Protection of data privacy: Your right – our obligation
We attach great importance to protecting personal data. Therefore, STEAG GmbH processes your data in accordance with the provisions of the European Data Protection Regulation (GDPR) and the other applicable statutory provisions on the protection of personal data and data security.
The following information applies to our Internet presence (hereinafter referred to as “Website”) and provides you with an overview of what personal data we collect from you through our Website and for what purposes and in what way we use such data. In addition, we provide you with information about the rights you have in relation to your personal data.
1. Controller under data protection law
Rüttenscheider Str. 1-3
2. Contact details of our data protection officer
Rüttenscheider Straße 1-3
3. Processing of your data
We process personal data in principle when this is necessary for the provision of a functional service or offer on our website. Any further personal processing will only take place with your consent. In the following, we will inform you which of our offers, functions or services that you will find on our pages require processing and which we offer you only on the basis of your consent.
4. Legal basis and purposes of processing
4.1 Use of the website Each time you visit our website, our system automatically collects data and information from the computer system of your computer in so-called server log files, which your browser automatically transmits to us. When you call up a website, your IP address is anonymized by our website provider. The recorded data includes:
- the browser type and version used
- The operating system
- Date and time of the server request
- Status and error codes with execution time
- Website from which the request comes ("bounce page")
- IP address (anonymized before recording)
- URL/address of the elements to be loaded
- Type of request (GET or POST)
This data is partly transmitted to us automatically due to the setting of your terminal device. They are partly necessary to display our website correctly and to design it securely, as well as to detect and correct possible technical problems (§ 25 para. 2 no. 2 TTDSG). Insofar as we use this data to make our website more usable, secure and attractive, we assert legitimate interest pursuant to Art. 6 para. 1 p. 1 lit. f) DSGVO.
Your server log data will be deleted after two months at the latest. This data is not stored together with other personal data of the user.
4.2 Information provided by you
If you use our general contact form, we will receive your message at email@example.com. We process the data you provide for the purpose you specify based on your consent (legal basis Art. 6 para. 1 p. 1 lit. a) DSGVO). We store information that you provide to us via contact form. The information provided is used for the specific purpose of processing your request. Your data will be deleted after the processing of your request has been completed. You can revoke your consent at any time with effect for the future, details can be found in chapter 6 "Your rights".
If you request information material via specific contact forms on our website, we process the data you provide via hubspot. Please refer to chapter 4.3.3.
Our website uses different types of cookies. Some cookies ensure the correct function of the website (necessary cookies). Others increase your comfort when visiting the website, for example, so that you do not have to make settings again when you visit our website again. And some give us information about your user behavior on our website so that we can improve the performance of our website.
By law, we may store cookies on your device if they are strictly necessary for the operation of our website. We present all other cookies below and go into the purpose and legal basis for their use (legitimate interest or your consent). Some cookies are placed by third parties that appear on our pages, we also point this out separately below.
We use SalesViewer® to improve our website.
Scope of processing
As part of SalesViewer®, a javascripl-based tracking code is used on our website, with the help of which the following information (hereinafter referred to as company data) is determined as part of the process described in more detail here (https://www.salesviewer.com/de/datenschutz):
- Name, origin and industry of the visiting company
- Website from which the request comes ("bounce page")
- Keyword on the bounce page
- Visitor behavior (e.g. (sub)pages visited, time of visit, duration of visit)
We use the data collected for marketing, market research and optimization purposes. This means that only company information is collected and processed.
SalesViewer ® uses as subcontractors Hetzer Online GmbH, Industriestr. 25, 91710, Gunzenhausen for server hosting (infrastructure SalesViewer®) and Host Europe GmbH, Welserstraße 14, 51149 Cologne provision of DNS servers for SalesViewer®. We have concluded an order processing agreement with SalesViewer®.
The application does not collect any personal user data.
Legal basis and revocation option
With the -technology of SalesViewer® GmbH, we collect and store data for marketing, market research and optimization purposes on the basis of legitimate interests (Art. 6 para.1 p. 1 lit. f) DSGVO).
You can object to the collection and storage of data at any time with effect for the future by clicking this link www.salesviewer.com/opt-out to prevent the collection by SalesViewer® within this website in the future. This will place an opt-out cookie for this website on your device. If you delete your cookies in this browser, you must click this link again.
For our online marketing activities, we use the Evalanche service on our website.
Scope of processing
Evalanche is a tool that collects your contact information via masks, of course only with your consent, and transfers it to our CRM system. The purpose is to send you the information you ordered. We also use Evalanche for invitations to trade fairs and other events, as well as for event registration.
To do this, you provide us with the following data via an input mask:
- Last name
and declare your consent to the one-time processing of this data. The information will be sent to you by mail.
If you have consented to receive further information or a newsletter, we will also send you a confirmation request by e-mail (double opt-in). You can unsubscribe from further mailings at any time via a link in our mailings.
Our specific contact forms allow you, as a visitor to our website, to learn more about our company, download content, and provide us with your contact information and other demographic information. Our service provider processes and stores your personal data on German servers. We use this to get in touch with you. If you consent to it, we also collect cookies for information about your interaction with our website such as downloaded documents, visited pages, date and time of retrieval ("usage data"). For this purpose, our service provider stores information for us whether and when you have filled out a form on our website, opened marketing emails and/ or downloaded documents contained therein (e.g. white papers). Furthermore, these optional cookies can be used by us to build interest profiles and statistical evaluations. In this way, we learn which of our company's services are of interest to you.
Where can I learn more about Evalanche?
The recipient of the data (service provider) is the German company SC-Networks GmbH, Würmstraße 4 82319 Starnberg, which is managed by our service provider CRM-Consults GmbH, Felsweg 14, 35435 Wettenberg and with whom we have concluded an order processing agreement.
Insofar as you have requested the download of documents (e.g. white papers) or consented to the sending of further information, your data will also be stored in our customer database.
Your data is stored exclusively on servers in the EU. The emails are sent via an Iqony server.
Your transaction data will be deleted no later than 4 weeks after the end of the contract for the Evalanche service. The interest profile generated from the cookies will be deleted after 24 months at the latest. Your contact data will be deleted from our CRM system after three years of passivity.
Legal basis and revocation option
This data processing is subject to your individual consent, Art. 6 para.1 p.1 lit. a) DSGVO. For the services selected by you, Evalanche requests a double-opt-in in accordance with data protection. You can revoke your consent at any time with effect for the future. For this purpose, we provide a link in each notification email. For more details, see chapter 6 "Your rights".
4.3.4 social networks and media
Our website has integrated the icons of social networks from Youtube, LinkedIn, Instagram and Twitter. You can only access these networks via an external link. These are not share-buttons but only hyperlinks.
Furthermore, we use so-called embeds or embeds of the platform Youtube for videos that you can find on our website. Youtube is a service of Google Ireland Limited Gordon House, Barrow Street Dublin 4 Ireland. The embedding takes place through the technical process of so-called framing. Framing involves the simple insertion of an HTML link provided by Youtube into the code of a website to create a playback frame on our website (so-called third-party presence), thus enabling the video stored on Youtube servers to be played. We use the framing codes generated by Youtube in the so-called "extended data protection mode". According to the information provided by Youtube, usage data is only transmitted when the user clicks on the play button and starts the video. If you visit our pages without using the video offer, no data is transmitted to Youtobe We offer videos in our legitimate interest to provide you with vivid insights into our company and to explain our products (Art. 6 para. 1 p. 1 lit. f) DSGVO).
4.3.5 our Website
We use IT and support service providers to provide the website. These service providers are carefully selected by us and act as order processors for us. Our hosting provider is Hetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen, Germany.
Conception, design, implementation and support of the website is carried out by BOROS, Hofaue 63, 42103 Wuppertal, Germany.
5. Recipients of your data / third country transfers
The processing of your personal data generally takes place in a member state of the European Union or in another state party to the Agreement on the European Economic Area. A transfer of personal data to a third country or access to this data from a third country will only take place if the special requirements of Art. 44 et seq. DSGVO are fulfilled (e.g. by agreeing on standard contractual clauses or if the recipient acts on the basis of a legal basis which the European Commission has decided pursuant to Art. 45 (1) DSGVO (so-called adequacy decision)). For more details, please refer to the individual providers mentioned in Chapter 4.
Note: Data transfer to the USA
With regard to the use of analysis cookies and third-party cookies (such as Google or YouTube), data transmission to the USA cannot be ruled out. Unfortunately, this is currently not possible in a data protection compliant manner. In this respect, please note this when you give us your declaration of consent regarding the setting of these cookies.
We would like to point out that in its ruling of 16.07.2020 (Case C-311/18), the ECJ declared the EU-US Privacy Shield agreement on the permissible transfer of data between the EU and the USA to be inadmissible and that personal data cannot currently be transferred to the USA in accordance with data protection law. The reason for this is existing laws in the USA that give security authorities far-reaching powers to monitor "foreign communications". We hereby expressly draw your attention to this risk.
6. Your rights
You have a right of access, i.e. you can demand that we disclose all the personal information we have collected and hold on time (Art. 15 DSGVO). In addition, you may also request rectification (Art. 16 DSGVO) or deletion (Art. 17 DSGVO) or restriction of processing (Art. 18 DSGVO) and have a right of appeal to a data protection supervisory authority (Art. 77 DSGVO in conjunction with Section 19 BDSG).
If we process your personal data on the basis of your consent, you can revoke this consent at any time with effect for the future. The revocation of consent does not affect the lawfulness of the processing carried out on the basis of the consent until the revocation, but the processing for the future ceases.
Revocation and other requests can be addressed to our Group Privacy Officer.
Of course, you can object to the processing of your personal data for advertising purposes at any time with effect for the future. You can inform us about your advertising objection under the following contact details: firstname.lastname@example.org.