top of page

DATA PROTECTION

Privacy policy 

The protection of your data is very important to us. For transparent cooperation, we draw your attention to important processing activities and special features. 

 

Purpose and legal basis of data processing 

The data processing at PROTH!NX GmbH takes place for the fulfilment of the contract / technical offer and for the execution of the contract in accordance with Art. 6 (1) (b) GDPR and, if the claim is not based on a contract, in the context of the reconciliation of interests in accordance with Art. 6 (1) (f) GDPR, whereby the legitimate interest is related to: 

  • Answering enquiries 

  • Quotation preparation, order processing  

  • Sending information material 

  • The Administration and Administration 

  • Maintaining business relationships 

As a company, we are subject to various legal obligations. In order to fulfil these obligations, processing of personal data may be necessary, pursuant to Article 6(1c) GDPR legal obligations or pursuant to Article 6(1e) GDPR in the public interest. 

  • Control and reporting obligations 

  • Creditworthiness, age and identity checks 

  • Prevention/defence of criminal acts 

Controller pursuant to Article 4(7) of the EU General Data Protection Regulation (GDPR) 

 

PROTH!NX 
Hagelberger Str. 53-54 

10965 Berlin 
 

If you have any questions about data protection, please send us an e-mail privacy(at)PROthinx.io

 

Scope 
This data protection notice applies to the following offers: 

  • our website 

  • our social media page 

  • whenever reference is made to this data protection information from any of our offers, regardless of the way in which you access or use it. 

 

Use of a website builder 

Our website was created with the website builder system Wix. Wix is a service of Wix.com, Inc. and provides web development technology, web design and layout tools, domain hosting, and other applications for marketing and workflow management. 

We use Wix, among other things, for web hosting and the presentation of our website. In addition, Wix collects statistical data about your visit to our website. 

The following data is usually transmitted: the website accessed, the date and time of access, the amount of data transferred, whether a retrieval was successful, the browser type and version, the user's operating system, the website previously visited (referrer) and the IP address.  

This log data is processed exclusively for the above-mentioned purposes, as well as to maintain the security, functionality and optimisation of Wix's offer. The use of the service is based on our legitimate interests, i.e. interest in a secure and efficient provision, as well as the optimization of our online offer in accordance with Art. 6 (1) (f) GDPR. 

Furthermore, we use Wix CDN for the proper provision of the contents of our website. Wix CDN is a service provided by Wix.com, Inc., which acts as a Content Delivery Network (CDN) on our website. 

A CDN helps to provide content of our online offer, in particular files such as graphics or scripts, faster with the help of regionally or internationally distributed servers. When you access this content, you connect to servers of Wix.com, Inc., where your IP address and, if applicable, browser data such as your user agent are transmitted. This data is processed exclusively for the above purposes and to maintain the security and functionality of Wix CDN. 

The specific storage period of the processed data is not influenced by us, but is determined by Wix.com, Inc. Further information can be found in the privacy policy for Wix: https://en.wix.com/about/privacy. 

Collection of personal data when you contact us 

If you write us an e-mail, use the contact form or contact us by phone, we collect, process and store the following data from you and use it for the purpose of answering your request. 

  • First name, surname 

  • address 

  • Landline/mobile phone number 

  • E-mail address 

Collection of personal data when visiting our website 

(1) When using the website for information purposes only, i.e. if you do not register or otherwise provide us with information, we only collect the personal data that your browser transmits to our server. If you wish to view our website, we collect the following data, which is technically necessary for us to display our website to you and to ensure stability and security (legal basis is Art. 6 (1) sentence 1 lit. f GDPR): 

  • IP address 

  • Date and time of the request 

  • Greenwich Mean Time (GMT) 

  • Content of the request (concrete page) 

  • Access status/HTTP status code 

  • amount of data transferred in each case 

  • Website from which the request comes 

  • browsers 

  • Operating system and its interface 

  • Language and version of the browser software. 

(2) We use various cookies for our website. 

In addition to the aforementioned data, cookies are stored on your computer when you use our website. Cookies are small text files that are stored on your hard drive assigned to the browser you are using and through which certain information flows to the body that sets the cookie. Cookies cannot run programs or transmit viruses to your computer. They serve to make the Internet offer as a whole more user-friendly and effective.  

This website uses the following types of cookies, the scope and functionality of which are explained below: 

  • Transient cookies 

  • Persistent cookies 

Transient cookies are automatically deleted when you close the browser. This includes, in particular, session cookies. These store a so-called session ID, with which various requests from your browser can be assigned to the joint session. This allows your computer to be recognized when you return to our website. Session cookies are deleted when you log out or close your browser. 

Persistent cookies are automatically deleted after a predetermined period, which may vary depending on the cookie. You can delete the cookies in the security settings of your browser at any time. 

You can configure your browser settings according to your wishes and also refuse the acceptance of third-party cookies or all cookies. Please note that you may not be able to use all functions of this website. 

The legal basis for the use of cookies is Art. 6 (1) sentence 1 lit. f GDPR. If you have given us your consent for the setting of cookies, Art. 6 (1) sentence 1 lit. a GDPR is an additional legal basis for the use of cookies.  

We will inform you about the corresponding legal basis at the individual processing operations. 

(3) We do not use tracking technologies.  

(4) When visiting our website, no automated decision-making, the so-called profiling, takes place. 

(5) We process your personal data only for the purpose stated here. Any further processing for other purposes requires your prior consent. 

 

Transmission of data 

Our hosting provider with headquarters and server location in the USA and those third parties of PROTH!NX GmbH receive your data, which they need to fulfil contractual and legal obligations as well as legitimate interests. 

Provider is Amazon Web Services, Inc.410 Terry Avenue North Seattle WA 98109 United States. The legal basis is in accordance with Art. 6 (1) (f) GDPR. The data transfer to the USA takes place according to Art. 45 (1) GDPR on the basis of the adequacy decision of the European Commission. The participating US companies and/or their US subcontractors are certified under the EU-U.S. Data Privacy Framework (EU-U.S. DPF).  

In addition, contract processors commissioned by us (in particular IT service providers) receive your data if and to the extent that they need the data to fulfil their respective services. If there are legal obligations or legitimate interests, public bodies (e.g. courts, authorities) may be recipients of your personal data. Recipients may also be third parties to whom we transfer your data for the aforementioned purposes. Your data will only be passed on to third parties on the basis of the above-mentioned legal bases.  

For security purposes, we have concluded an order processing agreement with the hosting provider. This includes a compliant handling of your personal data in accordance with the EU General Data Protection Regulation. 

 

Consent management 

For some data processing we need your consent. In order to obtain and document your consent, we use the Cookie Consent Manager of ‘Wix’ in accordance with Article 6(1), first sentence, point (c). With your consent, only technically necessary cookies are set. When you enter our website, a cookie is stored in your browser in which the consents you have given or the revocation of these consents are stored. This data will not be passed on to the provider. 

The collected data will be stored until you ask us to delete it or delete the cookie itself or the purpose for the data storage no longer applies. Mandatory statutory retention periods remain unaffected. Details on data processing by Wix can be found at https://en.wix.com/about/privacy

 

Since 06.03.2024 it is necessary to use Google Consent mode v2 when using Google products. This requirement is already technically integrated in our consent banner. So your data will definitely not be sent to Google until you have given your consent. We use advanced mode forthis. Your data will only be sent to us at the server-side Google Tag Manager. Here the IP address is overwritten and therefore not sent to Google. As long as server-side tracking is not set up, basic mode is used to provide you with the greatest possible security. 

Right of withdrawal when consent is given 

In various cases, you have the option of granting us your consent to further processing in connection with the processing described below (possibly for part of the data). In this case, in connection with the submission of the respective declaration of consent, we will inform you separately about all modalities and the scope of the consent and about the purposes we pursue with these processing operations. We inform you that the revocation of the consent does not affect the legality of the processing carried out on the basis of the consent until the revocation. 

 

Registration at events 
For registration for events we use the provider Cvent Deutschland GmbH c/o TMF Steuerberatung GmbH WPG, Maximilianstr. 54 in 80538 Munich. 

The tool stores your data on a server in Germany and does not pass the data on to third parties. The legal basis is in accordance with Art. 6 (1) (f) GDPR. The privacy policy can be found at https://www.cvent.com/sites/default/files/files/2023-06/Cvent%20Global%20Privacy%20Policy_11.30.21_v_02.10.23_For%20Translation_7.pdf

If you came across our event via a link via HDI Global, we will report your registration back to HDI Global. The legal basis is in accordance with Art. 6 (1) (f) GDPR, the legitimate interest. This is because HDI Global wants to evaluate the extent to which existing customers are interested in the events.  

Furthermore, after attending an event, we will send you further event proposals that could be in your interest in accordance with Art. 6 (1) (f) GDPR, your legitimate interest. If you no longer wish this, please reply to the e-mail and let us know.  

 

Use of Sentry 

We use Sentry from Functional Software, Inc., 132 Hawthorne St San Francisco, CA 94107, United States as a bug tracker to detect code errors at an early stage and thus ensure the technical functionality of our online offer. Anonymous information is collected about the device on which the error occurred and the time at which the error was detected. In some cases, user sessions can also be recorded to make it easier to fix the error. Functional Software, Inc. does not evaluate this data for advertising purposes. Sentry is used on the basis of your consent in accordance with Article 6(1)(f) GDPR, the legitimate interest of using an error tracking and performance monitoring tool that helps developers to detect, monitor and correct errors in their applications.  

The exact storage time varies from case to case. Data will be deleted as soon as we have fixed the error and no longer need to see the error details. Further information on the storage period of Functional Software, Inc. can be found in the privacy policy for Sentry: https://sentry.io/privacy/

 

LinkedIn  

  • Social media 

For further possibilities of contacting and publishing our current offers, we maintain a social media account. The legal basis is provided in accordance with Article 6(1)(f), the legitimate interest of customer communication in conjunction with Article 26 GDPR of joint responsibility. In this way, LinkedIn has drawn up an order processing agreement that stipulates the compliant handling of the GDPR. To be read at: https://en.linkedin.com/legal/l/dpa 

The provider is: LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland; Privacy policy: https://www.linkedin.com/legal/privacy-policy; Opt-out: https://www.linkedin.com/psettings/guest-controls/retargeting-opt-out.  

As there is no adequacy decision of the European Commission (including US companies that are not certified according to EU-U.S. DPF), we have agreed with the recipient of the data other appropriate safeguards within the meaning of Art. 44 et seq. GDPR. Unless otherwise stated, these are standard contractual clauses of the EU Commission pursuant to Implementing Decision (EU) 2021/914 of 4 June 2021. A copy of these Standard Contractual Clauses can be found at https://eur-lex.europa.eu/legal-content/DE/TXT/HTML/?uri=CELEX:32021D0914&from=DE.  

We would like to point out that in the case of third-country transfers, unknown risks may exist in detail (e.g. data processing by security authorities of the third country, the exact scope and consequences of which for you we do not know, over which we have no influence and of which you may not be aware). The specific storage period of the processed data is not influenced by us, but is determined by LinkedIn Corporation. Further information can be found in the privacy policy for LinkedIn Ads: https://www.linkedin.com/legal/privacy-policy?trk=homepage-basic_footer-privacy-policy

Integration of YouTube videos 

We have integrated YouTube videos into our online offer, which are stored on https://www.YouTube.com and can be played directly from our website. These are all integrated in the ‘extended data protection mode’, i.e. no data about you as a user is transmitted to YouTube if you do not play the videos. Only when you play the videos will the aforementioned data be transmitted. We have no influence on this data transmission. The legal basis for the integration of YouTube videos is Art. 6 (1) sentence 1 lit. f GDPR. 

By visiting the website, YouTube receives the information that you have accessed the corresponding subpage of our website. In addition, the data mentioned under "Use of cookies" and "Visit to our website" of this notice are transmitted. This is done regardless of whether YouTube provides a user account through which you are logged in or whether there is no user account. If you are logged in to Google, your data will be assigned directly to your account. If you do not wish to be associated with your YouTube profile, you must log out before activating the button. YouTube stores your data as user profiles and uses them for the purposes of advertising, market research and/or needs-based design of its website. Such an evaluation takes place in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have a right to object to the creation of these user profiles, whereby you must address yourself to YouTube in order to exercise this right. 

Information from the provider: YouTube LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. The data controller is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Further information on the purpose and scope of the data collection and its processing by YouTube can be found in the data protection information. There you will also find more information about your rights and settings options to protect your privacy: https://www.google.de/intl/de/policies/privacy 

 

No obligation to provide & Consequences of non-provision 

The provision of personal data is not required by law or contract and you are not obliged to provide data. As part of the input process, we will inform you if the provision of personal data is necessary for the respective service (e.g. by naming it as a ‘mandatory field’). Failure to provide the required data means that the service in question cannot be provided. 

 

Storage period of your data 

We process your personal data, as far as necessary, for the duration of the business relationship, or as long as it is necessary for the aforementioned purposes, as well as in accordance with the statutory retention and documentation obligations, which arise in particular from the Fiscal Code and the Commercial Code and usually amount to 10 years. In addition, personal data may be stored and retained for as long as the data is relevant to a pending judicial or administrative proceeding in which the controller has a party status. 

 

Your rights 

(1) You have the following rights vis-à-vis us with regard to the personal data concerning you: 

  • Right to information about which data we have collected and stored from you; 

  • the right to rectification or erasure of your already existing data, after examination of any retention periods; 

  • Right to restriction of processing, in relation to your data, if it is no longer needed to the extent necessary; 

  • Right to object to the processing, so that we have to stop the processing and the 

  • Right to data portabilityif you want to take records to another institution. 

(2) You also have the right to complain to a data protection supervisory authority about the processing of your personal data by us. Please address this complaint to the competent supervisory authority at https://www.datenschutz-berlin.de/buergerinnen-und-buerger/complaint/ 

 

Contradiction 

You have the right to object to the processing of your personal data at any time. Please send it in writing by e-mail or by post to the above address.  

 

Since legal provisions may change, we kindly ask you to read this data protection information regularly. We will make changes in a timely manner in order to be able to pass on transparent information to you. 

 

As of June 2024 

created with Werk3 for Datenschutz GmbH

bottom of page