Privacy Policy dated 08.06.2018

1. An overview of data protection

General

The following provides a simple overview of what happens to your personal data when you visit our website. Personal data means any data that can be used to identify you in person. For detailed information on data protection please read our privacy policy below.

Data collection on our website

Who is responsible for the data collection on this website?

The data collected on this website is processed by the website operator, whose contact details can be found in the "Imprint" section of this website.

How do we collect your data?

Some data is collected when you provide it to us. This includes data you enter on a contact form.

Other data is collected automatically by our IT systems when you visit the website. This is primarily technical data such as the browser and operating system you are using or when you accessed the page. This data is collected automatically whenever you enter our website.

What do we use your data for?

Part of the data is collected to ensure the proper functioning of the website. Other data can be used to analyse how visitors use the site.

What are your rights regarding your data?

You have the right to request information on the personal data we have stored about you as well as its origin, its recipients and the purpose for which it has been collected. You can exercise this right at any time free of charge.

You also have the right to request that the data be corrected, blocked or deleted. You can contact us at any time using the address given in the "Imprint" section of the website if you have any further questions about privacy and data protection. You may also, of course, file a complaint with the competent regulatory authorities. You also have the right, under certain circumstances, to request that we restrict the processing of your personal data. For more details please see the section on "Right to restrict processing" in this privacy policy.

Analytics and third-party tools

When visiting our website, statistical analyses may be made of your surfing behaviour. This happens primarily using cookies and analytics. The analysis of your surfing behaviour is usually anonymous, i.e. we will not be able to identify you from this data. You can object to this analysis or prevent it by not using certain tools. Detailed information can be found in the privacy policy below.

You can object to this analysis. Your rights to object are detailed in this privacy policy.

2. General and mandatory information

Data protection

The website operators take the privacy of your personal data very seriously. We treat your personal data as confidential and in accordance with statutory data protection regulations and this privacy policy.

Various personal data is collected about you when you use this website. Personal data means any data that can be used to identify you in person. This privacy policy explains what data we collect and what we use it for. It also explains how and for what purpose this happens.

Please note that data transmitted via the internet (e.g. via e-mail communication) may be subject to security breaches. Complete protection of your data from third-party access is not possible.

Notice concerning the party responsible for this website

The party responsible for processing data on this website is:

Schock GmbH
Hofbauerstr. 1
D-94209 Regen
Germany

Phone: +49 9921-600-0
E-mail: info@schock.de

The responsible party is the natural or legal person who alone or jointly with others decides on the purposes and means of processing personal data (names, e-mail addresses, etc.).

Withdrawing your consent to the processing of your data

Many data processing operations are only possible with your express consent. You may withdraw your consent at any time with future effect. An informal e-mail making this request is sufficient. The data processed before we receive your request may still be legally processed.

Right to object to data processing in particular cases and right to object to direct marketing (Art. 21 GDPR)

You have the right to object at any time, on grounds relating to your particular situation, to the processing of your personal data based on Art. 6 (1) (e) or (f) GDPR, including profiling based on those provisions. Please refer to this privacy policy for information on the specific legal basis for our data processing. We will no longer process your personal data unless we can demonstrate compelling legitimate interests for the processing which override your interests, rights and freedoms or for the establishment, exercise or defence of legal claims (right to object under Art. 21 (1) GDPR).

Where your personal data is processed for direct marketing purposes, you have the right to object at any time to the processing of your personal data for such marketing, which includes profiling to the extent that it is related to such direct marketing. If you object, your personal data will no longer be processed for the purposes of direct marketing (right to object under Art. 21 (2) GDPR).

Right to file complaints with regulatory authorities

In the event of a breach of the GDPR, the person affected may file a complaint with a regulatory authority, particularly in the Member State where they normally reside, where they work or where the alleged breach took place. The right to file a complaint applies irrespective of any other administrative or legal remedies.

Right to data portability

You have the right to have data which we process automatically based on your consent or in performance of a contract delivered to yourself or to a third party in a standard, machine-readable format. If you require the direct transfer of data to another responsible party, this will only be done to the extent technically feasible.

SSL or TLS encryption

This site uses SSL or TLS encryption for security reasons and to protect the transfer of confidential content, such as orders or inquiries you send to us as the site operator. You can recognise an encrypted connection in your browser's address bar when it changes from "http://" to "https://" and the lock icon is displayed in your browser's address bar. If SSL or TLS encryption is activated, the data you transfer to us cannot be read by third parties.

Encrypted payments on this website

If you enter into a contract which requires you to send us your payment information (e.g. account number for direct debits), we will need this data in order to process your payment.

Payment transactions using common means of payment (Visa/MasterCard, direct debit) are only made via encrypted SSL or TLS connections. You can recognise an encrypted connection in your browser's address bar when it changes from "http://" to "https://" and the lock icon is displayed in your browser's address bar.

In the case of encrypted communication, any payment details you submit to us cannot be read by third parties.

Information, blocking, deletion and correction

As permitted by law, you have the right to be provided with information on the personal data we have stored about you as well as its origin, its recipients and the purpose for which it has been processed. You can exercise this right at any time free of charge. You also have the right to request that the data be corrected, blocked or deleted. You can contact us at any time using the address given in the "Imprint" section of our website if you have any further questions about privacy and data protection.

Right to restrict processing

You have the right to request that we restrict the processing of your personal data. You can contact us at any time using the address given in the "Imprint" section to exercise this right. The right to restrict processing applies in the following circumstances:

  • If you have contested the accuracy of your personal data, we will generally need time to verify the accuracy of the data. While we are verifying this, you have the right to restrict the processing of your personal data.
  • If your personal data has been/is being unlawfully processed, you can request restriction rather than erasure.
  • If we no longer need your personal data but you require us to keep it in order to establish, exercise or defend a legal claim, you can request restriction rather than erasure of your personal data.
  • If you have objected to us processing your data in accordance with Art. 21 (1) GDPR, we need to consider whether our legitimate interests override your individual interests. Until we establish whose interests prevail, you can request that we restrict processing of your personal data.

If you restrict the processing of your personal data, aside from storing your data we can only process your data with your consent, or in order to establish, exercise or defend a legal claim, or to protect the rights of another natural or legal person, or for reasons arising out of an important public interest of the European Union or a Member State.

Objection to promotional e-mails

We hereby expressly prohibit the use of contact data published in the legally required "Imprint" section of this website for the sending of promotional and informational materials we have not expressly requested. The website operator reserves the right to take specific legal action if unsolicited advertising material, such as e-mail spam, is received.

3. Data Protection Officer

Statutory Data Protection Officer

We have appointed a Data Protection Officer for our company.

OMNIS Consulting GmbH
Ernst Buchner
Innere Passauer Str. 2
D-94315 Straubing
Germany

Phone: +49 9421 869 9989
E-mail: dsb@omnis-consulting.de

4. Data collection on our website

Cookies

Some of our web pages use cookies. Cookies do not harm your computer and do not contain any viruses. Cookies help make our website more user-friendly, effective and secure. Cookies are small text files that are stored on your computer and saved by your browser.

Most of the cookies we use are "session cookies". They are automatically deleted after your visit. Other cookies remain in your device's memory until you delete them. These cookies make it possible to recognise your browser when you next visit the site.

You can configure your browser to inform you about the use of cookies so that you can decide on a case-by-case basis whether to accept or reject a cookie. Alternatively, your browser can be configured to automatically accept cookies under certain conditions or to always reject them, or to automatically delete cookies when closing your browser. Disabling cookies may limit the functionality of this website.

Cookies which are necessary to allow electronic communications or to provide certain functions you wish to use (such as the shopping cart) are stored pursuant to Art. 6 (1) (f) GDPR. The website operator has a legitimate interest in the storage of cookies to ensure an optimised service free of technical errors. If other cookies (such as those used to analyse your surfing behaviour) are also stored, they will be treated separately in this privacy policy.

Server log files

The website provider automatically collects and stores information that your browser automatically transmits to us in "server log files". This information is:

  • Browser type and browser version
  • Operating system used
  • Referrer URL
  • Host name of the accessing computer
  • Time of the server request
  • IP address

This data will not be combined with data from other sources.

Our legal basis for processing this data is Art. 6 (1) (f) GDPR. The website operator has a legitimate interest in storing server log files to ensure an optimised website free of technical errors.

Contact form

If you send us enquiries via the contact form, we will collect the data entered on the form, including the contact details you provide, to answer your enquiry and any follow-up questions. We do not share this information without your permission.

We will, therefore, process any data you enter onto the contact form only with your consent according to Art. 6 (1) (a) GDPR. You may withdraw your consent at any time with future effect. An informal email making this request is sufficient. The data processed before we receive your request may still be legally processed.

We will retain the data you provide on the contact form until you request its deletion, withdraw your consent to its storage, or the purpose for its storage no longer pertains (e.g. once your request has been fulfilled). Statutory provisions, especially those regarding statutory retention periods, remain unaffected.

Registering on this website

You can register on our website in order to access additional functions offered here. The input data will only be used for the purpose of using the respective site or service for which you have registered. The mandatory information requested during registration must be provided in full. Otherwise, we will reject your registration.

We will use the e-mail address you specified during registration to inform you about important changes, such as changes to the scope of our site or any technically necessary changes.

We will process the data provided during registration on the basis of your consent (Art. 6 (1) (a) GDPR). You may withdraw your consent at any time with future effect. An informal e-mail making this request is sufficient. The data processed before we receive your request may still be legally processed.

We will continue to store the data collected during registration for as long as you remain registered on our website. Thereafter it will be deleted. Statutory retention periods remain unaffected.

Registering with Facebook Connect

You can register with Facebook Connect instead of registering directly on our website. The provider of this service is Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland.

If you decide to register with Facebook Connect and click "Login with Facebook" or "Connect with Facebook", you will automatically be connected to the Facebook platform, where you can log in with your user data. Your Facebook profile will then be linked with our website and our services. As a result of this link we will have access to the data you have stored in Facebook. This is mainly the following data:

  • Your Facebook name
  • Your Facebook profile and cover photo
  • Your Facebook cover photo
  • The e-mail address you have stored in Facebook
  • Your Facebook ID
  • Your Facebook Friend Lists
  • Your Facebook Likes
  • Your date of birth
  • Your gender
  • Your country
  • Your language

We use this data to set up, provide and personalise your account.

We will process the data provided during registration with Facebook Connect on the basis of your consent (Art. 6 (1) (a) GDPR). You may withdraw your consent at any time with future effect.

You can find more information in Facebook's terms of service and Facebook's data policy at https://www.facebook.com/about/privacy/ and https://www.facebook.com/legal/terms/.

Transfer of data upon conclusion of a contract for webshops, dealers and shipping purposes

We only transfer personal data to third parties when necessary for the purposes of a contract, for example we may transfer your data to companies entrusted with delivering the merchandise or to the bank handling the payment transaction. Data is not transmitted to any other party, or is only transmitted to another party if you have given your express consent. We will not transfer your data to third parties for marketing purposes, for example, without your express consent.

Our legal basis for processing this data is Art. 6 (1) (b) GDPR, which allows the processing of data for the performance of a contract or for measures preliminary to a contract.

5. Social media

Facebook plug-ins (Like & Share button)

Our website includes plug-ins for the social network Facebook, provided by Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA. The Facebook plug-ins can be recognised by the Facebook logo or the Like button on our site. For an overview of Facebook plug-ins, see: https://developers.facebook.com/docs/plugins/.

When you visit our site, a direct connection between your browser and the Facebook server is established via the plug-in. This enables Facebook to receive information that you have visited our site from your IP address. If you click on the Facebook Like button while you are logged into your Facebook account, you can link the content of our site to your Facebook profile. This allows Facebook to associate visits to our site with your user account. Please note that, as the operator of this site, we have no knowledge of the content of the data transmitted to Facebook or of how Facebook uses this data. For more information, please see Facebook's privacy policy at: https://www.facebook.com/privacy/explanation.

If you do not want Facebook to associate your visit to our site with your Facebook account, please log out of your Facebook account.

The legal basis for our use of Facebook plug-ins is Art. 6 (1) (f) GDPR. The website operator has a legitimate interest in achieving the greatest possible social media visibility.

6. Analytics and advertising

Google Analytics

This website uses Google Analytics, a web analytics service. It is operated by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

Google Analytics uses cookies. These are text files that are stored on your computer and that allow analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there.

Google Analytics cookies are stored based on Art. 6 (1) (f) GDPR. The website operator has a legitimate interest in analysing user behaviour to optimise both its website and its advertising.

IP anonymisation

We have activated the IP anonymisation feature on this website. Your IP address will be truncated by Google within member states of the European Union or other parties to the Agreement on the European Economic Area prior to transmission to the United States. Only in exceptional cases is the full IP address sent to a Google server in the US and truncated there. Google will use this information on behalf of the operator of this website to evaluate your use of the website, to compile reports on website activity, and to provide other services regarding website activity and Internet usage for the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with any other data held by Google.

Browser plug-in

You can prevent these cookies being stored by selecting the appropriate settings in your browser. However, we wish to point out that doing so may mean you will not be able to enjoy the full functionality of this website. You can also prevent the data generated by cookies about your use of the website (incl. your IP address) from being passed to Google, and the processing of this data by Google, by downloading and installing the browser plug-in available at the following link: https://tools.google.com/dlpage/gaoptout?hl=en.

Objecting to the collection of data

You can prevent the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie will be set to prevent your data from being collected on future visits to this site: Disable Google Analytics.

For more information about how Google Analytics handles user data, see Google's privacy policy: https://support.google.com/analytics/answer/6004245?hl=en.

Outsourced data processing

We have entered into an agreement with Google for the outsourcing of our data processing and fully implement the strict requirements of the German data protection authorities when using Google Analytics.

Demographic data collection by Google Analytics

This website uses Google Analytics' demographic features. This allows reports to be generated containing statements about the age, gender and interests of site visitors. This data comes from interest-based advertising from Google and third-party visitor data. This collected data cannot be attributed to any specific individual person. You can disable this feature at any time by adjusting the ads settings in your Google account or you can prevent the collection of your data by Google Analytics as described in the section "Objecting to the collection of data".

Facebook Pixel

Our website uses the so-called "Facebook Pixel", which is operated by Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA ("Facebook").

We use it to be able to track the behaviour of the visitors to our website when they have been redirected to the website of the seller after they clicked a Facebook advertisement. This enables us to analyse the efficiency of the Facebook advertisements for statistical and marketing research purposes and to optimise future advertising measures.

The collected data is anonymous for us as the operator of this website; we are not able to draw any conclusions as to the identity of the users. The data is, however, stored and processed by Facebook, so that a connection to the respective user profile is possible and Facebook is able to use the data for their own advertising purposes, in accordance with Facebook's guideline concerning the use of data. This enables Facebook to place advertisements on the pages of Facebook as well as outside of Facebook. We, as the operator of this website, have no influence on this use of the data.

Our legal basis for using Facebook Pixel is Art. 6 (1) (f) GDPR. The website operator has a legitimate interest in effective advertising, including the use of social media.

Facebook's privacy policy contains more information on the protection of your privacy: https://www.facebook.com/about/privacy/.

You are also able to deactivate the "Custom Audiences" remarketing function in the settings for advertisements at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. You need to be logged in to Facebook to do this.

If you do not have a Facebook account, you can deactivate behavioural advertising from Facebook through the European Interactive Digital Advertising Alliance website: http://www.youronlinechoices.com/uk/your-ad-choices/.

7. Payment provider

PayPal

We offer the option of paying for things on our website with PayPal. The provider of this payment service is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg ("PayPal").

If you choose to pay by PayPal, the payment data you enter will be transferred to PayPal.

Our legal basis for transferring your data to PayPal is Art. 6 (1) (a) GDPR (consent) and Art. 6 (1) (b) GDPR (performance of a contract). You may withdraw your consent to the processing of your personal data at any time with future effect. The data processed before we receive your request may still be legally processed.