Data Protection Declaration

1. General notes

The following information provide a clear overview of what happens with your personal data when you visit our website. Personal data means all data that can be used to identify you personally. For detailed information on data protection, please refer to the data protection declaration set out below this section.
Data collection on our website

Who is responsible for the collection of data on this website?

The data processing on this website is handled by the website operator. The operator’s contact details are listed in the legal notice.

How do we collect your data?

Your data can be collected when you provide us with it. This may for instance involve data which you enter into a contact form.

Other data are automatically collected by our IT systems when you visit our website. These are in particular technical data (e.g. Internet browser, operating system or time of access). This type of data is collected automatically whenever you access our website.

What do we use your data for?

Some of the data is collected to ensure a smooth provision and functioning of the website. Other data can be used to analyse your user behaviour.

What rights do you have with regard to your data?

You have the right to request information on the origin, recipient and purpose of your personal data stored by us at any time and free of charge. Furthermore, you have the right to request the rectification, blockage or erasure of such data. If you have any question on the above or regarding other data protection issues, you can contact us at any time under the address specified in the legal notice. In addition, you have the right to lodge and appeal at the competent supervisory authority.

2. General notes and mandatory information

Data protection

The operators of this website take the protection of your personal data very seriously. We handle your personal data confidentially and in accordance with the statutory data protection regulations and this data protection declaration.

When using this website, various personal data is collected. Personal data means data that can be used to identify you personally. This data protection declaration explains which data we collect and for what we use them. It also specifies how and for what purpose this occurs.

We would like to point out that the transmission of data on the Internet (e.g. within the scope of email communication) may be subject to security loopholes. A complete protection of the data from the third-party access is not possible.
Information on the controller

The controller for the processing of data on this website is:

Rathaus-Apotheke am Marienplatz
Apotheker Josef Grimm
Marienplatz 8
80331 München
Tel.:089 / 55 35 20
Fax.:089 / 25 54 09 50

‘controller’ means the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data (e.g. names, email addresses, etc.).

Withdrawal of your consent regarding data processing

Many data processing operations may only be carried out with your express consent. You can withdraw any already granted content at any time by simply sending us an informal notification by email. This shall however not affect the lawfulness of any data processed before the withdrawal.

Right to appeal at the competent supervisory authority

In case of infringements under the data protection regulations, the data subject shall have the right to lodge and appeal at the competent supervisory authority. The competent supervisory authority in data protection issues is the state data protection officer of the German state in which our company is domiciled. A list of the data protection officers and their contact details is available at the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.

Right to data data portability

You shall have the right to have the personal data, processed by us on the basis of your consent or automatically for the purpose of contract fulfilment submitted to you a third party in a commonly used and machine-readable format. If you request the direct transfer of the data to another controller, this shall only occur where technically feasible.

SSL or TLS encryption

This website uses a SSL or TLS encryption for security-related reasons and the protection of the transmission of confidential content such as orders or requests sent by you to us as website operator. You can recognise an encrypted connection as the “http://” in the address bar of your browser will change to “https://” and a padlock will appear.

When the SSL or TLS encryption is activated, the data you are transmitting to us cannot be read by third parties.

Information, blockage, erasure

Within the scope of the applicable statutory provision, you may request information on the personal data stored on you as well as their original, recipient, the purpose of their processing and where applicable the rectification, blockage or erasure of such data free of charge and at any time. If you have any further questions regarding the issue of personal data, you can contact us at any time under the address specified in the legal notice.

Objection to advertising emails

The use of contact details published within the scope of the obligation to provide a legal notice to forward advertising and information material not expressly requested is hereby objected to. The operators of the website expressly reserve the right to take legal action in case of the unrequested forwarding of advertising material, for instance in form of spam emails.

3. Data protection officer

Statutory data protection officer

In accordance with the statutory provisions, we are obligated to appoint a data protection officer. In the event of any queries regarding our handling of and the protection of your data, please do not hesitate to contact the above specified competent body.

4. Data collection on our website

Cookies

Some of the webpages use so-called cookies. Cookies will not cause any damage on your computer and contain no viruses. They are designed to make our webpages more user-friendly, efficient and safe. Cookies are small text files that are placed on your computer and stored by your browser.

Most of the cookies used by us are so-called “session cookies”. They are automatically deleted when you leave our website. Other cookies will remain stored on your device until you delete them. These cookies enable us to recognise your browser the next time you visit the website.

You can set your browser to inform you about the placement of cookies on your device and allow the placement of cookies only in individual cases; furthermore, you can allow the placement of cookies only for specific cases or generally reject their placement and also activate the automatic deletion of cookies when closing the browser. The deactivation of cookies may restrict the function of this website.

Cookies required for the implementation of the electronic communication process or for the provision of specific functions, you want to use (e.g. shopping cart function) are stored on the basis of Art. 6 (1) lit. f GPPR. The website operator has a legitimate interest in the storage of the cookies, which is the technically flawless and optimised provision of services. Where other cookies (e.g. cookies for analysing your surfing behaviour) are stored, these are set out separately in this data protection declaration.

Server log files

The provider of the website automatically collects and stores information in so-called server log files, which are automatically transmitted to us by your browser. These are:

Browser type and version
Operating system used
Referrer URL
Host name of the accessing computer
Time of server request
IP address

This data is not merged with other data sources.

Basis for the processing of the data is Art. 6 (1) lit. b GDPR, which allows the processing of data for the performance of a contact or pre-contractual measure.

Contact form

When using the contact form for sending us requests, we will store your data entered in the contact form including the specified contact details for the purposes of processing your request and for the case of follow-up queries. We will not forward this data without your consent.

The data entered in the contact form is therefore processed solely on the basis of your consent (Art. 6 (1) lit. a GDPR). You can withdraw this content at any time by simply sending us an informal notification by email. This shall however not affect the lawfulness of any data processed before the withdrawal.

We will keep the data entered by you in the contact form until you request us to delete it, withdraw your consent to the storage of the data or when the purpose for which the data is stored ceases to exist (e.g. once your request has been completed). Mandatory statutory provisions – in particular retention periods – shall remain unaffected of this.

5. Social media

Sharing contents via plug-ins (Facebook, Google+1, Twitter & Co.)

The contents of our webpages can be shared in social networks such as Facebook, Twitter or Google+ in conformity with data protection requirements. We use the eRecht24 safe sharing tool for this purpose. This tool creates a direct contact between the networks and users, when the user actively clicks on one of their buttons.

The tool does not automatically transmit user data to the operators of these platforms. If the user is registered in one of the social networks, an information window will pop up when using the social buttons of Facebook, Google+1 and Twitter & Co. and the user can confirm the text before sending.

Our users can share the contents of this website in conformity with data protection requirements without the creation of complete surfing profiles by the operators.

6. Analyse tools and advertising

Google reCAPTCHA

We use “Google reCAPTCHA” (hereinafter “reCAPTCHA”) on our websites. Operator is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).

reCAPTCHA is designed to check whether the data via our website (e.g. in a contact form) is entered by a human or an automated programme. For this purpose, reCAPTCHA analysis the behaviour of the website visitors by means of different characteristics. This analysis starts automatically as soon as the visitor is accessing the website. For this purpose, reCAPTCHA analysis various information (e.g. IP address, dwell time of the website visitor or mouse movements of the user). The data collected within the scope of the analysis are forwarded to Google.

The reCAPTCHA analytics activities are all carried out in the background. It is not specifically pointed out to the website visitors that an analysis is being carried out.

The data processing is carried out on the basis of Art. 6 (1) lit. f GDPR. The website operator has a legitimate interest in protecting his website from abusive automated spying and SPAM.

More information on Google reCAPTCHA and the Google privacy statement is available at: https://www.google.com/intl/de/policies/privacy/ and https://www.google.com/recaptcha/intro/android.html.

7. Plug-ins and tools

Google web fonts

This website uses so-called web fonts for the standardised presentation of fonts in Google. When calling up a website, your browser will load the required web fonts into the cache of your browser to correctly display the texts and font types.

For this purpose, the browser used by you must contact Google’s servers. This will enable Google to establish that your IP address has called up our website. The use of Google web fonts is in the interest of a standardised and appealing presentation of our online services. This qualifies as a legitimate interest as defined by Art. 6 (1) lit. f GDPR.

If your browser does not support web fonts, your computer will use a standard font.

More information on Google web fonts is available at https://developers.google.com/fonts/faq and in the data protection declaration of Google: https://www.google.com/policies/privacy/.

Google Maps

This website uses the map service Google Maps via an API. Operator is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

To use the functions of Google Maps it is necessary to adapt your IP address. This information is generally transmitted to a Google server in the USA, where it is stored. The operator of this website has not influence on the transmission of this data.

The use of Google Maps is in the interest of an appealing presentation of our online services and enables it to easily find the sites specified on our website. This qualifies as a legitimate interest as defined by Art. 6 (1) lit. f GDPR.

More information on the handling of user data are set out in the Google privacy statement: https://www.google.de/intl/de/policies/privacy/.