We take the protection of your data very seriously. For this reason, we, Deuter Sport GmbH (hereinafter: Deuter), of course comply with the legal requirements regarding data privacy, in particular the General Data Protection Regulation (GDPR), the Federal Data Protection Act (BDSG) and the Telemedia Act (TMG), and we do everything possible to keep your data confidential. In addition, it is important to us that you know at all times what data we store and how we use it. Please take a moment to read the following statements, which will inform you about how we handle your data. We reserve the right to adapt the content of these data privacy provisions from time to time to ensure protection in the future, in particular in line with new legal requirements or technical developments. For this reason, we recommend that you review our information and notices on data processing at regular intervals. This data privacy statement applies to the Deuter website, which can be accessed under the domain https://www.deuter.com
as well as the various subdomains (hereinafter referred to as “our Website”).
1. Name and address of the data controller
The data controller and service provider is Deuter Sport GmbH, Daimlerstraße 23, 86368 Gersthofen (hereinafter referred to as “Deuter”).
2. Name and address of the Data Protection Officer
Our Data Protection Officer is: Sebastian Meyer, Schwanweg 1, 90562 Heroldsberg. You can also contact our Data Protection Officer at any time with any questions concerning data protection. The best way to do this is by sending an email to: Datenschutz@schwan-stabilo.com.
3. General information on data processing
As a matter of principle, we collect and use personal data of our users only to the extent necessary for providing a functioning website as well as our content and services.
3.1 Personal data
Personal data is information that can be matched to you individually. This includes, for example, your name, email address, home address, gender, date of birth, telephone number or age. Non-personal data is information such as the number of users of a website.
3.2 Processing of personal data
Processing is any operation or set of operations which is performed in connection with personal data, whether or not by automated means, such as collection, recording, organization, arrangement, storage, adaptation or alteration, retrieval, searching, use, disclosure by transmission, dissemination or otherwise, matching or combination, restriction, deletion or destruction. This Website collects personal data if you provide it to us of your own accord, e.g. as part of a registration, by filling out forms, sending emails or, above all, by ordering an item of merchandise. We use this data for the purposes stated in each case or purposes resulting from the request, such as the provision of your postal address for sending you the goods. Data is transmitted to third parties only if expressly permitted by law or if you have consented to the transmission as part of your registration or as part of an active business relationship. The data collected as part of an order and return will be forwarded to Sportco AG, Worblentalstrasse 28 in 3063 Ittigen for processing or shipment within Switzerland. You can also consult the general information on https://www.deuter.com without disclosing your personal data. In particular, personal data is processed as follows:
3.2.1 Contact form
If you send us inquiries via our contact form, we will ask you for your first and last name and your email address. You can also voluntarily provide your address and telephone number and enter an individual message to us using the message field.
You are free to decide whether you want to provide us with this data. However, we cannot respond to your contact request without this information. The purpose of providing your email address is to allow us to properly route your request and respond to you. If you agree that we may forward your data to country representatives for faster processing, we reserve the right to forward your name, email address and request to third parties (our partner companies). These may be the country representatives in the following countries:
When using the contact form, your personal data will not be forwarded to third parties without your consent. As soon as your inquiry has been answered and the matter in question has been conclusively resolved, the personal data processed via the contact form will be deleted. Data may be retained in individual cases where required by law. The aforementioned data processing for the purpose of contacting us is performed in accordance with Art. 6 para. 1b, Art. 6 para. 1f GDPR.
3.2.2. Google reCAPTCHA
To ensure sufficient data security when submitting forms, in certain cases we use the reCAPTCHA service of the company Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. This service is primarily used to distinguish whether the input is being entered by a real person or improperly by electronic or automated processing. As part of the service, the IP address and possibly other data Google requires for providing the reCAPTCHA service is sent to Google. This service is provided subject to Google Inc.'s different data privacy terms. Further information on the data privacy policies of Google can be found at http://www.google.de/intl/de/privacy
3.2.3 Applicant management
If you are interested in one of the job openings listed on our Website, you can at any time send us an email to firstname.lastname@example.org or send your application documents to the following address: Deuter Sport GmbH, Daimlerstraße 23, 86368 Gersthofen. We assure you that we will process the personal data you provide only for the purpose of completing the application process. We will keep your data for 6 months after the end of the application process (regardless whether your application is accepted or rejected). The legal basis for processing the personal data contained in your application documents is Art. 6 para. 1b GDPR.
If you wish to subscribe to our email newsletter, we need your email address to which the newsletter is to be sent. You may freely choose whether you want to provide us with this data. However, without this information, we may not be able to send you our newsletter. When you subscribe to the newsletter, your email address will be used for our own advertising purposes until you unsubscribe from the newsletter. To unsubscribe, you can use the link on our Website to cancel. Your data will be stored as long as you are subscribed to the newsletter. After unsubscribing from the newsletter, your data will be erased. In individual cases, your data may be retained for a longer period if required by law. The legal basis for the processing of data following the user’s subscription to the newsletter is Art. 6 para. 1a GDPR, provided that the user has given his/her consent.
If you would like to participate in our contests, we need to have your name and email address. Depending on the sweepstakes prize, we may also ask you for your address, telephone number, size and gender. Additional information may be required based on the requirements for participation in a particular contest.
This information is used solely to notify you if you have won and to send you the prize. You are free to decide whether you want to provide us with this data. Without this information, we may not be able to consider your participation in the contest.
The legal basis for the processing of data following the user’s registration for the contest is Art. 6 para. 1b GDPR, i.e. the purpose of the processing is to perform pre-contractual measures or for the performance of a contract.
3.3 Legal basis for the processing of personal data
Our users' personal data are normally collected and used only after the user has provided his/her consent. Insofar as we obtain the consent of the data subject for processing operations involving personal data, Art. 6 para. 1a GDPR is the legal basis for the processing of personal data. An exception applies in cases where obtaining consent in advance is not objectively possible and the processing of the data is permitted by law. Art. 6 para. 1b GDPR is the legal basis for processing personal data that is necessary for the performance of a contract to which the data subject is a party,. The above also applies to processing operations that are necessary for the performance of pre-contractual measures. Art. 6 para. 1c GDPR is the legal basis for processing of personal data necessary for the performance of a legal obligation.. Art. 6 para. 1f GDPR is the legal basis for processing if the processing is necessary for the protection of a legitimate interest of our company or a third party, and if the interests, fundamental rights and freedoms of the data subject do not override the first-named interest.
A cookie is a small text file that is saved in your browser's cache and make possible an analysis of your use of our Website. This enables us, for example, to greet you by name on your next visit or to display information specifically tailored to your interests. Cookies are also used by our contractual partners to evaluate user behavior to optimize advertising (social targeting). A session is a single site visit that is stored on our server for a brief period of time. Log files are created by the server and stored by us. They contain automatically updated logs of all or some actions of processes on a computer system.
No security-relevant or personal data - with the exception of your IP address - is stored in the cookies, sessions and log files. Furthermore, these files cannot transmit viruses, spy on data on your computer or send emails without your knowledge. Each web server can also read only the cookies that it itself has sent. Our computer system collects the following data automatically by means of cookies when our webpages are visited:
·Your Internet address (IP address)/Hostname
·Agent/browser type and version
·Website from which you are visiting us (Referrer URL)
·Operating system used
·Website from which you are redirected to other web sites
·Page views on our Website
·Date and time of your access
This data is stored separately from the data that you have provided us as part of your customer account. There is no linking of this data. The data collected in accordance with Section 3 is evaluated for statistical purposes to optimize our webpages and our offers.
4.3 Social plugins (Facebook, Instagram, Twitter and YouTube)
Our web sites contain social plugins of the social networks “Facebook”( Facebook Inc., 1601 S. California Ave, Palo Alto, California 94304, USA), “Google+” (Google Ireland Limited, Google Building Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland), “Twitter” (Twitter, Inc., 1355 Market St, Suite 900, San Francisco, California 94103, USA) and YouTube (Google Ireland Limited, Google Building Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland). These services are offered by the respective companies (“Providers”). In the framework of our online presence, the social plugins are identified by the respective buttons belonging to the service. Based on the data transmitted to the respective service via the social plugins, the service may be able to match you to an account you have with the service in question. To increase the protection of your data on our Website, the social plugins are integrated on our Website by means of a “2-click solution”. This ensures that when you visit a page on our Website that contains these social plugins, no automatic connection is established with the servers of the respective Providers. The activation of the function of the respective social plugin takes place in two stages. To activate a social plugin, you must first click on the link located on our Website. As a first step, this activates the social plugin and your browser establishes a connection with the respective Provider's servers Clicking a second time allows you to interact with the social plugin and, for example, submit an evaluation. If you are already logged in to one of the Providers' social networks, the Providers can directly match the visit to this Website to your profile. If you interact with the social plugins by clicking on them, the corresponding information is also transmitted directly to a Provider's server and stored there. The information may also be published on the social network and displayed there for your contacts to see. If you wish to prevent your data collected via our Website from being directly matched to your profile, you must log out of the account you have with the respective Provider before visiting our Website. Details of the scope and purpose of the data collection by the respective service and the further processing and use of your data by such service can be found in the data privacy information available directly on the service's websites. There you will also find further information about your corresponding data privacy rights and the settings options available to you to protect your privacy.
a) Facebook Inc., 1601 S California Ave, Palo Alto, California 94304, USAhttps://www.facebook.com/policy.phphttps://www.facebook.com/help/186325668085084
b) Google Ireland Limited, Google Building Gordon House, 4 Barrow St, Dublin, D04 E5W5, Irelandhttps://www.google.com/policies/privacy/partners/?hl=de
c) Twitter Inc., 1355 Market St, Suite 900, San Francisco, California 94103, USAhttps://twitter.com/privacy?lang=de
d) YouTube,1600 Amphitheater Parkway, Mountain View, California 94043, USAhttp://www.youtube.com/t/privacy
4.4 Facebook Pixel
This Website uses the Facebook Pixel of the social network “Facebook” (Facebook Inc., 1601 S. California Ave, Palo Alto, California 94304, USA). The purpose is to present visitors to our Website with interest-based advertisements while they are visiting the Facebook social network. when a user visits our Website, the Facebook Pixel establishes a direct connection to the Facebook servers. In the process, data is transmitted to the Facebook server indicating that you have visited our Website and Facebook matches this information to your personal Facebook user account. Please note that we, as the provider of the Website, have no knowledge of the content of the data transmitted or its use by Facebook. For more information on the collection and use of data by Facebook, as well as your rights in this respect and options for protecting your privacy, please refer to Facebook’s data privacy notice at https://www.facebook.com/about/privacy/
4.5 Google Analytics
This Website uses Google Analytics, a web analytics service provided by Google Ireland Limited, Google Building Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland (“Google”). Google Analytics uses “cookies”, which are text files sent to your computer to help analyze how you use the Website.
The information generated by these cookies, for example the time, place and frequency of your use of this Website, is generally transferred to a Google server in the USA and stored there. When using Google Analytics, it cannot be ruled out that the cookies set by Google Analytics may also collect other personal data in addition to the IP address. Please note that Google may transfer this information to third parties where required to do so by law, or where such third parties process the information on Google’s behalf.
Google will use the information generated by cookies on behalf of the operator of this Website for the purpose of evaluating your use of the Website, compiling reports on Website activity and providing other services relating to Website and Internet use to the Website operator. According to Google, the IP address transmitted by your browser in the framework of Google Analytics will not be combined with other Google data.
You can generally prevent cookies from being placed on your computer by setting your browser software accordingly. However, please note that in this case you may not be able to use all functions of this Website to their full extent.
The possibility that the cookies sent by Google Analytics may collect other personal data in addition to the IP address cannot be ruled out. To prevent information about your use of the Website from being collected by Google Analytics and transmitted to Google Analytics, you can download and install a plugin for your browser using the following link http://tools.google.com/dlpage/gaoptout?hl=de
This plugin prevents information about your visit to the Website from being transmitted to Google Analytics. This plugin does not prevent any other analysis.
Please note that you cannot use the browser plugin described above when visiting our Website via the browser of a mobile device (smartphone or tablet). When using a mobile device, you can prevent the collection of your usage data by Google Analytics by clicking on the following link Disable Google Analytics
By clicking on this link, an "opt-out" cookie is placed in your browser. This prevents information about your visit to the Website from being transmitted to Google Analytics. Please note that the opt-out cookie is only valid for this browser and only for this domain. If you delete the cookies in this browser, the opt-out cookie will also be deleted. To continue to prevent collection by Google Analytics, you must click the link again. The opt-out cookie can also be used as an alternative to the abovementioned plugin when using the browser on your computer.
To ensure optimum protection of your personal data, the code “anonymizeIp” has been added to Google Analytics on this Website. This code causes the last 8 bits of the IP addresses to be deleted and your IP address is thus recorded anonymously (IP masking). Your IP address will be shortened by Google before transmission within the member states of the European Union or other contracting states of the Agreement on the European Economic Area and thus anonymized. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there.
4.6. Commerce Connector Sales Pixel
This Website uses the conversion tracking program of Commerce Connector GmbH, Eberhardstr. 69-71, 70173 Stuttgart (“Commerce Connector”). Commerce Connector provides a Buy Now button to provide links to merchants that sell our products. When you click on the link, our partner - Commerce Connector GmbH - will place a cookie on your terminal device for a limited period of time. If you make a purchase from the merchant within this period, and when you reach the merchant’s order confirmation page, Commerce Connector can access the cookie to obtain information about your purchase from the merchant. Please note that Commerce Connector does not obtain any personal information that identifies you, only a unique cookie number. Commerce Connector uses the purchase information obtained to create anonymous sales statistics of our products purchased through the link and then provides these statistics to us.
You can deactivate Commerce Connector by clicking an opt-out button via the above link.
4.7 Preventing the storage of cookies
If you do not wish cookies, sessions and log files to be used, you can block or restrict their use in your browser. However, in this case, you may no longer be able to use individual functions of our sites.
4.8 Basis in law
The basis in law for data processing in the framework of cookies (except technically necessary cookies) is consent, as specified under Art. 6 para. 1a GDPR.
4.9. Fan pages on Facebook, Instagram, YouTube, Google, LinkedIn, Xing, Pinterest and Twitter
We operate fanpages on the social networks Facebook
. As operators of these fanpages, we are jointly responsible with the operators of these networks within the meaning of Art. 4 No. 7 GDPR. When you visit one of our fanpages, personal data is processed by the data controllers. As the data controller for the fanpages, we have entered into agreements with the social networks which, among other things, regulate the conditions for use of these pages. We have integrated this data privacy statement into the corresponding fanpages. You can obtain further information on these fanpages or on deuter.com:
5. Security measures to protect the data stored by us, SSL technology
We have implemented administrative and technical security measures to protect your data, in particular against loss, tampering or unauthorized access. We regularly update our security precautions to take ongoing technical developments into account. Intensive education and training of our employees as well as their commitment to data privacy ensure that your data is handled confidentially. The transmission of personal data between your computer or mobile device and our server is always encrypted (SSL procedure, Secure Socket Layer).
6. Use of service providers for the processing of personal data/processing of data in countries outside the European Economic Area
We use service providers to perform services and process your data in relation to our products and services. The service providers process the data exclusively within the scope of our instructions and have given us their commitment to comply with the applicable data privacy regulations. All processors have been carefully selected and are given access to your data only to the extent and for the length of time required to provide the services or if you have consented to the data processing and use. Service providers in countries such as the United States or in countries outside the European Economic Area are subject to data privacy requirements that do not generally protect personal data to the same extent as in the member states of the European Union. Insofar as your data is processed in a country that does not have a recognized high level of data privacy like the European Union, we rely on contractual regulations or other generally accepted measures to ensure that your personal data is adequately protected.
For internal administrative purposes or for the optimization and control of processing procedures, certain processing activities are performed centrally by a company of the Schwan-STABILO group. Personal data may be transferred within the group for these purposes. These group companies will only have access to your personal data to the extent necessary for the specified purpose.
7. Data retention period
We retain your personal data only for the period permitted by law. Stored personal data is erased when the user withdraws his/her consent to storage or when the knowledge of this data is no longer necessary for the purpose of the storage, in particular when the user account is deleted or when the storage of such data is inadmissible for other legal reasons. Relevant statutory retention periods specified in the German Commercial Code or the German Tax Code are unaffected thereby. During the statutory retention period, your personal data will be blocked and will not be used for any other data processing.
8. Rights of data subjects
8.1 Right to be informed
You have the right to request information from us at any time about your data stored by us, as well as about its origin, recipients or categories of recipients to whom this data is disclosed and the purpose for which it is stored.
8.2. Right of retraction
If you have given your consent to the use of data, you can retract such consent at any time with effect for the future without having to indicate your reasons. If you wish to retract your consent please send an email to: email@example.com or a written notification to: Deuter Sport GmbH, Daimlerstraße 23, 86368 Gersthofen (Art. 15 GDPR).
8.3. Right to rectification
If your data stored by us is incorrect, you can have it corrected by us at any time (Art. 16 GDPR).
8.4. Right to erasure and blocking
You have the right to request the erasure of your personal data stored by us (Art. 17 GDPR). Your personal data will normally be erased within 2 business days after the exercise of this right by the data subject. If the erasure of your data is not permitted by statute, contract or tax law or commercial law retention obligations or if other legal reasons prevent erasure, your data can be blocked rather than erased. After the erasure of your data, it is no longer possible to provide you with information.
8.5. Right to data portability
We will release your personal data provided to us or transfer the data to you or another responsible party in a structured, commonly used and machine-readable format if you so request (Art. 20 GDPR). However, we can make such a transfer only if it is technically possible.
8.6. Right to object
You have the right to object to data processing at any time and without stating your reasons (Art. 7 para. 3 GDPR). However, we may no longer be able to fully offer our services after you exercise your right to object, as certain services require the processing of certain personal data.
8.7. Contact for the assertion of data subject rights
When you contact us by email addressed to firstname.lastname@example.org or by mail addressed to Deuter Sport GmbH, Daimlerstraße 23, 86368 Gersthofen, we will store the data you provide (your email address, name and telephone number, if applicable) to answer your questions or respond to your request. We delete the data we collect in this context after retention is no longer necessary, or we restrict the processing if there are legal retention obligations.
9. Right to register a complaint with the supervisory authority
You have the right to register a complaint with the supervisory authority having jurisdiction regarding the processing of your personal data if you think your rights under the GDPR have been infringed (Art. 77 GDPR).
Version: June 2020