Data privacy statement (Data protection information according to Art. 13 GDPR)


1. Name and contact details of the controller
 
The person in charge in terms of Art. 4 Para. 7 EU General Data Protection Regulation (GDPR) is:

WITEG Labortechnik GmbH
Am Bildacker 16, D-97877 Wertheim a. Main

 Phone:+49 (0)9342 93010, Fax:+49 (0)9342 930177
 E-Mail: info(at)witeg.de


2. Contact details of the data privacy officer

We appointed a data privacy officer for the data protection and he will be contactable under the following contact details:


Mprotect365 GmbH
Nordstraße 17-21
04105 Leipzig

E-Mail: datenschutz(at)witeg.de


3. Rights of the person concerned

3.1 You have the following rights regarding your personal data:
–     Right to information,
–     Right to rectification or erasure,
–     Right to restriction of processing,
–     Right to object to processing,
–     Right to data portability.

You are entitled to complain about the processing of your personal data though us at a data protection controlling authority.

3.2 Right to object
a. The data subject shall have the right to object, on grounds relating to his or her particular situation, at any time to processing of personal data concerning him or her which is based on point (e) or (f) of Article 6(1), including profiling based on those provisions. The controller shall no longer process the personal data unless the controller demonstrates compelling legitimate grounds for the processing which override the interests, rights and freedoms of the data subject or for the establishment, exercise or defense of legal claims.
b. Where personal data are processed for direct marketing purposes, the data subject shall have the right to object at any time to processing of personal data concerning him or her for such marketing, which includes profiling to the extent that it is related to such direct marketing.
c. Where the data subject objects to processing for direct marketing purposes, the personal data shall no longer be processed for such purposes.


4. Individual data acquisition

4.1 Data acquisition during the visit of our website

During the solely informational usage of our website, thus if you do not transfer any other information to us, we will only collect the personal data your browser transfers to our server.
If you view our website we collect the following data which are technically required to display our website and to ensure stability and security:

- Browser type/ version
- used operating system
- Referrer URL (the before viewed website)

- host name of the accessing computer (IP address)

- time of the server request.
 
a.) Purposes:
Purposes, for which the personal data should be processed:
- Display of the website.

b.) Legal basis:
Legitimate interests according to Art. 6 Para. 1 f) GDPR.
Legitimate interests are:
- Operability, display, stability and security of the website.

c.) Categories of receivers of personal data:
The website is operated technically by a service provider (processor).

d.) Duration of storage:
- 3 months.    


4.1.1 Transient cookies / session cookie (technical necessary cookies)
 
The necessary data storage includes cookies, which are mandatory for the functions of a website. These are for example cookies used for the storage of login data, shopping cart or language selection. They are deleted with the closure of the browser.

a.) Purposes:
Purposes, for which the personal data should be processed:
- Display of the website.

b.) Legal basis:
Legitimate interests according to Art. 6 Para. 1 f) GDPR.
Legitimate interests are:
- Operability, display, stability and security of the website.

c.) Categories of receivers of personal data:
The website is operated technically by a service provider (processor).

d.) Duration of storage:
- Until the browser is closed.


4.2 Data acquisition contact form

In our „contact form”, we collect the following data: type of contact*, title, first name, last name, company*, street/no.*, postcode*, city*, country*, VAT no, phone, e-mail address, message*. This data are used to record and respond to your inquiry and to make contact with you.

a.) Purposes:
Purposes, for which the personal data should be processed:
- Contacting.

b.) Legal basis:
- consent to the processing for one or more specific purposes (Art. 6 Para. 1 a) GDPR).

c.) Categories of receivers of personal data:
The web server is technically operated by a service provider (processor).

d.) Duration of storage:
- Until the revocation of consent or until the accomplishment of purpose (Contacting).

e.) Possibility of revocation:
You have the right to revoke your consent at any time. The revocation of consent does not affect the lawfulness of the processing carried out on the basis of the consent until the revocation.


4.3 Data acquisition inquiry form

In our „inquiry form”, we collect the following data: type of contact*, title, first name, last name, company*, street/no.*, postcode*, city*, country*, VAT no, phone, e-mail address, message*. This data are used to record and respond to your inquiry and to make contact with you.

a.) Purposes:
Purposes, for which the personal data should be processed:
- Article inquiry.

b.) Legal basis:
- consent to the processing for one or more specific purposes (Art. 6 Para. 1 a) GDPR).

c.) Categories of receivers of personal data:
The web server is technically operated by a service provider (processor).

d.) Duration of storage:
- Until the revocation of consent or until the accomplishment of purpose (Contacting).

e.) Possibility of revocation:
You have the right to revoke your consent at any time. The revocation of consent does not affect the lawfulness of the processing carried out on the basis of the consent until the revocation.


4.4 Newsletter subscription

In our form „Newsletter subscription”, we collect the following data: e-mail address*. This data are used to send you our newsletter. Mandatory information for sending our newsletter is only the e-mail address. The specification of further data is voluntary and is used to address to you personally.

With your consent, you can subscribe to our newsletter which informs you about our current interesting offers. The advertised goods and services are named in the declaration of consent.

For the registration to our newsletter, we use the so called Double-Opt-In procedure. This means that after your subscription we send you an e-mail to the stated e-mail address, where we ask you to confirm that you wish to receive a newsletter. If you do not confirm your subscription within 24 hours, the data will be deleted automatically.

Beyond that, we save each of your used IP addresses and the times of subscription and confirmation. Purpose of this procedure is to prove your subscription and, if necessary, to be able to solve a possible abuse of your personal data.

a.) Purposes:
- Sending the newsletter.

b.) Legal basis:
Consent to the processing for one or more specific purposes (Art. 6 Para. 1 a) GDPR).
- IP addresses and the times of subscription:
Legitimate interests according to art. 6 para. 1 f) GDPR.
Legitimate interests are:
- Prevention of abuse.

c.) Categories of receivers of personal data:
- Processor: The website is operated technically by a service provider (processor).

d.) Duration of storage:
- Until revocation of consent.

e.) Possibility of revocation:
You have the right to revoke your consent at any time. The revocation of consent does not affect the lawfulness of the processing carried out on the basis of the consent until the revocation.

If you no longer wish to receive the newsletter you can unsubscribe as follows: "unsubscribe newsletter".


4.5 Webshop (Register form)

In our “register form” we collect the following data: salutation*, first name*, last name*, e-mail address*, your password*, company art, company*, VAT-ID, street and number*, zip code*, city*, country. These data serve to conclude and fulfill the contract.

a.) Purposes:
Purposes, for which the personal data should be processed:
- Conclusion and fulfillment of the contract.

b.) Legal basis:
- Contract initiation, fulfillment of the contract (Art. 6 Para. 1 b) GDPR).

c.) Categories of receivers of personal data:
The web server is technically operated by a service provider (processor).
- Payment service providers, shipping providers.

d.) Duration of storage:
- Until the expiry of legal retention periods.