Privacy Policy

 

1. Data protection at a glance
General notes

The following notes provide a simple overview of what happens to your personal information when you visit our website. Personal data is all data with which you can be personally identified. Detailed information on data protection can be found in our privacy policy listed under this text.

Data collection on our website

Who is responsible for the data collection on this website? 
The data processing on this website is carried out by the website operator. The contact details can be found in the Legal Disclosure on this website.

How do we collect your data? 
On one hand, your data will be collected by you informing us of it. For example, this can be data that you enter in a contact form. Other data is automatically collected through our IT systems when you visit the website. These are mainly technical data (e.g. internet browser, operating system or time of page view). The collection of this data takes place automatically as soon as you access our website.

What do we use your data for? 
Some of the data is collected to ensure a flawless provision of the website. Other data may be used to analyze your user behaviour.

What rights do you have with regard to your data? 
You have the right to receive information about the origin, recipient and purpose of your stored personal data free of charge at any time. You also have the right to request the rectification, blocking or deletion of this data. You can contact us at any time at the address given in the imprint for further questions on the subject of data protection. You also have the right to lodge a complaint with the competent supervisory authority.

Third-party tools and analytics tools

When you visit our website, your surfing behaviour can be statistically evaluated. This is mainly done with cookies and with so-called analysis programs. The analysis of your surfing behaviour is usually anonymous; the surf behaviour cannot be traced back to you. You may object to this analysis or prevent it by not using certain tools. Detailed information can be found in the following privacy policy. You may object to this analysis.

We will inform you about the possibilities of objection in this privacy policy.

2. General notes and mandatory information
Privacy

The operators of these sites take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this privacy policy. When you use this website, various personal data is collected. Personal data is data that can be used to personally identify you. This Privacy Policy explains what data we collect and what we use it for. It also explains how and for what purpose this is done. We would like to point out that data transmission over the Internet (e.g. when communicating via e-mail) may have security gaps. Complete protection of data against access by third parties is not possible.

Note about the responsible body
The responsible body for the data processing on this website is:

PINK Cosmetics GmbH
Erkrather Str. 401
40231 Düsseldorf

Telephone: +49 (0)211 – 99 33 04 41
Email: [email protected]

The controller is the natural or legal person who decides alone or together with others on the purposes and means of processing personal data (e.g. names, e-mail addresses, etc.).

Withdrawal of your consent to data processing
Many data processing operations are only possible with your express consent. You can revoke your consent at any time. An informal communication by e-mail to us is sufficient. The legality of the data processing carried out until the revocation remains unaffected by the revocation.

The right of appeal to the competent supervisory authority
In the case of data protection violations, the person concerned is entitled to a right of complaint with the competent supervisory authority. The competent supervisory authority in data protection matters is the state data protection officer of the federal state in which our company is based. A list of data protection officers and their contact details can be found at the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.

You have the right to data portability
You have the right to receive data that we process automatically on the basis of your consent or in the fulfillment of a contract, either about you or a third party in a common, machine-readable format. If you request the direct transfer of the data to another controller, this is only done as far as it is technically feasible.

SSL or TLS encryption
This site uses SSL or TLS encryption for security reasons and to protect the transmission of confidential content, such as orders or requests that you send to us as a site operator. You can recognize an encrypted connection by the fact that the address bar of the browser changes from “http://” to “https://” and by the lock icon in your browser line.

If SSL or TLS encryption is enabled, the data you submit to us cannot be read by third parties.

Encrypted payment transactions on this website
If, after the conclusion of a paid contract, there is an obligation to provide us with your payment data (e.g. account number with direct debit authorisation), this data will be required for payment processing. Payment transactions via the usual means of payment (Visa/MasterCard, Direct Debit) are made exclusively via an encrypted SSL or TLS connection. You can recognize an encrypted connection by the fact that the address bar of the browser changes from “http://” to “https://” and by the lock icon in your browser line. In the case of encrypted communication, your payment data that you transmit to us cannot be read by third parties.

Information, blocking, deletion
You have the right to free information about your stored personal data, their origin and recipient and the purpose of the data processing and, if applicable, a right to free information about your stored personal data and the purpose of the data processing and, if applicable, a right rectification, blocking or deletion of this data. You can contact us at any time at the address given in the Legal Disclosure for further questions on the subject of personal data.

Opposition to advertising e-mails
The use of contact data published within the scope of the legal notice obligation for sending unsolicited advertising and information materials is hereby objected to. The operators of the pages expressly reserve the right to take legal action in the event of unsolicited sending of advertising information, e.g. by spam e-mails.

3. Data collection on our website
Cookies

Some websites use so-called cookies. Cookies do not cause any damage to your computer and do not contain viruses. Cookies are used to make our offer more user-friendly, effective and secure. Cookies are small text files that are stored on your computer and stored by your browser.

Most of the cookies we use are so-called “session cookies”. They will be deleted automatically at the end of your visit. Other cookies remain stored on your device until you delete them. These cookies allow us to recognize your browser the next time you visit.

You can set your browser to inform you about the setting of cookies and to allow cookies only on a case-by-case basis, to exclude the acceptance of cookies for certain cases or in general, and to automatically delete cookies when you close the browser. When disabling cookies, the functionality of this website may be limited.

Cookies, which are necessary for the electronic communication process or for the provision of certain functions that you want (e.g. shopping cart function), are used on the basis of Art. f GDPR. The website operator has a legitimate interest in the storage of cookies for the technically error-free and optimized provision of its services. Insofar as other cookies (e.g. cookies for the analysis of your browsing behaviour) are stored, these are treated separately in this privacy policy.

Server log files

The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:

  • Browser type and browser version
  • Operating system used
  • Referrer URL
  • Host name of the accessing machine
  • Time of server request
  • IP address

This data is not merged with other data sources.

The basis for data processing is Article 6(1) lit. f GDPR, which allows the processing of data for the performance of a contract or pre-contractual measures.

Contact

If you send us enquiries via the contact form, your details from the request form, including the contact details you provide there, will be stored with us for the purpose of processing the request and in case of follow-up questions. We do not share this data without your consent.

The data entered in the contact form is therefore processed exclusively on the basis of your consent (Art. 6 para. 1 lit. a GDPR). You can revoke this consent at any time. An informal communication by e-mail to us is sufficient. The legality of the data processing operations carried out until the revocation remains unaffected by the revocation.

The data you enter in the contact form will remain with us until you ask us to delete it, revoke your consent to storage or the purpose for the data storage is omitted (e.g. after your request has been processed). Mandatory legal provisions, in particular retention periods, remain unaffected.

Registration on this website

You can register on our website to use additional features on the site. We will only use the data entered for the purpose of using the respective offer or service for which you have registered. The mandatory information requested during registration must be provided in full. Otherwise, we will refuse registration.

For important changes, such as the scope of the offer or in the case of technically necessary changes, we use the e-mail address provided at the time of registration in order to inform you in this way.

The data entered during registration will be processed on the basis of your consent (Art. 6 sec. 1 lit. a GDPR). You can revoke your consent at any time. An informal communication by e-mail to us is sufficient. The legality of the data processing that has already been carried out remains unaffected by the revocation.

The data collected during registration will be stored by us as long as you are registered on our website and will then be deleted. Legal retention periods remain unaffected.

Processing of data (customer and contract data)

We collect, process and use personal data only to the extent that it is necessary for the establishment, content or change of the legal relationship (stock data). This is done on the basis of Article 6(1) lit. b GDPR, which allows the processing of data for the performance of a contract or pre-contractual measures. We only collect, process and use personal data about the use of our Internet pages (use data) to the extent necessary to enable or charge the user for the use of the service.

The customer data collected will be deleted after the conclusion of the order or termination of the business relationship. Legal retention periods remain unaffected.

Data transfer at the conclusion of the contract for online shops, retailers and dispatch of goods

We only transmit personal data to third parties if this is necessary in the context of the contract processing, for example to the companies entrusted with the delivery of the goods or to the credit institution entrusted with the payment processing. Further transmission of the data does not take place or only if you have expressly consented to the transfer. Your data will not be passed on to third parties without express consent, for example for the purposes of advertising.

The basis for data processing is Article 6(1) lit. b GDPR, which allows the processing of data for the performance of a contract or pre-contractual measures.

Data transfer at the time of conclusion of the contract for services and digital content

We only transmit personal data to third parties if this is necessary in the context of the contract processing, for example to the credit institution entrusted with the payment processing.

Further transmission of the data does not take place or only if you have expressly consented to the transfer. Your data will not be passed on to third parties without express consent, for example for the purposes of advertising.

The basis for data processing is Article 6(1) lit. b GDPR, which allows the processing of data for the performance of a contract or pre-contractual measures.

4. Analysis tools and advertising
Google Analytics

This website uses functions of the web analytics service Google Analytics. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

Google Analytics uses so-called “cookies”. These are text files that are stored on your computer and enable an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there.

The storage of Google Analytics cookies is based on Art. f GDPR. The website operator has a legitimate interest in the analysis of user behaviour in order to optimize both its website offer and its advertising.

Retargeting
We also use retargeting technologies from external service providers, such as the pixel of Facebook Ireland Limited. Retargeting enables us to make our online offer more interesting and tailored to you.

In this way, we can target those users with online advertising who are already interested in our shop and our products on our partner websites. We know from studies that the display of personalized, interest-based advertising is more interesting for the Internet user than advertising that has no such personal connection.

For this purpose, a cookie is set, with which interest data is collected using pseudonyms. Based on this information, you will be shown interest-based advertisements about our offers on the websites of our partners. No direct personal data is stored and no user profiles are merged with personal data about you.

You have the option to deactivate the collection of data for the purpose of personalized advertising. A cookie is then set that permanently prevents the collection of data, unless you delete this cookie in your browser in a targeted manner or via the “Delete all cookies” function. You can repeat the objection at any time.

IP Anonymization
We have activated the IP anonymization feature on this website. This will shorten your IP address from Google within Member States of the European Union or in other contracting states of the Agreement on the European Economic Area prior to transmission to the United States. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and truncated there. On behalf of the operator of this website, Google will use this information for the purpose of evaluating your use of the website, compile reports on website activity and other services relating to website activity and internet usage to the website operator. The IP address transmitted by your browser within the scope of Google Analytics will not be merged with other data from Google.

Browser Plugin
You can prevent the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all functions of this website to the full extent. You can also prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) to Google and the processing of this data by Google by using the browser plug-in available at the following link. Download and install: https://tools.google.com/dlpage/gaoptout?hl=de.

Objection to data collection
You can prevent the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie is set to prevent the collection of your data on future visits to this website:

Disable Google Analytics
For more information on how Google Analytics handles user data, please refer to Google’s privacy policy: https://support.google.com/analytics/answer/6004245?hl=de.

Order data processing
We have concluded a contract with Google for order data processing and fully implement the strict requirements of the German data protection authorities when using Google Analytics.

Demographics at Google Analytics
This website uses the “demographic characteristics” feature of Google Analytics. This allows reports to be generated that contain statements about the age, gender, and interests of page visitors. This data comes from interest-based advertising from Google as well as from visitor data from third parties. This data cannot be associated with a specific person. You can deactivate this function at any time via the ad settings in your Google Account or generally prohibit the collection of your data by Google Analytics as shown in the item “Opposition to data collection”.

Google Analytics Remarketing

Our websites use the features of Google Analytics Remarketing in conjunction with the cross-device features of Google AdWords and Google DoubleClick. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

This feature allows the advertising audiences created with Google Analytics Remarketing to link to the cross-device features of Google AdWords and Google DoubleClick. In this way, interest-oriented, personalized advertising messages, which have been adapted to you depending on your previous usage and surfing behaviour on a terminal device (e.g. mobile phone) can also be displayed on another of your devices (e.g. tablet or PC).

If you have given your consent, Google will link your web and app browsing history to your Google Account for this purpose. This allows you to display the same personalized advertising messages on any device you sign in to with your Google Account.

To support this feature, Google Analytics collects google-authenticated user IDs that are temporarily linked to our Google Analytics data to define and create audiences for cross-device ad advertising.

You can permanently object to cross-device remarketing/targeting by disabling personalized advertising in your Google Account; follow this link: https://www.google.com/settings/ads/onweb/.

The summary of the collected data in your Google Account is based exclusively on your consent, which you can submit or revoke with Google (Art. 6 sec. 1 lit. a GDPR). For data collection operations that are not merged into your Google Account (e.g. because you do not have a Google Account or have objected to the merger), the collection of the data is based on Art. f GDPR. The legitimate interest arises from the fact that the website operator has an interest in the anonymised analysis of website visitors for advertising purposes.

Further information and the privacy policy can be found in Google’s data protection declaration at: https://www.google.com/policies/technologies/ads/.

Google AdWords and Google Conversion Tracking

This website uses Google AdWords. AdWords is an online advertising program of Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, United States (“Google”).

As part of Google AdWords, we use so-called conversion tracking. When you click on an ad placed by Google, a cookie for conversion tracking is set. Cookies are small text files that the internet browser places on the user’s computer. These cookies expire after 30 days and are not used for the personal identification of users. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user has clicked on the ad and has been redirected to this page.

Each Google AdWords customer receives a different cookie. Cookies cannot be tracked through AdWords customers’ websites. The information collected using the conversion cookie is used to generate conversion statistics for AdWords customers who have opted for conversion tracking. Customers will find out the total number of users who clicked on their ad and have been redirected to a page tagged with a conversion tracking tag. However, they will not receive any information that can be used to personally identify users. If you do not wish to participate in tracking, you can object to this use by easily disabling the Google Conversion Tracking cookie via your Internet browser under User Settings. They are then not included in the conversion tracking statistics.

The storage of “conversion cookies” is based on Art. f GDPR. The website operator has a legitimate interest in the analysis of user behaviour in order to optimize both its website offer and its advertising.

For more information about Google AdWords and Google Conversion Tracking, please refer to Google’s Privacy Policy: https://www.google.de/policies/privacy/.

You can set your browser to inform you about the setting of cookies and to allow cookies only on a case-by-case basis, to exclude the acceptance of cookies for certain cases or in general, and to automatically delete cookies when you close the browser. When disabling cookies, the functionality of this website may be limited.

5. Newsletter
Newsletter data

If you wish to receive the newsletter offered on the website, we require an e-mail address from you as well as information that allows us to verify that you are the owner of the e-mail address provided and that you agree to receiving the newsletter. Further data are not collected or only on a voluntary basis. We use this data exclusively for the sending of the requested information and do not pass it on to third parties.
The data entered in the newsletter registration form will be processed exclusively on the basis of your consent (Art. 6 sec. 1 lit. a GDPR). You can revoke your consent to the storage of the data, the e-mail address and their use for sending the newsletter at any time, for example via the “unsubscribe” link in the newsletter. The legality of the data processing operations that have already taken place remains unaffected by the revocation.
The data you have stored with us for the purpose of receiving the newsletter will be stored by us until you unsubscribe from the newsletter and deleted thereafter. Data that has been stored by us for other purposes (e.g. e-mail addresses for the member area) remain unaffected.

MailChimp

DThis website uses the services of MailChimp for sending newsletters. The provider is Rocket Science Group LLC, 675 Ponce De Leon Ave NE, Suite 5000, Atlanta, GA 30308, USA.
MailChimp is a service that can be used, among other things, to organize and analyze the sending of newsletters. If you enter data for the purpose of receiving the newsletter (e.g. e-mail address), it will be stored on MailChimp’s servers in the USA.

MailChimp is certified according to the “EU-US Privacy Shield”. The Privacy Shield is an agreement between the European Union (EU) and the US to ensure compliance with European data protection standards in the US.

With the help of MailChimp we can analyze our newsletter campaigns. When you open an e-mail sent with MailChimp, a file (so-called web-beacon) contained in the e-mail connects to MailChimp’s servers in the United States. This allows us to determine whether a newsletter message has been opened and which links have been clicked (if applicable). In addition, technical information is collected (e.g. time of retrieval, IP address, browser type and operating system). This information cannot be assigned to the respective newsletter recipient. They are used exclusively for the statistical analysis of newsletter campaigns. The results of these analyses can be used to better adapt future newsletters to the interests of recipients.

If you do not want an analysis by MailChimp, you must unsubscribe from the newsletter. For this purpose, we provide a corresponding link in each newsletter message. You can also unsubscribe from the newsletter directly on the website.

The data is processed on the basis of your consent (Art. 6 sec. 1 lit. a GDPR). You can revoke this consent at any time by unsubscribe from the newsletter. The legality of the data processing operations that have already taken place remains unaffected by the revocation.

The data you have stored with us for the purpose of receiving the newsletter will be stored by us until you have unsubscribed from the newsletter and will be deleted from our servers as well as from MailChimp’s servers thereafter. Data that has been stored by us for other purposes (e.g. e-mail addresses for the member area) remain unaffected.

For more information, please refer to MailChimp’s Privacy Policy at: https://mailchimp.com/legal/terms/.

Completion of a data processing agreement

We have entered into a so-called “Data Processing Agreement” with MailChimp in which we oblige MailChimp to protect our customers’ data and not to pass it on to third parties. This contract can be viewed at the following link: https://mailchimp.com/legal/forms/data-processing-agreement/sample-agreement/.

6. Plugins und Tools
YouTube

Our website uses plugins from the Google-operated site YouTube. The site is operated by YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. When you visit one of our sites equipped with a YouTube plugin, a connection is established to the YouTube servers. The YouTube server will be informed which of our pages you have visited. If you are logged into your YouTube Account, you allow YouTube to associate your browsing behaviour directly with your personal profile. You can prevent this by logging out of your YouTube Account. The use of YouTube is in the interest of an appealing presentation of our online offers. This constitutes a legitimate interest within the meaning of Article 6(1) of the Lit. f GDPR. For more information on how to handle user data, please visit YouTube’s privacy policy at: https://www.google.de/intl/de/policies/privacy.

Google Web Fonts

Our website uses plugins from the Google-operated site YouTube. The site is operated by YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. When you visit one of our sites equipped with a YouTube plugin, a connection is established to the YouTube servers. The YouTube server will be informed which of our pages you have visited. If you are logged into your YouTube Account, you allow YouTube to associate your browsing behaviour directly with your personal profile. You can prevent this by logging out of your YouTube Account. The use of YouTube is in the interest of an appealing presentation of our online offers. This constitutes a legitimate interest within the meaning of Article 6(1) of the Lit. f GDPR. For more information on how to handle user data, please visit YouTube’s privacy policy at: https://www.google.com/policies/privacy/.

Google Web Fonts

This page uses so-called web fonts provided by Google to display fonts in a consistent way. When you visit a page, your browser loads the required web fonts into its browser cache to display texts and fonts correctly.For this purpose, the browser you are using must connect to Google’s servers. This will make Google aware that our website has been accessed via your IP address. The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online offers. This constitutes a legitimate interest within the meaning of Article 6(1) of the Lit. f GDPR.
If your browser does not support web fonts, a default font will be used by your computer. For more information about Google Web Fonts, see: https://developers.google.com/fonts/faq and Google’s Privacy Policy: https://www.google.com/policies/privacy/

Google Maps

This page uses the map service Google Maps via an API. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. To use the functions of Google Maps, it is necessary to save your IP address. This information is usually transferred to a Google server in the United States and stored there. The provider of this site has no influence on this data transfer. The use of Google Maps is in the interest of an attractive presentation of our online offers and an easy location of the places indicated by us on the website. This constitutes a legitimate interest within the meaning of Article 6(1) of the Lit. f GDPR. More information on how to handle user data can be found in Google’s privacy policy: https://www.google.de/intl/de/policies/privacy/.

Linking on social media platforms

Our website refers to our pages on various social media platforms. We would like to point out that by clicking on these links you leave our website and also the scope of this privacy policy. On the social media platforms, only the respective data protection declarations and terms of use of the operator of the social media platform apply.

Social Media Plugins

We use the following social media plugins: Instagram, YouTube, Facebook, Twitter, Google+, Pinterest, WhatsApp. Only by clicking on the button the content of the plugin is transmitted to the respective operator of the social media platform. We have no influence on the collected data and data processing processes, nor are we aware of the full scope of the data collection, the purposes and the storage periods. The data transmitted is (to our knowledge) the URL of the page visited and the IP address you are using and/or another platform-dependent identifier. If you are logged in at the same time on the respective social media platform, the respective operator can assign the visit to these websites to your user account.

Through the plug-ins, we offer you the opportunity to interact with social networks and other users, so that we can improve our offer and make it more interesting for you as a user. The legal basis for the use of the plug-ins is Art. f GDPR.

The purpose and scope of the data collection by the respective operator of the social media platform and the further processing and use of the data by the operator as well as your rights in this regard and setting options for the protection of your privacy can be found. Please refer to the data protection notices of the respective operator of the social media platform:

Instagram LLC., 1601 Willow Road, Menlo Park, CA 94025, USA; https://help.instagram.com/155833707900388/

Facebook Inc., 1601 S California Ave, Palo Alto, California 94304, USA; www.facebook.com/policy.php. Facebook is certified according to EU-US Privacy Shield.

Twitter, Inc., 1355 Market St, Suite 900, San Francisco, California 94103, USA; https://twitter.com/privacy. Twitter is certified according to EU-US Privacy Shield.

Google Inc., 1600 Amphitheater Parkway, Mountainview, California 94043, USA; https://www.google.com/policies/privacy/partners/?hl=de. Google is certified according to EU-US Privacy Shield.

Pinterest Europe Ltd., Palmerston House, 2nd Floor, Fenian Street, Dublin 2, Irland; https://policy.pinterest.com/de/privacy-policy

WhatsApp Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland; https://www.whatsapp.com/legal/?lang=de#privacy-policy

For more information on how to handle user data, please visit YouTube’s privacy policy at: https://www.google.de/intl/de/policies/privacy.

7. Payment providers
PayPal

On our website we offer payment via PayPal. The provider of this payment service is PayPal (Europe) S.A.R.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter “PayPal”). If you select the payment via PayPal, the payment data you enter will be transmitted to PayPal. The transfer of your data to PayPal is based on Art. a GDPR (consent) and Art. b GDPR (processing for the performance of a contract). You have the option to revoke your consent to data processing at any time. A revocation does not affect the effectiveness of data processing operations in the past.

Klarna

On our website we offer, among other things, payment with the services of Klarna. The provider is Klarna AB, Sveavägen 46, 111 34 Stockholm, Sweden (hereinafter “Klarna”). Klarna offers various payment options (e.g. instalment purchase). If you choose to pay with Klarna (Klarna checkout solution), Klarna will collect various personal information from you. Details can be found in Klarna’s privacy policy at the following link: https://www.klarna.com/de/datenschutz/. Klarna uses cookies to optimize the use of the Klarna checkout solution. The optimization of the checkout solution represents a legitimate interest within the meaning of Art. f GDPR. Cookies are small text files that are stored on your device and do no harm. They remain on your device until you delete them. Details on the use of Klarna cookies can be found at the following link: https://cdn.klarna.com/1.0/shared/content/policy/cookie/de_de/checkout.pdf.

The transfer of your data to Klarna takes place on the basis of Art. a GDPR (consent) and Art. b GDPR (processing for the performance of a contract). You have the option to revoke your consent to data processing at any time. A revocation does not affect the effectiveness of data processing operations in the past.

Sofortüberweisung

On our website we offer, among other things, payment by means of “immediate transfer”. The provider of this payment service is Sofort GmbH, Theresienhöhe 12, 80339 Munich (hereinafter “Sofort GmbH”). With the help of the “immediate transfer” procedure, we receive a payment confirmation from Sofort GmbH in real time and can immediately start fulfilling our liabilities.

If you have opted for the payment method “Immediate Transfer”, you will send the PIN and a valid TAN to Sofort GmbH, with which it can log into your online banking account. Sofort GmbH automatically checks your account balance after logging in and carries out the transfer to us with the help of the TAN you have submitted. It then immediately sends us a transaction confirmation. After logging in, your sales, the credit limit and the existence of other accounts, as well as their holdings, are automatically checked.

In addition to the PIN and the TAN, the payment data you enter, as well as data about you, will also be transmitted to Sofort GmbH. The data about you is first and last name, address, telephone number(s), email address, IP address and any other data required for payment processing. The transmission of this data is necessary in order to establish your identity beyond doubt and to prevent attempts at fraud.

The transfer of your data to Sofort GmbH takes place on the basis of Art. a GDPR (consent) and Art. b GDPR (processing for the performance of a contract). You have the option to revoke your consent to data processing at any time. A revocation does not affect the effectiveness of data processing operations in the past.

Details on instant payment can be found at the following links: https://www.sofort.de/datenschutz.html and https://www.klarna.com/sofort/.