Data protection
privacy
We have written this data protection declaration (version 10/14/2019-211104282) in order to explain to you in accordance with the provisions of the General Data Protection Regulation (EU) 2016/679 and the Data Protection Act (DSG) what information we collect, how we use data and what decision-making options are available you as a visitor to this website.
Unfortunately, it is in the nature of things that these explanations sound very technical. However, we have tried to describe the most important things as simply and clearly as possible during the creation.
Automatic data storage
When you visit websites today, certain information is automatically created and stored, including on this website.
If you visit our website as you are right now, our web server (computer on which this website is stored) automatically saves data such as
the address (URL) of the accessed website
Browser and browser version
the operating system used
the address (URL) of the previously visited page (referrer URL)
the hostname and IP address of the device from which access is being made
Date and Time
in files (web server log files).
As a rule, web server log files are stored for two weeks and then automatically deleted. We do not pass on this data, but cannot rule out that this data will be viewed in the event of illegal behavior.
storage of personal data
Personal data that you transmit to us electronically on this website, such as name, e-mail address, address or other personal information when submitting a form or comments on the blog, will be stored by us together with the time and the IP Address used only for the purpose stated, kept safe and not passed on to third parties.
We therefore only use your personal data to communicate with those visitors who expressly request contact and to process the services and products offered on this website. We do not pass on your personal data without your consent, but we cannot rule out that this data will be viewed in the event of illegal behavior.
If you send us personal data by e-mail - thus outside of this website - we cannot guarantee a secure transmission and the protection of your data. We recommend that you never send confidential data unencrypted by e-mail.
Rights under the General Data Protection Regulation
According to the provisions of the GDPR and the Austrian Data Protection Act (DSG) , you have the following rights:
Right to rectification (Article 16 GDPR)
Right to erasure (“right to be forgotten”) (Article 17 GDPR)
Right to restriction of processing (Article 18 GDPR)
Right to notification – obligation to notify in connection with rectification or erasure of personal data or restriction of processing (Article 19 GDPR)
Right to data portability (Article 20 GDPR)
Right to object (Article 21 GDPR)
Right not to be subject to a decision based solely on automated processing, including profiling (Article 22 GDPR)
If you believe that the processing of your data violates data protection law or your data protection claims have otherwise been violated in any way, you can complain to the supervisory authority, which is the data protection authority in Austria, whose website you can access at https://www. dsb.gv.at/ .
Evaluation of visitor behavior
In the following data protection declaration we inform you whether and how we evaluate data from your visit to this website. The evaluation of the collected data is usually anonymous and we cannot draw any conclusions about your person from your behavior on this website.
You can find out more about the possibilities of objecting to this evaluation of visit data in the following data protection declaration.
TLS encryption with https
We use https to transmit data tap-proof on the Internet (data protection through technology design Article 25 paragraph 1 DSGVO ). By using TLS (Transport Layer Security), an encryption protocol for secure data transmission on the Internet, we can ensure the protection of confidential data. You can recognize the use of this protection of data transmission by the small lock symbol in the top left corner of the browser and the use of the https scheme (instead of http) as part of our Internet address.
Google Analytics Privacy Policy
We use Google Analytics from Google LLC (1600 Amphitheater Parkway Mountain View, CA 94043, USA) on this website to statistically evaluate visitor data. Google Analytics uses target-oriented cookies.
Google Analytics cookies
_ga
Expiry time: 2 years
Use: Differentiation of website visitors
Example value: GA1.2.1326744211.152211104282
_gid
Expiry time: 24 hours
Use: Differentiation of website visitors
Example value: GA1.2.1687193234.152211104282
_gat_gtag_UA_
Expiry time: 1 minute
Use: Used to throttle the request rate. If Google Analytics is provided via Google Tag Manager, this cookie is given the name _dc_gtm_ .
Example value: 1
You can find more information on the terms of use and data protection at http://www.google.com/analytics/terms/de.html or at https://support.google.com/analytics/answer/6004245?hl=de .
pseudonymization
Our concern within the meaning of the GDPR is to improve our offer and our website. Since the privacy of our users is important to us, user data is pseudonymised. Data processing takes place on the basis of the legal provisions of § 96 Paragraph 3 TKG and Art 6 EU-DSGVO Paragraph 1 lit a (consent) and/or f (legitimate interest) of the GDPR.
Deactivation of data collection by Google Analytics
Website visitors can prevent Google Analytics from using their data by using the Google Analytics JavaScript deactivation browser add-on (ga.js, analytics.js, dc.js).
You can prevent Google from collecting the data generated by the cookie and relating to your use of the website and from processing this data by Google by downloading and installing the browser plug-in available under the following link: https://tools.google.com .com/dlpage/gaoptout?hl=en
Google Analytics addendum to data processing
We have entered into a direct customer agreement with Google for the use of Google Analytics by accepting the “Data Processing Amendment” in Google Analytics.
You can find out more about the data processing addendum for Google Analytics here: https://support.google.com/analytics/answer/3379636?hl=de&utm_id=ad
Google Analytics IP anonymization
We have implemented Google Analytics IP address anonymization on this website. This function was developed by Google so that this website can comply with applicable data protection regulations and recommendations from local data protection authorities if they prohibit the storage of the full IP address. The IP is anonymized or masked as soon as the IP addresses arrive in the Google Analytics data collection network and before the data is stored or processed.
More information on IP anonymization can be found at https://support.google.com/analytics/answer/2763052?hl=de .
Google Analytics reports on demographics and interests
We have activated the functions for advertising reports in Google Analytics. The Demographics and Interests reports include information about age, gender, and interests. This enables us to get a better picture of our users without being able to assign this data to individual persons. You can learn more about the advertising features at https://support.google.com/analytics/answer/3450482?hl=de_AT&utm_id=ad .
You can end the use of the activities and information from your Google account under “Advertising settings” at https://adssettings.google.com/authenticated by checking the box.
Google Analytics deactivation link
If you click on the following deactivation link, you can prevent Google from recording further visits to this website. Caution: Deleting cookies, using the incognito/private mode of your browser, or using a different browser will result in data being collected again.
cookies
Our website uses HTTP cookies to store user-specific data.
In the following we explain what cookies are and why they are used so that you can better understand the following data protection declaration.
What exactly are cookies?
Whenever you surf the Internet, you use a browser. Well-known browsers include Chrome, Safari, Firefox, Internet Explorer and Microsoft Edge. Most websites store small text files in your browser. These files are called cookies.
One thing cannot be denied: Cookies are really useful little helpers. Almost all websites use cookies. More precisely, they are HTTP cookies, as there are other cookies for other areas of application. HTTP cookies are small files that our website saves on your computer. These cookie files are automatically stored in the cookie folder, which is basically the "brain" of your browser. A cookie consists of a name and a value. When defining a cookie, one or more attributes must also be specified.
cookies save certain user data from you, such as language or personal page settings. When you visit our site again, your browser transmits the "user-related" information back to our site. Thanks to cookies, our website knows who you are and offers you the settings you are used to. In some browsers, each cookie a separate file, in others such as Firefox are all cookies saved in a single file.
There are both first-party cookies and third-party cookies. First-party cookies are created directly by our site, third-party cookies are created by partner websites (e.g. Google Analytics). Each cookie must be evaluated individually, since each cookie stores different data. The expiry time of a cookie also varies from a few minutes to a few years. Cookies are not software programs and do not contain viruses, Trojans or other "pests". Cookies also cannot access information on your PC.
For example, cookie data can look like this:
Name: _ga
Worth: GA1.2.1326744211.152211104282 Purpose: Differentiation of website visitors
Expiry Date: after 2 years
A browser should be able to support these minimum sizes:
At least 4096 bytes per cookie
At least 50 cookies per domain
At least 3000 cookies in total
What types of cookies are there?
The question of which cookies we use in particular depends on the services used and is clarified in the following sections of the data protection declaration. At this point we would like to briefly discuss the different types of HTTP cookies.
There are 4 types of cookies:
Essential cookies
These cookies are necessary to ensure basic functions of the website. For example, these cookies are needed if a user puts a product in the shopping cart, then continues surfing on other pages and only goes to the checkout later. These cookies do not delete the shopping cart, even if the user closes their browser window.
Functional cookies
These cookies collect information about user behavior and whether the user receives any error messages. In addition, these cookies are also used to measure the loading time and behavior of the website in different browsers.
Targeting cookies
These cookies ensure a better user experience. For example, entered locations, font sizes or form data are saved.
advertising cookies
These cookies are also called targeting cookies. They are used to provide the user with individually tailored advertising. This can be very useful, but also very annoying.
Usually, when you visit a website for the first time, you will be asked which of these types of cookies you would like to allow. And of course this decision is also stored in a cookie.
How can I delete cookies?
You decide how and whether you want to use cookies. Regardless of which service or website the cookies come from, you always have the option Delete, disable or only partially allow cookies. For example, you can block third-party cookies but allow all other cookies.
If you want to find out which cookies have been stored in your browser, if you want to change or delete cookie settings, you can find this in your browser settings:
Chrome: Delete, enable and manage cookies in Chrome
Safari: Managing Cookies and Website Data with Safari
Firefox: Clear cookies to remove data websites have placed on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Deleting and managing cookies
If you generally do not want any cookies, you can set up your browser so that it always informs you when a cookie is to be set. You can decide for each individual cookie whether you allow the cookie or not. The procedure differs depending on the browser. It is best to search for the instructions in Google with the search term “Delete cookies Chrome” or “Deactivate cookies Chrome” in the case of a Chrome browser.
What about my data protection?
The so-called “Cookie Guidelines” have been in place since 2009. It states that the storage of cookies requires your consent. Within the EU countries, however, there are still very different reactions to these directives. In Austria, however, this directive was implemented in Section 96 (3) of the Telecommunications Act (TKG).
If you want to know more about cookies and don't shy away from technical documentation, we recommend https://tools.ietf.org/html/rfc6265 , the Internet Engineering Task Force (IETF) Request for Comments called "HTTP State Management Mechanism".
Google Fonts Local Privacy Policy
On our website we use Google Fonts from Google Inc. (1600 Amphitheater Parkway Mountain View, CA 94043, USA). We have integrated the Google fonts locally, ie on our web server - not on Google's servers. As a result, there is no connection to Google servers and therefore no data transmission or storage.
What are Google Fonts?
Google Fonts used to be called Google Web Fonts. This is an interactive directory with over 800 Fonts that the Google LLC provided free of charge. With Google Fonts, you could use fonts without uploading them to your own server. However, in order to prevent any transfer of information to Google servers in this regard, we have downloaded the fonts to our server. In this way, we act in compliance with data protection and do not send any data to Google Fonts.
Unlike other web fonts, Google allows us unlimited access to all fonts. So we have unlimited access to a sea of fonts and thus get the best out of our website. You can find more about Google Fonts and other questions at https://developers.google.com/fonts/faq?tid=211104282 .
Google Fonts Privacy Policy
We use Google Fonts on our website. These are the “Google fonts” from Google Inc. (1600 Amphitheater Parkway Mountain View, CA 94043, USA).
You do not need to register or enter a password to use Google fonts. Furthermore, no cookies are stored in your browser. The files (CSS, typefaces/fonts) are requested via the Google domains fonts.googleapis.com and fonts.gstatic.com. According to Google, requests for CSS and fonts are completely separate from all other Google services. If you have a Google account, you don't have to worry about your Google account data being transmitted to Google while using Google Fonts. Google records the use of CSS (Cascading Style Sheets) and the fonts used and stores this data securely. How the data storage looks exactly, we will look at in detail.
What are Google Fonts?
Google Fonts (earlier Google Web Fonts) is a directory with over 800 Fonts that the Google LLC Make it available to your users for free.
Many of these fonts are under the SIL Open Font License published while others under the Apache License were published. Both are free software licenses.
Why do we use Google Fonts on our website?
With Google Fonts we can use fonts on our own website and do not have to upload them to our own server. Google Fonts is an important component in keeping the quality of our website high. All Google fonts are automatically optimized for the web and this saves data volume and is a great advantage especially for use with mobile devices. When you visit our site, the small file size ensures fast loading time. Furthermore, Google Fonts are secure web fonts. Different image synthesis systems (rendering) in different browsers, operating systems and mobile devices can lead to errors. Such errors can partially distort texts or entire websites. Thanks to the fast Content Delivery Network (CDN), there are no cross-platform problems with Google Fonts. Google Fonts supports all common browsers (Google Chrome, mozilla firefox, Apple Safari, Opera) and works reliably on most modern mobile operating systems, including Android 2.2+ and iOS 4.2+ (iPhone, iPad, iPod). So we use Google Fonts so that we can present our entire online service as beautifully and uniformly as possible.
Which data is stored by Google?
When you visit our website, the fonts are reloaded via a Google server. This external call transmits data to the Google servers. In this way, Google also recognizes that you or your IP address is visiting our website. The Google Fonts API was designed to reduce the use, storage and collection of end-user data to what is necessary for proper font delivery. Incidentally, API stands for "Application Programming Interface" and serves, among other things, as a data transmitter in the software sector.
Google Fonts securely stores CSS and font requests on Google and is therefore protected. The collected usage figures allow Google to determine how well the individual fonts are received. Google publishes the results on internal analysis pages, such as Google Analytics. Google also uses data from its own web crawler to determine which websites use Google fonts. This data is published in the Google Fonts BigQuery database. Entrepreneurs and developers use the Google web service BigQuery to explore and move large amounts of data.
However, it should be remembered that every Google Font request also sends information such as Language settings, IP address, browser version, browser screen resolution and browser name are automatically transmitted to the Google servers. Whether this data is also stored cannot be clearly determined or is not clearly communicated by Google.
How long and where is the data stored?
Google stores requests for CSS assets for one day on its servers, which are mainly located outside the EU. This enables us to use the fonts using a Google style sheet. A style sheet is a template that you can use to change the design or font of a website, for example, quickly and easily.
The font files are stored by Google for one year. Google is thus pursuing the goal of fundamentally improving the loading time of websites. When millions of websites refer to the same fonts, they are cached after the first visit and immediately reappear on all other websites visited later. Sometimes Google updates font files to reduce file size, increase language coverage, and improve design.
How can I delete my data or prevent data storage?
The data that Google stores for a day or a year cannot simply be deleted. The data is automatically transmitted to Google when the page is accessed. In order to be able to delete this data prematurely, you must contact Google Support at https://support.google.com/?hl=de&tid=211104282. In this case, you only prevent data storage if you do not visit our site.
Unlike other web fonts, Google allows us unlimited access to all fonts. So we have unlimited access to a sea of fonts and thus get the best out of our website. You can find more about Google Fonts and other questions at https://developers.google.com/fonts/faq?tid=211104282 . Although Google addresses data protection issues there, it does not contain really detailed information about data storage. It is relatively difficult to get really precise information about stored data from Google.
You can also read about what data Google collects and what this data is used for at https://www.google.com/intl/de/policies/privacy/.
Source: Created with the Data protection generator from firmenwebseiten.at in cooperation with flokib.at