Data privacy policy B2B Medical GmbH

We take privacy seriously
The protection of your privacy when processing personal data is an important concern for us. When you visit our website, our web servers store the IP of your internet service provider, the website from which you visit us, the web pages you visit on our website and the date and duration of the visit as standard. This information is absolutely necessary for the technical transmission of the web pages and secure server operation. A personalised evaluation of this data does not take place. 

Responsible body:

B2B Medical GmbH
Im Steingerüst 32
76437 Rastatt, GERMANY

Phone: +49 7222 59 467 - 991
Fax: + 49 7222 59 467 - 992
Email: kontakt@b2bmedical.de

Authorized Managing Director: Frank Widmann

Personal data
Personal data is data about you. This includes your name, address and email address. You do not have to disclose any personal data to visit our website. In some cases, we may need your name and address as well as other information in order to provide you with the service you requested.

The same applies in the event that we supply you with information material on request or when we answer your enquiries. In these cases we will always point this out to you. In addition, we only store the data that you have provided to us automatically or voluntarily.

When you use one of our services, we generally only collect the data that is necessary to provide you with our service. We may ask you for further information, but this is voluntary. Whenever we process personal data, we do so in order to provide you with our service or to pursue our commercial objectives. 

Contacting
When contacting us (e.g. via contact form, email, telephone or via social media), the information provided by the person making the enquiry is processed to the extent necessary to respond to the contact enquiries and any measures requested. The response to contact enquiries in the context of contractual or pre-contractual relationships is carried out to fulfil our contractual obligations or to respond to (pre)contractual enquiries and otherwise on the basis of the legitimate interests in responding to the enquiries.

  • Types of data processed: inventory data (e.g. names, addresses), contact data (e.g. e-mail, telephone numbers), content data (e.g. entries in online forms). 
  • Data subjects: Communication partners.
  • Purposes of processing: contact requests and communication.
  • Legal basis: Contract performance and pre-contractual enquiries (Art. 6 para. 1 lit. b. DSGVO), Legitimate Interests (Art. 6 para. 1 lit. f. DSGVO). 


Automatically stored data

Server log files
The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:

  • Date and time of the request
  • Name of the requested file
  • Page from which the file was requested
  • Access status (file transfer, file not found, etc.)
  • used web browser and operating system used
  • full IP address of the requesting computer
  • transferred amount of data

There is no merge of this data with other data sources. The processing is carried out in accordance with Art. 6 para. 1 lit. f DSGVO based on our legitimate interest in improving the stability and functionality of our website.

For reasons of technical security, in particular to ward off attacks on our web server, this data is stored by us for a short time. A conclusion to individual persons is not possible on the basis of this data. After seven days at the latest, the data is anonymised by shortening the IP address at the domain level, so that it is no longer possible to establish a link to the individual user. In anonymous form, the data is also processed for statistical purposes; a comparison with other databases or a transfer to third parties, even in excerpts, does not take place. Only in the context of our server statistics, which we publish every two years in our activity report, is a representation of the number of page views instead.

Cookies
When you visit our website, we may store information on your computer in the form of cookies. Many cookies contain a so-called cookie ID. A cookie ID is a unique identifier of the cookie. It consists of a string of characters by which Internet pages and servers can be assigned to the specific Internet browser in which the cookie was stored. This enables the visited Internet pages and servers to distinguish the individual browser of the data subject from other Internet browsers that contain other cookies. A specific internet browser can be recognised and identified via the unique cookie ID.

Through the use of session cookies, the controller can provide the users of this website with more user-friendly services that would not be possible without the cookie setting. Without consent, we only use technically necessary cookies on the legal basis of legitimate interest pursuant to Art. 6 (1) lit. f DSGVO. 

We only use personal cookies to improve our website or for marketing/advertising purposes with your consent. During your first visit, you can voluntarily agree to tracking or analysis by clicking on the cookie banner. Your data may be passed on to partners or third-party providers. These cookies will only be stored if you explicitly agree to this; the legal basis is then your consent in accordance with Art. 6 Para. 1 lit. a DSGVO. You can change your settings for the use of cookies in this menu item: Change cookie settings

Google Tag Manager
We use the Google Tag Manager. The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.

The Google Tag Manager is a tool that enables us to integrate tracking or statistical tools and other technologies on our website. The Google Tag Manager itself does not create user profiles, does not store cookies and does not perform any independent analyses. It only serves to manage and play out the tools integrated via it. However, the Google Tag Manager records your IP address, which may also be transmitted to Google's parent company in the United States.

The Google Tag Manager is used on the basis of Art. 6 para. 1 lit. f DSGVO. The website operator has a legitimate interest in a quick and uncomplicated integration and administration of various tools on its website. Insofar as a corresponding consent has been requested, the processing is carried out exclusively on the basis of Art. 6 para. 1 lit. a DSGVO and § 25 para. 1 TTDSG, insofar as the consent includes the storage of cookies or access to information in the user's terminal device (e.g. device fingerprinting) within the meaning of the TTDSG. The consent can be revoked at any time.

Google Analytics
This website uses functions of the web analysis service Google Analytics. The provider is Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland.

Google Analytics enables the website operator to analyse the behaviour of website visitors. In doing so, the website operator receives various usage data, such as page views, length of stay, operating systems used and the origin of the user. This data is assigned to the respective end device of the user. An assignment to a device ID does not take place.

Furthermore, Google Analytics allows us to record, among other things, your mouse and scroll movements and clicks. Furthermore, Google Analytics uses various modelling approaches to supplement the data records collected and uses machine learning technologies in the data analysis.

Google Analytics uses technologies that enable the recognition of the user for the purpose of analysing user behaviour (e.g. cookies or device fingerprinting). The information collected by Google about the use of this website is usually transferred to a Google server in the USA and stored there.

The use of this service is based on your consent according to Art. 6 para. 1 lit. a DSGVO and § 25 para. 1 TTDSG. The consent can be revoked at any time. Data transfer to the USA is based on the standard contractual clauses of the EU Commission. Details can be found here: https://privacy.google.com/businesses/controllerterms/mccs/.

We use Google signals. When you visit our website, Google Analytics records, among other things, your location, search history and YouTube history, as well as demographic data (visitor data). This data can be used for personalised advertising with the help of Google signals. If you have a Google account, the visitor data from Google Signal will be linked to your Google account and used for personalised advertising messages. The data is also used to compile anonymised statistics on the user behaviour of our users.

We have concluded a contract on order processing (AV) in accordance with Art. 28 DSGVO with the above-mentioned provider. This is a contract required by data protection law, which ensures that the provider only processes the personal data of our website visitors in accordance with our instructions and in compliance with the DSGVO.

This website uses the "e-commerce measurement" function of Google Analytics. With the help of e-commerce measurement, the website operator can analyse the purchasing behaviour of website visitors to improve its online marketing campaigns. This involves recording information such as orders placed, average order values, shipping costs and the time from viewing to purchasing a product. This data can be summarised by Google under a transaction ID that is assigned to the respective user or their device.

Google Maps
This site uses the map service Google Maps. The provider is Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland.

To use the functions of Google Maps, it is necessary to store your IP address. This information is usually transferred to a Google server in the USA and stored there. The provider of this site has no influence on this data transmission. If Google Maps is activated, Google may use Google Web Fonts for the purpose of uniform font display. When you call up Google Maps, your browser loads the required web fonts into your browser cache in order to display texts and fonts correctly.

The use of Google Maps is in the interest of an appealing presentation of our online offers and an easy location of the places indicated by us on the website. This represents a legitimate interest within the meaning of Art. 6 Para. 1 lit. f DSGVO. Insofar as a corresponding consent has been requested, the processing is carried out exclusively on the basis of Art. 6 para. 1 lit. a DSGVO and § 25 para. 1 TTDSG, insofar as the consent includes the storage of cookies or access to information in the user's terminal device (e.g. device fingerprinting) within the meaning of the TTDSG. The consent can be revoked at any time.

Data transfer to the USA is based on the standard contractual clauses of the EU Commission. Details can be found here: https://privacy.google.com/businesses/gdprcontrollerterms/ and https://privacy.google.com/businesses/gdprcontrollerterms/sccs/.
 
More information on the handling of user data can be found in Google's privacy policy: https://policies.google.com/privacy?hl=de.

Amazon CloudFront CDN
We use the content delivery network Amazon CloudFront CDN. The provider is Amazon Web Services EMEA SARL, 38 avenue John F. Kennedy, L-1855, Luxembourg (hereinafter "Amazon").

Amazon CloudFront CDN is a globally distributed content delivery network. Technically, the information transfer between your browser and our website is routed via the Content Delivery Network. This allows us to increase the global accessibility and performance of our website.

The use of Amazon CloudFront CDN is based on our legitimate interest in providing our website as error-free and secure as possible (Art. 6 para. 1 lit. f DSGVO). The data transfer to the USA is based on the standard contractual clauses of the EU Commission.

Details can be found here: https://aws.amazon.com/de/blogs/security/aws-gdpr-data-processing-addendum/.
Further information on Amazon CloudFront CDN can be found here:
https://d1.awsstatic.com/legal/privacypolicy/AWS_Privacy_Notice__German_Translation.pdf.

Cloudflare
We use the service "Cloudflare". The provider is Cloudflare Inc, 101 Townsend St, San Francisco, CA 94107, USA (hereinafter "Cloudflare").

Cloudflare offers a globally distributed content delivery network with DNS. This technically routes the transfer of information between your browser and our website via Cloudflare's network. This enables Cloudflare to analyse traffic between your browser and our website and act as a filter between our servers and potentially malicious traffic from the internet. In doing so, Cloudflare may also use cookies or other technologies to recognise internet users, but these are used solely for the purpose described here.

The use of Cloudflare is based on our legitimate interest in providing our website as error-free and secure as possible (Art. 6 para. 1 lit. f DSGVO). The data transfer to the USA is based on the standard contractual clauses of the EU Commission.

Details can be found here: https://www.cloudflare.com/privacypolicy/.
Further information on the topic of security and data protection at Cloudflare can be found here: https://www.cloudflare.com/privacypolicy/.

We have concluded a contract on order processing (AV) pursuant to Art. 28 DSGVO with the above-mentioned provider. This is a contract required by data protection law, which ensures that the provider only processes the personal data of our website visitors in accordance with our instructions and in compliance with the DSGVO.

GOOGLE TRANSLATE 
The translation service provides automated computer translations that are only an approximation of the original content of the websites. The Google Translate tool is for your convenience only. The translations produced should not be considered accurate and may sometimes contain incorrect or even offensive wording. We do not guarantee the accuracy, reliability or timeliness of the information translated by this system and accept no liability for any resulting damage. In addition, it may not be possible to translate some applications, files or items including graphics, photos or PDFs. Google collects, stores and processes information in order to provide a better service to users. This includes, for example, the language you speak, but also your personal surfing behaviour and / or online behaviour. By using the services of Google Translate, you expressly consent to the processing of your data by Google within the meaning of Art. 6 para. 1 lit. a DSGVO and 25 para. 1 TTDSG.

Further information can be found on these pages: https://translate.google.com and http://translate.google.com/manager/website/?hl=de and http://www.google.com/policies/privacy

Borlabs Cookie
 Our website uses the cookie consent technology of Borlabs Cookie to obtain your consent to the storage of certain cookies in your browser and to document this in a data protection compliant manner. The provider of this technology is Borlabs - Benjamin A. Bornschein, Rübenkamp 32, 22305 Hamburg, GERMANY (hereinafter referred to as Borlabs).

When you enter our website, a Borlabs cookie is stored in your browser, in which the consents you have given or the revocation of these consents are stored. This data is not shared with the Borlabs cookie provider.

The collected data will be stored until you request us to delete it or until you delete the Borlabs cookie yourself or until the purpose for storing the data no longer applies. Mandatory legal retention periods remain unaffected. Details on the data processing of Borlabs Cookie can be found at https://de.borlabs.io/kb/welche-daten-speichert-borlabs-cookie/.

Borlabs Cookie Consent Technology is used to obtain the legally required consent for the use of cookies. The legal basis for this is Art. 6 para. 1 p. 1 lit. c DSGVO. We have concluded a contract on order processing (AV) pursuant to Art. 28 DSGVO with the above-mentioned provider. This is a contract required by data protection law, which ensures that the provider only processes the personal data of our website visitors according to our instructions and in compliance with the DSGVO.

Safety

We have taken technical and administrative precautions to protect your personal data against loss, destruction, manipulation and unauthorized access. All our employees as well as service providers working for us are obliged to the valid data protection laws.

Whenever we collect and process personal information, it will be encrypted before being transferred. This means that your data can not be misused by third parties. Our security measures are subject to a constant improvement process and our data protection statements are constantly being revised. Please make sure you have the latest version.

Affected rights
You have the right to information, correction, deletion or limitation of the processing of your stored data, a right to object to the processing as well as a right to data portability and to a complaint in accordance with the requirements of data protection law.

Right to information:
You can ask us for information as to whether and to what extent we process your data.

Right to rectification:
If we process your data that is incomplete or incorrect, you can request its correction or completion from us at any time.

Right to cancellation:
You may request deletion of your data from us if we process it unlawfully or if the processing disproportionately interferes with your legitimate interests. Please note that there may be reasons opposing an immediate deletion, e.g. in the case of legally regulated storage requirements.
Regardless of your right to cancellation, we will immediately and completely erase your data, unless there is a legal or legal duty of retention in this regard.

Right to restriction of processing:
You may require us to restrict the processing of your data if

  • You deny the accuracy of the data for a period of time that allows us to verify the accuracy of the data.
  • the processing of the data is unlawful, but you reject a deletion and instead require a restriction of data usage,
  • we no longer need the data for the intended purpose, but you still need that data to assert or defend your rights, or
  • You have objected to the processing of the data.

Right to data portability:
You may require us to provide you with the information you have provided to us in a structured, common and machine-readable format and that you may transfer that information to another person without hindrance, provided that

  • we process this information based on a consent given or revocable by you or for performance of a contract between us, and
  • This processing is done using automated procedures. If technically feasible, you may require us to transfer your data directly to another person in charge.

Right to object:
If we process your data for legitimate interest, you can object to this data processing at any time; this would also apply to a profiling based on these provisions. We will then no longer process your data unless we can demonstrate compelling legitimate grounds for processing that outweigh your interests, rights and freedoms, or the processing is for the purpose of enforcing, pursuing or defending legal claims. You can object to the processing of your data for the purpose of direct mail at any time without stating reasons.

Right of appeal:
If you believe that we violate German or European data protection laws when processing your data, we ask you to contact us to clarify questions. Of course, you also have the right to contact the supervisory authority responsible for you, the respective State Office for Data Protection Supervision.

If you want to assert one of the mentioned rights against us, please contact our data protection officer. If in doubt, we may request additional information to confirm your identity.

Changes to this Privacy Policy
We reserve the right to change our privacy policy if necessary due to new technology. Please make sure you have the latest version. If any fundamental changes are made to this privacy policy, we will post it on our website.

All interested parties and visitors of our website reach us in privacy issues at:

Mr. Fabian Fromm
Project 29 GmbH & Co. KG
Ostengasse 14
93047 Regensburg, GERMANY

Phone: +49 941 298693 - 0
Fax: +49(0)941 298693 - 16
Email: request@projekt29.de
Internet: www.projekt29.de