Privacy policy

Privacy policy

Personal data (hereinafter referred to as “data”) is processed by us only as necessary and for the purpose of providing a functional and user-friendly website, including its content and the services offered there.

Pursuant to Art. 4 no. 1. of Regulation (EU) 2016/679, i.e. the General Data Protection Regulation (hereinafter referred to only as “GDPR”), “processing” shall mean any operation or set of operations which is performed upon personal data, whether or not by automatic means, such as collection, recording, organization, filing, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.

With the following privacy policy, we inform you in particular about the nature, scope, purpose, duration and legal basis of the processing of personal data, insofar as we decide either alone or jointly with others on the purposes and means of processing. In addition, we inform you below about the third-party components used by us for optimization purposes and to increase the quality of use, insofar as third parties process data under their own responsibility.

Our privacy policy is structured as follows:

I. Information about us as the responsible party
II. Rights of users and data subjects
III. Information on data processing

I. INFORMATION ABOUT US AS THE RESPONSIBLE PARTY

Responsible provider of this website in the sense of data protection law is:

American Nail Spa/ Alexandra Morgan
Eichenring 29
66877 Ramstein-Miesenbach
Germany

Phone: 0172-612 0398
E-mail: info@americannailspa.de

Data protection officer at the provider is:

Alexandra Morgan

II. RIGHTS OF USERS AND AFFECTED PARTIES

With regard to the data processing described in more detail below, users and data subjects have the right to

  1. to confirmation as to whether data concerning them is being processed, to information about the data being processed, to further information about the data processing and to copies of the data (cf. also Art. 15 DSGVO);
  2. to correct or complete incorrect or incomplete data (cf. also Art. 16 DSGVO);
  3. to the immediate erasure of the data concerning them (cf. also Art. 17 DSGVO), or, alternatively, insofar as further processing pursuant to Art. 17 para. 3 DSGVO is necessary, to restriction of processing in accordance with Art. 18 DSGVO;
  4. to receive the data concerning them and provided by them and to transfer this data to other providers/controllers (cf. also Art. 20 GDPR);
  5. to lodge a complaint with the supervisory authority if they are of the opinion that the data concerning them is being processed by the provider in breach of data protection provisions (cf. also Art. 77 GDPR).

In addition, the Provider is obliged to inform all recipients to whom data has been disclosed by the Provider about any correction or deletion of data or restriction of processing that may be necessary on the basis of Articles 16, 17 para. 1, 18 DSGVO takes place. However, this obligation shall not apply if such notification is impossible or involves disproportionate effort. Notwithstanding this, the user has a right to information about these recipients.

Likewise, pursuant to Art. 21 DSGVO, users and data subjects have the right to object to the future processing of data concerning them, provided that the data is processed by the provider in accordance with Art. 6 para. 1 lit. f) DSGVO are processed. In particular, an objection to data processing for the purpose of direct advertising is permitted.

III. INFORMATION ON DATA PROCESSING

Your data processed during the use of our website will be deleted or blocked as soon as the purpose of the storage no longer applies, the deletion of the data does not conflict with any statutory retention obligations and no other information is provided below on individual processing procedures.

SERVER DATA

For technical reasons, in particular to ensure a secure and stable Internet presence, data is transmitted by your Internet browser to us or to our web space provider. With these so-called server log files, among other things, the type and version of your Internet browser, the operating system, the website from which you have accessed our website (referrer URL), the website(s) of our website that you visit, the date and time of the respective access as well as the IP address of the Internet connection from which the use of our website takes place are collected.

The data collected in this way is stored temporarily, but not together with other data from you.

This storage takes place on the legal basis of Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in the improvement, stability, functionality and security of our website.

The data will be deleted after seven days at the latest, unless further storage is required for evidence purposes. Otherwise, the data is exempt from deletion in whole or in part until final clarification of an incident.

COOKIES

  1. a) Session cookies/session cookies

We use so-called cookies with our internet presence. Cookies are small text files or other storage technologies that are placed and stored on your terminal device by the Internet browser you use. Through these cookies, certain information from you, such as your browser or location data or your IP address, is processed to an individual extent.

This processing makes our website more user-friendly, more effective and more secure, as the processing e.g.. enables the reproduction of our website in different languages or the offer of a shopping cart function.

The legal basis for this processing is Art. 6 para. 1 lit b.) DSGVO, insofar as these cookies data are processed for contract initiation or contract execution.

If the processing does not serve the purpose of initiating or executing a contract, our legitimate interest lies in improving the functionality of our website. The legal basis is then Art. 6 para. 1 lit. f) GDPR.

When you close your Internet browser, these session cookies are deleted.

  1. b) Third-party cookies

Where applicable, cookies from partner companies with which we cooperate for the purpose of advertising, analysis or the functionalities of our website are also used with our website.

The details of this, in particular the purposes and legal bases of the processing of such third-party cookies, please refer to the following information.

  1. c) Elimination possibility

You can prevent or restrict the installation of cookies by setting your internet browser. Likewise, you can delete already stored cookies at any time. However, the steps and measures required for this depend on your specific Internet browser used. Therefore, if you have any questions, please use the help function or documentation of your Internet browser or contact its manufacturer or support. In the case of so-called Flash cookies, however, processing cannot be prevented via the browser settings. Instead, you need to change the setting of your Flash player to that extent. The steps and measures required for this also depend on your specific Flash player used. Therefore, if you have any questions, please also use the help function or documentation of your Flash player or contact the manufacturer or user support.

However, if you prevent or restrict the installation of cookies, this may mean that not all functions of our website can be fully used.

CUSTOMER ACCOUNT / REGISTRATION FUNCTION

If you create a customer account with us via our website, we will collect and store the data you enter during registration (e.g. your name, address or e-mail address) exclusively for pre-contractual services, for the fulfillment of the contract or for the purpose of customer care (e.g. to provide you with an overview of your previous orders with us or to be able to offer you the so-called notepad function). At the same time, we then store the IP address and the date of your registration along with the time. Of course, this data will not be passed on to third parties.

During the further registration process, your consent to this processing will be obtained and reference will be made to this privacy policy. The data collected by us in this process is used exclusively for the provision of the customer account.

Insofar as you consent to this processing, Art. 6 para. 1 lit. a) DSGVO Legal basis for processing.

If the opening of the customer account also serves pre-contractual measures or the fulfillment of the contract, the legal basis for this processing is also Art. 6 Para. 1 lit. b) GDPR.

The consent given to us for the opening and maintenance of the customer account can be revoked in accordance with Art. 7 para. 3 DSGVO at any time with effect for the future. To do this, you only need to inform us of your revocation.

The data collected in this respect will be deleted as soon as processing is no longer necessary. However, we must observe retention periods under tax and commercial law.

NEWSLETTER

If you register for our free newsletter, the data you requested for this purpose, i.e. your e-mail address and – optionally – your name and address, will be transmitted to us. At the same time, we store the IP address of the Internet connection from which you access our website as well as the date and time of your login. During the further registration process, we will ask for your consent to send you the newsletter, describe the content specifically and refer to this privacy policy. We use the data collected exclusively for sending the newsletter – in particular, they are therefore not passed on to third parties.

The legal basis for this is Art. 6 para. 1 lit. a) GDPR.

You can withdraw your consent to the sending of newsletters in accordance with Art. 7 para. 3 DSGVO at any time with effect for the future. To do this, you simply need to inform us of your revocation or click on the unsubscribe link contained in each newsletter.

CONTACT REQUESTS / CONTACT POSSIBILITY

If you contact us via contact form or e-mail, the data you provide will be used to process your request. The provision of the data is necessary for processing and answering your request – without their provision, we can not answer your request or at best limited.

The legal basis for this processing is Art. 6 para. 1 lit. b) GDPR.

Your data will be deleted if your inquiry has been answered conclusively and the deletion does not conflict with any legal obligations to retain data, such as, for example. in the event of any subsequent processing of the contract.

USER CONTRIBUTIONS, COMMENTS AND RATINGS

We offer you to publish questions, answers, opinions or evaluations, hereinafter referred to as “contributions”, on our Internet pages. If you make use of this offer, we will process and publish your contribution, date and time of submission as well as the pseudonym you may have used.

The legal basis for this is Art. 6 para. 1 lit. a) GDPR. You can withdraw your consent pursuant to Art. 7 para. 3 DSGVO at any time with effect for the future. To do this, you only need to inform us of your revocation.

In addition, we also process your IP and e-mail address. The IP address is processed because we have a legitimate interest in taking or supporting further action in the event that your contribution infringes the rights of third parties and/or it is otherwise unlawful.

The legal basis in this case is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in the legal defense that may be necessary.

GOOGLE ANALYTICS

We use Google Analytics on our website. This is a web analytics service provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter only referred to as “Google”.

Through certification under the EU-US Data Shield (“EU-US Privacy Shield”).

https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active

Google guarantees that the data protection requirements of the EU are also complied with when processing data in the USA.

The Google Analytics service is used to analyze the usage behavior of our website. The legal basis is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in the analysis, optimization and economic operation of our website.

Usage and user-related information, such as e.g. IP address, location, time or frequency of visits to our website are transmitted to a Google server in the USA and stored there. However, we use Google Analytics with the so-called anonymization function. Through this function, Google already shortens the IP address within the EU or EEA.

The data collected in this way is in turn used by Google to provide us with an evaluation of visits to our website and of usage activities there. This data may also be used to provide other services related to the use of our website and the use of the Internet.

Google states that it does not associate your IP address with any other data. In addition, Google holds under

https://www.google.com/intl/de/policies/privacy/partners

further data protection information is available for you, for example. also on the options for preventing data use.

In addition, Google offers under

https://tools.google.com/dlpage/gaoptout?hl=de

a so-called deactivation add-on together with further information on this. This add-on can be installed with the most common Internet browsers and offers you further control over the data that Google collects when you call up our website. In doing so, the add-on tells the JavaScript (ga.js) of Google Analytics that information about the visit to our website should not be transmitted to Google Analytics. However, this does not prevent information from being transmitted to us or to other web analytics services. If and which other web analytics services are used by us, you will of course also find out in this privacy policy.

“GOOGLE+ SOCIAL PLUG-IN

We use the plug-in of the social network Google+ (“Google Plus”) on our website. Google+ is an internet service provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter referred to as “Google”.

Through certification under the EU-US Privacy Shield (“EU-US Privacy Shield”).

https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active

Google guarantees that the data protection requirements of the EU are also complied with when processing data in the USA.

The legal basis is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in the quality improvement of our Internet presence.

Google provides further information about the possible plug-ins and their respective functions at

https://developers.google.com/+/web/

ready for you.

If the plug-in is stored on one of the pages of our website that you visit, your internet browser downloads a representation of the plug-in from Google’s servers in the USA. For technical reasons, it is necessary for Google to process your IP address. In addition, the date and time of your visit to our website are also recorded.

If you are logged in to Google while visiting one of our websites with the plug-in, the information collected by the plug-in from your specific visit will be recognized by Google. Google may assign the information collected in this way to your personal user account there. So if you want to use e.g. use the so-called “Share” button from Google, this information is stored in your Google user account and may be published via Google’s platform. If you want to prevent this, you must either log out of Google before visiting our website or make the appropriate settings in your Google user account.

Google provides further information on the collection and use of data as well as your rights and protection options in this regard in the information available at

https://policies.google.com/privacy

data protection information that can be downloaded from our website.

GOOGLE MAPS

On our website, we use Google Maps to display our location and to create directions. This is a service of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter referred to as “Google”.

Through certification under the EU-US Privacy Shield (“EU-US Privacy Shield”).

https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active

Google guarantees that the data protection requirements of the EU are also complied with when processing data in the USA.

To enable the display of certain fonts on our website, a connection to the Google server in the USA is established when our website is accessed.

If you call up the Google Maps component integrated into our website, Google stores a cookie on your end device via your Internet browser. In order to display our location and provide directions, your user preferences and data are processed. Here we cannot exclude that Google uses servers in the USA.

The legal basis is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in optimizing the functionality of our website.

The connection to Google established in this way enables Google to determine from which website your request was sent and to which IP address the directions are to be sent.

If you do not agree to this processing, you have the option of preventing the installation of cookies by making the appropriate settings in your Internet browser. Details on this can be found above under the item “Cookies”.

In addition, the use of Google Maps and the information obtained via Google Maps is subject to the Google Terms of Use https://policies.google.com/terms?gl=DE&hl=de and the Terms and Conditions for Google Maps https://www.google.com/intl/de_de/help/terms_maps.html.

Furthermore Google offers under

https://adssettings.google.com/authenticated

https://policies.google.com/privacy

further information to.

“FACEBOOK”-SOCIAL-PLUG-IN

We use the plug-in of the social network Facebook on our website. Facebook is an internet service of facebook Inc, 1601 S. California Ave, Palo Alto, CA 94304, USA. In the EU, this service is in turn operated by Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland, hereinafter both referred to as “Facebook”.

Through certification under the EU-US Privacy Shield (“EU-US Privacy Shield”).

https://www.privacyshield.gov/participant?id=a2zt0000000GnywAAC&status=Active

Facebook guarantees that EU data protection requirements are also complied with when processing data in the USA.

The legal basis is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in the quality improvement of our Internet presence.

Facebook provides further information about the possible plug-ins and their respective functions at

https://developers.facebook.com/docs/plugins/

ready for you.

If the plug-in is stored on one of the pages of our website that you visit, your internet browser downloads a representation of the plug-in from Facebook’s servers in the USA. For technical reasons, it is necessary for Facebook to process your IP address. In addition, the date and time of your visit to our website are also recorded.

If you are logged in to Facebook while visiting one of our websites with the plug-in, the information collected by the plug-in from your specific visit will be recognized by Facebook. Facebook may assign the information collected in this way to your personal user account there. So if you want to use e.g. use the so-called “Like” button of Facebook, this information is stored in your Facebook user account and may be published via the platform of Facebook. If you want to prevent this, you must either log out of Facebook before visiting our website or prevent the loading of the Facebook plug-in by using an add-on for your internet browser.

Facebook provides further information on the collection and use of data as well as your rights and protection options in this regard in the privacy policy available at

https://www.facebook.com/policy.php

data protection information that can be downloaded from our website.

“TWITTER”-SOCIAL-PLUG-IN

We use the plug-in of the social network Twitter on our website. Twitter is an Internet service of Twitter Inc., 795 Folsom St., Suite 600, San Francisco, CA 94107, USA, hereinafter referred to as “Twitter”.

Through certification under the EU-US Privacy Shield (“EU-US Privacy Shield”).

https://www.privacyshield.gov/participant?id=a2zt0000000TORzAAO&status=Active

Twitter guarantees that the data protection requirements of the EU are also complied with when processing data in the USA.

The legal basis is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in the quality improvement of our Internet presence.

If the plug-in is stored on one of the pages of our website that you visit, your internet browser downloads a representation of the plug-in from the servers of Twitter in the USA. For technical reasons, it is necessary for Twitter to process your IP address. In addition, the date and time of your visit to our website are also recorded.

If you are logged in to Twitter while visiting one of our websites with the plug-in, the information collected by the plug-in from your specific visit will be recognized by Twitter. Twitter may assign the information collected in this way to your personal user account there. So if you want to use e.g. use the so-called “Share” button from Twitter, this information is stored in your Twitter user account and may be published via Twitter’s platform. If you want to prevent this, you must either log out of Twitter before visiting our website or make the appropriate settings in your Twitter user account.

Further information on the collection and use of data as well as your rights and protection options in this regard is available from Twitter in the privacy policy available at

https://twitter.com/privacy

data protection information that can be downloaded from our website.

YOUTUBE

We use YouTube on our website. This is a video portal of YouTube LLC, 901 Cherry Ave, 94066 San Bruno, CA, USA, hereinafter referred to as “YouTube”.

YouTube is a subsidiary of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043 USA, hereinafter referred to as “Google”.

Through certification under the EU-US Privacy Shield (“EU-US Privacy Shield”).

https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active

Google, and thus also its subsidiary YouTube, guarantees that the data protection requirements of the EU are also complied with when processing data in the USA.

We use YouTube in connection with the “Enhanced Privacy Mode” function to show you videos. The legal basis is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in the quality improvement of our Internet presence. According to YouTube, the “Enhanced Privacy Mode” function means that the data described in more detail below is only transmitted to YouTube’s server when you actually start a video.

Without this “Enhanced Privacy”, a connection to the YouTube server in the USA is established as soon as you call up one of our Internet pages on which a YouTube video is embedded.

This connection is necessary in order to be able to display the respective video on our website via your Internet browser. In the course of this, YouTube will at least record and process your IP address, the date and time, and the website you visited. In addition, a connection to Google’s advertising network “DoubleClick” is established.

If you are logged into YouTube at the same time, YouTube assigns the connection information to your YouTube account. If you want to prevent this, you must either log out of YouTube before visiting our website or make the appropriate settings in your YouTube user account.

For the purpose of functionality as well as for the analysis of user behavior, YouTube permanently stores cookies on your end device via your Internet browser. If you do not agree with this processing, you have the option to prevent the storage of cookies by a setting in your Internet browser. You can find more information on this above under “Cookies”.

Google provides further information on the collection and use of data as well as your rights and protection options in this regard in the information available at

https://policies.google.com/privacy

data protection information that can be downloaded from our website.

MAILCHIMP – NEWSLETTER

We offer you the possibility to subscribe to our free newsletter via our website.

We use MailChimp, a service of The Rocket Science Group, LLC, 512 Means Street, Suite 404, Atlanta, GA 30318, USA, hereinafter referred to as “The Rocket Science Group”, to send newsletters.

Through certification under the EU-US Privacy Shield (“EU-US Privacy Shield”).

https://www.privacyshield.gov/participant?id=a2zt0000000TO6hAAG&status=Active

The Rocket Science Group guarantees that the data protection requirements of the EU are also complied with when processing data in the USA. In addition, The Rocket Science Group offers under

http://mailchimp.com/legal/privacy/

further data protection information.

If you register for our newsletter, the data requested during the registration process, such as your e-mail address and, optionally, your name and address, will be processed by The Rocket Science Group. In addition, your IP address and the date and time of your registration are stored. In the course of the further registration process, your consent to the sending of the newsletter will be obtained, the content will be described in detail and reference will be made to this data protection declaration.

The newsletter subsequently sent via The Rocket Science Group also contains a so-called tracking pixel, also called a “web beacon”. With the help of this tracking pixel, we can evaluate whether and when you have read our newsletter and whether you have followed any links contained in the newsletter. In addition to further technical data, such as the data of your EDP system and your IP address, the data processed in the process are stored so that we can optimize our newsletter offer and respond to the wishes of the readers. The data is therefore used to increase the quality and attractiveness of our newsletter offer.

The legal basis for the dispatch of the newsletter and the analysis is Art. 6 para. 1 lit. a.) DSGVO.

You can withdraw your consent to the sending of newsletters in accordance with Art. 7 para. 3 DSGVO at any time with effect for the future. To do this, you simply need to inform us of your revocation or click on the unsubscribe link contained in each newsletter.

WINNER GAME

Through our website, we offer you the opportunity to participate in sweepstakes. If you participate in one of our competitions, the data entered by you on the occasion of participation will be processed without your further consent, but of course exclusively for the implementation and processing of the respective competition.

In the course of processing the competition, we will pass on your data to the transport company commissioned with the delivery of the goods or to a financial service provider, insofar as the transfer is necessary for the delivery or payment of your prize. If your data is published in the event of a win, you will be informed of this as part of the declaration of consent.

The legal basis for the transfer of the data is then Art. 6 para. 1 lit. b) GDPR.

You can withdraw your consent to the processing of data for participation in our competitions in accordance with Art. 7 para. 3 DSGVO at any time with effect for the future. To do this, you only need to inform us of your revocation.

ONLINE JOB APPLICATIONS / PUBLICATION OF JOB ADVERTISEMENTS

We offer you the possibility to apply for a job through our website. For these digital applications, your applicant and application data will be collected and processed electronically by us for the purpose of handling the application process.

The legal basis for this processing is § 26 para. 1 p. 1 BDSG in conjunction with. Art. 88 para. 1 GDPR.

If an employment contract is concluded after the application process, we will store the data you provided during the application in your personnel file for the purpose of the usual organizational and administrative process – this, of course, in compliance with the more extensive legal obligations.

The legal basis for this processing is also § 26 para. 1 p. 1 BDSG in conjunction with. Art. 88 para. 1 GDPR.

In the event that an application is rejected, we automatically delete the data submitted to us two months after notification of the rejection. However, the deletion does not take place if the data is not stored due to legal regulations, e.g. due to the obligations to provide evidence under the AGG, require longer storage of up to four months or until the conclusion of legal proceedings.

The legal basis in this case is Art. 6 para. 1 lit. f) DSGVO and § 24 para. 1 No. 2 BDSG. Our legitimate interest lies in the legal defense or enforcement.

If you expressly consent to a longer storage of your data, e.g. for your inclusion in an applicant or prospect database, the data will be further processed based on your consent. The legal basis is then Art. 6 para. 1 lit. a) GDPR. However, you can of course withdraw your consent at any time in accordance with Art. 7 para. 3 DSGVO by declaration to us with effect for the future.

Scroll to Top