1. general information
The following information provides an overview of what happens to your personal data when you visit our website "www.bekanitrading.de" ("Website"). Personal data is any data by which you can be personally identified.
The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this data protection declaration. This privacy policy explains what personal data we collect and what we use it for. It also explains how and for what purpose this is done.
Who is responsible for data processing on this website?
The controller of personal data on this website is:
Bekani Trading GmbH
Am Wassermann - 50933 Cologne
Phone: +49 179 7266475
E-mail: Sale@bekanidesign.de
The controller is the natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data (e.g. names, e-mail addresses or similar).
Wherever this privacy policy refers to "we" or "us", this refers to the aforementioned company.
What data do we process? How do we collect your data and on what legal basis is it processed?
You can access our website without directly providing any personal information (such as your name, postal address or email address). Even in this case, we need to collect and store certain information to enable you to access our website. On our website, we may also use certain analytics and have integrated third-party functionalities ("social plugins"). In addition, we offer you some functionalities on our website for which we need to collect personal data.
On the one hand, your personal data is collected by you providing it to us. This may be, for example, data that you enter in a contact form. This is the case, for example, with summarised information about all users of this website.
We collect and process personal data to the following extent:
On this website, we may also collect information that in itself does not allow us to draw any direct conclusions about your person. In certain cases, this information may nevertheless be considered "personal data" in the sense of data protection law. Other data, on the basis of which we can neither directly nor indirectly identify you, is automatically collected by our IT systems when you visit the website. This is primarily technical data (e.g. internet browser, operating system or time of page view).
We collect and process personal data to the following extent:
a) Server log files:
The provider of the website automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:
· Browser type and version
· Operating system used
· Referrer URL
· Host name of the accessing computer
· Time of the server request
· IP address
This data is not merged with other data sources.
Part of this data is collected to ensure error-free provision of the website. The collection of this data is based on Art. 6 para. 1 f) DSGVO. The website operator has a legitimate interest in the technically error-free presentation and optimisation of its website, for which the collection of server log files is necessary. Other data may - in case of your prior consent - be used to analyse your user behaviour.
b) Contact form:
We process personal data of sole traders as well as of employees, managing directors or other auxiliary persons of our business partners or potential customers who may be commissioned with purchasing, as well as of other natural persons who visit our website.
If you send us enquiries via the contact form, your details from the enquiry form, including the contact details you provide there (name, email address, company affiliation and telephone number and any other personal data you voluntarily send us), will be stored by us for the purpose of processing the enquiry and in the event of follow-up questions.
The processing of the data entered in the contact form is carried out in order to prepare and enter into a possible purchase contract with you, if you yourself as a natural person would like to enter into a contract with us, or for the purpose of processing your other enquiry (Art. 6 para. 1 b) DSGVO). If you contact us on behalf of a company, your personal data will be processed for the purpose of entering into a contract or processing the enquiry of this company, for which all parties involved have a legitimate interest (Art. 6 para. 1 f) DSGVO).
c) Cookies
On this website, we sometimes use so-called cookies. Cookies do not cause any damage to your computer and do not contain viruses. Cookies serve to make our offer more user-friendly, effective and secure. Cookies are small text files that are stored on your computer and saved by your browser.
Most of the cookies we use are so-called "session cookies". They are automatically deleted at the end of your visit. Other cookies remain stored on your end device until you delete them. These cookies enable us to recognise your browser on your next visit.
You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or generally and activate the automatic deletion of cookies when closing the browser. If you deactivate cookies, the functionality of this website may be limited.
Cookies that are required to carry out the electronic communication process or to provide certain functions you have requested are stored on the basis of Art. 6 (1) f) DSGVO. The website operator has a legitimate interest in storing cookies for the technically error-free and optimised provision of its services.
Insofar as other cookies (e.g. cookies to analyse your surfing behaviour) are stored, these are treated separately in this data protection declaration and would only be used in the event of your prior consent.
d) Statistical evaluations of anonymised data / Snow Plow Analytics
The website uses an analytics tool based on technology from Snowplow Analytics Limited, d 32-38 Scrutton Street, London, UK ("Snow Plow"), if you have consented to this through IONOS. The data collected by Snow Plow includes, for example, how often users visit our website or which areas are accessed. The tool used by IONOS does not, as far as we are aware, collect any personal data and is only used to improve its own service. The UK is a country with a level of data protection comparable to that in the EU, according to the EU Commission's adequacy decision. Further information on data protection at SnowPlow can be found at: https://snowplow.io/privacy-policy/ .
e) WhatsApp Business
On our website, we offer you the voluntary option of communicating with us via WhatsApp via a link to the WhatsApp Business application, a communication service provided by WhatsApp Ireland Limited ("WhatsApp"). You can recognise the link by the provider's logo. To our knowledge, no personal information is transmitted to WhatsApp before the link is called up. Your access to the linked page is also the basis for the associated data processing by WhatsApp. The legal basis for the data processing is your and our legitimate interest in communicating with each other according to Art. 6 Para. 1 f) DSGVO or for initiating a contract b) DSGVO (see above under b).
Insofar as WhatsApp processes personal data in third countries (e.g. USA, Singapore or to the UK) where there is no level of data protection comparable to that prevailing in the EU, this transfer is covered by the conclusion of standard contractual clauses. For details on the data protection applicable at WhatsApp, please refer to the relevant privacy statements of WhatsApp at https://www.whatsapp.com/legal/#privacy-policy.
f) Other legitimate interests:
To the extent necessary, we also process your data beyond the aforementioned purposes to protect our legitimate interests or the interests of third parties; this is done on the basis of Art. 6 (1) f) DSGVO. Our legitimate interests include
· the assertion of legal claims and the defence in legal disputes;
· the prevention and investigation of criminal offences; and
· the management and further development of our business activities, including risk management.
4. are data transferred to countries outside the EU / EEA?
Your personal data is generally processed within the EU or the European Economic Area. If, in certain cases, information is transferred to recipients in so-called "third countries", we will inform you of this separately. "Third countries" are countries outside the European Union or the Agreement on the European Economic Area in which a level of data protection comparable to that in the European Union cannot be assumed without further ado.
Insofar as the information transferred also includes personal data and we are not obliged to transfer it due to a legal obligation, we ensure before such a transfer that the required adequate level of data protection is guaranteed in the respective third country or at the recipient in the third country. This may result in particular from a so-called "adequacy decision" of the European Commission, which determines an adequate level of data protection for a specific third country as a whole. Alternatively, we can also base the data transfer on the so-called "EU standard contractual clauses" agreed with a recipient. We will be happy to provide you with further information on the appropriate and adequate safeguards for compliance with an adequate level of data protection upon request; the contact details can be found at the beginning of this privacy information. Information on the EU standard contractual clauses can be found here https://ec.europa.eu/info/law/law-topic/data-protection/international-dimension-data-protection/standard-contractual-clauses-scc/standard-contractual-clauses-international-transfers_de and information on the adequacy decisions here https://ec.europa.eu/info/law/law-topic/data-protection/data-transfers-outside-eu/adequacy-protection-personal-data-non-eu-countries_en#dataprotectionincountriesoutsidetheeu.
Who receives my data?
Your personal data is generally processed within our company.
We may also transfer your personal data to third parties outside our company to the extent permitted by law. These external recipients may include in particular
• the service providers engaged by us (for example in the areas of logistics, IT (e.g. hosting) or payment processing) who provide services for us on a separate contractual basis, which may also include the processing of personal data, as well as the subcontractors of our service providers engaged with our consent;
• non-public and public bodies, insofar as we are obliged to transfer your personal data due to legal obligations.
Hosting via IONOS
This website is hosted by IONOS SE, based in Germany ("IONOS"). Personal data collected on this website is stored on the servers of IONOS. This may include, but is not limited to, IP addresses, contact requests, meta and communication data, contractual data, contact details, names, website traffic and other data generated through a website, as described in section 3.a) above.
The processing is carried out in the interest of the secure, fast and efficient provision of our website (Art. 6 para. 1 f) DSGVO).
In accordance with the provisions of data protection law, we have also concluded an agreement on commissioned processing ("AVV") with IONOS pursuant to Art. 28 DSGVO. Further information on data protection at IONOS can be found at https://www.ionos.de/terms-gtc/terms-privacy/ and on the AVV at https://www.ionos.de/hilfe/datenschutz/allgemeine-informationen-zur-datenschutz-grundverordnung-dsgvo/auftragsverarbeitung/.
Sending messages via Mailchimp
We may use the external messaging service provider Mailchimp of The Rocket Science Group, LLC, 675 Ponce de Leon Ave NE Suite 5000, Atlanta, GA 30308 USA ("Mailchimp") to send offers to you quickly and conveniently.
For this purpose, the personal data that you have provided to us for contacting you, in particular your name, (usually professional) email address and, if applicable, (business) telephone number, will be processed by Mailchimp. This corresponds to the legitimate interest of us and our customers and serves to initiate a contract (Art. 6 para. 1 b) DSGVO) with yourself or with the company on whose behalf you have contacted us (Art. 6 para. 1 f) DSGVO).
Mailchimp acts as a processor for us as far as the sending of offers is concerned. The current agreement on order processing complies with the so-called standard contractual clauses, which ensures compliance with such a level of data protection even in the case of processing in a third country such as the USA, where there is no level of data protection comparable to that in the EU: https://mailchimp.com/legal/data-processing-addendum/. Further information on data protection at Mailchimp can be found at: https://mailchimp.com/legal/privacy/#3._Privacy_for_Contacts.
6. is automated decision making used?
In connection with the operation of our website, we generally do not use automated decision-making (including profiling) within the meaning of Art. 22 DSGVO. If we use such procedures in individual cases, we will inform you separately to the extent provided for by law.
7. how long will my data be stored?
We generally store your personal data as long as we have a legitimate interest in this storage and your interests in not continuing the storage do not outweigh this. Even without a legitimate interest, we may continue to store the data if we are legally obliged to do so (for example, to comply with retention obligations). We also delete your personal data without your intervention as soon as knowledge of it is no longer necessary to fulfil the purpose of the processing or the storage is otherwise legally inadmissible.
Those personal data that we have to store in order to comply with retention obligations will be stored until the end of the respective retention obligation.
8. security / SSL or TLS encryption
For security reasons and to protect the transmission of confidential content, such as orders or enquiries that you send to us as the site operator, this site uses SSL or TLS encryption. You can recognise an encrypted connection by the fact that the address line of the browser changes from "http://" to "https://" and by the lock symbol in your browser line.
If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
We would like to point out that data transmission on the Internet (e.g. communication by e-mail) can have security gaps. Complete protection of data against access by third parties is not possible.
9. what rights do you have regarding your data?
a) Right of objection according to Art. 21 DSGVO
You have the right to object at any time, on grounds relating to your particular situation, to the processing of personal data concerning you which is carried out on the basis of Art. 6(1)(e) or (f) DSGVO; this also applies to any profiling based on these provisions. In the event of your objection, we will no longer process the personal data relating to you unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves to assert, exercise or defend legal claims.
If we process personal data relating to you for the purpose of direct marketing, you have the right to object at any time to the processing of personal data relating to you for the purpose of such marketing; this also applies to profiling insofar as it is related to such direct marketing. If you object to the processing for direct marketing purposes, the personal data concerning you will no longer be processed for these purposes.
b) Revocation of consent
If you have given us consent, you can revoke such consent at any time with effect for the future. You can also contact us for this purpose in any other way, e.g. by sending us a message by post, fax or e-mail via one of the contact channels mentioned on the first page of this data protection notice.
c) Further rights
As a data subject, you have the right at any time to
- to information on the personal data stored about you, Art. 15 DSGVO;
- to rectification of inaccurate or incomplete data, Art. 16 DSGVO;
- to erasure of personal data, Art. 17 DSGVO;
- to restriction of processing, Art. 18 GDPR; and
- to data portability, Art. 20 DSGVO.
To exercise these rights, please contact us at any time by e-mail or by post using the contact details above.
In the event of violations of data protection law, the data subject has the right to lodge a complaint with the competent supervisory authority, Art. 77 DSGVO. A list of data protection officers and their contact details can be found at the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.