Imprint

Information in accordance with §5 of the E-Commerce Act, §14 of the Unternehmensgesetzbuch, §63 of the Commercial Code and disclosure requirements under §25 of the Media Act.

Herbert Muska

Kraygasse 64,
1220 Wien,
Österreich

Phone: 01/271159936

Source: Created with the Impressum Generator by AdSimple® in cooperation with aboutbusiness.at

Privacy policy

Table of Contents

Privacy Policy

Automatic Data Retention

Cookies

Storage of Personal Data

Rights in accordance with the General Data Protection Regulation

Evaluation of Visitor Behaviour

TLS encryption with https

Newsletter Privacy Policy

Embedded Social Media elements Privacy Policy

YouTube Privacy Policy

Zoom Privacy Policy

Sofortüberweisung Privacy Policy

Privacy Policy

We created this Privacy Policy (version 01.01.1970-121388074), to declare which information we collect, how we use data and which options the users of our website have, according to the guidelines of the General Data Protection Regulation (EU) 2016/679

Unfortunately, these subjects sound rather technical due to their nature, but we have put much effort into describing the most important things as simply and clearly as possible.

Automatic Data Retention

Every time you visit a website nowadays, certain information is automatically created and saved, just as it happens on this website.

Whenever you visit our website such as you are doing right now, our webserver (computer on which this website is saved/stored) automatically saves data such as

the address (URL) of the accessed website

browser and browser version

the used operating system

the address (URL) of the previously visited site (referrer URL)

the host name and the IP-address of the device the website is accessed from

date and time

in files (webserver-logfiles).

Generally, webserver-logfiles stay saved for two weeks and then get deleted automatically. We do not pass this information to others, but we cannot exclude the possibility that this data will be looked at in case of illegal conduct.

Cookies

Our website uses HTTP-cookies to store user-specific data.
For your better understanding of the following Privacy Policy statement, we will explain to you below what cookies are and why they are in use.

What exactly are cookies?

Every time you surf the internet, you use a browser. Common browsers are for example Chrome, Safari, Firefox, Internet Explorer and Microsoft Edge. Most websites store small text-files in your browser. These files are called cookies.

What should not be dismissed, is that cookies are very useful little helpers. Nearly all websites use cookies. More accurately speaking these are HTTP-cookies, since there are also different cookies for other uses. http-cookies are small files which our website stores on your computer. These cookie files are automatically put into the cookie-folder, which is like the “brain” of your browser. A cookie consists of a name and a value. Moreover, to define a cookie, one or multiple attributes must be specified.

Cookies save certain parts of your user data, such as e.g. language or personal page settings. When you re-open our website, your browser submits these “user specific” information back to our site. Thanks to cookies, our website knows who you are and offers you the settings you are familiar to. In some browsers every cookie has its own file, in others such as Firefox, all cookies are stored in one single file.

There are both first-party cookies and third-party coookies. First-party cookies are created directly by our site, while third-party cookies are created by partner-websites (e.g. Google Analytics). Every cookie is individual, since every cookie stores different data. The expiration time of a cookie also varies – it can be a few minutes, or up to a few years. Cookies are no software-programs and contain no computer viruses, trojans or any other malware. Cookies also cannot access your PC’s information.

This is an example of how cookie-files can look:

name: _ga
value: GA1.2.1326744211.152121388074-9
purpose: differentiation between website visitors
expiration date: after 2 years

A browser should support these minimum sizes:

at least 4096 bytes per cookie

at least 50 cookies per domain

at least 3000 cookies in total

Which types of cookies are there?

What exact cookies we use, depends on the used services. We will explain this in the following sections of the Privacy Policy statement. Firstly, we will briefly focus on the different types of HTTP-cookies.

There are 4 different types of cookies:

Essential Cookies
These cookies are necessary to ensure the basic function of a website. They are needed when a user for example puts a product into their shopping cart, then continues surfing on different websites and comes back later in order to proceed to the checkout. Even when the user closed their window priorly, these cookies ensure that the shopping cart does not get deleted.

Purposive Cookies
These cookies collect info about the user behaviour and record if the user potentially receives any error messages. Furthermore, these cookies record the website’s loading time as well as its behaviour within different browsers.

Target-orientated Cookies
These cookies care for an improved user-friendliness. Thus, information such as previously entered locations, fonts or data in forms stay saved.

Advertising Cookies
These cookies are also known as targeting-Cookies. They serve the purpose of delivering individually adapted advertisements to the user. This can be very practical, but also rather annoying.

Upon your first visit to a website you are usually asked which of these cookie-types you want to accept. Furthermore, this decision will of course also be saved in a cookie.

How can I delete cookies?

You yourself take the decision if and how you want to use cookies. Thus, no matter what service or website cookies are from, you always have the option to delete, deactivate or only partially allow them. Therefore, you can for example block cookies of third parties but allow any other cookies.

If you want change or delete cookie-settings and would like to determine which cookies have been saved to your browser, you can find this info in your browser-settings:

Chrome: Clear, enable and manage cookies in Chrome

Safari: Manage cookies and website data in Safari

Firefox: Clear cookies and site data in Firefox

Internet Explorer: Delete and manage cookies

Microsoft Edge: Delete cookies in Microsoft Edge

If you generally do not want to allow any cookies at all, you can set up your browser in a way, to notify you whenever a potential cookie is about to be set. This gives you the opportunity to manually decide to either permit or deny the placement of every single cookie. The settings for this differ from browser to browser. Therefore, it might be best for you to search for the instructions in Google. If you are using Chrome, you could for example put the search phrase “delete cookies Chrome” or “deactivate cookies Chrome” into Google.

How is my data protected?

There is a “cookie policy” that has been in place since 2009. It states that the storage of cookies requires the user’s consent. However, among the countries of the EU, these guidelines are often met with mixed reactions. In Austria the guidelines have been implemented in § 96 section 3 of the Telecommunications Act (TKG).

If you want to learn more about cookies and do not mind technical documentation, we recommend https://tools.ietf.org/html/rfc6265, the Request for Comments of the Internet Engineering Task Force (IETF) called “HTTP State Management Mechanism”.

Storage of Personal Data

Any personal data you electronically submit to us on this website, such as your name, email address, home address or other personal information you provide via the transmission of a form or via any comments to the blog, are solely used for the specified purpose and get stored securely along with the respective submission times and IP-address. These data do not get passed on to third parties.

Therefore, we use personal data for the communication with only those users, who have explicitly requested being contacted, as well as for the execution of the services and products offered on this website. We do not pass your personal data to others without your approval, but we cannot exclude the possibility this data will be looked at in case of illegal conduct.

If you send us personal data via email – and thus not via this website – we cannot guarantee any safe transmission or protection of your data. We recommend you, to never send confidential data via email.

Rights in accordance with the General Data Protection Regulation

You are granted the following rights in accordance with the provisions of the GDPR (General Data Protection Regulation) and the Austrian Data Protection Act (DSG):

right to rectification (article 16 GDPR)

right to erasure (“right to be forgotten“) (article 17 GDPR)

right to restrict processing (article 18 GDPR)

righ to notification – notification obligation regarding rectification or erasure of personal data or restriction of processing (article 19 GDPR)

right to data portability (article 20 GDPR)

Right to object (article 21 GDPR)

right not to be subject to a decision based solely on automated processing – including profiling – (article 22 GDPR)

If you think that the processing of your data violates the data protection law, or that your data protection rights have been infringed in any other way, you can lodge a complaint with your respective regulatory authority. For Austria this is the data protection authority, whose website you can access at https://www.data-protection-authority.gv.at/.

Evaluation of Visitor Behaviour

In the following Privacy Policy, we will inform you on if and how we evaluate the data of your visit to this website. The evaluation is generally made anonymously, and we cannot link to you personally based on your behaviour on this website.

You can find out more about how to disagree with the evaluation of visitor data, in the Privacy Policy below.

TLS encryption with https

We use https to transfer information on the internet in a tap-proof manner (data protection through technology design Article 25 Section 1 GDPR). With the use of TLS (Transport Layer Security), which is an encryption protocol for safe data transfer on the internet, we can ensure the protection of confidential information. You can recognise the use of this safeguarding tool by the little lock-symbol, which is situated in your browser’s top left corner, as well as by the use of the letters https (instead of http) as a part of our web address.

Newsletter Privacy Policy

When you subscribe to our Newsletter you submit your personal data and give us the right to contact you via email. We use the data that is stored for the registration for the Newsletter exclusively for our Newsletter and do not pass them on.

If you unsubscribe from the newsletter – for which you can find a link in the bottom of every newsletter – we will delete all data that was saved when you registered for the newsletter.

Embedded Social Media elements Privacy Policy

We have embedded elements from social media services on our website, to display pictures, videos and texts. By visiting pages that present such elements, data is transferred from your browser to the respective social media service, where it is stored. We do not have access to this data.
The following links lead to the respective social media services’ sites, where you can find a declaration on how they handle your data:

Instagram Data Policy: https://help.instagram.com/519522125107875

For YouTube, the Google Privacy Policy applies: https://policies.google.com/privacy?hl=en-GB

Facebook Data Policy: https://www.facebook.com/about/privacy

Twitter Privacy Policy: https://twitter.com/en/privacy

YouTube Privacy Policy

We have integrated YouTube videos to our website. Therefore, we can show you interesting videos directly on our site. YouTube is a video portal, which has been a subsidiary company of Google LLC since 2006. The video portal is operated by YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. When you visit a page on our website that contains an embedded YouTube video, your browser automatically connects to the servers of YouTube or Google. Thereby, certain data are transferred (depending on the settings). Google is responsible for YouTube’s data processing and therefore Google’s data protection applies.

In the following we will explain in more detail which data is processed, why we have integrated YouTube videos and how you can manage or clear your data.

What is YouTube?

On YouTube, users can watch, rate, comment or upload videos for free. Over the past few years, YouTube has become one of the most important social media channels worldwide. For us to be able to display videos on our website, YouTube provides a code snippet that we have integrated to our website.

Why do we use YouTube videos on our website?

YouTube is the video platform with the most visitors and best content. We strive to offer you the best possible user experience on our website, which of course includes interesting videos. With the help of our embedded videos, we can provide you other helpful content in addition to our texts and images. Additionally, embedded videos make it easier for our website to be found on the Google search engine. Moreover, if we place ads via Google Ads, Google only shows these ads to people who are interested in our offers, thanks to the collected data.

What data is stored by YouTube?

As soon as you visit one of our pages with an integrated YouTube, YouTube places at least one cookie that stores your IP address and our URL. If you are logged into your YouTube account, by using cookies YouTube can usually associate your interactions on our website with your profile. This includes data such as session duration, bounce rate, approximate location, technical information such as browser type, screen resolution or your Internet provider. Additional data can include contact details, potential ratings, shared content via social media or YouTube videos you added to your favourites.

If you are not logged in to a Google or YouTube account, Google stores data with a unique identifier linked to your device, browser or app. Thereby, e.g. your preferred language setting is maintained. However, many interaction data cannot be saved since less cookies are set.

In the following list we show you cookies that were placed in the browser during a test. On the one hand, we show cookies that were set without being logged into a YouTube account. On the other hand, we show you what cookies were placed while being logged in. We do not claim for this list to be exhaustive, as user data always depend on how you interact with YouTube.

Name: YSC
Value: b9-CV6ojI5Y121388074-1
Purpose: This cookie registers a unique ID to store statistics of the video that was viewed.
Expiry date: after end of session

Name: PREF
Value: f1=50000000
Purpose: This cookie also registers your unique ID. Google receives statistics via PREF on how you use YouTube videos on our website.
Expiry date: after 8 months

Name: GPS
Value: 1
Purpose: This cookie registers your unique ID on mobile devices to track GPS locations.
Expiry date: after 30 minutes

Name: VISITOR_INFO1_LIVE
Value: 95Chz8bagyU
Purpose: This cookie tries to estimate the user’s internet bandwith on our sites (that have built-in YouTube videos).
Expiry date: after 8 months

Further cookies that are placed when you are logged into your YouTube account:

Name: APISID
Value: zILlvClZSkqGsSwI/AU1aZI6HY7121388074-
Purpose: This cookie is used to create a profile on your interests. This data is then used for personalised advertisements.
Expiry date: after 2 years

Name: CONSENT
Value: YES+AT.de+20150628-20-0
Purpose: The cookie stores the status of a user’s consent to the use of various Google services. CONSENT also provides safety measures to protect users from unauthorised attacks.
Expiry date: after 19 years

Name: HSID
Value: AcRwpgUik9Dveht0I
Purpose: This cookie is used to create a profile on your interests. This data helps to display customised ads.
Expiry date: after 2 years

Name: LOGIN_INFO
Value: AFmmF2swRQIhALl6aL…
Purpose: This cookie stores information on your login data.
Expiry date: after 2 years

Name: SAPISID
Value: 7oaPxoG-pZsJuuF5/AnUdDUIsJ9iJz2vdM
Purpose: This cookie identifies your browser and device. It is used to create a profile on your interests.
Expiry date: after 2 years

Name: SID
Value: oQfNKjAsI121388074-
Purpose: This cookie stores your Google Account ID and your last login time, in a digitally signed and encrypted form.
Expiry date: after 2 years

Name: SIDCC
Value: AN0-TYuqub2JOcDTyL
Purpose: This cookie stores information on how you use the website and on what advertisements you may have seen before visiting our website.
Expiry date: after 3 months

How long and where is the data stored?

The data YouTube receive and process on you are stored on Google’s servers. Most of these servers are in America. At https://www.google.com/about/datacenters/inside/locations/?hl=en you can see where Google’s data centres are located. Your data is distributed across the servers. Therefore, the data can be retrieved quicker and is better protected against manipulation.

Google stores collected data for different periods of time. You can delete some data anytime, while other data are automatically deleted after a certain time, and still other data are stored by Google for a long time. Some data (such as elements on “My activity”, photos, documents or products) that are saved in your Google account are stored until you delete them. Moreover, you can delete some data associated with your device, browser, or app, even if you are not signed into a Google Account.

How can I delete my data or prevent data retention?

Generally, you can delete data manually in your Google account. Furthermore, in 2019 an automatic deletion of location and activity data was introduced. Depending on what you decide on, it deletes stored information either after 3 or 18 months.

Regardless of whether you have a Google account or not, you can set your browser to delete or deactivate cookies placed by Google. These settings vary depending on the browser you use. The following instructions will show how to manage cookies in your browser:

Chrome: Clear, enable and manage cookies in Chrome

Safari: Manage cookies and website data in Safari

Firefox: Clear cookies and site data in Firefox

Internet Explorer: Delete and manage cookies

Microsoft Edge: Delete cookies in Microsoft Edge

If you generally do not want to allow any cookies, you can set your browser to always notify you when a cookie is about to be set. This will enable you to decide to either allow or permit each individual cookie. Since YouTube is a subsidiary company of Google, Google’s privacy statement applies to both. If you want to learn more about how your data is handled, we recommend the privacy policy at https://policies.google.com/privacy?hl=en.

Zoom Privacy Policy

On our website we use the video conferencing tool Zoom by the American software company Zoom Video Communications. The company’s head office is in 55 Almaden Boulevard, 6th Floor, San Jose, CA 95113, California. Thanks to “Zoom”, we can easily hold video conferences with customers, business partners, clients, and employees without having to install any software. In this privacy policy we will go into more detail of the service and inform you on the most important data protection aspects.

What is Zoom?

Zoom is one of the world’s most well-known video conferencing solutions. With the “Zoom Meetings” service, we can hold an online video conference with you, our employees, or other users via a digital conference room. This allows us to easily get in touch digitally, exchange information on various topics, send text messages or even make calls. You can also use Zoom to share your screen, exchange files and to use a whiteboard.

Why do we use Zoom on our website?

It is important to us that we can communicate with you quickly and easily. And this is exactly what Zoom offers us. Moreover, the software program also works directly via a browser. This means we can simply send you a link for starting our video conference. In addition, Zoom’s further functions such as screen sharing, or file exchange are also very handy.

What data is stored by Zoom?

When you use Zoom, your data is collected so Zoom can provide its services. On the one hand, this is data that you deliberately make available to the company. This includes for example your name, telephone number or your email address. On the other hand, there is certain data which is automatically transmitted to Zoom where it is stored. This includes for example your browser’s technical data or your IP address. In the following, we will go into more detail on the specific data of yours which Zoom can collect and store:

If you provide data such as your name, username, email address or your telephone number, these data will be stored at Zoom. Any contents you upload while using Zoom are also retained. This can include files or chat logs for example.

In addition to the IP address as mentioned above, Zoom automatically stores technical data such as MAC addresses, further device IDs, device types, which operating system you use, what client you use, and also the type of your camera, microphone and speaker. Furthermore, your approximate location is also determined and stored. Additionally, Zoom store information on how you use the service. To give an example, this can include details on whether you “zoom” in or out via desktop or smartphone, whether you are using a telephone call or VoIP, whether you are participating with or without video or whether you request a password. What is more, Zoom also records so-called metadata such as the duration of the meeting or call, the start and end of your participation in it, as well as your meeting name and chat status.

In their privacy policy, Zoom mention that the company does not use advertising cookies or tracking technologies for its services. These tracking methods are only used on their marketing websites, such as www.zoom.us. Zoom neither sell personal data nor use them for advertising purposes.

How long and where is the data stored?

In this regard, Zoom do not specify a precise time frame, but they emphasise that the collected data remain stored for as long as it is necessary for both, to provide its services and for their own purposes. The data will only be retained for longer if required for legal reasons.

Zoom generally store collected data on American servers, but the data can make their way through different data centers across the globe.

How can I delete my data or prevent data retention?

If you do not want any of your data to be stored during a zoom meeting, you have to do without the meeting. However, you always have both the option and the right to have all your personal data deleted. If you have a Zoom account, you can find instructions on how to delete your account at https://support.zoom.us/hc/en-us/articles/201363243-How-Do-I-Delete-Terminate-My-Account.

Zoom Video Communications is an active participant in the EU-U.S. Privacy Shield Framework, which regulates the correct and secure transfer of personal data. You can find more information at auf https://www.privacyshield.gov/participant?id=a2zt0000000TNkCAAW&status=Active.

We hope we were able to give you an overview on Zoom’s data processing. Of course, it could always happen that the company’s data protection guidelines may change. Therefore, for more information we recommend you to read Zoom’s privacy policy at https://zoom.us/privacy.

Sofortüberweisung Privacy Policy

On our website we offer the payment method “Sofortüberweisung” from Sofort GmbH for cashless payment. Sofort GmbH has been part of the Swedish company Klarna since 2014, but is based in Germany, Theresienhöhe 12, 80339 Munich.

If you choose this payment method, your personal data will also be transmitted to Sofort GmbH or Klarna, where it will be stored and processed. In this privacy policy we will give you an overview of Sofort GmbH’s data processing.

What is “Sofortüberweisung”?

Sofortüberweisung is an online payment system that enables you to place an order via online banking. The payment is processed by Sofort GmbH, while we immediately receive information about your payment. Anyone who has an active online banking account with a PIN and TAN can use this method. Only a few banks do not yet support this payment option.

Why do we use “Sofortüberweisung” on our website?

It is our goal to offer you the best possible service with our website and our integrated online shop. Next to the overall experience of the website and offers, this also includes smooth, fast, and secure payment processing of your orders. To ensure this, we use “Sofortüberweisung” as a payment system.

What data is stored by “Sofortüberweisung”?

If you make an immediate transfer via the Sofort/Klarna service, data such as your name, account number, sort code, payment reference, amount and date are stored on the company’s servers. We then also receive this information via the payment confirmation.

As part of the check for sufficient account coverage, Sofort GmbH reviews whether your account balance and overdraft can cover the payment amount. In some cases, it is also reviewed whether any instant transfers have been successfully carried out within the last 30 days. Furthermore, a shortened (“hashed”) form of your user identification (such as your signatory or contract number) as well as your IP address will be stored. For SEPA transfers your BIC and IBAN will also be stored.

According to Sofort GmbH, no other personal data (such as account balances, sales data, transaction limits, account lists, mobile phone numbers, authentication certificates, security codes or PIN/TAN) are collected, stored or passed on to third parties.

Sofortüberweisung also uses cookies to make our service more user-friendly. When you order a product, you will be redirected to the Sofort or Klarna website. After successful payment you will be redirected to our thank-you page. There, the following three cookies are placed:

Name: SOFUEB
Value: e8cipp378mdscn9e17kajlfhv7121388074-5
Purpose: This cookie stores your session ID.
Expiry date: after ending the browser session

Name: User[user_cookie_rules] Value: 1
Purpose: This cookie stores the status of your consent to the use of cookies.
Expiry date: after 10 years

Name: _ga
Value: GA1.2.69759879.1589470706
Purpose: Analytics.js uses the _ga cookie by default to store your user ID. Hence, it basically serves to differentiate between website visitors. It is a Google Analytics cookie.
Expiry date: after 2 years

Note: We do not claim for this cookie list to be exhaustive. Moreover, it is always possible that Sofortüberweisung may also use other cookies.

How long and where are the data stored?

All gathered data are stored within the legal storage obligations. This obligation can last between three and ten years.

Klarna/Sofort GmbH try to only save data within the EU or the European Economic Area (EEA). If data is transferred outside the EU/EEA, data protection must comply with the GDPR. Also, the country the data is transferred to must be subject to the EU’s adequacy decision or have the US Privacy Shield certificate.

How can I delete my data or prevent data retention?

You can withdraw your consent for Klarna to process your personal data at any time. You also always have the right for information, rectification and deletion of your personal data. For this, you can simply email the company’s data protection team at privacy@klarna.co.uk.

In your browser, you can manage, delete, or deactivate Sofortüberweisung’s possible cookies. The settings vary a bit depending on what browser you use. The following instructions will show you how to manage cookies in the most common browsers:

Chrome: Clear, enable and manage cookies in Chrome

Safari: Manage cookies and website data in Safari

Firefox: Clear cookies and site data in Firefox

Internet Explorer: Delete and manage cookies

Microsoft Edge: Delete cookies in Microsoft Edge

If you want to know more about Sofort GMmbH’s data processing, we recommend the privacy policy at https://cdn.klarna.com/1.0/shared/content/legal/terms/0/en_gb/privacy.

Source: Created with the Datenschutz Generator by AdSimple® Online Marketing in cooperation with schoenheitsmagazin.at