Privacy policy
Privacy policy
- Data protection at a glance
General information
The following information provides a simple overview of what happens to your personal data when you visit our website. Personal data is any data that can be used to identify you personally. For detailed information on the subject of data protection, please refer to our data protection declaration listed below this text.
Data collection on our website
Who is responsible for data collection on this website?
Data processing on this website is carried out by the website operator. You can find the operator’s contact details in the legal notice of this website.
How do we collect your data?
On the one hand, your data is collected when you provide it to us. This may, for example, be data that you enter in a contact form.
Other data is collected automatically by our IT systems when you visit the website. This is primarily technical data (e.g. internet browser, operating system or time of page view). This data is collected automatically as soon as you enter our website.
What do we use your data for?
Some of the data is collected to ensure that the website is provided without errors. Other data may be used to analyse your user behaviour.
What rights do you have regarding your data?
You have the right to receive information about the origin, recipient and purpose of your stored personal data free of charge at any time. You also have the right to request the correction, blocking or deletion of this data. You can contact us at any time at the address given in the legal notice if you have any further questions on the subject of data protection. You also have the right to lodge a complaint with the competent supervisory authority.
Analysis tools and tools from third-party providers
When you visit our website, your surfing behaviour may be statistically evaluated. This is primarily done using so-called analysis programmes. The analysis of your surfing behaviour is usually anonymous; the surfing behaviour cannot be traced back to you. You can object to this analysis or prevent it by not using certain tools. Details on this can be found in our privacy policy under the heading ‘Third-party modules and analysis tools’.
You can object to this analysis. We will inform you about the objection options in this privacy policy.
- General notes and mandatory information
Data protection
The operators of these pages take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this privacy policy.
When you use this website, various personal data is collected. Personal data is data that can be used to identify you personally. This privacy policy explains what data we collect and what we use it for. It also explains how and for what purpose this is done.
We would like to point out that data transmission over the Internet (e.g. when communicating by email) may be subject to security vulnerabilities. Complete protection of data against access by third parties is not possible.
Note on the responsible body
The controller responsible for data processing on this website is
Romana Roske GmbH & Co.KG
Von Pölnitzstrasse 252
91349 Egloffstein
E-Mail: [email protected]
The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data (e.g. names, e-mail addresses, etc.).
Revocation of your consent to data processing
Many data processing operations are only possible with your express consent. You can withdraw your consent at any time. All you need to do is send us an informal email. The legality of the data processing carried out until the revocation remains unaffected by the revocation.
Right to lodge a complaint with the competent supervisory authority
In the event of breaches of data protection law, the data subject has the right to lodge a complaint with the competent supervisory authority. The competent supervisory authority for data protection issues is the state data protection officer of the federal state in which our company is based. A list of data protection officers and their contact details can be found at the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.
Right to data portability
You have the right to have data that we process automatically on the basis of your consent or in fulfilment of a contract handed over to you or to a third party in a commonly used, machine-readable format.If you request the direct transfer of the data to another controller, this will only take place if it is technically feasible.
SSL and TLS encryption
This site uses SSL or TLS encryption for security reasons and to protect the transmission of confidential content, such as orders or enquiries that you send to us as the site operator.You can recognise an encrypted connection by the fact that the address line of the browser changes from ‘http://’ to ‘https://’ and by the lock symbol in your browser line.
If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
Information, blocking, deletion
Within the framework of the applicable legal provisions, you have the right to free information about your stored personal data, its origin and recipient and the purpose of the data processing and, if necessary, a right to correction, blocking or deletion of this data at any time.You can contact us at any time at the address given in the legal notice if you have further questions on the subject of personal data.
Objection to advertising mails
We hereby object to the use of contact data published as part of our obligation to provide a legal notice for the purpose of sending unsolicited advertising and information material.
The operators of the website expressly reserve the right to take legal action in the event of the unsolicited sending of advertising information, such as spam e-mails.
- Data collection on our website
Cookies
This website does not use cookies.
Server log files
The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:
Browser type and browser version
Operating system used
Referrer URL
Host name of the accessing computer
Time of the server enquiry
IP address
This data is not merged with other data sources.
The basis for data processing is Art. 6 para. 1 lit. b GDPR, which permits the processing of data for the fulfilment of a contract or pre-contractual measures.
Contact form
If you send us enquiries via the contact form, your details from the enquiry form, including the contact details you provide there, will be stored by us for the purpose of processing the enquiry and in the event of follow-up questions. We will not pass on this data without your consent.
The data entered in the contact form is therefore processed exclusively on the basis of your consent (Art. 6 para. 1 lit. a GDPR). You can revoke this consent at any time. All you need to do is send us an informal email. The legality of the data processing operations carried out until the revocation remains unaffected by the revocation.
We will retain the data you provide on the contact form until you request its deletion, revoke your consent for its storage, or the purpose for its storage no longer pertains (e.g. after fulfilling your request). Mandatory statutory provisions – in particular retention periods – remain unaffected.
- social media
Facebook plugins (Like & Share button)
Plugins of the social network Facebook, provider Facebook Inc, 1 Hacker Way, Menlo Park, California 94025, USA, are integrated on our pages. You can recognise the Facebook plugins by the Facebook logo or the ‘Like’ button on our site. You can find an overview of the Facebook plugins here: https://developers.facebook.com/docs/plugins/.
When you visit our website, a direct connection is established between your browser and the Facebook server via the plugin. Facebook receives the information that you have visited our site with your IP address. If you click on the Facebook ‘Like’ button while you are logged into your Facebook account, you can link the content of our pages to your Facebook profile. This allows Facebook to associate your visit to our pages with your user account. We would like to point out that, as the provider of the pages, we have no knowledge of the content of the transmitted data or its use by Facebook. Further information on this can be found in Facebook’s privacy policy at: https://de-de.facebook.com/policy.php.
If you do not want Facebook to be able to associate your visit to our pages with your Facebook user account, please log out of your Facebook user account.
Google+ Plugin
Our pages use functions of Google+. The provider is Google LCC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Collection and transfer of information: You can use the Google+ button to publish information worldwide. You and other users receive personalised content from Google and our partners via the Google+ button. Google stores both the information that you have given +1 for a piece of content and information about the page you viewed when you clicked +1. Your +1s can be displayed as references together with your profile name and your photo in Google services, such as in search results or in your Google profile, or in other places on websites and adverts on the Internet.
Google records information about your +1 activities in order to improve Google services for you and others. To be able to use the Google+ button, you need a globally visible, public Google profile, which must contain at least the name chosen for the profile. This name is used in all Google services. In some cases, this name can also replace another name that you have used when sharing content via your Google account. The identity of your Google profile may be displayed to users who know your e-mail address or have other identifying information about you.
Use of the information collected: In addition to the uses explained above, the information you provide will be used in accordance with the applicable Google privacy policy. Google may publish summarised statistics about the +1 activities of users or pass these on to users and partners, such as publishers, advertisers or associated websites.
- analysis tools and advertising
Google reCAPTCHA
We use ‘Google reCAPTCHA’ (hereinafter referred to as ‘reCAPTCHA’) on our websites. The provider is Google LCC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (‘Google’).
The purpose of reCAPTCHA is to check whether the data input on our websites (e.g. in a contact form) is made by a human or by an automated programme. For this purpose, reCAPTCHA analyses the behaviour of the website visitor based on various characteristics. This analysis begins automatically as soon as the website visitor enters the website. For the analysis, reCAPTCHA evaluates various information (e.g. IP address, time spent on the website by the website visitor or mouse movements made by the user). The data collected during the analysis is forwarded to Google.
The reCAPTCHA analyses run completely in the background. Website visitors are not informed that an analysis is taking place.
Data processing is carried out on the basis of Art. 6 para. 1 lit. f GDPR. The website operator has a legitimate interest in protecting its website from abusive automated spying and SPAM.
Further information on Google reCAPTCHA and Google’s privacy policy can be found at the following links: https://www.google.com/intl/de/policies/privacy/ and https://www.google.com/recaptcha/intro/android.html.
- plugins and tools
YouTube
Our website uses plugins from the Google-operated YouTube site. The operator of the pages is YouTube, LLC, 901 Cherry Ave, San Bruno, CA 94066, USA.
When you visit one of our pages equipped with a YouTube plugin, a connection to the YouTube servers is established. The YouTube server is informed which of our pages you have visited.
If you are logged into your YouTube account, you enable YouTube to assign your surfing behaviour directly to your personal profile. You can prevent this by logging out of your YouTube account.
The use of YouTube is in the interest of an appealing presentation of our online offers. This constitutes a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR.
Further information on the handling of user data can be found in YouTube’s privacy policy at: https://www.google.de/intl/de/policies/privacy.
Google Maps
This website uses the Google Maps map service via an API. The provider is Google LCC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
To use the functions of Google Maps, it is necessary to save your IP address. This information is usually transmitted to a Google server in the USA and stored there. The provider of this site has no influence on this data transfer.
The use of Google Maps is in the interest of an appealing presentation of our online offers and to make it easy to find the places we have indicated on the website. This constitutes a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR.
You can find more information on the handling of user data in Google’s privacy policy: https://www.google.de/intl/de/policies/privacy/.
Spam protection with Google reCAPTCHA
We have implemented Google reCAPTCHA in forms on our website to check whether the data entered in the forms originates from human visitors or from machines or automated programmes, also known as ‘bots’. This tool automatically analyses the behaviour of website visitors as soon as they interact with the website, using various information such as IP address, length of stay and mouse movements. The processed data includes usage data such as the website accessed, date and time of access and mouse movements as well as communication data such as IP addresses, browser type and operating system. This processing is aimed at website visitors and users of online services. The main purpose of this processing is to prevent misuse of our contact form and thereby increase security. The legal basis for this is our legitimate interest pursuant to Art. 6 para. 1 sentence 1 lit. f. GDPR. The data recipients are Google Ireland Ltd, based at Google Building Gordon House, Barrow St, Dublin 4, Ireland, (https://policies.google.com/privacy) and our website hosting provider. While your personal data is processed within the EU, the retention period for the processed data is determined by Google Ireland Limited. Further information can be found in Google reCAPTCHA’s privacy policy: https://policies.google.com/privacy
Website analysis (WordPress statistics)
When you visit our website, we collect information about your usage through a web analytics tool provided by our hosting service. This tool collects and combines your IP address and your user agent, shortens them and stores this data with a hash function. This process creates a visitor identifier that is encrypted with a randomly generated value (SALT) that changes every 24 hours. This method ensures that your IP address cannot be reconstructed from the stored visitor identifier, thus preserving your anonymity. In addition, we do not merge this information with other data and it is only stored on the hosting provider’s server.
We also process web analytics data, HTTP data and web analytics profile data. The web analytics tool we use creates and stores a web analytics profile that contains details about your use of the website, such as page views, frequency of visits, time spent on each page and the user agent of your device. This includes usage data (such as web pages visited and access times) and communication data (such as browser type, operating system and IP addresses).
By processing this data, we want to analyse user behaviour in summarised form in order to improve the presentation and content of our website. The legal basis for this processing is our legitimate interest (Art. 6 para. 1 lit. (f) GDPR), in particular in carrying out web measurements in order to improve our products and our website.
The data collected is shared with our website hosting provider and processed within the EU.