PRIVACY POLICY
The protection of your personal data is very important to me. I therefore process your data solely based on the applicable Legal provisions: EU General Data Protection Regulation, Austrian TKG 2003). In this data protection information, I inform you about the most important aspects of data processing in the context of my activities.
The use of my website is usually possible without providing personal data. If you enter personal data, e.g. for the purpose of contacting me, I will pass on the necessary information to companies that process data on my behalf (e.g. send the newsletter). I only commission companies that are subject to the GDPR.
ENCRYPTED DATA TRANSFER
This web site uses SSL encryption in order to ensure safety and privacy. This prevents third parties to intercept or read data you entered on my web site during transmission to or from my site. You can confirm the active encryption by checking the lock symbol in the address bar of your browser.
CONTACT
If you contact me by E-mail, phone or any other means, I store the data provided for one year in order to answer your questions and prepare for follow-up discussions. In case I enter a contract, the statutory retention periods apply. I will not share this data without your consent.The data processing is based on § 6 article 1b (contract) and/or § 6 article 1a (consent) of the GDPR.
SERVER LOG FILES
The server providing this website stores information, which is automatically transmitted to me by your browser, in so-called log files. The saved information is:
> Browser type and browser version
> Operating system used
> The page (URL) from which you came to us
> The IP address of your computer
> Time of request
This data solely used to ensure security and for technical monitoring of the web server (load, optimization, error detection, security) and is required to offer this service. The data is not connected to other data sources, and therefore cannot be associated with individual persons. The log files are deleted after three months Data processing is based on § 6 article 1f (legitimate interests) of the GDPR. The legitimate interest in the sense of the GDPR is the proper and safe function of the website.
COOKIES
My website uses so-called cookies. These are small text files that are stored on your device with the help of the browser. They do no harm.
Cookies are used to make my offer user-friendly. Some cookies will remain stored on your device until you delete them. They allow to recognize your browser the next time you visit.
Some of the cookies are required for my website to function properly. These so called “essential” cookies are used for user authentication or store your decision regarding non-essential cookies. If you do not want to allow that, you can set up your browser to inform you about the setting of cookies and you only allow this on a case-by-case basis. But disabling essential cookies will have a negative impact on the functionality of my website.
Data processing for essential cookies is based on § 6 article 1f (legitimate interests) of the GDPR. The legitimate interest in the sense of the GDPR is the proper and secure function of the website.
Furthermore, I might use other cookies if you provide your consent. Those cookies are not required for the website to function properly. If I use such cookies they will be described in detail in the following sections.
PROCESSING OF ORDERS IN THE WEBSHOP
For the purpose of processing your orders, the following data entered by you during the ordering process is stored:
> Name
> your address
> Phone no.
> e-mail address
> the selected products
> the IP address of the device used to place the order
> bank details, such as account numbers or credit card numbers, passwords, TANs and checksums as well as contract, total and recipient-related details.
I pass on the contact details to my payment service provider PayPal (Europe) S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg, for the purpose of processing the payment.
The privacy policy of PayPal applies(https://www.paypal.com/at/legalhub/privacy-full)
The information is required to carry out the transactions. The bank details you enter during the payment process, such as account numbers or credit card numbers, passwords, TANs and checksums, are only processed by the payment service providers and stored by them. I only receive a confirmation of the payment and do not store any account information.
I also pass on your contact details (name, address, different delivery address) to a shipping service provider if necessary to process the dispatch of the goods.
The legal basis for the processing of this data is Art. 6 para. 1 lit. b of the GDPR (necessary for contract fulfilment). The data will be deleted after expiry of the statutory retention periods, i.e. after 7 years.
OTHER DATA
For accounting purposes, I store the following data of my customers: Name, address, telephone number, e-mail address, VAT ID.
This data is not passed on to third parties, with the exception of the transmission to the processing banking institutions/payment service providers for the purpose of direct debiting, as well as to my tax advisor for the purpose of bookkeeping and to fulfil my obligations under tax law. The data is stored exclusively within the EU.
The data provided by you is necessary to fulfill a contract or for implementation of pre-contractual measures. Without this data I cannot conclude and fulfil the contract with you.
All data from a contractual relationship will be stored until the expiry of the retention period under tax law (7 years).
Data processing is carried out on the basis of Art 6 (1) (c) (legal requirements) of the GDPR and § article 6 (1) (b) (contracts fulfillment) of the GDPR.
INSTAGRAM AND FACEBOOK ACCOUNTS
I operate an Instagram page and a Facebook page, which can be accessed at https://www.instagram.com/katharina.kran and at https://www.facebook.com/katharina.kran. This is a service provided by Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland.
I would like to point out that anonymized statistical data relating to the users of these pages is transmitted to us using the Facebook Insight function, which Meta provides to us free of charge as an integral part of the user relationship. This data is collected using cookies, each of which contains a unique user code that is active for two years and which Meta stores on the hard drive of your computer or another data carrier of the fan page visitors. The user code, which can be linked to your Instagram or Facebook login data, is collected and processed when you access the accounts. It is not possible for the operator of an Instagram or Facebook account to deactivate this function or to prevent the aforementioned processing of the data. Facebook provides more information about Facebook Insight here: https://de-de.facebook.com/help/pages/insights.
In this context, Meta agrees to assume primary responsibility under the GDPR for the processing of Insight Data and to fulfill all obligations under the GDPR with regard to this data. In particular, Meta warrants to assume sole responsibility for personal data processed in this context and to fulfill all obligations to provide information in this regard.
The data transmitted to us by Meta in connection with the use of the fan page is anonymized so that I cannot draw any conclusions about the identity of individual users. However, it is possible to analyze demographic data about users (including trends in age, gender, relationship status and professional situation), information about users' lifestyles and interests (including information about the purchases and online purchasing behavior of visitors to its site and the categories of goods or services they are most interested in) and geographical data in a statistical analysis.
This data is only processed by me for my own evaluation of the reach of my Instagram and Facebook page and is not passed on to third parties. The legal basis for this processing is § Article 6(1)(f) (legitimate interests) of the GDPR. The legitimate interest within the meaning of the GDPR is the identification of target groups that are interested in the content contained on my site.
YOUR RIGHTS
You have the right to request information about stored data and to have data corrected, or deleted. You may restrict the usage of data and may have it transferred to other parties. You have the right to revoke any given consent. Please send any request to the email address buero.kran@gmail.com
If you believe that the processing of your data violates data protection law or that your data protection claims have otherwise been violated, you may file a complaint with the supervisory authority. In Austria, that would be the “Datenschutzbehörde” (https://www.dsb.gv.at)
You can contact me under the following contact details:
buero.kran@gmail.comMontevideogasse 20/2/12
1130 Vienna / Austria
Privacy Policy last update 2024/06/03