Privacy Policy
The controller within the meaning of data protection laws, in particular the EU General Data Protection Regulation (GDPR), is:
Medabsy GmbH
Your rights as a data subject
You may exercise the following rights at any time using the contact details of our data protection officer:
- Right of access to your data stored by us and its processing (Art. 15 GDPR),
- Right to rectification of inaccurate personal data (Art. 16 GDPR),
- Right to erasure of your data stored by us (Art. 17 GDPR),
- Right to restriction of processing if we are not yet allowed to delete your data due to legal obligations (Art. 18 GDPR),
- Right to object to the processing of your data by us (Art. 21 GDPR), and
- Right to data portability if you have consented to data processing or have entered into a contract with us (Art. 20 GDPR).
If you have given us your consent, you may revoke it at any time with effect for the future.
You may lodge a complaint with a supervisory authority at any time, e.g. the competent supervisory authority in the federal state of your residence or the authority responsible for us as the controller.
A list of supervisory authorities (for the non-public sector) with addresses can be found at: https://www.bfdi.bund.de/DE/Service/Anschriften/Laender/Laender-node.html.
Third-country transfers
The data collected may be transferred to the following third countries: no
The following data protection guarantees are in place: –
Registration on our website
Type and purpose of processing:
To register on our website, we require certain personal data that is transmitted to us via an input form.
At the time of registration, the following additional data is collected: no
Your registration is necessary to provide certain content and services on our website.
Legal basis:
Processing of the data entered during registration is based on the user's consent (Art. 6(1)(a) GDPR).
Recipients:
Recipients of the data may be technical service providers who act as processors for the operation and maintenance of our website.
Third-country transfers:
The data collected may be transferred to the following third countries: no
The following data protection guarantees are in place: –
Storage period:
Data is only processed in this context as long as the corresponding consent is in place.
Provision required or necessary:
The provision of your personal data is voluntary, based solely on your consent. Without the provision of your personal data, we cannot grant you access to our offered content.
Provision of chargeable services
Type and purpose of processing:
To provide chargeable services, we request additional data from you, such as payment details, in order to execute your order.
Legal basis:
Processing of the data required for the conclusion of the contract is based on Art. 6(1)(b) GDPR.
Recipients:
Recipients of the data may be processors.
Third-country transfers:
The data collected may be transferred to the following third countries: no
The following data protection guarantees are in place: –
Storage period:
We store this data in our systems until the statutory retention periods have expired. These are generally 6 or 10 years for proper accounting and tax law requirements.
Provision required or necessary:
The provision of your personal data is voluntary. Without the provision of your personal data, we cannot grant you access to our offered content and services.
Contact form
Type and purpose of processing:
The data you enter is stored for the purpose of individual communication with you. For this purpose, a valid email address and your name are required. This serves to assign the enquiry and respond to it. The provision of additional data is optional.
Legal basis:
Processing of the data entered in the contact form is based on a legitimate interest (Art. 6(1)(f) GDPR).
By providing the contact form, we aim to facilitate an uncomplicated way for you to get in touch. The information you provide is stored for the purpose of processing your enquiry and for any follow-up questions.
If you contact us to request a quotation, the processing of the data entered in the contact form is carried out for the performance of pre-contractual measures (Art. 6(1)(b) GDPR).
Recipients:
Recipients of the data may be processors.
Third-country transfers:
The data collected may be transferred to the following third countries: no
The following data protection guarantees are in place: –
Storage period:
Data is deleted at the latest 6 months after the enquiry has been processed.
If a contractual relationship arises, we are subject to the statutory retention periods under the German Commercial Code (HGB) and will delete your data after these periods have expired.
Provision required or necessary:
The provision of your personal data is voluntary. However, we can only process your enquiry if you provide us with your name, email address and the reason for your enquiry.
Use of script libraries (Google Web Fonts)
To display our content correctly and in a visually appealing manner across browsers, we use "Google Web Fonts" from Google LLC (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; hereinafter "Google") on this website for the display of fonts.
Further information on Google Web Fonts can be found at https://developers.google.com/fonts/faq and in Google's Privacy Policy: https://www.google.com/policies/privacy/.
SSL encryption
To protect the security of your data during transmission, we use state-of-the-art encryption methods (e.g. SSL) over HTTPS.
Information about your right to object pursuant to Art. 21 GDPR
Right to object on a case-by-case basis
You have the right to object at any time, on grounds relating to your particular situation, to the processing of personal data concerning you which is based on Art. 6(1)(f) GDPR (data processing on the basis of a balancing of interests); this also applies to profiling within the meaning of Art. 4(4) GDPR based on this provision.
If you object, we will no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing is for the establishment, exercise or defence of legal claims.
Recipient of an objection
info@medabsy.com
Changes to our privacy policy
We reserve the right to amend this privacy policy so that it always complies with current legal requirements or to implement changes to our services in the privacy policy, e.g. when introducing new services. The new privacy policy will then apply to your next visit.
Questions for the data protection officer
If you have any questions about data protection, please send us an email or contact the person responsible for data protection in our organisation directly:
This privacy policy was created with the assistance of activeMind AG, experts for external data protection officers (Version #2020-09-30).