Privacy policy

Personal data (usually referred to just as “data” below) will only be processed by us to the extent necessary and for the purpose of providing a functional and user-friendly website, including its contents, and the services offered there.

Per Art. 4 No. 1 of Regulation (EU) 2016/679, i.e. the General Data Protection Regulation (hereinafter referred to as the “GDPR”), “processing” refers to any operation or set of operations such as collection, recording, organization, structuring, storage, adaptation, alteration, retrieval, consultation, use, disclosure by transmission, dissemination, or otherwise making available, alignment, or combination, restriction, erasure, or destruction performed on personal data, whether by automated means or not.

The following privacy policy is intended to inform you in particular about the type, scope, purpose, duration, and legal basis for the processing of such data either under our own control or in conjunction with others. We also inform you below about the third-party components we use to optimize our website and improve the user experience which may result in said third parties also processing data they collect and control.

Our privacy policy is structured as follows:

I. Information about us as controllers of your data

II. The rights of users and data subjects

III. Information about the data processing

 

I. Information about us as controllers of your data

For questions regarding our data privacy policy, please contact the Data Protection Officer of Exozet Berlin GmbH at

datenschutz@exozet.com or

Exozet Berlin GmbH
Datenschutzbeauftragter
Platz der Luftbrücke 4-6
12101 Berlin

 

II. The rights of users and data subjects

With regard to the data processing to be described in more detail below, users and data subjects have the right

  • to confirmation of whether data concerning them is being processed, information about the data being processed, further information about the nature of the data processing, and copies of the data (cf. also Art. 15 GDPR);
  • to correct or complete incorrect or incomplete data (cf. also Art. 16 GDPR);
  • to the immediate deletion of data concerning them (cf. also Art. 17 DSGVO), or, alternatively, if further processing is necessary as stipulated in Art. 17 Para. 3 GDPR, to restrict said processing per Art. 18 GDPR;
  • to receive copies of the data concerning them and/or provided by them and to have the same transmitted to other providers/controllers (cf. also Art. 20 GDPR);
  • to file complaints with the supervisory authority if they believe that data concerning them is being processed by the controller in breach of data protection provisions (see also Art. 77 GDPR).

In addition, the controller is obliged to inform all recipients to whom it discloses data of any such corrections, deletions, or restrictions placed on processing the same per Art. 16, 17 Para. 1, 18 GDPR. However, this obligation does not apply if such notification is impossible or involves a disproportionate effort. Nevertheless, users have a right to information about these recipients.

Likewise, under Art. 21 GDPR, users and data subjects have the right to object to the controller’s future processing of their data pursuant to Art. 6 Para. 1 lit. f) GDPR. In particular, an objection to data processing for the purpose of direct advertising is permissible.

 

III. Information about the data processing

Your data processed when using our website will be deleted or blocked as soon as the purpose for its storage ceases to apply, provided the deletion of the same is not in breach of any statutory storage obligations or unless otherwise stipulated below.

Server data

For technical reasons, the following data sent by your internet browser to us or to our server provider will be collected, especially to ensure a secure and stable website: These server log files record the type and version of your browser, operating system, the website from which you came (referrer URL), the webpages on our site visited, the date and time of your visit, as well as the IP address from which you visited our site.

The data thus collected will be temporarily stored, but not in association with any other of your data.

The basis for this storage is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the improvement, stability, functionality, and security of our website.

The data will be deleted within no more than seven days, unless continued storage is required for evidentiary purposes. In which case, all or part of the data will be excluded from deletion until the investigation of the relevant incident is finally resolved.

Cookies

a) Session cookies

We use cookies on our website. Cookies are small text files or other storage technologies stored on your computer by your browser. These cookies process certain specific information about you, such as your browser, location data, or IP address.

This processing makes our website more user-friendly, efficient, and secure, allowing us, for example, to display our website in different languages or to offer a shopping cart function.

The legal basis for such processing is Art. 6 Para. 1 lit. b) GDPR, insofar as these cookies are used to collect data to initiate or process contractual relationships.

If the processing does not serve to initiate or process a contract, our legitimate interest lies in improving the functionality of our website. The legal basis is then Art. 6 Para. 1 lit. f) GDPR.

When you close your browser, these session cookies are deleted.

b) Third-party cookies

If necessary, our website may also use cookies from companies with whom we cooperate for the purpose of advertising, analyzing, or improving the features of our website.

Please refer to the following information for details, in particular for the legal basis and purpose of such third-party collection and processing of data collected through cookies.

c) Disabling cookies

You can refuse the use of cookies by changing the settings on your browser. Likewise, you can use the browser to delete cookies that have already been stored. However, the steps and measures required vary, depending on the browser you use. If you have any questions, please use the help function or consult the documentation for your browser or contact its maker for support.

If you prevent or restrict the installation of cookies, not all of the functions on our site may be fully usable.

Contact

If you contact us via email or the contact form, the data you provide will be used for the purpose of processing your request. We must have this data in order to process and answer your inquiry; otherwise we will not be able to answer it in full or at all.

The legal basis for this data processing is Art. 6 Para. 1 lit. b) GDPR.

Your data will be deleted once we have fully answered your inquiry and there is no further legal obligation to store your data, such as if an order or contract resulted therefrom.

Google services

On our website, we use the following services operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, hereinafter referred to as „Google“: Google Analytics, Google Maps, Google Fonts, YouTube.

Through certification according to the EU-US Privacy Shield, Google guarantees that it will follow the EU’s data protection regulations when processing data in the United States.

Google Analytics

We use Google Analytics on our website. This service is used to analyze how our website is used. The legal basis is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the analysis, optimization, and economic operation of our site.

Usage and user-related information, such as IP address, place, time, or frequency of your visits to our website will be transmitted to a Google server in the United States and stored there. However, we use Google Analytics with the so-called anonymization function, whereby Google truncates the IP address within the EU or the EEA before it is transmitted to the US.

The data collected in this way is in turn used by Google to provide us with an evaluation of visits to our website and what visitors do once there. This data can also be used to provide other services related to the use of our website and of the internet in general.

Google states that it will not connect your IP address to other data. In addition, Google provides further information with regard to its data protection practices at https://policies.google.com/technologies/partner-sites?hl=en including options you can exercise to prevent such use of your data.

In addition, Google offers an opt-out add-on at https://tools.google.com/dlpage/gaoptout?hl=en in addition with further information. This add-on can be installed on the most popular browsers and offers you further control over the data that Google collects when you visit our website. The add-on informs Google Analytics’ JavaScript (ga.js) that no information about the website visit should be transmitted to Google Analytics. However, this does not prevent information from being transmitted to us or to other web analytics services we may use as detailed herein.

Google Maps

Our website uses Google Maps to display our location and to provide directions. If you access the Google Maps components integrated into our website, Google will store a cookie on your device via your browser. Your user settings and data are processed to display our location and create a route description. We cannot prevent Google from using servers in the USA.

The legal basis is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in optimizing the functionality of our website.

By connecting to Google in this way, Google can determine from which website your request has been sent and to which IP address the directions are transmitted.

If you do not agree to this processing, you have the option of preventing the installation of cookies by making the appropriate settings in your browser. Further details can be found in the section about cookies above.

In addition, the use of Google Maps and the information obtained via Google Maps is governed by the Google Terms of Use and the Terms and Conditions for Google Maps.

Google also offers further information at https://adssettings.google.com/authenticated and https://policies.google.com/privacy.

Google Fonts

Our website uses Google Fonts to display external fonts. To enable the display of certain fonts on our website, a connection to the Google server in the USA is established whenever our website is accessed.

The legal basis is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the optimization and economic operation of our site.

When you access our site, a connection to Google is established from which Google can identify the site from which your request has been sent and to which IP address the fonts are being transmitted for display.

Google offers detailed information at https://adssettings.google.com/authenticated and https://policies.google.com/privacy.

YouTube

We use YouTube on our website. This is a video portal operated by YouTube LLC., 901 Cherry Ave., San Bruno, CA 94066, USA, hereinafter referred to as “YouTube”. YouTube is a subsidiary of Google.

Through certification according to the EU-US Privacy Shield, Google and its subsidiary YouTube guarantee that they will follow the EU’s data protection regulations when processing data in the United States.

The legal basis is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in improving the quality of our website.

A connection to the YouTube server in the USA will be established as soon as you access any of our webpages on which a YouTube video is embedded. This connection is required in order to be able to display the respective video on our website within your browser. YouTube will record and process at a minimum your IP address, the date and time the video was displayed, as well as the website you visited. In addition, a connection to the DoubleClick advertising network of Google is established.

If you are logged in to YouTube when you access our site, YouTube will assign the connection information to your YouTube account. To prevent this, you must either log out of YouTube before visiting our site or make the appropriate settings in your YouTube account.

For the purpose of functionality and analysis of usage behavior, YouTube permanently stores cookies on your device via your browser. If you do not agree to this processing, you have the option of preventing the installation of cookies by making the appropriate settings in your browser. Further details can be found in the section about cookies above.

Further information about the collection and use of data as well as your rights and protection options in Google’s privacy policy found at https://policies.google.com/privacy.

Newsletter

The following information will inform you about the contents of our newsletter as well as the registration, transmission, and statistical evaluation procedures as well as your rights of objection. By subscribing to our newsletter, you declare your agreement with receiving the newsletter and the procedures described.

Content of the newsletter

We send newsletters, e-mails, and other electronic notifications containing advertising information (hereinafter referred to as “newsletters”) only with the consent of the recipient or a legal permission. If the contents of the newsletter are specifically described within the scope of registration, they are decisive for the consent of the user. Generally, our newsletters contain information about the work of and news from Exozet (this may include, in particular, references to Medium articles, events with our experts, our services or online appearances).

Double opt-in and logging

The registration to our newsletter is made in a so-called double opt-in procedure. This means that after registration you will receive an e-mail asking you to confirm your registration. This confirmation is necessary so that nobody can register with external e-mail addresses.

The registrations for the newsletter are logged in order to be able to prove the registration process according to the legal requirements. This includes the storage of the registration and confirmation time, as well as the IP address. Likewise the changes of your data stored with MailChimp are logged.

Use of the mailing service provider “MailChimp”

The newsletter is sent via “MailChimp”, a newsletter mailing platform of the US provider Rocket Science Group, LLC, 675 Ponce De Leon Ave NE #5000, Atlanta, GA 30308, USA.

The e-mail addresses of our newsletter recipients, as well as their other data described in the context of these notes, are stored on MailChimp’s servers in the USA. MailChimp uses this information to send and evaluate the newsletter on our behalf. MailChimp may also use this information to optimize or improve its own services, e.g. to technically optimize the sending and display of newsletters, or for commercial purposes to determine from which countries the recipients are from. However, MailChimp does not use the data of our newsletter recipients to write to them or pass them on to third parties.

We rely on the reliability as well as the IT and data security of MailChimp. MailChimp is certified under the EU-US data protection agreement “Privacy Shield” and is thus committed to complying with EU data protection regulations. In addition, we have concluded a Data Processing Agreement with MailChimp. This is a contract in which MailChimp undertakes to protect the data of our users, to process it on our behalf in accordance with their data protection regulations and, in particular, not to pass it on to third parties. You can view the privacy policy of MailChimp here.

Subscription data

To subscribe to the newsletter, the only information that needs to be entered is your e-mail address.

Statistical data and analysis

The newsletters contain a so-called “web-beacon”, i.e. a pixel-sized file that is retrieved from the MailChimp server when the newsletter is opened. Within the scope of this retrieval, technical information such as information about the browser and your system, as well as your IP address and time of retrieval are collected. This information is used to technically improve the services on the basis of the technical data or the target groups and their reading behavior on the basis of their retrieval locations (which can be determined with the help of the IP address) or access times.

Statistical surveys also include determining whether newsletters are opened, when they are opened, and which links are clicked. For technical reasons, this information can be assigned to the individual newsletter recipients. However, it is neither our nor MailChimp’s aim to observe individual users. The evaluations rather help us to recognize the reading habits of our users and to adapt our content or to send different content according to the interests of our users.

Online access and data management

There are cases where we direct the newsletter recipients to the MailChimp websites. For example, our newsletters contain a link with which the newsletter recipients can retrieve the newsletters online (for example, in case of display problems in the e-mail program). Furthermore, newsletter recipients can subsequently correct their data, such as their e-mail address. Likewise, MailChimp’s privacy policy is only available on their website.

In this context, we point out that cookies are used on the MailChimp website, and therefore personal data are processed by MailChimp, its partners, and service providers (for example Google Analytics). We have no influence on this data collection. Further information can be found in MailChimp’s privacy policy. In addition, we draw your attention to the possibility of objecting to data collection for advertising purposes on the websites http://www.aboutads.info/choices/ and http://www.youronlinechoices.com/ (for the European area).

Cancellation/revocation

You can cancel the newsletter subscription, i.e. revoke your consent, at any time. At the same time, your consent to its being sent via MailChimp and the statistical analyses will expire. A separate revocation of the sending via MailChimp or the statistical analysis is unfortunately not possible.

You will find a link to cancel the newsletter subscription at the end of each newsletter.

Legal basis in GDPR

In accordance with the provisions of the General Data Protection Regulation (GDPR), we would like to inform you that your consent to the sending of e-mail addresses is based on Art. 6 Para. 1 lit. a), 7 GDPR and § 7 Para. 2 No. 3 or Para. 3 German UWG. The use of the MailChimp newsletter distribution service, the carrying out of statistical surveys and analyses as well as the logging of the registration procedure are carried out on the basis of our legitimate interests pursuant to Art. 6 Para. 1 lit. f) GDPR. Our interest is directed towards the use of a user-friendly and secure newsletter system that serves both our business interests and the expectations of the users.

Sharing our content in social networks

We have integrated buttons with which you can share the link to many of our sites on the following social networks:

  • Facebook, operated by Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland
  • Twitter, operated by Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA
  • Xing, operated by XING AG, Dammtorstraße 29‑32, 20354 Hamburg, Germany
  • LinkedIn, operated by LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland

In our website, we not use so-called social plug-ins, which establish a connection to the servers of the aforementioned social networks directly when a page is opened.

However, when you open a “share” link on one of our pages, a new window will open with an external link to the selected social network. In this new window, if you are not automatically logged in, you can log in to the selected social network. This process does not transfer any data to us. The newly opened window will only load the data to access the social network you have selected.

You can find the privacy policies of the aforementioned social networks here:

Online job applications / publication of job advertisements

We offer you the opportunity to apply for jobs with our company via our website. In the case of these digital applications, we collect your application data electronically in order to process your application.

The legal basis for this processing is § 26 Para. 1 S. 1 BDSG in conjunction with Art. 88 Para. 1 GDPR.

If you are hired as a result of the application process, we will store the data you provide during the application process in your personnel file for the purpose of the usual organizational and administrative process, naturally in compliance with further legal obligations.

The legal basis for this processing is § 26 Para. 1 S. 1 BDSG in conjunction with Art. 88 Para. 1 GDPR.

If we do not hire you, we will automatically delete the data submitted to us two months after the final decision is made. We will not delete the data, however, if we must store the data for legal reasons such as evidence of equal treatment of applicants, until any legal action is concluded, or four months.

In this case, the legal basis is Art. 6 Para. 1 lit. f) GDPR and § 24 Para. 1 No. 2 BDSG. Our legitimate interest lies in any legal defense we may have to mount.

If you expressly consent to a longer storage of your data, e.g. for your inclusion in a database of applicants or interested parties, the data will be processed further on the basis of your consent. The legal basis is then Art. 6 Para. 1 lit. a) GDPR. You may withdraw your consent at any time with future effect per Art. 7 Para. 3 GDPR.

Source reference: This privacy statement has been prepared using the Model Data Protection Statement provided by Anwaltskanzlei Weiß & Partner as well as the information of MailChimp privacy information provided by Rechtsanwalt Dr. Thomas Schwenke.