1. Data controller
The administrator of users' personal data is the owner of the website jetztlike.de.
The Administrator has not appointed a Data Protection Officer.
In matters related to data processing, contact is possible via the available communication channels indicated on the website.
2. Scope and purposes of data processing
Personal data is processed only to the extent necessary for the operation of the website and the provision of services.
The purposes of processing include in particular:
setting up and maintaining a user account
order fulfillment and payment processing
contact with the user
handling inquiries and complaints
pursuing claims and protecting the interests of the administrator
marketing activities (after obtaining consent)
traffic analysis and statistics
3. Legal basis for processing
Data are processed in accordance with legal provisions, in particular on the basis of:
performance of the contract or actions prior to its conclusion
legal obligations of the administrator
legitimate interest of the controller
user consent
4. Data storage period
Data is stored for a period adequate to the purpose of its processing, including:
for the duration of your user account
for the period required by tax and accounting regulations (up to 5 years)
for the time necessary to process inquiries (usually up to 12 months)
until consent is withdrawn (in the case of marketing)
5. Data source
Personal data comes from:
directly from the user
from payment processing systems – to the extent necessary to complete the transaction
The Administrator does not use external databases for marketing purposes.
6. Data recipients
Data may be transferred to entities supporting the operation of the website, in particular:
payment operators
IT service and hosting providers
entities providing accounting and legal services
analytical tool providers (after obtaining consent)
7. Transfer of data outside the EEA
As a rule, data is not transferred outside the European Economic Area.
When using the services of global providers, the transfer takes place in accordance with applicable regulations and appropriate safeguards.
8. Data security
The Administrator uses appropriate technical and organizational measures, including:
data transmission encryption
limiting access to information
security of IT systems
data backups
9. Automatic processing and profiling
The data is not used to make automated decisions that have legal effects.
Profiling may only occur for marketing purposes and only after obtaining the user's consent.
10. User rights
The user has the right to:
access to data
their corrections
deletion of data
processing restrictions
objection to processing
data transfer
withdrawal of consent
The user also has the right to lodge a complaint with the competent supervisory authority.
11. Children's data
The website is not intended for persons under 16 years of age and does not knowingly process their data.
12. Data breaches
In the event of a data security breach, the administrator takes action in accordance with applicable law.
13. Policy Changes
The privacy policy may be updated.
The current version of the document is always available on the website.