Consent Manager
We have integrated the consent management tool “consentmanager” (www.consentmanager.net) of consentmanager AB (Håltgelvågen 1b, 72348 Västerås, Sweden, info@consentmanager.net) on our website in order to request consents for data processing or the use of cookies or comparable functions. With the help of “consentmanager”, you have the option of giving or rejecting your consent for certain functionalities of our website, e.B. for the purpose of integrating external elements, integrating streaming content, statistical analysis, reach measurement and personalized advertising. You can use “consentmanager” to give or reject your consent for all functions or give your consent for individual purposes or individual functions. The settings you have made can also be changed by you afterwards. The purpose of the integration of “consentmanager” is to leave the decision on the aforementioned things to the users of our website and to offer the possibility to change already made settings as part of the further use of our website. In the course of using “consentmanager”, personal data as well as information of the end devices used (IP address, language, browser, etc.) are processed and sent to consentmanager AB. The information about the settings you have made is also stored in your device.
The legal basis for the processing is Art. 6 para. 1 sentence 1 lit. c) GDPR as amended.m. Art. 7 para. 1 GDPR, insofar as the processing serves to fulfil the legally standardized obligations to provide proof for the granting of consent. In all other respects, Art. 6 para. 1 sentence 1 lit. f) GDPR, the relevant legal basis. Our legitimate interests in the processing lie in the storage of user settings and preferences with regard to the use of cookies and the evaluation of consent rates. At the latest twenty-four months after the user settings have been made, the consent will be requested again. The user settings made will then be stored again for this period, unless you first delete the information about your user settings in the device capacities provided for this purpose.
You can object to the processing if the processing is based on Art. 6 para. 1 sentence 1 lit. f) GDPR. Your right to object exists for reasons arising from your particular situation. To object, please contact info@consentmanager.net by e-mail.
Youtube
We use YouTube videos on our website. Youtube is a public video platform of the operator YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA.
Before you can watch the video, we need your consent. When you visit a page equipped with a YouTube video, once you have given your consent, a connection to YouTube’s servers will be established. The YouTube server is informed which of our pages you have visited. We use YouTube in extended data protection mode (youtube-nocookie.com). Cookies are only set when you actively play a video and have given your consent beforehand.
If you are logged in to your YouTube account, you enable YouTube to assign your surfing behavior directly to your personal profile. You can prevent this by logging out of your YouTube account.
The use of YouTube is in the interest of an appealing presentation of our products. This constitutes a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR.
Further information on the handling of user data can be found in YouTube’s privacy policy at: https://www.google.de/intl/de/policies/privacy
Cloudflare Turnstile
We use the Cloudflare Turnstile service on our website. The provider is Cloudflare, Inc., 101 Townsend Street, San Francisco, California 94107, USA (“Cloudflare”).
Cloudflare Turnstile is used to verify whether entries on our website, particularly in our online forms, are made by a human or by an automated programme or bot. This enables us to protect our website and our forms from malicious automated access, spam and other attacks.
To carry out this verification, Cloudflare processes various technical and client-side signals. These may include, in particular, the IP address, the TLS fingerprint, details of the browser and operating system used, the User-Agent header, the Turnstile site key, as well as information about the website accessed and the origin of the request. This information is used to assess whether the request is likely to have been made by a human user or an automated programme.
Cloudflare processes some of this data as our data processor for the purpose of providing and securing the Turnstile service. Furthermore, according to its own statements, Cloudflare processes certain signals under its own data protection responsibility in order to further develop and improve Turnstile’s bot detection capabilities.
Our processing is carried out on the basis of Article 6 1 lit. f of the GDPR. Our legitimate interest lies in protecting our website, our technical systems and our online forms against spam, unauthorised access and automated attacks.
Insofar as information is stored on your device or information already stored is read out in the course of using Turnstile, this is carried out on the basis of Section 25 (2)(2) of the TDDDG. In our assessment, these processes are absolutely necessary for the secure provision of the online forms we use.
Data may also be processed in the USA. Cloudflare, Inc. is certified under the EU-US Data Privacy Framework. Furthermore, according to its own statements, Cloudflare uses the European Commission’s Standard Contractual Clauses as an additional basis for international data transfers.
We store the data generated during the Turnstile verification process only to the extent and for as long as is necessary to verify a request, prevent misuse or ensure the security of our systems. Further processing and the duration of storage by Cloudflare are governed by Cloudflare’s privacy policy.
Further information can be found in the Cloudflare Privacy Policy and in the specific privacy policy notice for Cloudflare Turnstile.
Limit Login Attempts Reloaded
We use the WordPress plugin “Limit Login Attempts Reloaded” to defend against brute force attacks. This stores all logged IP addresses in encrypted form and locally in the WordPress database as soon as a user logs into the administration area of our websites, portals and online shops several times incorrectly. Data subjects are notified in the login area that their IP address and browser information may be processed by this website’s security plugin. This serves to enable lockouts in order to be able to ward off automated attacks. In the event of incorrect registration, the persons concerned will be informed how many permitted attempts remain for registration. After a certain number of incorrect registrations, there is a lockout for 10 minutes. After 2 lockouts, the lockout time increases significantly. The use of “Limit Login Attempts Reloaded” is in the interest of protecting our online offer from hacker attacks. This constitutes a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR. Cookies are only set in the dashboard of our website. This fixes AJAX-related problems with incorrectly configured websites. These cookies do not track anything and do not collect any personal data:
- llar_enable_notify_notice_shown
- llar_review_notice_shown
More information on the handling of user data can be found in the privacy policy of Limit Login Attemps Reloaded ® https://www.limitloginattempts.com/privacy-policy/
as well as under https://www.limitloginattempts.com/de/gdpr-qa/?from=plugin-settings-gdpr
Google Web Fonts & Fontawesome
This site uses so-called web fonts, which are provided by Google, for the uniform presentation of fonts. We also use Fontawesome, a web-based icon library to display icons. We store the fonts and icons locally on our server in order to integrate Google Web Fonts & Fontawesome in compliance with data protection regulations.
With the local storage of the fonts, your browser does not have to load the required web fonts into your browser cache when calling up one of our websites in order to display texts and fonts correctly. This prevents the browser you are using from having to connect to Google’s servers. This would make Google aware that you have accessed our website with your IP address. The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online offers. This constitutes a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR.
If your browser does not support web fonts, a standard font will be used by your computer.
Further information on Google Web Fonts can be found under https://developers.google.com/fonts/faq and in Google’s privacy policy: https://www.google.com/policies/privacy/.