The SieMatic Beleving (hereinafter “SieMatic”) takes your privacy very seriously and adheres strictly to legal regulations. We are committed to your privacy and protecting the confidentiality of your data. The following statement gives an overview this protection and what kind of data is collected for what purpose.
SECURITY AND PROTECTION OF YOUR PERSONAL DATA
We consider it our primary task to maintain the confidentiality of the personal data you provide us and protect it from unauthorized access. That is why we take the greatest care and use the most up-to-date security standards to guarantee the maximal protection of your personal data.
As a private-law company, we are subject to the provisions of the European General Data Protection Regulation (GDPR) and the regulations of the German Federal Data Protection Act (Bundesdatenschutzgesetzes or BDSG). We have taken technical and organizational measures to ensure that we and our external service providers respect the regulations regarding data protection.
NOTICE OF DATA CONTROLLER
The controller for the data processing of this website is
1071 ZA Amsterdam
Telefoon +31 (0)20 705 99 10
“Controller” means the natural or legal person which, alone or jointly with others, determines the purposes and means of the processing of personal data (for example, names, email addresses, or similar).
1. Personal Data
“Personal data” means any information relating to an identified or identifiable natural person (“data subject”); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
“Processing” means every operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
3. Restriction of Processing
“Restriction of processing” means the marking of stored personal data with the aim of limiting their processing in the future.
“Profiling” means any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to a natural person, in particular to analyze or predict aspects concerning that natural person's performance at work, economic situation, health, personal preferences, interests, reliability, behavior, location or movements.
“Pseudonymization” means the processing of personal data in such a manner that the personal data can no longer be attributed to a specific data subject without the use of additional information, provided that such additional information is kept separately and is subject to technical and organizational measures to ensure that the personal data are not attributed to an identified or identifiable natural person.
6. Filing System
“Filing system” means any structured set of personal data which are accessible according to specific criteria, whether centralized, decentralized or dispersed on a functional or geographical basis.
“Controller” means the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data; where the purposes and means of such processing are determined by Union or Member State law, the controller or the specific criteria for its nomination may be provided for by Union or Member State law.
“Processor” means a natural or legal person, public authority, agency or other body which processes personal data on behalf of the controller.
“Recipient” means a natural or legal person, public authority, agency or another body, to which the personal data are disclosed, whether a third party or not. However, public authorities which may receive personal data in the framework of a particular inquiry in accordance with Union or Member State law shall not be regarded as recipients; the processing of those data by those public authorities shall be in compliance with the applicable data protection rules according to the purposes of the processing.
10. Third Party
“Third party” means a natural or legal person, public authority, agency or body other than the data subject, controller, processor and persons who, under the direct authority of the controller or processor, are authorized to process personal data.
“Consent” of the data subject means any freely given, specific, informed and unambiguous indication of the data subject's wishes by which he or she, by a statement or by a clear affirmative action, signifies agreement to the processing of personal data relating to him or her.
II. LAWFULNESS OF PROCESSING
Processing shall be lawful only if and to the extent that there is a legal basis for the processing. In accordance with point (a) of Article 6(1) GDPR, a legal basis for processing can be, specifically:
the data subject has given consent to the processing of his or her personal data for one or more specific purposes;
processing is necessary for the performance of a contract to which the data subject is party or in order to take steps at the request of the data subject prior to entering into a contract;
processing is necessary for compliance with a legal obligation to which the controller is subject;
processing is necessary in order to protect the vital interests of the data subject or of another natural person;
processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the controller;
processing is necessary for the purposes of the legitimate interests pursued by the controller or by a third party, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subject which require protection of personal data, in particular where the data subject is a child.
§ 1 INFORMATION ABOUT THE COLLECTION OF PERSONAL DATA
(1) In the following, we provide information about the collection of personal data upon the use of our website. Personal data include all data that can be personally referenced to you such as name, address, email address, user behavior.
(2) Legally Mandated Data Protection Officer
We have appointed a Data Protection Officer for our company.
1071 ZA Amsterdam
Telefoon +31 (0)20 705 99 10
(3) Upon contacting us via email or a contact form, we will store the data you share with us (your email address and, if applicable, your name and telephone number) in order to answer your question. We will delete the data collected in this context after the purpose is no longer necessary or will limit their processing if legal retention requirements apply. The processing of this data is necessary to process your request and any subsequent order. The data processing shall be carried out in accordance with Article 6 (1) (a) of the GDPR.
(4) If we make use of contracted providers to carry out individual features of our offering or would like to use your data for advertising purposes, we will inform you in detail about the respective activities below. This will include specifying the established criteria for determining how long we will store your data.
§ 2 YOUR RIGHTS
(1) You have the followings rights in relation to us regarding the personal data concerning you:
– The right to access
– The right to rectification or erasure
– The right to restriction of processing
– The right to object to processing
– The right to data portability
(2) You additionally have the right to lodge a complaint with a supervisory authority for data protection about our processing of your personal data.
§ 3 COLLECTION OF PERSONAL DATA DURING VISITS TO OUR WEBSITE
(1) If you visit our website for purely informational purposes, meaning you do not register or provide other information to us, we collect only the personal data transmitted to our server by your browser. If you would like to view our website, we collect the following data which are technically necessary for us to display our website and to ensure its stability and security (legal basis is sentence 1 point [f] of Article 6 GDPR):
– IP address
– Date and time of request
– Time zone difference to Greenwich Mean Time (GMT)
– Content of the request (specific page)
– Access status/HTTP status code
– Respective volume of data transferred
– The website from which the request originates
– Operating system and its interface
– Language and version of browser software
(2) In addition to the data named above, we store cookies on your computer when you use our website. Cookies are small text files that are stored on your hard drive and attributed to the browser you are using and that transmit certain information to the site that places the cookie (in this case, us). Cookies cannot run programs or infect your computer with viruses. They serve to make our Internet offering more user friendly and effective overall.
a) This website uses the following types of cookies, the scope and functionality of which are explained in the following:
– transient cookies (see b)
– persistent cookies (see c)
b) Transient cookies are automatically deleted when you close your browser. They include, in particular, session cookies. Session cookies store a so-called session ID that allows different requests from your browser to be attributed to the same session. This makes it possible to recognize your browser if you return to our website. Session cookies are deleted when you log out or close your browser.
c) Persistent cookies are automatically deleted after a preset period of time, which can differ from cookie to cookie. You can delete the cookies at any time in the security settings of your browser.
d) You may configure your browser settings as you like to, for example, block third party cookies or all cookies. We advise you that you may not be able to use all features of this website if you block cookies.
g) The Flash cookies that we use are not captured by your browser but rather by your Flash plugin. We also use HTML5 storage objects that are saved on your end device. These objects store the required data independently of the browser you are using and have no automatic expiry date. If you do not wish for any Flash cookies to be processed, you must install a corresponding add-on, for example, “Better Privacy” for Mozilla Firefox (https://addons.mozilla.org/de/firefox/addon/betterprivacy/) or the “Adobe Flash Killer Cookie” for Google Chrome. You may prevent the use of HTML5 storage objects by selecting the private mode in your browser. We additionally recommend regularly deleting your cookies and browsing history manually.
(4) Use of Usercentrics
The data collected in this way is stored for a period of 1 year or is deleted if you request us to do so. Mandatory legal storage obligations remain unaffected.
We have concluded a contract with Usercentrics for commissioned processing in accordance with Art. 28 DSGVO, in which Usercentrics undertakes to process the data received only in accordance with our instructions and to comply with the EU data protection level.
(5) Use of Google Analytics (GA4)
This website uses Google Analytics 4, a web analytics service provided by Google Inc,.1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (hereinafter: "Google"). The legal basis for this data processing is Art. 6 para. 1 p. 1 lit. a DSGVO in conjunction with. § 25 para.1 TTDSG. The tool uses the "Measurement Protocol" and thus collects specific parameters and information about user interactions, such as in particular the page URL, the language used, the location, the page title, the referrer, the device type, the screen resolution, the operating system and other relevant data. The information collected in this way is transferred to Google's servers and stored there. The storage period is 14 months
(5) Use of Google Tag Manager
c) The legal basis for the use of Google Analytics is sentence 1 point (b) Article 6(1) of the GDPR. The Tag Manager is necessary for this page to function.
(6) Integration of Google Maps
a) On this website, we use services provided by Google Maps. This allows us to display interactive maps directly in our website and makes it possible for you to easily use the map function.
c) You will find further information about the purpose and scope of the data collection and its processing by the plug-in provider in the Privacy Statements of the provider. In these statements, you will also find further information about your rights in this regard and settings options you may choose to protect your privacy: www.google.de/intl/de/policies/privacy. Google processes your personal data in the United States, among other locations, and has agreed to be subject to the EU-US Privacy Shield, www.privacyshield.gov/EU-US-Framework.
(7) Google Remarketing
b) You may also deactivate the use of Google Remarketing for this browser on this website by clicking this link . This will save an opt-out cookie in your browser. If you delete the cookies in this browser, you must click the link again.
d) The legal basis for the use of Google Remarketing is sentence 1 point (f) Article 6(1) of the GDPR.
(8) Pinterest Conversion Tracking and Remarketing:
a) We use the remarketing and conversion tracking feature of Pinterest Europe Ltd., Ireland. This feature is designed to show interest-based ads to visitors to the Pinterest network websites. The website visitor’s browser stores so-called “cookies,” text files stored on the user’s computer that make it possible to recognize when they visit Pinterest. On these pages, visitors may then be presented with ads that relate to the content the visitor previously visited on websites that use the Pinterest remarketing feature.
b) You can disable the use of Pinterest Pixels for your browser on this website by clicking this link. An opt-out cookie is then stored in your browser. If you clear your browser cookies, you must click the link again to re-opt out.
c) Third-party provider privacy information is available at policy.pinterest.com/de/privacy-policy
d) The legal basis for use of Pinterest remarketing is Article 6(1)(f) DSGVO.
(9) Facebook Remarketing:
b) You may also deactivate the use of Facebook remarketing for this browser on this website by clicking this link. This will save an opt-out cookie in your browser. If you delete the cookies in this browser, you must click the link again.
c) Information about the Third Party Provider: Facebook Ireland Ltd, 4 Grand Canal Square, Dublin 2, Ireland. Settings: www.facebook.com/settings/ads
d) The legal basis for the use of Facebook Remarketing is sentence 1 point (f) Article 6(1) of the GDPR.
(10) Use of Matelso:
a) Our website uses a service provided by Matelso GmbH, Stuttgart. This allows us to optimize the effectiveness of our advertising efforts by assigning your call to a specific advertising activity. If you call a telephone number connected to us by Matelso, information about the telephone call will be transmitted to a web analysis service (Google Analytics) utilised by us. Matelso also reads cookies and/or other parameters of the website you visit, for example: referrer, document path, and remote user agent. These parameters are set by our analysis service. The corresponding information is processed by Matelso according to our instructions and is stored on servers in the EU. You can prevent the storage of cookies by setting the current browser software accordingly; however, we would like to point out that you may not then succeed in benefitting from the use of all the functions on this website.
b) In addition, you can disable the use of Matelso in the browser you are using whilst on the website by clicking the relevant link. In this instance, an opt-out cookie is stored in your browser. If you delete your cookies in the same browser, you will need to click the link again.
c) The legal basis for the use of Matelso is Article 6 (1) (1) (f) of the DSGIs.
d) For more information, please visit: https://www.matelso.de/privacy.
(11) Making an appointment with Acuity Scheduling
c) Information from the third-party provider on data protection can be found under acuityscheduling.com/privacy.php.
§ 4 PROCESSOR
Our service providers (processors) include agencies, printing companies, letter shops, call centers, logistics companies and data centers, as well as providers of advertising, IT and analysis. Our providers are prohibited from processing your data for any purpose other than that which we have agreed. We have concluded agreements with these providers regarding the processing of data on our behalf (Article 28 GDPR).
§ 5 OBJECTION TO OR WITHDRAWAL OF CONSENT FOR THE PROCESSING OF YOUR DATA
(1) If you have given consent for your data to be processed, you may withdraw that consent at any time. Such a withdrawal of consent affects the permissibility of processing your personal data after you have communicated it to us.
(2) To the extent that the processing of your personal data is supported by a balancing of interests, you may object to the processing of your data. This is the case where the processing is, in particular, not necessary for the performance of a contract with you, which we will indicate in each of the respective descriptions of functions. In making such an objection, we ask you to explain the reasons why we should not process your personal data the way we did. In the case you submit a reasoned objection, we will examine the facts and either stop processing/adjust how we process your data or present compelling legitimate grounds for why we may continue to process your data.
(3) Obviously you may object at any time to the processing of your personal data for purposes of advertising and data analysis. You may informs us about your objection via the following contact information:
1071 ZA Amsterdam
Telefoon +31 (0)20 705 99 10