Data protection statement
Your privacy is important to us. You should feel safe with us. Therefore we and our data protection officer ensure that the statutory data protection requirements are complied with, in particular, the European General Data Protection Regulations (GDPR), effective since 25 May 2018, and the German Data Protection Act (BDSG-new). In the following, we would like to inform you for what purposes your data is collected and used and how you can exercise your rights. You can retrieve the Data Protection Statement at any time by clicking the “Data protection“ tab at the bottom of each page of our online-shop and print it out.
Our EDP systems are secured with technical and organisational measures against unauthorised persons accessing, changing or disseminating your data as well as against loss and destruction.
Name and contact information of the controller
Phone: +49 800 3905 000
Contact information of the data protection officer
If you as a customer or employee have questions about the handling of your data in line with data protection laws, there are two ways for you to have your questions answered or to transmit your request:
- For general queries about data protection and requests for information, please contact the BAUHAUS data protection team at firstname.lastname@example.org by providing exact details of your request and your contact address
- For special queries you also contact the appointed data protection officer directly at any time: email@example.com or +49 621/3905-9801.
Purpose and legal basis of data processing
You can rest assured: We process your data in the central customer data administration of the German BAUHAUS companies (www.bauhaus.info/gesellschaften) only to fulfil your requests, fulfil and perform contracts (incl. the handling of payments), for our own advertising purposes and to meet our legal obligations. Processing occurs on the basis of the EU GDPR and German Data Protection Act.
We use the data that you enter into the form “Your personal data” to answer your query, to implement pre-contractual measures and, should contracts be concluded, to perform the contracts.
Legal basis for data processing is Art 6 (1) b GDPR.
Other data is automatically collected by our IT systems when you visit the website. This is mainly technical data (e.g. internet browser, operating system or time of retrieving the page). This data is collected automatically as soon as you open our website.
The data is stored in order to determine the winner at the end of the competition.
Server log files
The provider of the pages automatically collects and stores information in so-called server log files that your browser transmits to us automatically. This is:
- browser type and browser version
- operating system used
- referrer URL
- host name of accessing computer
- time of the server query
- IP address
This data is not combined with other data sources.
This data is collected for the following purposes:
- for targeted information regarding innovations of offers/products
- to update the customer list
- to deal with your query
- to process purchases
- to perform contracts
- to handle competitions
The basis for data processing is Art. 6 (1) f GDPR which allows data to be processed in order to perform a contract or implement pre-contractual measures.
The IP address is only used if this is necessary to protect the legitimate interests of the controller or a third party, unless these are overridden by the interests or fundamental rights and freedoms of the data subject which require the protection of personal data (e.g. to pursue legal claims and to solve crimes). Processing occurs in accordance with Art 6 (1) f GDPR.
Our website uses the following cookies:
- Absolutely necessary cookies in order to ensure basic functions of the website.
- Functional cookies in order to ensure the performance of the website
- Performance cookies in order to improve the user experience.
Cookies in detail:
- _ga: Google Analytics Cookie to recognise returning users.
- _gat: Google Analytics Cookie to measure user behaviour.
- cookiesAllowed: To recognise whether the cookie dialogue has already been confirmed.
- MICE_SESSID: Is used by the Mice Framework to identify logged in users.
- pathTracking: Is used by the Mice Framework to identify users not logged in.
- miceWebsiteVersion: Information about the Framework version being used.
SSL or TLS encryption
For security reasons and to protect the transmission of confidential content, such as for example orders or queries that you send us as website operator, this page uses an SSL or TLS encryption. You will recognize an encrypted connection by the fact that the browser’s address line changes from “http://” to “https://” and by the lock symbol in your browser line.
When the SSL or TLS encryption is activated, the data that you transmit to us cannot be read by third parties.
Google Web Fonts
For a uniform display of fonts, this page uses so-called web fonts that are made available by Google. When opening a page, your browser will load the required web fonts in your browser cache in order to display texts and fonts correctly.
For this purpose, the browser you are using must make contact with the Google servers. This way Google learns that our website was opened via your IP address. We use Google web fonts in the interest of a uniform and appealing display of our online offer. This constitutes a legitimate interest in terms of Art 6 (1) f GDPR.
If your browser does not support web fonts, a standard font will be used by your computer.
This website uses Google Analytics, a web analysis service of Google Inc, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA (“Google“) on the legal basis of the overriding legitimate interest (analysis of website usage). For this we have concluded an agreement on contract data processing with Google.
This website uses the function “IP anonymisation”. With this Google first truncates your IP address within the member states of the European Union or in other countries party to the Agreement on the European Economic Area and thus anonymises it. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and truncated there.
According to statements by Google, Google will use the data collected to evaluate the usage of the website, to compile reports on website activities and to provide other services connected to the internet usage.
Also, Google might transmit this data to third parties, provided this is legally required or if third parties process this data on behalf of Google.
Deactivating Google Analytics
You can generally prevent your user data being collected on our website by setting your web browser to “Do Not Track”. Our website takes the “Do Not Track” signal into account, which your web browser then sends to all websites.
You can generally prevent your user data being collected by Google Analytics on all websites by downloading and installing the browser plugin available on the following link:
Recipients of personal data
In the context of statutory authorities, your personal data is disclosed to the following companies within the EU:
gesagt.getan. GmbH – Internet agency in Salzburg
Schloss Glanegg 2, A – 5020 Salzburg
Phone: +43 6246 20920
Fax: +43 6246 2092077
Makarenkostrasse 7,D-01445 Radebeul
Phone: +49 159-01400039
mailchimp – Newsletter mailing system
Google – search network, Adwords
BAUHAUS – Operator of the website logoclic.info
Duration of data storage
We store your data as long as necessary for the respective purpose:
- Contact form /data relating to offers: 1 year (customer feedback)
- Contract documents: 10 years
- IP data: 3 years (regular limitation)
If there is a fiscal retention period for certain data that is processed for the performance of sales contracts (document date), the storage period totals 6 or 10 years. During this time, processing the data is restricted. The retention obligation starts at the end of the year in which the offer was made or the contract performed.
Rights of data subjects
Your rights as data subject are granted by BAUHAUS companies to their full extent.
Objection to advertising:
You can object to the use of your data for advertising purposes at any time with effect for the future without costs other than the transmission costs at the basic rates that are incurred here. For this, the following contacts are available to you.
Withdrawal of consent:
You can withdraw your consent to the processing of personal data at any time with effect for the future. Please note, however, that this means you might have to re-enter the data before making another purchase. This also applies if you object to the continued use of the data of your customer account in the BAUHAUS online shop.
Right to object to processing according to Art 6 (1) e or f GDPR
For reasons arising from your special situation, you have the right to raise an objection at any time against your personal data being processed based on Art 6 (1) e or f GDPR which occurs on the basis of the following provisions:
- Processing is necessary to perform a task carried out in the public interest or in the exercise of official authority vested in the controller or
- processing is necessary for the purposes of the legitimate interests pursued by the controller or by a third party, except if these interests are overridden by the legitimate interests or basic rights and freedoms of the data subject which require protection of personal data, especially if the data subject is a child.
In the event that you object, we will no longer process your personal data unless we can provide compelling legitimate reasons for processing that override your interests, rights and freedoms, or processing serves to assert, exercise or defend legal claims. This also applies to profiling based on these provisions.
You are entitled to the following rights towards the controller with regard to your stored personal data:
- deletion or restriction of processing,
- objection to processing,
- data portability,
- right to lodge complaints with supervisory authorities.
Contacts: How can I exercise my above-mentioned rights?
In order to exercise your rights, you can either contact the BAUHAUS Customer Service: firstname.lastname@example.org / Phone +49 800 3905 000, Data Protection Officer (see above) or the controller (see above).
We will process your requests immediately and in accordance with legal requirements free of charge and inform you of the measures we have taken.
The data protection coordinators positioned at the BAUHAUS Branch Mannheim assume the assertion of the rights of the data subject in accordance with the General Data Protection Regulations (see below data subject rights).
Update and change
The Data Protection Statement has to be adapted to the actual conditions and to the legal situation. Please always read the Data Protection Statement before you make use of our offer, so that you are always up-to-date in the event of changes and updates.
Data protection statement (PDF)