Privacy Policy
When you use this website, personal data provided by you is processed by us and stored for the period necessary to fulfill the specified purposes and legal obligations. Personal data, according to Article 4 No. 1 of the General Data Protection Regulation (GDPR), includes all information relating to an identified or identifiable natural person (hereinafter referred to as "user").
This privacy policy informs you about what data is collected, how it is processed, and what rights you have in this regard.
We take the protection of your personal data very seriously and place the utmost importance on the security of your data and compliance with data protection regulations. We treat your personal data confidentially and in accordance with legal data protection requirements as well as with this privacy policy.
Please note, however, that data transmission over the Internet may have security vulnerabilities. A complete protection of your data from access by third parties cannot be guaranteed.
1. Name and Contact Details of the Data Controller
This privacy policy applies to the data processing on the website www.knobivital.de by
KnobiVital Naturheilmittel GmbH (hereinafter "KnobiVital")
Kellerbühlstr. 2
88239 Wangen im Allgäu
Tel.: +49 (0)7528 / 920 94 0
Fax: +49 (0)7528 / 920 94 12
E-Mail: info@knobivital.de
If you have any questions regarding data protection or your data subject rights, you may contact us at any time by phone, postal mail, or e-mail. You have the right to obtain free information about the origin, recipient, and purpose of your stored personal data at any time. Furthermore, you have the right to request the correction or deletion of this data. If you have given your consent to data processing, you can withdraw this consent at any time for the future. Additionally, you have the right, under certain circumstances, to request the restriction of the processing of your personal data. You also have the right to lodge a complaint with the appropriate supervisory authority.
2. Collection and Storage of Personal Data, as well as the Nature, Purpose, and Use Thereof
a) When Visiting the Website
When you access our website www.knobivital.de, your browser automatically sends information to our website’s server. This information is temporarily stored in a so-called log file. The information is collected automatically—or with your consent—when you visit our website by our IT systems. This primarily includes technical data that is collected without your intervention and stored until it is automatically deleted within 14 months:
- IP address of the requesting computer,
- Date and time of access,
- Name and URL of the requested file,
- Website from which the access originated (referrer URL),
- Browser type and version as well as other information transmitted by the browser (such as your computer’s operating system, the name of your access provider, geographic origin, language settings, etc.).
The aforementioned data is processed by us for the following purposes:
- Ensuring a smooth connection setup of the website,
- Ensuring a comfortable use of our website,
- Evaluation of system security and stability, and
- For further administrative purposes.
The legal basis for the data processing is Article 6(1) Sentence 1 lit. f GDPR. Our legitimate interest arises from the aforementioned purposes for data collection. Under no circumstances do we use the collected data to draw conclusions about your person. In addition, we use cookies and analytics services when you visit our website. Further details can be found in sections 8 and 9 of this privacy policy.
b) For a Telephone Order
When you order goods by phone, we collect the following information:
- Salutation, first name, last name,
- If available, a valid email address and fax number,
- Address,
- Telephone number,
- Date of birth
The collection of these data is carried out
- in order to identify you as our contractual partner,
- for order processing,
- and to create a customer profile in our customer database.
The processing of these data is carried out at your request and is necessary under Article 6(1) Sentence 1 lit. b GDPR for the fulfillment of the contract and pre-contractual measures. By creating a customer profile in our database, you gain maximum convenience for future orders through faster and easier purchase processing.
The personal data collected for your order will be stored until the expiration of the statutory warranty period and then automatically deleted, unless we are obliged under Article 6(1) Sentence 1 lit. c GDPR due to tax and commercial retention and documentation obligations (according to HGB, StGB, or AO) to store them for a longer period, or unless you have consented to extended storage under Article 6(1) Sentence 1 lit. a GDPR or Article 9(2) lit. a GDPR.
c) For an Order via Our Order Form
When you order goods through our order form on our website, we collect the following information:
- First name, last name,
- If available, a valid email address,
- Address,
- Telephone number
The collection of these data is carried out
- to identify you as our contractual partner,
- for order processing,
- and to create a customer profile in our customer database.
The processing of these data is carried out at your request and is necessary under Article 6(1) Sentence 1 lit. b GDPR for the fulfillment of the contract and pre-contractual measures. By creating a customer profile in our database, you gain maximum convenience for future orders through faster and easier purchase processing.
The personal data collected for your order will be stored until the expiration of the statutory warranty period and then automatically deleted, unless we are obliged under Article 6(1) Sentence 1 lit. c GDPR due to tax and commercial retention and documentation obligations (according to HGB, StGB, or AO) to store them for a longer period, or unless you have consented to extended storage under Article 6(1) Sentence 1 lit. a GDPR or Article 9(2) lit. a GDPR.
d) Contact Form
When you send us an inquiry via the contact form, the information you provide in the form, including your contact details, is stored for the purpose of processing your inquiry and for any follow-up questions. We do not share this data without your consent.
The processing of this data is based on Article 6(1) lit. b GDPR, as long as your inquiry is related to the fulfillment of a contract or necessary for pre-contractual measures. In all other cases, the processing is based on our legitimate interest in effectively handling inquiries addressed to us in accordance with Article 6(1) lit. f GDPR or on your consent pursuant to Article 6(1) lit. a GDPR if obtained; the consent can be withdrawn at any time.
The data you enter in the contact form will remain with us until you request its deletion, withdraw your consent for its storage, or the purpose of the data storage ceases (for example, after your inquiry has been processed). Mandatory legal provisions – particularly retention periods – remain unaffected.
e) When Using the Callback Service
For any inquiries, to express product preferences, questions, suggestions, or praise, we offer you the option of a callback service. To use this service, we require your first and last name and your telephone number.
Data processing is carried out at your request and is based on our legitimate interest under Article 6(1) Sentence 1 lit. f GDPR in the context of responding to a contact inquiry.
The personal data collected by us for the use of the callback service is stored in a customer database and deleted after your inquiry is resolved.
f) Registration on Our Website
You can register on our website to access additional features. The data you provide for this purpose is used solely for the purpose of enabling you to use the respective offer or service for which you have registered. The mandatory information requested during registration must be provided in full; otherwise, we will decline your registration.
For important changes—such as modifications in the scope of the offer or necessary technical changes—we use the email address provided during registration to inform you.
The processing of the data entered during registration is carried out for the purpose of managing the user relationship established by the registration and, if applicable, for the initiation of further contracts in accordance with Article 6(1) lit. b GDPR.
The data collected during registration is stored by us as long as you are registered on our website and is then deleted. Mandatory retention periods remain unaffected.
g) Inquiry by Email, Telephone, or Fax
If you contact us by email, telephone, or fax, your inquiry, including all personal data arising therefrom (name, inquiry), is stored and processed by us for the purpose of handling your request. We do not share this data without your consent.
The processing of this data is based on Article 6(1) lit. b GDPR, provided that your inquiry is related to the fulfillment of a contract or necessary for pre-contractual measures. In all other cases, the processing is based on our legitimate interest in effectively handling the inquiries addressed to us (Article 6(1) lit. f GDPR) or on your consent (Article 6(1) lit. a GDPR), if obtained; the consent can be withdrawn at any time.
The data you send to us via contact inquiries will remain with us until you request its deletion, withdraw your consent for its storage, or the purpose for the data storage ceases (for example, after your inquiry has been fully processed). Mandatory legal provisions – especially statutory retention periods – remain unaffected.
h) When Contacting via Facebook and Instagram
You are welcome to contact us via Facebook and Instagram. Please note that social media platforms themselves collect personal data—for example, through the information stored in your profile or data collected during use, or through so-called social plug-ins implemented on third-party websites. KnobiVital has no influence over the collection and processing of your personal data by social media platforms. For further information, please refer to the privacy notices of the respective social media.
Inquiries via social media are answered directly on those platforms. In the event that you provide us with your email address, we will contact you using that information. The data will be used solely for the purpose of responding to your inquiry.
3. Hosting
We host the content of our website with the provider Mittwald CM Service GmbH & Co. KG ("Mittwald"), Königsberger Str. 4-6, 32339 Espelkamp.
The use of Mittwald is based on Article 6(1) lit. f GDPR. We have a legitimate interest in ensuring the most reliable display of our website. If specific consent has been obtained, the processing is carried out solely on the basis of Article 6(1) lit. a GDPR and § 25(1) TTDSG, insofar as the consent covers the storage of cookies or access to information on the user's device (e.g., device fingerprinting) within the meaning of the TTDSG. This consent can be withdrawn at any time.
You can find details in Mittwald’s privacy policy: https://www.mittwald.de/datenschutz.
4. Data Processing for Advertising Purposes
a) Postal Advertising
We generally have a legitimate interest in using your data for marketing purposes. We collect the following data for our own marketing purposes:
- First name
- Last name
- Address
- Year of birth
- Telephone number
The legal basis for this is provided by Article 6(1) Sentence 1 lit. f GDPR.
We are also entitled to store additional personal data about you, collected in accordance with legal requirements, for our own marketing purposes. The aim is to provide you with personalized and relevant advertising while avoiding unnecessary promotions.
b) Loyalty Coupon
Each product carton contains a loyalty coupon. By collecting 10 KnobiVital loyalty points, the customer receives a free bottle of their choice. For this, the loyalty points must be returned to us along with a completed loyalty coupon that includes the name, address, telephone number, and the desired flavor. In order to dispatch the free bottle, it is necessary to create a customer account using the personal data you have provided. You will receive information about the created customer account with the delivery of the free bottle.
c) Refer a Friend
5. Newsletter
If you wish to subscribe to the newsletter offered on our website, we require an email address from you as well as information that allows us to verify that you are the owner of the provided email address and that you agree to receive the newsletter. No further data is collected, or only on a voluntary basis.
This website uses Rapidmail to send newsletters.
The provider is rapidmail GmbH, Augustinerplatz 2, 79098 Freiburg i.Br., Germany.
Rapidmail is a service that organizes and analyzes the sending of newsletters, among other things. The data you provide for the purpose of subscribing to the newsletter is stored on Rapidmail's servers in Germany.
Data Analysis by Rapidmail
For analytical purposes, the emails sent via Rapidmail contain a so-called "tracking pixel" that connects to Rapidmail’s servers when the email is opened. This allows it to be determined whether a newsletter message was opened. Furthermore, using Rapidmail, we can determine whether and which links in the newsletter have been clicked. All links in the email are tracking links that count your clicks.
If you do not wish to have your data analyzed by Rapidmail, you must unsubscribe from the newsletter. A corresponding link is provided in every newsletter message.
For further details on the analytical functions of Rapidmail, please refer to the following link: https://de.rapidmail.wiki/kategorien/statistiken/.
Data processing is carried out on the basis of your consent (Article 6(1) lit. a GDPR). You can withdraw this consent at any time. The lawfulness of the data processing already carried out remains unaffected by the withdrawal.
The data you provide for the purpose of subscribing to our newsletter will be stored by us (or by Rapidmail) until you unsubscribe from the newsletter and will be deleted from the mailing list after the newsletter is cancelled. Data stored for other purposes remain unaffected.
After you unsubscribe from the newsletter, your email address may be stored by us (or by Rapidmail) in a blacklist if necessary to prevent future mailings. The data in the blacklist is used solely for this purpose and is not merged with other data. This serves both your interest and our interest in complying with legal requirements for sending newsletters (legitimate interest under Article 6(1) lit. f GDPR). The storage in the blacklist is not time-limited. You may object to such storage if your interests outweigh our legitimate interest.
For further information, please refer to Rapidmail’s data security guidelines at: https://www.rapidmail.de/datensicherheit.
6. Social Media
a) Facebook
This website incorporates elements of the social network Facebook.
The provider of this service is the Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland.
According to Facebook, the data collected is also transferred to the USA and other third countries. An overview of the Facebook social media elements can be found here: https://developers.facebook.com/docs/plugins/?locale=de_DE.
When the social media element is active, a direct connection is established between your device and Facebook’s server. Facebook thereby receives the information that you have visited this website with your IP address. If you click the Facebook "Like" button while logged into your Facebook account, you can link the content of this website to your Facebook profile.
This enables Facebook to associate your visit to this website with your user account. Please note that, as the provider of the pages, we do not have access to the content of the transmitted data or its use by Facebook. For further information, please refer to Facebook’s privacy policy at:
https://de-de.facebook.com/privacy/explanation.
If consent has been obtained, the use of the aforementioned service is based on Article 6(1) lit. a GDPR and § 25 TTDSG. Consent may be withdrawn at any time. If no consent has been obtained, the service is used on the basis of our legitimate interest in achieving the broadest possible visibility on social media.
If personal data is collected on our website using the tool described here and transmitted to Facebook, we and Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland are jointly responsible for this data processing (Article 26 GDPR). This joint responsibility is limited solely to the collection of the data and its transmission to Facebook. The subsequent processing by Facebook is not part of the joint responsibility. Our respective obligations have been documented in an agreement on joint processing. The text of the agreement can be found here: https://www.facebook.com/legal/controller_addendum. According to this agreement, we are responsible for providing the privacy information when using the Facebook tool and for ensuring a data protection compliant implementation of the tool on our website.
Facebook is responsible for the data security of its products. Data subject rights (e.g., requests for information) regarding the data processed by Facebook can be exercised directly with Facebook. If you exercise your data subject rights with us, we are obliged to forward them to Facebook.
The data transfer to the USA is based on the standard contractual clauses of the EU Commission.
Details can be found here:
https://www.facebook.com/legal/EU_data_transfer_addendum,
https://de-de.facebook.com/help/566994660333381 and
https://www.facebook.com/policy.php.
b) Instagram
Functions of the Instagram service are integrated into this website. These functions are provided by Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland.
When the social media element is active, a direct connection is established between your device and the Instagram server. Instagram thereby receives information about your visit to this website. If you are logged into your Instagram account, by clicking the Instagram button you can link the content of this website to your Instagram profile. This allows Instagram to associate your visit to this website with your user account. Please note that, as the provider of the pages, we do not have knowledge of the content of the transmitted data or its use by Instagram.
If consent has been obtained, the use of the aforementioned service is based on Article 6(1) lit. a GDPR and § 25 TTDSG. Consent may be withdrawn at any time. If consent has been obtained, the service is used on the basis of our legitimate interest in achieving the broadest possible visibility on social media.
If personal data is collected on our website using the tool described here and transmitted to Facebook or Instagram, we and Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland are jointly responsible for this data processing (Article 26 GDPR). This joint responsibility is limited exclusively to the collection of the data and its transmission to Facebook or Instagram. The subsequent processing by Facebook or Instagram is not part of the joint responsibility. Our mutual obligations have been documented in an agreement on joint processing. The text of the agreement can be found here: https://www.facebook.com/legal/controller_addendum. According to this agreement, we are responsible for providing the privacy information when using the Facebook or Instagram tool and for ensuring a data protection compliant implementation of the tool on our website.
Facebook is responsible for the data security of the Facebook and Instagram products. Data subject rights (e.g., requests for information) regarding the data processed by Facebook or Instagram can be exercised directly with Facebook. If you exercise your data subject rights with us, we are obliged to forward them to Instagram.
The data transfer to the USA is based on the standard contractual clauses of the EU Commission.
Details can be found here:
https://www.facebook.com/legal/EU_data_transfer_addendum,
https://help.instagram.com/519522125107875 and
https://de-de.facebook.com/help/566994660333381.
For further information, please refer to Instagram’s privacy policy: https://instagram.com/about/legal/privacy/.
7. Data Disclosure
Your personal data is not transmitted to third parties for purposes other than those listed below.
In the event of explicit consent to the transmission of personal data to third countries, data processing is additionally carried out on the basis of Article 49(1) lit. a GDPR. If you have consented to the storage of cookies or access to information on your device (e.g., via device fingerprinting), the data processing is additionally based on § 25(1) TTDSG. Such consent can be withdrawn at any time.
a) For Contract Execution
Where legally permissible and as required under Article 6(1) Sentence 1 lit. b GDPR for the execution of contractual relationships with you, your personal data will be disclosed to third parties. The data transmitted to the third party may only be used for this purpose.
The following data will be transmitted for the purpose of delivering the ordered goods to our shipping service provider, DHL Paketdienst in Germany or Herzog in Austria:
- First name
- Last name
- Address
- Invoice number
b) For Other Purposes
Furthermore, we only disclose your personal data to third parties if:
- You have given your explicit consent pursuant to Article 6(1) Sentence 1 lit. a GDPR,
- the disclosure is necessary for the assertion, exercise, or defense of legal claims pursuant to Article 6(1) Sentence 1 lit. f GDPR and there is no reason to assume that you have a predominant interest in keeping your data confidential,
- or in the case that there is a legal obligation for disclosure pursuant to Article 6(1) Sentence 1 lit. c GDPR.
8. Cookies
We use cookies on our site. These are small files that your browser automatically creates and stores on your device (laptop, tablet, smartphone, etc.) when you visit our site. Cookies do not harm your device and do not contain viruses, Trojan horses, or other malicious software.
The cookie stores information that is associated with the specific device on which it is used. However, this does not mean that we immediately obtain knowledge of your identity.
The use of cookies is intended, on the one hand, to make your use of our offer more pleasant. For example, we use session cookies to recognize that you have already visited certain pages on our website. These are automatically deleted when you leave our site.
In addition, we also use temporary cookies for optimizing usability that are stored on your device for a specified period. When you visit our site again to use our services, it is automatically recognized that you have already been here and which entries and settings you have made, so you do not have to enter them again.
Furthermore, we use cookies to record statistically the use of our website and to analyze it for the purpose of optimizing our offer for you (see section 7). These cookies enable us to automatically recognize that you have already visited our site on subsequent visits. These cookies are automatically deleted after a defined period.
The data processed via cookies is necessary for the purposes mentioned to safeguard our legitimate interests as well as those of third parties in accordance with Article 6(1) Sentence 1 lit. f GDPR. If consent for the storage of cookies and similar recognition technologies has been obtained, the processing is carried out solely on the basis of that consent pursuant to Article 6(1) lit. a GDPR and § 25(1) TTDSG. The consent can be withdrawn at any time.
Most browsers accept cookies automatically. However, you can configure your browser so that no cookies are stored on your computer or that a prompt is displayed before a new cookie is created. Please note that completely disabling cookies may result in not being able to use all functions of our website.
An overview of the cookies we use, as well as instructions for disabling them, can be found here.
a) Consent with Cookiebot
Our website uses the consent technology from Cookiebot to obtain your consent for the storage of certain cookies on your device or for the use of certain technologies, and to document this in a manner compliant with data protection regulations.
The provider of this technology is Cybot A/S, Havnegade 39, 1058 Copenhagen, Denmark (hereinafter "Cookiebot").
When you visit our website, a connection is established with the servers of Cookiebot to obtain your consents and other declarations regarding cookie usage. Cookiebot then stores a cookie in your browser to associate the granted consents or their withdrawal with you. The data collected in this manner is stored until you request its deletion, delete the Cookiebot cookie yourself, or the purpose for data storage ceases. Mandatory legal retention periods remain unaffected.
The use of Cookiebot is implemented to obtain the legally required consents for the use of cookies. The legal basis for this is Article 6(1) lit. c GDPR.
b) Consent with ConsentManager
Our website uses the consent technology from ConsentManager to obtain your consent for the storage of certain cookies on your device or for the use of certain technologies, and to document this in a manner compliant with data protection regulations.
The provider of this technology is Jaohawi AB, Håltegelvägen 1b, 72348 Västerås, Sweden, https://www.consentmanager.de (hereinafter "ConsentManager").
When you visit our website, a connection is established with the servers of ConsentManager to obtain your consents and other declarations regarding cookie usage. ConsentManager then stores a cookie in your browser to associate the granted consents or their withdrawal with you. The data collected in this way is stored until you request its deletion, delete the ConsentManager provider cookie yourself, or the purpose for data storage ceases.
Mandatory legal retention periods remain unaffected.
The use of ConsentManager is implemented to obtain the legally required consents for the use of cookies. The legal basis for this is Article 6(1) lit. c GDPR.
c) Server Log Files
The provider of the website automatically collects and stores information in so-called server log files, which your browser automatically transmits to us.
This includes:
- Browser type and version
- Operating system used
- Referrer URL
- Hostname of the accessing computer
- Time of the server request
- IP address
These data are not merged with other data sources. The collection of this data is carried out on the basis of Article 6(1) lit. f GDPR. We have a legitimate interest in ensuring the technically flawless display and optimization of our website – for this purpose, server log files must be collected.
9. Analytics, Tracking Tools, and Advertising
When you visit this website, your browsing behavior may be statistically analyzed. This is mainly done with so-called analytics programs. The analytics and tracking measures listed below, which we use, are carried out on the basis of Article 6(1) Sentence 1 lit. f GDPR.
With the analytics and tracking measures in place, we aim to ensure that our website is tailored to your needs and continuously optimized. Furthermore, we use these measures to statistically record the usage of our website and to analyze it for the purpose of optimizing our offer for you. These interests are regarded as legitimate in the sense of the aforementioned regulation.
The respective purposes of data processing and data categories can be found in the respective tracking tools.
Note on Data Transfer to the USA and Other Third Countries
We use, among other things, tools from companies based in the USA or other third countries that do not offer a level of data protection comparable to that of the EU. When these tools are active, your personal data may be transferred to and processed in these third countries. Please note that these countries may not guarantee a level of data protection comparable to the EU. For example, US companies are obliged to provide personal data to security authorities without you, as the data subject, being able to take legal action against this. It cannot be ruled out that US authorities (e.g., intelligence agencies) may process, evaluate, and permanently store your data located on US servers for surveillance purposes. We have no control over these processing activities.
a) Google Analytics
We use Google Analytics on our website, a web analysis service provided by Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland.
Google Analytics allows us to analyze user behavior. In this context, pseudonymized usage profiles are created and cookies are used. The information generated by the cookie about your use of this website, such as
- Browser type/version,
- Operating system used,
- Referrer URL (the previously visited page),
- Hostname of the accessing computer (IP address),
- Time of the server request,
is transmitted to a server of Google in the USA and stored there.
Furthermore, with Google Analytics we can record, among other things, your mouse and scroll movements and clicks. Additionally, Google Analytics uses various modeling approaches to supplement the collected data sets and employs machine learning technologies in data analysis. Google Analytics uses technologies that allow for the re-identification of the user for the purpose of analyzing user behavior (e.g., cookies or device fingerprinting).
Google Signals
We use Google Signals. When you visit our website, Google Analytics captures, among other things, your location, search history, and YouTube history as well as demographic data (visitor data). This data can be used with Google Signals for personalized advertising. If you have a Google account, the visitor data from Google Signals will be linked to your account and used for personalized advertising messages. The data is also used to create anonymized statistics on the behavior of our users.
Google Analytics E-Commerce Measurement
Our website uses the "E-Commerce Measurement" feature of Google Analytics. With the help of E-Commerce Measurement, we can analyze your purchasing behavior to improve our online marketing campaigns. This includes collecting information such as orders placed, average order values, shipping costs, and the time from viewing a product to purchasing it. These data may be consolidated by Google under a transaction ID that is associated with the respective user or device.
Google observes the data protection regulations of the "EU/US Privacy Shield" and is registered under the "US Privacy Shield" program of the US Department of Commerce. The data transfer to the USA is based on the standard contractual clauses of the EU Commission.
Details can be found here:
https://privacy.google.com/businesses/controllerterms/mccs/.
Additionally, we have concluded a data processing agreement with Google for the use of Google Analytics and fully adhere to the strict requirements of the German data protection authorities in using Google Analytics. Through this agreement, Google assures that it processes the data in accordance with the GDPR and ensures the protection of the rights of the data subject.
The information is used to analyze website usage, compile reports on website activities, and provide additional services related to website and internet use for the purposes of market research and tailored design of these websites. These data may also be transmitted to third parties if required by law or if third parties process this data on our behalf. In no event will your IP address be merged with other data from Google. The IP addresses are anonymized (IP masking) so that identification is not possible.
The use of this service is based on your consent under Article 6(1) lit. a GDPR and §25(1) TTDSG. This consent can be withdrawn at any time.
Browser Plugin
You can prevent the installation of cookies by configuring your browser software accordingly. However, please note that in this case, not all functions of this website may be available.
Furthermore, you can prevent the collection of data generated by the cookie in relation to your use of the website (including your IP address) and the processing of this data by Google by downloading and installing a browser add-on: http://tools.google.com/dlpage/gaoptout?hl=de.
Alternatively, particularly for browsers on mobile devices, you can also prevent data collection by Google Analytics by clicking on this link. An opt-out cookie will be set that prevents the future collection of your data when visiting this website. The opt-out cookie is only valid in this browser and only for our website and is stored on your device. If you delete the cookies in this browser, you will need to set the opt-out cookie again.
For further information on data protection in connection with Google Analytics, please refer to the Google Analytics Help: https://support.google.com/analytics/answer/6004245?hl=de.
b) Google Ads
KnobiVital uses Google Ads. Google Ads is an online advertising program of Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland.
Google Ads allows us to display advertisements in the Google search engine or on third-party websites when users enter certain search terms on Google (keyword targeting). Furthermore, targeted advertisements can be displayed based on user data available at Google (e.g., location data and interests) (audience targeting). We can quantitatively evaluate this data by analyzing, for example, which search terms led to the display of our advertisements and how many advertisements led to corresponding clicks.
The use of this service is based on your consent pursuant to Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG. Consent can be revoked at any time.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission.
Details can be found here:
https://policies.google.com/privacy/frameworks
and
https://privacy.google.com/businesses/controllerterms/mccs/.
c) Google Tag Manager
We use Google Tag Manager. The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.
The Google Tag Manager is a tool that allows us to integrate tracking or statistical tools and other technologies on our website. The Google Tag Manager itself does not create user profiles, store cookies, or perform independent analyses. It serves only for the management and delivery of the tools integrated through it. However, the Google Tag Manager captures your IP address, which may also be transmitted to Google's parent company in the United States.
The use of Google Tag Manager is based on Art. 6 (1) lit. f GDPR. We have a legitimate interest in the quick and uncomplicated integration and management of various tools on our website. If a corresponding consent has been requested, processing is carried out exclusively on the basis of Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG, insofar as the consent includes the storage of cookies or access to information on the user's end device (e.g., device fingerprinting) within the meaning of the TTDSG. Consent can be revoked at any time.
Further information on Google Tag Manager can be found in the usage guidelines for this product.
d) Google Ads Remarketing
This website uses the functions of Google Ads Remarketing. The provider is Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland.
With Google Ads Remarketing, we can assign people who interact with our online offering to specific target groups in order to subsequently display interest-based advertising to them in the Google advertising network (remarketing or retargeting). Furthermore, the advertising target groups created with Google Ads Remarketing can be linked to Google's cross-device functions. In this way, interest-based, personalized advertising messages that have been adapted to you based on your previous usage and surfing behavior on one device (e.g., mobile phone) can also be displayed on another of your devices (e.g., tablet or PC).
If you have a Google account, you can object to personalized advertising at the following link: https://www.google.com/settings/ads/onweb/.
The use of this service is based on your consent pursuant to Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG. Consent can be revoked at any time.
Further information and the privacy policy can be found in Google's privacy policy at:
https://policies.google.com/technologies/ads?hl=de.
Audience Building with Customer Matching
For audience building, we use, among other things, the customer matching of Google Ads Remarketing. In this process, we transfer certain customer data (e.g., email addresses) from our customer lists to Google. If the relevant customers are Google users and logged into their Google account, they will be shown matching advertising messages within the Google network (e.g., on YouTube, Gmail, or in the search engine).
e) Google Conversion Tracking
This website uses Google Conversion Tracking. The provider is Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland.
With the help of Google Conversion Tracking, Google and we can recognize whether the user has performed certain actions. For example, we can evaluate which buttons on our website were clicked how often. This information is used to create conversion statistics. We learn the total number of users who clicked on our advertisements and what actions they performed. We do not receive any information with which we can personally identify the user. Google itself uses cookies or comparable recognition technologies for identification. These cookies lose their validity after 30 days. If the user visits certain pages of the AdWords customer's website and the cookie has not yet expired, Google and the customer can recognize that the user clicked on the advertisement and was redirected to this page. Each AdWords customer receives a different cookie. Cookies cannot be tracked across AdWords customers' websites.
The use of this service is based on your consent pursuant to Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG. Consent can be revoked at any time.
The information generated by the cookie about your use of this website is transmitted to a Google server in the USA and stored there. Google complies with the "US Privacy Shield" privacy policy and is registered with the "US Privacy Shield" program of the US Department of Commerce.
Additionally, we have concluded a data processing agreement with Google for the use of Google AdWords. Through this agreement, Google assures that they process the data in accordance with the General Data Protection Regulation and ensure the protection of the rights of the data subject.
If you do not want to participate in the tracking procedure, you can also reject the setting of a cookie required for this - for example, via browser settings that generally deactivate the automatic setting of cookies. You can also deactivate cookies for conversion tracking by setting your browser to block cookies from the domain "www.googleadservices.com".
More information on Google Conversion Tracking can be found in Google's privacy policy: https://policies.google.com/privacy?hl=de.
f) Facebook Pixel
This website uses the visitor action pixel from Facebook for conversion measurement. The provider of this service is Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland. However, according to Facebook, the collected data is also transferred to the USA and other third countries.
Through the Facebook pixel, the behavior of page visitors can be tracked after they have been redirected to the provider's website by clicking on a Facebook advertisement. This allows the effectiveness of Facebook advertisements to be evaluated for statistical and market research purposes and future advertising measures to be optimized.
The collected data is anonymous for us, we cannot draw any conclusions about the identity of the users. However, the data is stored and processed by Facebook, so that a connection to the respective user profile is possible and Facebook can use the data for its own advertising purposes, in accordance with the Facebook Data Usage Policy. This enables Facebook to place advertisements on Facebook pages as well as outside of Facebook. This use of the data cannot be influenced by us.
The use of this service is based on your consent pursuant to Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG. Consent can be revoked at any time.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission.
Details can be found here:
https://www.facebook.com/legal/EU_data_transfer_addendum
and
https://de-de.facebook.com/help/566994660333381.
To the extent that personal data is collected on our website with the help of the tool described here and forwarded to Facebook, we and Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland are jointly responsible for this data processing (Art. 26 GDPR). The joint responsibility is limited exclusively to the collection of the data and its forwarding to Facebook. The processing by Facebook after the forwarding is not part of the joint responsibility. The obligations incumbent on us jointly have been set out in an agreement on joint processing. The text of the agreement can be found at: https://www.facebook.com/legal/controller_addendum. According to this agreement, we are responsible for providing the privacy information when using the Facebook tool and for the privacy-secure implementation of the tool on our website.
Facebook is responsible for the data security of Facebook products. Data subject rights (e.g., requests for information) regarding the data processed at Facebook can be asserted directly with Facebook. If you assert the data subject rights with us, we are obliged to forward them to Facebook.
In Facebook's privacy notices, you will find further information on the protection of your privacy: https://de-de.facebook.com/about/privacy/.
You can also deactivate the "Custom Audiences" remarketing function in the ad settings section at
https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. You must be logged into Facebook to do this.
If you do not have a Facebook account, you can deactivate usage-based advertising from Facebook on the website of the European Interactive Digital Advertising Alliance: http://www.youronlinechoices.com/de/praferenzmanagement/.
10. Plugins and Tools
a) YouTube
Our website embeds videos from the YouTube website. The provider is Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland.
We use YouTube in extended privacy mode. According to YouTube, this mode means that YouTube does not store any information about visitors to this website before they watch the video. However, the extended privacy mode does not necessarily exclude the sharing of data with YouTube partners. Thus, YouTube - regardless of whether you watch a video - establishes a connection to the Google DoubleClick network. As soon as you start a YouTube video on this website, a connection to YouTube's servers is established. The YouTube server is informed which of our pages you have visited. If you are logged into your YouTube account, you enable YouTube to assign your surfing behavior directly to your personal profile. You can prevent this by logging out of your YouTube account.
Furthermore, YouTube can store various cookies on your device after starting a video or use comparable recognition technologies (e.g., device fingerprinting). In this way, YouTube can obtain information about visitors to this website. This information is used, among other things, to collect video statistics, improve user-friendliness, and prevent fraud attempts. After starting a YouTube video, further data processing operations may be triggered, over which we have no influence.
The use of YouTube is in the interest of an appealing presentation of our online offerings. This represents a legitimate interest within the meaning of Art. 6 (1) lit. f GDPR. If a corresponding consent has been requested, processing is carried out exclusively on the basis of Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG, insofar as the consent includes the storage of cookies or access to information on the user's end device (e.g., device fingerprinting) within the meaning of the TTDSG. Consent can be revoked at any time.
Further information on data protection at YouTube can be found in their privacy policy at: https://policies.google.com/privacy?hl=de.
b) Vimeo
This website uses plugins from the video portal Vimeo. The provider is Vimeo Inc., 555 West 18th Street, New York, New York 10011, USA.
When you visit one of our pages equipped with a Vimeo video, a connection to Vimeo's servers is established. The Vimeo server is informed which of our pages you have visited. Vimeo also obtains your IP address. This also applies if you are not logged into Vimeo or do not have a Vimeo account. The information collected by Vimeo is transmitted to the Vimeo server in the USA.
If you are logged into your Vimeo account, you enable Vimeo to assign your surfing behavior directly to your personal profile. You can prevent this by logging out of your Vimeo account. For the recognition of website visitors, Vimeo uses cookies or comparable recognition technologies (e.g., device fingerprinting).
The use of Vimeo is in the interest of an appealing presentation of our online offerings. This represents a legitimate interest within the meaning of Art. 6 (1) lit. f GDPR. If a corresponding consent has been requested, processing is carried out exclusively on the basis of Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG, insofar as the consent includes the storage of cookies or access to information on the user's end device (e.g., device fingerprinting) within the meaning of the TTDSG. Consent can be revoked at any time.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission and, according to Vimeo, on "legitimate business interests". Details and further information on the handling of user data can be found in Vimeo's privacy policy at: https://vimeo.com/privacy.
c) Google Fonts (Local Hosting)
Our website uses so-called Google Fonts, provided by Google, for the uniform display of fonts. The Google Fonts are installed locally. A connection to Google servers does not take place.
Further information on Google Fonts can be found at
https://developers.google.com/fonts/faq and in Google's privacy policy:
https://policies.google.com/privacy?hl=de.
d) Google Maps
We use Google Maps to display an interactive location map and to create directions. The provider is Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland.
By using Google Maps, information about the use of our website, including your IP address and the (start) address entered as part of the route planning function, can be transmitted to Google in the USA. This information is usually transmitted to a Google server in the USA and stored there. The provider of this page has no influence on this data transmission.
When Google Maps is activated, Google may use Google Fonts for the purpose of uniform font display. When you access Google Maps, your browser loads the required web fonts into your browser cache to display texts and fonts correctly.
The map content is transmitted directly from Google to your browser and integrated into the website by it. Therefore, we have no influence on the scope of the data collected by Google in this way. According to our knowledge, this includes the following data:
- Date and time of the visit to our website,
- Internet address or URL of our website,
- IP address, (start) address entered as part of route planning.
The use of Google Maps is in the interest of an appealing presentation of our online offerings and an easy findability of the places we have indicated on the website. This represents a legitimate interest within the meaning of Art. 6 (1) lit. f GDPR. If a corresponding consent has been requested, processing is carried out exclusively on the basis of Art. 6 (1) lit. a GDPR and § 25 (1) TTDSG, insofar as the consent includes the storage of cookies or access to information on the user's end device (e.g., device fingerprinting) within the meaning of the TTDSG. Consent can be revoked at any time.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission.
Details can be found here:
https://privacy.google.com/businesses/gdprcontrollerterms/
and
https://privacy.google.com/businesses/gdprcontrollerterms/sccs/.
If you do not want Google to collect, process, or use data about you via our website, you can deactivate JavaScript in your browser settings. However, you will not be able to use the map display in this case.
More information on the handling of user data can be found in Google's privacy policy: https://policies.google.com/privacy?hl=de.
11. eCommerce and Payment Providers
Processing of Customer and Contract Data
Data Transfer upon Conclusion of Contract for Online Shops, Merchants, and Goods Shipping
Payment Services
PayPal
https://www.paypal.com/de/webapps/mpp/ua/pocpsa-full.
https://www.paypal.com/de/webapps/mpp/ua/privacy-full
12. Data Subject Rights
You have the right:
- pursuant to Art. 15 GDPR to request information about your personal data processed by us. In particular, you can request information about the processing purposes, the category of personal data, the categories of recipients to whom your data has been or will be disclosed, the planned storage period, the existence of a right to rectification, erasure, restriction of processing or objection, the existence of a right of complaint, the origin of your data, insofar as it was not collected by us, as well as the existence of automated decision-making including profiling and, if applicable, meaningful information about its details;
- pursuant to Art. 16 GDPR to immediately request the rectification of incorrect or completion of your personal data stored by us;
- pursuant to Art. 17 GDPR to request the erasure of your personal data stored by us, insofar as the processing is not necessary for the exercise of the right to freedom of expression and information, for the fulfillment of a legal obligation, for reasons of public interest, or for the assertion, exercise, or defense of legal claims;
- pursuant to Art. 18 GDPR to request the restriction of processing of your personal data, insofar as the accuracy of the data is contested by you, the processing is unlawful, but you refuse its erasure and we no longer need the data, but you need it for the assertion, exercise, or defense of legal claims, or you have lodged an objection to the processing pursuant to Art. 21 GDPR;
- pursuant to Art. 20 GDPR to receive your personal data that you have provided to us in a structured, commonly used, and machine-readable format or to request transmission to another controller;
- pursuant to Art. 7 (3) GDPR to revoke your once given consent to us at any time. This has the consequence that we may no longer continue the data processing that was based on this consent for the future and
- pursuant to Art. 77 GDPR to lodge a complaint with a supervisory authority. As a rule, you can contact the supervisory authority of your usual place of residence or workplace or our company headquarters.
13. Right to Object
If your personal data is processed on the basis of legitimate interests pursuant to Art. 6 (1) lit. e GDPR (data processing in the public interest) and Art. 6 (1) sentence 1 lit. f GDPR (data processing on the basis of a balancing of interests), you have the right to object to the processing of your personal data pursuant to Art. 21 (1) GDPR, insofar as there are reasons for this that arise from your particular situation.
If you lodge an objection, we will no longer process your personal data, unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights, and freedoms, or the processing serves the assertion, exercise, or defense of legal claims.
If your personal data is processed for the purpose of direct marketing, you have the right pursuant to Art. 21 (2) GDPR to object at any time to the processing of personal data concerning you for the purpose of such advertising. This also applies to profiling, insofar as it is associated with such direct marketing. If you object, your personal data will subsequently no longer be used for the purpose of direct marketing.
If you wish to exercise your right to object, an email to info@knobivital.de or an objection by post is sufficient.
14. Data Security
For security reasons and to protect the transmission of confidential content, such as orders or requests that you send to us, our website uses SSL or TLS encryption. TLS is a secure and proven standard that is also used, for example, in online banking. You can recognize an encrypted connection by the fact that the address line of the browser changes from "http://" to "https://" and by the lock symbol in the lower area of your browser.
If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
We also use appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction, or unauthorized access by third parties. Our security measures are continuously improved in line with technological developments.
Encrypted Payment Traffic on This Website
15. Currency and Amendment of This Privacy Policy
This privacy policy is currently valid and has the status of March 2024.
Due to the further development of our website and offers or due to changed legal or official requirements, it may become necessary to change this privacy policy. The current privacy policy can be accessed and printed at any time on our website at https://www.knobivital.de/datenschutz.html.