Personal data
What sources and data do we use?
We process personal data that we receive from customers and other parties concerned within the scope of our business relationship. In addition, we process - insofar as this is necessary for the provision of our services - personal data which we obtain from public sources (e.g. debtor lists, commercial register, press, Internet (permissibly obtained) or which are legitimately transmitted to us by other third parties (e.g. credit information).
Specifically, we process the following data, among others:
- Master data for establishing contact (e.g. name, address)
- Order data (e.g. within the scope of ordering processes)
- Documentation data (e.g. call notes)
- Data for the initiation and implementation of our business relationships
- Correspondence
For what do we process your data (purpose of processing) and on what legal basis?
We process your personal data in accordance with the provisions of the European Basic Data Protection Regulation (DSGVO) and the Federal Data Protection Act (BDSG).
1. for the fulfilment of contractual obligations (Art. 6 para. 1 b DSGVO)
The data is processed for the purpose of fulfilling a contract with you or to carry out pre-contractual measures based on an enquiry. The purposes of the data processing depend in detail on the concrete business relationship
2. balancing of interests (Art. 6 para. 1 f DSGVO)
As far as necessary, we process your data beyond the actual fulfilment of the contract in order to protect legitimate interests of us or third parties. This is done for the following purposes, among others:
- General business management
- Assertion of legal claims and defence in legal disputes
Our interest in the respective processing results from the respective purpose and is of an economic nature (efficient task fulfilment, running-in, avoidance of legal risks). As far as the specific purpose allows, we process your data pseudonymised or anonymised.
3. on the basis of your consent (Art. 6 para.1 a DSGVO)
If you have given us your consent to process personal data for specific purposes, the respective consent is the legal basis for the processing. This applies in particular to
- Transmission of data to third parties
You can revoke a given consent at any time. This also applies to the revocation of declarations of consent that you have given before the DSGVO became valid. The revocation of consent is only effective for future processing.
4. due to legal requirements (Art. 6 para. 1 c DSGVO)
We are subject to various legal obligations e.g. commercial law, trade regulations. To the purposes of the processing belong
- enforcement of our AGB
- managing our business
- processing for the fulfilment of the legal storage or documentation obligations
- fulfilment of control and reporting obligations under tax law
Who gets my data?
Your personal data will not be passed on to third parties (entities outside our company) unless you have given us your prior consent or a legal basis exists. A legal basis is possible for the following recipients, among others:
- public authorities, supervisory authorities
- judicial/prosecution authorities
- lawyers / Notaries
- certified public accountant, tax consultant
In addition, we use various service providers (commissioned data processors in accordance with Art. 28 DSGVO), whom we contractually oblige in accordance with the provisions of the DSGVO and whose compliance we monitor. Commissioned data processors may only use personal data for specific purposes in accordance with our instructions.
Excluded from this is the transfer to service partners, such as logistics service providers or forwarding agents, insofar as the transfer is necessary for their assignment. These partners receive the data required for delivery for their own use. We limit ourselves to the transmission of the data necessary for delivery.
Will data be transferred to a third country or an international organisation?
We only transfer your data to countries outside the EU if
- It is necessary for the manufacture of our products and the execution of our orders
- It is legally required
- you have given us your consent
In some cases we use service providers whose registered office is in a third country. Your data will only be transferred if the European Commission has decided that an adequate level of protection exists in a third country (Art. 45 DSGVO), appropriate guarantees are provided and enforceable rights and effective legal remedies are available to you as a data subject.
How long will my data be stored?
As far as necessary, we process your personal data for the duration of the business relationship, which includes the initiation, processing and storage due to legal retention periods. If the data is no longer required for the fulfilment of contractual/legal storage obligations, it will be deleted. Unless there are legal obligations against a deletion. This can be the case, among other things:
- Legal obligations (HGB, AO, GwG, BGB), whose periods for storage can last up to 10 years.
- Preservation of evidence within the framework of the statutory limitation regulations according to §§ 195 ff. BGB
Is there an obligation for me to provide data?
Within the scope of our business relationship, you must provide personal data which are necessary for the commencement and execution of the respective business relationship and the fulfilment of the associated contractual obligations or which we are legally obliged to collect. Without this data, we will generally not be able to enter into the business relationship with you and fulfil the resulting obligations.
What data protection rights do I have?
According to § 15 DSGVO you can request information about your personal data processed by us. If your details are no longer correct, you can request a correction in accordance with Art. 16 DSGVO. If your data is incomplete, you can demand its completion. If we have passed on your data to third parties, we will inform these third parties of your correction - if this is required by law.
According to § 17 DSGVO you can demand the deletion of your personal data, if
- your personal data are no longer needed for the purposes for which they were collected
- you revoke your consent and there is no other legal basis
- you object to the processing and there are no overriding reasons for processing worthy of protection
- your personal data were processed unlawfully
- your personal data must be deleted in order to comply with legal requirements
Please note that legal obligations of the person responsible can lead to the fact that your data cannot be deleted or can only be finally deleted after a period of time.
Furthermore, you have a right to restrict processing in accordance with Art. 18 DSGVO, the right to object in accordance with Art. 21 DSGVO and the right to data transferability in accordance with Art. 20 DSGVO. With regard to the right of information and the right of deletion, the restrictions pursuant to §§ 34, 35 BDSG apply. In addition, there is a right of appeal to a data supervisory authority pursuant to Art. 77 DSGVO in conjunction with § 19 BDSG.
Payment Services
PayPal
Among other things we offer payment via PayPal. Provider of this payment service is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg. If you choose to pay via PayPal, the data will be transmitted to PayPal - on the basis of art. 6 para. 1 lit. a DSGVO (consent) and art. 6 para. 1 lit. b DSGVO (processing for the performance of a contract). You have the possibility to revoke your consent to data processing at any time. A revocation does not affect the effectiveness of data processing operations in the past. Further information on this can be found in PayPal's privacy policy.
SOFORT (Klarna.)
When paying by SOFORT bank transfer (Klarna.), a secure payment form of Sofort GmbH (Theresienhöhe 12, 80339 Munich, Germany) will open immediately after the confirmation of your order. After you have made your bank transfer, the invoice amount will be transferred immediately and in real time to our bank account. The data you enter in this process is at no time visible to the merchant or third parties and to employees of SOFORT GmbH or other companies of the Klarna Group. Please note that the payment method IMMEDIATELY according to the current status (04/2020) is only available for you in the following countries: Austria, Belgium, Germany, Italy, Netherlands, Poland, Spain, Switzerland. You will receive all further information at sofort.com (Privacy Policy).
Google Services
We use YouTube for the integration of the videos (legal basis according to DSGVO: Art. 6 para. 1 lit. f with the operation of our website and the consideration of the interests of the persons concerned by deactivating the tracking functions in the YouTube code) When integrating the YouTube videos, we use the no-cookie variant. Google LLC in the USA is committed to ensuring an appropriate level of data protection. Please see Google's privacy policy for more information.
Affiliate-Marketing
Our online shop operates an integrated partner program. This is a so-called affiliate system, in which registered persons (also "publishers") advertise the products or services of the so-called "advertisers" on their websites by means of advertising material. This serves to protect our legitimate interests in the optimisation and economic exploitation of our online offer in accordance with Art. 6 Para. 1 lit. f) DSGVO. Cookies can be used to track the progress of the respective order and in particular to verify that you have clicked on the respective link and ordered the product via the affiliate partner program. You can prevent the setting of cookies by our website at any time by means of a corresponding setting in your internet browser. In addition, cookies already set can be deleted at any time via the Internet browser or other software programs.
E-Mail Newsletter
We are using Mailchimp for newsletter services. For more information you can take a look at Mailchimp's Legal Policies. You can unsubscribe from our newsletter service at any time by visiting this page.
SSL/TLS encryption
This site is using a SSL/TLS encryption for security reasons and to protect the transmission of confidential content, e.g. registration for the massage that you send to us. An encrypted connection is indicated by the fact that the address bar of the browser shows https:// and a lock symbol is displayed. If SSL/TLS encryption is active, transmitted data can not be read by third parties.
Server Log-Files
Log-Files are automatically created and stored by our hosting provider. In doing so, our provider does not store personal data of website visitors, so that no conclusions can be drawn on the individual visitor. No cookies are used. The following data are collected:
- Referrer (previously visited website)
- Requested website or file
- Browser type and browser version
- Used operating system
- Used device type
- Time of access
- Anonymous IP address (used only to determine the location of access)
The basis for data processing is Art. 6 para. 1 lit. b GDPR, which allows the processing of data to fulfill a contract or pre-contractual measures.
Matomo Analytics
We use Matomo Analytics — hosted on our own server for statistical purposes, as well as to improve our offer. Your data is collected anonymously, so that no conclusions can be drawn on individual persons. Below you can opt-out by unchecking the checkbox.
GEO localisation (geoplugin.net)
Since some of our products may not be sold or delivered to countries outside of Switzerland due to legal regulations, our web shop is using an IP query from the service provider "geoplugin.net" to draw conclusions about your country of origin, from which you are accessing our web shop. No information other than the IP address is transmitted. IP addresses are not saved for longer than 1 minute. The service's servers are located in France and the Netherlands. You can find more information in the privacy policy of geoplugin.net.
Information, revocation and deletion of data
You can contact us at any time for questions on the collection, processing or use of your personal data, which takes place on the basis of Art. 6 para. 1 f GDPR, and their rectification, deletion or revocation of a given consent to us. We point out that you have the right to correct incorrect data or to delete personal data, unless we can prove that there are compelling reasons for the processing that outweigh your interests, rights and freedoms or the processing of the assertion, exercise or defense of legal claims.
Recipient of a contradiction
The opposition can be informal, with your name and address and should be addressed to:
saås Swiss AG
Gigebuck 17
8213 Neunkirch
SWITZERLAND
This email address is being protected from spambots. You need JavaScript enabled to view it.
We reserve the right to make changes to our Privacy Policy. Last change: 04/2020