Privacy policy
privacy policy
Thank you for your interest in our company and for visiting our website and online store. We take data protection very seriously and would like to inform you below about the type, scope and purpose of the personal data we process.
It is generally possible to use our website without providing any personal data. If you provide us with personal data, e.g. via our contact form, by email or when using our online store on a voluntary basis, it will be processed in accordance with the requirements of the General Data Protection Regulation (GDPR) and the German Federal Data Protection Act (BDSG).
We have taken technical and organizational measures to ensure that the personal data processed via our website is protected as completely as possible. Please note, however, that data transmissions via the Internet can always have security gaps over which we have no influence and therefore absolute protection cannot be guaranteed, especially in e-mail traffic.
Name and contact details of the data controller
This data protection information applies to data processing by
alu-verkauf GmbH
HRB 207425
31137 Hildesheim
Managing Director: Kai Greten
Phone: +49 5121 28 29 00
E-mail: verkauf@alu-verkauf.de
Personal data
According to Art. 4 No. 1 GDPR, personal data means any information relating to an identified or identifiable natural person ("data subject"). An identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
Personal data is therefore all data that can be related to you personally, e.g. name, address, e-mail address, telephone number or IP address.
Collection and storage of personal data and the nature and purpose of its use
1. visiting our website
When you visit our website, the browser used on your device automatically sends information to the server of our website. This information is temporarily stored in a log file. The following information is collected without any action on your part and stored until it is automatically deleted
IP address of the requesting computer
Date and time of access
Name and URL of the retrieved file
Website from which the access was made (referrer URL)
Browser used and, if applicable, the operating system of your computer and the name of your access provider
The aforementioned data is processed by us for the following purposes:
- Ensuring a smooth connection to the website
- Ensuring a comfortable use of our website
- Evaluation of system security and stability and
- For further administrative purposes
The legal basis for data processing is Art. 6 para. 1 sentence 1 lit. f GDPR. Our legitimate interest follows from the data collection purposes listed above. Under no circumstances do we use the data collected for the purpose of drawing conclusions about your person.
We also use cookies and analysis services when you visit our website. You will find more detailed explanations below in this privacy policy.
2. use of our contact form
If you have questions of any kind, we offer you the opportunity to contact us using a form provided on the website. It is necessary to provide a valid e-mail address so that we know who sent the request and can answer it. Further information can be provided voluntarily. Data processing for the purpose of contacting us is carried out in accordance with Art. 6 para. 1 sentence 1 lit. a GDPR on the basis of your voluntarily given consent. Your data will be stored and used by us exclusively for processing the contact. The personal data collected by us for the use of the contact form will be blocked or deleted after your inquiry has been dealt with. The data will be blocked if your request has been conclusively processed and there are statutory retention obligations. If your contact is aimed at the conclusion of a contract, the additional legal basis for the processing is Art. 6 para. 1 lit. b GDPR (processing of contractual relationships).
3. use of our chat function
For questions of any kind, we offer you the opportunity to contact us via a chat form provided on the website. It is necessary to provide a valid e-mail address so that we know who sent the request and can answer it. Further information can be provided voluntarily. Data processing for the purpose of contacting us via the chat is carried out in accordance with Art. 6 para. 1 sentence 1 lit. a GDPR on the basis of your voluntarily given consent. Your data will be stored and used by us exclusively for processing the contact. The personal data collected by us for the use of the chat function will be blocked or deleted after your request has been dealt with. Blocking takes place when your request has been finally processed and statutory retention obligations exist. If your contact is aimed at the conclusion of a contract, the additional legal basis for the processing is Art. 6 para. 1 lit. b GDPR (processing of contractual relationships).
4. orders in the online store
Personal data is collected by us if you voluntarily provide it to us for the execution of a contract or when opening a customer account. This includes, for example, your name, address and e-mail address. This data is used and stored by us to process the contract and deliver your order (Art. 6 para. 1 sentence 1 lit. b GDPR for the processing of contractual relationships).
5. processing of orders
In order to be able to process and deliver your online store orders, we pass on the necessary data to the delivery company commissioned with the delivery, for example the delivery address (Art. 6 para. 1 sentence 1 lit. b GDPR for the processing of contractual relationships). Your e-mail address may also be passed on to the delivery company. You will then receive an email so that you can use the shipment tracking service and find out when your parcel arrives at any time. The data passed on in this way may only be used by the recipient to fulfill its task. Any other use of the information is not permitted.
6. payment via PayPal
When paying via the payment service provider PayPal, credit card via PayPal, direct debit via PayPal or - if offered - "purchase on account" via PayPal, we pass on your payment data to PayPal (Europe) S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter "PayPal"), as part of payment processing (Art. 6 para. 1 sentence 1 lit. b GDPR for the processing of contractual relationships). PayPal reserves the right to carry out a credit check for the payment methods credit card via PayPal, direct debit via PayPal or - if offered - "purchase on account" via PayPal. PayPal uses the result of the credit check with regard to the statistical probability of non-payment for the purpose of deciding on the provision of the respective payment method. The credit report may contain probability values (so-called score values). If score values are included in the result of the credit report, they are based on a scientifically recognized mathematical-statistical procedure. Among other things, address data is included in the calculation of the score values. For further data protection information, including information on creditworthiness information from PayPal, please refer to PayPal's privacy policy: https://www.paypal.com/de/webapps/mpp/ua/privacy-full
7. payment via Shopify Payments
If you choose the Shopify Payments payment method, the payment will be processed via the payment service provider Shopify International Limited, Victoria Buildings, 2nd floor
1-2 Haddington Road; Dublin 4, D04 XN32, Ireland. Your payment data (e.g. payment amount, details of the payee) and your confirmation that the payment data is correct will be collected, processed and transmitted to your bank by Shopify International Limited in order to process the payment. Shopify International Limited authenticates the payment via the authentication procedure stored for you at your bank. Further information about the transfer and processing of your data can be found in the Shopify International Limited Privacy Policy, which you can view at the following link: Allgemeine Geschäftsbedingungen von Shopify Deutschland
8 Applications, application procedure
We collect and process personal data from applicants for the purpose of handling the application process. Processing may also be carried out electronically. This is particularly the case if an applicant submits relevant application documents to us electronically, for example by e-mail. If we conclude an employment contract with an applicant, the transmitted data will be stored for the purpose of processing the employment relationship in compliance with the statutory provisions. If no employment contract is concluded with the applicant, the application documents will be deleted six months after notification of the rejection decision, provided that no other legitimate interests on our part stand in the way of deletion. Other legitimate interest in this sense is, for example, a burden of proof in proceedings under the General Equal Treatment Act (AGG).
Forwarding of data
Your personal data will not be transferred to third parties for purposes other than those listed below. We only pass on your personal data to third parties if:
you have given your express consent to this in accordance with Art. 6 para. 1 sentence 1 lit. a GDPR,
this is necessary for the processing of contractual relationships with you in accordance with Art. 6 para. 1 sentence 1 lit. b GDPR
in the event that there is a legal obligation for disclosure pursuant to Art. 6 para. 1 sentence 1 lit. c GDPR, and
the disclosure pursuant to Art. 6 para. 1 sentence 1 lit. f GDPR is necessary and there is no reason to assume that you have an overriding interest worthy of protection in not disclosing your data.
cookies
We use cookies on our website. These are small files that your browser automatically creates and that are stored on your end device (laptop, tablet, smartphone, etc.) when you visit our website. Cookies do not cause any damage to your end device and do not contain any viruses, Trojans or other malware. Information is stored in the cookie that results in each case in connection with the specific end device used. However, this does not mean that we obtain direct knowledge of your identity. The use of cookies serves to make the use of our website more pleasant for you.
For example, we use so-called session cookies to recognize that you have already visited individual pages of our website. These are automatically deleted after you leave our site.
In addition, we also use temporary cookies to optimize user-friendliness, which are stored on your device for a specified period of time (up to two years). If you visit our site again to use our services, it is automatically recognized that you have already visited us and, for example, which entries and settings you have made so that you do not have to enter them again.
We also use cookies to statistically record the use of our website and to evaluate it for the purpose of optimizing our services for you (see below). These cookies are also automatically deleted after a defined period of time (up to two years).
The data processed by cookies is required for the purposes mentioned to protect our legitimate interests and the interests of third parties in accordance with Art. 6 para. 1 sentence 1 lit. f GDPR. Most browsers accept cookies automatically. However, you can configure your browser so that no cookies are stored on your computer or a message always appears before a new cookie is created. However, completely deactivating cookies may mean that you cannot use all the functions of our website.
Analysis tools
The tracking measures used by us in the following are carried out on the basis of Art. 6 para. 1 sentence 1 lit. f GDPR. With the tracking measures and the associated statistical recording and evaluation of the use of our website, we want to ensure a needs-based design and continuous optimization of our website.
1. google analytics
This website uses Google Analytics including the Universal Analytics function, a web analysis service of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). Google Analytics uses "cookies", which are text files placed on your computer, to help the website analyze how users use the site. Universal Analytics can also be used to analyze cross-device (e.g. tablet, PC or laptop) activities on our pages by assigning a pseudonymous user ID. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there. However, if IP anonymization is activated on this website, your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. Google will use this information on behalf of the operator of this website for the purpose of evaluating your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. You may refuse the use of cookies by selecting the appropriate settings on your browser, however please note that if you do this you may not be able to use the full functionality of this website. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by downloading and installing the browser plug-in available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de
Alternatively, you can click on the following link to prevent Google from processing your data: Click here to be excluded from Google Analytics measurement. Google is certified for the US-European data protection agreement "Privacy Shield".
2. google double-click
We use DoubleClick by Google on our website, a service provided by Google Inc ("Google"). DoubleClick uses cookies to present you with advertisements that are relevant to you. This involves checking which ads have been displayed in your browser and which ads have been viewed. The cookies do not contain any personal information. The use of DoubleClick cookies only enables Google and its partner sites to display ads based on previous visits to our or other websites. You can prevent the storage of cookies by selecting the appropriate settings in your browser software. You can also prevent the collection of data generated by the cookie and related to your use of the website and the processing of this data by Google by downloading and installing the browser add-on available at the following link https://tools.google.com/dlpage/gaoptout?hl=de. You can also deactivate the use of cookies by Google by visiting http://www.google.com/privacy/ads and clicking on the "opt out" button. Alternatively, you can visit the deactivation page of the Network Advertising Initiative at https://optout.networkadvertising.org/?c=1. Further information on Google's provisions can be found at http://www.google.com/intl/de/privacy .
3. google tag manager
Our website uses Google Tag Manager. This service allows website tags to be managed via an interface. The manager only implements tags. This means that no cookies are used and no personal data is collected. The Tag Manager triggers other tags, which in turn may collect data. However, the Google Tag Manager does not access this data. If deactivation has been carried out at domain or cookie level, it will remain in place for all tracking tags if they are implemented with Google Tag Manager.
Social media plug-ins
We use social plug-ins from social networks on our websites on the basis of Art. 6 para. 1 sentence 1 lit. f GDPR in order to make our company better known. The underlying advertising purpose is to be regarded as a legitimate interest within the meaning of the GDPR.
1. Facebook
Our website uses so-called social plugins ("plugins") of the social network Facebook (Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook"). An overview of the Facebook plugins and their appearance can be found here: https://developers.facebook.com/docs/plugins
When you access a page on our website that contains such a plugin, your browser establishes a direct connection to the Facebook servers. The content of the plugin is transmitted by Facebook directly to your browser and integrated into the page. Through this integration, Facebook receives the information that your browser has accessed the corresponding page of our website, even if you do not have a Facebook profile or are not currently logged in to Facebook. This information (including your IP address) is transmitted directly from your browser to a Facebook server in the USA and stored there. If you are logged in to Facebook, Facebook can directly associate your visit to our website with your Facebook profile. If you interact with the plugins, for example by clicking the "Like" button or leaving a comment, this information is also transmitted directly to a Facebook server and stored there. The information is also published on your Facebook profile and displayed to your Facebook friends, for example. If you do not want Facebook to assign the data collected via our website directly to your Facebook profile, you must log out of Facebook before visiting our website. You can also prevent the loading of Facebook plugins and thus the data processing operations described above with add-ons for your browser for the future, e.g. with the script blocker "NoScript" ( http://noscript.net/ ).
Facebook is certified for the US-European data protection agreement "Privacy Shield".
For the purpose and scope of data collection and the further processing and use of the data by Facebook, as well as your rights in this regard and setting options for protecting your privacy, please refer to Facebook's data protection information: https://www.facebook.com/about/privacy/
1a. Facebook fan page
Our presence on the social network Facebook (a service of Facebook, Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA) is intended to improve and actively communicate with our customers and interested parties (Facebook fan page). We provide information there about our products, current promotions and other events that may be of interest to our customers and interested parties. When you visit our online presence on Facebook, your data may be automatically collected and stored for market research and advertising purposes and so-called user profiles may be created by Facebook using pseudonyms, e.g. in order to place and display interest-based advertisements on Facebook or via other websites. However, as the operator of our fan page, we only have access to anonymized data. For this purpose, Facebook cookies are usually stored on your end device, which can be used to record visitor behavior and user interests. The legal basis is Art. 6 para. 1 lit. f GDPR (protection of our legitimate interests in an optimized presentation of our offer and effective communication with customers and interested parties, which predominate in the context of a balancing of interests). Data processing is carried out on the basis of an agreement between jointly responsible parties (us and Facebook) in accordance with Art. 26 GDPR, which you can view here: https://www.facebook.com/legal/terms/page_controller_add
We would like to point out that the Facebook button on our website is configured so that a direct connection between your browser and the Facebook server is only established when you click on this button and not automatically as soon as you visit our website. For more information on the processing and use of data by Facebook and your rights in this regard and setting options to protect your privacy, please refer to Facebook's data policy: https://www.facebook.com/about/privacy/ . For more information about your options to object to Facebook with regard to individual advertising measures, please refer to the following page: https://www.facebook.com/settings?tab=ads . Facebook is certified for the US-European data protection agreement "Privacy Shield".
2. twitter
Our website uses so-called social plugins ("plugins") of the microblogging service Twitter, which is operated by Twitter Inc, 1355 Market St, Suite 900, San Francisco, CA 94103, USA ("Twitter"). In order to increase the protection of your data when you visit our website, these buttons are not fully integrated into the page as plugins, but only by using a link. This means that when you visit our website that contains such buttons, no connection is established with the Twitter servers. When you click on the button, a new browser window opens and calls up the Twitter page, where you can interact with the plugins there (if necessary after entering your login data).
Twitter is certified for the US-European data protection agreement "Privacy Shield".
The purpose and scope of the data collection and the further processing and use of the data by Twitter as well as your rights in this regard and setting options to protect your privacy can be found in Twitter's data protection information: https://twitter.com/privacy
3. google+
Our website uses so-called social plugins ("plugins") of the social network Google+, which is operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). In order to increase the protection of your data when you visit our website, these buttons are not fully integrated into the page as plugins, but only by using a link. This means that when you visit our website that contains such buttons, no connection is established with Google's servers. When you click on the button, a new browser window opens and calls up the Google+ page, where you can interact with the plugins there (if necessary after entering your login data).
Google is certified for the US-European data protection agreement "Privacy Shield".
The purpose and scope of the data collection and the further processing and use of the data by Google as well as your rights in this regard and setting options to protect your privacy can be found in Google's data protection information: https://www.google.com/intl/de/policies/privacy/
Deletion and blocking of personal data
We process and store personal data only for the period of time required to achieve the purpose of storage (e.g. proper business processing) or which corresponds to a statutory storage/retention period. If the storage purpose no longer applies or if a statutory storage/retention period expires, we will delete the personal data. If statutory storage/retention obligations continue to exist, e.g. after proper business processing or final response to your inquiries, we will restrict the processing, e.g. by blocking your data. If mandatory retention periods under commercial and tax law must be observed, certain data may be stored for up to ten years.
Rights of data subjects
As the data subject, you have the right
- to request information about your personal data processed by us in accordance with Art. 15 GDPR. In particular, you can request information about the processing purposes, the category of personal data, the categories of recipients to whom your data has been or will be disclosed, the planned storage period, the existence of a right to rectification, erasure, restriction of processing or objection, the existence of a right to lodge a complaint, the origin of your data if it was not collected by us, and the existence of any automated decision-making including profiling and, if applicable, meaningful information about its details;
- in accordance with Art. 16 GDPR, to demand the immediate correction of incorrect or incomplete personal data stored by us
- in accordance with Art. 17 GDPR, to demand the erasure of your personal data stored by us, unless the processing is necessary for exercising the right of freedom of expression and information, for compliance with a legal obligation, for reasons of public interest or for the establishment, exercise or defense of legal claims
-
in accordance with Art. 18 GDPR, to demand the restriction of the processing of your personal data if the accuracy of the data is disputed by you, the processing is unlawful but you refuse to delete it and we no longer need the data, but you need it to assert, exercise or defend legal claims or you have lodged an objection to the processing in accordance with Art. 21 DSGVO
- in accordance with Art. 20 GDPR, to receive your personal data that you have provided to us in a structured, commonly used and machine-readable format or to request that it be transmitted to another controller
- in accordance with Art. 7 para. 3 GDPR, to revoke your consent to us at any time. As a result, we may no longer continue the data processing that was based on this consent in the future and
to lodge a complaint with a supervisory authority - in accordance with Art. 77 GDPR. As a rule, you can contact the supervisory authority of your usual place of residence or workplace or our company headquarters.
If your personal data is processed on the basis of legitimate interests in accordance with Art. 6 para. 1 sentence 1 lit. f GDPR, you have the right to object to the processing of your personal data in accordance with Art. 21 GDPR, provided that there are reasons for this arising from your particular situation or the objection is directed against direct advertising. In the latter case, you have a general right to object, which will be implemented by us without specifying a particular situation.
If you wish to exercise your right of revocation or objection, simply send an e-mail to verkauf@alu-verkauf.de
Data security
We use the widespread SSL (Secure Socket Layer) method in conjunction with the highest level of encryption supported by your browser when you visit our website. As a rule, this is 256-bit encryption. You can tell whether an individual page of our website is transmitted in encrypted form by the closed display of the key or lock symbol in the status bar of your browser. We also use suitable technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction or unauthorized access by third parties. Our security measures are continuously improved in line with technological developments.
Up-to-dateness and amendment of this privacy policy
This privacy policy is currently valid. It may become necessary to amend this data protection declaration as a result of the further development of our website and offers on it or due to changes in legal or official requirements. You can call up and print out the current data protection declaration on our website at any time.

