Privacy & Cookies policy
With this privacy policy we inform you about our handling of your personal data. We know that protecting this data is important to you and we appreciate the trust you place in us. We process personal data in accordance with the General Data Protection Regulation (GDPR) and the Federal Data Protection Act (BDSG)
1. Who controls the data processing and who can I contact?
Preview Brands International Ltd. operates this site ("Website").
Contact details:
Preview Brands International Ltd.
1, Ferris Building
St. Lukes Street, Guardamangia,
PTA1020, Pieta
Malta
Telephone: +35620106811
Email: nuvita@nuvitababy.com
2. For what purpose do we process your data and on what legal basis?
We process personal data in accordance with the provisions of the GDPR and the Federal Data Protection Act (BDSG) for the following purposes:
2.1 For the fulfillment of contractual and pre-contractual obligations (Article 6, paragraph 1, sentence 1, letter b) of the GDPR)
The processing of personal data (article 4 n. 2 GDPR) takes place to provide this website and market the products, in particular to answer questions relating to our business relations and for all activities necessary for the operation and administration of the company .
Anteprima Brands International Ltd. processes the personal information you provide as a user at the time of registration, for the purpose of purchasing. In particular, the following data is processed: name, e-mail address, address (invoice and, if applicable, different shipping address), order information and telephone number.
2.2 Based on legitimate interests (Article 6 (1) sentence 1 (f) GDPR)
Furthermore, we process your data beyond the needs of the website and the effective execution of the contract to pursue legitimate interests of third parties or our own, in particular in the following cases:
- Respond to your questions related or unrelated to a purchase;
- Advertising or market and opinion research, provided you have not objected to the use of your data;
- Claiming legal claims and defense in legal disputes;
- Ensure IT security and IT operations;
- Prevent or investigate crimes;
- business management and product development;
Our legitimate interest is to market our products optimally, to further develop these products and our company or to protect our company against threats and to assert our rights.
2.3 Based on your consent (Article 6(1)(1)(a) of the General Data Protection Regulation)
Insofar as you have given us your consent to process your personal data for specific purposes (e.g. evaluation or use of data for marketing purposes), the legality of this processing is based on your consent. A given consent can be revoked at any time. This also applies to the withdrawal of consents, which you provided to us before the validity of the GDPR (before May 25, 2018). Please note that withdrawal is only effective for the future. Processing that took place before the withdrawal is not affected by a revocation.
2.4 For fulfillment of a legal obligation (Article 6 (1) sentence 1 (c) GDPR)
Furthermore, we are subject to various legal obligations (e.g. money laundering law, tax laws), which require data processing.
3. Who gets my data?
Within the respective parent company, departments that need your personal data to fulfill our contractual and legal obligations gain access to your data.
Furthermore, we pass on your data to the recipients expressly named in this privacy policy. Furthermore, we pass it on to the following categories of recipients if this is necessary to fulfill a contractual relationship with you or to implement pre-contractual measures (Article 6(1) , sentence 1, GDPR) or to pursue legitimate interests (Article 6 (1) sentence 1 lit. f GDPR):
- IT service providers, especially software as a service, hosting, storage and cloud computing providers,
- logistics service providers,
- email marketing service providers and customer service providers,
- marketing service providers, in particular Google Ads and WhatsApp advisory service providers,
- payment service providers for the collection of their fees
To the extent that the processing is required to pursue legitimate interests, such as the use of IT services, our legitimate interest is to outsource functions.
Furthermore, your personal data is forwarded or transmitted if required by law (Article 6 (1) sentence 1 (c) GDPR), or if you have consented (Article 6 (1
4. How long will my data be kept?
To the extent necessary, we process and store your personal data for the duration of our contractual relationship. Please note that our contractual relationship is generally a permanent obligation.
If a contractual relationship or other civil law claim exists, the retention period is also governed by the statutory limitation periods.
The storage period of cookies depends on the individual case and is usually between 12 and 24 months.
5. Is the data transmitted to a third country or an international organization?
Anteprima Brands International Ltd. itself does not transmit data to third countries (countries outside the European Economic Area – EEA). However, some of the recipients mentioned above will transfer personal data to third countries, but this will only happen on the basis of a decision by the EU Commission or, as indicated below, on the basis of standard data protection clauses of the EU Commission (available at https://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=OJ:L:2010:039:0005:0018:EN:PDF) or binding corporate rules.
6. Website: log file
When you visit our website, the browser used on your device automatically sends information to the server hosting our website. This information is temporarily stored in a so-called log file. The following information is collected without your intervention and stored until automatic deletion: IP address of the requesting computer, date and time of access, name and URL of the file retrieved, web page from which the access follows (“referrer URL”), if applicable, the search engine you are using, the browser you are using and, if applicable, the computer operating system and the name of the access provider.
The legal basis for this type of data processing is Article 6 (1) sentence 1 lit. f GDPR. The legitimate interests pursued by us are in particular:
- Ensure a smooth connection of the website,
- ensure comfortable use of our website,
- billing,
- statistical evaluation using a pseudonym to optimize our website and offer quality and range,
- evaluation of the security and stability of the system
- for other administrative purposes.
7. Marketing
7.1 Newsletters
To the extent that the user has expressly consented pursuant to art. 6 para. 1 sentence 1 (a) GDPR we use your e-mail address to inform you with our e-mail newsletter, our special offers and promotions. Your consent will be logged.
To receive the newsletter, the indication of an e-mail address is sufficient.
The withdrawal of consent is possible at any time, for example via the link at the end of each e-mail. Alternatively, you can also send your withdrawal notification at any time by email to nuvita@nuvitababy.com. In this case, your email address will be deleted from our email distribution list and added to our blacklist. The withdrawal of consent has effect only for the future and will not affect actions performed in the past.
Newsletter tracking
Please note that we evaluate the behavior of our e-mail recipients using pseudonymous statistics. For this purpose, the e-mails contain so-called web beacons or tracking pixels and links, which are each linked with an individual ID. Therefore, we record the opening and forwarding hours of the e-mail, as well as the clicking on the links contained therein, the IP address (to determine the country of retrieval) and the e-mail program used. This data is not linked to your e-mail address or other personal data, therefore a direct personal relationship is excluded for us. The evaluation is based on aggregate usage statistics (delivery rate, open rate, click rate, number of redirects, number of clicks on links contained in the email, email programs used, opens and clicks by time of day and date, country of recovery). Only in the event of cancellations or unsuccessful deliveries will we additionally receive information about your name and e-mail address. This is (also) in your interest, so that we can remove you from our email distribution list immediately or correct the delivery problem. The use of a pseudonym in the evaluation of the usage behavior serves to verify the success of our e-mail marketing and to continuously improve it. For these purposes, we have a legitimate interest in data processing. The legal basis is Art. 6 (1) sentence 1 (f) GDPR.
7.2 Existing Customer Advertising
Insofar as you have already ordered our products for a fee, we will inform you from time to time by e-mail about similar products and services from us, unless you have expressly refused this permission.
The legal basis for data processing is Art. 6 (1) sentence 1 (f) GDPR. We have a legitimate interest in direct marketing (Chapter 47 GDPR).
You can object to the use of your email address for promotional purposes at any time at no additional cost, for example via the link at the end of each email or by email to nuvita@nuvitababy.com .
8. Cookies and similar technologies
We use cookies on our website that collect your data using pseudonyms. Cookies are small text files generated by a website and saved by your Internet browser when you visit the website on your hard drive. Depending on the cookie, different data is collected.
We use technically necessary cookies, functional cookies, web analysis cookies and tracking cookies for advertising purposes on our website.
If you want to prevent the use of cookies, you can generally do the following:
- You can delete existing cookies in your browser,
- you can prevent the storage of (third-party) cookies in your browser settings,
- you can use tools like Ghostery (https://www.ghostery.com/de/) which block tracking tools,
- You can opt out of personalized ads from providers who are part of the About Ads self-regulation campaign (http://www.aboutads.info/choices).
- you can use the opt-out functions of the Network Advertising Initiative (http://optout.networkadvertising.org/) or the page http://www.youronlinechoices.com/de/ to prevent tracking.
Please note that you may not be able to use all the features of our website if you block cookies.
8.1 Technically necessary cookies
Many of the cookies we use are technically necessary to enable you to use our website and the services offered on them ("session cookies"). These cookies allow e.g. placing goods in a shopping cart or logging into the secure area. The legal basis of the treatment is the Art. 6 (1) sentence 1 (b) GDPR. The data will not be combined with other personal information and will not be used for promotional purposes. Session cookies are deleted after the end of the respective browser session, at the latest after seven days.
8.2 Functional cookies
We use temporary cookies to improve usability. These cookies are stored on your device for a specified period of time, enabling them to be recognized when you re-enter our site and your preferences and preferences are set automatically. The legal basis of the treatment is the Art. 6 (1) sentence 1 (f) GDPR.
8.3 Web Analytics cookies
We use cookies to create pseudonymous user profiles for web analysis purposes (“web analysis cookies”). These cookies allow us to recognize repeat users (device owners), analyze their behavior on our website, optimize our website and measure their interaction. The legal basis for data processing is Art. 6 para. 1 sentence 1 lit. a GDPR, i.e. your consent. We do not combine the data with other personal information and do not use it to target individual users for advertising purposes.
8.3.1 Google Analytics with anonymisation function
For this web analysis we use the Google Analytics service, operated by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA ("Google").
Google Analytics uses cookies which are stored on your computer and which enable an analysis of your use of the website. The information generated by the cookie about your use of the website (browser type / version, operating system used, referring URL, hostname of the accessing computer (IP address), date and time of the server request) are usually transferred to Google servers in the USA and stored there. On our website, we have extended Google Analytics with the code "anonymizeIp ()" to ensure an anonymous collection of IP addresses (so-called IP masking). Google will then reduce your IP address by the last octet within member states of the European Union or in other signatory states to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. The transfer of information to a third country outside the EU is covered by an adequacy decision of the Commission (C / 2016/4176 of 12 July 2016 – http://data.europa.eu/eli/dec_impl/2016/ 1250/ oj pursuant to article 45 of the GDPR, since Google has undertaken to comply with the principles of the EU-US privacy shield (https://www.privacyshield.gov/EU-US-Framework).
On our behalf, Google uses this information as a processor in accordance with Art. 28 GDPR to evaluate the use of the website, to compile reports on website activity and to provide the website operator with further services associated with the use of the website and the use of the Internet. The IP address transmitted by your browser in the context of Google Analytics is not merged with other Google data.
For more information on Google Analytics Terms of Use and Privacy Policy, please visit https://www.google.com/analytics/terms/gb.html und https://support.google.com/analytics/answer/6004245 ? hl = en.
8.3.2 Other cookies
We continuously adapt our web analytics to market needs. Therefore, the use of cookies changes all the time. Through the cookie banner of our website, we provide information about other cookies used and the purpose of use.
8.4 Tracking Cookies for Promotional Purposes
We also use tracking cookies for the purpose of targeted and interest-based online advertising (“advertising cookies”). These cookies collect and store information about the use of our website in pseudonymous form. The legal basis for data processing is Art. 6 para. 1 sentence 1 lit. a GDPR, i.e. your consent. You can withdraw your consent at any time. The legal basis for the processing carried out on the basis of your consent until the withdrawal remains unaffected.
We use the information to place advertisements relevant to your interests on our website and on third-party websites (if they are part of our advertising network). You will benefit from this because you will be shown less advertising that does not reflect your interests. We also use the information to measure and optimize the success of our advertising campaigns.
In particular, we use the following tracking cookies (and tracking pixels) for promotional purposes.
8.4.1 Google Ads with Conversion Tracking
This website uses the online advertising service Google Ads with conversion operated by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA ("Google").
We use the service to place advertisements on the results page of a Google search or a website of the Google advertising network using Google (so-called Google Ads). Our aim is to draw your attention to our offers. Conversion tracking allows us to measure the success of our individual advertising measures by means of certain parameters (e.g. placement of advertisements or user clicks).
When you click on an ad placed by Google, Google stores a conversion tracking cookie on your computer. These cookies usually expire after 30 days and are not intended to identify you personally. For this cookie, the unique cookie ID, number of ad impressions per placement (frequency), last impression (relevant for post-view conversions) and opt-out information (flag that the user no longer wishes to be routed) are usually stored as analysis values.
These cookies help Google recognize your browser. If you visit certain websites on a Google Ads customer's website and the cookie has not yet expired, Google and the customer may recognize that you clicked on the ad and were redirected to the website. A different cookie is assigned to each Google Ads customer. Therefore, the cookies cannot be traced across the websites of Google Ads customers. We do not collect or process personal data when using Google Ads. We receive statistical evaluations from Google only with the total number of users who clicked on an ad and were redirected to a website with a conversion tracking tag. Based on these evaluations, we can recognize which of the advertising measures used are particularly effective. We receive no further data from the use of advertising material; in particular, we cannot identify users based on this information.
Thanks to the technologies used, your browser automatically establishes a direct connection to a Google server in the USA. The transfer of your information to a third country outside the EU is covered by an adequacy decision of the Commission pursuant to art. 45 GDPR, as Google has self-certified its adherence to the principles of the EU-US Privacy Shield (https://www.privacyshield.gov/EU-US-Framework). By integrating Google Ads with conversion tracking, Google receives the information that you have called up the corresponding website of our web presence or clicked on an advertisement from us. If you are registered with a Google service, Google may associate the data with your account. Even if you are not registered or logged in to Google, it is possible that Google can obtain and store your IP address.
Further information on data processing in the context of Google Ads can be found at http://www.google.com/intl/de/policies/privacy.
8.4.2 Other cookies
We continuously adapt our online advertising to market needs. Therefore, the use of cookies for this purpose changes all the time. Through the cookie banner of our website, we provide information about other cookies used and the purpose of use.
8.5 HotJar
On our website, through the technologies provided by HotJar (HotJar Ltd., St Julian's Business Center, 3, Elia Zammit Street, St Julian's STJ 1000, Malta) with the "HotJar" analysis service, visitor interaction data is collected and archived to optimize the user experience and for the improvement of customer satisfaction. For this, mouse clicks, mouse movements and scroll movements as well as keyboard inputs can be saved.
HotJar does not log this data to websites that do not use the HotJar system. Data collection and storage can be objected to at any time and you can opt-out here: https://www.hotjar.com/opt-out. In some cases, deactivation may lead to a limitation of the functionality of our website.
8.6 LinkedIn
We have integrated components of the LinkedIn Corporation on our website. LinkedIn is an Internet-based social network that allows users to connect with existing business contacts and make new business contacts.
The operating company of LinkedIn is LinkedIn Corporation, 2029 Stierlin Court Mountain View, CA 94043, USA. Privacy policy outside the United States is maintained by LinkedIn Ireland, Privacy Policy Issues, Wilton Plaza, Wilton Place, Dublin 2, Ireland.
Each time you visit our website, which has a LinkedIn component (LinkedIn plug-in), this component causes the browser used by the object to download a corresponding representation of the LinkedIn component. Further information about LinkedIn plug-ins can be found at https://developer.linkedin.com/plugins. As part of this technical process, LinkedIn obtains knowledge of the specific subsite of our website visited by the person concerned.
If the data subject is logged in to LinkedIn at the same time, LinkedIn recognizes with each visit to our website by the data subject and during the entire duration of the respective stay on our website, which specific subsite of our website he visits the interested party. This information is collected via the LinkedIn component and linked by LinkedIn to the LinkedIn account of the data subject. If the person concerned activates a LinkedIn button integrated on our website, LinkedIn assigns this information to the personal LinkedIn user account of the person concerned and saves this personal data.
LinkedIn always receives information via the LinkedIn component that the data subject has visited our website if the data subject is simultaneously logged in to LinkedIn at the time of access to our website; this happens whether or not the person clicks on the LinkedIn component. If the data subject does not wish to transmit this information to LinkedIn, LinkedIn can prevent them from logging out of their LinkedIn account before visiting our website.
At https://www.linkedin.com/psettings/guest-controls, LinkedIn offers the option to opt-out of receiving email messages, text messages and targeted ads, as well as manage ad settings. LinkedIn also uses partners such as Quantcast, Google Analytics, BlueKai, DoubleClick, Nielsen, Comscore, Eloqua and Lotame, who can set cookies. These cookies can be rejected at https://www.linkedin.com/legal/cookie-policy. LinkedIn's privacy policy is available at https://www.linkedin.com/legal/privacy-policy
8.7 Facebook
The controller has integrated components of the company Facebook on this website. Facebook is a social network.
A social network is an Internet-based social meeting place, an online community that typically allows users to communicate with each other and interact in virtual space. A social network can serve as a platform for the exchange of opinions and experiences or allows the Internet community to provide personal or business information. Facebook allows social network users to create private profiles, upload photos and socialize through friend requests.
The operating company of Facebook is Facebook, Inc., 1 Hacker Way, Menlo Park, CA 94025, USA. The persons responsible for the processing of personal data, if a data subject lives outside the USA or Canada, are Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland.
With each visit to one of the individual pages of this website, which is operated by the controller and on which a Facebook component (Facebook plug-in) was integrated, the Internet browser on the information technology system of the person concerned automatically by the respective Facebook component causes the download of a representation of the corresponding Facebook component of Facebook. An overview of all Facebook plug-ins can be found at https://developers.facebook.com/docs/plugins/?locale=en_US. As part of this technical process, Facebook receives information about which specific lower part of our website is visited by the data subject.
If the data subject is simultaneously logged in to Facebook, Facebook recognizes with each visit to our website by the data subject and during the entire duration of the respective stay on our website, which specific underside of our website the data subject visits. This information is collected through the Facebook component and assigned by Facebook to the respective Facebook account of the data subject. If the data subject activates one of the Facebook buttons integrated on our website, for example the "Like" button, or if the data subject makes a comment, Facebook assigns this information to the personal Facebook user account of the data subject and stores it on personal data.
Facebook always receives information via the Facebook component that the data subject has visited our website if the data subject is logged in to Facebook at the same time as accessing our website; this happens regardless of whether the person clicks on the Facebook component or not. If such a transfer of this information to Facebook is not desired by the data subject, he can prevent the transfer by logging out of his Facebook account before calling up our website. The data policy published by Facebook, available at https://www. facebook.com/about/privacy/update?ref=old_policy provides information about the collection, processing and use of personal data by Facebook. It also explains what options Facebook offers to protect the privacy of the data subject.
As a member of Facebook, you can also adjust your account settings at https://www.facebook.com/ads/website_custom_audiences/ and opt out of cross-device data collection through Custom Audiences. For more information on Facebook's privacy policy, please visit: https://www.facebook.com/about/privacy/update?ref=old_policy.
The use of our Facebook page is generally possible without providing personal information. Insofar as personal data (e.g. name, address or e-mail addresses) is collected on our website, e.g. by contacting us directly via Facebook message, this is always done on a voluntary basis. This data will not be disclosed to third parties without your explicit consent.
We operate this site to draw attention to our services, events and other promotions and to contact you as a visitor and user of this Facebook page and our website. As the operator of the Facebook page, we have no interest in the collection and further processing of your personal data for analysis or marketing purposes. Further information on our handling of personal data can be found in our privacy policy on our website. The operation of this Facebook page, including the processing of users' personal data, is based on our legitimate interest in timely information and support and opportunities for interaction for and with our users and visitors. Art. 6 para. 1 lit. f DSGVO. The information that you voluntarily provide to us, we also process on the basis of your consent in accordance with. Art. 6 para. 1 lit. a DSGVO.
Processing of personal data by Facebook:
In its judgment of 06.05.2018, the European Court of Justice (ECJ) ruled that the operator of a Facebook page, together with
Facebook is responsible for the processing of personal data.
Facebook processes user data for the following purposes:
- Advertising, analysis, creation of personalized advertising
- Creating user profiles
- Market research
When you access this page, Facebook automatically saves information in a log file that your browser sends to Facebook. We expressly point out that we have no knowledge of the scope and content of the data collected by Facebook and their processing and use or, if necessary, the transmission to third parties via Facebook.
For information on Facebook's privacy, see Facebook's Privacy Policy at https://www.facebook.com/policy.php.
Facebook uses cookies for the storage and further processing of this information, i.e. small text files that are stored on the user's various terminals. If the user has a Facebook profile and is logged into it, storage and analysis are also cross-device. Facebook's privacy policy contains further information on data processing at Facebook: https://www.facebook.com/about/privacy/.
Facebook Inc., the US parent company of Facebook Ireland Ltd. is subject to the EU-US. Privacy Shield certifies that it is committed to complying with European privacy policies.
For more information on Facebook's Privacy Shield status, please visit https://www.privacyshield.gov/participant?id=a2zt0000000GnywAAC&status=Active.
The transmission and further processing of users' personal data to third countries, such as the USA, as well as the possible associated risks for users cannot be excluded by us as site operators.
Statistics
Statistical data on the different categories of visitors to the Facebook page are available to us in Facebook "Insights". These statistics are generated and provided by Facebook. We as the site operator have no influence on the generation and presentation.
We cannot disable this feature or prevent data generation and processing. For a selectable period of time and for each of the Fan, Subscriber and Interact groups, we receive the following data from Facebook on our Facebook page: Total page views, Likes, Page activity, Posts, Reach, Video views, Contribution interval , comments, shared content, replies, men and women sharing, city and town origin, language, shop views and clicks, route planning clicks, phone number clicks. It also provides data on the Facebook groups connected to our Facebook page. Due to the constant development of Facebook, the availability and preparation of data is changing, so we are looking for more details on the aforementioned reference to Facebook's privacy policy. We use this aggregated data to make our posts and activity on our Facebook page more interesting to users. For example, we use the distribution by age and gender for a personalized approach and the preferred visit times of the users for an optimized scheduling of the time of our contributions.
Information about the type of devices used by visitors helps us to visually tailor the articles. In accordance with Facebook's Terms of Use, which each user consented to when creating a Facebook profile, we can identify Page subscribers and fans and view their profiles and other shared information.
You can find the option to unsubscribe here: https://www.facebook.com/policies/cookies/ and here: http://www.youronlinechoices.com/de/praferenzmanagement/.
8.8 Bing Ads Conversion Tracking
Our online services also use conversion tracking from Microsoft (Microsoft Corporation, One Microsoft Way, Redmond, WA 98052-6399, USA). Microsoft Bing Ads places a cookie on your computer if you have accessed our website via a Microsoft Bing ad. Microsoft Bing and so we can recognize that someone has clicked on an ad, was redirected to our website and reached a previously determined landing page (conversion page). We only record the total number of users who clicked on a Bing ad and were then redirected to the conversion page. No personal information about the user's identity is provided. If you do not wish to participate in the tracking process, you can also refuse the required setting of a cookie, for example via a browser setting which generally disables the automatic setting of cookies. For more information about the privacy and cookies used with Microsoft Bing, visit the Microsoft website.
8.9Instagrams
We have integrated components of the Instagram service on our website. Instagram is a service that qualifies as an audiovisual platform, which allows users to share photos and videos, as well as redistribute this data through social networks.
The operating company of the Instagram services is Instagram LLC, 1 Hacker Way, Building 14 First Floor, Menlo Park, California, USA.
Each time one of the individual pages of this website is visited, which is operated by us and on which an Instagram component (Insta-Button) was integrated, the Internet browser on the information technology system of the person concerned is automatically prompted by the respective Instagram component, a representation of the corresponding component of Instagram. As part of this technical process, Instagram is aware of which specific page of our website is visited by the data subject.
If the data subject is logged in to Instagram at the same time, Instagram recognizes each visit to our website by the data subject and which specific sub-page the data subject visits during the entire duration of the respective stay on our website. This information is collected via the Instagram component and assigned via Instagram to the Instagram account of the data subject. If the data subject activates one of the Instagram buttons integrated on our website, the data and information transmitted with it are assigned to the personal Instagram user account of the data subject and saved and processed by Instagram.
Instagram always receives information via the Instagram component that the data subject has visited our website if the data subject is simultaneously logged in to Instagram at the time of access to our website; this happens regardless of whether the person clicks on the Instagram component or not. If this information is not intended for transmission to Instagram by the data subject, the data subject can prevent the transmission by logging out of their Instagram account before accessing our website.
Further information and Instagram's privacy policy can be found at https://help.instagram.com/155833707900388 and https://www.instagram.com/about/legal/privacy/.
8.10 YouTube
We have embedded YouTube components on this site. YouTube is an Internet video portal that allows video publishers to freely watch video clips and other users to view, rate and comment for free. YouTube allows the publication of all types of videos, so that both complete film and television broadcasts, as well as music videos, trailers or user-made videos are available via the Internet portal.
The operating company of YouTube is YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. YouTube, LLC is a subsidiary of Google Inc., 1600 Amphitheater Pkwy, Mountain View, CA 94043-1351, USA.
Each time you visit one of the pages of this website which is operated by us and in which a YouTube component (YouTube video) is embedded, the Internet browser on the subject's information technology system is automatically prompted by the particular YouTube component, a representation of the corresponding YouTube component from YouTube. More information about YouTube can be found at https://www.youtube.com/yt/about/en/. As part of this technical process, YouTube and Google will know which specific page of our site the person is visiting.
If the data subject is logged in to YouTube at the same time, YouTube recognizes when a sub-page containing a YouTube video is called which specific page of our website the data subject has visited. This information will be collected by YouTube and Google and associated with the YouTube account of the data subject.
YouTube and Google always receive information through the YouTube component that the data subject has visited our website if the data subject is simultaneously logged in to YouTube at the time of accessing our website; this happens whether or not the person clicks on a YouTube video. If this information is not intended to be transmitted to YouTube and Google by the data subject, the data subject could prevent the transmission by logging out of their YouTube account before accessing our website.
YouTube's privacy policy, available at https://www.google.de/intl/en/policies/privacy/, identifies the collection, processing and use of personally identifiable information by YouTube and Google .
9. Payment Service Provider
9.1 PayPal as a payment method
We have integrated PayPal components on this website. PayPal is an online payment service provider. Payments are made via so-called PayPal accounts, which are virtual private or business accounts. Additionally, PayPal has the ability to process virtual payments via credit cards if a user does not have a PayPal account. A PayPal account is managed via an email address, which is why there is no classic account number. PayPal allows you to initiate online payments to third parties or to receive payments. PayPal also acts as a trustee and offers buyer protection services.
PayPal's European operating company is PayPal (Europe) S.à.rl & Cie. SCA, 22-24 Boulevard Royal, 2449 Luxembourg, Luxembourg.
If the data subject selects "PayPal" as the payment option during the ordering process in our online shop, the data of the data subject will automatically be transmitted to PayPal. By selecting this payment option, the data subject agrees to the transfer of personal data required for payment processing.
The personal data sent to PayPal are usually first name, last name, address, e-mail address, IP address, telephone number, mobile phone number or other data required for payment processing. For the execution of the purchase contract, such personal data is also required, which is in connection with the respective order.
The purpose of the data transmission is payment processing and fraud prevention. The controller will provide PayPal with personally identifiable information, particularly if there is a legitimate interest in the transfer. Personal data exchanged between PayPal and the controller may be transferred by PayPal to credit reporting agencies. This transmission is for identity and credit verification purposes.
PayPal may disclose personal information to affiliated companies and service providers or subcontractors, to the extent necessary to fulfill its contractual obligations or to process the data on behalf of the data controller.
The data subject has the option of revoking the consent to the processing of personal data against PayPal at any time. A revocation has no effect on the personal data that must be processed, used or transmitted for (contractual) payment processing.
The applicable privacy policy of PayPal is available at https://www.paypal.com/it/webapps/mpp/ua/privacy-full.
9.2 Visa and Mastercard as a payment method
We use external payment service providers, through whose platforms users and we can carry out payment transactions, for example Visa (https://www.visaitalia.com/termini-di-uso/centro-della-privacy-visa.html ) and Mastercard (https://www.mastercard.it/it-it/mastercard/cosa-fattomo/privacy.html).
Payment transactions using the offered means of payment take place exclusively via an encrypted SSL or TLS connection. An encrypted connection can be recognized by changing the address line of the browser from “http: //” to “https: //” and the padlock symbol in the browser line. In the case of encrypted communications, the payment details you send us cannot be read by third parties.
Among the data processed by payment service providers are inventory data, e.g. your name and address, bank details, such as account numbers or credit card numbers, passwords, TANs and checksums, as well as contract, summary and recipient information. The information is required to complete transactions. However, the data entered will only be processed and stored by the payment service providers. We do not receive any account or credit card information, only information with negative payment confirmation or disclosure. Data may be transmitted by payment service providers to credit reporting agencies. This transmission is intended to verify identity and credit. For this we refer to the terms and privacy policy of the payment service providers.
For payment transactions, the terms and conditions and privacy policies of the respective payment service providers apply, available on the respective websites or transaction applications. We also refer to these for further information and for the assertion of your rights of withdrawal, information and other data subjects.
10. What data protection rights do I have?
You have against us the right of access (Art. 15 GDPR), the right to rectification (Art. 16 GDPR), the right to erasure (Art. 17 GDPR), the right to restriction of processing (Art. 18 GDPR) and the right to data portability (article 20 GDPR). With regard to the right of access and the right to erasure, the restrictions stipulated in §§ 34 and 35 BDSG apply. You also have the right to object to data processing by us (Article 21 GDPR). Insofar as our processing of your personal data is based on consent (art. 6 (1), sentence 1 (a) GDPR), you can withdraw it at any time; the lawfulness of the data processing carried out on the basis of the consent until the withdrawal remains unaffected.
To assert all these rights and for further questions on personal data issues, you can always contact our data protection officer or our postal address (see paragraph 1).
Furthermore, you have the right to lodge a complaint with a supervisory authority – in particular in the EU member state where your place of residence or place of work is located or of an alleged infringement – if you believe that the processing of your personal data the data is contrary to the GDPR or other applicable data protection laws (Art. 77 GDPR, § 19 BDSG).