Privacy Policy

1. Overview of Data Protection

General Information

The following information provides a simple overview of what happens to your personal data when you visit this website.
Personal data is any data by which you can be personally identified. Detailed information on data protection can be found in the privacy policy below.

Data Collection on This Website

Who is responsible for data collection on this website?

Data processing on this website is carried out by the website operator.
You can find the operator’s contact details in the section “Information on the Controller”.

How do we collect your data?

Some data is collected when you provide it to us directly, for example by entering information into a contact form.

Other data is collected automatically or after your consent when you visit the website through our IT systems. This primarily includes technical data such as browser type, operating system, or time of page access.

What do we use your data for?

Some data is collected to ensure the error-free provision of the website.
Other data may be used to analyze user behavior.

What rights do you have regarding your data?

You have the right at any time to obtain information free of charge about the origin, recipients, and purpose of your stored personal data.
You also have the right to request correction or deletion of this data.
If you have given consent to data processing, you may revoke this consent at any time with effect for the future.
Furthermore, under certain circumstances, you have the right to request restriction of the processing of your personal data.
You also have the right to lodge a complaint with the competent supervisory authority.

2. Hosting

External Hosting

This website is hosted by an external service provider. Personal data collected on this website is stored on the provider’s servers.
This may include IP addresses, contact requests, metadata and communication data, contract data, contact details, names, and website access data.

The hosting provider is used for the purpose of fulfilling contractual obligations pursuant to Art. 6(1)(b) GDPR
and in the interest of secure and efficient provision of our online services pursuant to Art. 6(1)(f) GDPR.

Hosting Provider

domainfactory GmbH
Oskar-Messter-Str. 33
85737 Ismaning
Germany

Data Processing Agreement

We have concluded a Data Processing Agreement (DPA) with the hosting provider.

3. General Information and Mandatory Disclosures

Data Protection

The operators of this website take the protection of your personal data very seriously.
We treat your personal data confidentially and in accordance with statutory data protection regulations and this Privacy Policy.

Please note that data transmission over the Internet may have security vulnerabilities.
Complete protection of data against access by third parties is not possible.

Information on the Controller

TrustKBB GmbH
Breiter Weg 35
14793 Ziesar

Phone: +49 30 520045374
Email: joerg.kebbedies@trustkbb.de

The controller responsible for data processing on this website within the meaning of the GDPR is the natural or legal person who alone or jointly with others determines the purposes and means of processing personal data.

Storage Duration

Unless a more specific storage period is stated in this Privacy Policy, your personal data will remain with us until the purpose for processing no longer applies.
Mandatory statutory retention periods remain unaffected.

Legal Bases for Processing

If you have consented to data processing, we process your personal data on the basis of Art. 6(1)(a) GDPR
and, where applicable, Section 25 of the German Telecommunications Digital Services Data Protection Act (TDDDG).

If processing is necessary for the performance of a contract or pre-contractual measures, processing is based on Art. 6(1)(b) GDPR.

If processing is necessary for compliance with a legal obligation, processing is based on Art. 6(1)(c) GDPR.

Processing may also be carried out on the basis of our legitimate interests pursuant to Art. 6(1)(f) GDPR.

Withdrawal of Your Consent

You may revoke your consent to data processing at any time with effect for the future.

Right to Object under Art. 21 GDPR

Where personal data is processed on the basis of Art. 6(1)(e) or (f) GDPR, you have the right to object at any time, on grounds relating to your particular situation, to the processing of your personal data.

Where personal data is processed for direct marketing purposes, you have the right to object at any time to processing for such marketing purposes.

Right to Lodge a Complaint

You have the right to lodge a complaint with a competent supervisory authority.

Right to Data Portability

You have the right to receive data that we process automatically on the basis of your consent or in fulfillment of a contract in a commonly used, machine-readable format.

SSL / TLS Encryption

For security reasons and to protect the transmission of confidential content, this website uses SSL or TLS encryption.

Access, Deletion and Rectification

Within the framework of applicable legal provisions, you have the right at any time to obtain information free of charge about your stored personal data, its origin, recipients, and the purpose of processing, as well as a right to rectification or deletion of this data.

Right to Restriction of Processing

You have the right to request restriction of the processing of your personal data.

4. Data Collection on This Website

Cookies

Our website uses cookies. Cookies are small text files stored on your device.

Technically necessary cookies are stored on the basis of Art. 6(1)(f) GDPR.

All other cookies, particularly those used for analytics and marketing purposes, are used exclusively on the basis of your consent pursuant to Art. 6(1)(a) GDPR
and Section 25 TDDDG.

You can change or revoke your cookie preferences at any time.

Consent Management with Borlabs Cookie

This website uses Borlabs Cookie to obtain and document user consent.

Borlabs GmbH
Rübenkamp 32
22305 Hamburg
Germany

The use of Borlabs Cookie is based on Art. 6(1)(c) GDPR and Section 25 TDDDG.

Server Log Files

The hosting provider automatically collects and stores information in server log files.

  • Browser type and browser version
  • Operating system used
  • Referrer URL
  • Hostname of the accessing device
  • Time of server request
  • IP address

The processing is based on Art. 6(1)(f) GDPR.

Contact Form

If you send us inquiries via the contact form, your details will be stored for the purpose of processing the request.

Processing is carried out on the basis of Art. 6(1)(b) GDPR or Art. 6(1)(f) GDPR.

Contact by Email or Telephone

If you contact us by email or telephone, your inquiry including all resulting personal data will be stored and processed.

5. Analytics Tools and Third-Party Services

Google Tag Manager

We use Google Tag Manager.
The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.

Google Tag Manager is used to manage and deploy services on our website.

Its use is based exclusively on your consent pursuant to Art. 6(1)(a) GDPR and Section 25 TDDDG.

Data transfers to the United States cannot be excluded. Google is certified under the EU-U.S. Data Privacy Framework.

Google Analytics

This website uses Google Analytics, a web analytics service provided by Google Ireland Limited.

Google Analytics enables us to analyze user behavior on our website. Cookies or comparable technologies may be used for this purpose.

The use of Google Analytics is based exclusively on your consent pursuant to Art. 6(1)(a) GDPR and Section 25 TDDDG.

IP anonymization has been activated on this website.

Information collected by Google may be transferred to servers in the United States.
Google is certified under the EU-U.S. Data Privacy Framework.

We have concluded a Data Processing Agreement (DPA) with Google.

Further information: https://support.google.com/analytics/answer/6004245?hl=en

6. Plugins and Tools

YouTube with Enhanced Privacy Mode

This website embeds videos from YouTube.
The provider is Google Ireland Limited.

We use YouTube in enhanced privacy mode.

When a video is started, a connection to YouTube servers may be established and personal data may be processed.

Use of YouTube is based exclusively on your consent pursuant to Art. 6(1)(a) GDPR and Section 25 TDDDG.

Further information: https://policies.google.com/privacy?hl=en

Google Web Fonts (Local Hosting)

This website uses locally hosted Google Fonts for the consistent display of fonts. No connection to Google servers is established.

Further information: https://developers.google.com/fonts/faq

7. Changes to This Privacy Policy

We reserve the right to amend this Privacy Policy
to ensure that it always complies with current legal requirements
or to reflect changes to our services.

The current version published on this website shall apply.