{"id":832,"date":"2021-05-27T11:14:38","date_gmt":"2021-05-27T09:14:38","guid":{"rendered":"https:\/\/p-hhqhmu.project.space\/datenschutzerklaerung\/"},"modified":"2025-01-24T11:06:24","modified_gmt":"2025-01-24T10:06:24","slug":"privacy-policy","status":"publish","type":"page","link":"https:\/\/dev.vialit.hammerer.at\/en\/privacy-policy\/","title":{"rendered":"Privacy Policy"},"content":{"rendered":"\t\t
We have written this privacy policy (version 24.01.2025-122938701) in order to explain to you, in accordance with the provisions of the\u00a0General Data Protection Regulation (EU) 2016\/679<\/a>\u00a0and applicable national laws, which personal data (data for short) we as the controller \u2013 and the processors commissioned by us (e.g. providers) \u2013 process, will process in the future and what legal options you have. The terms used are to be considered gender-neutral. Privacy policies usually sound very technical and use legal terminology. However, this privacy policy is intended to describe the most important things to you as simply and transparently as possible. So long as it aids transparency, technical\u00a0terms are explained in a reader-friendly manner, links<\/strong>\u00a0to further information are provided and\u00a0graphics<\/strong>\u00a0are used. We are thus informing in clear and simple language that we only process personal data in the context of our business activities if there is a legal basis for it. This is certainly not possible with brief, unclear and legal-technical statements, as is often standard on the internet when it comes to data protection. I hope you find the following explanations interesting and informative. Maybe you will also find some information that you have not been familiar with. This privacy policy applies to all personal data processed by our company and to all personal data processed by companies commissioned by us (processors). With the term personal data, we refer to information within the meaning of Article 4 No. 1 GDPR, such as the name, email address and postal address of a person. The processing of personal data ensures that we can offer and invoice our services and products, be it online or offline. The scope of this privacy policy includes:<\/p> In short:<\/strong>\u00a0This privacy policy applies to all areas in which personal data is processed in a structured manner by the company via the channels mentioned. Should we enter into legal relations with you outside of these channels, we will inform you separately if necessary.<\/p> In the following privacy policy, we provide you with transparent information on the legal principles and regulations, i.e. the legal bases of the General Data Protection Regulation, which enable us to process personal data. We only process your data if at least one of the following conditions applies:<\/p> Other conditions such as making recordings in the interest of the public, the exercise of official authority as well as the protection of vital interests do not usually occur with us. Should such a legal basis be relevant, it will be disclosed in the appropriate place.<\/p> In addition to the EU regulation, national laws also apply:<\/p> Should other regional or national laws apply, we will inform you about them in the following sections.<\/p> It is a general criterion for us to store personal data only for as long as is absolutely necessary for the provision of our services and products. This means that we delete personal data as soon as any reason for the data processing no longer exists. In some cases, we are legally obliged to keep certain data stored even after the original purpose no longer exists, such as for accounting purposes.<\/p> If you want your data to be deleted or if you want to revoke your consent to data processing, the data will be deleted as soon as possible, provided there is no obligation to continue its storage.<\/p> We will inform you below about the specific duration of the respective data processing, provided we have further information.<\/p> In accordance with Articles 13, 14 of the GDPR, we inform you about the following rights you have to ensure fair and transparent processing of data:<\/p> In short:<\/strong>\u00a0you have rights \u2013 do not hesitate to contact the responsible party listed above with us!<\/p> If you believe that the processing of your data violates data protection law or your data protection rights have been violated in any other way, you can complain to the supervisory authority. For Austria, this is the data protection authority, whose website can be found at\u00a0https:\/\/www.dsb.gv.at\/<\/a>. In Germany, there is a data protection officer for each federal state. For more information, you can contact the Federal Commissioner for\u00a0Data Protection and Freedom of Information (BfDI)<\/a>. The following local data protection authority is responsible for our company:<\/p> Manager:<\/strong>Dr. Matthias Schmidl We only transfer or process data to countries outside the scope of the GDPR (third countries) if you consent to this processing or if there is another legal permission. This is particularly true when processing is legally required or necessary for the performance of a contractual relationship, and in any case, only to the extent permitted by law. Your consent is in most cases the primary reason for us to process data in third countries. Processing of personal data in third countries such as the USA, where many software providers offer services and have their server locations, may mean that personal data is processed and stored in unexpected ways.<\/p> We explicitly point out that, according to the opinion of the European Court of Justice, there is currently only an adequate level of protection for data transfers to the USA if a US company processing personal data of EU citizens in the USA is an active participant in the EU-US Data Privacy Framework. More information can be found at:\u00a0https:\/\/commission.europa.eu\/document\/fa09cbad-dd7d-4684-ae60-be03fcb0fddf_en<\/a><\/p> Data processing by US services that are not active participants in the EU-US Data Privacy Framework may result in data not being anonymized and processed, if applicable. Additionally, US government authorities may potentially have access to individual data. Furthermore, it may occur that collected data is linked with data from other services of the same provider, if you have a corresponding user account. Where possible, we try to use server locations within the EU, if offered.<\/p> We will inform you in the appropriate sections of this privacy policy in more detail about data transfers to third countries, if applicable.<\/p> In order to protect personal data, we have implemented both technical and organisational measures. We encrypt or pseudonymise personal data wherever this is possible. Thus, we make it as difficult as we can for third parties to extract personal information from our data.<\/p> Article 25 of the GDPR refers to \u201cdata protection by technical design and by data protection-friendly default\u201d which means that both software (e.g. forms) and hardware (e.g. access to server rooms) appropriate safeguards and security measures shall always be placed. If applicable, we will outline the specific measures below.<\/p> The terms TLS, encryption and https sound very technical, which they are indeed. We use HTTPS (Hypertext Transfer Protocol Secure) to securely transfer data on the Internet. We have thus introduced an additional layer of security and meet privacy requirements through technology design\u00a0Article 25 Section 1 GDPR<\/a>). With the use of TLS (Transport Layer Security), which is an encryption protocol for safe data transfer on the internet, we can ensure the protection of confidential information.
In short:<\/strong>\u00a0We provide you with comprehensive information about any of your personal data we process.<\/p>
If you still have questions, we kindly ask you to contact the responsible body named below or in the imprint, follow the existing links and look at further information on third-party sites. You can of course also find our contact details in the imprint.<\/p>Scope<\/h2>
Legal bases<\/h2>
Whenever EU law is concerned, we refer to REGULATION (EU) 2016\/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of April 27, 2016. You can of course access the General Data Protection Regulation of the EU online at EUR-Lex, the gateway to EU law, at\u00a0https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/?uri=celex%3A32016R0679<\/a>.<\/p>Storage Period<\/h2>
Rights in accordance with the General Data Protection Regulation<\/h2>
Austria Data protection authority<\/h2>
Address:\u00a0<\/strong>Barichgasse 40-42, 1030 Wien
Phone number.:\u00a0<\/strong>+43 1 52\u00a0152-0
E-mail address:\u00a0<\/strong>dsb@dsb.gv.at<\/a>
Website:\u00a0<\/strong>https:\/\/www.dsb.gv.at\/<\/a><\/p>Data transfer to third countries<\/h2>
Security of data processing operations<\/h2>
TLS encryption with https<\/h2>
This means that the entire transmission of all data from your browser to our web server is secured \u2013 nobody can \u201clisten in\u201d.<\/p>
You can recognise the use of this safeguarding tool by the little lock-symbol\u00a0, which is situated in your browser\u2019s top left corner in the left of the internet address (e.g. examplepage.uk), as well as by the display of the letters https (instead of http) as a part of our web address.
If you want to know more about encryption, we recommend you to do a Google search for \u201cHypertext Transfer Protocol Secure wiki\u201d to find good links to further information.<\/p>Cookies<\/h2>