Data Privacy
The aim of data protection and also our aim as Eparcare is to handle personal data in such a way that the personal rights of the individual are protected.
To ensure the fulfilment of this objective, bodies responsible for processing personal data are obliged to comply with the regulations from EU legislation (the General Data Protection Regulation (GDPR)) as well as national laws on data protection.
Personal data may only be collected and processed if the GDPR or another law permits this. Essential basic principles of the GDPR are:
- Lawfulness of processing, processing in good faith, transparency
- Earmarking
- Data minimisation
- Accuracy of data processing
- Storage limitation and deletion concepts
- Integrity and confidentiality
Responsible behaviour when handling personal data, but also the risk-conscious use of IT systems and applications are further central objectives of Eparcare.
Information obligations of the controller and rights of the data subject
Name and contact details of the person responsible and, if applicable, his or her deputy.
The data controller for this website is:
Eparcare GmbH
Haller Straße 71
74613 Öhringen
HRB 789910 Stuttgart
DUNS number: 344608980
Telefon: +49 (0) 7948 9427720
E-Mail: info@eparcare.com
The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data (e.g. names, e-mail addresses or similar).
Contact details of the data protection officer
You can reach our data protection officer at info@eparcare.com
Purpose of the data collection, processing or use
Eparcare is a specialist in ergonomics and personal protective equipment.
The collection, processing or use of personal data is carried out to fulfil this corporate purpose or supporting secondary purposes, such as customer advice.
Groups of persons concerned and related data or data categories
The groups of people concerned are
- current employees,
- former employees,
- Applicants,
- Interested parties,
- Customers
- Suppliers,
- Service providers and
- other business partners.
The relevant data includes all personal data that is required to fulfil the respective purpose. The specific data of the data subjects that is processed is explained in detail below.
Legal basis
Processing of personal data is only lawful if permitted by law, i.e. if there is a legal basis, or if the person has consented.
Personal data is only processed in our company in accordance with the statutory provisions. These are usually,
- if consent to the processing of the personal data has been given (Art. 6 para. 1 lit. a DSGVO),
- if personal data must be processed in order to fulfil a contract or initiate a contract (Art. 6 para. 1 lit. b DSGVO),
- if the processing of personal data is necessary to comply with a legal obligation (Art. 6 para. 1 lit. c DSGVO) or
- if we process personal data on the basis of a legitimate interest or on the basis of a legitimate interest of a third party (Art. 6 para. 1 lit. f DSGVO).
Specificity on the legal basis of data processing for contractual purposes
Eparcare primarily directs its offer to companies. Therefore, when processing personal data for contractual purposes, the legal basis is, unless otherwise specified in the individual case,
1. if you are a registered trader or freelancer, Art. 6 para. 1 lit. b DSGVO, the data processing is for the purpose of implementing the contract or pre-contractual measures with the data subject; or
2. if you are acting as an employee of a company, e.g. as an employee in purchasing, Art. 6 (1) lit. f DSGVO, which is the legitimate interest of Eparcare. The legitimate interest of Eparcare in this case is the sale of its own goods and services, which is based in particular on entrepreneurial freedom and professional freedom.
In the following, for the sake of simplicity, we will only refer to "data processing for contractual purposes".
Potential recipients in the event of data transfer
The potential recipients of transferred personal data are
- public bodies, insofar as a legal obligation exists,
- service providers and other business partners insofar as it is necessary to fulfil the respective purpose and a legal provision permits or requires this or the data subject has consented.
You can also find more detailed information on the transfer of individual types of data in our overview table on the use of your data.
Planned data transfer to third countries or international organisations
Should it become necessary to transfer data to third countries (countries that are not member states of the European Union) or to international organisations, this will only be done for the conclusion or fulfilment of contracts - insofar as this does not conflict with the legitimate interest of the data subject - taking into account all data protection requirements. If, in individual cases, we transfer your data to a third country or to an international organisation, we will provide you with the information required for this case.
Standard periods for the deletion of data
The deletion of personal data is carried out in accordance with the respective applicable legal or contractual regulations on data deletion, taking into account legal or contractual retention obligations. Such legal obligations result, among others, from the German Commercial Code (HGB) and the German Fiscal Code (AO). The periods specified there for storage or documentation are up to ten years beyond the end of the business relationship or the pre-contractual legal relationship.
Furthermore, other statutory provisions may require a longer retention period, such as the preservation of evidence within the scope of statutory limitation provisions. In this context, the regular limitation period is three years; in certain cases, however, limitation periods of up to 30 years or in individual cases even beyond this period may be applicable. The deletion of personal data that is not subject to a legal or contractual obligation to retain or delete takes place after it has become dispensable for the fulfilment of the respective purpose.
Your rights regarding data protection (Art. 12 ff DSGVO)
The data subject has various rights with regard to data protection. These rights are explained below. The above contact details can be used to exercise these rights.
Right of access (Art. 15), rectification (Art. 16), restriction of processing (Art. 18) and erasure (Art. 17)
Within the framework of the applicable legal provisions, you have the right at any time to free information about the personal data stored by the responsible person and relating to you, its origin and recipient and the purpose of the data processing and, if applicable, a right to correction, blocking or deletion of this data.
Droit d'opposition (article 21 du RGPD)
Every data subject has the right to object to the processing of his or her data if the data processing is based on Art. 6 (1) lit. f DSGVO or for direct marketing purposes. In the event of an objection to the processing of your personal data, we will examine your objection on a case-by-case basis. If we are obliged to delete your personal data under data protection law due to your objection, we will delete your data taking into account legal retention obligations. The objection does not affect the permissibility of the processing carried out until the objection.
Obligation to disclose data
Every data subject has the right to know whether the provision of the personal data is required by law or by contract or is necessary for the conclusion of a contract, whether the data subject is obliged to provide the personal data and what the possible consequences of not providing the data would be.
Right of appeal to the competent supervisory authority
The person concerned has the right to complain to the competent supervisory authority if he or she believes that his or her rights have been violated. The competent supervisory authority for data protection issues is the State Data Protection Commissioner of the federal state in which our company is based. In principle, however, the data subject may also contact the supervisory authority of his or her place of residence or the place of the alleged violation. A list of data protection officers and their contact details can be found in the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.
Right to data portability
You have the right to have data that we process automatically on the basis of your consent or in fulfilment of a contract transferred to you or to a third party in a common, machine-readable format. If you request the direct transfer of the data to another controller, this will only be done insofar as it is technically feasible.
Revocation of your consent to data processing
Some data processing operations are only possible with your consent. You can revoke consent you have already given at any time. For this purpose, an informal communication by e-mail to one of the e-mail addresses given above is sufficient. The legality of the data processing carried out until the revocation remains unaffected by the revocation.
Use of your data for (direct) marketing purposes
Irrespective of your subscription to our newsletter, we may use your data, in particular your e-mail address, for (direct) marketing purposes. We will only use your data for this purpose if you have not objected to it. We hereby inform you, as well as whenever you contact us, that you can object to the use of your data for (direct) marketing purposes at any time without incurring any costs other than the transmission costs at the basic rates.
SSL or TLS encryption
For security reasons and to protect the transmission of confidential content, such as orders or inquiries that you send to us as the site operator, this site uses an SSL or TLS encryption. You can recognize an encrypted connection by the fact that the address line of the browser changes from "http://" to "https://" and by the lock symbol in your browser line.
If SSL or TLS encryption is activated, the data that you transmit to us cannot be read by third parties.
Data collection on our website
Cookies
Some of the Eparcare websites use so-called cookies. Cookies are used to make our offer more user-friendly, effective and secure. Cookies are small text files that are stored on your computer and saved by your browser.
You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general and activate the automatic deletion of cookies when the browser is closed. If cookies are deactivated, the functionality of this website may be restricted.
We process cookies for contractual purposes if they are required to carry out the electronic communication process or to provide our services (e.g. shopping cart function). Eparcare primarily uses these cookies to process your orders in the online shop. Insofar as other cookies (e.g. cookies for analyzing your surfing behavior) are stored, these are treated separately in this data protection information and only processed after prior consent.
You can see an overview of the active cookies on this page: Cookie information. Furthermore, the cookie settings can be changed here at any time.
„Do Not Track“-settings
You can control the storage of cookies through the “Do Not Track” (DNT) settings in your internet browser. Depending on the browser, the DNT is either a setting in the program settings or a so-called plug-in or add-on. When activated, the browser signals that tracking measures from this tool are not desired without your explicit consent. If the setting is activated, the tracking functions of tools will be anonymized on our part. Please note that the process by which you can enable DNT differs depending on the internet browser you use.
Server log files
When you visit our website, we process information in so-called server log files, which your browser automatically transmits to us. The purpose of data processing is to ensure that the website is displayed correctly and that the website operates securely.
Categories of processed data
The categories of data collected are:
- Browser type and browser version
- operating system used
- Referrer URL
- Host name of the accessing computer
- Time of server request
- IP-address
This data is not merged with other data sources.
legal basis
The legal basis for data processing is Article 6 (1) (f) GDPR. As a website operator, we have a legitimate interest in the correct presentation of the website and in guaranteeing the secure operation of the website.
storage duration
The data processed in connection with the collection of server log files is stored for as long as is necessary for the purposes mentioned.
contact form
If you send us inquiries via the contact form, your details from the inquiry form, including the contact details you provided there, will be stored by us for the purpose of processing the inquiry and in the event of follow-up questions.
Categories of Personal Data
The following categories of personal data are processed for an inquiry via the contact form:
- your concern
- customer number
- Name
- E-mail address
- phone
- your message
legal basis
The data entered in the contact form is processed on the basis of our legitimate interest in offering our customers a simple contact option, improving the quality of our advice (Article 6 (1) (f) GDPR) and for contractual purposes. You can provide us with information that goes beyond the mandatory information on a voluntary basis. The legal basis for this information is Article 6 Paragraph 1 Letter a) GDPR, your consent. The data processing of the voluntary information serves to improve our service to you and to enable you to receive more extensive support. You can revoke your consent to the processing of voluntarily provided data at any time. To do this, please use the above contact option.
storage duration
The data you enter in the contact form will remain with us until you ask us to delete it or until the purpose for storing the data no longer applies (e.g. after your request has been processed). An exception to this may be statutory retention requirements.
Online-Shop
You can register in our online shop to use additional functions on the site. We use the data entered for this purpose only for the purpose of using the respective offer or service for which you have registered. The mandatory information requested during registration must be provided in full. Otherwise we will refuse the registration.
Categories of processed data
The following data is processed when using the online shop:
Company details
- Company name*
- Name owner for sole proprietorships
- Street, house number*
- Country
- Postal Code
- City
- Website
- Industry*
- Number of people working with Eparcare products*
- VAT ID number
Personal Information:
- Salutation*
- First name*
- Last name*
- Language
- Position*
- E-mail address
- phone
- Handy
- Fax
legal basis
The processing of the mandatory information (marked with "*") when registering in our online shop serves to process data for contractual purposes.
You can provide us with information that goes beyond the mandatory information on a voluntary basis. The legal basis for this information is Article 6 Paragraph 1 Letter a) GDPR, your consent. The data processing of the voluntary information serves to improve our service to you and to enable you to receive more extensive support. You can revoke your consent to the processing of voluntarily provided data at any time. To do this, please use the above contact option.
Contact via email
For important changes, such as the scope of the offer or technically necessary changes, we use the e-mail address provided during registration to inform you in this way.
storage duration
The data collected during registration will be stored by us for as long as you are our customer. After deleting your access to the online shop, your Eparcare customer account will be retained and your customer data will continue to be stored. Statutory retention periods remain unaffected.
applicant portal
In the case of applications, we also collect and process the personal data of the applicants via our applicant portal. After registration, the access data for creating an applicant profile will be sent to the applicant by e-mail. The information provided by the applicant in the applicant profile will be processed by us to process the application process.
Categories of processed data
When using the applicant portal, the following categories of personal data are processed:
- Name and e-mail address (registration for the applicant portal)
- information in
- Cover letter
- CV
- testimonials
- Other documents relevant to the respective application
Legal basis of data processing
The legal basis for the processing of applicant data is § 26 BDSG i. in conjunction with Art. 88 GDPR.
storage duration
If the application is not considered as part of the application process, the application documents will be automatically deleted no later than six months after notification of the rejection decision, provided that deletion does not conflict with any other legitimate interests of the person responsible for processing.
Further use of the applicant profile
If the applicant profile is also to be taken into account in future job advertisements, this will only be done with the applicant's consent.
In this case, the legal basis for the further storage and processing of the applicant data is Article 6 (1) (a) EU GDPR. This consent can be revoked at any time. To do this, please contact personal@Eparcare.com.
Applicants have the option to withdraw their applications at any time. In this case, the application documents will be deleted immediately.
Processing of customer data outside of the online shop
We also collect, process and use personal data outside of the environment of the online shop, insofar as it is necessary for the establishment, content design or change of the contract.
categories of data
We need the following data to register you as a customer with us:
- Company name with legal form (e.g. Cie)
- Company headquarters (street / house number / postal code / city)
- Surname and first name of the contact person
- phone
- Surname and first name of the managing director/owner of the commercial enterprise
You can voluntarily provide us with the following data:
- E-mail address - Please note, however, that we need this to access our online shop.
- Telefax
- Possibly different billing address
- mobile phone
- Date of birth of the managing director/owner of the business enterprise.
storage duration
The recorded data will be stored by us as long as you have a business relationship with us. After termination of the business relationship, your data will be deleted. Statutory retention periods remain unaffected.
Personal product recommendations
If you have agreed to the use of cookies for personal product recommendations on our website, we will use your surfing behavior for product recommendations on this website after you have logged in. This includes, in particular, article pages and product categories that you have visited or searched for on Eparcare websites. You can revoke your consent to the analysis of surfing behavior at any time. Please note that we can then no longer offer you product recommendations tailored to your surfing behavior.
legal basis
The storage of cookies to create personal product recommendations is based on Art. 6 Para. 1 lit. a GDPR, your consent.
You can prevent the storage of cookies by not giving us your consent. However, we would like to point out that in this case you may not be able to use all the functions of this website to their full extent.
The information generated by cookies for personal product recommendations is not passed on to third parties.
storage duration
If you do not or no longer agree to the storage and use of your data, you can stop the storage and use here. In this case, your decision will be saved in the form of a cookie. If you delete your cookies, this will also result in this cookie being deleted. When you visit our site again, you will be asked again whether cookies may be used for web analysis.
Analysis tools and advertising
Google Analytics
We use functions of the web analysis service Google Analytics for statistical evaluation of the use of our website. The provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland. We have concluded an order processing contract with Google. As part of the use of Google Analytics, personal data may also be transmitted to the servers of Google LLC. come in the US. For the transmission of personal data to Google LLC. based in the USA, Google LLC. so-called standard contractual clauses of the Commission of the European Union concluded with us. These can be viewed here: https://privacy.google.com/businesses/processorterms/.
IP anonymization
We have activated the IP anonymization function on this website. As a result, your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area before it is transmitted to the USA. Only in exceptional cases will the full IP address be sent to a Google server in the USA and shortened there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide other services related to website activity and internet usage to the website operator.
Google Signals
We continue to use the Google Signals function. With Signals, Google provides reports on the number of users across devices, as well as on different groups of users, which are based on the different device combinations used. To do this, Google uses the data of users who have activated the "Personalized advertising" option in their Google account settings. Google Signals is only used with activated IP anonymization. The data used is processed exclusively by Google. The information provided to us includes only the anonymous reports. We do not process the personal data on which the reports are based. You can object to the collection by Google Signals at any time by deactivating "personalized advertising" in your Google account:
We use Google Signals to recognize users across different devices in order to be able to present them with interest-based advertisements.
Demographic characteristics in Google Analytics
We also use the "demographic characteristics" function of Google Analytics. This allows reports to be created that contain statements about the age, gender and interests of the site visitors. This data comes from interest-based advertising from Google and visitor data from third-party providers. This data cannot be assigned to a specific person. You can deactivate this function at any time via the ad settings in your Google account or generally prohibit the collection of your data by Google Analytics as described in the point "Objection to data collection".
You can permanently object to the collection of your data for the purpose of anonymous statistics by deactivating personalized advertising in the Google advertising options; follow this link https://www.google.com/settings/ads/onweb/.
Further information on Google Analytics and Google's data protection declaration can be found at:
https://www.google.com/intl/de/policies/privacy/ (General Google Privacy Policy)
https://support.google.com/analytics/answer/6004245?hl=de (Privacy at Google Analytics)
https://policies.google.com/terms?hl=de#toc-software (Terms of Service Google Services)
https://policies.google.com/technologies/cookies?hl=de (Overview of how Google uses cookies)
https://support.google.com/analytics/answer/7532985?hl=de&ref_topic=7668613 (Information on Google Signals)
legal basis
The use of Google Analytics for the statistical evaluation of our website is based on Article 6 (1) (a) GDPR, with your consent.
You can prevent the use of cookies by not giving us your consent. However, we would like to point out that in this case you may not be able to use all the functions of this website to their full extent.
If you do not or no longer agree to the storage and use of your data, you can stop the storage and use here. In this case, your decision will be saved in the form of a cookie. If you delete your cookies, this will also result in this cookie being deleted. When you visit our site again, you will be asked again whether cookies may be used for web analysis.
Google Analytics Remarketing
Our websites use the functions of Google Analytics Remarketing in connection with the cross-device functions of Google AdWords and Google DoubleClick. The provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland. As part of the use of Google Analytics Remarketing, personal data may also be transmitted to the servers of Google LLC. come in the US. For the transmission of personal data to Google LLC. based in the USA, Google LLC has concluded so-called standard contractual clauses of the Commission of the European Union with us. These can be viewed here: https://privacy.google.com/businesses/processorterms/.
This function makes it possible to link the advertising target groups created with Google Analytics Remarketing to the cross-device functions of Google AdWords and Google DoubleClick. In this way, interest-related, personalized advertising messages that have been adapted to you depending on your previous usage and surfing behavior on one end device (e.g. mobile phone) can also be displayed on another of your end devices (e.g. tablet or PC).
If you have given Google your consent, Google will link your web and app browser history to your Google account for this purpose. In this way, the same personalized advertising messages can be placed on every device on which you log in with your Google account.
In support of this feature, Google Analytics collects Google-authenticated user IDs, which are temporarily linked to our Google Analytics data to define and create audiences for cross-device advertising.
You can permanently object to cross-device remarketing/targeting by deactivating personalized advertising in your Google account; follow this link https://www.google.com/settings/ads/onweb/.
The summary of the recorded data in your Google account is based solely on your consent, which you can give or revoke with Google (Article 6 (1) (a) GDPR). In the case of data collection processes that are not merged in your Google account (e.g. because you do not have a Google account or have objected to the merger), the collection of data is based on Article 6 (1) (f) GDPR. The legitimate interest results from the fact that the website operator has an interest in the anonymous analysis of website visitors for advertising purposes.
Further information on Google Analytics and Google's data protection declaration can be found at:
https://www.google.com/intl/de/policies/privacy/ (General Google Privacy Policy)
https://support.google.com/analytics/answer/6004245?hl=de (Privacy at Google Analytics)
https://policies.google.com/terms?hl=de#toc-software (Terms of Service Google Services)
https://policies.google.com/technologies/cookies?hl=de (Overview of how Google uses cookies)
https://policies.google.com/technologies/ads?hl=de (Overview of the use of data for advertising by Google)
Bing Ads
We use Bing Ads, a Microsoft Corporation ("Microsoft") program using Universal Event Tracking (UEN) to implement remarketing and conversion tracking. A cookie is set on your computer for this purpose if you have accessed our website via Bing or Yahoo. In this text file, information on the use of our website, i.e. the pages you have accessed, is stored by Bing Ads for 180 days and then deleted. This information includes the URL of the website visited, the URL of the previous website and your IP address. By using the remarketing function, we can make you offers that are specially tailored to you when you later search on one of the search engines mentioned above.
If you do not agree to the collection of information, you can deactivate the setting of cookies via the settings of your Internet browser. This may limit the functionality of the website. In addition, Microsoft may be able to track your usage behavior across several of your electronic devices through so-called cross-device tracking and is thus able to display personalized advertising on or in Microsoft websites and apps. You can disable this behavior at https://choice.microsoft.com/de-de/opt-out.
You can find more information about Bing's analysis services on the Bing Ads website (https://help.bingads.microsoft.com/#apex/3/de/53056/2). You can access Microsoft's data protection conditions for handling collected data under the following link: https://privacy.microsoft.com/de-de/privacystatement/.
Facebook Pixel
Our website uses the visitor action pixel from Facebook, Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA ("Facebook") to measure conversion.
In this way, the behavior of site visitors can be tracked after they have been redirected to the provider's website by clicking on a Facebook ad. This allows the effectiveness of the Facebook ads to be evaluated for statistical and market research purposes and future advertising measures to be optimized.
The data collected is anonymous for us as the operator of this website, we cannot draw any conclusions about the identity of the user. However, the data is stored and processed by Facebook so that a connection to the respective user profile is possible and Facebook can use the data for its own advertising purposes in accordance with the Facebook data usage guidelines. This enables Facebook to place advertisements on Facebook pages and outside of Facebook. This use of the data cannot be influenced by us as the site operator.
You will find further information on protecting your privacy in Facebook's data protection information: https://www.facebook.com/about/privacy/.
You can also use the Custom Audiences remarketing feature in the Ads Settings section at https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen deactivate. To do this, you must be logged in to Facebook.
If you do not have a Facebook account, you can deactivate usage-based advertising from Facebook on the website of the European Interactive Digital Advertising Alliance: http://www.youronlinechoices.com/de/praferenzmanagement/.
Rechtsgrundlage für die Nutzung von Facebook Pixel ist Art. 6 Abs. 1 S. 1 lit. a) DSGVO, Ihre Einwilligung. Sie können Ihre Einwilligung hierzu jederzeit widerrufen, indem Sie dies entsprechend hier einstellen.
Our website uses LinkedIn Conversion Tracking from LinkedIn Corporation to measure conversion. LinkedIn Corporation, 2029 Stierlin Court, Mountain View, California 94043, USA ("LinkedIn").
We use LinkedIn conversion tracking to analyze and regularly improve the use of our website. We can use the statistics obtained to improve our offer and make it more interesting for you as a user. The legal basis for the use of LinkedIn conversion tracking is Article 6 Paragraph 1 Clause 1 Letter a) GDPR, your consent. You can revoke your consent to this at any time by setting this up here.
The LinkedIn Insight tag can be used to track the behavior of site visitors after they have been redirected to the provider's website by clicking on a LinkedIn ad. This allows the effectiveness of the LinkedIn advertisements to be evaluated for statistical and market research purposes and future advertising measures to be optimized. The LinkedIn Insight Tag enables the collection of data about the visits, including the URL, referrer URL, IP address, device and browser properties (user agent), and timestamp. This data is encrypted, IP addresses are truncated and members' direct IDs are removed within seven days to pseudonymise the data. The remaining pseudonymised data will then be deleted within 90 days.
The data collected is anonymous for us as the operator of this website, we cannot draw any conclusions about the identity of the user. However, the data is stored and processed by LinkedIn so that a connection to the respective user profile is possible and LinkedIn can use the data for its own advertising purposes in accordance with the LinkedIn data usage guidelines [https://www.linkedin.com/legal/privacy-policy]. . This enables LinkedIn to place advertisements on LinkedIn pages and outside of LinkedIn. This use of the data cannot be influenced by us as the site operator.
LinkedIn members have the option to opt out of LinkedIn conversion tracking and under https://www.linkedin.com/psettings/advertising/ Block and delete cookies or disable demographics. LinkedIn does not share any personally identifiable information with the website owner, but only provides aggregated reports on website audience and ad performance. LinkedIn also offers retargeting for website visitors, so the website owner can use this data to display targeted advertising outside of their website without identifying the member. LinkedIn members can control the use of their personal information for advertising purposes in their account settings.
Soziale Netzwerke
We operate profiles on social networks to present our company and to communicate with customers and interested parties. As a result, we will inform you about the associated processing activities
Data processing for presentation and communication
Social networks enable us to present our company to people who have an account with the social network (hereinafter "user") and to all visitors to our profiles without an account with the social network (hereinafter "guest"). Customers and interested parties can also contact us via this profile. Our profiles and posts are usually visible to users and guests (hereinafter users and guests are collectively referred to as “visitors”). If you comment on our posts or send us a message, this data will be stored by the social network and can be viewed by us. We can reply to your comment or message. For posts, your comment and our reply may still be visible to all users of the social network or to all visitors.
Data processing for statistical and advertising purposes
If you call up our profile, the social network can save and evaluate your call and all other interactions of yours on the social network's website. This data is made available to the profile owners as statistics and further processed by the social networks for advertising purposes, among other things.
If you have an account with the social network and are logged in when you visit our profile, the provider of the social network can link your interactions with our profile to your account data and process them further. However, it is also possible that data about your interactions with our profile will be stored by the social network for the duration of your visit and processed for other purposes if you are not logged in there or do not have an account. In this case, an assignment can be made, for example, through the use of cookies, small files that are stored on your device, or in connection with your IP address.
The purpose of data processing is usually to create an interest profile for the visitor and to use this profile for advertising purposes. If a person calls up certain websites, information about this call is evaluated and the provider assigns interests to the visitor. Ads are displayed to the visitor based on the assigned interests. Interest-based advertisements can be displayed by the provider both inside and outside the social network websites.
Categories of data subjects
People who call up our profile on the respective social network (both users with an account with the social network provider and visitors without an account).
Assertion of your rights as a data subject
For information requests or to assert your other rights as a data subject, we recommend that you contact the provider directly, as only he has full access to the data that is related to a call-up of our profile or interaction with us on the social network are processed. The contact information for the social networks for exercising your rights as a data subject can be found under "Information on the social networks we use". In the case of data processing for which there is joint responsibility between the provider of the social network and us, you also have the right to assert your rights as a data subject. to assert us. In such a case, we will forward your request to the social network insofar as the request relates to data or processing activities processed by the social network.
Further information on the processing activities of the social networks and the existing possibilities of objection can be found under "Information on the social networks we use".
Information about the social networks we use:
Facebook:
Offerer
Facebook Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Irland (nachfolgend „Facebook“)
Webseite
https://de-de.facebook.com/
Form for contacting the data protection officer of Facebook
https://www.facebook.com/help/contact/540977946302970
Facebook Data Policy
https://de-de.facebook.com/policy.php
Our profile
https://www.facebook.com/eparcare.com/
Categories of processed personal data when visiting our profile on Facebook
- Technical information about the device: operating system, information about the browser used, IP address, further information about the device and the Internet connection;
- Contact details: information about the user's account, if applicable;
- Data about interactions: Information about profiles visited, links clicked, date and time of interaction, further interactions of the visitor.
You can find more information about the processed data at:
https://www.facebook.com/legal/terms/page_controller_addendum
Joint controllership for the processing of Page Insights data
We have concluded an agreement on joint responsibility with Facebook, which applies to the processing of data in connection with our profile on Facebook (so-called "page") for the provision of the profile and the statistical evaluation of the interactions of visitors to our profile. It defines which obligations in connection with the data processing are to be fulfilled either by Facebook or by us and which party is responsible for the individual processing activities in each case.
Agreement on joint responsibility for data processing for page insights between Facebook and us as the owner of a Facebook profile in accordance with Art. 26 GDPR: https://www.facebook.com/legal/terms/page_controller_addendum
More information about the processing of Page Insights data:
https://www.facebook.com/legal/terms/information_about_page_insights_data
Purposes and Legal Basis
Presentation of our company, legitimate interest (Art. 6 Para. 1 S. 1 lit. f) GDPR)
- The processing for this purpose is based on the legitimate interests of the company. Specifically, the interest in maintaining the corporate culture and the company's public relations work. These interests derive from our right to entrepreneurial freedom and freedom of occupation.
Communication with customers and interested parties, legitimate interest (Art. 6 Para. 1 S. 1 lit. f) GDPR)
- The processing of data from messages or comments on Facebook is based on our legitimate interests in offering customers and interested parties a simple contact option and improving the quality of our advice. These interests are derived from our right to entrepreneurial freedom and the freedom to choose an occupation Statistical purposes, legitimate interest (Art. 6 Para. 1 S. 1 lit. f) GDPR)
Statistical purposes, legitimate interest (Art. 6 Para. 1 S. 1 lit. f) GDPR)
- The processing of data for statistical purposes in connection with page insights is based on our legitimate interest in improving the quality of our advice, insofar as we are jointly responsible for processing with Facebook. This interest derives from our right to entrepreneurial freedom and freedom of occupation.
If Facebook carries out further processing activities or processes data for statistical or advertising purposes, Facebook is responsible for the processing and the processing may be based on other legal bases. For more information, see the “Facebook Data Policy” section.
Processeur Facebook
When using Facebook, personal data may also be transmitted to Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA. For the transmission of personal data to Facebook Inc. based in the USA, Facebook Inc. uses the so-called standard contractual clauses of the Commission of the European Union. A copy of the standard contractual clauses used can be requested here:https://www.facebook.com/help/566994660333381?ref=dp
Opportunities to object
If you would like to object to processing by Facebook, you will find options for objecting to various processing activities under this link:
For your Facebook account, you can manage the advertising settings yourself under the following link and, for example, deactivate interest-based advertising:
https://www.facebook.com/settings?tab=ads
If you do not have a Facebook account, you can deactivate interest-based online advertising for the participating websites using the following link:
https://www.youronlinechoices.com/de/praferenzmanagement/
right of appeal
You have the right to lodge a complaint with the competent supervisory authority. You can find out which supervisory authority is responsible under the point “Right of appeal to the responsible supervisory authority” in this data protection notice. You can also contact the Irish Data Protection Commission regarding processing in connection with our profile on Facebook. Contact information for the Irish Data Protection Commission can be found at:
https://www.dataprotection.ie/en/contact/how-contact-us#
Newsletter und elektronische Kommunikation
Data processing for newsletter registration
If you would like to receive the newsletter offered on the website, we need an e-mail address from you as well as information that allows us to verify that you are the owner of the e-mail address provided and that you agree to receive the newsletter . Further data is not collected or only collected on a voluntary basis.
The processing of the data entered in the newsletter registration form takes place exclusively on the basis of your consent (Art. 6 Para. 1 lit. a DSGVO). You can revoke your consent to the storage of the data, the e-mail address and their use for sending the newsletter at any time, for example via the "unsubscribe" link in the newsletter. The legality of the data processing operations that have already taken place remains unaffected by the revocation.
legal basis
The data processing takes place on the basis of your consent (Art. 6 Para. 1 lit. a DSGVO). You can revoke this consent at any time. The legality of the data processing operations that have already taken place remains unaffected by the revocation.
storage duration
The data you have stored with us for the purpose of subscribing to the newsletter will be stored by us until you unsubscribe from the newsletter and deleted after you have canceled the newsletter. Data that we have stored for other purposes (e.g. e-mail addresses for registering in the online shop) remain unaffected by this.
Conclusion of a contract for order data processing
We have concluded a contract with Inxmail in accordance with Article 28 (3) GDPR, in which we oblige Inxmail to protect our customers' data and not to pass it on to third parties.
We have concluded a contract with Inxmail in accordance with Article 28 (3) GDPR, in which we oblige Inxmail to protect our customers' data and not to pass it on to third parties.
When contacting our service team via e-mail, the contact data sent by the customer via e-mail for the current inquiry and other digitally transmitted processes can be used to automatically forward the inquiry to the responsible internal department, if possible. This is intended to ensure that these business transactions are processed properly and that customer inquiries are processed more quickly. For this purpose, the contact data provided will be transferred to our customer database and stored there.
legal basis
The processing of the data you provide in this context is based on our legitimate interest in accelerating and further optimizing our processes for our customers (Article 6 (1) (f) GDPR).
storage duration
The personal data processed in this context will be stored for the period in which you have a business relationship with us or until you request us to delete it. Statutory retention requirements remain unaffected.
plugins and tools
YouTube
We have integrated YouTube videos into our online offer, which are stored on www.youtube.com and can be played directly from our website. The provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland. When using YouTube, personal data may also be transmitted to the servers of Google LLC. come in the US. For the transmission of personal data to Google LLC. based in the USA, Google LLC. so-called standard contractual clauses of the Commission of the European Union concluded with us. These can be viewed here: https://privacy.google.com/businesses/processorterms/.
YouTube videos on our website are all integrated in "extended data protection mode", i. This means that no data about you as a user is transmitted to YouTube if you do not play the videos. Data is only transferred when you play the videos. We have no influence on this data transmission. Before the transfer, you will be explicitly informed that your data will be transferred to YouTube when you play it. This occurs regardless of whether YouTube provides a user account through which you are logged in or whether there is no user account. If you are logged in to Google, your data will be assigned directly to your account.
If you do not wish to be associated with your profile on YouTube, you must log out of your Google account before playing the video. YouTube stores your data as usage profiles and uses them for advertising, market research and/or needs-based design of its website. You have the right to object to the creation of these user profiles, whereby you must contact YouTube to exercise this right.
Legal basis for data processing by Eparcare. KG is Art. 6 Para. 1 lit. a), your consent. You can revoke your consent at any time. The legality of the data processing operations that have already taken place remains unaffected by the revocation.
You can see more information about YouTube and Google's privacy policy at:
https://www.google.com/intl/de/policies/privacy/ (General Google Privacy Policy)
https://policies.google.com/terms?hl=de#toc-software (Terms of Service Google Services)
https://www.youtube.com/static?gl=DE&template=terms&hl=de (Nutzungsbedingungen YouTube)
Google Maps
On this website we use the offer of Google Maps. This enables us to show you interactive maps directly on the website and enables you to conveniently use the map function. The provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland. When using Google Maps, personal data may also be transmitted to the servers of Google LLC. come in the US. For the transmission of personal data to Google LLC. based in the USA, Google LLC. so-called standard contractual clauses of the Commission of the European Union concluded with us. These can be viewed here: https://privacy.google.com/businesses/processorterms/.
By visiting the website, Google receives the information that you have accessed the corresponding subpage of our website. This takes place regardless of whether Google provides a user account through which you are logged in or whether there is no user account. If you are logged in to Google, your data will be assigned directly to your account. If you do not wish to be assigned to your profile on Google, you must log out of your Google account before calling up a map. Google stores your data as usage profiles and uses them for advertising, market research and/or needs-based design of its website. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact Google to exercise this right.
The legal basis for data processing by Eparcare is Art. 6 (1) (a) GDPR, your consent. You can revoke your consent at any time. The legality of the data processing operations that have already taken place remains unaffected by the revocation.
Further information on Google Maps and Google's data protection declaration can be found at:
https://www.google.com/intl/de/policies/privacy/ (General Google Privacy Policy)
https://policies.google.com/terms?hl=de#toc-software (Terms of Service Google Services)
Social Share Buttons
So-called social share buttons for the social networks Facebook, Pinterest and Twitter are used on our website. In order to do justice to the protection of your data when you visit our website, the buttons are integrated using the "Shariff solution". This type of integration ensures that when you visit one of our websites that contains such buttons, no connection is made to the servers of Facebook, Pinterest and X ("social networks"). Only when you actively click on one of these buttons and thus give your consent to data transmission does your browser establish a direct connection to the servers of the social network. With your click, the social network only receives the information from us that your browser has accessed the corresponding page on our website, even if you do not have a profile on the corresponding social network or are not currently logged in. This information (including your IP address) is then transmitted directly from your browser to a server of the respective social network and stored there, without our being able to influence it. If you are logged into the relevant social network, your visit to our website can be directly assigned to your profile there. If you interact with a social network, for example by clicking the "Like" or the "Tweet" button, the corresponding information is also transmitted directly to a server of the social network. The information is also published in the respective service and may be processed there.
The purpose and scope of the data collection and the further processing and use of the data by the social network as well as your rights in this regard and setting options for protecting your privacy can be found in the data protection information of the respective social network:
Facebook privacy policy: http://www.facebook.com/policy.php
Data protection information from X: https://X.com/privacy
Pinterest privacy notices: https://about.pinterest.com/de/privacy-policy
If you do not want a social network to directly assign the data collected via our website to your profile in the relevant service, you must log out of the relevant service before clicking on one of these buttons.
Facebook is operated by Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA.
X is operated by X Inc., 1355 Market St, Suite 900, San Francisco, CA 94103, USA.
Pinterest is operated by Pinterest Inc., 808 Brannan Street, San Francisco, CA 94103, USA.
payment provider
PayPal
On our website we offer, among other things, payment via PayPal. The provider of this payment service is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter “PayPal”).
If you choose to pay via PayPal, the payment details you enter will be sent to PayPal.
legal basis
Your data is transmitted to PayPal for contractual purposes
Credit card
On our website we offer, among other things, payment by credit card via our payment service provider Stripe, Inc.
510 Townsend Street San Francisco, CA 94103, USA (hereinafter "Stripe").
If you choose to pay by credit card, personal and payment-related data that is requested and required to process the transaction will be sent directly to your bank, credit card company or Stripe. Credit card data is only collected and stored in encrypted form by Stripe. Detailed information about Stripe Payment Services can be found under this link: https://stripe.com/fr-de/privacy.
legal basis
Your data is transmitted to Ingenico for contractual purposes.
Instant bank transfer
On our website we offer, among other things, payment via direct transfer. The provider of this payment service is Sofort GmbH, Theresienhöhe 12, 80339 Munich (hereinafter “Sofortüberweisung”). We do not collect and store the data ourselves.
If you choose to pay via instant transfer, Sofort GmbH requires the IBAN, PIN and TAN of your online banking access.
legal basis
Your data is transmitted to Sofort GmbH for contractual purposes.
giropay
On our website we offer, among other things, payment via giropay. The provider of this payment service is giropay GmbH, An der Welle 4, 60322 Frankfurt/Main (hereinafter “giropay”). We do not collect and store the data ourselves.
If you choose to pay via giropay, you can use your online banking access PIN and TAN without additional registration.
legal basis
Your data is transmitted to giropay GmbH for contractual purposes.
Processing outside of the online shop
Verarbeitung von Kundendaten
We also collect, process and use personal data outside of the environment of the online shop, insofar as it is necessary for the establishment, content design or change of the contract.
categories of data
We need the following data to register you as a customer with us:
- Company name with legal form (e.g. Cie)
- Company headquarters (street / house number / postal code / city)
- Surname and first name of the contact person
- phone
- Surname and first name of the managing director/owner of the commercial enterprise
You can voluntarily provide us with the following data:
- E-mail address - Please note, however, that we need this to access our online shop.
- Telefax
- Possibly different billing address
- mobile phone
- Date of birth of the managing director/owner of the business enterprise.
storage duration
The recorded data will be stored by us as long as you have a business relationship with us. After termination of the business relationship, your data will be deleted. Statutory retention periods remain unaffected.
target customer form
We offer interested customers the opportunity to register with other companies in the group together with our sales staff. For this purpose, we transmit the data required to contact the customer to the desired company.
categories of data
As part of the submission of the target customer form, the following categories of personal data are processed:
- customer number
- Company
- Street
- house number
- Postal Code
- City
- Contact
- Position
- phone
legal basis
The processing of personal data takes place for contractual purposes, the legal basis for processing for these purposes is
1. If you are a registered businessman or freelancer, Article 6 Paragraph 1 Letter b GDPR, which means data processing for the purpose of executing the contract or pre-contractual measures with the data subject; or
2. if you act as an employee of a company, e.g. as an employee in purchasing, Art. 6 Para. 1 lit. f GDPR, which is the legitimate interest of Eparcare. The legitimate interest of Eparcare consists in preparing the sale of products, which is based in particular on entrepreneurial freedom and freedom of occupation.
storage duration
The transmitted data is already available to us and is only transmitted to the respective company, the duration of storage by Eparcare depends on the storage duration for the original processing purpose. The duration of storage at the receiving company depends on the data protection information of the respective company.
Disclaimer/Disclaimer
Eparcare's privacy notices do not apply to third-party applications, products, services, websites or social media features that are accessible through links that we provide for informational purposes. When you use these links, you leave the Eparcare website, so there is a possibility that information about you may be collected or passed on here by third parties. Eparcare has no control over third-party websites and makes no recommendations or representations about those websites or their privacy practices. We therefore encourage you to read and review the privacy policies of any websites you may interact with before allowing them to collect, process and use your personal information.