Privacy Policy

Data protection is of particular importance to us. Our activities to meet the requirements of the General Data Protection Regulation (GDPR), the Federal Data Protection Act (BDSG), the Telemedia Act (TMG), and the German Social Code X (SGB X) are guided by the goal of expressing our respect for your privacy and personal rights.

1. Controller for Data Processing and Data Protection Officer Contact Information

The controller is:

schwa-medico, Medizinische Apparate, Vertriebsgesellschaft mbH
Wetzlarer Straße 41-43
35630 Ehringhausen
Germany
Contact

Our Data Protection Officer:
Sibylle Wirth
Wetzlarer Straße 41-43
35630 Ehringhausen
Germany

You can reach Ms. Wirth at:
Email: datenschutz@stimawell-ems.de 

2. What Personal Data is and How We Receive It

"Personal data" refers to any information relating to an identified or identifiable natural person (hereinafter referred to as the "data subject"); a natural person is considered identifiable if they can be identified directly or indirectly, particularly by reference to an identifier such as a name, an identification number, location data, an online identifier, or one or more factors specific to the physical, physiological, genetic, mental, economic, cultural, or social identity of that natural person.

a) Data Generated During Website Visits

You can generally view our websites without providing any personal data. As standard practice, we only store the website from which you accessed our platform, the name of your internet service provider, the specific pages you visited within our offering, as well as the date and duration of your visit. For the duration of your visit, small files (known as cookies) are temporarily stored in your computer's memory. These are so-called session cookies (for permanent cookies, see section 9 below). The corresponding data is stored on servers of Hetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen, Germany, Tel.: +49 (0)9831 505-0, Email: info[at]hetzner.com. The session cookies are automatically deleted as soon as you close your browser window. Using the session cookies, we create a session ID for internal statistical purposes. The collected data is fully anonymized and does not contain any information that could identify you as an individual.

Your IP address and a timestamp are stored for security reasons and are used solely for internal purposes. The IP address is a machine-related identifier that provides information about the computer used for internet access or the internet gateway at the time of the online request. The term "timestamp" refers to a value in a defined format that assigns a specific time to an event (e.g., sending or receiving a message, modifying data, etc.). The purpose of a timestamp is to clearly indicate to humans or computers when specific events occurred.

b) Personal Data You Provide via Forms

We receive your personal data when you enter it into the forms on our website (e.g., to participate in a contest) and provide it to us. This includes the following data:

  • Gender
  • Full name
  • Email address
  • Phone number

3. How We Use Your Personal Data

Personal data may only be processed by us with your consent or a legal authorization under the GDPR, the BDSG, or other data protection laws.

a) Processing to fulfill contractual obligations (Art. 6(1)(b) GDPR)

The contest data is primarily used to conduct the contest, i.e., to determine the winner and to contact the winner. If no advertising consent is given, the data will not be used for any further purposes.

b) Processing to safeguard legitimate interests (Art. 6 Para. 1 f) GDPR)

If you have given consent for advertising, we also use the data for promotional purposes, i.e., to contact you via telephone or email for advertising purposes.

c) Processing Based on Your Consent (Art. 6 Para. 1 a) GDPR

We also use your data for promotional purposes based on your consent for advertising (see Section 3 b), making the use of the data for direct marketing permissible from two legal perspectives.

4. Who Receives Your Data and When It Is Transferred to Third Countries

Internally, all departments that require your data to fulfill the above-mentioned purposes have access to it. Additionally, we engage external service providers to process the data for these purposes. These external service providers primarily include companies that assist us with direct marketing. It will be contractually ensured that these external service providers use the data exclusively for advertising purposes within the scope of the consent provided, specifically for promoting our products.

5. How Long Your Data Is Stored

The duration of data storage depends on the legal basis for processing:

Data we receive without simultaneous consent for advertising will be deleted no later than one month after the end of the contest, following the prize distribution.

Data used for advertising purposes will be stored for three years from the last use for advertising purposes or until consent is withdrawn. The last use for advertising purposes will occur no later than one year after registration.

In some cases, we are legally required to retain certain data for a longer period, ranging from six to ten years. During this time, the data will not be used for any purpose other than archiving.

After the end of the aforementioned retention periods, the data will remain stored for up to three additional months to allow for thorough and planned technical deletion. During these three months, the data will no longer be processed for any other purpose.

6. Your Rights as a Data Subject and Withdrawal of Consent

The General Data Protection Regulation (GDPR) grants you certain rights that you can assert against us. You have the right to:

  • Request confirmation from us as to whether your personal data is being processed and, if so, obtain detailed information about the data processing (Art. 15 GDPR: Right of access by the data subject).
  • Request that we promptly correct inaccurate personal data concerning you. Additionally, taking into account the purposes of the processing, you have the right to request the completion of incomplete personal data, including through a supplementary statement (Art. 16 GDPR: Right to rectification).
  • Request that we delete your personal data without undue delay (Art. 17 GDPR: Right to erasure).
  • Request the restriction of the processing of your personal data (Art. 18 GDPR: Right to restriction of processing).
  • In the case of processing based on consent or for the performance of a contract, receive the personal data concerning you that you have provided to us in a structured, commonly used, and machine-readable format, and transmit those data to another controller without hindrance, or have the data transmitted directly by us to another controller, where technically feasible (Art. 20 GDPR: Right to data portability).
  • Object at any time, on grounds relating to your particular situation, to the processing of your personal data that is necessary for the performance of a task carried out in the public interest or in the exercise of official authority (Art. 21 GDPR: Right to object).
  • Lodge a complaint with a supervisory authority at any time, particularly in the Member State of your residence, workplace, or the location of the alleged infringement, if you believe that the processing of your personal data violates applicable laws (Art. 77 GDPR in conjunction with § 19 BDSG: Right to lodge a complaint with a supervisory authority).


If you have given us consent, you also have the right to withdraw it at any time. All data processing conducted up to the point of your withdrawal will remain lawful. To withdraw your consent, you can simply click the link included in every email to unsubscribe from the service, or send a message to datenschutz@stimawell-ems.de. If you notify us via this email that you no longer wish to receive emails, we will stop sending messages to the specified email address. This does not affect emails that we send you to fulfill a contract you may have entered into with us (e.g., requested comparison offers).

7. Your Obligation to Provide Personal Data

You are under no contractual or legal obligation to provide us with personal data. However, without the data you provide, we will not be able to conduct the competition.

8. Security Measures

We implement technical and organizational security measures to ensure that your personal data is protected against loss, incorrect modifications, or unauthorized access by third parties. In any case, only authorized personnel have access to your personal data, and solely to the extent required for the purposes mentioned above. These security measures are continually updated to reflect improved technological capabilities.

You are, of course, entitled to revoke your consent at any time. Revocations can be submitted in writing to the address schwa-medico Medizinische Apparate Vertriebsgesellschaft mbH, Wetzlarer Straße 41-43, 35630 Ehringhausen, Germany. Alternatively, you can send an email to our customer service at: datenschutz@stimawell-ems.de. If you choose to revoke your consent, please understand that certain services may no longer be provided, or may not be provided in full or without disruptions.

9. Which Internet-Specific Data Processing Occurs

a) Cookies

Our website uses so-called cookies. These are small files stored on your hard drive that provide us with specific information. This information includes your login (visit), the date and time of your visit, the cookie number, and the URL of the website from which you accessed our pages. The corresponding data is stored on the servers of our service provider.

The use of cookies allows us to recognize you. Additionally, cookies help us tailor our offerings to your individual needs. We also use cookies to record statistical data on the frequency of visits to various pages of our online offering and to analyze general navigation behavior.

If you wish to block the use of cookies, you can configure your browser to refuse the acceptance and storage of new cookies. You can still use our website in this case, but the functionality might be limited. To find out how to do this with your specific browser, please refer to the help function of your browser or contact the manufacturer. However, we recommend keeping the cookie functions enabled to ensure the high level of user comfort that we continuously strive to provide.

b) Facebook Pixel

We use the Facebook Pixel by Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland, on our website. This tool offers several functionalities, and we specifically use the Custom Audiences feature. With this feature, if you have a Facebook account, our advertisements can be displayed to you directly on Facebook. The Facebook Pixel establishes a direct connection between your browser and Facebook's servers. Your usage data is transmitted to Facebook for analysis and marketing purposes. If you have a Facebook account, this data can be linked to you. Through this tracking, Facebook may be able to follow your activities across multiple pages. We have no influence on the processing of personal data by Facebook, as this is solely under Facebook's responsibility. For more information on how Facebook collects and uses your data, please refer to Facebook's privacy policy at https://www.facebook.com/policy.php.

If you wish to opt out of the use of Facebook Website Custom Audiences, you can adjust the corresponding settings in your Facebook user account at https://www.facebook.com/ads/website_custom_audiences/.

c) Facebook Social Plugins

This offering uses social plugins ("plugins") from the social network facebook.com, operated by Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA ("Facebook"). The plugins can be recognized by one of the Facebook logos (a white "f" on a blue tile or a "thumbs up" icon) or are labeled with "Facebook Social Plugin." The list and appearance of Facebook social plugins can be found here: https://developers.facebook.com/docs/plugins/.

When a user visits a page on this offering that contains such a plugin, their browser establishes a direct connection to Facebook's servers. The content of the plugin is transmitted directly from Facebook to the user's browser and embedded into the website. The provider of this website has no control over the extent of the data Facebook collects using this plugin and informs users based on their current knowledge:

By embedding the plugins, Facebook receives information that a user has visited the corresponding page of this offering. If the user is logged into Facebook, Facebook can associate the visit with their Facebook account. If users interact with the plugins, for example, by clicking the Like button or posting a comment, the corresponding information is transmitted directly from their browser to Facebook and stored there. If a user is not a Facebook member, there is still a possibility that Facebook will collect and store their IP address. According to Facebook, only anonymized IP addresses are stored in Germany.

The purpose and scope of the data collection, further processing, and use of the data by Facebook, as well as the related rights and settings options for protecting users' privacy, can be found in Facebook's privacy policy: https://www.facebook.com/about/privacy/.

If a user is a Facebook member and does not want Facebook to collect data about them through this offering and link it to their Facebook-stored membership data, they must log out of Facebook before visiting the website.

It is also possible to block Facebook social plugins with add-ons for your browser, such as the "Facebook Blocker."

d) Google Analytics

This website uses the web analytics service Google Analytics and the Google Remarketing service, both provided by Google Inc. ("Google"). The Google Remarketing service targets users who have previously visited our websites and online services and expressed interest in our offerings, by displaying targeted advertisements on pages within the Google Partner Network. These advertisements are displayed using cookies. These text files allow user behavior to be analyzed during visits to the website and subsequently used to deliver tailored product recommendations and interest-based advertising. Google Analytics also uses cookies. The information generated by the cookies about your use of this website (including your IP address) is transmitted to and stored on a Google server in the United States. However, we use Google Analytics with the anonymizeIP feature, which ensures that IP addresses are anonymized through masking.

Google will use this information to evaluate your use of the website, compile reports on website activity for website operators, and provide other services related to website and internet usage. Google may also transfer this information to third parties if required by law or if such third parties process the data on behalf of Google. Third parties, including Google, use the information stored in cookies as part of the Google Remarketing service to display ads on other websites based on a user's previous visits to this website. Google will not associate your masked IP address with any other data held by Google.

You can prevent the installation of cookies by adjusting the settings of your browser software or by installing a browser add-on (available at: https://tools.google.com/dlpage/gaoptout?hl=de); however, please note that in this case, you may not be able to use all features of this website to their full extent. By using this website, you consent to the processing of data collected about you by Google in the manner and for the purposes described above.

d) MyFonts Counter

On our website, data is collected and stored using MyFonts Counter, a web analytics service provided by Monotype Imaging Holdings Inc., MyFonts Inc., located at 600 Unicorn Park Drive, Woburn, MA 01801, USA. This data is used to create usage profiles under pseudonyms. These usage profiles are analyzed to evaluate visitor behavior and to improve and tailor our offerings to meet user needs.

Cookies may be used for this purpose. These are small text files that are stored locally on the visitor's computer, enabling recognition upon subsequent visits to our website.

The pseudonymized usage profiles are not merged with personal data about the bearer of the pseudonym without the explicit consent of the user. You may object to the collection and storage of data for web analysis purposes at any time with effect for the future by sending an email to datenschutz@stimawell-ems.de.

e) Trusted Shops

To display our Trusted Shops seal of approval and any collected reviews, as well as to offer Trusted Shops products to buyers after an order, this website includes the Trusted Shops Trustbadge.

This integration serves to protect our legitimate interests in optimally marketing our offerings as part of a balancing of interests. The Trustbadge and the associated services are provided by Trusted Shops GmbH, Subbelrather Str. 15C, 50823 Cologne, Germany.

When the Trustbadge is accessed, the web server automatically stores a so-called server log file, which contains, for example, your IP address, date and time of access, transferred data volume, and the requesting provider (access data), and documents the retrieval. This access data is not evaluated and is automatically overwritten no later than seven days after your site visit.

Additional personal data is only transmitted to Trusted Shops if you decide to use Trusted Shops products after completing an order or if you are already registered for such use. In this case, the contractual agreement between you and Trusted Shops applies.

f) GLS - German Logistics Services

To enable a simple and seamless delivery process, electronic contact details of the customer, such as the email address, are shared with the supplier General Logistics Systems Germany GmbH & Co. OHG ("GLS"), where possible. This allows the recipient of the shipment to easily track and manage the delivery. Communication with the customer is conducted directly by the supplier GLS.

g) HSC-Health Sport Connection GmbH

The company "HSC-Health Sport Connection GmbH" is granted access to the data and contracts of existing customers and prospects for the purpose of telephone guidance and support.

h) CrefoPayment GmbH & Co. KG

To process payment methods such as "credit card," "SofortÜberweisung," "PayPal," and "SEPA direct debit mandate," we use the interface provided by the company "CrefoPayment GmbH & Co. KG." Additionally, credit checks may be conducted through this service before entering into a contract, provided the customer agrees to such checks.

i) Creditreform Gießen Hain KG

If the customer chooses the "SEPA direct debit" payment method, schwa-medico GmbH is authorized to forward the customer’s personal data to Creditreform Gießen Hain KG, Ludwig-Richter-Str. 11, D-35396 Gießen, for the purpose of credit assessment. If the credit check yields a negative result, the order may be declined.

j) Mouseflow

We use the program Mouseflow, a web analytics tool provided by Mouseflow ApS (Flaesketorvet 68, 1711 Copenhagen, Denmark; "Mouseflow"), on our website. This tool records randomly selected individual visits (with anonymized IP addresses). It creates a log of mouse movements and clicks to replay individual website visits for the purpose of identifying potential improvements for the website. The collected information is not personally identifiable and is not shared. Further details about Mouseflow’s data protection practices can be found here: https://mouseflow.de/privacy-shield/.

You can find the opt-out option here: https://mouseflow.de/opt-out/.


schwa-medico

schwa-medico, Medizinische Apparate, Vertriebsgesellschaft mit beschränkter Haftung
Managing Director: Jürgen Schaubel
Wetzlarer Str. 41-43, 35630 Ehringshausen

Contact

 

As of: March 2019