The purpose of this policy is to explain to you data protection issues and the measures that we have put in place to protect your rights. Heinrich Erdmann GmbH (hereinafter referred to as “we”) complies with the requirements stipulated in the German Federal Data Protection Act (BDSG) and the EU General Data Protection Regulation (EU-GDPR)
1. Collection and Use of Personal Data
1.1. General Principles
Your data is only collected in order to enable us to provide you with the most user-friendly, convenient and secure internet offering. Personal data includes all information concerning the personal or material circumstances of a specific or identifiable natural person, e.g. name, address, contact information, IP addresses, the volume of data transferred etc.
1.2. Legal Basis
a) The provision of this website with products and services: initiation or fulfilment of a contract.
b) Enquiries sent to us by post, email or fax: initiation or fulfilment of a contract.
c) Links to other internet offerings or evaluation of site access: legitimate interest.
1.3. Automatic Processing Through Website Operations
The web pages are operated by a provider based in Germany which saves information regarding site access on the system in server logs in order to operate the website offering. The following types of information are usually collected: IP addresses, time stamp indicating when pages were accessed, names of the web pages, volume of data transferred, when users log out or abort sessions, browser types, information from the operating system and referrer URLs. We do not save or analyse this data. In the event that it is justifiably suspected on the basis of concrete information that some form of misuse has been carried out, it is possible to check these log files retrospectively.
1.4. Data Inputted by the Website User
You can also use our websites without restriction without having to input any of your personal data. If we collect your personal data, we will inform you about the purpose, scope, legitimacy and if it may be transferred to third parties, and we will only use it for these purposes. Personal data is only input on a voluntary basis.
2. Use of Data
2.1. We only use personal data that is collected and processed in order to provide our services as defined in the user agreement that you concluded with us, and to process payments. We naturally comply with all applicable data protection laws, especially the German Federal Data Protection Act/the EU GDPR and the German Telemedia Act (TMG).
2.3. Customer Information by Email
In order to strengthen customer relationships, we send up-to-date information to our customers to inform you about our latest news and changes to our offerings. This information should not be confused with the general newsletters. If this concerns our offerings and contains issues relating to security or other information concerning our business, for example, we are only able to handle this by email. We appreciate your understanding in this matter.
If you decide that you would like to receive our newsletter, we will use the email address that you provided when you registered in order to inform you about our latest news. We will use the form of address that we requested and your name so that we can address you personally and to keep the risk of receiving spam emails to a minimum. Information will be sent to this email address at regular intervals. If you no longer wish to continue receiving information by email, you can withdraw your consent to receiving the newsletter at any time. Please can you let us know that you would like to do so in writing. You will find the instructions at the bottom of each newsletter.
4. Website Analyses and Tools
We use the following analysis tool in order to evaluate our websites which we shall define as follows:
This website uses Google Analytics, a web analytics service provided by Google Inc. (“Google”). Google Analytics uses “cookies” which are text files that are stored on your computer and which enable the way you use the website to be analysed. The information generated by the cookie on how you use this website is usually transferred to a Google server in the USA and stored there. The IP address transmitted by your browser as part of Google Analytics is not merged with any other data held by Google. We have also extended the way we use Google Analytics on this website by enabling the code “anonymizelp”. This guarantees that your IP address is masked so that all data is collected in an anonymised form. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and abbreviated there.
You can also prevent the data generated by cookies regarding your website use (incl. your IP address) from being passed to Google, and the processing of these data by Google, by downloading and installing the browser plugin available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de. As an alternative to a browser add-on, in particular for browsers on mobile devices, you can also prevent Google Analytics from collecting your data by clicking on this link. An opt-out cookie will be created which will prevent any of your data from being collected when you visit this website in future. The opt-out cookie only applies in this browser and only for our website, and is stored on your device. If you delete the cookies on this browser, you have to reset the opt-out cookie.
We also use Google Analytics to enable us to evaluate data from DoubleClick cookies and AdWords for statistical purposes. If you prefer this not to be the case, you can disable this function in the ads preferences manager (http://www.google.com/settings/ads/onweb/?hl=de).
If you wish to object to the collection of this data, you can use a plugin which you can install via the following link: http://tools.google.com/dlpage/gaoptout?hl=de.
These web pages include plugins for the Google Maps service provided by Google Inc., San Bruno/California, USA. If you view content on our websites with a map provided by Google Maps, a connection will be established with Google’s servers. The Google server will then know which pages of our websites you have visited. Should you also be logged into your Google account at the same time, it is then possible for Google to link your browsing habits with your personal profile. You can prevent Google from being able to make this link by logging out of your account beforehand. You can find out further information on the ways in which Google collect and use your data in the data protection notices that are provided there http://www.google.de/maps/.
Google Web Fonts
In order to set out our content correctly on all browsers and in an attractive graphical form, we use script libraries and text libraries on this website, for example Google Web Fonts. (https://www.google.com/webfonts/). Google Webfonts is transferred to the cache of your browser in order to prevent it from being loaded multiple times. Should the browser not support Google Web Fonts or prevent access, content is shown in a standard font.
Accessing script libraries or text libraries automatically results in a connection being established to the operator of the library. It is theoretically possible – but currently also unclear whether and if so for what purposes – that operators of such libraries collect data.
We use technical and organisational security measures to ensure that your data is protected from loss, unauthorised changes or unauthorised access by third parties. Only authorised personnel are ever able to access personal data and only insofar as this is required for any of the aforementioned purposes. The security measures are continually adapted in line with any technological advancements.
6. Additional Information Disclosure Obligations
6.1. Responsible Entity
Heinrich Erdmann GmbH, Hemer. Please see legal notices for full address details.
6.2. Data Protection Officer
P2 Consult Jürgen P. Golda
Telephone: +49 (0)2307 2874488
Fax: +49 (0)2307 2874487
6.3. Data Storage Duration
We only store your data as long as the purpose of storing said data remains valid (for enquiries, projects, contracts etc.). Should the purpose cease to exist or should you revoke your consent, your data will be deleted during regular deletion runs as long as it is not necessary to comply with any statutory retention periods.
We never deliberately collect and process children’s personal data. If a school-aged child makes an enquiry, we will only store the data if we have received the express consent of the child’s parent or legal guardian. Insofar as it is permissible to store children’s personal data, we shall only pass on these data within the scope defined in the legal regulations. The term “children” falls within the definition specified in national law and the statutory requirements which are applicable to our company.
We do not automate decision making and/or carry out profiling using your data.
6.6 Your Rights
Please contact us at any point should you wish to receive any information or if you wish to assert your right to have your data deleted, access restricted or if you wish to revoke your consent. Please use the contact details that we have provided. Please submit your enquiries in writing so that we can clearly identify the person who is making the request.
6.7 Right of Appeal
If you have reasonable doubts about the way that we handle your personal data, please contact us or seek the advice of a supervisory authority.
7. Objection to Advertising Emails
With respect to the contact data published as part of our obligation to publish legal notices, we hereby prohibit its use for the purpose of sending unsolicited advertisements and information material. The operators of these pages reserve the express right to take legal steps should unsolicited promotional information, such as spam emails, be sent.