parkway Mountain View, CA 94043, USA (www.google.de), has its headquarters in the USA and is certified under the EU-US Privacy Shield. Current certificates can be viewed HERE . Based on this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield.
You can disable the remarketing cookie via this link . You can also find out more about the setting of cookies from the Digital Advertising Alliance and make settings for this.
14. Social Media Plugins
Use of social plugins from Facebook, Google, Twitter, Instagram, WhatsApp and Pinterest
So-called social plugins (“plugins”) from social networks are used on our website. If you access a page on our website that contains such a plugin, your browser establishes a direct connection to the Facebook, Google, Twitter or Instagram servers. The content of the plugin is transmitted directly to your browser by the respective provider and integrated into the page. By integrating the plugins, the providers receive the information that your browser has accessed the corresponding page of our website, even if you do not have a profile or are not currently logged in. This information (including your IP address) is transmitted directly from your browser to a server of the respective provider (possibly in the USA) and stored there. If you are logged in to one of the services, the providers can directly assign the visit to our website to your profile in the respective social network. If you interact with the plugins, for example by pressing the "Like" or "Share" button, the corresponding information is also transmitted directly to a server of the provider and stored there. The information is also published on the social network and displayed to your contacts there.
This serves to safeguard our overriding legitimate interests in optimal marketing of our offer in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR.
The purpose and scope of the data collection and the further processing and use of the data by the providers as well as a contact option and your rights in this regard and setting options for protecting your privacy can be found in the data protection information of the providers:
If you do not want the social networks to directly assign the data collected via our website to your profile in the relevant service, you must log out of the relevant service before visiting our website. You can also completely prevent the plugins from loading with add-ons for your browser, e.g. B. with the script blocker “NoScript” ( http://noscript.net/ ).
15. Youtube Video Plugins
Content from third-party providers is included on this website. This content is provided by Google Inc. ("Provider"). YouTube is operated by Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA ("Google").
The extended data protection setting is activated for videos from YouTube that are embedded on our site. This means that no information is collected and stored from website visitors on YouTube unless they play the video. The integration of the videos serves to safeguard our overriding legitimate interests in optimal marketing of our offer in accordance with Article 6 Paragraph 1 Sentence 1 lit. f GDPR.
The purpose and scope of the data collection and the further processing and use of the data by the providers as well as your rights in this regard and setting options for protecting your privacy can be found in Google's data protection information
16. Contact options and your rights
You can exercise the following rights at any time using the contact details provided for our data protection officer:
- in accordance with Art. 15 GDPR, the right to request information about your personal data processed by us to the extent specified there;
- in accordance with Art. 16 GDPR, the right to immediately request the correction of incorrect or incomplete personal data stored by us;
- in accordance with Art. 17 GDPR, the right to request the deletion of your personal data stored by us, unless further processing: to exercise the right to freedom of expression and information; to comply with a legal obligation; is necessary for reasons of public interest or to assert, exercise or defend legal claims;
- pursuant to Art. 18 GDPR, the right to demand the restriction of the processing of your personal data, insofar as: the accuracy of the data is disputed by you; the processing is unlawful but you oppose its erasure; we no longer need the data, but you need them to assert, exercise or defend legal claims or you have lodged an objection to the processing in accordance with Art. 21 GDPR;
- in accordance with Art. 20 GDPR, the right to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request transmission to another person responsible;
- according to Art. 77 GDPR the right to complain to a supervisory authority. As a rule, you can contact the supervisory authority of your usual place of residence or work or our company headquarters.
If you have any questions about the collection, processing or use of your personal data, information, correction, blocking or deletion of data and revocation of consent given or objection to a specific use of data, please contact us directly using the contact details in our imprint. If you wish, you can use the contact details provided there to receive the relevant forms so that you can assert your rights with us as described above.
You can contact a supervisory authority at any time with a complaint, e.g. B. to the competent supervisory authority of the federal state of your place of residence or to the authority responsible for us as the responsible body.
You can find a list of the supervisory authorities (for the non-public area) with their addresses here .
17. Right to Object
Insofar as we process personal data as explained above in order to protect our legitimate interests, which prevail in the context of a balancing of interests, you can object to this processing with effect for the future. If the processing is for direct marketing purposes, you can exercise this right at any time as described above. If the processing is for other purposes, you only have the right to object if there are reasons that arise from your particular situation.
After you have exercised your right to object, we will no longer process your personal data for these purposes unless we can demonstrate compelling legitimate grounds for processing that outweigh your interests, rights and freedoms, or if the processing is necessary for the establishment, exercise or defense of serves legal claims.
This does not apply if the processing is for direct marketing purposes. Then we will no longer process your personal data for this purpose.
If you have any questions about data protection, please send us an email or contact the person responsible for data protection directly:
Ecom Brands GmbH
Telephone: 040-716 68 954