We take the protection of your data very seriously.
With this data protection declaration we inform you which information we collect and how and for what purposes it is processed. Furthermore, we will inform you about your rights.
NOTE: If you send us personal data by e-mail, i.e. away from our website, we cannot guarantee secure transmission and therefore no protection of your data. We therefore recommend that personal data never be transmitted unencrypted by e-mail. For this reason, you are also free to provide us with personal data by alternative means, such as telephone.
We have implemented numerous technical and organisational measures to ensure the most complete possible protection of the personal data processed via this website. Nevertheless, Internet-based data transmissions can in principle have security gaps, so that absolute protection cannot be guaranteed.
We always treat your personal data in accordance with the basic data protection regulation (EU) 2016/679.
If you have any questions or other concerns, you can contact our responsible office at any time, unless we have a data protection officer. In this case, please contact them directly.
Responsible authority is: top.legal GmbH (hereinafter: "top.legal"), Grillparzerstrasse 37a, 81675 Munich, represented by the managing director Mr. Alexander Baron, e-mail: email@example.com
The legal basis as legitimation for the use of personal data follows from Article 6 (1) of the DSGV. It follows from this that the processing of personal data is lawful if:
(a) the data subject has given his/her consent,
(b) for the performance of a contract or for the implementation of pre-contractual measures; or,
(c) to fulfil a legal obligation; or,
(d) to protect vital interests; or,
(e) to perform a task carried out in the public interest or in the exercise of official authority; or,
(f) is necessary as a result of a balancing of interests
The legal basis according to article 6 paragraph 1 f) DSGVO is therefore to enable the error-free and secure operation of our website by recording web server log files.
NOTE: The web server is the computer on which the website is stored. Logfiles are text files that automatically log your Internet history and store it on your web server.
Our website collects and stores a number of general data and information with each call. This general data and information is stored on our web server in web server log files.
They can be captured:
(1) browser types and versions used,
(2) the operating system used by the accessing system,
(3) the website from which an accessing system accesses our website (so-called referrer),
(4) the subwebsites which are accessed via an accessing system on our website,
(5) the date and time of access to the website,
(6) an Internet Protocol (IP) address,
(7) the Internet service provider of the accessing system; and
(8) other similar data and information used to avert dangers in the event of attacks on our information technology systems.
When using this general data and information, we do not draw any conclusions about the person concerned. The information is needed much more to
(1) to deliver the contents of our website correctly,
(2) to optimise the content of our website and the advertising for it,
(3) to ensure the long-term operability of our information technology systems and the technology of our website, and
(4) to provide law enforcement authorities with the information necessary for law enforcement in the event of a cyber attack
This anonymously collected data and information is therefore evaluated by us both statistically and with the aim of increasing data protection and data security in our company in order to ultimately ensure an optimum level of protection for the personal data processed by us. The anonymous data of the server log files are stored separately from your personal data.
We use the following terms, among others, in our data protection declaration:
Persons concerned means any identified or identifiable natural person whose personal data are processed by the controller.
Personal data is all information that allows conclusions to be drawn about the personal or factual circumstances of a specific or identifiable natural person (hereinafter referred to as the "data subject"). Information about personal or factual circumstances are for example: Name, date of birth, address, telephone number, e-mail address. The person can be identified if he or she can be identified directly or indirectly (e.g. via identification numbers or location data) on the basis of the information.
Processing" means any operation or set of operations which is carried out with or without the aid of automated processes and which relates to personal data, such as collection, recording, organisation, sorting, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or association, qualification, erasure or destruction.
Profiling is any automated processing of personal data consisting of the use of such personal data to evaluate certain personal aspects relating to a natural person, in particular to analyse or predict aspects relating to the work performance, economic situation, health, personal preferences, interests, reliability, conduct, whereabouts or movement of that natural person.
We process and store your personal data only for the period of time necessary to achieve the storage purpose or as provided by the European Directive and Regulation Body or another legislator in laws or regulations to which the data controller is subject.
If the storage purpose or the consent given for processing is no longer applicable or if a storage period prescribed by the European Directive and Regulation Body or another competent legislator expires, the personal data shall be blocked or deleted routinely and in accordance with the statutory provisions.
You have the right to revoke your consent at any time. For this purpose, an informal notification by e-mail to the data protection officer or to the responsible office of our company (see § 2) is sufficient. The legality of the data processing carried out until the revocation remains unaffected by the revocation.
You have the right to request confirmation from us as to whether personal data concerning you will be processed. If you wish to exercise this right of confirmation, you can contact our data protection officer or another employee of the data controller at any time.
You have the right to receive free information about your stored personal data, their origin and recipient and the purpose of the data processing and a copy of this information, as well as a right to correction, blocking or deletion of your data.
They shall also have the right to limit the processing and to object to it.
You also have the right to have your data, which we process automatically, handed over to yourself or to a third party in a common, machine-readable format. To assert your rights, please contact us using the contact details provided above for the responsible office.
They also have the right to appeal to the competent data protection supervisory authority. The Bavarian State Office for Data Protection Supervision (https://www.lda.bayern.de/) is the competent supervisory authority for data protection issues.
They have the right to object at any time to the processing of personal data concerning them on grounds arising from their particular situation. This also applies to profiling based on these provisions.
In the event of objection, we will no longer process the personal data unless we can prove compelling reasons for the processing worthy of protection which outweigh the interests, rights and freedoms of your person, or the processing serves the assertion, exercise or defence of legal claims.
To exercise your right to object, you can contact our data protection officer or another employee directly. You are also free to exercise your right of objection in connection with the use of Information Society services, notwithstanding Directive 2002/58/EC, by means of automated procedures using technical specifications.
They shall have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects or is similarly substantially prejudicial to them, provided that the decision.
(1) is not necessary for the conclusion or performance of a contract between the data subject and the data controller, or
(2) is authorised by Union or national legislation to which the data controller is subject and contains appropriate measures to safeguard the rights and freedoms and the legitimate interests of the data subject, or
(3) with the express agreement of the data subject.
Is the decision
(1) necessary for the conclusion or performance of a contract between the data subject and the person responsible; or
(2) where it is done with the express agreement of the data subject, we shall take appropriate measures to safeguard the rights and freedoms and the legitimate interests of the data subject, including at least the right to have the data subject intervene, to state our views and to challenge the decision.
If the data subject wishes to exercise rights relating to automated decisions, he or she may at any time contact our data protection officer or another employee of the data controller for this purpose.
You have the right to receive the data concerning you that you have provided to us in a structured, common and machine-readable format.
Furthermore, when exercising your right to data transferability pursuant to Art. 20 (1) DS-GVO, you have the right to obtain that the personal data be transferred directly from one person responsible to another person responsible, insofar as this is technically feasible and insofar as this does not impair the rights and freedoms of other persons.
On the one hand, we use so-called session cookies, which are only stored for the duration of the respective visit to our website. A randomly generated unique identification number, a so-called session ID, is stored in a session cookie. Session cookies are automatically deleted after you leave our website.
We also use temporary cookies that are stored by us on your end device for a certain period of time (so-called first party cookies). If you visit our site again, it is automatically recognised that you have already been with us and which entries and settings you have made so that you do not have to enter them again.
You have the option of preventing cookies from being set by making the appropriate settings in your browser. If you deactivate the setting of cookies in the Internet browser used, it may not be possible to use all the functions of our website to their full extent.
9.1 Required Cookies
These are cookies that are needed so that you can navigate our websites and use the basic functions of the website, such as the allocation of anonymous session IDs to bundle several related queries on a server.
9.2 Performance Cookies
Performance cookies are used to improve the user-friendliness of a website and thus the user experience. Performance cookies collect information about how our websites are used, such as the type of Internet browser and operating system used, the domain name of the website from which you came, the number of visits, average time spent on the site, and the pages viewed. These cookies do not store any information that allows personal identification of the user. The information collected with the help of cookies is aggregated and therefore anonymous.
9.3 Analysis Cookies
We use analysis cookies to improve the user-friendliness of our website. Analysis cookies enable us to determine how our website is used and, for example, which preferences and search terms are used to access it.
9.4 Advertising cookies
We use advertising cookies to provide you with more targeted, relevant content. They are also used to measure and control the effectiveness of advertising campaigns. Marketing cookies record whether a website is visited and what content is used. This information may be shared with third parties, such as advertisers, and is often linked to third party site functionality (third party cookies).
9.5 Social media cookies
Social media cookies are set by social networks. For example, you can register on our site using the login details of a social network.
On our website you have the possibility to register. The personal data entered are collected and stored exclusively for internal use and for our own purposes. The data controller may arrange for the data to be passed on to one or more contract processors, for example a parcel service provider, who also uses the personal data exclusively for internal purposes attributable to the data controller.
By registering on the website, the IP address assigned to the person concerned by the Internet service provider (ISP), the date and time of registration are also saved. This data is stored in order to prevent misuse of our services and, if necessary, to enable us to investigate criminal offences that have been committed. In this respect, the storage of this data is necessary for security purposes. These data will not be passed on to third parties unless there is a legal obligation to do so or the data is used for criminal prosecution.
The registration with voluntary indication of personal data serves us to offer you contents or services which, due to the nature of the matter, can only be offered to registered users. Registered persons have the right to modify the personal data provided during registration at any time or to have it deleted completely from the database of the data controller.
You can obtain information about your personal data at any time from the responsible office. Furthermore, the data controller corrects or deletes your personal data at the request or notice of the person concerned, unless there are legal obligations to retain it. A data protection officer named in this data protection declaration and the entire staff of the data controller are available to the data subject as contact persons in this context.
Various social media buttons are integrated on our website.
As soon as you click on a social media button on our website, you will automatically be redirected to the social media network page. The respective provider of the site then receives information directly from your browser that you have accessed the website, even if you do not have a profile with the respective social media network or have a profile, but are not logged in at the moment. This information is collected and assigned to your account on the respective social network.
For information on the exact scope of data collection and processing by the providers of the respective social media network, the provider identification, a contact option and your rights and setting options regarding data protection, we refer to the respective data protection information of the providers of the social media networks listed here. This also applies to the case of information questions and the assertion of your rights, since only the respective providers have access to the data of users. If you have any difficulties, please do not hesitate to contact us first.
We use the following social media:
Service Provider: Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA; privacy statement: https: //twitter.com/de/privacy, (settings) https://twitter.com/personalization; Privacy Shield (Ensuring data protection level when processing data in the U.S.): https://www.privacyshield.gov/participant?id=a2zt0000000TORzAAO&status=Activ
Service Provider: Instagram Inc., 1601 Willow Road, Menlo Park, CA, 94025, USA; privacy statement: http://instagram.com/about/legal/privacy.
Service Provider: LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland; privacy statement: https://www.linkedin.com/legal/privacy-policy; Privacy Shield (Ensuring data protection level when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt0000000L0UZAA0&status=Active; Opt-Out: https: //www.linkedin.com/psettings/guest-controls/retargeting-opt-out.
Service Provider: XING AG, Dammtorstraße 29-32, 20354 Hamburg, Germany; Website: https://www.xing.de; Privacy statement: https: //privacy.xing.com/de/datenschutzerklaerung
We use web analysis tools on our website.
Within the framework of web analysis, data on the behaviour of visitors (such as age or gender) is collected, which is then calculated in the form of key performance indicators (KPIs). These KPIs are used to analyse visitor information (such as interests or demographic trends) in order to filter out weak points on the website and improve its efficiency in the long term. The web analysis thus serves above all to monitor the long-term success of a website.
In most cases, cookies or similar procedures are used for the collection of such information. The data collected includes, for example, the browser used, the duration of the visit or the content viewed. Your IP address also belongs to the collected and stored data. However, this is shortened for your protection and thus pseudonomized. This means that not the actual identity of us or the respective web analysis provider can be traced, but only the pseudonomized data.
You can prevent the setting of cookies by our website, as already described above, at any time by means of an appropriate setting of the Internet browser used and thus permanently object to the setting of cookies. Such a setting of the Internet browser used would also prevent a cookie from being placed on your information technology system. In addition, cookies that have already been set can be deleted at any time via an Internet browser or other software programs.
We use the following web analytics tools:
Service Provider Google Analytics: Google Inc., 1600 Amphitheatre Pkwy, Mountain View, CA 94043-1351, USA; privacy statement: https://www.google.de/intl/de/policies/privacy/ or http://www.google.com/analytics/terms/de.html
Service Provider Leadforensics: 3000 Lakeside, North Harbour, Portsmouth PO6 3EN; https://www.leadforensics.com/terms-of-service/
We store and process personal data for the purpose of online marketing. This data is mainly used to create user profiles, which can be used for interest-specific advertising or other content: name, age, gender, length of visit to a website, online networks used, times of use and other content, etc.. Cookies or similar methods are usually used to collect such information. The data collected includes, for example, the browser used, the duration of the visit or the content viewed. Your IP address also belongs to the collected and stored data. However, this is shortened for your protection and thus pseudonomized. This means that not the actual identity of us, or the respective web analysis provider, can be traced, but only the pseudonomized data.
We use the following online marketing tools:
Service provider Double Click: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland, shell company: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; privacy statement: https: //policies.google.com/privacy; Privacy Shield (Ensuring data protection level when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active;(Opt-Out: Opt-Out-Plugin: http: //tools.google.com/dlpage/gaoptout?hl=de, settings for the display of advertisements: https: //adssettings.google.com/authenticated.
Service provider Googe Ad Words: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland, shell company: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; privacy statement: https: //policies.google.com/privacy; Privacy Shield (Ensuring data protection level when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active; Opt-Out: Opt-Out-Plugin: http: //tools.google.com/dlpage/gaoptout?hl=de, Settings for the display of advertising inserts: https: //adssettings.google.com/authenticated.
Service provider Google Remarketing Tags: Google Inc.,1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; privacy statement: http://www.google.com/policies/
Service provider Google AdSense: Alphabet Inc., 1600 Amphitheatre Pkwy, Mountain View, CA 94043-1351, USA; privacy statement: http: //www.google.com/policies/
For our online offer we use services of one or more web hosting providers. Web hosting provides us, for example, with storage space, computing capacity or security services, which enables us to provide our website in a secure and efficient manner. Within the framework of web hosting, all data of the users who visit our website is forwarded to the web hosting provider's server. This includes, among other things: The address and name of the web pages and files accessed, the date and time of access and the amount of data transferred are also used to send e-mails.
We use the following web hosting providers:
Service provider AWS (Amazon Web Service): Amazon Web Services, Inc. P.O. Box 81226 Seattle, WA 98. Box 81226 Seattle, WA 98108-1226; Website: http://aws.amazon.com; privacy statement: https://aws.amazon.com/de/compliance/data-privacy/
Service provider Webflow: Webflow, Inc. 208 Utah, Suite 210, San Francisco, CA 94103, USA; Website: https://webflow.com; privacy statement: https: //webflow.com/legal/eu-privacy-policy; Privacy Shield (Ensuring data protection level when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt0000000TT9jAAG&status=Active.
We offer effective and secure third-party payment options as part of our service and product.
If you select either "Purchase on account" or "Installment purchase" as payment option during the ordering process, your data will be automatically transmitted to the respective payment service providers. By selecting one of these payment options, you consent to the transfer of personal data required for the processing of the invoice or instalment purchase or for identity and credit checks.
The personal data transmitted is usually first name, surname, address, date of birth, gender, email address, IP address, telephone number, mobile phone number and other data necessary for processing an invoice or instalment purchase. Personal data related to the respective order are also necessary for the processing of the corresponding contract.
The transmission of data is intended in particular for identity verification, payment administration and fraud prevention.
Payment transactions are subject to the terms and conditions and data protection notices of the respective payment service providers, which can be accessed within the respective websites or transaction applications. We also refer to the terms and conditions of the individual payment providers in so far as they wish to assert their rights. If you have any problems, please do not hesitate to contact us first.
We use the following external payment providers:
Service provider Stripe: Stripe, Inc., 510 Townsend Street, San Francisco, CA 94103, USA; privacy statement: https://stripe.com/de/privacy
Insofar as we have your consent or legal permission, we will send you our newsletter or other electronic notifications, with content about us and our offers.
We inform our customers and business partners at regular intervals by means of a newsletter about offers of the company. Our company's newsletter can only be received by the person concerned if
(1) the data subject has a valid e-mail address; and
(2) the person concerned registers to receive the newsletter
For legal reasons, a confirmation e-mail will be sent to the e-mail address you entered for the first time for the newsletter. The purpose of this confirmation e-mail is to check whether the owner of the e-mail address as the person concerned has authorised the receipt of the newsletter. The personal data collected during registration for the newsletter will be used exclusively to send our newsletter. The personal data collected as part of the newsletter service will not be passed on to third parties. You can cancel your subscription to our newsletter at any time. The consent to the storage of personal data that you have given us for the newsletter can be revoked at any time. For the purpose of revoking your consent, you will find a corresponding link in every newsletter. You also have the option of contacting us at any time in any other way in order to unsubscribe from the newsletter.
We use the following newsletter tool provider:
Service provider Hubspot: HubSpot, Inc., 25 First Street, 2nd Floor, Cambridge, MA 02141 USA, Attn: Privacy; privacy statement: https: //legal.hubspot.com/de/privacy-policy
We offer you the opportunity to apply to us via our website.
The application procedure requires you and us to provide the data required for your application, which will then be automatically processed by us. If an employment contract is concluded as a result of your application, your data will be stored by us in your personnel file for organisational and administrative purposes. This is done in compliance with the statutory provisions.
In case of rejection of an application, your data will be automatically deleted by us two months after publication. A deletion does not take place, if the data require a longer storage of up to four months due to legal regulations or the connection of a judicial procedure. We use the following Webhosting provider:
We use the following provider for applications:
Service Provider Smartrecruiters: SmartRecruiters Inc., 225 Bush Street , Suite #300 , San Francisco CA 94104; privacy statement: https://www.smartrecruiters.com/legal/general-privacy-policy/
This data protection provision corresponds to the currently applicable statutory provisions on data protection. We reserve the right to adapt and change these if necessary.