Menü

Data Pro­tec­tion

With this pri­va­cy poli­cy, we pro­vi­de infor­ma­ti­on about the pro­ces­sing of per­so­nal data in con­nec­tion with our acti­vi­ties and ope­ra­ti­ons, inclu­ding our web­site under the domain name sleepexpert.ch. In par­ti­cu­lar, we explain for what pur­po­ses, how and whe­re we pro­cess which per­so­nal data. We also pro­vi­de infor­ma­ti­on about the rights of per­sons who­se data we pro­cess.

For indi­vi­du­al or addi­tio­nal acti­vi­ties and ope­ra­ti­ons, we may publish fur­ther pri­va­cy poli­ci­es or other infor­ma­ti­on on data pro­tec­tion.

We are sub­ject to Swiss law as well as any appli­ca­ble for­eign law, in par­ti­cu­lar that of the Euro­pean Uni­on (EU) with the Euro­pean Gene­ral Data Pro­tec­tion Regu­la­ti­on (GDPR).

With its decis­i­on of 26 July 2000, the Euro­pean Com­mis­si­on reco­g­nis­ed that Swiss data pro­tec­tion law ensu­res an ade­qua­te level of data pro­tec­tion. With its report of 15 Janu­ary 2024, the Euro­pean Com­mis­si­on con­firm­ed this ade­qua­cy decis­i­on.

1. Cont­act addres­ses

Respon­si­ble for the pro­ces­sing of per­so­nal data (con­trol­ler) is:

Prof. Chri­stoph Nis­sen
Hôpi­taux Uni­ver­si­taires de Genè­ve (HUG)
Dépar­te­ment de psych­ia­trie
20bis rue de Lau­sanne
1201 Genè­ve

contact@sleepexpert.ch

In indi­vi­du­al cases, third par­ties may be respon­si­ble for the pro­ces­sing of per­so­nal data, or the­re may be joint respon­si­bi­li­ty with third par­ties. Upon request, we are hap­py to inform data sub­jects about the respec­ti­ve respon­si­bi­li­ty.

Data pro­tec­tion repre­sen­ta­ti­ve in the Euro­pean Eco­no­mic Area (EEA)

We have the fol­lo­wing data pro­tec­tion repre­sen­ta­ti­ve in accordance with Art. 27 GDPR:

VGS Daten­schutz­part­ner GmbH
Am Kai­ser­kai 69
20457 Ham­burg
Ger­ma­ny

info@datenschutzpartner.eu

The data pro­tec­tion repre­sen­ta­ti­ve ser­ves as an addi­tio­nal point of cont­act for data sub­jects and aut­ho­ri­ties in the Euro­pean Uni­on (EU) and the rest of the Euro­pean Eco­no­mic Area (EEA) for enqui­ries rela­ting to the GDPR.

2. Terms and legal bases

2.1 Terms

Data sub­ject: Natu­ral per­son about whom we pro­cess per­so­nal data.

Per­so­nal data: Any infor­ma­ti­on rela­ting to an iden­ti­fi­ed or iden­ti­fia­ble natu­ral per­son.

Sen­si­ti­ve per­so­nal data: Data on trade uni­on, poli­ti­cal, reli­gious or ideo­lo­gi­cal views and acti­vi­ties, data on health, the inti­ma­te sphe­re or affi­lia­ti­on with an eth­ni­ci­ty or race, gene­tic data, bio­me­tric data that uni­que­ly iden­ti­fy a natu­ral per­son, data on cri­mi­nal and admi­ni­stra­ti­ve sanc­tions or pro­ce­e­dings, and data on social assi­stance mea­su­res.

Pro­ces­sing: Any hand­ling of per­so­nal data, regard­less of the means and pro­ce­du­res used, for exam­p­le query­ing, matching, adap­ting, archi­ving, retai­ning, rea­ding out, dis­clo­sing, obtai­ning, recor­ding, coll­ec­ting, dele­ting, reve­al­ing, arran­ging, orga­ni­s­ing, sto­ring, alte­ring, dis­se­mi­na­ting, lin­king, destroy­ing and using per­so­nal data.

Euro­pean Eco­no­mic Area (EEA): Mem­ber sta­tes of the Euro­pean Uni­on (EU) as well as the Prin­ci­pa­li­ty of Liech­ten­stein, Ice­land and Nor­way.

2.2 Legal bases

We pro­cess per­so­nal data in accordance with Swiss law, in par­ti­cu­lar the Fede­ral Act on Data Pro­tec­tion (FADP) and the Ordi­nan­ce on Data Pro­tec­tion (Data Pro­tec­tion Ordi­nan­ce, DPO).

Whe­re and to the ext­ent that the Euro­pean Gene­ral Data Pro­tec­tion Regu­la­ti­on (GDPR) is appli­ca­ble, we pro­cess per­so­nal data on the basis of at least one of the fol­lo­wing legal bases:

  • Art. 6 para. 1 lit. b GDPR for the neces­sa­ry pro­ces­sing of per­so­nal data for the per­for­mance of a con­tract with the data sub­ject as well as for the imple­men­ta­ti­on of pre-contractual mea­su­res.
  • Art. 6 para. 1 lit. f GDPR for the neces­sa­ry pro­ces­sing of per­so­nal data in order to safe­guard legi­ti­ma­te inte­rests – inclu­ding the legi­ti­ma­te inte­rests of third par­ties – unless over­ridden by the fun­da­men­tal free­doms, fun­da­men­tal rights and inte­rests of the data sub­ject. Such inte­rests include, in par­ti­cu­lar, the sus­tainable, user-friendly, secu­re and relia­ble per­for­mance of our acti­vi­ties and ope­ra­ti­ons, ensu­ring infor­ma­ti­on secu­ri­ty, pro­tec­tion against misu­se, the enforce­ment of our own legal claims and com­pli­ance with Swiss law.
  • Art. 6 para. 1 lit. c GDPR for the neces­sa­ry pro­ces­sing of per­so­nal data to com­ply with a legal obli­ga­ti­on to which we are sub­ject under any appli­ca­ble law of mem­ber sta­tes in the Euro­pean Eco­no­mic Area (EEA).
  • Art. 6 para. 1 lit. e GDPR for the neces­sa­ry pro­ces­sing of per­so­nal data for the per­for­mance of a task car­ri­ed out in the public inte­rest.
  • Art. 6 para. 1 lit. a GDPR for the pro­ces­sing of per­so­nal data with the con­sent of the data sub­ject.
  • Art. 6 para. 1 lit. d GDPR for the neces­sa­ry pro­ces­sing of per­so­nal data in order to pro­tect the vital inte­rests of the data sub­ject or of ano­ther natu­ral per­son.
  • Art. 9 para. 2 et seq. GDPR for the pro­ces­sing of spe­cial cate­go­ries of per­so­nal data, in par­ti­cu­lar with the con­sent of the data sub­jects.

The Euro­pean Gene­ral Data Pro­tec­tion Regu­la­ti­on (GDPR) refers to the pro­ces­sing of sen­si­ti­ve per­so­nal data as the pro­ces­sing of spe­cial cate­go­ries of per­so­nal data (Art. 9 GDPR).

3. Natu­re, scope and pur­po­se of the pro­ces­sing of per­so­nal data

We pro­cess the per­so­nal data that are neces­sa­ry to car­ry out our acti­vi­ties and ope­ra­ti­ons in a sus­tainable, user-friendly, secu­re and relia­ble man­ner. The per­so­nal data pro­ces­sed may fall in par­ti­cu­lar into the cate­go­ries of brow­ser and device data, con­tent data, com­mu­ni­ca­ti­on data, meta­da­ta, usa­ge data, master data inclu­ding inven­to­ry and cont­act data, loca­ti­on data, tran­sac­tion data, con­tract data and payment data. The per­so­nal data may also con­sti­tu­te sen­si­ti­ve per­so­nal data.

We also pro­cess per­so­nal data that we recei­ve from third par­ties, obtain from publicly acces­si­ble sources or coll­ect in the cour­se of our acti­vi­ties and ope­ra­ti­ons, inso­far as such pro­ces­sing is per­mit­ted.

Whe­re neces­sa­ry, we pro­cess per­so­nal data with the con­sent of the data sub­jects. In many cases, we may pro­cess per­so­nal data wit­hout con­sent, for exam­p­le to com­ply with legal obli­ga­ti­ons or to safe­guard over­ri­ding inte­rests. We may also ask data sub­jects for their con­sent even whe­re their con­sent is not requi­red.

We pro­cess per­so­nal data for the dura­ti­on neces­sa­ry for the respec­ti­ve pur­po­se. We anony­mi­se or dele­te per­so­nal data in par­ti­cu­lar depen­ding on sta­tu­to­ry reten­ti­on and limi­ta­ti­on peri­ods.

4. Dis­clo­sure of per­so­nal data

We may dis­c­lo­se per­so­nal data to third par­ties, have it pro­ces­sed by third par­ties or pro­cess it joint­ly with third par­ties. Such third par­ties may include, for exam­p­le, spe­cia­li­sed pro­vi­ders who­se ser­vices we use.

In the con­text of our acti­vi­ties and ope­ra­ti­ons, we may dis­c­lo­se per­so­nal data in par­ti­cu­lar to banks and other finan­cial ser­vice pro­vi­ders, aut­ho­ri­ties, edu­ca­tio­nal and rese­arch insti­tu­ti­ons, con­sul­tants and lawy­ers, inte­rest groups, IT ser­vice pro­vi­ders, coope­ra­ti­on part­ners, cre­dit agen­ci­es and busi­ness infor­ma­ti­on ser­vices, logi­stics and ship­ping com­pa­nies, mar­ke­ting and adver­ti­sing agen­ci­es, media, parent, sister and sub­si­dia­ry com­pa­nies, orga­ni­sa­ti­ons and asso­cia­ti­ons, social insti­tu­ti­ons, tele­com­mu­ni­ca­ti­ons com­pa­nies, insu­rance com­pa­nies and payment ser­vice pro­vi­ders.

5. Com­mu­ni­ca­ti­on

We pro­cess per­so­nal data in order to com­mu­ni­ca­te with indi­vi­du­als as well as with aut­ho­ri­ties, orga­ni­sa­ti­ons and com­pa­nies. In doing so, we pro­cess in par­ti­cu­lar data that a data sub­ject pro­vi­des to us when cont­ac­ting us, for exam­p­le by post or e‑mail. We may store such data in an address book or with com­pa­ra­ble tools.

Third par­ties who trans­mit data about other per­sons to us are obli­ged to ensu­re the data pro­tec­tion of tho­se data sub­jects them­sel­ves. In par­ti­cu­lar, they must ensu­re that such data are accu­ra­te and that they are per­mit­ted to trans­mit them.

We use sel­ec­ted ser­vices from sui­ta­ble pro­vi­ders to enable and impro­ve com­mu­ni­ca­ti­on with indi­vi­du­als and other com­mu­ni­ca­ti­on part­ners. With such ser­vices, we may also mana­ge and other­wi­se pro­cess the data of data sub­jects bey­ond direct com­mu­ni­ca­ti­on.

6. Data secu­ri­ty

We take appro­pria­te tech­ni­cal and orga­ni­sa­tio­nal mea­su­res to ensu­re a level of data secu­ri­ty appro­pria­te to the respec­ti­ve risk. With our mea­su­res, we ensu­re in par­ti­cu­lar the con­fi­den­tia­li­ty, avai­la­bi­li­ty, tracea­bi­li­ty and inte­gri­ty of the per­so­nal data pro­ces­sed, wit­hout, howe­ver, being able to gua­ran­tee abso­lu­te data secu­ri­ty.

Access to our web­site and our other digi­tal pre­sence takes place via trans­port encryp­ti­on (SSL / TLS, in par­ti­cu­lar with the Hyper­text Trans­fer Pro­to­col Secu­re, abbre­via­ted HTTPS). Most brow­sers warn befo­re visi­ting a web­site wit­hout trans­port encryp­ti­on.

Our digi­tal com­mu­ni­ca­ti­on is sub­ject – as is in prin­ci­ple all digi­tal com­mu­ni­ca­ti­on – to mass sur­veil­lan­ce wit­hout cau­se or sus­pi­ci­on by secu­ri­ty aut­ho­ri­ties in Switz­er­land, the rest of Euro­pe, the United Sta­tes of Ame­ri­ca (USA) and other count­ries. We have no direct influence on the cor­re­spon­ding pro­ces­sing of per­so­nal data by intel­li­gence ser­vices, poli­ce forces and other secu­ri­ty aut­ho­ri­ties. Nor can we rule out that a data sub­ject may be spe­ci­fi­cal­ly tar­ge­ted for sur­veil­lan­ce.

7. Per­so­nal data abroad

We pro­cess per­so­nal data in prin­ci­ple in Switz­er­land and the Euro­pean Eco­no­mic Area (EEA). Howe­ver, we may also export or trans­fer per­so­nal data to other count­ries, in par­ti­cu­lar in order to pro­cess it the­re or have it pro­ces­sed the­re.

We may export per­so­nal data to all count­ries on Earth and else­whe­re in the uni­ver­se, pro­vi­ded that the local law ensu­res an ade­qua­te level of data pro­tec­tion in accordance with the decis­i­on of the Swiss Fede­ral Coun­cil and – whe­re and to the ext­ent that the Gene­ral Data Pro­tec­tion Regu­la­ti­on (GDPR) is appli­ca­ble – also in accordance with a decis­i­on of the Euro­pean Com­mis­si­on.

We may trans­fer per­so­nal data to count­ries who­se law does not ensu­re an ade­qua­te level of data pro­tec­tion, pro­vi­ded that data pro­tec­tion is ensu­red for other rea­sons, in par­ti­cu­lar on the basis of stan­dard data pro­tec­tion clau­ses or with other appro­pria­te safe­guards. Excep­tio­nal­ly, we may export per­so­nal data to count­ries wit­hout ade­qua­te or appro­pria­te data pro­tec­tion if the spe­ci­fic data pro­tec­tion requi­re­ments for doing so are met, for exam­p­le the express con­sent of the data sub­jects or a direct con­nec­tion with the con­clu­si­on or per­for­mance of a con­tract. Upon request, we are hap­py to inform data sub­jects about any safe­guards or pro­vi­de a copy of any safe­guards.

8. Rights of data sub­jects

8.1 Data pro­tec­tion rights

We grant data sub­jects all rights under appli­ca­ble law. In par­ti­cu­lar, data sub­jects have the fol­lo­wing rights:

  • Access: Data sub­jects may request infor­ma­ti­on as to whe­ther we pro­cess per­so­nal data about them and, if so, which per­so­nal data are con­cer­ned. Data sub­jects also recei­ve the infor­ma­ti­on neces­sa­ry to assert their data pro­tec­tion rights and to ensu­re trans­pa­ren­cy. This inclu­des the per­so­nal data pro­ces­sed as such, but also, among other things, infor­ma­ti­on about the pur­po­se of the pro­ces­sing, the dura­ti­on of reten­ti­on, any dis­clo­sure or export of data to other count­ries and the ori­gin of the per­so­nal data.
  • Rec­ti­fi­ca­ti­on and rest­ric­tion: Data sub­jects may have inac­cu­ra­te per­so­nal data rec­ti­fi­ed, incom­ple­te data com­ple­ted and the pro­ces­sing of their data rest­ric­ted.
  • Right to sta­te their own posi­ti­on and to human review: In the case of decis­i­ons that are based sole­ly on auto­ma­ted pro­ces­sing of per­so­nal data and that have legal effects on data sub­jects or signi­fi­cant­ly affect them (auto­ma­ted indi­vi­du­al decis­i­ons), data sub­jects may sta­te their own posi­ti­on and request review by a human being.
  • Era­su­re and objec­tion: Data sub­jects may have per­so­nal data era­sed («right to be for­got­ten») and object to the pro­ces­sing of their data with effect for the future.
  • Data deli­very and data por­ta­bi­li­ty: Data sub­jects may request the deli­very of per­so­nal data or the trans­fer of their data to ano­ther con­trol­ler.

We may defer, rest­rict or refu­se the exer­cise of data sub­jects› rights within the legal­ly per­mis­si­ble frame­work. We may point out to data sub­jects any requi­re­ments that must be met in order to exer­cise their data pro­tec­tion rights. For exam­p­le, we may refu­se to pro­vi­de infor­ma­ti­on in who­le or in part with refe­rence to con­fi­den­tia­li­ty obli­ga­ti­ons, over­ri­ding inte­rests or the pro­tec­tion of other per­sons. We may also, for exam­p­le, refu­se to era­se per­so­nal data in who­le or in part, in par­ti­cu­lar with refe­rence to sta­tu­to­ry reten­ti­on obli­ga­ti­ons.

We may excep­tio­nal­ly char­ge costs for the exer­cise of the­se rights. We inform data sub­jects in advan­ce of any costs.

We are obli­ged to take rea­sonable mea­su­res to iden­ti­fy data sub­jects who request infor­ma­ti­on or assert other rights. Data sub­jects are obli­ged to coope­ra­te.

8.2 Legal reme­dies

Data sub­jects have the right to enforce their data pro­tec­tion claims through legal pro­ce­e­dings or to lodge a report or com­plaint with a data pro­tec­tion super­vi­so­ry aut­ho­ri­ty.

The data pro­tec­tion super­vi­so­ry aut­ho­ri­ty for pri­va­te con­trol­lers and fede­ral bodies in Switz­er­land is the Fede­ral Data Pro­tec­tion and Infor­ma­ti­on Com­mis­sio­ner (FDPIC).

Euro­pean data pro­tec­tion super­vi­so­ry aut­ho­ri­ties are orga­nis­ed as mem­bers of the Euro­pean Data Pro­tec­tion Board (EDPB). In some mem­ber sta­tes of the Euro­pean Eco­no­mic Area (EEA), the data pro­tec­tion super­vi­so­ry aut­ho­ri­ties are struc­tu­red on a fede­ral basis, in par­ti­cu­lar in Ger­ma­ny.

9. Use of the web­site

9.1 Coo­kies

We may use coo­kies. Coo­kies – both our own coo­kies (first-party coo­kies) and coo­kies from third par­ties who­se ser­vices we use (third-party coo­kies) – are data stored in the brow­ser. Such stored data need not be limi­t­ed to tra­di­tio­nal coo­kies in text form.

Coo­kies may be stored in the brow­ser tem­po­r­a­ri­ly as «ses­si­on coo­kies» or for a cer­tain peri­od of time as so-called per­ma­nent coo­kies. «Ses­si­on coo­kies» are auto­ma­ti­cal­ly dele­ted when the brow­ser is clo­sed. Per­ma­nent coo­kies have a spe­ci­fic sto­rage peri­od. In par­ti­cu­lar, coo­kies make it pos­si­ble to reco­g­ni­se a brow­ser on the next visit to our web­site and ther­eby, for exam­p­le, mea­su­re the reach of our web­site. Per­ma­nent coo­kies may also be used for online mar­ke­ting, for exam­p­le.

Coo­kies can be ful­ly or par­ti­al­ly deac­ti­va­ted, rest­ric­ted or dele­ted in the brow­ser set­tings at any time. The brow­ser set­tings often also allow auto­ma­ted dele­ti­on and other manage­ment of coo­kies. Wit­hout coo­kies, our web­site may no lon­ger be available to the full ext­ent. We actively seek – at least whe­re and to the ext­ent requi­red under appli­ca­ble law – express con­sent to the use of coo­kies.

For coo­kies used for per­for­mance and reach mea­su­re­ment or for adver­ti­sing, a gene­ral objec­tion («opt-out») is pos­si­ble for num­e­rous ser­vices via AdChoices (Digi­tal Adver­ti­sing Alli­ance of Cana­da), the Net­work Adver­ti­sing Initia­ti­ve (NAI), You­rAd­Choices (Digi­tal Adver­ti­sing Alli­ance) or Your Online Choices (Euro­pean Inter­ac­ti­ve Digi­tal Adver­ti­sing Alli­ance, EDAA).

9.2 Log­ging

For each access to our web­site and our other digi­tal pre­sence, we may log at least the fol­lo­wing infor­ma­ti­on, pro­vi­ded it is trans­mit­ted to our digi­tal infras­truc­tu­re during such access: date and time inclu­ding time zone, IP address, access sta­tus (HTTP sta­tus code), ope­ra­ting system inclu­ding user inter­face and ver­si­on, brow­ser inclu­ding lan­guage and ver­si­on, indi­vi­du­al sub-page of our web­site acces­sed inclu­ding the amount of data trans­fer­red, web page last acces­sed in the same brow­ser win­dow (refe­rer or refer­rer).

We log such infor­ma­ti­on, which may also con­sti­tu­te per­so­nal data, in log files. The infor­ma­ti­on is neces­sa­ry to pro­vi­de our digi­tal pre­sence in a sus­tainable, user-friendly and relia­ble man­ner. The infor­ma­ti­on is also neces­sa­ry to ensu­re data secu­ri­ty – inclu­ding by third par­ties or with the assi­stance of third par­ties.

9.3 Track­ing pixels

We may embed track­ing pixels in our digi­tal pre­sence. Track­ing pixels are also refer­red to as web bea­cons. Track­ing pixels – inclu­ding tho­se from third par­ties who­se ser­vices we use – are usual­ly small, invi­si­ble images or scripts writ­ten in Java­Script that are auto­ma­ti­cal­ly retrie­ved when our digi­tal pre­sence is acces­sed. Track­ing pixels can cap­tu­re at least the same infor­ma­ti­on as log­ging in log files.

10. Social media

We are pre­sent on social media plat­forms and other online plat­forms in order to com­mu­ni­ca­te with inte­re­sted per­sons and to pro­vi­de infor­ma­ti­on about our acti­vi­ties and ope­ra­ti­ons. In con­nec­tion with such plat­forms, per­so­nal data may also be pro­ces­sed out­side Switz­er­land and the Euro­pean Eco­no­mic Area (EEA).

The gene­ral terms and con­di­ti­ons (GTC) and terms of use as well as pri­va­cy poli­ci­es and other pro­vi­si­ons of the indi­vi­du­al ope­ra­tors of such plat­forms also app­ly in each case. The­se pro­vi­si­ons pro­vi­de infor­ma­ti­on in par­ti­cu­lar about the rights of data sub­jects direct­ly vis-à-vis the respec­ti­ve plat­form, inclu­ding, for exam­p­le, the right of access.

11. Third-party ser­vices

We use ser­vices from spe­cia­li­sed third par­ties in order to car­ry out our acti­vi­ties and ope­ra­ti­ons in a sus­tainable, user-friendly, secu­re and relia­ble man­ner. With such ser­vices, we can, among other things, embed func­tions and con­tent in our web­site. In the case of such embed­ding, the ser­vices used cap­tu­re, for tech­ni­cal­ly com­pel­ling rea­sons, at least tem­po­r­a­ri­ly the IP addres­ses of users.

For neces­sa­ry security-related, sta­tis­ti­cal and tech­ni­cal pur­po­ses, third par­ties who­se ser­vices we use may pro­cess data in con­nec­tion with our acti­vi­ties and ope­ra­ti­ons in aggre­ga­ted, anony­mi­sed or pseud­ony­mi­sed form. This inclu­des, for exam­p­le, per­for­mance or usa­ge data in order to be able to offer the respec­ti­ve ser­vice.

We use in par­ti­cu­lar:

11.1 Digi­tal infras­truc­tu­re

We use ser­vices from spe­cia­li­sed third par­ties in order to obtain the digi­tal infras­truc­tu­re requi­red in con­nec­tion with our acti­vi­ties and ope­ra­ti­ons. This inclu­des, for exam­p­le, hosting and sto­rage ser­vices from sel­ec­ted pro­vi­ders.

We use in par­ti­cu­lar:

11.2 Sche­du­ling

We use ser­vices from spe­cia­li­sed third par­ties to arran­ge appoint­ments online, for exam­p­le for mee­tings. In addi­ti­on to this pri­va­cy poli­cy, any direct­ly visi­ble terms of the ser­vices used, such as terms of use or pri­va­cy poli­ci­es, also app­ly.

11.3 Audio and video con­fe­ren­cing

We use spe­cia­li­sed ser­vices for audio and video con­fe­ren­cing in order to com­mu­ni­ca­te online. We can use them, for exam­p­le, to hold vir­tu­al mee­tings or to con­duct online les­sons and web­i­nars. For par­ti­ci­pa­ti­on in audio and video con­fe­ren­ces, the legal texts of the indi­vi­du­al ser­vices, such as pri­va­cy poli­ci­es and terms of use, app­ly in addi­ti­on.

Depen­ding on your life situa­ti­on, we recom­mend muting the micro­pho­ne by default when par­ti­ci­pa­ting in audio or video con­fe­ren­ces, as well as blur­ring the back­ground or dis­play­ing a vir­tu­al back­ground.

We use in par­ti­cu­lar:

11.4 Online col­la­bo­ra­ti­on

We use third-party ser­vices to enable online col­la­bo­ra­ti­on. In addi­ti­on to this pri­va­cy poli­cy, any direct­ly visi­ble terms of the ser­vices used, such as terms of use or pri­va­cy poli­ci­es, also app­ly.

We use in par­ti­cu­lar:

11.5 Digi­tal con­tent

We use ser­vices from spe­cia­li­sed third par­ties in order to embed digi­tal con­tent in our web­site. Digi­tal con­tent inclu­des, in par­ti­cu­lar, images and video mate­ri­al, music and pod­casts.

We use in par­ti­cu­lar:

11.6 Fonts

We use third-party ser­vices in order to embed sel­ec­ted fonts as well as icons, logos and sym­bols in our web­site.

We use in par­ti­cu­lar:

12. Exten­si­ons for the web­site

We use exten­si­ons for our web­site in order to be able to use addi­tio­nal func­tions. We may use sel­ec­ted ser­vices from sui­ta­ble pro­vi­ders or run such exten­si­ons on our own digi­tal infras­truc­tu­re.

We use in par­ti­cu­lar:

13. Per­for­mance and reach mea­su­re­ment

We try to mea­su­re the per­for­mance and reach of our acti­vi­ties and ope­ra­ti­ons. In this con­text, we may also mea­su­re the effect of third-party refe­ren­ces or exami­ne how dif­fe­rent parts or ver­si­ons of our digi­tal pre­sence are used («A/B test­ing» method). Based on the results of the per­for­mance and reach mea­su­re­ment, we may in par­ti­cu­lar cor­rect errors, streng­then popu­lar con­tent or make impro­ve­ments.

For per­for­mance and reach mea­su­re­ment, the IP addres­ses of indi­vi­du­al users are recor­ded in most cases. In this case, IP addres­ses are in prin­ci­ple shor­ten­ed («IP mas­king») in order to fol­low the prin­ci­ple of data mini­mi­sa­ti­on through the cor­re­spon­ding pseud­ony­mi­sa­ti­on.

Coo­kies may be used and user pro­files may be crea­ted for per­for­mance and reach mea­su­re­ment. Any user pro­files crea­ted include, for exam­p­le, the indi­vi­du­al pages visi­ted or con­tent view­ed on our digi­tal pre­sence, infor­ma­ti­on about the size of the screen or brow­ser win­dow and the – at least appro­xi­ma­te – loca­ti­on. In prin­ci­ple, any user pro­files are crea­ted exclu­si­ve­ly in pseud­ony­mi­sed form and are not used to iden­ti­fy indi­vi­du­al users. Indi­vi­du­al third-party ser­vices with which users are regi­stered may be able to attri­bu­te the use of our online offe­ring to the user account or user pro­fi­le with the respec­ti­ve ser­vice.

We use in par­ti­cu­lar:

  • Mato­mo: Per­for­mance and reach mea­su­re­ment; pro­vi­der: Inno­Craft Ltd. (New Zea­land, free open-source soft­ware); infor­ma­ti­on on data pro­tec­tion: use on our own digi­tal infras­truc­tu­re and with anony­mi­sed IP addres­ses, «List of all Mato­mo Fea­tures».

14. Final pro­vi­si­ons con­cer­ning this pri­va­cy poli­cy

We crea­ted this pri­va­cy poli­cy using the pri­va­cy poli­cy gene­ra­tor by Daten­schutz­part­ner.

We may update this pri­va­cy poli­cy at any time. We pro­vi­de infor­ma­ti­on about updates in an appro­pria­te form, in par­ti­cu­lar by publi­shing the cur­rent pri­va­cy poli­cy on our web­site.