Privacy Policy

1. General Information

The following notes provide a simple overview of what happens to your personal data when you visit this website. Personal data is any data by which you can be personally identified. Detailed information on the subject of data protection can be found in the text below.

Storage Duration

Unless a more specific storage period has been specified in this privacy policy, your personal data will remain with us until the purpose for which it was collected no longer applies. If you assert a justified request for deletion or revoke your consent to data processing, your data will be deleted, provided that we have no other legally permissible reasons for storing your personal data (e.g., tax or commercial retention periods); in the latter case, the deletion will take place after these reasons cease to apply.

2. Controller (Responsible Party)

The party responsible for data processing on this website (the "controller") is:

Oliver Riechert
Wiesenstraße 71
29525 Uelzen
Germany

Contact: Email: [email protected]

The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data (e.g., names, email addresses, etc.).

3. Data Collection on Our Website

Cookies

Our website uses "cookies". Cookies are small text files and do not cause any damage to your terminal device. They are either stored temporarily for the duration of a session (session cookies) or permanently (permanent cookies) on your device.

Technically Necessary Cookies

We use strictly necessary cookies that are required for the operation of our website. These cookies are set on the basis of Art. 6 (1) (f) GDPR. We have a legitimate interest in storing cookies for the technically error-free and optimized provision of our services.

  • Security & Bot Protection (cf_clearance): Provided by Cloudflare. It ensures that a user has successfully completed a security challenge. Storage duration: 30 minutes.
  • Consent Management (mhcookie): Stores your cookie consent preferences (allow/deny). Storage duration: 1 year.

Analysis & Performance Cookies

To optimize our website's reach and improve the user experience, we use internal analysis tools. These cookies are processed based on your explicit consent (Art. 6 (1) (a) GDPR) provided via our consent banner.

  • Visitor Tracking (opnt_visitor_tracked_weekly): Prevents counting the same browser multiple times in weekly statistics. Storage duration: Max. 7 days.
  • Analytics Identifier (optn_analytics_id): Assigns a pseudonymous, randomly generated ID (UUID) for internal analytics. Storage duration: 1 years.
  • Visitor Type (optn_visitor_type): Classifies the browser as "new" or "returning". Storage duration: 1 year.

Server Log Files

The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us:

  • Browser type and version
  • Operating system used
  • Referrer URL
  • Host name of the accessing computer
  • Time of the server request
  • IP address

The basis for data processing is Art. 6 (1) (f) GDPR, which permits the processing of data for the technically error-free presentation and optimization of the website.

Contacting Us (Form, Email, or Telephone)

If you send us inquiries via the contact form or email, your data (e.g., Name, Email, Message) will be stored for the purpose of processing the inquiry.

  • Legal Basis: Processing is based on Art. 6 (1) (b) GDPR (contractual/pre-contractual measures) or Art. 6 (1) (f) GDPR (legitimate interest in effective communication).
  • Retention: Data remains with us until you request deletion, revoke consent, or the purpose for storage lapses (e.g., request is completed), subject to mandatory statutory retention periods.

4. Hosting, Email and Infrastructure

Email Hosting: Google Workspace

We use Google Workspace for our email communication. The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.

  • Data Processing and Storage Location: We have configured our Google Workspace settings to ensure that the storage of our data ("Data at Rest") occurs on servers within the European Union. However, please note that in the context of maintenance or technical support, access by Google LLC (USA) cannot be completely ruled out.
  • Legal Basis: This service is used based on our legitimate interest in secure and professional business communication (Art. 6 (1) (f) GDPR).
  • Data Security: We have concluded a Data Processing Amendment (DPA) with Google. For potential data transfers to the USA, Google relies on the EU-U.S. Data Privacy Framework and EU Standard Contractual Clauses.

Security & CDN: Cloudflare

We use services provided by Cloudflare Inc. (101 Townsend St., San Francisco, CA 94107, USA). Cloudflare provides a Content Delivery Network (CDN) and protects our website against attacks (e.g., DDoS).

  • Legal Basis: Art. 6 (1) (f) GDPR (Legitimate interest in security and performance).
  • Data Transfer: Cloudflare Inc. is certified under the EU-U.S. Data Privacy Framework. We have concluded a DPA including Standard Contractual Clauses with Cloudflare.

CDN: Bunny CDN

We use the Content Delivery Network Bunny CDN, operated by BunnyWay d.o.o. (Cesta komandanta Staneta 4A, 1215 Medvode, Slovenia).

  • Legal Basis: Art. 6 (1) (f) GDPR. This service delivers media files faster via servers within the EU and worldwide. A DPA has been concluded with the provider.

Email Marketing and Transactional Emails: EmailIT

For sending newsletters or transactional emails, we use EmailIT, provided by FunFirst s.r.o. (Na louži 258/13, Vršovice 101 00 Praha 10, Czech Republic).

  • Processing: Data is processed on servers within the European Union.
  • Legal Basis: Art. 6 (1) (a) GDPR (Consent) for newsletters or Art. 6 (1) (f) GDPR (Legitimate interest) for system-critical emails like order confirmations.
  • Compliance: We have concluded a DPA with FunFirst s.r.o. to ensure processing in accordance with GDPR standards.

5. Your Rights

As a data subject, you have the following rights:

  • Right to Access (Art. 15 GDPR): Information about your stored data.
  • Right to Rectification (Art. 16 GDPR): Correction of inaccurate data.
  • Right to Erasure (Art. 17 GDPR): Deletion of your data.
  • Right to Restriction (Art. 18 GDPR): Limiting how we process your data.
  • Right to Data Portability (Art. 20 GDPR): Receiving your data in a machine-readable format.
  • Right to Object (Art. 21 GDPR): You can object to processing based on legitimate interests (Art. 6 (1) (f) GDPR) at any time.
  • Right to Withdraw Consent: You can revoke any consent given (Art. 6 (1) (a) GDPR) at any time with future effect.
  • Right to lodge a complaint: You have the right to complain to a competent supervisory authority.

6. Data Security

We use SSL or TLS encryption for security reasons and to protect the transmission of confidential content. You can recognize an encrypted connection by "https://" and the lock symbol in your browser address bar.

menuchevron-downcross-circle

This website uses cookies to enhance your browsing experience and ensure the site functions properly. By continuing to use this site, you acknowledge and accept our use of cookies.

Accept All Accept Required Only