Privacy Policy

PDF Data Protection

1. An overview of data protection

General information

The information in this section will provide you with a straightforward overview of what happens with your personal data when you visit our website. The term “personal data” refers to all data that can be used to personally identify you. For detailed information about data protection, please consult the following sections of our Privacy Policy.

Data collection on our website

Who is the “controller” responsible for data collection on this website?

Data processing on this website is performed by the website operator, whose contact information is available under the section “Information Required by Law” on this website.

How do we collect your data?

Firstly, we collect personal data that you share with us, for example via our contact form.

Our IT systems automatically collect other data when you visit our website. This is primarily technical information (e.g. web browser, operating system or time the site was accessed). This information is recorded automatically when you access our website.

What do we use your data for?

Some of the data is collected to help guarantee the error-free provision of our website. Other data may be used to analyse your user behaviour.

What rights do you have regarding your data?

You have the right to receive information about the source, recipients and purposes of your personal data which we store, at any time and free of charge. You also have the right to request that we rectify, block or erase your data. Please do not hesitate to contact us at any time at the address given in the section “Information Required by Law” on this website if you have questions about this or any other data protection matters. You also have the right to lodge a complaint with the competent supervisory authority.

Additionally, under certain circumstances, you have the right to request that we restrict the processing of your personal data. For details, please see below.

Analytical tools and third-party tools

Your browsing patterns may be statistically analysed when you visit our website. This is done primarily using cookies and what we refer to as analytical programs. As a rule, the analyses of your browsing patterns are anonymous – that is, the browsing patterns cannot be traced back to you. You have the option to object to these analyses, or you can prevent them by not using certain tools. For detailed information about this, please see below.

2. General information and mandatory information

Data protection

The operators of this website take the protection of your personal data very seriously. We therefore handle your personal data confidentially and in compliance with the statutory data protection regulations and this Privacy Policy.

Whenever you use this website, a variety of personal data will be collected. Personal data is data that can be used to personally identify you. This Privacy Policy explains which data we collect and what we use this data for. It also explains how and for what purpose the data is collected.

Please note that the transmission of data via the internet (e.g. via email) may involve security risks. It is not possible to completely protect data against third-party access.

Information about the “controller” responsible for data processing

The data processing controller for this website is:

SH business COM GmbH
SH-Allee 1
79336 Herbolzheim

Germany

Telephone: +49 (0) 7643 8006 0
Email: info@sh-business-com.de

The controller is the natural person or legal entity who, single-handedly or jointly with others, makes decisions regarding the purposes of and resources for the processing of personal data (names, email addresses, etc.).

Withdrawing your consent to data processing

Many data processing operations are only possible with your express consent. You can withdraw consent which you have already given us at any time. To do so, simply contact us via email. This will not affect the lawfulness of any data collection that occurred prior to your withdrawal of consent.

Right to object to data collection in special cases; right to object to direct marketing (Art. 21 GDPR)

In the event that data is processed on the basis of Art. 6(1)(e) or (f) GDPR, you have the right to object at any time to the processing of your personal data for reasons relating to your particular situation. This also applies to any profiling based on these provisions. To determine the legal basis on which any processing of data is based, please see below. If you lodge an objection, we will no longer process the personal data in question unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or unless the purpose of the processing is the establishment, exercise or defence of legal claims (objection pursuant to Art. 21(1) GDPR).

If your personal data is being processed for direct marketing purposes, you have the right to object at any time to the processing of the personal data in question for these purposes. This also applies to profiling to the extent that it is related to such direct marketing. If you object, your personal data will no longer be used for direct marketing purposes (objection pursuant to Art. 21(2) GDPR).

Right to lodge a complaint with the competent supervisory authority

In the event of a breach of the GDPR, data subjects are entitled to lodge a complaint with a supervisory authority, in particular in the Member State of their habitual residence or place of work or in which the alleged breach occurred. The right to lodge a complaint is not affected by any other administrative or court proceedings available as judicial remedies.

Right to data portability

You have the right to receive any data which we automatically process on the basis of your consent or in order to fulfil a contract, or have this data provided to a third party, in a commonly used, machine-readable format. If you request that we transfer the data directly to another controller, this will be done only if it is technically feasible.

SSL and TLS encryption

For security reasons and to protect the transmission of confidential content, such as purchase orders or inquiries which you submit to us as the website operator, this website uses SSL and TLS encryption. You can tell if your connection is encrypted by checking whether “http://” changes to “https://” in your browser’s address bar and whether the padlock icon appears in this bar.

If SSL or TLS encryption is activated, data which you transmit to us cannot be read by third parties.

Accessing, blocking, rectifying and erasing data

Within the scope of the applicable statutory provisions, you have the right to demand information at any time about your personal data which we store, the source and recipients of this data, and the purpose for which we process it. You may also have a right to have your data rectified, blocked or erased. If you have any questions about this or any other data protection matters, please do not hesitate to contact us at any time at the address provided in the section “Information Required by Law” on this website.

Right to restriction of processing

You have the right to request that we restrict the processing of your personal data. To do so, you can contact us at any time at the address provided in the section “Information Required by Law” on this website. The right to restriction of processing applies in the following cases:

  • If you contest the accuracy of your data which we store, we will usually need some time to verify this claim. You have the right to request that we restrict the processing of your personal data while we verify its accuracy.

  • If your personal data is being or has been processed unlawfully, you can request that we restrict the processing of your data instead of erasing it.

  • If we no longer need your personal data but you need it for the establishment, exercise or defence of legal claims, you have the right to request that we restrict the processing of your data instead of erasing it.

  • If you have filed an objection pursuant to Art. 21(1) GDPR, your interests will be weighed against ours. Until it is determined whose interests prevail, you have the right to request that we restrict the processing of your personal data.

    If you have restricted the processing of your personal data, this data shall – with the exception of storage – only be processed with your consent or for the establishment, exercise or defence of legal claims or for the protection of the rights of another natural or legal person or for reasons of important public interest of the European Union or a Member State.

    Objection to unsolicited emails

    We hereby object to the use of the contact information which we are legally required to publish to send us promotional and information material that we have not expressly requested. The operators of this website reserve the express right to take legal action in the event that unsolicited promotional information is sent, for instance in the form of spam emails.

    3. Data protection officer

    Legally required data protection officer

    We have appointed a data protection officer for our company.

    Email: datenschutzbeauftragter@datenschutzexperte.de

    4. Data collection on our website

    Cookies

    In some instances, our website  uses cookies. Cookies do not cause any damage to your computer and do not contain viruses. The purpose of cookies is to make our website more user-friendly, effective and secure. Cookies are small text files that are placed on your computer and stored by your browser.

    Most of the cookies which we use are “session cookies.” They are automatically deleted after you leave our site. Other cookies will be stored on your device until you delete them. These cookies enable us to recognise your browser the next time you visit our website.

    You can adjust your browser settings so that you are notified every time cookies are placed and can choose whether to accept cookies only in specific cases, to prevent cookies from being placed in specific situations or in general and to activate the automatic deletion of cookies when you close your browser. If you deactivate cookies, you may not be able to use all of the functions of this website.

    Cookies that are required to perform the electronic communications transaction or to provide certain functions which you want to use (e.g. the shopping cart function) are stored on the basis of Art. 6(1)(f) GDPR. The website operator has a legitimate interest in storing cookies to optimise the provision of their services and prevent technical errors. Other cookies which may be stored (e.g. to analyse your browsing patterns) are addressed separately in this Privacy Policy.

    Server log files

    The provider of this website automatically collects and stores information in “server log files”, which your browser transfers to us automatically. The information comprises:

  • The browser type and version used

  • The operating system used

  • Referrer URL

  • The hostname of the accessing computer

  • The time of the server inquiry

  • The IP address

    This data is not merged with other data sources.

    This data is collected on the basis of Art. 6(1)(f) GDPR. The operator of the website has a legitimate interest in optimising the website and preventing technical errors. In order to achieve this, server log files must be generated.

    Contact form

    If you submit inquiries to us via our contact form, we will store the information which you provide via the form, including contact information, in order to handle your inquiry and resolve any follow-up questions. We will not share this information without your consent.

    Data entered into the contact form is therefore processed solely on the basis of your consent (Art. 6(1)(a) GDPR). You have the right to withdraw, at any time, any consent which you have already given to us. To do so, simply contact us via email. This will not affect the lawfulness of any data collection that occurred prior to your withdrawal of consent.

    We will store the data which you enter into the contact form until you ask us to erase this data or withdraw your consent to its storage, or until the purpose for which the data was stored no longer exists (e.g. after we have fully responded to your inquiry). This shall be without prejudice to any mandatory legal provisions, in particular retention periods.

    Registration on this website

    You have the option to register on our website in order to use additional website functions. We shall use the data which you enter for the sole purpose of enabling your use of the offer or service which you have registered for. The required information must be entered in full during registration. If this is not done, we shall reject the registration.

    To notify you of any important changes to the scope of our portfolio or any technical modifications, we shall use the email address provided during the registration process.

    We shall process the data entered during the registration process on the basis of your consent (Art. 6(1)(a) GDPR). You have the right to withdraw, at any time, any consent which you have already given to us. To do so, simply contact us via email. This will not affect the lawfulness of any data collection that occurred prior to your withdrawal of consent.

    We will store the data collected during the registration process for as long as you are registered on our website. Subsequently, this data shall be deleted. This shall be without prejudice to legally mandated retention periods.

    The comment function on this website

    When you use the comment function on this website, the time at which the comment was created and, if you are not posting anonymously, your user name will be stored in addition to your comment.

    Storage of IP addresses

    Our comment function stores the IP addresses of all users who enter comments. Given that we do not review the comments prior to publishing them, we need this information in order to take action against the author in the event of legal violations, such as defamation or propaganda.

    Storage period for comments

    Comments and any associated information (e.g. the IP address) shall be stored by us and shall remain on our website until the content which the comment pertained to has been deleted in its entirety or the comment must be deleted for legal reasons (e.g. insulting comments).

    Legal basis

    Comments are stored on the basis of your consent (Art. 6(1)(a) GDPR). You have the right to withdraw, at any time, any consent which you have already given to us. To do so, simply contact us via email. This will not affect the lawfulness of any data collection that occurred prior to your withdrawal of consent.

    Processing of data (customer and contract data)

    We collect, process and use personal data only to the extent necessary for the establishment, organisation or modification of the legal relationship (data inventory). These actions are taken on the basis of Art. 6(1)(b) GDPR, which permits the processing of data for the performance of a contract or pre-contractual actions. We collect, process and use personal data concerning the use of our website (usage data) only to the extent that this is necessary to enable users to utilise the services and to bill for them.

    The customer data which is collected shall be erased upon completion of the order or termination of the business relationship. This shall be without prejudice to any statutory retention periods.

    Data transfer when concluding contracts for online stores, retailers and the shipment of merchandise

    We transfer personal data to third parties only if this is necessary for the implementation of a contract – for instance, to companies responsible for the shipment of goods or to the financial institution responsible for processing payments. Personal data will not be transferred in any other circumstances, unless you have expressly consented to its transfer. Your data will not be transferred to third parties without your express consent, for instance for advertising purposes.

    The basis for this data processing is Art. 6(1)(b) GDPR, which permits the processing of data for the performance of a contract or pre-contractual actions.

    Data transfer when concluding contracts for services and digital content

    We transfer personal data to third parties only if this is necessary for the implementation of a contract – for instance, to the financial institution responsible for processing payments.

    Personal data will not be transferred in any other circumstances, unless you have expressly consented to its transfer. Your data will not be transferred to third parties without your express consent, for instance for advertising purposes.

    The basis for this data processing is Art. 6(1)(b) GDPR, which permits the processing of data for the performance of a contract or pre-contractual actions.

    5. Analytical tools and advertising

    Google Analytics

    This website uses functions offered by the web analysis service Google Analytics. The provider of this service is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

    Google Analytics uses cookies. Cookies are text files which are stored on your computer and make it possible to analyse user behaviour on the website. The information generated by cookies regarding your use of this website is usually transferred to and stored on a Google server in the United States.

    The storage of Google Analytics cookies and the use of this analytical tool are based on Art. 6(1)(f) GDPR. The operator of this website has a legitimate interest in analysing user behaviour to optimise both the services offered online and the operator’s advertising activities.

    IP anonymisation

    We have activated the IP anonymisation function on this website. As a result, your IP address will be shortened by Google within member states of the European Union or other states that have ratified the Convention on the European Economic Area before it is transmitted to the United States. The full IP address will be transmitted to Google’s servers in the United States and shortened there only in exceptional cases. On behalf of the operator of this website, Google will use this information to analyse your use of the website and generate reports on website activity, as well as to provide the operator of this website with other services related to the use of the website and the Internet. The IP address transmitted from your browser in conjunction with Google Analytics shall not be merged with other data in Google’s possession.

    Browser plug-in

    You can prevent cookies from being stored by changing the settings of your browser software. However, please note that you may then not be able to use all of the functions of this website to their fullest extent. You can also prevent Google from collecting and processing the data generated by the cookie concerning your use of the website (including your IP address) by downloading and installing the browser plug-in available here: https://tools.google.com/dlpage/gaoptout?hl=en.

    Objecting to data collection

    You can prevent Google Analytics from collecting personal data by clicking on the following link. An opt-out cookie will then be placed which will prevent your data from being collected when you visit this website in future. Deactivate Google Analytics.

    For more information about how Google Analytics handles user data, please consult Google’s data privacy and security information at: https://support.google.com/analytics/answer/6004245?hl=en.

    Third-party data processing

    We have concluded a third-party data processing agreement with Google and we implement the stringent provisions of the German data protection authorities to the fullest when using Google Analytics.

    Google AdWords and Google Conversion Tracking

    This website uses Google AdWords. AdWords is an online promotional program offered by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).

    As part of Google AdWords, we use a tool called Conversion Tracking. If you click on an ad posted by Google, a cookie will be placed for use by this tool. Cookies are small text files which the user’s web browser places on their computer. These cookies expire after 30 days and are not used to personally identify users. If the user visits certain pages on this website and the cookie has not yet expired, we and Google will be able to recognise that the user has clicked on an ad and has been linked to this page.

    A different cookie is allocated to every Google AdWords customer. These cookies cannot be tracked via the websites of AdWords customers. The information obtained using the Conversion cookie is used to generate Conversion statistics for AdWords customers who have opted to use Conversion Tracking. Customers can see the total number of users who have clicked on their ads and have been linked to a page provided with a Conversion Tracking tag. However, they do not receive any information that would allow them to personally identify these users. If you do not want to participate in tracking, you can object to this easily by deactivating the Google Conversion Tracking cookie in your web browser’s settings. If you do so, you will not be included in the Conversion Tracking statistics.

    The storage of Conversion cookies and the use of this tracking tool are based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in analysing user behaviour in order to optimise the operator’s web services and advertising.

    For more detailed information about Google AdWords and Google Conversion Tracking, please consult Google’s Privacy Policy at: https://policies.google.com/privacy?hl=en.

    You can adjust your browser settings so that you are notified every time cookies are placed and can choose whether to accept cookies only in specific cases, to prevent cookies from being placed in specific situations or in general and to activate the automatic deletion of cookies when you close your browser. If you deactivate cookies, you may not be able to use all of the functions of this website.

     

    6. Plug-ins and tools

    YouTube

    Our website uses plug-ins provided by the platform YouTube, which is operated by Google. The website operator is YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA.

    If you visit a page on our website which features an embedded YouTube plug-in, a connection with YouTube’s servers will be established and information will be transferred to the YouTube server regarding which of our pages you have visited.

    YouTube may also place a range of cookies on your device. Using these cookies, YouTube can obtain information about visitors to our website. This information is used, among other things, to generate video statistics, improve the user-friendliness of the site and prevent attempts to commit fraud. These cookies will stay on your device until you delete them.

    If you are logged into your YouTube account when you visit our site, YouTube will be able to directly associate your browsing patterns with your personal profile. You can prevent this by logging out of your YouTube account.

    The use of YouTube is based on our interest in presenting our online content in an appealing manner. This is a legitimate interest pursuant to Art. 6(1)(f) GDPR.

    For more information on how YouTube handles user data, please consult the Privacy Policy of YouTube’s operator Google at: https://policies.google.com/privacy?hl=en.

    Google Web Fonts

    To ensure that fonts used on this website are uniform, the website uses Web Fonts provided by Google. When you access a page on our website, your browser will load the required web fonts to your browser cache in order to correctly display text and fonts.

    To do so, the browser you use will have to establish a connection with Google’s servers. As a result, Google will learn that your IP address was used to access our website. The use of Google Web Fonts is based on our interest in presenting our online content in a uniform and appealing way. This is a legitimate interest pursuant to Art. 6(1)(f) GDPR.

    If your browser does not support Web Fonts, a standard font installed on your computer will be used.

    For more information on Google Web Fonts, please consult these FAQs: https://developers.google.com/fonts/faq, and Google’s Privacy Policy: https://policies.google.com/privacy?hl=en.

    Google Maps

    This website uses the mapping service Google Maps via an API. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

    To enable the use of Google Maps features, your IP address must be stored. As a rule, this information is transferred to and stored on one of Google’s servers in the United States. The operator of this website has no control over this data transfer.

    We use Google Maps to present our online content in an appealing manner and to help users to find the locations named on our website. This is a legitimate interest pursuant to Art. 6(1)(f) GDPR.

    For more information on the handling of user data, please consult Google’s Privacy Policy: https://policies.google.com/privacy?hl=en.

    Google reCAPTCHA

    We use “Google reCAPTCHA” (hereinafter referred to as “reCAPTCHA”) on our websites. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).

    The purpose of reCAPTCHA is to determine whether data entered on our websites (e.g. into a contact form) is being provided by a human user or by an automated program. To determine this, reCAPTCHA analyses the behaviour of website users based on a variety of parameters. This analysis begins automatically as soon as a user accesses the site. To perform the analysis, reCAPTCHA evaluates a variety of data (e.g. IP address, duration of website visit or cursor movements made by the user). The data collected during this analysis is forwarded to Google.

    reCAPTCHA analyses run entirely in the background. Website visitors are not alerted that an analysis is underway.

    The data is processed on the basis of Art. 6(1)(f) GDPR. It is in the website operator’s legitimate interest of protecting the operator’s web content against misuse by automated industrial espionage systems and against spam.

    For more information about Google reCAPTCHA, please see here: https://www.google.com/recaptcha/intro/android.html. For Google’s Privacy Policy, please see here: https://policies.google.com/privacy?hl=en