Privacy Policy
1. Privacy at a Glance
General Information
The following information provides a simple overview of what happens to your personal data when you visit this website. Personal data is any data with which you can be personally identified. Detailed information on the subject of data protection can be found in our privacy policy listed below this text.
Data Collection on This Website
Who is responsible for data collection on this website?
Data processing on this website is carried out by the website operator. You can find the operator’s contact details in the section “Information on the Controller” in this privacy policy.
How do we collect your data?
On the one hand, your data is collected when you provide it to us. This may, for example, be data that you enter into a contact form. Other data is collected automatically or with your consent when you visit the website, primarily through our IT systems. This is mainly technical data (e.g. internet browser, operating system, or time of the page view).
What do we use your data for?
Part of the data is collected to ensure that the website is provided without errors. Other data may be used to analyse your user behaviour.
What rights do you have regarding your data?
You have the right to receive information about the origin, recipients, and purpose of your stored personal data free of charge at any time. You also have the right to request the correction or deletion of this data. If you have given your consent, you can revoke this consent at any time with effect for the future. You also have the right, under certain circumstances, to request the restriction of the processing of your personal data. Furthermore, you have the right to lodge a complaint with the competent supervisory authority.
2. Hosting
We host the content of our website with the following provider:
System coreIT GmbH
Weinheimer Str. 62-64
68309 Mannheim, Germany
Server location: Frankfurt am Main and Mannheim, Germany
When you visit our website, the hosting provider collects various log files including your IP addresses. Details on this can be found below under “Server Log Files”. Hosting is carried out for the purpose of fulfilling our (pre-)contractual obligations towards our prospective and existing customers (Art. 6(1)(b) GDPR) and in the interest of a secure, fast, and efficient provision of our online offering by a professional provider (Art. 6(1)(f) GDPR).
Data Processing Agreement
We have concluded a data processing agreement (DPA) within the meaning of Art. 28 GDPR with the above-mentioned provider. This is a contract required under data protection law, which ensures that the provider processes the personal data of our website visitors only in accordance with our instructions and in compliance with the GDPR.
3. General Information and Mandatory Information
Data Protection
The operators of these pages take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this privacy policy. We would like to point out that data transmission over the internet (e.g. when communicating by email) can have security gaps. Complete protection of data against access by third parties is not possible.
Information on the Controller
The controller responsible for data processing on this website is:
Hinderthür SystemSolutions GmbH
Tölzerstraße 1
82031 Grünwald, Germany
Represented by: Felix Hinderthür, Lukas Hinderthür
Phone: +49 621 6719120
Email: info@blitzschutz-hinderthuer.de
The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data.
Storage Period
Unless a more specific storage period has been stated within this privacy policy, your personal data will remain with us until the purpose for the data processing no longer applies. If you assert a justified request for deletion or revoke your consent to data processing, your data will be deleted unless we have other legally permissible reasons for storing it (e.g. retention periods under tax or commercial law); in the latter case, the data will be deleted once these reasons no longer apply.
General Information on the Legal Basis for Data Processing
If you have consented to data processing, we process your personal data on the basis of Art. 6(1)(a) GDPR or Art. 9(2)(a) GDPR. In the case of explicit consent to the transfer of personal data to third countries, data processing is also carried out on the basis of Art. 49(1)(a) GDPR. If you have consented to the storage of cookies or to access to information on your end device, data processing is additionally carried out on the basis of Section 25(1) TDDDG (German Telecommunications Digital Services Data Protection Act). Consent can be revoked at any time.
Recipients of Personal Data
In the course of our business activities, we work with various external parties. In some cases, this also requires the transfer of personal data to these external parties. We only pass on personal data to external parties if this is necessary for the performance of a contract, if we are legally obliged to do so, if we have a legitimate interest in the transfer, or if another legal basis permits the transfer of data. When using processors, we only pass on the personal data of our customers on the basis of a valid data processing agreement.
Revocation of Your Consent to Data Processing
Many data processing operations are only possible with your express consent. You can revoke consent you have already given at any time. The legality of the data processing carried out prior to the revocation remains unaffected by the revocation.
Right to Object to Data Collection in Special Cases (Art. 21 GDPR)
If data processing is carried out on the basis of Art. 6(1)(e) or (f) GDPR, you have the right at any time to object, on grounds relating to your particular situation, to the processing of your personal data; this also applies to profiling based on these provisions. If your personal data is processed for the purpose of direct marketing, you have the right to object at any time to the processing of personal data concerning you for the purpose of such advertising.
Right to Lodge a Complaint with the Competent Supervisory Authority
In the event of violations of the GDPR, data subjects have the right to lodge a complaint with a supervisory authority, in particular in the member state of their habitual residence, their place of work, or the place of the alleged violation. This right to complain exists without prejudice to any other administrative or judicial remedy.
Right to Data Portability
You have the right to have data that we process automatically on the basis of your consent or in fulfilment of a contract handed over to you or to a third party in a common, machine-readable format. If you request the direct transfer of the data to another controller, this will only be done insofar as it is technically feasible.
Information, Correction, and Deletion
Within the framework of the applicable statutory provisions, you have the right to free information about your stored personal data, its origin and recipients, and the purpose of the data processing at any time, and, if applicable, a right to correction or deletion of this data. You can contact us at any time regarding this and other questions on the subject of personal data.
Right to Restriction of Processing
You have the right to request the restriction of the processing of your personal data. You can contact us at any time to do so. The right to restriction of processing exists in the cases specified in Art. 18 GDPR.
SSL/TLS Encryption
For security reasons and to protect the transmission of confidential content, this site uses SSL or TLS encryption. You can recognise an encrypted connection by the fact that the address line of the browser changes from “http://” to “https://” and by the lock symbol in your browser line. If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
4. Data Collection on This Website
Cookies
Our website uses so-called “cookies” in some cases. Cookies are small data packets and do not cause any damage to your end device. They are stored on your end device either temporarily for the duration of a session (session cookies) or permanently (permanent cookies). Cookies may originate from us (first-party cookies) or from third-party companies (third-party cookies). Where other cookies (e.g. for analysing your user behaviour) are stored, these are dealt with separately in this privacy policy and are only set on the basis of your consent.
Consent with Borlabs Cookie
Our website uses the consent technology of Borlabs Cookie to obtain your consent to the storage of certain cookies in your browser or to the use of certain technologies, and to document this in compliance with data protection law. The provider of this technology is Borlabs GmbH, Rübenkamp 32, 22305 Hamburg, Germany (hereinafter “Borlabs”). When you enter our website, a Borlabs cookie is stored in your browser in which the consents you have given or the revocation of these consents are stored. This data is not passed on to the provider of Borlabs Cookie. The collected data is stored until you ask us to delete it or you delete the Borlabs cookie yourself, or until the purpose for storing the data no longer applies. The Borlabs cookies are stored on the basis of Section 25(1) TDDDG. Insofar as consent includes the storage of cookies, the legal basis for their processing is additionally Art. 6(1)(c) GDPR. You can view and adjust your current consent settings at any time using the following button:
Server Log Files
The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are: browser type and browser version, operating system used, referrer URL, host name of the accessing computer, time of the server request, and the IP address. This data is not merged with other data sources. This data is collected on the basis of Art. 6(1)(f) GDPR. The website operator has a legitimate interest in the technically error-free presentation and optimisation of its website – for this purpose, the server log files must be collected.
Contact Form
If you send us enquiries via the contact form, your details from the enquiry form, including the contact details you provide there (name and email address), will be stored by us for the purpose of processing the enquiry and in case of follow-up questions. We do not pass on this data without your consent. This data is processed on the basis of Art. 6(1)(b) GDPR if your enquiry is related to the performance of a contract or is necessary for the implementation of pre-contractual measures. In all other cases, processing is based on our legitimate interest in the effective handling of enquiries addressed to us (Art. 6(1)(f) GDPR) or on your consent (Art. 6(1)(a) GDPR) if this was requested. The data you enter in the contact form will remain with us until you ask us to delete it, revoke your consent to its storage, or the purpose for storing the data no longer applies. Mandatory statutory provisions – in particular retention periods – remain unaffected.
Enquiry by Email or Telephone
If you contact us by email or telephone, your enquiry, including all resulting personal data (name, enquiry), will be stored and processed by us for the purpose of handling your request. We do not pass on this data without your consent. This data is processed on the basis of Art. 6(1)(b) GDPR if your enquiry is related to the performance of a contract or is necessary for the implementation of pre-contractual measures. In all other cases, processing is based on our legitimate interest in the effective handling of enquiries addressed to us (Art. 6(1)(f) GDPR) or on your consent (Art. 6(1)(a) GDPR).
5. Analytics Tools and Advertising
Google Analytics 4 (GA4)
This website uses Google Analytics 4 (GA4), a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Google Analytics enables the website operator to analyse the behaviour of website visitors. In doing so, the website operator receives various usage data, such as page views, time spent, operating systems used, and the origin of the user. In Google Analytics 4, IP anonymisation is activated by default: IP addresses are only processed by Google in a shortened form, which rules out a direct reference to a person. Google Analytics 4 uses technologies that enable the recognition of the user for the purpose of analysing user behaviour (e.g. cookies or device fingerprinting). The information collected by Google about the use of this website is generally transferred to a Google server and stored there.
This service is used on the basis of your consent in accordance with Art. 6(1)(a) GDPR and Section 25(1) TDDDG. Consent can be revoked at any time. The transfer of data to the USA is based on the EU-US Data Privacy Framework (DPF) and – where applicable – on the standard contractual clauses of the EU Commission.
Data Processing Agreement: We have concluded a data processing agreement with Google and fully implement the strict requirements of the German data protection authorities when using Google Analytics. Further information on how Google Analytics handles user data can be found in Google’s privacy policy: https://policies.google.com/privacy.
6. Plugins and Tools
YouTube
This website embeds videos from the website YouTube. The operator of the pages is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. YouTube content is only embedded after your consent via our consent tool (Borlabs Cookie); beforehand, no content from YouTube is loaded due to a content blocker. If you visit one of our pages with embedded YouTube content and have consented to the embedding, a connection to the YouTube servers is established. The YouTube server is thereby informed which of our pages you have visited. YouTube can directly assign your surfing behaviour to your personal profile if you are logged into your YouTube account. YouTube is used on the basis of your consent in accordance with Art. 6(1)(a) GDPR and Section 25(1) TDDDG. Consent can be revoked at any time. The transfer of data to the USA is based on the EU-US Data Privacy Framework (DPF). Further information on data protection at YouTube can be found in their privacy policy at: https://policies.google.com/privacy.
Locally Hosted Fonts
This site uses locally installed fonts to display fonts consistently. No connection to third-party servers (such as Google Fonts) takes place; your IP address is not transmitted to third parties when the fonts are accessed.
Security Plugins / Protection Against Attacks
To secure our website and defend against attacks, we use security software (among other things, to detect unauthorised access and login attempts). In this context, technical data such as IP addresses may be processed temporarily. The legal basis is our legitimate interest in the security and integrity of our website (Art. 6(1)(f) GDPR).