1. Data protection at a glance

General information

The following information shall give you an overview about what happens with your personal data once you visit our website. Personal data relates to any data you can personally be identified by. Detailed information on the subject of data protection can be found in the privacy statement listed below.

Data collection at our website

Data collection at our website is made by the operator of the website. For contact information see the imprint of this website.

How do we use your data?

Some data collection is done to guarantee an error-free use of the website. Other data may be used for analyzing your usage behavior.

Analytical tools and tools of third parties

When visiting our website, your surfing behavior may be statistically evaluated. This mostly takes place by using cookies and so called analysis programs. The analysis of your surfing behavior usually takes place anonymously; the surfing behavior may not be traced back to you. You may object to this analysis or inhibit it by not using certain tools. For more detailed information see the following privacy statement.

You may object to this analysis. You will find information about the opt-out options in this privacy statement.

 

2. General and obligatory information

Data protection

The operators of this website take the protection of your data very seriously. We keep your personal data confidential and use it accordingly to the relevant regulations of data security and this privacy statement.

When using this website, numerous personal data will be collected. Personal data relates to any data you can personally be identified by. The following privacy statement illustrates what data we collect and how we use it. It also explains how and for what purpose this takes place.

We draw your attention to the fact that data transmission over the internet (e.g. when communicating by email) may involve gaps in security. It is not possible to protect such data completely against the use by third parties.

Information about the responsible body

Responsible for data collection at this website is

Paul Schandl
Haydngasse 3
7071 Rust
Austria
info@schandlwein.com
Phone: 0043(0)2685/265

Responsible body shall mean the natural or legal person that decides upon the purposes and means of processing personal data (e.g. name, email address,…) alone or together with others.

Withdrawal of your consent concerning data processing

Many data processing operations can only take place upon your explicit consent. You may withdraw your consent at any time. This only requires an informal notification sent by email to us. The lawfulness of the data collected before your withdrawal shall remain unaffected.

SSL/TLS encryption

For security reasons and for the protection of transmitting sensitive data, like orders or requests you send to us as website operator, this website uses SSL/TLS encryption. You may recognize an encrypted connection by “http://“ changing to “https://” at the address field of your browser and by the lock symbol at your browser line.

If the SSL/TLS encryption is activated, any data that you transfer to us may not be read by third parties.

Encrypted payments at this website

If you are obligated to transfer your payment details (e.g. bank account number for direct debit authorization) to us after conclusion of a fee required contract, this data is used for payment processing.

Payments via commonly used means of payment (Visa/MasterCard, direct debit) exclusively take place via encrypted SSL/TLS connections. You may recognize an encrypted connection by “http://“ changing to “https://” at the address field of your browser and by the lock symbol at your browser line.

If the SSL/TLS encryption is activated, any data that you transfer to us may not be read by third parties.

 

3. Data collection at our website

Cookies

Websites partially use so called cookies. Cookies do not cause any damage to your computer and do not contain viruses. Cookies shall make our offer more user-friendly, more effective and more secure. Cookies are small text files that are placed by your computer and stored by your browser.

Most of the cookies that we use are so called “Session-Cookies”. They are automatically deleted at the end of your visit. Other cookies will remain on your computer until you delete them. These cookies allow us to recognize your browser at your next visit.

You can adjust your browser in a way that you are informed about the placement of cookies, may allow cookies only in individual cases, refuse to accept cookies in certain cases as well as activate the automatic deletion of cookies when the browser is closed. The deactivation of cookies may restrict the functionality of this website.

Cookies that are necessary for the execution of the electronic communication process or the provision of certain functions requested by you (e.g. shopping cart function) are saved on the basis of Art. 6 section 1 lit. f DSGVO. The website operator has a justified interest in saving cookies for providing technically smooth and optimized services. Provided that other cookies are saved (e.g. cookies for analyzing your surfing behavior) they shall be dealt with separately in this privacy statement.

Server log files

The provider of websites collects and saves information automatically in so called server log files. They are automatically transferred to us by your browser. These are:

  • browser type and browser version
  • used operating system
  • referrer URL
  • host name of the accessing computer
  • exact time of server request
  • IP-adress

These data are not merged with other data sources.

Basis for this data collection is Art. 6 section 1 lit. f DSGVO that authorizes the collection of data for fulfillment of a contract or pre-contract measures.

Registration at this website

You may register at our website to use additional functions at the website. We use the inserted data only for the purpose of usage of the respective offer or service you registered for. Any mandatory information necessary for the registration must be completely stated. Otherwise we will reject the registration.

In the case of important changes concerning the scope of the offer or in the case of technically necessary changes, we use the email address you indicated at your registration to inform you about that.

The processing of the data you indicated at your registration shall take place on the basis of your approval (Art. 6 Abs. 1 lit. a DSGVO). You may withdraw your consent at any time. This only requires an informal notification sent by email to us. The lawfulness of the data collected before your withdrawal shall remain unaffected.

The data collected at your registration shall be saved by us for as long as you are registered at our website and subsequently deleted. Legal retention periods shall remain unaffected.

Comments function at this website

For comments function at this website, not only the comment but also the exact time of posting, your email address and your chosen user name (in the case that you do not post the comment anonymously) are saved.

Retention of IP address

Our comments function saves the IP addresses of the users who post comments. Since we do not check comments before activation, we need this data in order to proceed against the author in case of infringements like insults or propaganda.

Subscribe to comments

As user of the website you may subscribe to comments after logging in. You will receive a confirmation email to examine whether you are the owner of the indicated email address. You may withdraw from this function at any time via a link provided in the information mail. In this case, the data indicated in the course of subscribing to comments will be deleted; in the case you transferred these data for other purposes or elsewhere to us (e.g. newsletter subscription), they will remain our property.

Storage period of comments

The comments and all data related to them (e.g. IP address) are saved and will remain at our website until the commented content will be fully deleted or the comments have to be deleted for legal reasons (e.g. offensive comments).

Legal basis

The storage of comments takes place on the basis of your approval (Art. 6 section 1 lit. a DSGVO). You may withdraw your consent at any time. This only requires an informal notification sent by email to us. The lawfulness of the data collected before your withdrawal shall remain unaffected.

Processing data (customer and contract data)

We survey, process and use personal data only as far as it is required for the establishment, content-related design or change of the legal relationship (inventory data). This takes place on the basis of Art. 6 Abs. 1 lit. b DSGVO that authorizes the collection of data for fulfillment of a contract or pre-contract measures.
We survey, process and use personal data concerning the usage of our website (user data) only as far as this is required to enable the user to use or to render our services.

The collected customer data shall be deleted upon execution of the order or after termination of the business relationship.
Legal retention periods shall remain unaffected.

Data transmission at conclusion of contract for online shops, distributors and dispatch of goods

We only transfer personal data to third parties, if this is necessary during the implementation of this contract, for example to the company entrusted with delivering the goods or credit institution assigned with handling payments. Further transmission does not take place or rather only if you approved upon transmission explicitly. Your personal data is not transmitted to third parties without your approval (e.g. for purposes of advertising).

The processing of data takes place on the basis of Art. 6 section 1 lit. b DSGVO that authorizes the collection of data for fulfillment of a contract or pre-contract measures.

 

4. Newsletter

Newsletter data

In case you would like to receive the newsletter offered by us at this website, we need to know your email address as well as information that enable us to examine whether you are the owner of the indicated email address and agree upon the receipt of the newsletter. Further data is not collected (only on a voluntary basis). We exclusively use this data for sending the requested information and do not transmit them to third parties.

The processing of the data entered in the newsletter registration form exclusively takes place on the basis of your approval (Art. 6 section 1 lit. a DSGVO). You may withdraw from the given approval on the storage of data, email address as well as its usage for sending the newsletter at any time (e.g. via the “deregister” link in the newsletter). The lawfulness of the data collected before your withdrawal shall remain unaffected.

The data collected for the purpose of sending the newsletter shall be stored until you deregister from the newsletter and be deleted afterwards. Data collected for other purposes (e.g. email address for member area) shall remain unaffected.

MailChimp

This website uses the services of MailChimp to send out its newsletters. The provider is the Rocket Science Group LLC, 675 Ponce De Leon Ave NE, Suite 5000, Atlanta, GA 30308, USA.

Among other things, MailChimp is a service that can be deployed to organize and analyze the sending of newsletters. Whenever you enter data for the purpose of subscribing to a newsletter (e.g. your e-mail address), the information is stored on MailChimp servers in the United States.

With the assistance of the MailChimp tool, we can analyze the performance of our newsletter campaigns. If you open an e-mail that has been sent through the MailChimp tool, a file that has been integrated into the e-mail (a so-called web-beacon) connects to MailChimp’s servers in the United States. As a result, it can be determined whether a newsletter message has been opened and which links the recipient possibly clicked on. Technical information is also recorded at that time (e.g. the time of access, the IP address, type of browser and operating system). This information cannot be allocated to the respective newsletter recipient. Their sole purpose is the performance of statistical analyses of newsletter campaigns. The results of such analyses can be used to tailor future newsletters to the interests of their recipients more effectively.

If you do not want to permit an analysis by MailChimp, you must unsubscribe from the newsletter. We provide a link for you to do this in every newsletter message. Moreover, you can also unsubscribe from the newsletter right on the website.

The data is processed based on your consent (Art. 6 Sect. 1 lit. a GDPR).  You may revoke any consent you have given at any time by unsubscribing from the newsletter. This shall be without prejudice to the lawfulness of any data processing transactions that have taken place prior to your revocation.

The data deposited with us for the purpose of subscribing to the newsletter will be stored by us until you unsubscribe from the newsletter or the newsletter service provider and deleted from the newsletter distribution list after you unsubscribe from the newsletter. Data stored for other purposes with us remain unaffected.

After you unsubscribe from the newsletter distribution list, your e-mail address may be stored by us or the newsletter service provider in a blacklist to prevent future mailings. The data from the blacklist is used only for this purpose and not merged with other data. This serves both your interest and our interest in complying with the legal requirements when sending newsletters (legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR). The storage in the blacklist is indefinite. You may object to the storage if your interests outweigh our legitimate interest.

For more details, please consult the Data Privacy Policies of MailChimp at: https://mailchimp.com/legal/terms/.

Execution of a contract data processing agreement
We have executed a so-called “Data Processing Agreement” with MailChimp, in which we mandate that MailChimp undertakes to protect the data of our customers and to refrain from sharing it with third parties.

 

5. Payment providers

PayPal

We offer at our website the payment via PayPal. Provider of this payment service is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter “PayPal”).

If you chose the payment via PayPal, your payment data will be transmitted to PayPal.

The transmission of your data to PayPal takes place on the basis of art. 6 section 1 lit. a DSGVO (approval) and art. 6 section 1 lit. b DSGVO (processing of contract performance). You may withdraw from this approval at any time. The lawfulness of the data collected before your withdrawal shall remain unaffected.

Immediate transfer via Sofort

We offer at our website the payment via Sofort. Provider of this payment service is Sofort GmbH, Theresienhöhe 12, 80339 München (hereinafter “Sofort GmbH”).

With the help of Sofort transfer, we will get a payment confirmation by the Sofort GmbH in real time. Thus, we may start with the fulfillment of our obligations immediately.

If you have chosen the payment method “Sofort transfer”, you will transmit your PIN and TAN to the Sofort GmbH. Thus, they may log in to your online banking account. Upon log in, the Sofort GmbH automatically checks your account balance and will perform the transfer to us by using the TAN transmitted by you earlier. We will get a transaction confirmation subsequently. After logging in, also your revenues, the credit line of your overdraft facility and the existence of other banking accounts will be examined.

Not only PIN and TAN but also personal data indicated by you will be transferred to the Sofort GmbH. The personal data relates to first and last name, address, phone number(s), email address, IP address and any other data necessary for payment processes. The transmission of this data is necessary to ensure your reliable identification and to prevent fraudulent practice.

The transmission of your data to the Sofort GmbH takes place on the basis of art. 6 section 1 lit. a DSGVO (approval) and art. 6 section 1 lit. b DSGVO (processing of contract performance). You may withdraw from this approval at any time. The lawfulness of the data collected before your withdrawal shall remain unaffected.

For more details about payment via Sofort transfer see: https://www.sofort.de/datenschutz.html und https://www.klarna.com/sofort/.

In the event of any conflict or inconsistency between the English and the German version of this privacy statement, the German original shall prevail.

Quelle: e-Recht24.de