(As of May 25, 2018)
Thank you for visiting our website and for your interest in our company. The protection of your personal data is important to us. Below we inform you in accordance with Art. 12, 13 and 21 of the General Data Protection Regulation (DSGVO) about the handling of your personal data when using our website www.misterbags.de.
Personal data is individual information about the personal or factual circumstances of a specific or identifiable natural person. This includes information such as the civil name, address, telephone number and date of birth.
1. person in charge
Person responsible within the meaning of the General Data Protection Regulation:
Mister Bags GmbH
Phone: 0201/890 414 00
Fax: +49 201 890 414 10
Data Protection Officer
The contact details of our data protection officer are as follows:
LCube – Datenschutz & IT-Sicherheit e.K.
Tel: 0201 94 618 0
E-Mail: mailto:[email protected]
- Purposes and legal bases of data processing
- Informational use of the website
You can visit our website without providing any personal information. If you only use our website for informational purposes, i.e. do not register, place an order or otherwise provide us with information about yourself, we do not process any personal data, with the exception of the data that your browser transmits to enable you to visit the website and information that is transmitted to us in the context of cookies used for statistical analysis of the use of our website.
a. Technical provision of the website
For the purpose of the technical provision of the website, it is necessary that we process certain automatically transmitted information from you so that your browser can display our website and you can use the website. This information is automatically collected each time you visit our website and stored in our server log files. This information relates to the computer system of the calling computer. The following information is collected:
- Browsertyp/ -version (Bsp.: Firefox 59.0.2 (64 Bit));
- Browser language (e.g.: German);
- Operating system used (Ex: Windows 10);
- Inner resolution of the browser window;
- Screen resolution;
- Java On / Off;
- Cookies On / Off;
- Color depth;
- Time of access.
• Cookie ID
Your information collected through the above cookies will not be used by us to create user profiles or to evaluate your browsing behavior.
We process your personal data for the technical provision of our website on the basis of the following legal grounds:
for the performance of a contract or for the execution of pre-contractual measures pursuant to Art. 6 (1) lit. b DSGVO, insofar as you visit our website to obtain information about our products; and to protect our legitimate interests pursuant to Art. 6 (1) lit. f DSGVO, in order to be able to make the website technically available to you. Our legitimate interest in this respect is to be able to provide you with an attractive, technically functioning and user-friendly website, as well as to take measures to protect our website against cyber risks and to prevent cyber risks for third parties from our website.
You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general and activate the automatic deletion of cookies when closing the browser.Statistical analysis of website usage and reach increase
- For the purpose of statistical analysis of the use of our website, we use Google Analytics as well as Pardot and thus cookies, which enable an analysis of your surfing behavior. This allows us to improve the quality of our website and its content. We learn how the website is used and can thus constantly optimize our offer.
The information obtained as part of the statistical analysis of our website is not merged with your other data collected as part of the website.
We process your personal data for the statistical analysis of the use of our website on the basis of the following legal grounds:Your consent according to Art. 6 para. 1 lit. a) DSGVO.
On our website we use Google Analytics, a web analytics service provided by Google, Inc. Google Analytics uses "cookies", which are text files placed on your computer, to help the website analyze how users use the site. The information generated by the cookie about your use of our website is usually transmitted to a Google server in the USA and stored there. In the event that IP anonymization is activated on our website, however, your IP address will be truncated beforehand by Google within member states of the European Union or in other contracting states to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. On our behalf, Google will use this information for the purpose of evaluating your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with other data from Google.
On our website we use Google Analytics with the extension "_anonymizeIp()". This means that IP addresses are processed in a shortened form, thus excluding the possibility of a direct link to a person.
We use Google Analytics exclusively with your consent. You can revoke a consent once granted by
download and install the browser plugin available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de or click http://tools.google.com/dlpage/gaoptout?hl=de to prevent Google Analytics from collecting data on our website in the future. This will place an opt-out cookie in your browser. Please note that you must activate the opt-out cookie in every browser you use on all of your end devices and also reactivate it if necessary once you delete all cookies in a browser.
On our website Google Maps is integrated for you, a service of Google, Inc.
To increase the protection of your data when visiting our website, Google Maps is limited and only integrated into the page using an HTML link. This ensures that when you call up our website, no connection is established with Google's servers and your data is not transmitted to Google. Only when you activate the plugins and thus give your consent to the transmission of data, your browser establishes a direct connection to the servers of Google so that you can plan your route to us. Functionally, the integration of Google Maps thus corresponds to a hyperlink, so that neither we nor Google collect any data from you on our website.
- Active use of the website
In addition to the purely informational use of our website, you can also actively use our website to register for our newsletter or to contact us. In addition to the processing of your personal data described above for purely informational use, we will then also process further personal data from you that we need to process your order or to process and respond to your inquiry.
a. User requests
In order to be able to process and respond to your inquiries to us, e.g. via the contact form or to our email address, we process the personal data from you that you provide in this context. In any case, this includes your name and email address in order to send you a reply, as well as the other information you send us as part of your communication.
We process your personal data to respond to user requests on the basis of the following legal grounds:
to protect our legitimate interests pursuant to Art. 6 (1) lit. f DSGVO; our legitimate interest is to respond appropriately to customer inquiries.
Submitting a bid
If you order one of our products on our website without registering a user account, we process your personal data in order to accept and process the order on the website and to provide you with the ordered products. In doing so, we process the information evident from the respective input forms (voluntary information is not marked with an asterisk (*))
- Phone (for queries)
They can voluntarily provide the following information:
- Street/house number
We process your data for the above purposes on the basis of the following legal grounds:
for the fulfillment of a contract or for the implementation of pre-contractual measures pursuant to Art. 6 para. 1 lit. b DSGVO, insofar as you use our portal to inform yourself about our range of goods and to place orders;
- Compliance with legal regulationsWe also process your personal data in order to fulfill other legal obligations that we have in connection with the processing of the order. These include, in particular, retention periods under commercial, trade or tax law.
In doing so, we process your personal data on the basis of the following legal grounds:
for the fulfillment of a legal obligation to which we are subject pursuant to Art. 6 para. 1 lit. c DSGVO in connection with commercial, trade or tax law, insofar as we are obliged to record and store your data.
- Law EnforcementWe also process your personal data in order to be able to assert our rights and enforce our legal claims. We also process your personal data in order to be able to defend ourselves against legal claims. Finally, we process your personal data to the extent necessary to prevent or prosecute criminal offences.We process your personal data for this purpose on the basis of the following legal grounds:to protect our legitimate interests pursuant to Art. 6 (1) lit. f DSGVO, to the extent that we assert legal claims or defend ourselves in legal disputes or we prevent or investigate criminal offences.
- Promotional purposes, such as newsletters, surveys, etc.With your consent, we use your data for promotional purposes, such as the transmission of our newsletter, for promotional surveys or invitations to events of interest to you. We process mandatory information such as your e-mail address, but also information that you provide to us voluntarily.
If you have provided us with your e-mail address in connection with the purchase of goods or services, this may subsequently be used by us for sending a newsletter. In such a case, only direct advertising for our own similar goods or services will be sent via the newsletter.We process your data for sending newsletters, surveys, etc. and the personalization of the address on the following legal basis:If you have given us your consent via double opt-in procedure, according to Art. 6 para. 1 lit. a DSGVO;
If you have provided us with your e-mail address in connection with the purchase of goods or services or we send you personalized advertising, in order to protect our legitimate interests pursuant to Art. 6 para. 1 lit. b DSGVO in conjunction with. § Section 15 (3) TMG in conjunction with. § Section 7 (3) UWG; our legitimate interest is based on our economic interests in the implementation of advertising measures and target group-oriented advertising.
Data use for e-mail advertising and your right to objectIf we receive your e-mail address in connection with the conclusion of a contract and the provision of our products and you have not objected to this, we reserve the right to regularly send you offers for similar products from our range by e-mail. You can object to this use of your e-mail address at any time by sending a message to the contact option described below or via a link provided for this purpose in the advertising e-mail, without incurring any costs other than the transmission costs according to the basic rates.
Some sections of our websites contain links to third-party websites. These websites are subject to their own privacy policies. We are not responsible for their operation, including their data handling practices. If you send information to or through such third-party sites, you should review the privacy statements of those sites before sending them any information that could be personally identifiable to you.
- Recipient categories
Initially, only our employees receive knowledge of your personal data. In addition, we share your personal data, to the extent permitted or required by law, with other recipients who provide services for us in connection with our website. We limit the transfer of your personal data to what is necessary, in particular to process your order. In some cases, our service providers receive your personal data as order processors and are then strictly bound by our instructions when handling your personal data. In some cases, the recipients act independently with your data that we transmit to them.
Below we list the categories of recipients of your personal data:
- If applicable, payment service providers and banks, in processing the payment,
- logistics service provider to be able to deliver the goods to you,
- IT service provider in the administration and hosting of our website as well as the CRM system,
- Collection agencies and legal advisors in the assertion of our claims
- Third country transfer
Within the scope of using Google's tools, we transfer your shortened IP address to the USA. The data transfer is based on the EU Commission's Implementing Decision (EU) 2016/1250 of July 12, 2016 pursuant to Directive 95/46/EC of the European Parliament and of the Council on the adequate protection provided by the EU-US Privacy Shield.
Otherwise, we do not transfer your personal data to countries outside the EU or the EEA or to international organizations.
- Duration of storage
When using our website for purely informational purposes, we store your personal data on our servers exclusively for the duration of your visit to our website. After you have left our website, your personal data will be deleted immediately.
Cookies installed by us are deleted after 7 days. In addition, you have the option to delete installed cookies yourself at any time.
2. active use of the website
When you actively use our website, we initially store your personal data for the duration of the response to your inquiry or for the duration of our business relationship. This also includes the initiation of a contract (pre-contractual legal relationship) and the execution of a contract. In addition, we then store your personal data until any legal claims arising from the relationship with you become time-barred, in order to use them as evidence if necessary. The limitation period is usually between 12 and 36 months, but can also be up to 30 years. When the statute of limitations expires, we delete your personal data, unless there is a legal obligation to retain it, for example from the German Commercial Code (§§ 238, 257 para. 4 HGB) or from the German Fiscal Code (§ 147 para. 3, 4 AO). These retention obligations can be two to ten years.
VII. Your rights as a data subject
You are entitled to the following rights as a data subject under the statutory conditions, which you can assert against us:
Right to Information: You are entitled to request confirmation from us at any time within the scope of Art. 15 GDPR as to whether we are processing personal data relating to you; if this is the case, you are also entitled within the scope of Art. 15 GDPR to receive information about this personal data as well as certain other information (including processing purposes, categories of personal data, categories of recipients, planned storage period, the origin of the data, the use of automated decision-making and, in the case of third country transfers, the appropriate safeguards) and a copy of your data.
Right of rectification: In accordance with Art. 16 DSGVO, you are entitled to demand that we correct the personal data stored about you if it is inaccurate or incorrect.
Right of deletion: You have the right, under the conditions of Art. 17 DSGVO, to demand that we delete personal data relating to you without undue delay. The right to erasure does not exist, among other things, if the processing of the personal data is necessary for (i) the exercise of the right to freedom of expression and information, (ii) compliance with a legal obligation to which we are subject (e.g. legal obligations to retain records) or (iii) the assertion, exercise or defense of legal claims.
Right to restriction of processing: You are entitled to demand that we restrict the processing of your personal data under the conditions of Art. 18 DSGVO.
Right to data portability: You are entitled, under the conditions of Art. 20 DSGVO, to demand that we hand over the personal data concerning you that you have provided to us in a structured, common and machine-readable format.
Right of withdrawal: You have the right to revoke your consent to the processing of personal data at any time with effect for the future.
Right to object: U hebt het recht om bezwaar te maken tegen de verwerking van uw persoonsgegevens onder de voorwaarden van art. 21 DSGVO, zodat wij de verwerking van uw persoonsgegevens moeten stopzetten. Het recht op bezwaar bestaat alleen binnen de grenzen van art. 21 DSGVO. Daarnaast kunnen onze belangen in strijd zijn met de beëindiging van de verwerking, zodat wij gerechtigd zijn om uw persoonsgegevens te verwerken ondanks uw bezwaar.
Right to complain to a supervisory authority: You have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your residence, workplace or the place of the alleged infringement, under the conditions of Article 77 of the GDPR, if you consider that the processing of personal data concerning you infringes the GDPR. The right of appeal is without prejudice to any other administrative or judicial remedy.
The supervisory authority responsible for us is:
State Commissioner for Data Protection and Freedom of Information North Rhine-Westphalia
E-mail: [email protected]
Your requests to exercise your rights should, if possible, be addressed in writing to the above address.
VII. Scope of your obligations to provide data
In principle, you are not obliged to provide us with your personal data. However, if you do not do so, we will not be able to provide you with our website, answer your inquiries to us or enter into a contract with you. Personal data that we do not absolutely require for the above-mentioned processing purposes are marked as voluntary information by a "ggfs." or another sign.
- Automated decision making / profiling
We do not use automated decision making or profiling (an automated analysis of your personal circumstances).
Information about your right to object Art. 21 DSGVO
You have the right to object at any time to the processing of your data that is carried out on the basis of Art. 6 (1) f DSGVO (data processing on the basis of a balance of interests) or Art. 6 (1) e DSGVO (data processing in the public interest), if there are grounds for doing so that arise from your particular situation. This also applies to profiling based on this provision within the meaning of Art. 4 No. 4 DSGVO.
If you object, we will no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves the purpose of asserting, exercising or defending legal claims.We also process your personal data in individual cases for the purpose of direct marketing. If you do not wish to receive advertising, you have the right to object at any time; this also applies to profiling, insofar as it is associated with such direct advertising. We will observe this objection for the future.
We will no longer process your data for direct marketing purposes if you object to processing for these purposes.
The objection can be made form-free and should preferably be addressed to:
Mister Bags GmbH
Phone: 0201/890 414 00
Fax: +49 201 890 414 10
- Data protection in the application process
We collect and process the personal data of applicants for the purpose of handling the application process. The processing may also take place electronically. This is particularly the case if an applicant submits the relevant application documents electronically, for example by e-mail or via a web form on the website. If we conclude an employment contract with an applicant, the transmitted data will be stored for the purpose of processing the employment relationship in compliance with the statutory provisions. If no employment contract is concluded, the application documents will be deleted two months after notification of the rejection decision, provided that no other legitimate interests prevent deletion. Other legitimate interests in this sense include, for example, a duty to provide evidence in proceedings under the General Equal Treatment Act (AGG).
Last updated December 2018