Data protection

Privacy Policy — As of: April 14, 2024

Responsible party

Eve Möller, Achterndiek 10, 22869 Schenefeld

Email address: eve.hh.moeller(at)gmail.com

Imprint: /impressum

Overview of processing operations

The following overview summarizes the types of data processed and the purposes of their processing, and refers to the categories of data subjects.

Types of data processed: Contact details. Content data. Usage data. Meta, communication and process data.

Categories of data subjects: Communication partners. Users.

Purposes of processing: Contact requests and communication. Security measures. Management and responding to inquiries. Feedback. Marketing. Provision of our online offering and user-friendliness. Information technology infrastructure.

Relevant legal bases

Relevant legal bases under the GDPR: In the following, you will find an overview of the legal bases of the GDPR on which we process personal data. Please note that in addition to the provisions of the GDPR, national data protection regulations in your or our country of residence or domicile may apply. Furthermore, should more specific legal bases be applicable in individual cases, we will inform you of these in the privacy policy.

Performance of a contract and pre-contractual inquiries (Art. 6 para. 1 sentence 1 lit. b) GDPR) — Processing is necessary for the performance of a contract to which the data subject is party or in order to take steps at the request of the data subject prior to entering into a contract.

Legitimate interests (Art. 6 para. 1 sentence 1 lit. f) GDPR) — the processing is necessary to protect the legitimate interests of the controller or a third party, provided that the interests, fundamental rights, and freedoms of the data subject, which require the protection of personal data, do not override.

National data protection regulations in Germany: In addition to the data protection regulations of the GDPR, national regulations on data protection apply in Germany. This includes, in particular, the Federal Data Protection Act (Bundesdatenschutzgesetz – BDSG) which protects against the misuse of personal data in data processing. The BDSG contains, in particular, special regulations on the right to information, the right to erasure, the right to object, the processing of special categories of personal data, processing for other purposes, and transmission, as well as automated individual decision-making, including profiling. Furthermore, the state data protection acts of the individual federal states may also apply.

Note on the applicability of the GDPR and the Swiss DPA: This data protection notice serves to provide information both under the Swiss Federal Act on Data Protection (Swiss DPA) and the General Data Protection Regulation (GDPR). For this reason, please note that due to its broader spatial application and clarity, the terminology of the GDPR is used.

Security measures

In accordance with legal requirements, taking into account the state of the art, the costs of implementation and the nature, scope, context and purposes of processing as well as the varying likelihood and severity of the risk to the rights and freedoms of natural persons, we implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk.

The measures include, in particular, ensuring the confidentiality, integrity, and availability of data by controlling physical and electronic access to the data as well as access, entry, disclosure, ensuring availability, and separation concerning it.

Securing online connections through TLS/SSL encryption technology (HTTPS): To protect user data transmitted via our online services from unauthorized access, we rely on TLS/SSL encryption technology.

Rights of the data subjects

As a data subject, you have various rights under the GDPR, which arise in particular from Articles 15 to 21 of the GDPR:

Right to object: You have the right, for reasons arising from your particular situation, to object at any time to the processing of personal data concerning you which is carried out on the basis of Art. 6 para. 1 lit. e or f GDPR.

Right of withdrawal of consent: You have the right to withdraw your consent at any time.

Right of access: You have the right to obtain confirmation as to whether or not data concerning you is being processed, and to receive access to this data as well as further information and a copy of the data in accordance with statutory provisions.

Right to rectification: In accordance with statutory provisions, you have the right to request the completion of data concerning you or the rectification of incorrect data concerning you.

Right to erasure and restriction of processing: You have the right, in accordance with legal requirements, to demand that data concerning you be deleted without delay, or alternatively, to demand a restriction of the processing of the data in accordance with legal requirements.

Right to data portability: You have the right, in accordance with legal requirements, to receive the data concerning you that you have provided to us, in a structured, commonly used and machine-readable format, or to request its transmission to another controller.

Complaint with a supervisory authority: Without prejudice to any other administrative or judicial remedy, you have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work, or place of the alleged infringement if you consider that the processing of personal data relating to you infringes the GDPR.

Provision of the online offer and web hosting

We process users' data in order to provide them with our online services. For this purpose, we process the user's IP address, which is necessary to transmit the content and functions of our online services to the user's browser or terminal device.

Collection of access data and log files: Access to our online offer is logged in the form of so-called "server log files". Log file information is stored for a maximum of 30 days and is then deleted or anonymized.

Wix: Hosting and software for creating, providing, and operating websites, blogs, and other online offers; Service provider: Wix.com Ltd., Nemal St. 40, 6350671 Tel Aviv, Israel; Legal basis: Legitimate interests (Art. 6 para. 1 sentence 1 lit. f) GDPR); Website: https://de.wix.com/; Privacy Policy: https://de.wix.com/about/privacy.

Use of cookies

Cookies are small text files or other storage devices that store information on end devices and read from them. We use cookies in accordance with legal regulations. Therefore, we obtain prior consent from users, unless this is not required by law.

Temporary cookies (session cookies) are deleted at the latest after a user has left an online service. Permanent cookies remain stored even after the device is closed; the storage period can be up to two years.

Contact and Inquiry Management

When contacting us (e.g. by post, contact form, email, telephone or via social media) as well as within the framework of existing user and business relationships, the information provided by the inquiring persons will be processed to the extent necessary to respond to the contact inquiries and any requested measures.

Presences in social networks (Social Media)

We maintain online presences within social networks and process user data in this context in order to communicate with active users there or to offer information about us.

Instagram: Social network; Service provider: Meta Platforms Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland; Legal basis: Legitimate interests (Art. 6 para. 1 sentence 1 lit. f) GDPR); Website: https://www.instagram.com; Privacy policy: https://instagram.com/about/legal/privacy.

Plug-ins and embedded functions as well as content

We integrate functional and content elements into our online services that are sourced from the servers of their respective providers. This integration always requires that the third-party providers of this content process the user's IP address.

Google Fonts (obtained from Google servers): obtaining fonts for the purpose of technically secure, maintenance-free, and efficient use of fonts; Service provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland; Legal basis: Legitimate interests (Art. 6 para. 1 sentence 1 lit. f) GDPR); Privacy policy: https://policies.google.com/privacy.

Amendment and Update of the Privacy Policy

We ask you to inform yourself regularly about the content of our privacy policy. We will adjust the privacy policy as soon as changes in the data processing carried out by us make this necessary.

Definitions of terms

Content data: Information generated during the creation, editing, and publication of all types of content.

Contact details: Essential information that enables communication with individuals or organizations.

Usage Data: Information tracking how users interact with digital products, services, or platforms.

Personal data: Any information relating to an identified or identifiable natural person.

Controller: The natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data.

Processing: Any operation or set of operations performed on personal data, whether or not by automated means.

Created with the free Privacy Policy Generator by Dr. Thomas Schwenke

Create a free website with Framer, the website builder loved by startups, designers and agencies.