1. Privacy policy for the use of the website

Privacy policy - Leitz GmbH & Co. KG

as at 2020/08/01

1. Scope

1.1 The following privacy policy is valid for using the website ‘leitz.org’ and the services it offers. This website is offered by Leitz Tooling Systems LP, 435 Four Valley Drive, Vaughan, Ontario L4K 5X5, Canada, email contact-ca@leitz.org as the party responsible as defined by section of 4 of the EU General Data Protection Regulation (“GDPR”).

1.2 The protection of your personal data is important for us, mainly with reference to the protection of the personal right while processing and using this information. Hereinafter we provide information about the collection of personal data while using our website. Personal data includes all the data that is personally relatable to you such as name, address, email addresses, user behaviour, etc.


2. Automatic data collection and processing by the browser

2.1 Similar to every website, our server collects details automatically and temporarily in the server log files, which are transferred by the browser unless you have deactivated it. If you wish to view our website, we collect the following data that is technically necessary for us to show our website to you and to ensure stability and safety (legal basis, section 6 para. 1 lit f) GDPR):

  • IP address of the requesting computer

  • File request of the client

  • the http-response code

  • the website from which you visit us (referrer URL),

  • the time of the server request

  • Browser type and version

  • operating system used of the requesting computer

The server log files are not evaluated personally. This data cannot be assigned to specific people at any point in time for the provider. This data is not merged with other data sources.


2.2 Cookies 

In order to design our Internet presence such that it is user-friendly and optimally customised to your requirements, we use cookies in some sections. We thereby rely on our legitimate interest of operating an attractive website for you. "Cookies" are small files that we transfer to your computer’s hard disk with the help of your internet browser or other programmes. They are saved locally on your computer’s hard disk and kept available for subsequent access. You allow our system to identify your browser and provide specific services to you.

A few of the cookies we use are deleted again at the end of the browser session, i.e. after closing your browsers (so-called session cookies). Other cookies remain on your end device and allow us or our partner companies to recognise your browser during the next visit (persistent cookies).

You can set your browser such that you will be informed about the setting of cookies and decide individually on their acceptance or the acceptance of cookies for specific cases or general exclusion (refer to acceptance or refusal of cookies).
When you first visit our website, you will be given the opportunity to choose which cookies you want to allow. You can recall or adjust your selection at any time in the cookie settings in the website footer.
If you do not accept the use of cookies, it can limit the functionality of our website.
 

2.3 etracker

On this website we use the services of etracker GmbH, Hamburg, Germany (www.etracker.com) to analyse usage data. We do not use cookies for web analysis by default. If we use analysis and optimisation cookies, we will obtain your explicit consent separately in advance. If this is the case and you agree, cookies are used to enable a statistical range analysis of this website, a measurement of the success of our online marketing measures and test procedures, e.g. to test and optimise different versions of our online offer or its components. Cookies are small text files that are stored by the Internet browser on the user's device. etracker cookies do not contain any information that could identify a user.

The data generated by etracker on behalf of the provider of this website is processed and stored by etracker solely in Germany by commission of the provider of this website and is thus subject to the strict German and European data protection laws and standards. In this regard, etracker was independently checked, certified and awarded with the ePrivacyseal data protection seal of approval.

The data processing is based on Art. 6 Section 1 lit f (legitimate interest) of the General Data Protection Regulation (GDPR). Our legitimate interest is the optimisation of our online offer and our website. As the privacy of our visitors is very important to us, the data that may possibly allow a reference to an individual person, such as IP address, registration or device IDs, will be anonymised or pseudonymised as soon as possible. etracker does not use the data for any other purpose, combine it with other data or pass it on to third parties.

Further information on data protection with etracker can be found here.
 

2.4 reCAPTCHA

On this website we also use the reCAPTCHA function from Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google"). This function primarily serves to differentiate whether an entry is made by a natural person or whether it is misused by mechanical and automated processing. The service includes sending the IP address and any other data required by Google for the reCAPTCHA service to Google and is carried out in accordance with Art. 6 Para. 1 lit. f GDPR based on our legitimate interest in avoiding misuse and spam. As part of the use of Google reCAPTCHA, personal data can also be transmitted to the servers of Google LLC. in the US.

In case of the transfer of personal data to Google LLC. based in the United States, Google LLC. certified for the US-European data protection convention "Privacy Shield", which guarantees compliance with the data protection level applicable in the EU. A current certificate can be viewed here: https://www.privacyshield.gov/list

Further information on Google reCAPTCHA and Google's privacy policy can be viewed at: https://policies.google.com/privacy?hl=en

3. Social Media

The buttons for social media shown on our website are not plug-ins. The buttons contain a link that redirects you to the respective platform. We neither save cookies on your computer to this end nor do we transmit your data.

The data protection directives of the respective social media platform are applicable to other actions on these sites:

“Facebook” (Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland)
https://www.facebook.com/privacy/explanation

“Twitter” (Twitter, Inc. 1355 Market St, Suite 900, San Francisco, CA 94103, USA),
https://twitter.com/privacy?lang=en

“Xing” (XING AG, Dammtorstraße 30, 20354 Hamburg, Germany)
https://privacy.xing.com/en/privacy-policy

“LinkedIn” (LinkedIn Corporation, 2029 Stierlin Court, Mountain View, CA 94043, USA),
www.linkedin.com/legal/privacy-policy

When you visit our websites that have a button of this sort, your browser does not establish any connection with the servers of the respective service unless you click the corresponding button. The information about the visit to our website is thus not forwarded to the respective service.

If you are also logged in to the respective service simultaneously via your personal user account while visiting our website (e.g. via another browser session) and you click the buttons, your visit to our website can be assigned to your account.

If you wish to stop such a data transfer, you must log out from your user account of the respective service before visiting our websites or not use the links. For the scope and purpose of the data collection by the respective service, as well as the local further processing and use of your data, please refer to the data privacy statements directly on the website of the service. You will also get additional information on your corresponding data protection rights and setting options for protecting your privacy.

4. Use of YouTube videos

We use embedded YouTube videos. YouTube is a service provided by Google Inc., Amphitheatre Parkway, Mountain View, CA 94043, USA.

The IP address is transmitted while viewing the videos. It cannot be assigned unless you have logged in to or are permanently logged in to YouTube or another Google service before viewing the website.

As soon as you start playing an embedded video by clicking it, YouTube, to the best of our knowledge, saves only cookies on your computer, which do not contain any personally identifiable data. These cookies can be prevented using corresponding browser settings and extensions (source: YouTube “Activation of the extended data protection mode for embedded videos”).

For more information on embedding the YouTube videos, please visit the information page YouTube: https://support.google.com/youtube/answer/171780?hl=en.

5. Data security

We use the popular SSL protocol (Secure Socket Layer) together with the highest encryption level that is supported by your browser.  You can tell whether an individual page of our website is transmitted in encrypted form by the display of a closed symbol of a key or lock in the status bar of your browser.

6. Hyperlinks to external websites

Our website contains so-called hyperlinks to websites of other providers. While activating these hyperlinks, you are forwarded directly to the website of other providers from our website. You can detect this from the change in the URL among other things. We cannot assume any responsibility for confidential handling of your data on these third-party websites as we have no influence on whether these companies comply with the data protection regulations. You can visit these websites directly to find out about how these companies handle your personal data.


7. Data collection and processing of voluntarily shared data

If you share personal data with us via email or on our website (name, first name, contact details, etc.), this is generally done voluntarily. This data shall be used for processing your queries and issues. The data shall be encrypted and transferred (transport encryption) via email to the relevant recipient in the company.

It is not used for any other purpose, especially forwarding of the data to a third party for purposes of promotion, market or opinion research. We delete the data collected in this context, after it is no longer necessary to save it, or limit its processing in case of any statutory obligation to preserve records. The legal basis is section 6 Para. 1 lit. b) of GDPR or section 6 Para. 1 lit. f) of GDPR.
 

7.1. Newsletter

a. Legal basis for the data processing
The legal basis for processing your personal data for mailing the newsletter is section 6 Para. 1 lit. a of EU GDPR in case of consent.
Your data is not forwarded to third parties in connection with the mailing of the newsletter.
For mailing the newsletter, we use the so-called Double opt-in method, i.e. we shall send you the newsletter only if you previously confirm your application with a link contained in the confirmation email sent to you for this purpose. We would thus like to ensure that only you yourself can log in to the newsletter as the owner of the specified email address. Your confirmation in this respect must be provided shortly after receiving the confirmation email as otherwise your newsletter application will be automatically deleted from our database.

b. Purpose of data processing
The collection of your personal data (at least your email address) helps to mail you the newsletter. The purpose of processing your personal data for mailing the newsletter is to ensure that you are regularly informed of the relevant topics from the field of wood working and plastics processing, advanced materials as well as the corporate development.

c. Duration of the storage
Your personal data shall be deleted as soon as it is no longer required for achieving the purpose of its collection. Your personal data shall thus be saved as long as the newsletter subscription is active.

d. Option to object or delete
You can cancel the newsletter subscription at any time. Every newsletter contains a corresponding link for this purpose. Cancellation of the subscription also allows revocation of consent.

7.2. Contact form

a. Type and scope of the data processing
On our website, we give you an option to contact us using a form that is provided. If you make use of the contact form, your personal data given below shall be processed in addition to the content that you have entered in the contact field:

  • Email address

  • Name, first name

  • Contact details

The specification of your email address thereby serves the purpose of assigning your query and being able to respond to you. When using the contact form, your personal data is not forwarded to third parties.

Additional information about your company and its address as well as about your telephonic accessibility is voluntary and possible for clarification of your query about the corresponding fields.

b. Legal basis
The previously described data processing for purposes of establishing contact is based on section 6 Para. 1 lit. f of GDPR. The provision of an interface for communicating with you is in our legitimate interest that, as a rule, shall be aligned with your interest of being able to contact us quickly and easily.

c. Storage duration
As soon as the query posed by you is settled and the relevant issue is finally clarified, your personal data processed using the contact form shall be deleted. Continued storage is possible in an isolated case if it is legally stipulated.

7.3. Transfer of application documents

a. Type and scope of the data processing
If you are interested in one of the jobs advertised by us or if you wish to apply proactively, you can always email us your application documents on karriere@leitz.org.

We assure you that we shall process the personal data that you have specified only for purposes of executing the application process.

b. Legal basis
The legal basis for processing your personal data from your application documents is section 6 Para. 1 lit. b of GDPR.

c. Storage duration
We shall store your data for 6 months after the application process (acceptance or rejection).


8. Forwarding to a third party

If you have shared personal data with us, it will not be forwarded to a third party in principle. It will be forwarded only

  • if you have consented to it. While collecting the data, you shall be notified of the recipient or category of recipients.

  • for processing your queries, your orders and the use of our services to authorised subcontractors, who are transferred the required data only for executing the order and use it for a specific purpose.

  • for processing the order data in accordance with section 28 of GDPR to external service providers. These are carefully selected and authorised by us, are committed to our instructions as well as the provisions of the GDPR and are inspected regularly.

  • for fulfilling the legal obligations towards authorities entitled to receive information.

9. Data transfer to third countries

Data is transferred to third countries exclusively on the basis of a consent, the necessity for contract fulfilment or investigation of legal claims (section 49 of EU GDPR).

10. Duration of storage

Your data shall be used only insofar as it is required for the existing business relationship, unless you have already given us your consent or we have an legitimate interest in processing it further. In these cases, we shall process your data until you revoke your consent or until you object to our legitimate interests. Nevertheless, we are under an obligation to save your address, payment and order details for a duration of ten years owing to the commercial and tax specifications.


11. Your rights

11.1. You have the following rights against us with respect to your personal data:

  • Right of information and access to personal data,

  • Right to rectification or erasure,

  • Right to restriction of processing,

  • Right to object against processing,

  • Right to data portability.

Please direct your written query to the Data Protection Officer: Leitz Tooling Systems LP, 435 Four Valley Drive, Vaughan, Ontario L4K 5X5, Canada, or to the following email address: contact-ca@leitz.org.

11.2. Moreover, you have the right to complain to an independent data protection supervisory authority about processing of your personal data by us.
 

The relevant supervisory authority for us is:


Landesbeauftragter für Datenschutz und Informationsfreiheit Baden-Württemberg
Königstraße 10 a
70173 Stuttgart


The supervisory authority to whom you have submitted the complaint, shall inform you of the status and results of the complaints including the possibility of a legal remedy in accordance with section 78 of EU GDPR.