Privacy Policy
Data Controller under the GDPR
We, circledm e.U., as the data controller under the General Data Protection Regulation (GDPR), inform you in accordance with its requirements and the Data Protection Act (DSG) about what information we collect, how we use data, and what choices you have as a customer or website visitor.
Access Data and Server Log Files
The provider or web hosting provider collects data about access to the website (so-called server log files). Access data includes:
- Name of the accessed website or file
- Date and time of access
- Amount of data transferred
- Notification of successful access
- Browser type and version
- User’s operating system
- Referrer URL
- IP address
- Requesting provider
This data is used exclusively for statistical analysis and for the purpose of operating, securing, and optimizing the website. A subsequent review of the log data only occurs in case of concrete suspicion of unlawful use.
The legal basis is Art. 6(1)(f) GDPR (legitimate interest in the secure and error-free operation of the website).
Automated Decision-Making
We do not use any automated decision-making or profiling procedures that produce legal effects concerning you or similarly significantly affect you.
Storage of Personal Data
Personal data that you submit to us via this website, by email, or through forms or the app (e.g., name, email address, postal address, or other information) is processed by us and, if applicable, passed on to our service providers (1&1 IONOS SE) as data processors.
The processing is carried out for contact purposes, registration, and maintaining customer relationships. The data is stored until a written deletion request is received, but at least for the legally required period of 7 years.
The legal basis is Art. 6(1)(b) and (d) GDPR. Without this data, concluding a contract is not possible.
Profiling and QR Codes
We use the QR code management solution “QR-Server” for business cards and info flyers. When using dynamic QR codes, access data transmitted by the browser during scanning is stored.
This data is used for approximate location determination (geolocation). IP addresses are deleted or anonymized after use ends. Drawing conclusions about individual persons is not possible. No merging with other data sources takes place.
The data processor is Foundata GmbH, Steinhäuserstraße 20, 76135 Karlsruhe. Further information can be found at goqr.me.
TLS Encryption with HTTPS
We use HTTPS for secure data transmission over the internet. Through the use of TLS (Transport Layer Security), the confidentiality of transmitted data is ensured. You can recognize the encrypted connection by the lock symbol in your browser and by “https” in the address bar.
Cookies
Our website uses cookies to store user-specific data and improve user experience. Cookies can be viewed, restricted, or deleted in your browser settings.
If cookies are completely deactivated, certain functions of the website may be limited.
Google Analytics
This website uses Google Analytics from Google LLC for statistical analysis of visitor data. Processing is based on your consent in accordance with Art. 6(1)(a) GDPR and/or on the basis of legitimate interests in accordance with Art. 6(1)(f) GDPR.
You can prevent the collection of your data by Google Analytics at any time by installing the appropriate browser plugin or using the opt-out link.
Google Tag Manager
Google Tag Manager is used to manage website tags. It does not set cookies itself and does not process personal data, but only triggers other tags.
Newsletter
Our newsletter is sent exclusively based on your consent using the double opt-in procedure. The newsletter is sent via the service provider MailChimp.
You can unsubscribe from the newsletter at any time using the unsubscribe link in each email.
Social Media Presence
We maintain profiles on social networks such as Facebook, Instagram, LinkedIn, XING, and YouTube. Data processing is carried out by the respective platform operators as independent controllers.
Contact for Data Protection Inquiries
For questions about data protection, you can reach us at datenschutz@circled7.com.
Your Rights
You have the following rights under the GDPR:
- Right to rectification (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to object (Art. 21 GDPR)
Complaints can be submitted to the Austrian Data Protection Authority (www.dsb.gv.at).