Data protection declaration Stahlwerk Annahütte

 

The controller as defined by the data protection laws, in particular the EC General Data Protection Regulation (GDPR), is:

Stahlwerk Annahütte Max Aicher GmbH & Co. KG, which is represented by Verbundbau Mitterfelden GmbH, which is legally represented by its Managing Director Dipl.-Ing. Max Aicher as well as Beteiligung GmbH, which is legally represented by its Management:

Katharina Eisl, Tanja Jursa and Prof. Dr.-Ing. Klaus Krüger

 

Your rights as the data subject

You can exercise the following rights at any time using our data protection officer's contact details provided:

  • the right of access to information concerning your data stored with us and concerning the processing thereof (Art. 15 GDPR)
  • the right of rectification of incorrect personal data (Art. 16 GDPR)
  • the right of erasure of your data stored with us (Art. 17 GDPR)
  • the right to restriction of the processing of your data in cases where we are, owing to statutory duties, not yet permitted to erase your data (Art. 18 GDPR)
  • the right to object to the processing of your data with us (Art. 21 GDPR)
  • the right to data portability, insofar as you have consented to the processing of your data or have entered into a contract with us (Art. 20 GDPR).

Insofar as you have given us your consent, you may revoke this consent at any time with effect for the future. You may contact a supervisory authority with a complaint at any time, e.g. the relevant supervisory authority of the Federal State where you reside or the relevant authority for us as the controller. A list of supervisory authorities (for the non-public sector), including their addresses, can be found at: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.

 

Collection of general information when you visit our website

Nature and purpose of the processing:

When you access our website, i.e. when you are not registering or otherwise submitting information, information of a general nature is automatically collected. This information (server log files) includes, for example, the type of web browser, the operating system used, the domain name of your Internet server provider, your IP address and the like.

In particular, this information is processed for the following purposes:

  • ensuring a trouble-free connection to the website,
  • ensuring smooth use of our website,
  • evaluation of system security and stability
  • as well as for other administrative purposes.

We shall not use your data to draw conclusions about you personally. Information of this kind is statistically evaluated by us if necessary in order to optimise our Internet presence and the technology behind it.

Legal basis:

The processing takes place in accordance with Art. 6 (1) f) GDPR on the basis of our legitimate interest in improving the stability and functionality of our website.

Recipients:

Recipients of the data may include technical service providers acting as processors for the operation and maintenance of our website.

Storage period:

The data are erased as soon as they are no longer needed for the purpose for which they were collected. For the data used to provide the website, this is fundamentally the case when the respective session ends.

Provision prescribed or required:

The provision of the aforementioned personal data is prescribed neither by law nor by contract. Without the IP address, however, the service and the functionality of our website cannot be guaranteed. Additionally, individual services may be unavailable or restricted. For this reason, an objection is ruled out.

 

Cookies

Nature and purpose of the processing:

Like many other websites, we also use so-called "cookies". Cookies are small text files stored on your terminal device (laptop, tablet, smartphone or the like) when you visit our website.

As a result, we receive certain data such as, for example, the IP address, the browser used and the operating system.

Cookies cannot be used to start programmes or spread viruses to a computer. With the aid of the information contained in cookies, we can make it easier for you to navigate our websites and enable our websites to be correctly displayed.

In no event shall the data collected by us be passed on to third parties or, except with your consent, be linked to personal data.

Of course, you can, in principle, also view our website without cookies. Normally, Internet browsers are set to accept cookies. In general, you can disable the use of cookies at any time via your browser's settings. Please use your Internet browser's Help features to find out how to change these settings. Please bear in mind that some features of our website may possibly not function if you have disabled the use of cookies.

Storage period and cookies used:

Insofar as you allow us to use cookies by means of your browser settings or by giving your consent, the following cookies may be used on our websites:

designation: "frontend", 2-hour storage period, technically essential cookie, for the operability of the website
designation: "cb-enabled", 1-year storage period, technically essential cookie, status of insertion of the cookie information text if closed by the user.

Insofar as these cookies may (also) relate to personal data, we have provided you with information on this below.

Via your browser settings, you can delete individual cookies or all existing cookies. Moreover, you will find information and instructions on how these cookies can be deleted or the storage thereof can be blocked in advance. The following links provide the information you will need depending upon your browser provider:

 

Contact form

Nature and purpose of the processing:

The data entered by you will be stored for the purpose of individual communication with you. To this end, it is essential that a valid email address and your name be given. This serves to allocate the enquiry and the subsequent reply thereto. The provision of further data is optional.

Legal basis:

The processing of the data entered in the contact form takes place on the basis of a legitimate interest (Art. 6 (1) f) GDPR).

By providing the contact form, we wish to make is easy for you to contact us. The details provided by you will be stored for the purpose of processing your enquiry and for possible follow-on questions.

Where you contact us in order to request an offer, the processing of the data entered in the contact form will take place for the purpose of taking steps prior to entering into a contract (Art. 6 (1) b) GDPR).

Recipients:

Recipients of the data may include processors.

Storage period:

Data shall be erased no later than 6 months after the enquiry has been processed.

Where a contractual relationship is brought about, we shall be subject to the statutory retention periods under the HGB [German Commercial Code] and shall erase your data after these periods have expired.

Provision prescribed or required:

The provision of your personal data is voluntary. However, we shall only be able to process your enquiry if you provide us with your name, your email address and the reason for the enquiry.

 

Use of script libraries (Google web fonts)

Nature and purpose of the processing:

In order to show our content correctly and in a graphically appealing manner across all browsers, we use on this website "Google web fonts" from Google LLC (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; hereinafter "Google") for showing fonts.

The data protection policy of the library operator Google can be found here: https://www.google.com/policies/privacy/

Legal basis:

The legal basis for the integration of Google web fonts and the transfer of data to Google in connection therewith is your consent (Art. 6 (1) a) GDPR).

Recipients:

The calling-up of script libraries or font libraries automatically triggers a connection to the operator of the library. It is theoretically possible for the operator, in this case Google, to collect data in the course thereof, but it is currently unclear whether and, if so, for what purposes it does so.

Storage period:

We do not collect any personal data as a result of the integration of Google web fonts.

Further information on Google web fonts can be found at https://developers.google.com/fonts/faq and in Google's data protection statement: https://www.google.com/policies/privacy/.

Transfer to third countries:

Google processes your data in the USA and has signed up to the EU_US Privacy Shield https://www.privacyshield.gov/EU-US-Framework.

Provision prescribed or required:

The provision of the personal data is prescribed neither by law nor by contract. However, it may be impossible to correctly show the content using standard fonts.

Revocation of consent:

The programming language JavaScript is normally used to show the content. Therefore, you can object to the processing of your data by disabling the execution of JavaScript in your browser or installing a JavaScript blocker. Please note that this may result in reduced functionality on the website.

 

Use of Google Maps

Nature and purpose of the processing:

On this website, we use the service offered by Google Maps. Google Maps is operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (hereinafter "Google"). This enables us to show you interactive maps directly on our website, allowing you to conveniently use the maps feature.

Further information on data processing by Google can be gathered from the Google data protection notice. There, you can also alter in the data privacy centre your personal data privacy settings.

Detailed instructions on the management of your own data in connection with Google products can be found here.

Legal basis:

The legal basis for the integration of Google Maps and the transfer of data to Google in connection therewith is your consent (Art. 6 (1) a) GDPR).

Recipients:

As a result of your visit to the website, Google will be informed that you have accessed the corresponding subsite of our website. This will happen regardless of whether Google provides a user account via which you are logged in, or whether no such user account exists. If you are logged into Google, your data will be directly associated with your account.

If you do not wish to be associated with your profile at Google, you will have to log out before you activate the button. Google stores your data in the form of user profiles and uses these data for the purposes of advertising, market research and/or tailoring its website to the users' needs. In particular, such evaluation takes place (even for users not logged in) for the provision of advertising tailored to the users' needs and in order to inform other users of the social network about your activities on our website. You have the right to object to the creation of such user profiles, but you will have to contact Google to exercise that right.

Storage period:

We do not collect any personal data as a result of the integration of Google Maps.

Transfer to third countries:

Google processes your data in the USA and has signed up to the EU_US Privacy Shield https://www.privacyshield.gov/EU-US-Framework.

Revocation of consent:

If you do not want Google to collect, process or use data concerning you via our Internet presence, you can disable JavaScript in your browser settings. In this case, however, you will not be able, or not be fully able, to use our website.

Provision prescribed or required:

Your personal data are provided voluntarily and solely on the basis of your consent. Insofar as you prevent access, this may result in reduced functionality on the website.

 

Embedded YouTube videos

Nature and purpose of the processing:

We embed YouTube videos on some of our websites. The operator of the corresponding plug-ins is YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA (hereinafter "YouTube"). When you visit a website containing the YouTube plug-in, a connection to YouTube servers is established. In the course thereof, YouTube is informed of which websites you visit. If you are logged into your YouTube account, YouTube may associate your surfing behaviour with you personally. You can prevent this by logging out of your YouTube account beforehand.

When a YouTube video is started, the provider uses cookies to collect information on the user's behaviour.

For further information on the purpose and scope of the collection of data and the processing thereof by YouTube, please refer to the provider's data protection statements. You can also obtain there further information on your rights and setting options in this connection for protecting your privacy (https://policies.google.com/privacy). Google processes your data in the USA and has signed up to the EU-US Privacy Shield https://www.privacyshield.gov/EU-US-Framework

Legal basis:

The legal basis for the integration of YouTube and the transfer of data to Google in connection therewith is your consent (Art. 6 (1) a) GDPR).

Recipients:

The calling-up of YouTube automatically triggers a connection to Google.

Storage period and revocation of consent:

Anyone who has disabled the storage of cookies for the Google ad programme will not have to reckon with such cookies when viewing YouTube videos. However, YouTube also stores non-personal usage information in other cookies. If you wish to prevent this, you have to block the storage of cookies in the browser.

Further information on data protection at "YouTube" can be found in the provider's data protection statement at: https://www.google.de/intl/de/policies/privacy/

Transfer to third countries:

Google processes your data in the USA and has signed up to the EU_US Privacy Shield https://www.privacyshield.gov/EU-US-Framework.

Provision prescribed or required:

Your personal data are provided voluntarily and solely on the basis of your consent. Insofar as you prevent access, this may result in reduced functionality on the website.

 

Social plug-ins

Nature and purpose of the processing:

Social plug-ins from the providers specified below are used on our websites. The plug-ins can be recognised by the corresponding logo.

Information, possibly including personal data, is sent to the service provider via these plug-ins in certain circumstances and is possibly used by this service provider. By means of a 2-click solution, we prevent data being collected and transferred to the service provider without the user's knowledge or consent. To activate a desired social plug-in, the plug-in must first be activated by clicking on the corresponding button. The collection of information and the transfer thereof to the service provider are triggered only as a result of such activation of the plug-in. We do not collect any personal data ourselves by means of the social plug-ins or by way of the use thereof.

We have no influence over what data an activated plug-in collects and how these data are used by the provider. Presently, it must be assumed that a direct connection to the provider's services is established, and at least the IP address and device-related information are collected and used. It is likewise possible that the service providers attempt to store cookies on the computer used. For information on what specific data are collected in this respect and how these data are used, please refer to the respective service provider's data protection notice. Note: If you are logged into Facebook at the same time, Facebook will be able to identify that you have visited a certain website.

We have integrated into our website the social media buttons of the following companies:

Facebook: https://www.facebook.com/StahlwerkAnnahuette
LinkedIn: https://de.linkedin.com/company/stahlwerk-annahuette

 

SSL encryption

To protect the security of your data during their transfer, we use, via HTTPS, encryption methods (e.g. SSL) corresponding to the current state of the art.

 

Commissioned processors

The operator of this website has commissioned the following organisations, companies and/or persons to process data:

makrohaus AG, Getreidegasse 9, D-83435 Bad Reichenhall

 

Amendment of our data protection policy

We reserve the right to adapt this Data Protection Statement in order to ensure that it always meets the current legal requirements or in order to incorporate into the Data Protection Statement changes to our services, e.g. when new services are introduced. The new Data Protection Statement shall then apply to your next visit.

 

Questions to the data protection officer

If you have any questions relating to data protection, please write an email to us or directly contact the person at our organisation who is responsible for data protection:

 

Questions to the data protection officer

If you have any questions about data protection, please send us an email or contact the person responsible for data protection in our organisation directly:

Alexandra Prandstätter

Stahlwerk Annahütte Max Aicher GmbH & Co. KG

Max-Aicher-Allee 1+2

83404 Ainring-Hammerau

E-Mail: datenschutz@annahuette.com

 

The Data Protection Statement has been prepared with the assistance of activeMind AG, the expert for external data protection officers (version #2019-04-10).

 

As at 10/2019