DATA PROTECTION

§ 1. General

Your personal data (e.g. title, name, address, e-mail address, telephone number, bank details, credit card number) will only be processed by us in accordance with the provisions of German data protection law and the data protection law of the European Union (EU). In addition to the processing purposes, recipients, legal bases, storage periods, the following regulations also inform you about your rights and the person responsible for your data processing. This data protection declaration only applies to our websites. If you are redirected to other sites via links on our site, please inform yourself there about the respective handling of your data.

§ 2 Data processing for the fulfillment of the contract

(1) Purpose of Processing
Your personal data, which you provide to us in the ordering process, is required for the conclusion of a contract with us. You are not obliged to provide your personal data. However, we cannot send you the goods without your address. For some payment methods, we need the necessary payment data in order to pass them on to a payment service provider commissioned by us. The processing of your data entered in the ordering process is therefore for the purpose of fulfilling the contract.
If you send us an inquiry by e-mail, via a contact form etc. before the contract is concluded, we will process the data received in this way to carry out pre-contractual measures and answer e.g. B. Your questions about our products.

(2) Legal Basis
The legal basis for this processing is Art. 6 Para. 1 b) GDPR.

(3) Recipient Categories
Payment service providers, shipping service providers, hosting providers, possibly merchandise management systems, possibly suppliers (dropshipping).

(4) Retention Period
We store the data required to process the contract until the statutory warranty and, if applicable, contractual warranty periods have expired.
We store the data required under commercial and tax law for the legally stipulated periods, usually ten years (cf. Section 257 HGB, Section 147 AO).
The data processed to carry out pre-contractual measures will be deleted as soon as the measures have been carried out and a contract is clearly not concluded.

§ 3 Further information

§ 4 PayPal Transactions

Please note that all PayPal transactions are subject to the PayPal Privacy Policy:


https://www.paypal.com/de/webapps/mpp/ua/privacy-full

§ 5 Credit Check

Please note the following data protection regulations if you decide to use Stripe payment services:

https://stripe.com/at/privacy


§ 6 Information about cookies

(1) Purpose of Processing
Technically necessary cookies are used on this website. These are small text files that are stored in or by your internet browser on your computer system. These cookies enable e.g. B. placing several products in a shopping cart.

(2) Legal Basis
The legal basis for this processing is Art. 6 Para.1 f) GDPR.

(3) Legitimate Interest
Our legitimate interest is the functionality of our website. The user data collected by technically necessary cookies are not used to create user profiles. This protects your interest in data protection.

(4) Retention Period
The technically necessary cookies are usually deleted when the browser is closed. Permanently stored cookies have different lifespans, from a few minutes to several years.

(5) RIGHT TO OBJECT
If you do not want these cookies to be saved, please deactivate the acceptance of these cookies in your internet browser. However, this can result in a functional restriction of our website. You can also delete permanently stored cookies at any time via your browser.


§ 7 Social Plugins from Facebook

We use social plugins from facebook.com, operated by Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA. The plugins can be recognized by the Facebook logo or the addition “Facebook Social Plugin”. If you e.g. B. click the "Like" button or make a comment, the corresponding information is transmitted directly from your browser to Facebook and stored there. Furthermore, Facebook makes your preferences public for your Facebook friends. If you are logged into Facebook, Facebook can directly assign the visit to our site to your Facebook account. Even if you are not logged in or do not have a Facebook account at all, your browser transmits information (e.g. which website you have accessed, your IP address) that is stored by Facebook. For details on how Facebook handles your personal data and your rights in this regard, please refer to Facebook's data protection information. If you do not want Facebook to associate the data collected about you through our websites with your Facebook account, you must log out of Facebook before visiting our websites. You can also completely prevent the Facebook plugins from loading with add-ons for your browser, e.g. B. with the “Facebook Blocker” (Facebook).

§ 8 Your rights as a data subject

If personal data is processed by you, you are a data subject within the meaning of the GDPR and you have the following rights vis-à-vis us as the person responsible:

1. Right to information
Within the framework of Art. 15 GDPR, you can request information about your personal data processed by us.

2. Right to Rectification
If the information concerning you is not (or no longer) correct, you can request a correction in accordance with Art. 16 GDPR. If your data is incomplete, you can request a completion.

3. Right to Erasure
Under the conditions of Art. 17 GDPR, you can request the deletion of your personal data.

4. Right to restriction of processing
Within the framework of the requirements of Art. 18 GDPR, you have the right to demand a restriction of the processing of the data concerning you.

5. Right to data portability
According to Art. 20 GDPR, you have the right to receive the personal data that you have provided to us in a structured, common and machine-readable format or to request transmission to another person responsible.

6. Right to revoke the declaration of consent under data protection law
According to Art. 7 Para. 3 GDPR, you have the right to revoke your declaration of consent under data protection law at any time. This does not affect the lawfulness of the processing carried out on the basis of the consent until the revocation.

7. Right to lodge a complaint with a supervisory authority
If you are of the opinion that the processing of your personal data violates the GDPR, you have the right to lodge a complaint with a supervisory authority (in particular in the member state of your habitual residence, your place of work or the place of the alleged violation) according to Art. 77 GDPR.

Please also note your right of objection according to Art. 21 GDPR:

a) General: reasoned objection required
Is the processing of personal data concerning you carried out?
- to protect our overriding legitimate interest (legal basis according to Art. 6 Para. 1 f) DSGVO) or
- in the public interest (legal basis according to Art. 6 Para. 1 e) GDPR),
you have the right to object to the processing at any time for reasons arising from your particular situation; this also applies to profiling based on the provisions of the GDPR.
In the event of an objection, we will no longer process your personal data unless we can demonstrate compelling legitimate grounds for processing that outweigh your interests, rights and freedoms, or the processing serves to assert, exercise or defend legal claims.

b) Special case of direct advertising: a simple objection is sufficient
If the personal data concerning you is processed in order to operate direct advertising, you have the right to object to this processing at any time and without giving reasons; this also applies to profiling insofar as it is associated with such direct advertising.
If you object to the processing for direct marketing purposes, the personal data relating to you will no longer be processed for these purposes.

Responsible for data processing:
Elena Diana Usurelu
new building 27
3702 Niederrussbach
shop@dianadiamanta.at

Data protection declaration of janolaw.de