We will process your personal data (e.g. title, name, address, e-mail address, phone number, bank details, credit card number) solely in accordance with the provisions of the German data protection law and the data protection law of the European Union (EU). The following provisions will inform you, besides the information about the processing purposes, recipients, legal bases and storage periods, also about your rights and the controller for your data processing. This privacy policy applies only to our websites. If you are directed to other sites via links on our pages, please pay attention and be sure to review their privacy practices.
(1) Purpose of data processing
Your personal data you provide us during the ordering process are necessary for the conclusion of a contract with us. You are not obliged to provide your personal data. However, we would not be able to send you the goods without your address. For some payment methods we ask for the necessary payment data in order to pass them on to a payment service provider commissioned by us. Hence, the processing of your data collected during the ordering process is soley for the purpose of contract performance.
If you send us a request by e-mail or by using the contact form, etc. before concluding the contract, we process the obtained data to carry out pre-contractual measures and answer your questions about e.g. our products.
In the case of opening a customer account, your data (in particular name, address, payment method, e-mail and password) will be processed for registration and creation of a customer login. With the stored data, you are able to shop faster and view your previous orders at any time. By sending us a note or via a delete function you can delete the account again.
(2) Legal basis
The legal basis for such processing is set out in Article 6 (1) (b) of the GDPR.
(3) Recipient categories
Payment service provider, shipping service provider, hosting provider, if necessary merchandise management system, suppliers if necessary (drop-shipping).
(4) Duration of Storage
We store the data required for contract execution until the statutory warranty and, if applicable, contractual warranty periods expire.
We store the data required under commercial and tax law for the statutory periods, generally ten years (cf. § 257 German Commercial Code (HGB), § 147 Regulation of Taxation (AO)).
The data processed for the execution of pre-contractual measures will be deleted as soon as the measures have been carried out and the contract cannot be concluded.
(1) Purpose of data processing
Adding comments is possible. Your personal data (e.g. name/pseudonym, email address, website) collected in this scope will be solely processed for the purpose of publishing your comments.
(2) Legal basis
The legal basis for such processing is set out in Article 6 (1) (f) of the GDPR.
(3) Legitimate interest
Our legitimate interest is the public exchange of user opinions on specific topics and products. The publication serves, among other things, the purpose of transparency and opinion-forming. Your interest in data protection is preserved, as you can publish your comment under a pseudonym.
(4) Duration of Storage
There is no provision for a certain storage period. You may request the deletion of your comment at any time.
(5) Right of objection
You have the right to object at any time to the processing of data which was performed according to Article 6 (1)(f) of GDPR and which does not serve direct marketing for reasons arising from your particular situation.
In the case of direct marketing, however, you may object to the processing at any time without stating any reasons.
(1) Purpose of processing
If you decide to rate our service, we will collect and process your personal date e.g. email address and number and date of your request, in order to send you a rating confirmation and a final rating request as well as to assign your rating and to prevent misuse of your rating.
(2) Legal Basis
This processing is based on our legitimate interests in the improvement of our services and the prevention of misuse of ratings in accordance with Act. 6 1 (f) of the GDPR.
(3) Recipient
[Please name the company performing the shop rating]
(4) Storage periods
Your data will be stored as long as the EHI shop rating is displayed on our website.
Für den Geschäftsbetrieb ist es unerlässlich, Service-Provider mit der Verarbeitung Ihrer persönlichen Daten zu beauftragen. Wir haben für den Zahlungsverkehr mit Kredit- und Debitkarten die stripe inc., San Francisco (U.S.A.), https://stripe.com/de/privacy) und für alle anderen Zahlungsverkehrsaktivitäten die Mollie B.V., Amsterdam (Niederlande), https://www.mollie.com/de/privacy) beauftragt. Für den Versand haben wir Verträge mit DHL, Deutsche Post GmbH, Bonn (Deutschland) und Sendcloud GmbH, München (Deutschland), https://www.sendcloud.de/datenschutz) abgeschlossen.
Diese Auftragsverarbeitungsverträge regeln dann die Erhebung, Verarbeitung oder Nutzung personenbezogener Daten durch den Dienstleister im Auftrag des Verantwortlichen. Dazu zählt unter anderem auch, dass "der Auftragsverarbeiter und jede dem Verantwortlichen oder dem Auftragsverarbeiter unterstellte Person, die Zugang zu personenbezogenen Daten hat, diese Daten ausschließlich auf Weisung des Verantwortlichen verarbeiten dürfen.
(1) Purpose of data processing
This website uses Google Analytics 4, a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland ("Google"). Google Analytics 4 uses "cookies", which are text files placed on your computer, to help the website analyze how users use the site. According to Google, Google Analytics 4 does not log or store individual IP addresses. No precise location data is provided in Analytics. Instead, the following metadata is derived from IP addresses: "city" (and the derived latitude and longitude of the city), "continent", "country", "region", "subcontinent" (and the ID-based equivalents). For accesses originating from the EU, IP addresses are only used to derive location data and are immediately deleted afterwards. They are not logged, are not accessible, and are not used for any other use cases. When collecting measurement data in Analytics, all IP searches take place on EU-based servers before the traffic is forwarded to Analytics servers for processing. These servers are also located outside the EU.
On behalf of the operator of this website, Google will use this information for the purpose of evaluating your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator.
(2) Legal basis
The legal basis for such processing is set out in Article 6 (1) (a) of the GDPR.
(3) Recipient categories
Google and its partners.
(4) Transfer to a third country
Google Ireland Limited is an affiliate of Google LLC. Google LLC is based in the USA (1600 Amphitheatre Parkway, Mountain View, CA 94043). The basis for the transfer of personal data from the EU to the US is the EU-U.S. Data Privacy Framework.
(5) Duration of Storage
14 months
(6) Right of revocation
You can revoke your consent at any time with effect for the future via our cookie banner or via our website.
You can prevent the installation of the cookies in your browser settings. If you choose to change your settings you may not be able to use the full functionality of this website.
You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website and from processing this data by Google by downloading and installing the browser plug-in available under the following link: optout
Please note that all PayPal transactions are subject to the PayPal Privacy Policy:
https://www.paypal.com/de/webapps/mpp/ua/privacy-full
(1) Purpose of data processing
This website uses technically necessary cookies. These are small text files that are stored for a short period in or by your Internet browser on your computer system. These cookies are employed, for example, when several products must be inserted in a shopping cart.
Other cookies remain stored permanently and recognize your browser on your next visit. These cookies are employed, for example, to store permanently your passwords for a customer account.
(2) Legal basis
The legal basis for such processing is set out in Article 6 (1) (f) of the GDPR.
(3) Legitimate interest
Our legitimate interest is the functionality of our website. The user data collected by technically necessary cookies and long term cookies are not used to create user profiles to preserve your interest in data protection.
(4) Duration of Storage
The technically necessary cookies are usually deleted when the browser is closed. Permanently stored cookies remain stored from a few minutes to several years.
(5) Right of revocation
If you do not wish these cookies to be stored, please deactivate the use of cookies in your Internet browser. However, this may cause a functional limitation of our website.
Your consent to persistent cookies can be withdrawn at any time by deleting the cookies in your browser settings.
We use chat buttons of the social network WhatsApp Inc. 650 Castro Street, Suite 120-219 Mountain View, California, 94041 USA. This function is provided to us by Imprint TopSoft UG from Berlin/ Germany (Smarttarget). Smarttarget's privacy policy can be found at (https://smartarget.online/page_privacy.html). We have set up these chat buttons so that you can easily ask us questions about our products and services. You can recognize the WhatsApp buttons by the WhatsApp logo or the "WhatsApp" button on our site. You can find an overview of the WhatsApp plugins here: WhatsApp. If you actively use the WhatsApp buttons, a direct connection between your browser and the WhatsApp server is established via the plugin. WhatsApp thereby receives the information that you have visited our site with your IP address. If you click the "WhatsApp button" while you are logged into your WhatsApp account, you can link the content of our pages on your WhatsApp profile. This allows WhatsApp to associate the visit to our pages with your user account. We would like to point out that we, as the provider of the pages, have no knowledge of the content of the transmitted data or its use by WhatsApp. For more information, please refer to the privacy policy of WhatsApp (https://www.whatsapp.com/legal/). If you do not want WhatsApp to be able to assign the visit to our pages to your WhatsApp user account, please log out of your WhatsApp user account. In addition, we offer you the opportunity to visit our Instagram @theiagemsonlineshop. Here, too, the necessary technology was provided to us by Smarttarget (see above).
If your personal data is processed, you are the ‘data subject’ in terms of GDPR and you have the following rights towards us, the controller:
1. Right to information
You may request us to provide information about your personal data processed by us under Article 15 of the GDPR.
2. Right to rectification
If your personal data provided to us is not up to date or not accurate you have the right to ask for modifications to your personal data under Article 16 of the GDPR. You also have the right to request us to complete an incomplete data.
3. Right to erasure
You have the right to have your personal data erased and ask for deletion of your data under Article 17 of the GDPR.
4. Right to restriction of processing
You have the right to restrict the processing your personal data under Article 18 of the GDPR.
5. Right to data portability
You have the right referred to in Article 20 of the GDPR to receive your personal data provided to us, in a structured, commonly used and machine-readable format and have the right to transmit those data to another controller.
6. Right to revoke the consent given under data protection law
You have the right referred to in paragraph 3 of Article 7 to withdraw your given consent based on the data protection provisions at any time. This does not affect the lawfulness of the processing based on consent before its withdrawal.
7. Right to lodge a complaint with a supervisory authority
If you consider that the processing of personal data relating to you infringes the GDPR, you have the right referring to in Article 77 of the GDPR to complain to the supervisory authority against the processing of your personal data (in particular in the Member State of your habitual residence, place of work or place of the alleged infringement ).
Please also note your right of objection under Article 21 GDPR:
a) In general: reasonable objection required
If the processing of personal data concerning you takes place in order
- to perform our overriding legitimate interest (legal basis: Article 6 (1f) GDPR)
or
- to safeguard the public interest (legal basis: Article 6 (1e) GDPR),
you are entitled to object to the processing at any time for reasons arising from your particular situation; this also applies to profiling based on the provisions of the GDPR.
In the event of objection, we will no longer process the personal data concerning you unless we can prove compelling grounds for processing which override your interests, rights and freedoms, or the processing is necessary for the establishment, exercise or defence of legal claims;
b) Special case of direct marketing: simple objection is sufficient
If the personal data concerning you are processed for the purpose of direct marketing, you have the right to object at any time to the processing and without stating reasons; this includes profiling to the extent that it is related to such direct marketing.
If you object to the processing for direct marketing purposes, the personal data concerning you will no longer be processed for these purposes.
Responsible for data processing:
Marcus Gaster Schmuckwaren
Bachstr. 4
63071 Offenbach am Main
Phone: +4917661629777
info@theiagems.de
This document was created and is updated with technology from janolaw GmbH.