1. Hosting
In order to make our website available, we use services provided by hosting companies, such as: Provision of web servers, disk space, database services, and security or maintenance services. Here we, or our hosting providers, process personal data of the website visitors based on our legitimate interests in providing efficient and secure access to our website in accordance with Art. 6 (1) lit. f GDPR.
2. Access data and log files
By visiting our website or its individual pages, your device's internet browser automatically sends information to the server of our website. This information is stored in so-called log files by us or our hosting provider and will be deleted after 12 Months at the latest.
The following information is stored:
- IP address of the requesting computer;
- Date and time of access;
- Name and URL of the requested file;
- Website from which our site was accessed (Referrer-URL);
- The browser used and your computer's operating system;
- Status codes and the transferred amount of data;
- Name of your access providers.
This data will be used for the following purposes:
- The provision of our website, including all of its features and contents;
- To ensure a smooth connection to our website;
- To ensure a more user-friendly experience on our website;
- To ensure system security and stability;
- For anonymised statistical evaluation of website access;
- To optimise our website;
- For disclosure to law enforcement authorities in the event of unlawful interference / attacks on our systems;
- For further administrative purposes.
The legal basis for data processing is Art. 6 (1)(f) GDPR. Our legitimate interest relates to the data collection purposes mentioned above. Under no circumstances will we use the personal data collected for the purpose of drawing conclusions about a person.
3. General means of contact
If you contact us using the contact details published on our website (for example, by e-mail) and in this context provide us with personal data, we will use this data to process your request on the basis of Art. 6 (1)(b) GDPR, if your request is related to the performance of a contract or is required to perform pre-contractual action. In all other cases, processing is based on your consent in accordance with Art. 6 (1)(a) GDPR and / or our legitimate interest in the effective processing of requests addressed to us pursuant to Art. 6 (1)(f) GDPR. We will store your personal data until you ask us for deletion, revoke your consent to the storage, or the data are no longer necessary for the purpose for which they were collected (for example, after completion of your request). Mandatory statutory provisions - especially retention periods - remain thereof unaffected.
4. Contact form
If you use the contact form, you will be asked to provide your e-mail address, name, gender and any other contact details, so that we can get in touch with you. Further information can be provided voluntarily. The data processing for the purpose of contacting us and answering your request takes place in accordance with Art. 6 (1)(a) GDPR based on your voluntary consent. All personal data collected in connection with the contact form will be deleted after your request has been processed, unless further storage is required for the documentation of other transactions (for example, subsequent conclusion of a contract).
5. E-Mail direct marketing to customers
If you are an existing customer and we have received your e-mail address in connection with the sale of goods or services, we may use your e-mail address for direct marketing purposes of our own similar goods or services. This only applies if you have not objected and we clearly and unequivocally have advised you of the possibility of objection at the time of collecting the e-mail address, and every time we use it. The legal basis of processing is our legitimate interest in direct marketing according to Art. 6 (1)(f) GDPR. We will store the personal data until you object to the processing.
6. E-mail reminder to rate your purchase
If you have given us your express consent to do so during or after your order by activating a checkbox or clicking a button provided for this purpose, we will use your e-mail address for the purpose of reminding you to submit a rating of your order via the rating system used by us. The personal data is processed in accordance with Art. 6 (1)(a) GDPR based on your voluntary consent. This consent can be revoked at any time by sending us a message. The data collected in this context will be deleted after your request has been dealt with unless storage is required for the documentation of other processes.
7. Newsletter
If you would like to receive our newsletter, we need your e-mail address. The data processing for the purpose of sending the newsletter takes place in accordance with Art. 6 (1)(a) GDPR based on your voluntary consent by means of the so-called double-opt-in procedure. The e-mail address will be used and stored for this purpose until you withdraw your consent or unsubscribe from receiving the newsletter. You can unsubscribe at any time, for example by using the link at the bottom of each newsletter. You can also send your withdrawal/unsubscribe request at any time to the e-mail address given under Clause II.
We embed a so-called counting pixel into our newsletters. A counting pixel is a miniature graphic embedded in the HTML format of the newsletter to allow us an analysis of the reader's reading behaviour. In this context, we gather information whether and at what time a newsletter was opened by you and which of the links contained in the newsletter were accessed by you. We use this data to generate statistical evaluations of the success or failure of a marketing campaign to optimize the distribution of our newsletters and to better tailor the content of future newsletters to your interests. The collected data will not be passed on to third parties and will be deleted after the statistical evaluation.
8. MailChimp
We process our e-mail newsletters via MailChimp. The provider is the Rocket Science Group, LLC, 675 Ponce De Leon Ave NE # 5000, Atlanta, GA 30308, USA (hereafter 'MailChimp'). MailChimp is used to send and evaluate the reach of our newsletters. For this purpose, MailChimp processes your e-mail address and any other data required by MailChimp for the provision of the newsletter on our behalf. The legal basis for data processing is our legitimate interest in the use of a user-friendly and secure newsletter system in accordance with Art. 6 (1)(f) GDPR. The personal data required for processing the newsletter is stored on servers in the United States. The data transfer to MailChimp is legitimised according to Art. 46 (2)(c) GDPR based on the EU Standard Contractual Clauses. A copy of the clauses can be found at: https://eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELEX:32010D0087&from=en. For more information on how MailChimp handles your personal information, please refer to the privacy policy at: https://mailchimp.com/legal/privacy/.
9. Registration / user account
You can register on our website with your personal data. Registration is optional and takes place in accordance with Art. 6 (1)(a) GDPR based on your voluntarily given consent. What categories of personal data are used for registration can be seen on the registration form. The collected personal data will be used for the purposes of providing the services offered on our website as well as getting into contact with you in order to provide you with information about our offers and the services you registered for. When logging in to your user account you can view your personal data and make changes to this data.
We will not pass your personal data to third parties unless it is necessary for the fulfilment of contractual obligations in accordance with Art. 6 (1)(b) GDPR or for the pursuit of any claims to which we are entitled, or unless there is a legal obligation to do so in accordance with Art. 6 (1)(c) GDPR. Your data will be stored until you delete the user account or instruct us to delete your data. Insofar as we are obliged to retain your personal data on the basis of statutory retention periods, in particular tax and commercial law, the processing of your personal data will be restricted until the expiration of the relevant retention periods and then subsequently deleted.
If you register on our website or use the user account, we will store your IP address and the time of usage. The processing takes place on the basis of our legitimate interests pursuant to Art. 6 (1)(f) GDPR in order to provide our services. The data are also processed to protect you from misuse and other unauthorized use. The IP addresses will be anonymized or deleted after 7 Days at the latest.
10. Application form
If you are applying for a job, please send your application documents to the e-mail address jobs@fensterversand.com. The data processing for the purpose of processing your application is carried out in accordance with Art. 6 (1)(a) GDPR based on your voluntary consent. Taking into account the limitation periods of the General Equal Treatment Act (AGG), application documents will be kept for a period of 6 months after completion of the application process and then deleted, unless storage is required for the documentation of other operations (for example, subsequent recruitment).
11. Contractual data
In connection with and for the purpose of fulfilling pre-contractual measures and contractual obligations initiated through our Internet offers, which are carried out at the request of the data subject, we process personal data required for the fulfilment of a contract with the data subject. These include:
- Data of the contracting party, such as name, address and contact details, if applicable, alternate delivery or billing address of recipients;
- if necessary the date of birth;
- contractual documentation including subject matter, duration or customer category;
- payment data such as bank details, credit card details, and payment history.
The legal basis for data processing is Art. 6 (1) lit. b GDPR.
The data will be disclosed to third parties only to the extent necessary to fulfil pre-contractual and contractual obligations, e.g. banks and payment providers credit card companies for processing the payment, to shipping service providers for the shipment of goods.
12. Userlike Chat
Our website uses the Userlike chat function. Provider is Userlike UG, Probsteigasse 44-46, 50670 Cologne, Germany (hereinafter 'Userlike'). The data processing is carried out for the purpose of contacting us and to answer your requests according to Art. 6 (1)(a) GDPR based on your voluntarily given consent. Userlike uses cookies. You may refuse the use of cookies by selecting the appropriate settings on your browser, however please note that if you do this you may not be able to use the full functionality of this website. All personal data collected in connection with the chat conversation will be deleted after your request has been dealt with unless the storage is necessary for the documentation of other processes (e.g. subsequent conclusion of a contract). For more information on how Userlike handles your personal data, please refer to Userlike's privacy policy at: https://www.userlike.com/de/terms - privacy-policy.
13. Installation service
If you make use of our installation service, we will forward your name, address and contact details (telephone, e-mail) to an external installation service provider selected by us in your vicinity so that we can carry out the desired installation service. All personal data transferred to the service provider in connection with the installation service will be deleted after completion of the order, unless storage is required for the documentation of other processes.
14. Zenloop
In order to invite you to participate in customer surveys and to request your customer feedback, we use your name, your email address, your survey responses and your purchased products or services. The legal basis of the processing is your voluntarily given consent under Art. 6 (1)(a) GDPR. We use an external service provider to process and evaluate the survey responses. The provider is Zenloop GmbH, Brunnenstraße 196, 10119 Berlin, Germany. Zenloop processes the survey responses collected exclusively on our instructions. For more information on how Zenloop handles personal data, please refer to the Zenloop privacy policy at: https://www.zenloop.com/en/legal/privacy/.