Data Protection
Personal data (usually referred to just as „data“ below) will only be processed by us to the extent necessary and for the purpose of providing a functional and user-friendly website, including its contents, and the services offered there.
Per Art. 4 No. 1 of Regulation (EU) 2016/679, i.e. the General Data Protection Regulation (hereinafter referred to as the „GDPR“), „processing“ refers to any operation or set of operations such as collection, recording, organization, structuring, storage, adaptation, alteration, retrieval, consultation, use, disclosure by transmission, dissemination, or otherwise making available, alignment, or combination, restriction, erasure, or destruction performed on personal data, whether by automated means or not.
The following privacy policy is intended to inform you in particular about the type, scope, purpose, duration, and legal basis for the processing of such data either under our own control or in conjunction with others. We also inform you below about the third-party components we use to optimize our website and improve the user experience which may result in said third parties also processing data they collect and control.
Our privacy policy is structured as follows:
I. Information about us as controllers of your data
II. The rights of users and data subjects
III. Information about the data processing
I. Information about us as controllers of your data
The party responsible for this website (the „controller“) for purposes of data protection law is:
FPA Services GmbH
Airport Center Dresden
Hermann-Reichelt-Str. 3
D-01109 Dresden
Telefon: +49 (0)351 / 8999 151 0
E-Mail: info@buchhaltung-fpa.de
The controller’s data protection officer is:
datenschutzistmachbar Nicola Schlagenwerth
Telefon: +49 176 30714388
E-Mail: info@datenschutzistmachbar.de
Postfach 100113
26491 Norden
II. The rights of users and data subjects
With regard to the data processing to be described in more detail below, users and data subjects have the right
- to confirmation of whether data concerning them is being processed, information about the data being processed, further information about the nature of the data processing, and copies of the data (cf. also Art. 15 GDPR);
- to correct or complete incorrect or incomplete data (cf. also Art. 16 GDPR);
- to the immediate deletion of data concerning them (cf. also Art. 17 DSGVO), or, alternatively, if further processing is necessary as stipulated in Art. 17 Para. 3 GDPR, to restrict said processing per Art. 18 GDPR;
- to receive copies of the data concerning them and/or provided by them and to have the same transmitted to other providers/controllers (cf. also Art. 20 GDPR);
- to file complaints with the supervisory authority if they believe that data concerning them is being processed by the controller in breach of data protection provisions (see also Art. 77 GDPR).
In addition, the controller is obliged to inform all recipients to whom it discloses data of any such corrections, deletions, or restrictions placed on processing the same per Art. 16, 17 Para. 1, 18 GDPR. However, this obligation does not apply if such notification is impossible or involves a disproportionate effort. Nevertheless, users have a right to information about these recipients.
Likewise, under Art. 21 GDPR, users and data subjects have the right to object to the controller’s future processing of their data pursuant to Art. 6 Para. 1 lit. f) GDPR. In particular, an objection to data processing for the purpose of direct advertising is permissible.
III. Information about the data processing
Your data processed when using our website will be deleted or blocked as soon as the purpose for its storage ceases to apply, provided the deletion of the same is not in breach of any statutory storage obligations or unless otherwise stipulated below.
Cookie Manager
To obtain consent for the use of technically unnecessary cookies on the website, the provider uses a cookie manager.
When the website is called up, a cookie with the settings information is stored on the end device of the user so that the request for consent does not have to be made on a subsequent visit.
The cookie is required to obtain legally compliant user consent.
You can prevent cookies from being installed by adjusting the settings on your internet browser.
Cookies
a) Session cookies
We use cookies on our website. Cookies are small text files or other storage technologies stored on your computer by your browser. These cookies process certain specific information about you, such as your browser, location data, or IP address.
This processing makes our website more user-friendly, efficient, and secure, allowing us, for example, to display our website in different languages or to offer a shopping cart function.
The legal basis for such processing is Art. 6 Para. 1 lit. b) GDPR, insofar as these cookies are used to collect data to initiate or process contractual relationships.
If the processing does not serve to initiate or process a contract, our legitimate interest lies in improving the functionality of our website. The legal basis is then Art. 6 Para. 1 lit. f) GDPR.
When you close your browser, these session cookies are deleted.
b) Third-party cookies
If necessary, our website may also use cookies from companies with whom we cooperate for the purpose of advertising, analyzing, or improving the features of our website.
Please refer to the following information for details, in particular for the legal basis and purpose of such third-party collection and processing of data collected through cookies.
c) Disabling cookies
You can refuse the use of cookies by changing the settings on your browser. Likewise, you can use the browser to delete cookies that have already been stored. However, the steps and measures required vary, depending on the browser you use. If you have any questions, please use the help function or consult the documentation for your browser or contact its maker for support. Browser settings cannot prevent so-called flash cookies from being set. Instead, you will need to change the setting of your Flash player. The steps and measures required for this also depend on the Flash player you are using. If you have any questions, please use the help function or consult the documentation for your Flash player or contact its maker for support.
If you prevent or restrict the installation of cookies, not all of the functions on our site may be fully usable.
Contact
If you contact us via email or the contact form, the data you provide will be used for the purpose of processing your request. We must have this data in order to process and answer your inquiry; otherwise we will not be able to answer it in full or at all.
The legal basis for this data processing is Art. 6 Para. 1 lit. b) GDPR.
Your data will be deleted once we have fully answered your inquiry and there is no further legal obligation to store your data, such as if an order or contract resulted therefrom.
Newsletter
If you register for our free newsletter, the data requested from you for this purpose, i.e. your email address and, optionally, your name and address, will be sent to us. We also store the IP address of your computer and the date and time of your registration. During the registration process, we will obtain your consent to receive this newsletter and the type of content it will offer, with reference made to this privacy policy. The data collected will be used exclusively to send the newsletter and will not be passed on to third parties.
The legal basis for this is Art. 6 Para. 1 lit. a) GDPR.
You may revoke your prior consent to receive this newsletter under Art. 7 Para. 3 GDPR with future effect. All you have to do is inform us that you are revoking your consent or click on the unsubscribe link contained in each newsletter.
Online job applications / publication of job advertisements
We offer you the opportunity to apply for jobs with our company via our website. In the case of these digital applications, we collect your application data electronically in order to process your application.
The legal basis for this processing is §26 Para. 1 S. 1 BDSG in conjunction with Art. 88 Para. 1 GDPR.
If you are hired as a result of the application process, we will store the data you provide during the application process in your personnel file for the purpose of the usual organizational and administrative process, naturally in compliance with further legal obligations.
The legal basis for this processing is §26 Para. 1 S. 1 BDSG in conjunction with Art. 88 Para. 1 GDPR.
If we do not hire you, we will automatically delete the data submitted to us two months after the final decision is made. We will not delete the data, however, if we must store the data for legal reasons such as evidence of equal treatment of applicants, until any legal action is concluded, or four months.
In this case, the legal basis is Art. 6 Para. 1 lit. f) GDPR and §24 Para. 1 No. 2 BDSG. Our legitimate interest lies in any legal defense we may have to mount .
If you expressly consent to a longer storage of your data, e.g. for your inclusion in a database of applicants or interested parties, the data will be processed further on the basis of your consent. The legal basis is then Art. 6 Para. 1 lit. a) GDPR. You may withdraw your consent at any time with future effect per Art. 7 Para. 3 GDPR with future effect.
Server data
For technical reasons, the following data sent by your internet browser to us or to our server provider will be collected, especially to ensure a secure and stable website: These server log files record the type and version of your browser, operating system, the website from which you came (referrer URL), the webpages on our site visited, the date and time of your visit, as well as the IP address from which you visited our site.
The data thus collected will be temporarily stored, but not in association with any other of your data.
The basis for this storage is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the improvement, stability, functionality, and security of our website.
The data will be deleted within no more than seven days, unless continued storage is required for evidentiary purposes. In which case, all or part of the data will be excluded from deletion until the investigation of the relevant incident is finally resolved.
Order processing
The data you submit when ordering goods and/or services from us will have to be processed in order to fulfill your order. Please note that orders cannot be processed without providing this data.
The legal basis for this processing is Art. 6 Para. 1 lit. b) GDPR.
After your order has been completed, your personal data will be deleted, but only after the retention periods required by tax and commercial law.
In order to process your order, we will share your data with the shipping company responsible for delivery to the extent required to deliver your order and/or with the payment service provider to the extent required to process your payment.
The legal basis for the transfer of this data is Art. 6 Para. 1 lit. b) GDPR.
We maintain an online presence on LinkedIn to present our company and our services and to communicate with customers/prospects. LinkedIn is a service of LinkedIn Ireland Unlimited Company, Wilton Plaza, Wilton Place, Dublin 2, Irland, a subsidiary of LinkedIn Corporation, 1000 W. Maude Avenue, Sunnyvale, CA 94085, USA.
We would like to point out that this might cause user data to be processed outside the European Union, particularly in the United States. This may increase risks for users that, for example, may make subsequent access to the user data more difficult. We also do not have access to this user data. Access is only available to LinkedIn.
The LinkedIn privacy policy can be found here:
https://www.linkedin.com/legal/privacy-policy
General introduction
General linking to third-party profiles
The provider includes a link on the website to the social media listed below.
The legal basis for this is Article 6 para. 1 lit. f GDPR. The legitimate interest of the provider is to improve the quality of use of the website.
The plugins are integrated via a linked graphic. The user is only forwarded to the service of the respective social media by clicking on the corresponding graphic.
After the customer has been forwarded, information about the user is recorded by the respective social media. This is initially data such as IP address, date, time and page visited. If the user is logged into his/her user account of the respective social media at the same time, the social media operator can, if required, assign the information collected from the user’s specific visit to the user’s personal account. If the user interacts via a “Share” button of the respective social media, this information can be stored in the user’s personal user account and, if required, be published. If the user wants to prevent the collected information from being directly assigned to his/her user account, the user must log out before clicking on the graphic. It is also possible to configure the respective user account accordingly.
The following social media are linked by the provider:
LinkedIn Ireland Unlimited Company, Wilton Plaza, Wilton Place, Dublin 2, Irland, a subsidiary of LinkedIn Corporation, 1000 W. Maude Avenue, Sunnyvale, CA 94085 USA.
Privacy Policy: https://www.linkedin.com/legal/privacy-policy
Google Analytics
We use Google Analytics on our website, a web analysis service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland, a subsidiary of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter referred to as “Google”.
Google Analytics helps us analyse website usage and measure the effectiveness of our marketing campaigns. The legal basis for this is Art. 6 para. 1 lit. a GDPR. The user can revoke consent to the use of Google Analytics in accordance with Art. 7 para. 3 GDPR at any time for the future via the “Cookie Settings” on our website.
Information such as time, location and frequency of website visits as well as interactions with the website (e.g. click paths, ads seen/clicked, clicks on links) including the user’s IP address are transferred to a Google server in the USA and stored there for a maximum of 2 months.
Google LLC is part of the “Data Privacy Framework”, for which the EU Commission has issued an adequacy decision in accordance with Art. 45 GDPR:
https://www.dataprivacyframework.gov/list
Google also records “demographic characteristics” and can create statistics that allow statements to be made about the age, gender and interests of site visitors. This is done through the automated analysis of advertising and information from third parties.
If the user has activated personalised ads in their Google account and agrees to Google Analytics, Google can analyse usage behaviour across devices – that is, across all devices that the user has linked to their Google account. Google creates models for cross-device conversions; only anonymous statistics are sent to us, no personal data.
If the user wishes to deactivate this cross-device analysis, he or she can deactivate the “Personalised Advertising” function in the settings of his or her Google account using the following link:
https://support.google.com/ads/answer/2662922?hl=de
We use Google Analytics with an anonymisation function. As a result, Google will shorten the user’s IP address within the EU member states or in other contracting states to the EEA Agreement.
Google uses the data collected to evaluate the user’s visit to the website and to compile reports on website activities for us. The data are also used to provide other services related to website and internet usage. Google may transfer this information to third parties where required by law, or where such third parties process the data on Google’s behalf.
According to Google, under no circumstances will the user’s IP address be linked to other Google data. Google offers further information and options for preventing data usage here:
https://www.google.com/intl/de/policies/privacy/partners
If the user does not agree to the collection, he or she can also prevent it by installing the browser add-on to deactivate Google Analytics.
Google Tag Manager
We use the Google Tag Manager to integrate various functions on our website. This product comes from Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland, a subsidiary of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter referred to as “Google”.
The Google Tag Manager is used exclusively to integrate certain content into our website and to enable the management of these functions via an interface provided by Google.
When you access the website, the corresponding functions are loaded from a Google server, which may also be located in the USA. The user’s IP address is processed in order to provide the functions.
The functions used are listed in our privacy policy. Any consent not granted by the user for certain functions will also be respected when using the Google Tag Manager.
Google LLC is also part of the “Data Privacy Framework”, for which the EU Commission has issued an adequacy decision pursuant to Art. 45 GDPR:
https://www.dataprivacyframework.gov/list
The legal basis for use is Art. 6 para. 1 lit. f GDPR. Our legitimate interest lies in the optimisation and economic operation of our website.
CloudFlare
To secure our website and to optimize loading times, we use the CloudFlare CDN (content delivery network). This is a service of Cloudflare Inc., 101 Townsend Street, San Francisco, California 94107, USA, hereinafter referred to as „CloudFlare“.
The legal basis for collecting and processing this information is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the secure operation of our website and in its optimization.
If you access our website, your queries are forwarded to CloudFlare servers. Statistical access data about your visit to our website is collected and CloudFlare stores a cookie on your terminal device via your browser. Access data includes
– your IP address;
– the page(s) on our site that you access;
– type and version of internet browser you are using;
– your operating system;
– the website from which you came prior to visiting our website (referrer URL);
– your length of stay on our site; and
– the frequency with which our pages are accessed.
The data is used by CloudFlare for statistical evaluations of the accesses as well as for the security and optimization of the offer.
If you do not agree to this processing, you have the option of preventing the installation of cookies by making the appropriate settings in your browser. Further details can be found in the section about cookies above.
CloudFlare offers further information about its data collection and processing as well your rights and your options for protecting your privacy at this link:
https://www.cloudflare.com/privacypolicy/.
Google Fonts
Our website uses Google Fonts to display external fonts. This is a service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland (hereinafter: Google).
To enable the display of certain fonts on our website, a connection to the Google server in the USA is established whenever our website is accessed.
The legal basis is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the optimization and economic operation of our site.
When you access our site, a connection to Google is established from which Google can identify the site from which your request has been sent and to which IP address the fonts are being transmitted for display.
Google offers detailed information at
https://adssettings.google.com/authenticated
https://policies.google.com/privacy
in particular on options for preventing the use of data.
Google reCAPTCHA
Our website uses Google reCAPTCHA to check and prevent automated servers („bots“) from accessing and interacting with our website. This is a service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland (hereinafter: Google).
This service allows Google to determine from which website your request has been sent and from which IP address the reCAPTCHA input box has been used. In addition to your IP address, Google may collect other information necessary to provide and guarantee this service.
The legal basis is Art. 6 Para. 1 lit. f) GDPR. Our legitimate interest lies in the security of our website and in the prevention of unwanted, automated access in the form of spam or similar.
Google offers detailed information at
https://policies.google.com/privacy
concerning the general handling of your user data.
Google AdWords with Conversion Tracking
Our website uses Google AdWords and conversion tracking. This is a service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland (hereinafter: Google).
We use conversion tracking to provide targeted promotion of our site. In case you have granted your consent to this processing the legal basis is Article 6 para. 1 lit. a GDPR. The legal basis can also be Article 6 para. 1 lit. f GDPR. Our legitimate interest lies in the analysis, optimization, and economic operation of our site.
If you click on an ad placed by Google, the conversion tracking we use stores a cookie on your device. These so-called conversion cookies expire after 30 days and do not otherwise identify you personally.
If the cookie is still valid and you visit a specific page of our website, both we and Google can evaluate that you clicked on one of our ads placed on Google and that you were then forwarded to our website.
The data collected in this way is in turn used by Google to provide us with an evaluation of visits to our website and what visitors do once there. In addition, we receive information about the number of users who clicked on our advertisement(s) as well as about the pages on our site that are subsequently visited. Neither we nor third parties who also use Google AdWords will be able to identify you from this conversion tracking.
You can also prevent or restrict the installation of cookies by making the appropriate settings in your browser. Likewise, you can use the browser to delete cookies that have already been stored. However, the steps and measures required vary, depending on the browser you use. If you have any questions, please use the help function or consult the documentation for your browser or contact its maker for support.
In addition, Google provides further information with regard to its data protection practices at
https://services.google.com/sitestats/de.html
https://www.google.com/policies/technologies/ads/
http://www.google.de/policies/privacy/
in particular information on how you can prevent the use of your data.
Google Remarketing
We use the remarketing function on our website. This is a service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland (hereinafter: Google).
We use this feature to deliver interest-based, personalized advertising on third-party websites that also participate in Google’s advertising network.
In case you have granted your consent to this processing the legal basis is Article 6 para. 1 lit. a GDPR. The legal basis can also be Article 6 para. 1 lit. f GDPR. Our legitimate interest lies in the analysis, optimization, and economic operation of our site.
To allow this advertising service to function, Google stores a cookie with a sequence of numbers on your device via your browser when you visit our website. This cookie records both your visit and the use of our website in anonymous form. However, personal data will not be passed on. If you subsequently visit a third-party website that also uses the Google advertising network, advertising may appear that refers to our website or our offers there.
To permanently disable this feature, Google provides a browser plugin for most common browsers at
https://www.google.com/settings/ads/plugin?hl=de
Likewise, the use of cookies from certain providers, e.g. via
http://www.youronlinechoices.com/uk/your-ad-choices/
or
http://www.networkadvertising.org/choices/
can be deactivated by opt-out.
Cross-device marketing allows Google to track your usage patterns across multiple devices, so you may see interest-based, personalized advertising even when you switch devices. However, this requires that you have agreed to link your browsing history to your existing Google account.
Google offers more information about Google Remarketing at
https://www.google.com/privacy/ads/
Microsoft Bing Ads
Our website uses Bing Ads for remarketing and follow-up. This is a service of Microsoft Corporation, One Microsoft Way, Redmond, WA 98052 – 6399, USA, hereinafter referred to as „Microsoft“, based on so-called Universal Event Tracking (UEN).
In case you have granted your consent to this processing the legal basis is Article 6 para. 1 lit. a GDPR. The legal basis can also be Article 6 para. 1 lit. f GDPR. Our legitimate interest lies in the analysis, optimization, and economic operation of our site.
If you click on an advertisement placed by us on the Bing search engine, Microsoft stores a cookie on your terminal device to track your activity via your browser. This cookie expires after 180 days and is not used for personal identification. If you visit certain pages of our website and the cookie has not yet expired, both Microsoft and we may recognize that you have clicked on an advertisement placed by us at Bing and have been forwarded to our website from there.
Microsoft uses the information collected by the tracking cookie to compile visit statistics for us. This provides us with information on the number of hits triggered by the advertising placed on Bing and which pages on our site were subsequently accessed. However, we do not receive any information that could be used to identify you personally.
In addition, Microsoft may be able to track your user behavior across multiple devices using cross-device tracking. This enables Microsoft to display personalized advertising across all devices.
If you do not agree to this processing, you have the option of preventing the installation of cookies by making the appropriate settings in your browser. Further details can be found in the section about cookies above.
If you have a Microsoft account, you can also change the settings for personalized advertising there at http://choice.microsoft.com/de-de/opt-out.
Microsoft also provides additional information about Bing Ads, the collection and use of data, and your rights and disclosures about how you can protect your privacy at https://help.bingads.microsoft.com/#apex/3/de/53056/2 and https://privacy.microsoft.com/de-de/privacystatement.
Model Data Protection Statement for Anwaltskanzlei Weiß & Partner