Data protection

We appreciate your trust and apply the utmost care and highest security standards to protect your personal data from unauthorised access. The processing of personal data on our website is carried out in accordance with the provisions of the Basic Data Protection Regulation (GDPR).

Responsible authority

Responsible authority is
EHEIM GmbH & Co. KG
Plochinger Str. 54
73779 Deizisau
Tel.: +49 (0)7153 70 02-01
Fax: +49 (0)7153 70 02-174
E-Mail: info@eheim.com

Data protection officer
If you have any questions regarding the collection and processing of your personal data, as well as questions regarding the rights you are entitled to as a person affected by the data processing, you can contact our data protection officer(s), who you can reach at:

datenschutz@eheim.com

Data processing on our website
When you visit our website, our web server temporarily saves each access in a log file. The following data is recorded and stored until it is automatically deleted:

  • IP address of the requesting computer
  • Date and time of access
  • Name and URL of the retrieved file
  • Transmitted data volume
  • Message whether retrieval was successful
  • Identification data of the browser and operating system used.

This data is processed for the purpose of enabling the use of the website (connection establishment), system security, technical administration, network infrastructure and for the optimisation of the Internet offer. We cannot assign these data to specific persons. A consolidation of these data with other data sources is not carried out; the data is also deleted after a statistical evaluation.

The legal basis for data processing is Art. 6 (1) sentence 1 letter f) GDPR.

Collection, processing and use of personal data
During data processing, your interests worthy of protection are always taken into account in accordance with the statutory provisions. Personal data is only collected if you voluntarily provide us with this information when contacting us (such as your name, e-mail address or postal address). We will use the data you provide without your separate consent exclusively to answer your questions. 

The legal basis for data processing is Art. 6 (1) sentence 1 letter b) GDPR.

Use of necessary cookies
In order to make your visit to our website more comfortable and to enable the use of certain functions, we use so-called necessary cookies. Necessary cookies are small text files that are used as identifiers, i.e. they are used to recognize the visitor during and after the visit of the website and to store information about the visitor (such as the language settings on a website, the login status or a shopping cart). We transfer these cookies via your web browser to the hard disk of your computer where we store them during your current visit and for a period of up to three months thereafter in order to read them. Please note that certain cookies are already set when you visit our website. You have the option of preventing the storage of cookies on your computer by making the appropriate settings in your browser. However, this may limit the range of functions of our web pages for you.

The legal basis for data processing is Art. 6 (1) sentence 1 letter f) GDPR. 

Use of cookies for analysis purposes
The website also uses cookies for analysis purposes. When calling up our website, the user is informed about the use of cookies for analysis purposes by means of a so-called cookie banner and his/her consent to the processing of the personal data used in this context is obtained. In this context, reference is also made to this data protection declaration. You can revoke your consent at any time with effect for the future by subsequently changing the cookie settings. You also have the option of preventing the storage of cookies on your computer by changing the appropriate settings in your browser.

The legal basis for the processing of personal data using cookies for analysis purposes is Article 6 paragraph (1) sentence 1 letter a) of the GDPR, provided the user has given his consent to this.

Google Analytics
If you agree, this website uses Google Analytics, a web analytics service provided by Google Ireland Limited, Google Building Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland; parent company: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. Google Analytics uses so-called "cookies", i.e. text modules which are stored on your computer and which enable us to analyse your use of our website. Google will store the cookies on your computer for a period of up to two years. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there. We have added the code "gat._anonymizeIp();" to Google Analytics on this website to ensure that your IP address is not recorded in full but only in abbreviated form (so-called IP masking). Although this makes your identification more difficult, it cannot be ruled out that Google may link your IP address to other identification features and assign them to you.

The legal basis for data processing is Art. 6 (1) sentence 1 letter a) GDPR. 

Information on how Google processes your data can be found in Google's privacy policy:
https://policies.google.com/technologies/partner-sites?hl=de 

You can also prevent the storage of cookies by means of a corresponding setting in your browser software; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. Finally, you can also prevent the data generated by the cookie and related to your use of the website (including your IP address) from being passed on to Google and the processing of this data by Google by downloading and installing the browser plugin available under the following link: 
http://tools.google.com/dlpage/gaoptout?hl=de 

YouTube
If you agree, this website uses the YouTube button on the YouTube social network, which is operated by YouTube LLC, whose principal place of business is at 901 Cherry Avenue, San Bruno, CA 94066, USA ("YouTube"); parent company: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. When you call up a web page of our website that contains such a button, your browser establishes a direct connection with the servers of YouTube. The content of the YouTube button is transmitted by YouTube directly to your browser, which integrates it into the website. The cookies used are stored on your computer by YouTube for a period of up to six months. We have no influence on the extent of the data that YouTube collects with the button. The purpose and scope of the data collection and the further processing and use of the data by YouTube as well as your rights and setting options to protect your privacy can be found in Google's privacy policy: https://policies.google.com/technologies/ads?hl=de.
If you are a YouTube member and do not want YouTube to collect information about you via our website and link it to your membership data stored on YouTube, you must log out of YouTube before visiting our website.

The legal basis for data processing is Art. 6 (1) sentence 1 letter a) GDPR.

Google Maps / Google Earth
If you agree, our website uses Google Maps for the visual display of map material Google Maps/ Google Earth from Google Ireland Limited, Google Building Gordon House, 4 Barrow St, Dublin, D04 E5W5, Irland; Parent company: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. When using Google Maps, Google also collects, processes and uses data about the use of the Maps functions by visitors to the websites. The terms of use for Google Maps can be found at https://www.google.com/intl/de_DE/help/terms_maps/, Google's privacy policy at https://policies.google.com/technologies/partner-sites?hl=de.

The legal basis for data processing is Art. 6 para. (1) sentence 1 lit. a) GDPR.

Data transfers to a country outside the European Economic Area
If you have given your consent, your personal data may be transferred to servers of a third party provider (Google, YouTube, etc.) whose servers are located in the USA or another third country (a country outside the European Economic Area (EEA)). Please note that there is no adequate level of data protection in the USA comparable to that in the EU. Therefore, there is a risk of access to this data by government authorities. This risk may also exist with regard to other third countries. The permissibility of these data transfers to the USA and other affected third countries follows from Art. 49 (1) sentence 1 lit. a) GDPR.

Use of the online contact form
When using the online contact form, we only collect personal data (such as your name and e-mail address) to the extent that you have provided it. We use your e-mail address only to process your request. We store your data as long as this is necessary for the processing of your inquiry and/or if tax or commercial law storage obligations prevent the deletion of your data.

The legal basis for data processing is Art. 6 Para. (1) Sentence 1 lit. b) GDPR. The legal basis for the storage of your personal data under tax or commercial law is Art. 6 Paragraph (1) Sentence 1 lit. c) GDPR in conjunction with §§ 147 AO, 257 HGB.

User account for the webshop
For our private customers and dealers we have set up our own web store. If you register for our webshop, we will set up a password-protected direct access to our webshop and your own profile (In the profile you can manage the following: Print materials for download, registered products, bookmarks set, subscribed newsletters and the profile data). Your data required for the use of the webshop is stored here. 

These are your inventory data (name, address, e-mail, telephone number, etc.), your usage data (e-mail address, password) as well as data on your completed, open and recently shipped orders. We store your data until you delete your user account or until tax or commercial law retention obligations prevent the deletion of your data.

The legal basis for data processing is Art. 6 (1) sentence 1 lit. b) GDPR. The legal basis for the storage of your personal data under tax or commercial law is Art. 6 (1) sentence 1 lit. c) GDPR in conjunction with §§ 147 AO, 257 HGB.

Newsletter
You have the option to subscribe to our newsletter.

If you order our newsletter, we will use your e-mail address for our own advertising purposes as long as you have not revoked your consent to receive the newsletter. In addition to your e-mail address, we need confirmation that you are the owner of the e-mail address you have provided and that you agree to receive the newsletter. This data is only collected for the purpose of sending you the newsletter and to document our authorisation in this respect. In addition, we analyse when you open and read the newsletter in order to adjust its design and dispatch to your needs and interests.

You can unsubscribe from our newsletter at any time by contacting us by e-mail (info@eheim.de) or by clicking on the unsubscribe link at the end of each newsletter. A revocation does not, however, affect the legality of the data processing carried out on the basis of the consent given until the revocation. We store your data for the purpose of sending the newsletter and analysing your usage behaviour until the revocation is made; for the purpose of proving your consent until 31 March of the fourth calendar year following the last newsletter dispatch.

Under the GDPR, the legal basis for data processing is Article 6 (1) sentence 1 lit. a) GDPR. For processing for the purpose of proving consent, the legal basis is Art. 6 (1) sentence 1 lit. c) in conjunction with Art. 5 (2) GDPR, Art. 7 (1) GDPR and Art. 24 (1) GDPR as well as Art. 6 (1) sentence 1 lit. f) GDPR. A justified interest in processing on the basis of Art. 6 (1) sentence 1 lit. f) GDPR is the defence against legal claims.

Hosting of this website
In order to provide you with this website, we use the services of web hosting providers who provide the following services for us: Infrastructure and platform services, provision of computer capacity and storage space, and technical maintenance services. The data processed in the course of providing these services includes your IP address and, where applicable, other communication data, as well as usage and contact data provided by you via our website.

Our safety standards
Your personal data is transmitted on our website via the Internet using the so-called SSL security system (Secure Socket Layer). This technology offers a high level of security and is therefore also used by banks, for example, for data protection in online banking. We secure our website and other systems through technical and organisational measures against loss, destruction, access, modification or distribution of your data by unauthorised persons.

Rights of data subjects:
You are entitled to the following statutory rights of data subjects, provided that the conditions are met:

  • Right to revoke at any time in accordance with Art. 7 Para. (3) GDPR any consent granted to us in accordance with Art. 6 Para. (1) Sentence 1 lit. a) GDPR; the consequence of this is that we may no longer continue data processing based on this consent for the future.
  • Right to information about your data stored with us in accordance with Art. 15 GDPR,
  • Right to correct incorrect data in accordance with Art. 16 GDPR,
  • Right to deletion of the data stored with us in accordance with Art. 17 GDPR,
  • Right to restrict the processing of data stored by us in accordance with Art. 18 GDPR,
  • Right to data transferability according to Art. 20 GDPR,
  • Right of objection under Art. 21 GDPR
  • Right to appeal to a competent supervisory authority under Art. 77 GDPR if you believe that the processing of personal data concerning you is in breach of the provisions of the GDPR.


Right of objection
Under Art. 21 Paragraph (1) GDPR you have the right to object at any time to the processing of your personal data on the basis of a legitimate interest (Art. 6 Paragraph (1) S. 1 lit. f) GDPR). If you object to the processing of your personal data in accordance with Art. 21 Paragraph (1) GDPR, we will no longer process your personal data unless we can demonstrate compelling reasons for processing which are worthy of protection and which outweigh your interests, rights and freedoms, or unless the processing serves to assert, exercise or defend legal claims. The objection can be sent to us in any form, e.g. to our e-mail address.

Visto