1. Data protection at a glance

General information

The following information shall give you an overview about what happens with your personal data once you visit our website. Personal data relates to any data you can personally be identified by. Detailed information on the subject of data protection can be found in the privacy statement listed below.

Data collection at our website

Data collection at our website is made by the operator of the website. For contact information see the imprint of this website.

How do we use your data?

Some data collection is done to guarantee an error-free use of the website. Other data may be used for analyzing your usage behavior.

Analytical tools and tools of third parties

When visiting our website, your surfing behavior may be statistically evaluated. This mostly takes place by using cookies and so called analysis programs. The analysis of your surfing behavior usually takes place anonymously; the surfing behavior may not be traced back to you. You may object to this analysis or inhibit it by not using certain tools. For more detailed information see the following privacy statement.

You may object to this analysis. You will find information about the opt-out options in this privacy statement.

 

2. General and obligatory information

Data protection

The operators of this website take the protection of your data very seriously. We keep your personal data confidential and use it accordingly to the relevant regulations of data security and this privacy statement.

When using this website, numerous personal data will be collected. Personal data relates to any data you can personally be identified by. The following privacy statement illustrates what data we collect and how we use it. It also explains how and for what purpose this takes place.

We draw your attention to the fact that data transmission over the internet (e.g. when communicating by email) may involve gaps in security. It is not possible to protect such data completely against the use by third parties.

Information about the responsible body

Responsible for data collection at this website is

Paul Schandl
Haydngasse 3
7071 Rust
Austria
info@schandlwein.com
Phone: 0043(0)2685/265

Responsible body shall mean the natural or legal person that decides upon the purposes and means of processing personal data (e.g. name, email address,…) alone or together with others.

Withdrawal of your consent concerning data processing

Many data processing operations can only take place upon your explicit consent. You may withdraw your consent at any time. This only requires an informal notification sent by email to us. The lawfulness of the data collected before your withdrawal shall remain unaffected.

SSL/TLS encryption

For security reasons and for the protection of transmitting sensitive data, like orders or requests you send to us as website operator, this website uses SSL/TLS encryption. You may recognize an encrypted connection by “http://“ changing to “https://” at the address field of your browser and by the lock symbol at your browser line.

If the SSL/TLS encryption is activated, any data that you transfer to us may not be read by third parties.

Encrypted payments at this website

If you are obligated to transfer your payment details (e.g. bank account number for direct debit authorization) to us after conclusion of a fee required contract, this data is used for payment processing.

Payments via commonly used means of payment (Visa/MasterCard, direct debit) exclusively take place via encrypted SSL/TLS connections. You may recognize an encrypted connection by “http://“ changing to “https://” at the address field of your browser and by the lock symbol at your browser line.

If the SSL/TLS encryption is activated, any data that you transfer to us may not be read by third parties.

 

3. Data collection at our website

Cookies

Websites partially use so called cookies. Cookies do not cause any damage to your computer and do not contain viruses. Cookies shall make our offer more user-friendly, more effective and more secure. Cookies are small text files that are placed by your computer and stored by your browser.

Most of the cookies that we use are so called “Session-Cookies”. They are automatically deleted at the end of your visit. Other cookies will remain on your computer until you delete them. These cookies allow us to recognize your browser at your next visit.

You can adjust your browser in a way that you are informed about the placement of cookies, may allow cookies only in individual cases, refuse to accept cookies in certain cases as well as activate the automatic deletion of cookies when the browser is closed. The deactivation of cookies may restrict the functionality of this website.

Cookies that are necessary for the execution of the electronic communication process or the provision of certain functions requested by you (e.g. shopping cart function) are saved on the basis of Art. 6 section 1 lit. f DSGVO. The website operator has a justified interest in saving cookies for providing technically smooth and optimized services. Provided that other cookies are saved (e.g. cookies for analyzing your surfing behavior) they shall be dealt with separately in this privacy statement.

Server log files

The provider of websites collects and saves information automatically in so called server log files. They are automatically transferred to us by your browser. These are:

  • browser type and browser version
  • used operating system
  • referrer URL
  • host name of the accessing computer
  • exact time of server request
  • IP-adress

These data are not merged with other data sources.

Basis for this data collection is Art. 6 section 1 lit. f DSGVO that authorizes the collection of data for fulfillment of a contract or pre-contract measures.

Registration at this website

You may register at our website to use additional functions at the website. We use the inserted data only for the purpose of usage of the respective offer or service you registered for. Any mandatory information necessary for the registration must be completely stated. Otherwise we will reject the registration.

In the case of important changes concerning the scope of the offer or in the case of technically necessary changes, we use the email address you indicated at your registration to inform you about that.

The processing of the data you indicated at your registration shall take place on the basis of your approval (Art. 6 Abs. 1 lit. a DSGVO). You may withdraw your consent at any time. This only requires an informal notification sent by email to us. The lawfulness of the data collected before your withdrawal shall remain unaffected.

The data collected at your registration shall be saved by us for as long as you are registered at our website and subsequently deleted. Legal retention periods shall remain unaffected.

Comments function at this website

For comments function at this website, not only the comment but also the exact time of posting, your email address and your chosen user name (in the case that you do not post the comment anonymously) are saved.

Retention of IP address

Our comments function saves the IP addresses of the users who post comments. Since we do not check comments before activation, we need this data in order to proceed against the author in case of infringements like insults or propaganda.

Subscribe to comments

As user of the website you may subscribe to comments after logging in. You will receive a confirmation email to examine whether you are the owner of the indicated email address. You may withdraw from this function at any time via a link provided in the information mail. In this case, the data indicated in the course of subscribing to comments will be deleted; in the case you transferred these data for other purposes or elsewhere to us (e.g. newsletter subscription), they will remain our property.

Storage period of comments

The comments and all data related to them (e.g. IP address) are saved and will remain at our website until the commented content will be fully deleted or the comments have to be deleted for legal reasons (e.g. offensive comments).

Legal basis

The storage of comments takes place on the basis of your approval (Art. 6 section 1 lit. a DSGVO). You may withdraw your consent at any time. This only requires an informal notification sent by email to us. The lawfulness of the data collected before your withdrawal shall remain unaffected.

Processing data (customer and contract data)

We survey, process and use personal data only as far as it is required for the establishment, content-related design or change of the legal relationship (inventory data). This takes place on the basis of Art. 6 Abs. 1 lit. b DSGVO that authorizes the collection of data for fulfillment of a contract or pre-contract measures.
We survey, process and use personal data concerning the usage of our website (user data) only as far as this is required to enable the user to use or to render our services.

The collected customer data shall be deleted upon execution of the order or after termination of the business relationship.
Legal retention periods shall remain unaffected.

Data transmission at conclusion of contract for online shops, distributors and dispatch of goods

We only transfer personal data to third parties, if this is necessary during the implementation of this contract, for example to the company entrusted with delivering the goods or credit institution assigned with handling payments. Further transmission does not take place or rather only if you approved upon transmission explicitly. Your personal data is not transmitted to third parties without your approval (e.g. for purposes of advertising).

The processing of data takes place on the basis of Art. 6 section 1 lit. b DSGVO that authorizes the collection of data for fulfillment of a contract or pre-contract measures.

 

4. Analytical tools and advertising

Google Analytics

This website uses functions of the web analysis service Google Analytics. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

Google Analytics uses so called “Cookies”. These are text files that are saved on your computer and enable an analysis of your usage of this website. The information about your usage of this website created by the cookie is usually transmitted to a Google server in the U.S. and saved there.

The storage of Google Analytics Cookies takes place on the basis of Art. 6 Abs. 1 lit. f DSGVO. The website operator has a justified interest in the analysis of the user behavior to optimize his promotional offer and his advertising.

IP anonymization

We activated the function IP anonymization at this website. Thus, your IP address is shortened by Goggle within the member states of the European Union and other member states, which are parties to the Agreement on the European Economic Area prior to the transmission to the U.S. Only in exceptional cases the whole IP address is transmitted to a Google server in the U.S. and shortened there. Under the authority of the provider of this website, Google shall use this information to analyze your usage of this website to set up reports about website activities and to provide further services related to website usage and internet usage at the request of the operator. The IP address transmitted by your browser in regards to Google Analytics shall not be merged with other data by Google.

Browser plug-in

You can avoid the installation of cookies by appropriately adjusting your browser software; however, we would like to make you aware of the fact that in this case you may not be able to use all the functions of this website. You can also avoid the transmission of your data relating to your usage of this website processed by cookies (incl. your IP address) to Google as well as the processing of this data by Google by clicking on the following link and downloading and installing the available browser plug-in: https://tools.google.com/dlpage/gaoptout?hl=de.

Withdrawal from data collection

You can avoid the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie is set that inhibits the collection of your data at future visits of this website: Deactivate Google Analytics

For more information on how Google Analytics deals with user data, please see the privacy statement of Google: https://support.google.com/analytics/answer/6004245?hl=de.

Contract data processing

We concluded a contract with Google concerning contract data processing and we fully implement the strict requirements of the German data protection authorities when it comes to the usage of Google Analytics.

Demographic characteristics at Google Analytics

This website uses the function “demographic characteristics” of Google Analytics. Thus, reports on age, sex and interests of website usage may be generated. This data originates from interest-related advertising by Google as well as from visitor data by third parties. This data cannot be related to a certain person. You may deactivate this function at the display settings of your Google account at any time or place a general ban on the collection of your data by Google Analytics as mentioned in the item “withdrawal from data collection”.

 

5. Newsletter

Newsletter data

In case you would like to receive the newsletter offered by us at this website, we need to know your email address as well as information that enable us to examine whether you are the owner of the indicated email address and agree upon the receipt of the newsletter. Further data is not collected (only on a voluntary basis). We exclusively use this data for sending the requested information and do not transmit them to third parties.

The processing of the data entered in the newsletter registration form exclusively takes place on the basis of your approval (Art. 6 section 1 lit. a DSGVO). You may withdraw from the given approval on the storage of data, email address as well as its usage for sending the newsletter at any time (e.g. via the “deregister” link in the newsletter). The lawfulness of the data collected before your withdrawal shall remain unaffected.

The data collected for the purpose of sending the newsletter shall be stored until you deregister from the newsletter and be deleted afterwards. Data collected for other purposes (e.g. email address for member area) shall remain unaffected.

MailChimp

This website uses the services of MailChimp for the sending of the newsletters. Provider is Rocket Science Group LLC, 675 Ponce De Leon Ave NE, Suite 5000, Atlanta, GA 30308, USA.

MailChimp is a service that enables the sending and analyzing of newsletters. If you enter data for the purpose of receiving the newsletter (e.g. email address), they are stored at the servers of MailChimp in the U.S.

MailChimp has a certification according to “EU-US-Privacy-Shield”. The privacy shield is an agreement between the European Union (EU) and the U.S. that guarantees the adherence to the European privacy standards in the U.S.

With the help of MailChimp we are able to analyze our newsletter campaigns. If you open an email sent by MailChimp, a file contained in the email (so called web beacon) will be connected to the servers of MailChimp in the U.S. Thus, it can be determined if the newsletter message was opened and what links were clicked on. Furthermore, technical information is collected (e.g. exact time of opening, IP address, browser type and operating system). This information may not be related to the recipient of the newsletter. They are solely used for the statistical analysis of the newsletter campaigns. The results of these analyses may be used to adjust future newsletters to the interests of the recipients.

If you refuse to be analyzed by MailChimp, you have to deregister from the newsletter. We will provide a corresponding link in every newsletter message. You may also unsubscribe from the newsletter at our website.

The processing of the data takes place on the basis of your approval (Art. 6 section 1 lit. a DSGVO). You may withdraw from this approval at any time by unsubscribing from the newsletter. The lawfulness of the data collected before your withdrawal shall remain unaffected.

The data collected for the purpose of receiving the newsletter shall be stored until you deregister from the newsletter and be deleted from our servers and from the servers of MailChimp afterwards. Data collected for other purposes (e.g. email address for member area) shall remain unaffected.

For further information please refer to the privacy statement of MailChimp: https://mailchimp.com/legal/terms/.

Conclusion of a data processing agreement

We concluded a so called data processing agreement with MailChimp. Thus, MailChimp is obligated to protect our customers´ data and may not transfer them to third parties. The following link will lead you to the agreement: https://mailchimp.com/legal/forms/data-processing-agreement/sample-agreement/.

 

6. Plug-ins and Tools

Google web fonts

For the purpose of a uniform presentation of fonts, this website uses so called web fonts provided by Google. When opening a website, your browser stores the necessary web fonts in your browser cache to correctly display texts and fonts.

Therefore, your browser has to be connected to Google servers. Thus, Google will know that a website has been opened by your IP address. The usage of Google web fonts is performed in the interest of a uniform and appealing presentation of our online offers. This is a justified interest according to Art. 6 section 1 lit. f DSGVO.

If your browser does not support web fonts, a standard font is used by your computer.

For further information on Google web fonts please see: https://developers.google.com/fonts/faq and the Google privacy statement: https://www.google.com/policies/privacy/.

Google maps

This website uses the map service Google maps via an API. Provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

For using the functions of Google maps it is necessary to save your IP address. This information is usually sent to a Google server in the U.S. and saved there. The operator of this website has no influence on this transmission.

The usage of Google maps takes place in order to provide an appealing presentation of our online offer. It shall also make it easier to locate the places mentioned at our website. This is a justified interest according to Art. 6 section 1 lit. f DSGVO.

For more information on how Google deals with user data, please see the privacy statement of Google: https://www.google.de/intl/de/policies/privacy/.

 

7. Payment providers

PayPal

We offer at our website the payment via PayPal. Provider of this payment service is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter “PayPal”).

If you chose the payment via PayPal, your payment data will be transmitted to PayPal.

The transmission of your data to PayPal takes place on the basis of art. 6 section 1 lit. a DSGVO (approval) and art. 6 section 1 lit. b DSGVO (processing of contract performance). You may withdraw from this approval at any time. The lawfulness of the data collected before your withdrawal shall remain unaffected.

Immediate transfer via Sofort

We offer at our website the payment via Sofort. Provider of this payment service is Sofort GmbH, Theresienhöhe 12, 80339 München (hereinafter “Sofort GmbH”).

With the help of Sofort transfer, we will get a payment confirmation by the Sofort GmbH in real time. Thus, we may start with the fulfillment of our obligations immediately.

If you have chosen the payment method “Sofort transfer”, you will transmit your PIN and TAN to the Sofort GmbH. Thus, they may log in to your online banking account. Upon log in, the Sofort GmbH automatically checks your account balance and will perform the transfer to us by using the TAN transmitted by you earlier. We will get a transaction confirmation subsequently. After logging in, also your revenues, the credit line of your overdraft facility and the existence of other banking accounts will be examined.

Not only PIN and TAN but also personal data indicated by you will be transferred to the Sofort GmbH. The personal data relates to first and last name, address, phone number(s), email address, IP address and any other data necessary for payment processes. The transmission of this data is necessary to ensure your reliable identification and to prevent fraudulent practice.

The transmission of your data to the Sofort GmbH takes place on the basis of art. 6 section 1 lit. a DSGVO (approval) and art. 6 section 1 lit. b DSGVO (processing of contract performance). You may withdraw from this approval at any time. The lawfulness of the data collected before your withdrawal shall remain unaffected.

For more details about payment via Sofort transfer see: https://www.sofort.de/datenschutz.html und https://www.klarna.com/sofort/.

In the event of any conflict or inconsistency between the English and the German version of this privacy statement, the German original shall prevail.

Quelle: e-Recht24.de