Privacy Policy

We appreciate your visit to our website and your interest in our company and our services. Transparency regarding data protection and data security for our website visitors is very important to us. We take the protection of your personal data very seriously in all our business processes. For your future visits to our website, we would like to inform you about when we store which data and how we use it—naturally in compliance with the General Data Protection Regulation (GDPR) and the German Federal Data Protection Act.

 

1. Who is responsible for protecting your data?

epoq internet services GmbH, Willy-Brandt-Str. 3, 76275 Ettlingen, Germany(company, us, or we) is responsible for the processing and security of the data collected on this website.

In general, it is not necessary for you to provide personal data in order to use our website. However, for individual services, it may be necessary for us to collect, use, and process your personal data in order to provide our services. Of course, this is only done within the legal framework, to the extent necessary, and with your consent.

 

2. What data do we store about you?

2.1 Anonymous data collection

When you access our website, our web servers automatically collect information of a general nature. This includes

  • the type of web browser and operating system used,
  • the domain name of the Internet service provider,
  • the IP address of the computer used,
  • the website from which you are visiting us,
  • the pages you visit on our website, as well as the date and duration of your visit.

This information does not allow any conclusions to be drawn about your person. We or third parties commissioned by us evaluate this data only for statistical purposes and only in anonymous form to optimize our website, increase user-friendliness, effectiveness, and security.

 

2.2 Cookies

We use so-called "cookies" in various places on our website. Cookies are small text files that are stored by the web browser on your computer or mobile device. Cookies do not cause any damage to your computer, do not contain viruses, and are automatically deleted after they expire. Some cookies expire when you end your Internet session, while others are stored for a specific period of time.

The cookies on our website do not collect any personal data. We use cookies to make your visit to our website easier and to tailor it to your needs. Of course, you can also view our website without cookies. You can disable cookies from being stored on your computer via your browser settings. You can also delete existing cookies via your browser settings. However, in this case, it is possible that the functionality of our website may be restricted. Further information on how to manage cookie settings in your respective Internet browser can be found here:

Internet Explorer
Edge
Mozilla Firefox
Google Chrome
Safari
Opera
Adobe (plug-in for flash cookies)

 

2.3. Where and how do we collect and process your data?

In addition to the data collected automatically, we also process data that you voluntarily provide to us. We currently collect the following data using the tools listed:

  • General contact form: Name, email address, phone number, company, subject, and your message, so that we can contact you if we have any questions or need further information regarding your inquiry.
  • Form for scheduling appointments at trade fairs: Name, email address, company, telephone number, details of the desired appointment, subject, and your message so that we can contact you to arrange the appointment.
  • Newsletter registration form: Your email address, name, title, and company so that we can send you the epoq newsletter you have subscribed to.
  • Form to subscribe to free tips on shop optimization: Your email address so that we can send you the tips.
  • Form for downloading documents: Your email address so that we can send you the requested documents and contact you regarding information about your inquiry.

You have provided us with this data voluntarily. We use this data only for the purposes stated in this privacy policy. Under point 9, you will find information about your rights, for example, how you can object to the processing of your data or correct your personal data.

If you have provided us with your personal data when purchasing a service, we will inform you about similar products and services by email. You can stop receiving these notifications at any time and free of charge by clicking on a link in the relevant email or message (for more information, see section 9).

 

3. Who do we share this data with?

The protection of your personal data is our top priority. We therefore store all information that you provide to us by entering it on our website on servers in Germany. Only the relevant departments within our company have access to the data in order to process your enquiries and requests. We will not sell, rent, or otherwise make your data available to third parties. Personal data will only be transferred to government agencies and authorities in accordance with mandatory national legislation. Our employees are bound by strict confidentiality and secrecy obligations, including data secrecy and telecommunications secrecy.

 

4. What tools do we use to measure reach?

4.1 Google Analytics

This website uses Google Analytics, a web analytics service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (hereinafter: Google). Google Analytics uses various techniques, including so-called "cookies," which are stored on your computer and enable an analysis of the use of this website by visitors. The information generated by Google Analytics about your use of this website is transmitted to Google servers, which may be located in countries outside the European Union and, where applicable, outside the signatory states to the Agreement on the European Economic Area. By activating IP anonymization within the Google Analytics tracking code of this website, your IP address will be anonymized by Google before transmission. This website uses a Google Analytics tracking code that has been extended by the operator gat._anonymizeIp(); to enable only anonymous collection of IP addresses (so-called IP masking). On behalf of the operator of this website, Google will use this information to evaluate your visit to this website, compile reports on website activity, and provide other services related to website activity and internet usage to the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. You can prevent the storage of Google cookies by adjusting your browser software settings accordingly. However, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the Google cookie and relating to your use of the website (including your IP address) and from processing this data by downloading and installing the browser plug-in available at the following link (http://tools.google.com/dlpage/gaoptout?hl=de). The security and data protection principles of Google Analytics can be found athttp://www.google.com/intl/de/analytics/learn/privacy.html.

You can prevent Google Analytics from collecting your data by clicking on the following link. An opt-out cookie will be set to prevent future collection of your data when you visit this website. You can find the linkhere.

 

4.2 Google AdWords remarketing

We use the remarketing function of Google Inc. (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; "Google") on our website. This allows us to target our website visitors with advertising by placing personalized and interest-based ads that are displayed when visiting other websites via the Google Display Network. Google uses cookies to perform this analysis. Google stores a file in your browser that records website visits and anonymous data about website usage. Your personal data is not stored. If you then visit another website in the Google Display Network, you will see advertisements that are highly likely to be based on previously viewed product and information areas. You can permanently disable the use of cookies by Google by following the link below and downloading and installing the plug-in provided there: https://www.google.com/settings/ads/plugin. Alternatively, you can deactivate the use of cookies by third-party providers by visiting the deactivation page of the Network Advertising Initiative at http://optout.networkadvertising.org/?c=1 and implementing the further information on opting out provided there. Further information on Google Remarketing and Google's privacy policy can be found at: https://www.google.com/privacy/ads/.

 

4.3 Google AdWords conversion tracking

We use the online advertising program "Google AdWords" from Google Inc. (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; "Google") and thus the conversion tracking available. Google conversion tracking is an analysis service provided by Google Inc. When you click on a Google AdWords ad, a conversion tracking cookie is stored on your computer. This cookie expires after 30 days, does not contain any personal data, and therefore cannot be used to personally identify you. If you visit certain pages on our website and the cookie has not yet expired, Google and we can recognize that you clicked on an ad and were redirected to this page. Each Google AdWords customer receives a different cookie. This means that it is not possible to track cookies via the AdWords website. The information collected using the conversion cookie is used to generate conversion statistics for AdWords customers. This tells us the total number of users who clicked on our ad and were redirected to a page tagged with a conversion tracking tag. However, we do not receive any information that can be used to personally identify users. If you wish to disable conversion tracking, you can object to its use by preventing the installation of cookies through the appropriate settings in your browser software. You will then not be included in the conversion tracking statistics. Further information and Google's privacy policy can be found at:https://www.google.com/policies/technologies/ads/ andhttps://www.google.de/policies/privacy/.

 

4.4 Facebook, Custom Audiences, and Facebook Marketing Services

We use the "Facebook pixel" from the social network Facebook on our website, which is operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA, or, if you are based in the EU, Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland. Facebook is certified under the Privacy Shield Agreement and thus offers a guarantee of compliance with European data protection law. With the help of the Facebook pixel, Facebook is able to identify visitors to our website as a target group for the display of advertisements (so-called "Facebook ads"). Accordingly, we use the Facebook pixel to display the Facebook ads we place only to those Facebook users who have also shown an interest in our offers or who have certain characteristics (e.g., interests in certain topics or products, which are determined based on the websites visited) that we transmit to Facebook (so-called "custom audiences").

With the help of the Facebook pixel, we also want to ensure that our Facebook ads correspond to the potential interests of users and do not appear intrusive. With the help of the Facebook pixel, we can also track the effectiveness of Facebook ads for statistical and market research purposes by seeing whether users were redirected to our website after clicking on a Facebook ad (so-called "conversion"). The Facebook pixel is integrated directly by Facebook when you visit our website and may store a so-called cookie on your device. If you then log in to Facebook or visit Facebook while logged in, your visit to our website will be noted in your profile. The data collected about you is anonymous to us, so it does not allow us to draw any conclusions about the identity of users. However, the data is stored and processed by Facebook so that it can be linked to the respective user profile and used by Facebook for its own market research and advertising purposes. If we transfer data to Facebook for comparison purposes, it is encrypted locally on the browser and only then sent to Facebook via a secure https connection. This is done solely for the purpose of matching the data with the data encrypted by Facebook. Furthermore, when using the Facebook pixel, we use the additional "extended matching" function, whereby data for the creation of target groups ("custom audiences" or "lookalike audiences") is transmitted to Facebook in encrypted form.

We also use the "Custom Audiences from File" feature of the social network Facebook, Inc. In this case, the email addresses of newsletter recipients are uploaded to Facebook. The upload process is encrypted. The upload is used solely to determine the recipients of our Facebook ads. We want to ensure that the ads are only shown to users who are interested in our information and services. Facebook processes the data in accordance with Facebook's data use policy. You can find specific information and details about the Facebook pixel and how it works in the Facebook help section. You can object to the collection of data by the Facebook pixel and the use of your data for the display of Facebook ads. To set which types of ads are displayed to you within Facebook, you can visit the page set up by Facebook and follow the instructions on the settings for usage-based advertising. The settings are platform-independent (desktop or mobile). You can also object to the use of cookies for reach measurement and advertising purposes via the Network Advertising Initiative's deactivation page and additionally via the US website or the European website.

 

4.5 HubSpot

We use marketing features from HubSpot Inc. ("HubSpot Inc."), 25 First Street, 2nd Floor, Cambridge, MA 02141, USA, or HubSpot European Office, Ground Floor, Two Dockland Central Guild Street, Dublin 1, Ireland (together "HubSpot"), which enables us, with your consent, to create a user profile for you in order to display personalized and interest-based ads on our website. We also use HubSpot to send individual, topic-related emails. However, this is also only done with your consent.

When you visit our website, a connection to HubSpot's servers is established as soon as you access content provided by HubSpot. HubSpot may assign this information (e.g., IP address, data entered in forms, if applicable) to your user profile, if one has already been created.

The data is used for the purpose of personalized advertising via HubSpot. This constitutes a legitimate interest within the meaning of Art. 6 (1) (f) GDPR. In addition, we have concluded a contract with HubSpot for order processing. Insofar as the data is transferred to HubSpot Inc. in individual cases, this is done in accordance with Decision (EU) 2016/1250 ("EU-US Privacy Shield"). In addition, the data processing agreement contains EU standard data protection clauses pursuant to Art. 46 (2) (d) GDPR, to which HubSpot Inc. is subject.

You can access HubSpot's privacy policy athttps://legal.hubspot.com/de/privacy-policyand HubSpot's cookie policy athttps://legal.hubspot.com/de/cookie-policy.

 

4.6 epoq tracking

This website uses a tracking tool developed in-house. The information obtained from this tool is used to optimize the website.

The personal data collected by epoq (IP addresses) is transferred to German servers. The IP address transmitted by your browser is not merged with other data. The IP address is anonymized before this data is processed. The procedure is similar to that used by Google Analytics—the last octet is deleted.

Furthermore, epoq uses so-called "cookies," which are stored on your computer and enable an analysis of the use of this website by visitors. The information obtained in this way about your use of this website is transferred to servers in Germany and Ireland.

 

5. Which social networks do we use?

We currently do not use any plugins from social networks.

 

6. epoq newsletter

We use Mailchimp to send our newsletter. Mailchimp is part of The Rocket Science Group, which is subject to the regulations of the EU-US Privacy Shield. We have verified that MailChimp has indeed complied with the EU-US Privacy Shield self-certification. MailChimp also publicly commits itself to adhering to these principles. According to our review, the current certification is up to date.

Data is therefore transferred to this newsletter provider in the USA in accordance with the legal admissibility provisions set out in Article 45 of the GDPR in conjunction with Article 46(5) sentence 2 of the GDPR. The GDPR provides for the continued validity of adequacy decisions that have already been issued. The Commission has determined that the EU-US Privacy Shield provides an adequate level of data protection (C(2016) 4176 final). The email address is stored solely for the purpose of sending the owner of the email address an email in which they can confirm their membership of the email list ("double opt-in"). Once the email address has been confirmed, it is stored permanently by the list provider until it is deleted by the owner of the email address or by us as the list operator.

 

7. How do we protect your data?

To ensure the security of your data on our website and our systems, we use appropriate technical and organizational measures to protect your data from loss, destruction, unauthorized access, and manipulation.

 

8. Which supervisory authority is responsible for us?

The supervisory authority responsible for data protection for us is the State Data Protection Officer in Baden-Württemberg.

 

9. What rights do you have to information and objection?

Upon request, we will be happy to inform you in writing whether and which personal data we have stored about you. If, despite our constant efforts to ensure that your data is up to date and correct, we have stored incorrect information, we will be happy to correct your data. Under certain circumstances, you also have the right to block and delete your personal data stored by us. If you do not wish to receive any advertising information or offers, either by mail, email, text message, fax, or telephone, or if you wish to revoke your consent, you can write to us or send us an email (marketing@epoq.de) at any time. If we have doubts about your identity, we may ask you to send us clarifying information (e.g., a redacted copy of your ID card with your first and last name, address, and date of birth).

 

10. When will changes be made to the privacy policy?

Our privacy policy is regularly reviewed and updated to comply with the applicable legal data protection regulations. Last update: August 16, 2018.

 

11. Duty to provide information pursuant to Art. 13 GDPR

1. Duty to provide information for website visitors

a. Name and contact details of the data protection officer (Art. 13 (1) b GDPR)

If you have any questions about the processing of your personal data in our company, suggestions, or complaints, please feel free to contact our data protection officer. Please send an email or a letter to the addresses listed above:

epoq internet services GmbH
Willy-Brandt-Str. 3
76275 Ettlingen
Email: datenschutz@epoq.de

 

b. Purpose and legal basis of data processing (Art. 13 para. 1 c GDPR)

  • Processing and handling of contact and appointment requests (Art. 6 para. 1 f GDPR*)
  • Processing and handling of newsletter subscription requests (Art. 6 para. 1 f GDPR*)
  • Processing and handling of support requests (Art. 6 para. 1 f GDPR*)
  • Technical operation of the website (Art. 6 para. 1 f GDPR*)
  • Optimization of the website offering by evaluating website usage data (Art. 6 para. 1 f GDPR*)

 

c. Interests of the controller in weighing up interests (Art. 13(1)(d) GDPR)

  • Assertion of legal claims and defense in legal disputes
  • Ensuring the company's IT security and IT operations
  • Prevention of crime
  • Measures for business management and further development of services and products

 

d. Recipients or categories of recipients of personal data (Art. 13 (1) e GDPR)

Plugin manufacturers, reach measurement providers, hosting providers.

 

e. Transfer to third countries (Art. 13(1)(f) GDPR)

Data is transferred to the USA.

 

f. Storage period in accordance with statutory retention obligations (Art. 13 (2) a GDPR)

Personal data is generally deleted within ten years of the end of the contractual relationship or earlier if a prospective customer does not become a customer or if the prospective customer requests deletion.

 

g. Right to information, correction, deletion, restriction, data portability, and objection (Art. 13 (2) b GDPR)

As a data subject, you have the right to information, correction, and deletion of your data at any time, as well as the right to restrict processing and the right to data portability. To exercise these rights, please contact the controller using the contact details provided.

 

h. Right to object (Art. 21(1) GDPR)

If your data is processed to protect legitimate interests, you have the right to object to this processing at any time using our contact details provided if there are reasons arising from your particular situation that prevent this data processing. We will then cease this processing unless it serves our overriding legitimate interests.

i. Right of withdrawal (Art. 13. Para. 2 c GDPR)

If you have consented to the processing of your data, you have the right to withdraw this consent at any time for the future. This does not affect the lawfulness of the processing until the withdrawal. Please contact the responsible body using the contact details provided.

 

j. Right to lodge a complaint (Art. 13 (2) d GDPR)

As a data subject, you can contact the competent State Commissioner for Data Protection and Freedom of Information in Baden-Württemberg at any time if you have any complaints.

 

k. Existence of a necessity to provide personal data (Art. 13 (2) e GDPR)

The data collected is necessary for the technical operation of the website, the processing of contact and appointment requests, newsletter subscription requests, and support requests. The optimization of our website using reach measurement tools is based on legitimate interests.

2. Duty to inform employees

a. Name and contact details of the data protection officer (Art. 13 (1) b GDPR)
If you have any questions about the processing of your personal data in our company, suggestions, or complaints, please feel free to contact our data protection officer. Please send an email or a letter to the addresses listed below:

epoq internet services GmbH
Willy-Brandt-Str. 3
76275 Ettlingen
Email: datenschutz@epoq.de

b. Purpose and legal basis of data processing (Art. 13 para. 1 c GDPR)

  • Personnel planning/development (Section 26 (1) BDSG-neu; Art. 6 (1) f GDPR*)
  • Maintaining personnel files (Section 26 (1) BDSG-neu)
  • Employee evaluation (Section 26 (1) BDSG-neu)
  • Implementation of training measures (Section 26 (1) BDSG-neu)
  • Preparation of references and interim references (Section 26 (1) BDSG-neu; Art. 6 (1) b GDPR)
  • Payroll accounting (Section 26 (1) BDSG-neu; Art. 6 (1) b GDPR)
  • Wage garnishment, clarification of creditor inquiries (Section 26 (1) BDSG-neu; Art. 6 (1) c GDPR)
  • Time recording and time account management (Section 26 (1) BDSG-neu)
  • Processing of sick notes (Section 26 (1) BDSG-neu; Art. 9 (2) e GDPR)
  • Termination of employment (§ 26 (1) BDSG-neu)
  • Processing of reportable accidents at work (Section 26 (1) BDSG-neu; Art. 6 (1) b GDPR)
  • Implementation of workplace reintegration management (Section 167(2) SGB IX in conjunction with Article 6(1)(a) GDPR)
  • Recording and operation of the company's IT and telecommunications structure (Art. 6 (1) (f) GDPR*)
  • Employee data on the intranet and internet, company newsletters (Art. 6(1)(b) GDPR)
  • Commissioning of personnel service providers for employee recruitment (Section 26 (1) BDSG-neu; Art. 6 (1) c GDPR)
  • Reporting data to insurance companies, e.g., for company pension schemes and deferred compensation (Art. 6 (1) c in conjunction with § 1a BetrAVG)

c. Interests of the controller in weighing up interests (Art. 13(1)(d) GDPR)*

  • Assertion of legal claims and defense in legal disputes
  • Ensuring the company's IT security and IT operations
  • Prevention of crime
  • Measures for business management and further development of services and products

d. Recipients or categories of recipients of the personal data (Art. 13 (1) (e) GDPR)

Health insurance companies, pension insurance institutions, temporary employment agencies, QM auditors, IT companies, creditors, bailiffs, courts, lawyers, company doctors, professional associations/accident insurance companies, media service providers, authorities, affiliated companies, insurance companies

e. Transfer to third countries (Art. 13(1)(f) GDPR)

No data is transferred to third countries.

f. Storage period in accordance with statutory retention obligations (Art. 13 (2) a GDPR)

Personal data is generally deleted within ten years of the end of the employment relationship. A different storage period is determined on a case-by-case basis according to the following criteria:

  • 2 years, for example in the case of warnings
  • 3 years, for example in the case of workplace integration management
  • 4 years for matters relating to statutory social security
  • 5 years, for example in the case of an accident report
  • 6 years, for example, for information provided in accordance with the Maternity Protection Act or instruction on confidentiality

g. Right to information, correction, deletion, restriction, data portability, and objection (Art. 13 (2) b GDPR)

As the data subject, you have the right to access, correct, and delete your data at any time, as well as to restrict its processing and to data portability. To exercise these rights, please contact the controller using the contact details provided.

h. Right to object (Art. 21(1) GDPR)

Insofar as the processing of your data is carried out to safeguard legitimate interests, you have the right to object to this processing at any time using our contact details provided if there are reasons arising from your particular situation that prevent this data processing. We will then cease this processing unless it serves overriding interests on our part that are worthy of protection.

i. Right to lodge a complaint (Art. 13(2) d GDPR)

As a data subject, she can contact the responsible State Commissioner for Data Protection and Freedom of Information in Baden-Württemberg at any time if she has any complaints.

j. Existence of a necessity to provide personal data (Art. 13 para. 2 e GDPR)

The data collected is necessary for the conclusion and execution of the employment relationship. Failure to provide this data will result in the inability to commence, execute, and terminate the employment relationship.

3. Duty to provide information to applicants

a. Name and contact details of the data protection officer (Art. 13 (1) b GDPR)
If you have any questions about the processing of your personal data in our company, suggestions, or complaints, please feel free to contact our data protection officer. Please send an email or a letter to the addresses listed below:

epoq internet services GmbH
Willy-Brandt-Str. 3
76275 Ettlingen
Email: datenschutz@epoq.de

b. Purpose and legal basis of data processing (Art. 13 para. 1 c GDPR)

  • Processing of applications/eRecruiting (Section 26 (1) of the new Federal Data Protection Act (BDSG))
  • Inclusion in a pool of applicants for future contact (Art. 6 (1) (a) GDPR)

c. Interests of the controller in weighing up interests (Art. 13(1)(d) GDPR)

Not applicable.

d. Recipients or categories of recipients of the personal data (Art. 13 (1) (e) GDPR)

Examples: Personnel service providers, payroll offices, providers of software-based applicant portals

e. Transfer to third countries (Art. 13(1)(f) GDPR)

No data is transferred to third countries.

f. Storage period in accordance with statutory retention obligations (Art. 13 (2) a GDPR)

Personal data will be deleted six months after the end of the application process, taking into account Section 61b (1) ArbGG in conjunction with Section 15 AGG. If you are accepted into the applicant pool, your data will be deleted after two years if no suitable position can be offered.

g. Right to object (Art. 21(1) GDPR)

Insofar as the processing of your data is carried out to safeguard legitimate interests, you have the right to object to this processing at any time using our contact details provided if there are reasons arising from your particular situation that prevent this data processing. We will then cease this processing unless it serves overriding interests on our part that are worthy of protection.

h. Right to information, correction, deletion, restriction, data portability, and objection (Art. 13 (2) b GDPR)

As a data subject, you have the right to access, correct, and delete your data at any time, as well as to restrict processing and to data portability. To exercise these rights, please contact the controller using the contact details provided.

i. Right to lodge a complaint (Art. 13(2) d GDPR)

As a data subject, you can contact the responsible State Commissioner for Data Protection and Freedom of Information in Baden-Württemberg at any time if you have any complaints.

j. Existence of a necessity to provide personal data (Art. 13 para. 2 e GDPR)

The data collected is necessary for the application process. If this data is not provided, the application process cannot be carried out.

4. Duty to provide information for purchasing

a. Name and contact details of the data protection officer (Art. 13 (1) b GDPR)

If you have any questions about the processing of your personal data in our company, suggestions, or complaints, please feel free to contact our data protection officer. Please send an email or a letter to the addresses listed above:

epoq internet services GmbH
Willy-Brandt-Str. 3
76275 Ettlingen
Email: datenschutz@epoq.de

b. Purpose and legal basis of data processing (Art. 13 para. 1 c GDPR)

  • Purchasing and processing of support services for the fulfillment of business purposes (Art. 6 (1) (f) GDPR*)
  • Compliance with legal obligations (Art. 6(1)(c) GDPR)
  • Sending of informational materials (Art. 6 para. 1 b GDPR)

c. Interests of the controller in weighing up interests (Art. 13(1)(d) GDPR)*

  • Assertion of legal claims and defense in legal disputes
  • Ensuring the company's IT security and IT operations
  • Prevention of crime
  • Measures for business management and further development of services and products

d. Recipients or categories of recipients of the personal data (Art. 13 (1) (e) GDPR)

Authorities, banks, auditors

e. Transfer to third countries (Art. 13(1)(f) GDPR)

No data is transferred to third countries.

f. Storage period in accordance with statutory retention obligations (Art. 13 (2) a GDPR)

Personal data is generally deleted within ten years of the end of the employment relationship, unless a longer statutory retention period applies in exceptional cases or in the event of an employee's revocation.

g. Right to information, correction, deletion, restriction, data portability, and objection (Art. 13 (2) b GDPR)

As the data subject, you have the right to access, correct, and delete your data at any time, as well as to restrict its processing and to data portability. To do so, please contact the responsible body using the contact details provided.

h. Right to object (Art. 21(1) GDPR)

Insofar as the processing of your data is carried out to safeguard legitimate interests, you have the right to object to this processing at any time using our contact details provided if there are reasons arising from your particular situation that prevent this data processing. We will then cease this processing unless it serves overriding interests on our part that are worthy of protection.

i. Right to lodge a complaint (Art. 13(2) d GDPR)

As a data subject, she can contact the responsible State Commissioner for Data Protection and Freedom of Information in Baden-Württemberg at any time if she has any complaints.

j. Existence of a necessity to provide personal data (Art. 13 para. 2 e GDPR)

The data collected is necessary for the conclusion and execution of the employment relationship.

5. Duty to provide information to interested parties and customers

a. Name and contact details of the data protection officer (Art. 13 (1) b GDPR)

If you have any questions about the processing of your personal data in our company, suggestions, or complaints, please feel free to contact our data protection officer. Please send an email or a letter to the addresses listed above:

epoq internet services GmbH
Willy-Brandt-Str. 3
76275 Ettlingen
Email: datenschutz@epoq.de

b. Purpose and legal basis of data processing (Art. 13 para. 1 c GDPR)

  • Processing and handling of inquiries from interested parties (Art. 6 para. 1 f GDPR*)
  • Sanctions list checks (Art. 6(1)(c) GDPR in conjunction with Regulation (EC) No. 2580/2001 against other persons and organizations suspected of terrorism and Regulation (EC) No. 881/2002 against Osama bin Laden, Al-Qaeda, and the Taliban)
  • Preparation of quotations for interested parties (Art. 6 (1) (f) GDPR*)
  • Conclusion of purchase agreements (Art. 6 para. 1 f GDPR*)
  • Compliance with legal obligations (Art. 6(1)(c) GDPR)
  • Support for operational processes by service providers (Art. 28 GDPR)
  • Order processing and delivery (Art. 6(1)(c) GDPR)
  • Handling of complaints (Art. 6(1)(c) GDPR)

c. Interests of the controller in weighing up interests (Art. 13(1)(d) GDPR)*

  • Assertion of legal claims and defense in legal disputes
  • Ensuring the company's IT security and IT operations
  • Prevention of crime
  • Measures for business management and further development of services and products

d. Recipients or categories of recipients of the personal data (Art. 13 (1) (e) GDPR)

Authorities, banks, auditors, software manufacturers, affiliated companies

e. Transfer to third countries (Art. 13(1)(f) GDPR)

No data is transferred to third countries.

f. Storage period in accordance with statutory retention obligations (Art. 13 (2) a GDPR)

Personal data is generally deleted within ten years of the end of the contractual relationship or earlier if a prospective customer does not become a customer.

g. Right to information, correction, deletion, restriction, data portability, and objection (Art. 13 (2) b GDPR)

As the data subject, you have the right to access, correct, and delete your data at any time, as well as to restrict its processing and to data portability. To exercise these rights, please contact the controller using the contact details provided.

h. Right to object (Art. 21(1) GDPR)

Insofar as the processing of your data is carried out to safeguard legitimate interests, you have the right to object to this processing at any time using our contact details provided if there are reasons arising from your particular situation that prevent this data processing. We will then cease this processing unless it serves overriding interests on our part that are worthy of protection.

i. Right to lodge a complaint (Art. 13(2) d GDPR)

As a data subject, she can contact the responsible State Commissioner for Data Protection and Freedom of Information in Baden-Württemberg at any time if she has any complaints.

j. Existence of a necessity to provide personal data (Art. 13 para. 2 e GDPR)

The data collected is necessary for processing inquiries from interested parties, preparing quotations, concluding purchase agreements, and conducting business operations.

6. Duty to inform customers

a. Name and contact details of the data protection officer (Art. 13 (1) b GDPR)

If you have any questions about the processing of your personal data in our company, suggestions, or complaints, please feel free to contact our data protection officer. Please send an email or a letter to the addresses listed above:

epoq internet services GmbH
Willy-Brandt-Str. 3
76275 Ettlingen
Email: datenschutz@epoq.de

b. Purpose and legal basis of data processing (Art. 13 para. 1 c GDPR)

  • Processing customer inquiries and orders (Art. 6(1)(b) GDPR)
  • Settlement with cost bearers (Art. 6 para. 1 b GDPR)
  • Implementation of marketing measures (Art. 6(1)(a) GDPR)

c. Interests of the controller in weighing up interests (Art. 13(1)(d) GDPR)*

  • Assertion of legal claims and defense in legal disputes
  • Ensuring the company's IT security and IT operations
  • Prevention of crime
  • Measures for business management and further development of services and products

d. Recipients or categories of recipients of the personal data (Art. 13 (1) (e) GDPR)

Advertising agency, IT service provider, suppliers, health insurance companies, billing service provider

e. Transfer to third countries (Art. 13(1)(f) GDPR)

No data is transferred to third countries.

f. Storage period in accordance with statutory retention obligations (Art. 13 (2) a GDPR)

Usually 10 years or upon revocation by a customer.

g. Right to information, correction, deletion, restriction, data portability, and objection (Art. 13 (2) b GDPR)

As the data subject, you have the right to access, correct, and delete your data at any time, as well as to restrict its processing and to data portability. To exercise these rights, please contact the controller using the contact details provided.

h. Right to object (Art. 21(1) GDPR)

Insofar as the processing of your data is carried out to safeguard legitimate interests, you have the right to object to this processing at any time using our contact details provided if there are reasons arising from your particular situation that prevent this data processing. We will then cease this processing unless it serves overriding interests on our part that are worthy of protection.

i. Right to lodge a complaint (Art. 13(2) d GDPR)

As a data subject, she can contact the responsible State Commissioner for Data Protection and Freedom of Information in Baden-Württemberg at any time if she has any complaints.

j. Existence of a necessity to provide personal data (Art. 13 para. 2 e GDPR)

The data collected is necessary for the conclusion of the purchase contract. Data for marketing purposes is provided voluntarily.