Data controller within the meaning of data protection law, especially of the EU General Data Protection Regulation (GDPR):
Linde Eckstein GmbH + Co. KG
Flurstrasse 27a-35
90522 Oberasbach
Germany
Limited partnership, head office:
Oberasbach, Fürth District Court HRA 2811
Represented by the managing partner:
Eckstein GmbH, head office: Oberasbach, Fürth District Court HRB 4347 (general partner)
represented by the Managing Directors Iris Eckstein, Verena Eckstein, Michael Eckstein.
Tel: +49 911 9692-0
Fax: +49 911 9692-200
E-mail: datenschutz@doctoreckstein.de
Questions to the Data Protection Officer
If you have any questions concerning data protection, please send us an email or contact our organisation's Data Protection Officer:
Marc Fuchs (DATEV eG)
Sigmundstrasse 172
90329 Nürnberg
Germany
E-mail: datenschutz@doctoreckstein.de
Your rights as a data subject
You can at any time exercise the following rights using the stated contact details of our Data Protection Officer:
Information about your data stored by us and their processing;
rectification of incorrect personal data;
erasure of your data stored by us;
restriction of processing of these data in case we are not yet permitted to erase your data due to statutory obligations;
objection to the processing of your data by us; and
data portability, in case you have consented to the data processing or have concluded a contract with us.
If you have granted consent, you can at any time withdraw it with effect for the future.
No fully automated decision-making (including profiling) according to Art. 22 GDPR is used to process the data you have provided.
You can lodge a complaint with the supervisory authority responsible for you at any time. The supervisory authority responsible for you depends on the federal state in which you live or work, or in which the alleged violation occurred. A list of supervisory authorities (for the non-public area) and their addresses is available at: https://www.bfdi.bund.de/DE/Service/Anschriften/anschriften_table.html
Legal basis for processing personal data
Wherever we obtain the consent of the data subject for the processing of personal data, Article 6 (1) (a) of the EU General Data Protection Regulation (GDPR) serves as the legal basis.
Art. 6 para. 1 lit. b GDPR serves as the legal basis for processing personal data required to fulfill a contract to which the data subject is a party. This also applies to processing operations necessary to carry out pre-contractual measures.
Insofar as the processing of personal data is necessary to fulfill a legal obligation to which our company is subject, Art. 6 para. 1 lit. c GDPR serves as the legal basis.
If the vital interests of the data subject or another natural person require the processing of personal data, Art. 6 para. 1 lit. d GDPR serves as the legal basis.
If the processing is necessary to safeguard a legitimate interest of our company or a third party and if the interests, fundamental rights, and fundamental freedoms of the data subject do not outweigh the interest first stated, Art. 6 para. 1 lit. f GDPR serves as the legal basis for the processing.
Collection of general information when visiting our website
When you access our website, information of a general nature is automatically collected using a cookie. This information (server log files) includes the type of web browser, the operating system used, the domain name of your Internet service provider, and similar information. This is exclusively information that does not allow any conclusions to be drawn about you as an individual.
This information is technically necessary to correctly deliver the content you have requested from websites and is necessarily collected when the Internet is used. In particular, it is processed for the following purposes:
Ensuring a problem-free connection to the website,
ensuring a trouble-free use of our website,
evaluation of system security and stability as well as
for other administrative purposes.
The processing of your personal data is based on our legitimate interest in the above purposes for data collection. We do not use your data to draw conclusions about you as an individual. The only recipients of the data are the party responsible and any subcontracted processor.
The legal basis for the processing of personal data using technically necessary cookies within the meaning of Sec. 25 para. 2 TTDSG is Art. 6 para. 1 lit. f GDPR.
We may statistically evaluate anonymous information of this type to optimize our website and the technology behind it.
Cookies
Like many other websites, we also use so-called "cookies." Cookies are small text files that are transferred to your hard drive by a website server. As a result, we automatically receive specific data, e.g., IP address, browser used, operating system, and your connection to the Internet.
Cookies cannot be used to start programs or deliver viruses to a computer. Based on the information contained in cookies, we can make navigation easier for you and enable our websites to be displayed correctly.
Under no circumstances will the data we collect be passed on to third parties or be linked to personal data without your consent.
Of course, you can also view our website without cookies. Internet browsers are regularly set to accept cookies. In general, you can disable the use of cookies at any time through your browser settings. Please use the help functions of your Internet browser to find out how to change these settings. Please note that some functions of our website may not work if you have deactivated the use of cookies.
Registration on our website
When you register to use our personalized services, personal data is collected, such as name, address, contact, and communication data, such as telephone number and email address. If you are registered with us, you can access content and services that we only offer to registered users. Registered users can also change or delete the data provided during registration at any time. Of course, we will also provide you with information about the personal data we have stored about you at any time. We will also be happy to correct or delete them at your request, provided there are no legal retention obligations to the contrary. To contact us about this, please use the contact details at the end of this data privacy statement. The legal basis for data processing is Art. 6 para. 1 lit. a GDPR.
Provision of chargeable services
To provide services that are subject to a charge, we will ask for additional data, such as payment details, to be able to carry out your order. We store these data in our systems until the statutory retention periods have expired. The legal basis for processing the data is fulfilling a contract or carrying out pre-contractual measures, Art. 6 para. 1 lit. b GDPR.
Data sharing
To fulfill the contract in accordance with Art. 6 para. 1 sentence 1 lit. b GDPR, we pass on your data to the shipping company commissioned to perform the delivery wherever this is necessary to deliver the goods ordered. Depending on which payment service provider you select in the ordering process, we pass on the payment data collected for this purpose to the credit institution commissioned to effect the payment and, if applicable, to the payment service provider commissioned by us or to the payment service selected to process payments. Some of the selected payment service providers also collect these data themselves if you create an account there. In this case, you must register with the payment service provider with your access data during the ordering process. In this case, the data privacy statement of the respective payment service provider applies.
SSL encryption
To protect the security of your data during transmission, we use state-of-the-art encryption methods (e.g., SSL) via HTTPS.
Newsletter
You can subscribe to a free newsletter on our website. We use Brevo for shipping. Brevo is a service that can be used to organize and analyze the sending of newsletters. The provider is Sendinblue GmbH, Köpenicker Str. 126, 10179 Berlin.
The data you enter will be stored, at least in part, on Sendinblue's servers exclusively within the EU.
When you subscribe to our newsletter, the following data are processed: identification and contact data as uploaded by the user (name, email address, telephone number, notes, imported file); IT information (IP addresses, open/click rate, online navigation data, location data, device data, browser data), broadcast information (date and time).
Legal basis: The newsletter subscription and the associated data processing takes place based on your consent (Art. 6 para. 1 lit. a DSGVO). You can revoke this consent at any time by clicking "Unsubscribe" at the bottom of the newsletter or by emailing newsletter@doctoreckstein.de. The legality of the data processing operations that have already taken place remains unaffected by the revocation.
Duration of storage: After you have been removed from the newsletter distribution list, we will store your email address or the newsletter service provider in a so-called blacklist to prevent future mailings to you. The data from the blacklist are only used for this purpose and is not merged with other data. This serves both your interest and our interest in complying with the legal requirements when sending newsletters (legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR). Storage in the blacklist is not limited in time. You can object to the storage by sending us an email to newsletter@doctoreckstein.de.
Data stored by us for other purposes remain unaffected.
Order processing: We have concluded an order processing contract with the provider mentioned above. This ensures that your personal data are processed exclusively in accordance with our instructions and in compliance with the GDPR.
Contact form
If you contact us via email or a contact form with questions of any kind, you give us your voluntary consent to our contacting you. This requires provision of a valid email address. This is used to allocate the request and then to answer it. Provision of further data is optional. The information you provide will be stored to process the request and for possible follow-up questions. Personal data will be automatically deleted after your request has been dealt with. The legal basis for data processing is Art. 6 para. 1 lit. a GDPR.
Sweepstakes
From time to time, we hold sweepstakes. To be able to do this, we collect personal data from the participants. These data are always collected from the participants themselves. These data are then used for advertising purposes. They are commercial contact data.
These data are processed to fulfill contractual obligations (according to Art. 6 para. 1 lit. b GDPR).
The purposes of data processing are, on the one hand, initiation of pre-contractual measures that precede a business relationship governed by a contract and, on the other hand, fulfillment of the obligations arising from the contract concluded with you.
Furthermore, the processing takes place within the framework of the balancing of interests (according to Art. 6 para. 1 lit. f GDPR).
The purposes of the processing result from safeguarding our legitimate interests. It may be necessary to process the data you have provided beyond the actual fulfillment of the contract. Our legitimate interest can be used to justify further processing of the data you have provided, provided your interests or fundamental rights and freedoms do not prevail. In individual cases, our legitimate interest may be: sending advertising information, asserting legal claims, defending against liability claims, or preventing criminal offenses.
As part of our service provision, we commission processors who contribute to the fulfillment of the contractual obligations; these are data center service providers, IT partners, document destruction services. These processors are contractually obligated by us to comply with the GDPR and the German Federal Data Protection Act (BDSG) requirements.
The data will only be passed on to third parties if necessary for the fulfillment of the contract. For example, address data can be passed on to transport service providers in order to send the prizes to the winners.
Under no circumstances will the data you provide be transferred to a third country or an international organization.
No fully automated decision-making (including profiling) according to Art. 22 GDPR is used to process the data you have provided.
The processing of the data provided by you takes place for as long as it is necessary to achieve the contractually agreed purpose, in principle, for as long as the contractual relationship with you exists. After the end of the contractual relationship, the data you have provided will be processed to comply with statutory retention obligations or based on our legitimate interests. After the statutory retention periods have expired and/or our legitimate interests no longer apply the data you provided will be deleted.
Consent tool CookieFirst (only applies to www.doctoreckstein.de):
We use a consent tool on our website to manage consent and rejection of the use of cookies and other third-party tools. We use CookieFirst. CookieFirst is a service provided by Digital Data Solutions B.V., Plantage Middenlaan 42a, 1018DH, Amsterdam, Netherlands.
The decision you make to use cookies and third-party tools is at least partially stored on Cookie First's servers exclusively within the EU. The user's cookie consent is stored in secure databases using UUID (unique user ID). Whenever a user gives consent or changes their cookie consent, these actions are logged.
Legal basis: The use of CookieFirst and the associated data processing is based on a legal obligation and the protection of the legitimate interests of the person responsible (Art. 6 Para. 1 lit. c and f GDPR).
Storage period: The decision you make to use cookies and third-party tools will be stored for 12 months and then deleted from the database.
Data stored by us for other purposes remains unaffected.
Order processing: We have concluded a Data Processing Agreement (DPA) with the above-mentioned provider. This ensures that they process your personal data exclusively in accordance with our instructions and in compliance with the GDPR.
Use of Google (Universal) Analytics (only applies to www.doctoreckstein.de):
If you agree to "Performance" in our consent tool, you consent to the following data processing and possible transmission to countries outside the European Economic Area. These countries may not have the same level of data protection and the enforcement of your rights may be restricted or not possible: This website uses Google (Universal) Analytics, a web analysis service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland (hereinafter: Google). Google (Universal) Analytics uses so-called "cookies," i.e., text files stored on your computer that enable analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there. Due to the activation of IP anonymization on these websites, your IP address will be truncated beforehand by Google within member states of the European Union or in other treaty states of the European Economic Area.
Only in exceptional cases is the full IP address transmitted to a server in the USA by Google and truncated there. Google uses this information on behalf of the operator of this website to evaluate your use of the website, to compile reports on the website activities and to provide other services to the operator of the website relating to use of the website and use of the Internet. The IP address transmitted by your browser as part of Google (Universal) Analytics will not be merged with other Google data.
The purpose of the data processing is to analyze the use of the website and to compile reports on activities on the website. The intention is that further related services will be provided based on the use of the website and the Internet. The legal basis for data processing is Art. 6 para. 1 lit. a GDPR.
You can prevent the storage of cookies by setting your browser software accordingly; we would like to point out that, in this case, you may not be able to use all functions of this website in full. You can also prevent Google from collecting the data generated by the cookie and related to your use of the website (including your IP address) and Google from processing these data by downloading the browser plugin available at the following link and installing it: Browser add-on to deactivate Google Analytics.
In addition or as an alternative to the browser add-on, you can prevent tracking by Google (Universal) Analytics on our website by clicking on the following link:
Click here, to be excluded from Google Analytics measurement.
An opt-out cookie will be installed on your device. This will prevent future collection by Google (Universal) Analytics for this website and this browser as long as the cookie remains installed in your browser.
Google Ads
If you agree to "Advertising" in our consent tool, you consent to the following data processing and possible transmission to countries outside the European Economic Area. These countries may not have the same level of data protection and the enforcement of your rights may be restricted or not possible:
Our website uses Google Conversion Tracking. The operator is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. If you visit our website via an ad placed by Google, Google Ads will place a cookie on your computer. The conversion tracking cookie is set when a user clicks on an ad placed by Google. These cookies lose their validity after 30 days and are not used for personal identification. If the user visits certain pages of our website and the cookie has yet to expire, we and Google can recognize that the user clicked on the ad and was redirected to this page. Each Google Ads customer receives a different cookie. This means that cookies cannot be tracked via the websites of Ads customers. The information obtained using the conversion cookie is used to create conversion statistics for Ads customers who have opted for conversion tracking. Customers find out the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not receive any information by which users can be personally identified. The legal basis for data processing is Art. 6 para. 1 lit. a GDPR.
If you do not wish to participate in the tracking, you can reject the setting of a cookie required for this – for example, through a browser setting that generally deactivates the automatic setting of cookies or you can set your browser so that cookies from the "googleleadservices.com" domain are blocked.
Please note that you must not delete the opt-out cookies if you do not want measurement data to be recorded. If you have deleted all your cookies in the browser, you must set the opt-out cookie for this again.
Use of Google Remarketing
If you agree to "Advertising" in our consent tool, you consent to the following data processing and possible transmission to countries outside the European Economic Area. These countries may not have the same level of data protection and the enforcement of your rights may be restricted or not possible:
This website uses the remarketing function of Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. The function is used to present interest-based advertisements to website visitors within the Google advertising network. A so-called "cookie" is stored in the website visitor's browser, making it possible to recognize the visitor when they access websites that belong to the Google advertising network. On these pages, the visitor can be presented with advertisements that refer to content that the visitor has previously accessed on websites that use Google's remarketing function. The legal basis for data processing is Art. 6 para. 1 lit. a GDPR.
According to its own statements, Google does not collect any personal data during this process. If you nevertheless do not want Google's remarketing function, you can always deactivate it by making the appropriate settings at https://www.google.com/settings/ads. Alternatively, you can disable cookies for interest-based advertising through the Ad Network Initiative by following the instructions at https://www.networkadvertising.org/managing/opt_out.asp.
Appearance on Facebook
For the information service offered here, we use the technical platform and services of Facebook Ireland Ltd., 4 Grand Canal Square Grand Canal Harbour, Dublin 2, Ireland.
We want to point out that you use this Facebook page and its functions at your own risk. This applies in particular to the use of interactive functions (e.g., commenting, sharing, rating). Alternatively, you can access the information offered on this page on our website at https://www.doctoreckstein.de/DE-en.
When you visit our Facebook page, Facebook records, among other things, your IP address and other information that is available on your PC in the form of cookies. This information is used to provide us, as the operator of the Facebook pages, with statistical information about the use of the Facebook page. Facebook provides more information on this at the following link https://facebook.com/help/pages/insights .
The data collected about you in this context will be processed by Facebook Ltd. and possibly transferred to countries outside the European Union. Facebook describes in general terms what information Facebook receives and how it is used in its data use policy. There you will also find information about how to contact Facebook and how to set up advertisements. The data use policy is available at the following link https://facebook.com/privacy/policy/?entry_point=data_policy_redirect&entry=0
You can find Facebook's full data use policy here https://facebook.com/full_data_use_policy
How Facebook uses the data from visiting Facebook pages for its own purposes, to what extent activities on the Facebook page are assigned to individual users, how long Facebook stores these data, and whether data from a visit to the Facebook page is passed on to third parties is not definitively and clearly stated by Facebook and is not known to us. When you access a Facebook page, the IP address assigned to your device is transmitted to Facebook. According to information from Facebook, this IP address is anonymized (in the case of "German" IP addresses). Facebook also stores information about its users' end devices (e.g., as part of the "registration notification" function); it may be possible for Facebook to assign IP addresses to individual users. If you are currently logged in to Facebook as a user, there will be a cookie with your Facebook ID on your device. This enables Facebook to see that you have visited this site and how you have used it. This also applies to all other Facebook pages. Facebook buttons integrated into websites enable Facebook to record your visits to these websites and assign them to your Facebook profile. Based on these data, content or advertising tailored to you can be offered.
To avoid this, you should log out of Facebook or deactivate the "keep me logged in" function, delete the cookies on your device, and exit and restart your browser. In this way, Facebook information that can be used to identify you directly is deleted. This allows you to use our Facebook page without revealing your Facebook ID. When you access interactive features of the site (like, comment, share, message), a Facebook login screen appears. After you have logged in, you will be recognized again by Facebook as a specific user.
Information on how you can manage or delete existing information about you can be found on the following Facebook support pages https://facebook.com/privacy/policy/?entry_point=data_policy_redirect&entry=0
As the provider of the information service, we do not collect or process any data from your use of our service.
You can find the currently valid version of this data privacy statement on our homepage, linked under the item "Privacy Policy" on our Facebook page. If you have any questions about the information we offer, you can contact us at the email address: datenschutz@doctoreckstein.de. Further information on Facebook and other social networks and how you can protect your data can also be found on Youngdata https://www.youngdata.de/
Appearance on Instagram
For the information service offered here, we use the technical platform and services of Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland.
We want to point out that you use this Instagram page and its functions at your own risk. This applies in particular to the use of interactive functions (e.g., commenting, sharing, rating). Alternatively, you can access the information offered on this page on our website at https://www.doctoreckstein.de/DE-en.
When you visit our Facebook page, Instagram records, among other things, your IP address and other information that is available on your PC in the form of cookies. This information is used to provide us, as the operator of the Instagram pages, with statistical information about the use of the Instagram page. Facebook provides more information on this at the following link https://help.instagram.com/581066165581870/
The data collected about you in this context will be processed by Meta Platforms Ireland Limited and may be transferred to countries outside the European Union. Instagram describes what information Instagram receives and how it is used in general terms in its data use policy. There you will also find information about contact options for Instagram and the setting options for advertisements. The data use policy is available at the following link https://facebook.com/privacy/policy/?entry_point=data_policy_redirect&entry=0
How Instagram uses the data from visiting Instagram pages for its own purposes, to what extent activities on the Instagram page are assigned to individual users, how long Instagram stores these data, and whether data from a visit to the Instagram page is passed on to third parties are passed on, is not definitively and clearly stated by Instagram and is not known to us. When you access an Instagram page, the IP address assigned to your device is transmitted to Instagram. According to information from Instagram, this IP address is anonymized (for "German" IP addresses). Instagram also stores information about its users' end devices (e.g., as part of the "Login notification" function); if necessary, Instagram is thus able to allocate IP addresses to individual users. If you are currently logged in to Instagram as a user, there is a cookie with your Instagram ID on your device. This enables Instagram to understand that you have visited this page and how you have used it. This also applies to all other Instagram pages. Instagram buttons integrated into websites enable Instagram to record your visits to these websites and assign them to your Instagram profile. Based on these data, content or advertising tailored to you can be offered.
To avoid this, you should log out of Instagram or deactivate the "remember me" function, delete the cookies on your device, and exit and restart your browser. In this way, Instagram information that can be used to identify you directly is deleted. This allows you to use our Instagram page without revealing your Instagram ID. When you access interactive features of the site (like, comment, share, message), an Instagram login screen appears. After you have logged in, Instagram will recognize you again as a specific user.
Information on how you can manage or delete existing information about you can be found on the following Instagram support pages https://facebook.com/privacy/policy/?entry_point=data_policy_redirect&entry=0
As the provider of the information service, we do not collect or process any data from your use of our service.
You can find the currently valid version of this data privacy statement on our homepage, linked under the item "Privacy Policy" on our Instagram page. If you have any questions about the information we offer, you can contact us at the email address: datenschutz@doctoreckstein.de. Further information on Instagram and other social networks and how you can protect your data can also be found on Youngdata https://www.youngdata.de/
Changes to our privacy policy
We reserve the right to adapt this data privacy statement to keep it in line with the current legal requirements or to include changes to our services in the data privacy statement, e.g., introduction of new services. The new data privacy statement will then apply to your next visit.