Privacy Policy
Privacy Policy
Last updated: 10.10.2023
The protection of your personal data is very important to us, so we would like to list here all
the information about the processing and storage of your data when you visit our website and
in our companies.
In order to be able to use all the functions and services of our site, it is necessary to collect
your personal data. However, the processing and storage is only carried out in accordance
with the legal guidelines and requirements of the Data Protection Regulation (DSGVO) and the
Telecommunications Act (TKG 2021).
Responsible body
SISSNER – Sissy Wienser,
Markomannenstr. 18/3/24
1220 Vienna
Austria
welcome@sissner.at
You can find more information in the imprint.
COLLECTION AND PROCESSING OF PERSONAL DATA ON
THIS WEBSITE
Note: In order to protect your data as comprehensively as possible from unwanted
access, we take so-called technical and organisational measures and use an
encryption process on our website. Your data is transmitted over the Internet from
your computer to our computer and vice versa using so-called TLS encryption. TLS
means "Transport Layer Security" and is an encryption protocol for data transmission
on the Internet. You can usually recognise "TLS" by the fact that the lock symbol in the
status bar of your browser is closed and the address begins with https://.
1. COLLECTION OF ACCESS AND LOG DATA
This website automatically collects and stores server log file information that your
browser sends to us. These are: –
anonymised IP address;
– user's internet service provider;
– date and time of the request; –
browser type; –
language and browser version; –
content of the request; –
time zone; –
access status/HTTP status code; –
amount of data;
– websites from which the request comes (so-called referrer)
– operating system.
The legal basis for this data processing is the legitimate interest according to Art. 6
para. 1 lit. f) DSGVO. The legitimate interest is based on being able to identify
indications of illegal use of our website.
As a matter of principle, your personal data will not be transmitted to third parties. We
have concluded a contract with the provider of this website, ALL-INKL.com – Neue
Medien Münnich, based in Germany, in accordance with Art. 28 DSGVO. This is a
contract required by data protection law, which ensures that ALL-INKL.com – Neue
Medien Münnich only processes the personal data of our website visitors in
accordance with our instructions and in compliance with the DSGVO.
The collected data is stored for 7 days in server log files that your browser
automatically transmits to us. We only store the server log files for longer than 7 days
in the event of attacks on our server infrastructure or other legal violations. This longer
storage is based on our legitimate interest according to Art. 6 para. 1 lit. f) DSGVO. Our
legitimate interest lies in the preservation of evidence.
2. ENQUIRIES VIA THE CONTACT FORM , E-MAIL AND TELEPHONE
Any personal information that you provide to us on a voluntary basis will of course be
treated confidentially. We use the personal data you provide exclusively to process
and respond to your enquiry. The legal basis for data processing is our legitimate
interest according to Art. 6 Para. 1 lit. f) DSGVO. This results from our interest in
answering enquiries from our customers, business partners and interested parties and
in promoting or maintaining customer satisfaction. A further legal basis for natural
persons is the initiation or fulfilment of a contract in accordance with Art. 6 (1) (b)
DSGVO.
All personal data that you transmit to us with your enquiry will be deleted or
anonymised by us no later than 2 years after the final reply to you, unless a contract is
concluded. The retention period of 2 years is due to the fact that it may occasionally
happen that you contact us again about the same matter after a reply and refer to the
previous correspondence. Experience has shown that after 2 years no further queries
follow our replies.
3. COMMENT FUNCTION IN THE BLOG
You have the possibility to comment on our contributions. Please note that your
comment is publicly viewable. Your name, which can also be a pseudonym, and your
e-mail address are compulsorily collected. We ask you to be objective.
The legal basis for the processing of your comments is our legitimate interest
according to Art. 6 para. 1 lit. f) DSGVO, which lies in enabling an exchange with us.
The publication of your name is based on your consent according to Art.6 para. 1 lit. a)
DSGVO. We store your e-mail address for the purpose of contacting you in the event
that we or a third party should legally object to your comments. We do not pass on the
data to third parties unless it is necessary for the prosecution of our claims, claims of
third parties or there is a legal obligation such as criminal prosecution (Art. 6 para. 1 lit.
c) DSGVO). The comments and the associated data are stored and remain on this
website until the content has been completely deleted, the comments have to be
deleted for legal reasons (e.g. offensive comments) or you have given your revocation.
4. USE OF WEB ANALYTICS TOOLS AND COOKIES
We use cookies to facilitate and improve the use of our website. Cookies are small
pieces of text information that can be stored on your computer or smartphone via the
browser when you visit a website. This is used to recognise the website visitor.
Cookies can also provide us with information about how you use our website so that
we can continually improve the design of the website.
Cookies themselves do not contain any personal data about users, they only serve to
uniquely identify what our customers find interesting and useful on our website. We
also use "web beacons" (small graphic images, also known as "pixel tags" or "clear
GIFs") on our website. They are used together with cookies to track general user
behaviour on the website.
The legal basis for the processing of personal data using cookies and other
technologies is your consent pursuant to Art. 6 (1) lit. a) DSGVO, which you give us via
the so-called "Consent Banner" as soon as you access our website for the first time.
We use cookies for the following purposes:
Technically necessary: These are cookies and similar methods without which you
cannot use our services, for example to display our website correctly or to use
functions you have requested.
Comfort: These techniques allow us to take into account your actual or presumed
preferences for the comfortable use of our website. For example, we may display our
website in a language that suits you based on your preferences.
Statistics: These techniques allow us to compile anonymous statistics on the use of our
services. This allows us to determine, for example, how we can better adapt our
website to the habits of our users.
The data processed by necessary cookies are required for the purposes listed below
to protect our legitimate interests and those of third parties in accordance with Art. 6
para. 1 lit. f) DSGVO.
Any use of cookies that is not absolutely technically necessary constitutes data
processing that is only permitted with your explicit and active consent in accordance
with Art. 6 (1) a) DSGVO. Via our so-called "Cookie Consent Tool", you can set yourself
which cookie categories you wish to consent to when visiting our website and also
change this at any time.
Once cookies have been stored, you can delete them at any time via the settings of
your web browser. You can also adjust the settings of your web browser so that no
cookies are stored. In this case, not all functions of our website may be available.
Cookie list: [cookie_audit style="winter" columns="cookie,duration,description"]
Cookie Purpose Storage
period
Provider Category
pll_language Saving the
language
preference
11 months – Comfort
_ga Cookie
from
Google for
website
analytics.
Generates
statistical
data about
how the
visitor uses
the
website.
1 year 1
month
Google
Ireland
Limited
Statistics
_ga_* Cookie
from
Google for
website
analytics.
Generates
statistical
data about
how the
visitor uses
the
website.
1 year 1
month
Google
Ireland
Limited
Statistics
_gid Registers a
unique ID
that is used
to
generate
statistical
data on
how the
visitor uses
the
website.
1 day Google
Ireland
Limited
Statistics
cmplz_banner-status Save 365 days Complianz Necessar
whether
the cookie
banner
was
rejected
B.V. y
cmplz_functional Saves the
cookie
preference
s.
365 days Complianz
B.V.
Necessar
y
cmplz_statistics Saves the
cookie
preference
s.
365 days Complianz
B.V.
Necessar
y
cmplz_policy_id Saves the
cookie
preference
s.
365 days Complianz
B.V.
Necessar
y
cmplz_preferences Saves the
cookie
preference
s.
365 days Complianz
B.V.
Necessar
y
cmplz_consented_servic
es
Saves the
cookie
preference
s.
365 days Complianz
B.V.
Necessar
y
_y 1 year Analysis Shopify
Internation
al Limited
Statistics
_s 30 minutes Analysis Shopify
Internation
al Limited
Statistics
_shopify_s 1 year Anaylse Shopify
Internation
al Limited
Statistics
master_device_id 730 days In
conjunctio
n with the
seller
login.
Shopify
Internation
al Limited
Necessar
y
_shopify_y 1 year Analysis Shopify Marketin
Internation
al Limited
g
storefront_digest 2 years Saves a
storefront
password
summary
so that
merchants
can
preview
their
storefront
while it is
password
protected.
Shopify
Internation
al Limited
Necessar
y
checkout_session_looku
p
3 weeks Used in
conjunctio
n with the
checkout.
Shopify
Internation
al Limited
Necessar
y
cart_currency 2 weeks Saves the
currency
used.
Shopify
Internation
al Limited
Comfort
_secure_session_id Session Used in
conjunctio
n with
navigation
through
the shop.
Shopify
Internation
al Limited
Necessit
y
_orig_referrer 2 weeks Saves the Shopify
Internation
al Limited
Marketin
g
Cookies in connection with Google Pay:
Cookie Name Provider Validity
period
Cookie
category
Purpose
1P_JAR Google 1 month Marketing This cookie is used to support Google's
advertising services
APISID Google 2 years Marketing Used for targeting purposes to profile
the interests of website visitors in order
to display relevant and personalised
Google advertising.
CONSENT Google 2 years Marketing This cookie is used to support Google's
advertising services
HSID Google 2 years Necessary Includes encrypted entries of your
Google account and last login time to
protect against attacks and data theft
from form entries.
NID Google 6
months
Marketing This cookie is used by Google as part of
the use of Google Maps. The NID cookie
contains a unique ID that Google uses to
store your preferred settings and other
information.
SAPISID Google 2 years Marketing Used for targeting purposes to profile
the interests of website visitors in order
to display relevant and personalised
Google advertising.
SID Google 2 years Marketing Google uses cookies such as the NID
and SID cookies to customise advertising
in Google products such as Google
Search. Using such cookies, Google
records, for example, your most recent
search queries, your previous
interactions with an advertiser's ads or
search results, and your visits to an
advertiser's website. In this way, Google
can display individually tailored
advertising on Google. Other Google
products such as YouTube or
Doubleclick also use these cookies to
select more relevant advertising.
OGPC Google 2
months
Marketing Google uses this cookie on pages for
Google Translate or Google Maps
activities.
__Secure-
3PAPISID
Google 2 years Marketing Used by for targeting purposes to profile
the interests of the website visitor and
display relevant and personalised
Google advertising.
__Secure-3PSID Google 2 years Marketing Used for targeting purposes to profile
the interests of website visitors in order
to display relevant and personalised
Google advertising.
__Secure-
3PSIDTS
Google 2 years Marketing Google's "__Secure-3PSIDTS" cookie
collects information about your
interactions with Google services and
ads. It is used to measure the
effectiveness of advertising and deliver
personalised content based on your
interests. The cookie contains a unique
identifier
__Secure-
1PSIDTS
Google 1 year Marketing Used for targeting purposes to build a
profile of the website visitor's interests
so that relevant and personalised
Google ads can be displayed.
__Secure-
1PSIDCC
Google 1 year Marketing Used for targeting purposes to build a
profile of the website visitor's interests
so that relevant and personalised
Google ads can be displayed.
SIDCC Google 1 year Necessary Security cookie to protect user data from
unauthorised access.
__Secure-
1PAPISID
Google 2 years Marketing Used by Google for targeting purposes
to build a profile of the website visitor's
interests so that relevant and
personalised Google advertising can be
displayed.
__Secure-1PSID Google 1 year Marketing Used by Google for targeting purposes
to profile the interests of the website
visitor and display relevant and
personalised Google advertising.
AEC Google 6
months
Marketing Ensures that requests within a browser
session are made by the user and not by
other websites.
SOCS Google 13
months
Marketing Stores the status of the user in relation to
their cookie choice.
ADS_VISITOR_ID Google 1 month Marketing Collects information about visitors to a
website in order to display relevant
advertising.
__Secure-ENID Google 2 years Marketing Google allows you to customise the way
ads are displayed outside of Google or
save information such as your preferred
language when displaying search results.
SSID Google 2 years Marketing Targeting cookie. Used by Google for
targeting purposes to create a profile of
the website visitor's interests so that
relevant and personalised Google
advertising can be displayed.
__Secure-OSID Google 2 years Necessary Security and authentication
We may use specialised service providers, in particular from the online marketing
sector, as part of data processing (using cookies and similar techniques to process
usage data). These process your data on our behalf as order processors, are carefully
selected in each case and are contractually obligated in accordance with Article 28
DSGVO. All of the above-mentioned providers act as processors for us.
CONSENT MANAGEMENT VIA COMPLIANZ
We use the cookie consent technology of "Complianz" from Complianz B.V., a
company based in the Netherlands, to obtain your consent under data protection law
for the storage of certain cookies on your end device or for the use of certain
technologies and to document this in accordance with data protection law.
The use is made to obtain the legally required consent for the use of cookies. The
legal basis for this is our legitimate interest according to Art. 6 para. 1 lit. f) DSGVO,
which is based on the legally secure documentation and verifiability of consents (Art. 6
para. 1 lit. c) DSGVO), for the fulfilment of our accountability according to Art. 5 para. 2
DSGVO. No personal data is stored.
USE OF GOOGLE ANALYTICS
This website uses Google Analytics if you give your consent within the meaning of
Art. 6 (1) a) DSGVO and Art. 49 (1) a) DSGVO. This is a service provided by Google
Ireland Limited ("Google"), a company incorporated and operated under the laws of
Ireland (registration number: 368047) with its registered office at Gordon House,
Barrow Street, Dublin 4, Ireland and Google LLC (USA) ("Google").
Google Analytics uses so-called "cookies". These are text files that are stored on your
computer and enable an analysis of the use of the website by the user. The
information acquired through the cookies about your usage behaviour of this website
is usually transferred to a Google server in the USA and stored there. There is an
adequacy decision for the USA, so that the data transfer can take place without further
measures. You can view Google's certification here.
We have made the setting that your IP address is anonymised. The IP address
anonymisation is carried out by Google, but within member states of the European
Union or in other contracting states of the Agreement on the European Economic
Area. Only in exceptional cases will the full IP address be transferred to a Google
server in the USA and shortened there.
On behalf of the operator of this website, Google will use this information for the
purpose of evaluating your use of the website, compiling reports on website activity
and providing other services relating to website activity and internet usage to the
website operator.
The anonymised IP address transmitted by your browser as part of Google Analytics is
linked to other data about you, such as search history, personal accounts, usage data
from other devices and any other data Google may have about you.
You can view the cookies that are set in connection with Google Analytics in the list
above.
You can revoke your consent at any time by making the corresponding settings
directly via our banner. User and event data will be deleted after 14 months. The
"Reset user data on new activity" function is activated. This means that if you visit
again before the retention period expires, your data will not be deleted.
GOOGLE TAG MANAGER
We use the Google Tag Manager of the provider Google Ireland Limited, Google
Building Gordon House, Barrow St, Dublin 4, Ireland.
Through Google Tag Manager, website tags are managed through one interface. This
allows us as marketers to manage website tags through one interface. Tags are small
sections of code that, for example, record (track) your activities on our website. The
Google Tag Manager itself does not set cookies, but ensures that other tags are
activated, which in turn may collect data, such as Google Analytics. Google Analytics
itself sets cookies. You can find more information on this in the chapter "Web tracking
measures".
By implementing the Google Tag Manager, your IP address is transferred
anonymously to Google. This may also result in data being transferred to Google
servers in the USA. We have concluded an order processing contract with Google in
accordance with Art. 28 DSGVO. There is an adequacy decision for the USA, so that
the data transfer can take place without further measures. You can view Google's
certification here.
In the Tag Manager account settings, we have not allowed Google to receive
anonymised data from us.
The storage period of the integrated tracking tools, such as Google Analytics,
depends on the respective tool used, which is loaded via the Google Tag Manager.
5. ONLINE SHOP
Hosting of the shop:
We use Shopify's system to host our website and display the content. Shopify is based
in Ireland and Canada. The contractual partner within the EU is Shopify International
Limited, Victoria Buildings, 2nd Floor, 1-2 Haddington Road, Dublin 4, D04 XN32,
Ireland ("Shopify"). The legal basis for data processing within the scope of hosting is
the legitimate interest according to Art. 6 para. 1 lit. f) DSGVO, which is based on being
able to provide an optimised shop. The data collected on our website is processed on
Shopify's servers. All data collected on our website is processed on the provider's
servers. We have concluded an order processing agreement with the provider, which
ensures the protection of our site visitors' data and prohibits unauthorised disclosure
to third parties. If data is transferred to Canada, there is a so-called adequacy decision
for this. This decision states that data protection standards are met. When data is
transferred to the US, Shopify uses standard contractual clauses to ensure that
European data protection standards are met. Personal data may also be transferred to
the following Shopify companies: Shopify Inc, 150 Elgin St, Ottawa, ON K2P 1L4,
Canada, Shopify Data Processing (USA) Inc, Shopify Payments (USA) Inc or Shopify
(USA) Inc.
From the above list you can also see the cookies that are related to Shopify.
Carrying out orders:
In order to be able to place orders via the online shop, we collect your personal data
(master data and delivery address) in the context of orders. We use the data
exclusively for processing your order on the basis of contract fulfilment in accordance
with Art. 6 Para. 1 lit. b) DSGVO.
Commissioned consignment of goods: If the delivery address differs from the billing
address, personal data of persons who do not order directly in our shop may also be
processed. Experience has shown that these orders often serve as gifts. We have
received your address from a person who gives you our products as a gift. Your
address data therefore does not come from publicly accessible sources (Art. 14 para. 2
lit. f) DSGVO). The legal basis for this data processing is the fulfilment of the contract
according to Art. 6 para. 1 lit. b) DSGVO.
Payment options: You can make payment via shopPay (Shopify), PayPal, Google Pay
or Klarna (SOFORT Banking). For this purpose, you may be redirected to the website
of the selected payment service provider. You can enter your payment details there
and finally process the order. For this purpose, the specific payment amount is
transmitted to the service provider used. Further information on the data processing
carried out can be found in the information texts on the input mask/website of the
service providers. You will also find further contact information there. Payment
processing takes place directly via the selected payment service provider.
The legal basis for this is Article 6(1)(b) DSGVO, i.e. you provide us with the data on the
basis of the contractual relationship between you and us.
Storage period: We store your data for the duration of the fulfilment of the 7-year
retention obligations as per the Federal Tax Code.
Data subjects' rights
Your rights as a data subject
Pursuant to Art. 15 (1) DSGVO, you have the right to request information free of charge
about the personal data stored about you. Furthermore, if the legal requirements are
met, you have the right to correction (Art. 16 DSGVO), deletion (Art. 17 DSGVO) and
restriction of processing (Art. 18 DSGVO) of your personal data. If you have provided
the processed data yourself, you have a right to data transfer according to Art. 20
DSGVO.
If the data processing is based on Art. 6 (1) e) or f) DSGVO, you have the right to
object pursuant to Art. 21 DSGVO. If you object to data processing, this will not
take place in the future unless the controller can demonstrate compelling
legitimate grounds for further processing that outweigh the interest of the data
subject in objecting.
If the data processing is based on consent pursuant to Art. 6 (1) a), Art. 9 (2) a) or
Art. 49 (1) a) DSGVO, you may revoke your consent at any time with effect for the
future without affecting the lawfulness of the previous processing.
You also have the right to lodge a complaint with a data protection supervisory
authority. In particular, the complaint may be lodged with a supervisory authority in
the EU Member State of your place of residence, place of work or place of the alleged
infringement.
Contact details of the competent data protection authority:
Wickenburggasse 8, 1080 Vienna, dsb@dsb.gv.at
No automated decision making
We do not carry out automatic decision-making or profiling.
Provision
Unless otherwise stated in the previous chapters, the provision of personal data is
neither legally nor contractually required or necessary for the conclusion of a contract.
Failure to provide your personal data may mean that we are unable to respond to your
enquiries, for example.
This data protection notice was created in cooperation with the consulting firm
SCALELINE Datenschutz. The legal texts are subject to copyright.