개인정보 보호정책
Pulsarlube Homepage
Privacy Policy
개인정보 보호정책
개인보호 정책은 당사 홈페이지에 접속하는 동안 제공된 당신의 개인 정보 활용에 관한 사항임을 알려드립니다. 당사 홈페이지는 자발적으로 제공된 개인정보 외에는 개인정보 혹은 이를 추측할 수 있는 그 어떠한 정보도 수집하지 않습니다. 자발적으로 제공되는 개인 정보에 한에서는 개인정보 제공자와 사전동의 하에 이용될 것입니다. (주)KLT는 개인정보 보호법 제30조에 따라 정보주체(고객)의 개인정보를 보호하고 이와 관련한 고충을 신속하고 원활하게 처리할 수 있도록 하기 위하여 다음과 같이 개인정보 처리지침을 수립․공개합니다.
PRIVACY STATEMENT
1. 개인정보의 처리목적
(주)KLT는 다음의 목적을 위하여 개인정보를 처리하고 있으며, 다음의 목적 이외의 용도로는 이용하지 않습니다.
– 고객 가입의사 확인, 고객에 대한 서비스 제공에 따른 본인 식별․인증 등
2. 개인정보의 처리 및 보유기간
① (주)KLT는 정보주체로부터 개인정보를 수집할 때 동의 받은 개인정보 보유․이용기간 또는 법령에 따른 개인정보 보유․이용기간 내에서 개인정보를 처리․보유합니다.
② 구체적인 개인정보 처리 및 보유 기간은 다음과 같습니다.
– 고객 가입 및 관리 : 서비스 이용계약 또는 회원가입 해지시까지, 다만 채권․채무관계 잔존시에는 해당 채권․채무관계 정산시까지
– 전자상거래에서의 계약․청약철회, 대금결제, 재화 등 공급기록 : 5년
3. 개인정보의 제3자 제공
(주)KLT는 정보주체의 별도 동의, 법률의 특별한 규정 등 개인정보 보호법 제17조에 해당하는 경우 외에는 개인정보를 제3자에게 제공하지 않습니다.
4. 정보주체와 법정대리인의 권리․의무 및 행사방법
정보주체는 <소상공인명>에 대해 언제든지 다음 각 호의 개인정보 보호 관련 권리를 행사할 수 있습니다.
1. 개인정보 열람요구
2. 오류 등이 있을 경우 정정 요구
3. 삭제요구
4. 처리정지 요구
5. 처리하는 개인정보 항목
(주)KLT는 다음의 개인정보 항목을 처리하고 있습니다.
– 성명, 주소, 전화번호, 휴대전화번호, 이메일주소 등 정보
6. 개인정보의 파기
① (주)KLT는 개인정보 보유기간의 경과, 처리목적 달성 등 개인정보가 불필요하게 되었을 때에는 지체없이 해당 개인정보를 파기합니다.
② (주)KLT는 다음의 방법으로 개인정보를 파기합니다.
– 전자적 파일 : 파일 삭제, 디스크 포맷 – 종이 문서 : 분쇄하거나 소각
7. 개인정보의 안전성 확보조치
(주)KLT는 개인정보의 안전성 확보를 위해 다음과 같은 조치를 취하고 있습니다.
– 관리적 조치 : 내부관리계획 수립․시행, 직원․ 등에 대한 정기적 교육
– 기술적 조치 : 개인정보처리시스템(또는 개인정보가 저장된 컴퓨터)의 비밀번호 설정 등 접근권한 관리, 백신소프트웨어 등 보안프로그램 설치, 개인정보가 저장된 파일의 암호화
– 물리적 조치 : 개인정보가 저장․보관된 장소의 시건, 출입통제 등
8. 개인정보 자동 수집 장치의 설치∙운영 및 거부에 관한 사항
① (주)KLT는 이용자에게 개별적인 맞춤서비스를 제공하기 위해 이용정보를 저장하고 수시로 불러오는 ‘쿠키(cookie)’를 사용합니다.
② 쿠키는 웹사이트를 운영하는데 이용되는 서버(http)가 이용자의 컴퓨터 브라우저에게 보내는 소량의 정보이며 이용자의 PC 컴퓨터내의 하드디스크에 저장되기도 합니다.
가. 쿠키의 사용목적: 이용자가 방문한 각 서비스와 웹 사이트들에 대한 방문 및 이용형태, 인기 검색어, 보안접속 여부, 등을 파악하여 이용자에게 최적화된 정보 제공을 위해 사용됩니다.
나. 쿠키의 설치∙운영 및 거부 : 웹브라우저 상단의 도구>인터넷 옵션>개인정보 메뉴의 옵션 설정을 통해 쿠키 저장을 거부 할 수 있습니다.
다. 쿠키 저장을 거부할 경우 맞춤형 서비스 이용에 어려움이 발생할 수 있습니다.
<자동 수집 장치를 설치․운영하지 않는 경우>
제8조 (주)KLT는은 이용자의 이용정보를 저장하고 수시로 불러오는 ‘쿠키(cookie)’를 사용하지 않습니다.
9. 개인정보 보호책임자
(주)KLT는 개인정보 처리에 관한 업무를 총괄해서 책임지고, 개인정보 처리와 관련한 정보주체의 불만처리 및 피해구제를 처리하기 위하여 아래와 같이 개인정보 보호책임자를 지정하고 있습니다.
▶ 개인정보 보호책임자
성명 : 이시범
직책 : 경영관리팀 부장
연락처 : 02-2135-3878, sblee@pulsarlube.com
10. 개인정보 처리방침 변경
이 개인정보 처리방침은 2016. 1. 1부터 적용됩니다.
개인정보 보호
당신의 개인정보 보호는 당사에 있어서 중요한 사항입니다. Pulsarlube® 는 개인정보 수집과 활용에 있어서 아래 개인정보 보호 지침에 근거 할 것 입니다.
개인 보호 정책 관련하여
우리는 개인보호 정책을 웹사이트 호스팅 관련 법조기관인 Premium Templates www.freenetlaw.com. 의 법조 판례들을 기반으로 하여 작성 되었습니다.
개인정보 수집
Pulsarlube® 아래와 같은 개인 정보류들을 수집 활용합니다.
개인정보 활용
펄사루브는 당신의 개인 정보를 아래와 같은 사항을 위해서만 사용합니다. 펄사루브는 당신의 개인정보를 아래와 같은 목적으로 대리점이나 하청 대리점들에게 공개 할수 있습니다. 대리점이나 하청 대리점의 제품문의 목적으로 다음 개인 보호 정책과 부합하는 범위내에서 개인정보가 활용되게 됩니다. 상기 외에 합당한 목적에 의해서 공개가 필요하게 되는 경우, 펄사루브는 당신의 개인정보를 권리 구제와 법률행위등의 관련 법이 근거하는 규정내에서 공개 하게 됩니다.
정보 보호
펄사루브는 개인정보의 분실,오용,양도 등을 방지하여 유기적인 예방차원의 적합한 전산기술로서 개인정보를 관리합니다. 펄사루브는 제공되는 모든 개인 정보를 서버에 안전하게 저장 할 것입니다.
개인정보 수집
Pulsarlube® 아래와 같은 개인 정보류들을 수집 활용합니다.
국가간 개인정보 전송
펄사루브가 수집한 정보는 개인정보 보호 정책에 부합되는 경우 어떤 국가에서 보존,활용,전송 되어질수 있으며, 국가간 개인정보 활용을 위한 전송에 동의 할 수있습니다.
내용의 추가 및 변경
펄사루브는 웹사이트에 신규 버젼의 개인보호 정책을 추가 또는 변경 할수있습니다. 수시로 웹페이지를 통해 확인하시기 바랍니다.
Other websites 타 웹사이트
이 웹사이트는 다른 웹사이트 들과 연결되어 있습니다. 펄사루븐 제3자에 의해 관리되는 웹사이트에서의 개인정보 보호나 활용에 대해서는 어떠한 책임도 지지 않습니다.
펄사루브 연락처
개인정보 정책 이나 활용에 관한 문의가 있으시다면 아래 이메일주소로 보내주시기 바랍니다. webmaster@pulsarlube.com / 전화번호 : 02)2083-8488
COPYRIGHT NOTICE 저작권 보호
Copyright © [1996-2112] [Pulsarlube®]
저작권
이 웹사이트와 웹사이트 상의 자료 (문장, 컴퓨터 코드, 아트웤, 사진, 이미지, 음악 , 오디오, 비디오 등을 포함 )의 저작권은 펄사루브에게 있습니다. 펄사루브의 사전동의 없이 웹사이트 상의 내용, 자료, 사진등 임의적으로 편집, 재구성, 배포 할수 없습니다.
정보발췌
이 웹사이트로부터의 자동화되거나 조직화된 정보 발췌를 금합니다.
허가
웹사이트상의 자료를 원하는 경우 다음 담당자 webmaster@pulsarlube.com에게 이메일을 보내주시기 바랍니다.
저작권 침해
펄사루브는 저작권 침해에 엄중히 대응 할 것입니다. 만일 당사의 허가 없이 당사 저작권 자료를 사용하는 경우, 이에 대해 즉각적인 사용을 중단하고 법률행위를 진행하며 손실금액과 법률 제반행위로 발생되는 비용을 청구할 것 입니다, 만일 펄사루브 저작권 자료를 허가 없이 사용하는 저작권 침해 행위 발견시 다음 이메일 주소로 알려주시기 바랍니다. webmaster@pulsarlube.com
저작권 복제
이 웹사이트 내용의 위조나 변조가 의심되는 사이트를 발견하시는 경우 다음 이메일 주소로 알려주시기 바랍니다. webmaster@pulsarlube.com
쿠키 설정
당사와 제3자는 개인정보보호정책에 명시된대로 개인 정보를 수집하고, 사용자의 동의 하에 쿠키 정책에 명시된 기능 및 측정을 위해 쿠키 또는 유사한 기술을 사용합니다. 여기에는 사이트 운영, 통계 및 지도 서비스에 필요한 쿠키 및 유사한 기술이 포함됩니다. 사용자가 허용하고 동의하는 범주를 결정할 수 있습니다. 이 웹 사이트의 하단에 있는 "쿠키 설정"을 클릭하고 해당 쿠키의 선택을 취소한 다음 "선택사항 동의"를 클릭하면 언제든지 동의를 취소할 수 있습니다. 사용자의 설정에 따라 웹 사이트의 특정 영역에서 사용이 중단되거나 기능이 제한될 수 있습니다.
필수
이 쿠키는 귀하가 요청한 서비스를 운영하거나 제공하는데 반드시 필요한 활동에 사용되므로 귀하의 동의가 필요하지 않습니다.
측정
우리의 제안과 웹 사이트의 지속적인 향상을 위해, 우리는 통계 및 분석을 위해 익명의 데이터를 기록합니다. 예를 들어, 이러한 쿠키를 사용하면 방문 횟수와 웹사이트의 특정 페이지의 효과를 분석할 수 있으며, 이는 콘텐츠를 최적화하는 데 도움이 됩니다.
기능
이 쿠키는 귀하가 당사 서비스의 선택된 기능에 액세스하고 당사와의 커뮤니케이션을 용이하게 하는 기본 상호 작용 및 기능을 활성화합니다. 우리는 관련 기능을 개선하기 위해 타사 지도를 사용합니다. 확인란을 선택하면 모든 맵이 자동으로 로드됩니다.
Contact:
perma-tec GmbH & Co. KG
Personally liable partners: perma-tec Verwaltungs GmbH
Hammelburger Straße 21
97717 EUERDORF
GERMANY
Tel.: +49 (0) 97 04 6 09-0
Fax: +49 (0) 97 04 6 09-50
E-Mail: info(at)perma-tec.com
Register Court: Amtsgericht Schweinfurt;
Register Number: HRB 3544
Valued-added tax identification no.: DE 812 792 039
Managing Director:
Dr. Abassin Aryobsei
Peter Mayr
Photo Credits:
Product photos
Tanismedia - Ronny Michallik
NovArte fotodesign – Flavio Burul
Used under license by fotolia.com:
© Anton Medvedkov – 1372083 – fotolia.com
© Brian Jackson – 76101314 – fotolia.com
© Tyler Olson – 58539579 – fotolia.com
© tom – 64663828 – fotolia.com
© erikdegraaf – 3501774 – fotolia.com
© Oleg-F – 4853857 – fotolia.com
© azthesmudger – 10359498 – fotolia.com
© McKay – 12443917 – fotolia.com
© lupico – 6287946 – fotolia.com
© DeVIce – 7968156 – fotolia.com
© A_Bruno – 8623519 – fotolia.com
© chaiwattudsri – 14618229 – fotolia.com
© Marco Birn – 12686732 – fotolia.com
© Marco Birn – 13489034 – fotolia.com
© Marco Birn – 13590682 – fotolia.com
© MA SP – 20450538 – fotolia.com
© Lubos Chlubny – 21732891 – fotolia.com
© Sergey Nivens – 29282360 – fotolia.com
© Okea – 34311276 – fotolia.com
© Alibamba – 6956948 – fotolia.com
© Sascha Burkard – 1159715 – fotolia.com
© Thomas Berg – 350054 – fotolia.com
© Anatoly Maslennikov – 32018424 – fotolia.com
© RTimages – 27496153 – fotolia.com
© bloomua – 33525617- fotolia.com
© nattstudio – 34429542- fotolia.com
© Marco Birn – 12262415 – fotolia.com
© lukiv007 – 74193186 – fotolia.com
© Stanisic Vladimir – 110841988 – fotolia.com
© auremar – 162081358 – fotolia.com
© christian42 – 13025992 – fotolia.com
Used under license by Shutterstock.com:
© zhangyang13576997233 – 149570927 – shutterstock.com
© gyn9037 – 165987281 – shutterstock.com
© Cergios - 463224854 – shutterstock.com
Platform of the EU Commission regarding online dispute resolution: http://ec.europa.eu/consumers/odr
Data protection and security information
Our company attaches particular importance to data protection. In principle, you can use our website without providing personal data. However, if a data subject wishes to avail of particular services provided by our company online, processing of personal data may be required. If processing of personal data is required and there is no legal basis for such processing, we generally obtain the consent of the data subject.
Processing of personal data, in particular a data subject’s name, address, email address or telephone number, is always carried out in accordance with the EU General Data Protection Regulation (GDPR), the Federal Data Protection Act (Bundesdatenschutzgesetz; BDSG) and other applicable laws. Through this data privacy statement, our company would like to provide information about the nature, scope and purpose of the personal data we process and highlight to data subjects the rights granted to them.
(1) Definitions
Our company’s privacy policy is based on the GDPR. Our data privacy statement should be easy to read and understand. Below we explain some of the most relevant terms to ensure that this is the case:
(1.1) Personal data
Personal data means any information relating to an identified or identifiable natural person (hereinafter “data subject”); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier, or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person (Article 4 (1) GDPR).
(1.2) Data subject
A data subject is any identified or identifiable natural person, whose personal data is processed by the controller responsible for the processing.
(1.3) Processing
Processing means any operation or set of operations which is performed on personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
(1.4) Restriction of processing
Restriction of processing means the marking of stored personal data with the aim of limiting its processing in the future.
(1.5) Profiling
Profiling means any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to a natural person, in particular to analyse or predict aspects concerning that natural person's performance at work, economic situation, health, personal preferences, interests, reliability, behaviour, location or movements.
(1.6) Pseudonymisation
Pseudonymisation is the processing of personal data in such a manner that the personal data can no longer be attributed to a specific data subject without the use of additional information. Such additional information is kept separately and is subject to technical and organisational measures to ensure that the personal data is not attributed to an identified or identifiable natural person.
(1.7) Controller or party responsible for processing
Controller or party responsible for the processing means the natural or legal person, public authority, agency or other body who/which, alone or jointly with others, determines the purposes and means of the processing of personal data.
(1.8) Processor
Processor means a natural or legal person, public authority, agency or other body, who/which processes personal data on behalf of the controller.
(1.9) Recipient
Recipient means a natural or legal person, public authority, agency or another body, to whom/which the personal data is disclosed, whether a third party or not. However, public authorities which may receive personal data in the framework of a particular inquiry in accordance with Union or Member State law shall not be regarded as recipients.
(1.10) Third party
Third party means a natural or legal person, public authority, agency or body other than the data subject, controller, processor, and persons who, under the direct authority of the controller or processor, are authorised to process personal data.
(1.11) Consent
Consent of the data subject means any freely given, specific, informed and unambiguous indication of the data subject's wishes by which they, by a statement or by a clear affirmative action, signify agreement to the processing of personal data relating to them.
(2) Name and address of party responsible for processing (“controller”)
The controller as defined by the GDPR is:
perma-tec GmbH & Co. KG
Hammelburger Str. 21
97717 Euerdorf | GERMANY
Email: info(at)perma-tec.com
www.perma-tec.com
(3) Contact details of our data protection officer
datenschutz(at)perma-tec.com
Every data subject can contact our data protection officer directly with any queries or suggestions that they might have concerning data protection.
(4) General data categories, purpose and legal basis of data processing
Whenever you use the perma-tec websites, applications or online tools (hereinafter also referred to as “perma-tec online service offer”), we process the following personal data:
- Personal data that you voluntarily provide via perma-tec online service offer (e.g. when registering, contacting us with your queries or participating in surveys, etc.), including e.g. first/last name, email address, telephone number, information submitted as part of a support request, comments or forum posts
- Information that is automatically sent to us by your web browser or device, such as your IP address, server log files, device type, browser type, referring site, sites accessed during your visit, the date and time of each visitor request
We process your personal data for the following purposes:
- To allow you to use the services and functions of perma-tec online service offer
- To process your request
- To verify your identity and enable user authentication
- To send you marketing information or to contact you in the context of customer satisfaction surveys as further explained in Clause 4
- To enforce our terms and conditions, to assert or defend legal claims, and to tackle and prevent fraud or other illegal activities, including attacks on our IT infrastructure
Processing personal data is required to achieve the specified purposes. In certain processing contexts, we also process other categories of personal data. Refer to Clauses 4.1 to 4.4 for more information.
Unless expressly specified otherwise when collecting personal data, the legal basis for data processing is as follows:
- Performance and fulfilment of a contract with you pursuant to Article 6 (1) (b) GDPR
- Fulfilment of legal obligations to which perma-tec is subject pursuant to Article 6 (1) (c) GDPR or
- To safeguard the legitimate interests of perma-tec pursuant to Article 6 (1) (f) GDPR. The legitimate interest of perma-tec lies in the processing of your personal data for the purpose of this offering and the operation of perma-tec online service offers
In some cases, we expressly request your consent for the processing of personal data. In this case, the legal basis for processing personal data is your declared consent pursuant to Article 6 (1) (a) GDPR.
(4.1) File-sharing portal
When using our file-sharing portal, the following additional personal data is collected and stored in addition to the data listed above under Clause 4: logging of accesses (downloads and uploads). This data is not shared with third parties and is deleted after six months at the latest.
4.2 perma Online shop
When using our perma Online shop, the following additional personal data is collected and stored in addition to the data listed above under Clause 4: ordering history. This data is not shared with third parties and is deleted following expiration of the legal retention period.
(4.3) perma SELECT APP, perma CONNECT APP, perma MLP APP and perma web application
When using our perma SELECT APP, perma MLP APP and perma MLP web application the following additional personal data is collected and stored in addition to the data listed above under Clause 4: results from calculations are saved in PDF format and sent to the specified email address. This includes the email address and name of author. When using the perma MLP APP, perma CONNECT APP and perma MLP web application, in addition to the profile data entered by the user, username and password (in encrypted form), the uploaded images and names of lubrication points are also saved. This data is not shared with third parties and is deleted following expiration of the legal retention period.
(4.4) perma SETBOX
When using our perma SETBOX, during an update the following additional personal data is collected, forwarded and stored via email (in the background) to the CRM system used internally at perma-tec in addition to the data listed above under Clause 4: IP address, SETBOX ID, name of PC and error messages. This data is not shared with third parties and is deleted following expiration of the legal retention period.
(4.5) perma ACADEMY, perma eACADEMY
When registering for the perma ACADEMY, in addition to the data listed above under Clause 4, information about dietary restrictions for catering is also saved. In order to use the perma eACADEMY, information about the user’s course participation, learning status and certificates is forwarded and saved in addition to the profile data entered by the user. This data is not shared with third parties and is deleted following expiration of the legal retention period.
(5) Cookies
This website uses cookies and similar technologies. Cookies are small text files that are stored on your computer when you visit our website. We use cookies and similar technologies in order to ensure usage of our online services, for statistics and for map services.
A so-called “cookie banner” appears when you visit our website. By clicking on a corresponding button, you declare your consent to the use of cookies and similar technologies listed in the table below. You can also make a selection concerning the cookies and similar technologies used on the site. Your selection will be stored for future website visits.
You can revoke your consent at any time via the “Cookie settings” at the bottom of this website, unchecking the respective boxes and then clicking on “Confirm selection”. Please note that based on your settings you may experience interruptions or limited functionality in certain areas of the website. Furthermore, depending on the browser, it may also be possible to set the browser so that no cookies or similar technologies can be used.
User consent is required for the use of certain cookies and similar technologies, depending on their function and purpose.
No consent is required for cookies and similar technologies that are essential for the use of our online services or to safeguard IT security. The setting of these cookies and the use of similar technologies as well as related processing activities are permitted pursuant to Article 6 (1) (f) GDPR.
By contrast, consent is required for cookies and similar technologies used for all other purposes such as statistical analyses and the integration of map services.
Overview of cookies used on this website:
Designation | Provider | Purpose | Type | Period of data storage |
---|---|---|---|---|
cookie_consent_manager | Tritum | Banner check | HTML Local Storage | 90 days |
ccm_statistics | Tritum | Banner check | HTML Local Storage | 90days |
ccm_external_maps | Tritum | Banner check: Tracking consent | HTML Local Storage | 90 days |
More detailed information on the processing of personal data for statistical evaluations (analysis tools) which takes place when "Statistics" is activated in the cookie banner can be found under section 14.
More detailed information on the processing of personal data in connection with the use of map services when "Maps" is activated in the cookie banner can be found in section 14.
(6) Contact options on the website
perma-tec collects and processes personal data of the data subject in order to:
- Fulfil perma-tec obligations when concluding or over the course of a contractual relationship between perma-tec and the data subject
- Simplify effective communication and the relationship between perma-tec and the data subject
- Handle queries and other matters in relation to perma-tec products and services
- Forward customer queries to our sales partners if necessary
- Ensure compliance with legal obligations and enforce contractual agreements
- Manage the security of perma-tec products, services, intellectual property and other offerings • Analyse sales data and partner interaction with perma-tec products and services, in order to improve the customer experience and the content of these products and services
- Conduct surveys, carry out marketing and communication activities
- The legal basis for the above processing purposes is Article 6 (1) (b, f) GDPR
(7) Newsletter
The following personal data is collected when you register for our newsletter: your name and email address. By subscribing to our newsletter, you permit perma-tec GmbH & Co. KG to collect, process and save the above-mentioned data. We only use this data to send the newsletter. In order to optimise our offering, we also evaluate which links have been clicked in the newsletter in a personalised form. You also grant us your consent to this processing purpose by registering. You can revoke your consent to the storage and use of your email address for the purpose of sending the newsletter at any time with future effect. To do so, simply click the unsubscribe link at the end of the newsletter or contact us in this regard.
(8) Processing the personal data of business partners
As part of its cooperation with business partners, perma-tec processes the personal data of points of contact at customers, suppliers, interested parties, distribution partners and cooperation partners (hereinafter “business partners”):
- Contact information such as first/last name, business address, business phone number, business mobile number, business fax number and business email address
- Payment data such as details required to process payment transactions or prevent fraud, including credit card information and card verification codes
- Additional information whose processing is required to execute a project or a contractual relationship with perma-tec and which is provided by business partners on a voluntary basis, e.g. when placing an order, submitting queries or providing details on projects
- Personal data that is collected from publicly available sources, information databases or credit agencies
- If legally required for compliance screenings: Date of birth, identification and ID numbers as well as information about relevant litigation or other legal proceedings involving business partners
perma-tec processes personal data for the following purposes:
- Communicating with business partners about products, services and projects, e.g. by responding to queries or requests from business partners or providing technical information about products
- Planning, performing and managing the contractual relationship between perma-tec and the business partner, e.g. in order to process product orders and service requests, process payments, carry out accounting and billing activities, arrange deliveries, and carry out maintenance activities and repairs
- Managing/conducting customer surveys, marketing campaigns, market analyses, sweepstakes, contests, or other promotional activities or events
- Conducting customer satisfaction surveys and direct marketing activities as described in more detail in Clause 4
- Maintaining and protecting the security of perma-tec products, services and websites, preventing and detecting security threats, fraud or other criminal or malicious activities
- Ensuring compliance with (i) legal requirements (e.g. fiscal and commercial retention obligations), (ii) existing obligations concerning performance of compliance screenings (to prevent white-collar or money laundering crimes) and (iii) perma-tec policies or industry standards
- Solving disputes, enforcing existing contracts and establishing, exercising and defending legal claims
The processing of personal data is required to achieve the aforementioned purposes. Unless expressly specified otherwise when collecting personal data, the legal basis for data processing is as follows:
- Performance and fulfilment of a contract with you pursuant to Article 6 (1) (b) GDPR
- Fulfilment of legal obligations to which perma-tec is subject pursuant to Article 6 (1) (c) GDPR or
- Safeguarding of perma-tec’s legitimate interests pursuant to Article 6 (1) (f) GDPR The legitimate interest pursued by perma-tec is the initiation, performance and management of the business relationship.
If you have expressly given your consent to the processing of your personal data in individual cases, this consent shall be the legal basis for processing pursuant to Article 6 (1) (a) GDPR.
(9) Recipients of personal data
Those parties within our company who require your data to fulfil our contractual and legal obligations will have access to it. Service providers and vicarious agents working for us may also receive data for such purposes if they undertake to maintain, in particular, confidentiality and integrity. These include companies in the following categories: IT services, logistics, print services, telecommunications, collection, consulting, sales and marketing.
In terms of sharing data with recipients outside our company, first and foremost it should be noted that we will only share necessary personal data, observing all applicable regulations on data protection. In principle, we may only disclose information about you if this is required by law, you have given your consent or if we are authorised to provide such information. Under these conditions, recipients of personal data may include:
- Public agencies and institutions (e.g. tax authorities, law enforcement agencies, family courts, deed registries) if there is a statutory or regulatory obligation to share the data
- Lending and financial service institutions or comparable organisations with which we share personal data for the purpose of conducting a business relationship (banks, credit agencies, etc.)
- Other affiliated companies in our group for risk management purposes based on a statutory or regulatory obligation
- Creditors or bankruptcy trustees that request the data in connection with foreclosure
- Auditors
- Service providers that we have retained as processors,
- commercial agents of the company
(10) Sending data to third countries
Data is sent to parties located in countries outside the European Union (third countries) in cases where
- It is necessary to execute your orders (e.g. delivery orders)
- It is required by law (e.g. reporting duties under tax law) or
- You have given us your consent
In addition, data is sent to parties in third countries in the following cases:
- Your personal data may be sent to an IT service provider in a third country in full compliance with European data protection standards if and as needed in individual cases to maintain the company's IT operations
- Personal data (e.g. authentication data) is sent to third countries in individual cases in full conformity with the data protection standards of the European Union when balancing interests and complying with laws on combating money laundering, terrorism financing and other illegal activities
When using IT providers, user data may be transferred and processed by the provider in the US. Data processing is based on your explicit consent in the cookie banner. Your declaration of consent justifies such data processing on an exceptional and case-by-case basis pursuant to article 49 (1) GDPR. Please note that the level of data protection in the US may vary from that in the EU and the EEA. In particular, government agencies may access your personal data on the basis of legal authorisation without our/your knowledge or consent. Your chances of successfully enforcing your privacy rights in the USA are not very promising.
You may revoke your consent at any time, in which case we would ask you to send an email to our data protection officer under datenschutz@perma-tec.com and delete all relevant cookies and temporary files in your browser.
(11) Data processing on our social media presences (LinkedIn, Xing and Instagram)
We use links to the social networks LinkedIn, Xing and Instagram on our website in order to draw attention to our products and services, and to get in contact with you as a visitor to, and user of, these social media sites and our website.
The links are in the form of the logo of the respective social network. Clicking on the logo connects your browser directly to the server of the particular service and takes you to the service provider’s website.
The information below explains how your data on the respective social media presences is processed.
Our presences are as follows:
Platform | Presence | Provider | Privacy policy of the provider |
www.linkedin.com/company/3852066 | LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland | www.linkedin.com/legal/privacy-policy | |
www.xing.com/companies/perma-tecgmbh%26co.kg | New Work SE, Dammtorstraße 30, 20354 Hamburg, Germany | privacy.xing.com/en/privacy-policy | |
www.instagram.com/perma_schmiersysteme/ |
Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland |
help.instagram.com/519522125107875/ |
For Instagram, additional and supplementary information is provided in Clause 11.4 below.
(11.1.) Data processing by us
We maintain social media presences in order to draw attention to our products, services and career opportunities, to communicate with users about these, and to make improvements.
Personal data obtained in this context is processed according to Article 6 (1) (f) GDPR by virtue of our legitimate interests in public relations, communication and product improvement, unless otherwise specified.
On our social media presences, we are able to view your posts, similar interactions, and – depending on your privacy settings – your public profile. We may use this data in order to improve our products as well as the information we provide, in particular on our social media presences.
If you contact us via social media, we will process the personal data that you provide here in order to take care of your requests, and in particular to answer questions or respond to enquiries. We might answer your question via social media. The legal basis for processing personal data in this context is, in many cases, Article 6 (1) (b) GDPR (performance of a contract or measures prior to entering into a contract) or, if this legal basis does not apply, then Article 6 (1) (f) GDPR on grounds of the legitimate interests arising from the purposes previously mentioned.
Furthermore, we may also process personal data in connection with social media in accordance with statements from other sections of the privacy policy.
As a matter of precaution, we would like to point out that communication via social media platforms may not be secure. You can contact us at any time via other communication channels and you will then receive an answer via these other channels.
The platforms also provide us with aggregate usage statistics, which we use to analyse usage behaviour and to improve the information we offer. The usage statistics may also be compiled by the platforms on the basis of personal usage data. Further information about this can be found in the privacy policies of the respective providers, the links to which are shown above. See below for specific information about Facebook.
(11.2.) Processing by the platform operators (social media providers)
We have no control over how the respective providers process your personal data. Rather, the platform operators control the processing of this data as part of your usage of the particular service. This includes, for example, the storage and use of cookies on user devices as well as the analysis of your behaviour on the social network.
(11.3.) Information about the deletion of posts
If you publish personal data on our social media presences in the form of posts, e.g. images, text or videos, or interact in another way, e.g. by clicking a “Like” button, your data will be processed and, in many cases, published. If the content of a post or similar is inappropriate, we may delete it in accordance with the usual procedures and policies of the relevant platforms.
(11.4.) Additional information about Instagram
When you visit us on Instagram, data is gathered by the operator of this platform, Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland (“Facebook”), including in particular your IP address and other information that is transferred by browser, as well as other information that is present on your computer in the form of cookies, if applicable. This information is used in order to provide us, as the owner of the Instagram presence, with statistical information about the way the particular presences are used (insights).
As joint controllers in accordance with Article 26 GDPR, we and Facebook process personal data in this respect and have concluded a corresponding joint controller agreement. The key information on this agreement pursuant to Article 26 GDPR between us and Facebook can be found at https://www.facebook.com/legal/terms/information_about_page_insights_data
or https://www.facebook.com/legal/terms/page_controller_addendum.
Further information on data processing by Facebook Within the scope of insights can be found at https://www.facebook.com/legal/terms/information_about_page_insights_data.
Notwithstanding the information in the agreement under the above link, you can assert your rights as a data subject vis-à-vis us and Facebook.
The data about you obtained in this context is processed by Facebook and may be sent to countries outside the European Union, in particular to Facebook Inc. based in the USA. Please note that Facebook is responsible under data protection law for the corresponding transmission processes and subsequent processing procedures. The actual data that Facebook obtains and how this data is used is described in Facebook’s privacy policy. Further information about this can be found in Facebook’s privacy policy: https://www.facebook.com/policy.php.
The legal basis for the processing of personal data in this context is Article 6 (1) (f) GDPR (legitimate interests for the above-mentioned purposes) or, provided that consent has been obtained, Article 6 (1) (a), Article 7 GDPR (consent).
You can adjust the settings for the processing of your personal data on Instagram at https://www.instagram.com/accounts/privacy_and_security/
(13) Routine deletion and blocking of personal data
The controller processes and stores personal data of the data subject only for the period necessary to achieve the purpose of its processing or as far as this is granted by legislators in laws or regulations to which the processor is subject. If the storage purpose is not applicable or if a storage period prescribed by the legislator expires, personal data will be routinely blocked or deleted in accordance with legal requirements.
(13) Rights of the data subject
(13.1) Right to confirmation
Every data subject shall have the right to request from the controller confirmation as to whether or not personal data concerning them is being processed. If a data subject wishes to exercise this right of confirmation, they can contact our data protection officer at any time or contact another employee of the controller.
(13.2) Right of access
Every person affected by the processing of personal data has the right – free of charge – to obtain information about the personal data concerning them from the controller and to receive a copy of this information in addition to the information listed here:
- The purposes of processing
- The categories of personal data processed
- The recipients or categories of recipients to whom the personal data has been or will be disclosed, in particular recipients in third countries or international organisations
- Where possible, the planned period for which the personal data will be stored or if this is not possible, the criteria used to determine that period
- The existence of a right to request from the controller the rectification or erasure of the relevant personal data, or the restriction of its processing, or to object to such processing
- The existence of a right to file a complaint with a supervisory authority
- Where the personal data is not collected from the data subject: any available information as to the source of the data
- The existence of automated decision-making including profiling in accordance with Article 22 (1 and 4) GDPR and – at least in these cases – conclusive information about the logic involved as well as the implications and the intended effects of such processing for the data subject
Furthermore, the data subject has a right to obtain information as to whether personal data has been transmitted to a third country or to an international organisation. Where this is the case, the data subject has the right to be informed of the appropriate safeguards relating to the transmission of this data.
If a data subject would like to assert this right of access, they can send an email to datenschutz(at)perma-tec.com
at any time.
(13.3) Right to rectification
Every person affected by the processing of personal data has the right to request immediate rectification of inaccurate personal data concerning them. Taking into account the purposes of the processing, the data subject also has the right to have incomplete personal data completed, including by means of providing a supplementary statement.
If a data subject would like to assert this right to rectification, they can contact our data protection officer at any time.
(13.4) Right to erasure (right to be forgotten)
Every person affected by the processing of personal data has the right to request from the controller the erasure of personal data concerning them without undue delay, where one of the following reasons applies and as long as the processing is not necessary:
- Personal data is no longer necessary in relation to the purposes for which it was collected or otherwise processed
- The data subject revokes their consent on which the processing was based in accordance with Article 6 (1) (a) GDPR or Article 9 (2) (a) GDPR, and there is no other legal basis for the processing
- The data subject files an objection in accordance with Article 21 (1) GDPR against the processing and there are no overriding legitimate grounds for the processing, or the data subject files an objection against the processing in accordance with Article 21 (2) GDPR
- The personal data has been processed illegally
- The personal data must be erased in order to ensure compliance with a legal obligation in Union or Member State law to which the controller is subject
- The personal data was obtained in relation to the services offered by the information society in accordance with Article 8 (1) GDPR
If one of the aforementioned reasons applies and a data subject wishes to request the erasure of personal data stored by our company, they can contact our data protection officer at any time. Our data protection officer will promptly ensure that the erasure request is complied with without undue delay.
Where our company has made personal data public and if our company is required in accordance with Article 17 (1) GDPR to erase said personal data, our company – taking into account the available technology and the cost of implementation – will take reasonable steps, including technical measures, to inform other controllers processing such data that the data subject has requested erasure by such controllers of any links to, or copies or replications of, the respective personal data, as long as the processing is not necessary. The data protection officer will arrange the necessary measures in individual cases.
(13.5) Right to restriction of processing
Every person affected by the processing of personal data has the right – granted by the European legislator – to request from the controller the restriction of processing where one of the following applies:
- The accuracy of the personal data is contested by the data subject, that is for such a period of time that the controller can verify its correctness
- The processing of personal data is deemed unlawful, the data subject opposes its erasure and requests instead that its use be restricted
- The controller no longer requires the personal data for the purposes of processing, but the data subject needs this data for the establishment, exercise or defence of legal claims
- The data subject has objected to its processing pursuant to Article 21 (1) GDPR pending verification as to whether the legitimate grounds of the controller override those of the data subject
If one of the aforementioned reasons applies and a data subject wishes to request the restriction of personal data stored by our company, they can contact our data protection officer at any time. The data protection officer will arrange the restriction of processing.
(13.6) Right to data portability
Every person affected by the processing of personal data has the right to receive the personal data concerning them, which the data subject has provided to a controller, in a structured, commonly used and machine-readable format. They also have the right to provide this data to another controller without hindrance from the controller, as long as the processing is based on consent in accordance with Article 6 (1) (a) GDPR or Article 9 (2) (a) GDPR or on a contract in accordance with Article 6 (1) (b) GDPR, and the processing is carried out by automated means, as long as the processing is not necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the controller.
Furthermore, in exercising their right to data portability in accordance with Article 20 (1) GDPR, the data subject is entitled to have the personal data transmitted directly from one controller to another, where technically feasible, and provided that this does not infringe upon the rights and freedoms of other persons.
In order to assert their right to data portability, the data subject can contact our data protection officer at any time.
(13.7) Right to object Every person affected by the processing of personal data has the right, for reasons arising from their particular situation, to file an objection at any time to the processing of said data, which takes place on the basis of Article 6 (1) (e or f) GDPR. This also applies to profiling based on these provisions. Our company will no longer process personal data if an objection is filed, unless we can demonstrate compelling legitimate grounds for its processing, which override the data subject’s interests, rights and freedoms, or for the establishment, exercise or defence of legal claims. If our company processes personal data for direct marketing purposes, the data subject will have the right to object at any time to the processing of said data for such marketing. This also applies to profiling to the extent that it is related to such direct marketing. If the data subject objects to our processing of personal data for the purposes of direct advertising, we will no longer process this data for these purposes. In addition, the data subject has the right, on grounds relating to their particular situation, to object to the processing of personal data for scientific or historical research purposes, or for statistical purposes in accordance with Article 89 (1) GDPR, unless such processing is necessary for the performance of a task carried out for reasons of public interest. In order to assert their right to object, the data subject can contact our data protection officer directly. |
(13.8) Right to withdraw data protection consent
Every person affected by the processing of personal data has the right to withdraw their consent to the processing of personal data at any time. If the data subject wishes to exercise their right to withdraw consent, they can contact our data protection officer at any time.
(13.9) Right not to be subject to automated decision-making
Furthermore, you have the right under Article 22 GDPR not to be subject to fully automated decision-making. In principle, we do not use fully automated decision-making to establish, implement and terminate the business relationship. If we decide to use this procedure in individual cases (e.g. to improve our products and services), we will inform you of this and of your rights in this regard separately if this is required by law.
(13.10) Obligation to provide data
In the context of our business relationship, you must provide such personal contractual data that is required for the establishment, implementation and termination of a business relationship, and for the fulfilment of the associated contractual obligations or for whose collection we are legally obliged. Generally speaking, we will not be able to conclude, execute or terminate a contract with you without this data.
The same is true with regard to visiting our online offering and collecting usage data. We will not be able to provide you with our online offering without collecting usage data.
(14) Data protection for job applications and application procedures
perma-tec collects and processes the personal data of job applicants for the purpose of carrying out the application process. This data is also processed electronically. This is the case in particular when an applicant submits their application documents to our company electronically, for example, by email or using a web form contained on the website. If our company enters into an employment agreement with an applicant, the data submitted will be stored in compliance with the applicable legal regulations for the purpose of performing the obligations under the employment contract. If our company does not conclude an employment contract with the applicant, the application documents will be automatically deleted six months after the decision not to hire has been communicated, unless there are other legitimate interests on the part of the controller preventing this. Other legitimate interests in this context means, for example, any obligation to provide substantiating evidence in proceedings based on the General Non-Discrimination Act (Allgemeines Gleichbehandlungsgesetz; AGG).
Within the perma group your data are transferred to perma USA and processed there. The legal basis for the data transfer and data processing is article 49 para.1 (b) GDPR (the transfer is necessary for the performance of a contract between the data subject and the controller or the implementation of pre-contractual measures taken at the data subject’s request) and / or the explicit consent in accordance with article 49 para. 1 (a) (the data subject has explicitly consented to the proposed transfer). There is no comparable level of data protection in the USA. Government agencies are legally authorized to access your personal data without our/your knowledge or consent. Your chances of successfully enforcing your privacy rights in the USA are not very promising.
(15) Data protection provisions: tracking tools
Web analytics tool Matomo
a. Scope of processing of personal data
This website uses the Matomo web analytics tool. This tool collects and evaluates data about your behaviour on our website. Among other things, data is collected via which website you accessed our website (so-called referrer), which subpage of our website you visited or how often and how long you viewed a subpage.
A cookie (for cookies, see above) is set in your system to enable analysis of the use of our website. Each time you access a subpage of our website, your system's internet browser is prompted by the Matomo component to transmit data to our server for the purpose of online analysis. As part of this process, we collect your IP address. After collection, the IP address is shortened by 6 digits and then used in this form to track your location and clicks. Furthermore, the cookie is used to store information such as access time, access location and the number of website visits. This personally identifiable information (including your IP address) is transmitted to our server in anonymised form every time you visit our website. It is stored by us and will not be passed on to third parties. An overview of the cookies used can be found in the data protection regulations under art. 5.
The software is operated on our own servers, so your data (e.g. log files) is stored on our servers only and is not passed on to third parties.
b. Legal basis for the processing of personal data
The legal basis for the processing of your personal data is Art. 6 (1) GDPR (consent).
c. Purpose of data processing
The web analysis serves to optimise our website and to improve our web services. The purpose of the Matomo component is to enable a website traffic analysis. The obtained data and information helps to evaluate the use of our website. Based on this, online reports are issued to show the activities on our website.
d. Period of data storage
For information on the period of data storage, please see art. 5.
As for the rest, your data will be deleted after a storage period of 90 days.
e. Right to object and deletion option
If you do not wish your data to be processed as described, you can withhold your consent when you first access our website. If you have already declared consent, you can revoke it at any time by unchecking “Statistics” under https://www.perma-tec.com/?type=5000.
Alternatively, you can prevent the setting of cookies via your browser settings and also delete cookies.
Matomo takes into account the "Do-Not-Track" function of your browser. If you have activated this function, we automatically consider this an objection to the web analysis by Matomo and do not collect data. In this case, please note that based on your settings, you may experience interruptions or limited functionality in certain areas of our website. Further information and the current privacy policy of Matomo can be found at: https://matomo.org/privacy-policy/.
(16) Competent data protection supervisory authority
Bayerisches Landesamt für Datenschutzaufsicht
Promenade 18
D-91522 Ansbach
Deutschland
Telefon: +49 (0) 981 180093 0
Telefax: +49 (0) 981 180093 800
Email: poststelle(at)lda.bayern.de
(17) Amendments to the data protection provisions
We reserve the right to amend our security and data protection provisions if this is required due to relevant technical developments. In these cases, we will also amend our data protection information accordingly. Please refer to the latest version of our data privacy policy.