Privacy Policy

1. Data protection at a glance


General information
The following information provides a simple overview of what happens to your personal data when you visit our website. The term “personal data” comprises all data that can be used to personally identify you. For detailed information about data protection, please read our Privacy Policy below.

The collection of data on our website

Who is responsible for the collection of data on this website (i.e. the “controller”)?

Data processing is handled by the website operator, whose contact details can be found in the “Legal Notice” on this website.

How do we collect your data?

We firstly collect your data when you share it with us. This may, for instance, include information you enter into our contact form.

Other data is automatically collected by our IT systems when you visit our website. This data mainly consists of technical information (e.g. web browser, operating system or time the site was accessed). This information is collected automatically as soon as you access our website.

For what purposes do we use your data?

Some of the data is collected to ensure that our website can be provided without any errors. Other data may be used to analyze your user behavior.

What rights do you have concerning your data?

You have the right to receive, at any time and without having to pay a fee, information about the source and recipients of your personal data as well as the purposes for which your personal data is stored. You also have the right to demand that your data be rectified, blocked or erased. Please do not hesitate to contact us at any time using the address provided in the “Legal Notice” on this website if you have any questions about this or any other matters concerning data protection. You also have the right to lodge a complaint with the competent supervisory authority.

Moreover, under certain circumstances, you have the right to demand that the processing of your personal data be restricted. For information on this, please see the section “Right to restriction of processing” in this Privacy Policy.

Analysis tools and tools provided by third parties

It is possible that your browsing behavior will be statistically analyzed when you visit our website. Such analyses are primarily performed using cookies and analysis programs. As a rule, your browsing behavior is analyzed anonymously, i.e. your browsing behavior cannot be traced back to you.

You have the option to object to such analyses or you can prevent them from being performed by not using certain tools. This Privacy Policy contains detailed information about these tools and how you can object to them being used.

2. General information and mandatory information

Data protection

The operators of this website take the protection of your personal data very seriously. This is why we handle your personal data as confidential information and in compliance with the statutory data protection regulations and this Privacy Policy.

A variety of personal data is collected whenever you use this website. Personal data comprises data that can be used to personally identify you. This Privacy Policy explains which data we collect and how it is used. It also explains how and for which purpose the information is collected.

We would like to use this opportunity to make you aware that the transmission of data over the Internet (i.e. through e-mail communications) may be prone to security gaps. It is not possible to completely protect data from access by third parties.Information about the responsible party (“controller”)The controller responsible for data processing on this website is:

Thomas Reichart
Highlight Towers
Mies-van-der-Rohe Straße 6
80807 Munich
Germany

E-Mail: mail@thomas-reichart.de


The controller is the natural person or legal entity that single-handedly or jointly with others makes decisions about the purposes and means of processing personal data (e.g. names, e-mail addresses).

Withdrawal of your consent to the processing of data

Many data processing operations are only possible if you provide your express consent. If you have given us your consent, you can withdraw this at any time. To do so, all you have to do is send us an informal notification by e-mail. This shall not affect the lawfulness of any data processing that occurred prior to your withdrawal.

Right to object to the collection of data in special cases and the right to object to direct marketing (Article 21 of the General Data Protection Regulation – GDPR)

In the event that data is processed on the basis of Article 6(1)(e) or (f) GDPR, you have the right, at any time, to object to the processing of your personal data on grounds relating to your particular situation. This also applies to any profiling based on these provisions. Please consult this Privacy Policy to determine the legal basis on which the processing of your data is based. If you object, we will no longer process your personal data, unless we can demonstrate compelling legitimate grounds for the processing of your data that override your interests, rights and freedoms or unless the data is being processed for the establishment, exercise or defense of legal claims (objection pursuant to Article 21(1) GDPR).

If your personal data is being processed for direct marketing purposes, you have the right to object at any time to the processing of your personal data for such marketing purposes. This also applies to profiling to the extent that it is related to such direct marketing. If you object, your personal data will subsequently no longer be used for direct marketing purposes (objection pursuant to Article 21(2) GDPR).

Right to lodge a complaint with the competent supervisory authority

In the event of violations of the GDPR, data subjects are entitled to lodge a complaint with a supervisory authority, in particular in the member state of their habitual residence, place of work or place of the alleged infringement. The right to lodge a complaint is without prejudice to any other administrative or court proceedings available as legal recourses.

Right to data portability

You have the right to request that any data that we automatically process on the basis of your consent or in order to perform a contract be handed over to you or a third party in a commonly used, machine-readable format. If you request that the data be transmitted directly from one controller to another, this will only be done if it is technically feasible.

SSL and/or TLS encryption

For security reasons and to protect the transmission of confidential content, such as purchase orders or inquiries that you submit to us as the website operator, this website uses either an SSL or a TLS encryption program. You can recognize an encrypted connection by checking whether the URL in your browser’s address line changes from “http://” to “https://” and also by checking whether the lock icon appears in your browser bar.

If SSL or TLS encryption is activated, the data that you transmit to us cannot be read by third parties.

Access to, blocking, erasure and rectification of data

Within the scope of the applicable statutory provisions, you have the right, at any time and free of charge, to receive information about your stored personal data, its source and recipients as well as the purpose for which your data is being processed. You may also have the right to have your data rectified, blocked or erased. Please do not hesitate to contact us at any time using the address provided in the “Legal Notice” on this website if you have any questions about this or any other matters concerning your personal data.

Right to restriction of processing

You have the right to request that the processing of your personal data be restricted. To exercise this right, you may contact us at any time using the address provided in the “Legal Notice” on this website. You have the right to request restriction of processing in the following cases:

  • If you contest the accuracy of the personal data we have stored about you, we will usually need some time to verify this claim. While this investigation is ongoing, you have the right to request that we restrict the processing of your personal data.
  • If your personal data was/is being processed in an unlawful manner, you have the option to request that the processing of your personal data be restricted as opposed to this data being erased.
  • If we no longer need your personal data but you require it for the establishment, exercise or defense of legal claims, you have the option to request that the processing of your personal data be restricted as opposed to this data being erased.
  • f you have raised an objection pursuant to Article 21(1) GDPR, your rights and our rights must be weighed against one another. Until it is determined whose interests prevail, you have the right to demand that the processing of your personal data be restricted.

If you have restricted the processing of your personal data, this data – with the exception of storage – may only be processed with your consent or for the establishment, exercise or defense of legal claims or for the protection of the rights of another natural or legal person or for reasons of important public interest of the European Union or an EU member state.

Objection to unsolicited marketing e-mails

We would like to use this opportunity to object to the mandatory contact information we have published by law in the “Legal Notice” on this website from being used to send us promotional and information material that we have not expressly requested. The operators of this website reserve the express right to take legal action in the event of promotional information being sent unsolicited, e.g. in the form of spam e-mails.

3. The collection of data on our website

Cookies
Our website uses cookies in some instances. Cookies do not cause any damage to your computer and do not contain any viruses. The purpose of cookies is to make our website more user friendly, effective and secure. Cookies are small text files that are placed on your computer and stored by your browser.

Most of the cookies we use are known as session cookies. These are automatically deleted after you leave our site. Other cookies will remain stored on your device until you delete them. These cookies enable us to recognize your browser the next time you visit our website.

You can adjust your browser settings to make sure that you are notified every time cookies are placed on your device and to enable you to accept cookies only in specific cases or to exclude the acceptance of cookies in specific situations or in general and to activate the automatic deletion of cookies whenever you close your browser. Please note that the functions of this website may be limited if you disable cookies.

Cookies that are required for electronic communication processes or to provide certain functions that you want to use (e.g. the shopping cart function) are stored on the basis of Article 6(1)(f) GDPR. The website operator has a legitimate interest in storing cookies to ensure that it can optimize its services and provide them free from technical errors. If other cookies (e.g. cookies for the analysis of your browsing behavior) are stored, they are addressed separately in this Privacy Policy.

Server log files

The provider of this website automatically collects and stores information in server log files, which your browser transmits to us automatically. This information comprises:

  • The type and version of browser being used
  • The operating system being used
  • The referrer URL
  • The hostname of the computer accessing the website
  • The time of the server inquiry
  • The IP address

This data is not merged with other data sources.

This data is recorded on the basis of Article 6(1)(f) GDPR. The operator of this website has a legitimate interest in ensuring that the website is displayed free from technical errors and in optimizing its website. Server log files must be collected in order to achieve this.

Contact form

If you submit inquiries to us using our contact form, the information and any contact details you enter into this form will be stored by us so that we can handle your inquiry and answer any further questions you may have. We will not share this information without your consent.

The processing of the data entered into the contact form therefore occurs exclusively on the basis of your consent (Article 6(1)(a) GDPR). You have the right to withdraw this consent at any time. To do so, all you have to do is send us an informal notification by e-mail. This shall not affect the lawfulness of any data processing operations that occurred prior to your withdrawal.

We will continue to store the information you have entered into the contact form until you ask us to erase the data or withdraw your consent to the storage of the data or until the purpose for which the data is being stored no longer exists (e.g. after we have finished handling your inquiry). Any mandatory legal provisions – in particular retention periods – will not be affected by this.

Inquiries by e-mail, telephone or fax

If you contact us by e-mail, telephone or fax, your request, including all the personal data provided (name, inquiry), will be stored and processed by us for the purpose of handling your request. We will not share this information without your consent.

In cases where your inquiry is related to the performance of a contract or if it is necessary for taking steps prior to entering into a contract, the processing of this data is based on Article 6(1)(b) GDPR. In all other cases, the processing is based on your consent (Article 6(1)(a) GDPR) and/or on our legitimate interests (Article 6(1)(f) GDPR), since we have a legitimate interest in the effective processing of requests addressed to us.

The data you send to us when you contact us in this way will continue to be stored by us until you ask us to erase your data or withdraw your consent to the storage of the data or until the purpose for which the data is being stored no longer exists (e.g. after we have finished handling your request). Any mandatory legal provisions – in particular statutory retention periods – will not be affected by this.

Processing of data (customer and contract data)

We collect, process and use personal data only to the extent necessary for establishing, organizing or changing legal relationships (data inventory). These actions are taken on the basis of Article 6(1)(b) GDPR, which permits the processing of data for the performance of a contract or for taking steps prior to entering into a contract. We collect, process and use personal data concerning the use of our website (usage data) only to the extent that this is necessary to make it possible for users to access our services and for billing purposes.

The customer data we collect will be erased upon completion of the order or the termination of the business relationship. This shall not affect any statutory retention periods.

4. Social media

Facebook plug-ins (Like & Share button)

On our website, we have integrated plug-ins provided by the social network Facebook, Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA. You can recognize Facebook plug-ins from the Facebook logo or the “Like button” on our website. An overview of the Facebook plug-ins is available at the following link: https://developers.facebook.com/docs/plugins/?locale=en.

Whenever you visit our website, the plug-in will establish a direct connection between your browser and the Facebook server. As a result, Facebook will be informed that you have visited our website with your IP address. If you click the Facebook “Like button” while you are logged into your Facebook account, you may link the contents of our website with your Facebook profile. Facebook will consequently be able to link your visit to our website to your Facebook user account. Please note that we, as the provider of this website, have no knowledge of which data is transferred and how it is used by Facebook. For more detailed information, please consult the Facebook Data Policy at: https://www.facebook.com/privacy/explanation.


If you do not want Facebook to be able to link your visit to our website to your Facebook user account, please log out of your Facebook account while you are on our website.The use of the Facebook plug-in is based on Article 6(1)(f) GDPR. The operator of this website has a legitimate interest in being as visible as possible on social media.

Twitter plug-in

On our website, we have integrated features provided by the social media platform Twitter. These features are provided by Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA. When you use Twitter and the “Retweet” function, websites you visit are linked to your Twitter account and disclosed to other users. During this process, data is also transferred to Twitter. Please note that we, as the provider of this website, have no knowledge of which data is transferred and how it is used by Twitter. For more details, please consult Twitter’s Privacy Policy at: https://twitter.com/en/privacy.The use of the Twitter plug-in is based on Article 6(1)(f) GDPR. The operator of this website has a legitimate interest in being as visible as possible on social media.You can change your data protection settings on Twitter in the account settings available at 
https://twitter.com/account/settings

LinkedIn plug-in

Our website uses features provided by the LinkedIn network. The provider of these features is LinkedIn Corporation, 2029 Stierlin Court, Mountain View, CA 94043, USA.

A connection to LinkedIn’s servers is established whenever you access one of our sites that contains features provided by LinkedIn. This notifies LinkedIn that you have visited our web pages with your IP address. If you click on LinkedIn’s “Recommend” button and are logged into your LinkedIn account at the time, LinkedIn will be in a position to link your visit to our website to you and your user account. Please note that we, as the provider of this website, have no knowledge of which data is transferred and how it is used by LinkedIn.

The use of the LinkedIn plug-in is based on Article 6(1)(f) GDPR. The operator of this website has a legitimate interest in being as visible as possible on social media.

For further information on this subject, please consult LinkedIn’s Privacy Policy at: 
https://www.linkedin.com/legal/privacy-policy

XING plug-in

Our website uses features provided by the XING network. The provider is XING AG, Dammtorstraße 29-32, 20354 Hamburg, Germany.

A connection to XING’s servers is established whenever you access one of our sites that contains features provided by XING. To the best of our knowledge, this does not result in any personal data being stored. In particular, the service does not store any IP addresses or analyze user behavior.

The use of the XING plug-in is based on Article 6(1)(f) GDPR. The operator of this website has a legitimate interest in being as visible as possible on social media.

For more information on data protection and the XING share button, please consult XING’s Privacy Policy at: 
https://www.xing.com/app/share?op=data_protection

5. Analysis tools and advertising

Google AnalyticsThis website uses features provided by the web analysis service Google Analytics. The provider of this service is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

Google Analytics uses cookies. Cookies are text files that are stored on your computer and analyze how you use this website. The information generated by cookies about how you use this website is usually transferred to a Google server in the United States, where it is stored.

The storage of Google Analytics cookies and the use of this analysis tool are based on Article 6(1)(f) GDPR. The operator of this website has a legitimate interest in the analysis of user behavior in order to optimize both the services offered online and its advertising activities.

IP anonymization

We have activated the IP anonymization function on this website. This means that, before being transmitted to the United States, your IP address will be abbreviated by Google within the member states of the European Union or in other states that are party to the Convention on the European Economic Area. The full IP address will only be transmitted to one of Google’s servers in the United States and abbreviated there in exceptional cases. On behalf of the operator of this website, Google will use this information to analyze your use of this website in order to generate reports on website activities and to provide other services to the operator of this website that are related to the use of the website and the Internet. The IP address transmitted from your browser as part of the Google Analytics process will not be merged with other data in Google’s possession.

Browser plug-in

You have the option of preventing the storage of cookies by making pertinent changes to your browser settings. However, please note that in this case you may not be able to use all the functions of this website to their fullest extent. You also have the option of preventing Google from collecting and processing the data generated by the cookie and affiliated with your use of the website (including your IP address) by downloading and installing the browser plug-in available at the following link: 
https://tools.google.com/dlpage/gaoptout?hl=en.


Objection to the collection of data

You can prevent Google Analytics from collecting your data by clicking on the following link. This will result in the placement of an opt-out cookie, which will prevent your data from being recorded during future visits to this website: Deactivate Google Analytics.For more information about how Google Analytics handles user data, please consult Google’s Privacy Policy at: 
https://support.google.com/analytics/answer/6004245?hl=en


Data processing

We have concluded a data processing agreement with Google and fully comply with the stringent requirements of the German data protection agencies during our use of Google Analytics.


Retention period

User-level and event-level data stored by Google that is linked to cookies, user IDs or advertising IDs (e.g. DoubleClick cookies, Android advertising ID) will be anonymized or deleted after 14 months. For details, please click on the following link: https://support.google.com/analytics/answer/7667196?hl=en

6. Plug-ins and tools

YouTube

Our website uses plug-ins provided by the YouTube platform, which is operated by Google. The website operator is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

If you visit a page on our website where a YouTube plug-in has been integrated, a connection will be established with YouTube’s servers. This means that the YouTube server will be notified about which of our pages you have visited.

YouTube will also be able to place various cookies on your device. Using these cookies, YouTube will be able to obtain information about visitors to our website. Among other things, this information will be used to generate video statistics with the aim of improving the user-friendliness of the site and of preventing attempts to commit fraud. These cookies will remain on your device until you delete them.

If you are logged into your YouTube account when you visit our site, you enable YouTube to establish a direct link between your browsing behavior and your personal profile. You can prevent this by logging out of your YouTube account.

The use of YouTube is based on our interest in presenting our online content in an appealing manner. This is a legitimate interest pursuant to Article 6(1)(f) GDPR.

For more information about how YouTube handles user data, please consult the YouTube Privacy Policy available at: https://policies.google.com/privacy?hl=en

Google reCAPTCHA

We use “Google reCAPTCHA” (hereinafter referred to as “reCAPTCHA”) on our websites. The provider of this service is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.

The purpose of reCAPTCHA is to determine whether data entered on our websites (e.g. information entered into a contact form) is being provided by a human user or by an automated program. To determine this, reCAPTCHA analyzes the behavior of website visitors based on a variety of parameters. This analysis is triggered automatically as soon as the website visitor enters the site. For this analysis, reCAPTCHA evaluates a variety of data (e.g. IP address, time spent by the website visitor on the site or cursor movements initiated by the user). The data tracked during these analyses is forwarded to Google.

reCAPTCHA analyses run entirely in the background. Website visitors are not alerted that an analysis is underway.

The data is processed on the basis of Article 6(1)(f) GDPR. It is in the website operator’s legitimate interest to protect its web content from misuse by automated spying systems and from spam.

For more information about Google reCAPTCHA and to review Google’s Privacy Policy, please follow these links: 
https://policies.google.com/privacy?hl=en and
https://www.google.com/recaptcha/intro/android.html