Privacy policy

Our privacy policy specifies which information we collect, for what purpose and for what purposes, and how we use this information. In particular, we provide information in accordance with the requirements of Art. 12 - 14 GDPR and on your rights as a data subject.

1. Controller

Dr. Dienst & Partner GmbH & Co. KG
Wirtschaftsprüfungsgesellschaft
Steuerberatungsgesellschaft
Ferdinand-Sauerbruch-Straße 28
56073 Koblenz
Germany

Telephone: +49 261 40 66-0

2. Contact

Please direct any privacy-related enquiries to

Dr. Dienst & Partner GmbH & Co. KG

An den Datenschutzbeauftragten

Ferdinand-Sauerbruch-Straße 28

56073 Koblenz

Preferably also by e-mail to datenschutz@hlb-ddp.de

3. Scope

The following privacy policy applies to all websites of the Dr. Dienst & Partner Group and associated companies that refer to it.

4. Purposes of the processing

The purposes of the processing are providing of the website, optimisation of our content offer, identification of error sources, securing of the website and performance optimisation.

In the case of the use of our contact form, a further purpose of the processing is also the handling of the communication.

5. Categories of data subjects

• Website visitors

• Clients and other contractual partners

• Interested parties

6. Types of data processed

• Inventory data (e.g. names, addresses)

• Content data (e.g. text input, photographs, videos)

• Contact details (e.g. e-mail, telephone numbers)

• Meta/communication data (e.g. device information, IP addresses)

• Usage data (e.g. websites visited, interest in content, access times)

7. Relevant legal bases

In order to legitimately process personal data, the processing must be lawful. Below are our relevant legal bases on which we process your personal data in connection with your visit to this website:

Consent according to Art. 6 para. 1 lit. a) GDPR
The processing is legitimate through the granting of consent for a specific purpose, which can be revoked at any time for the future.

Contract fulfilment or pre-contractual measures according to Art. 6 para. 1 lit. b) GDPR
Processing is necessary for the performance of a contract to which the data subject is party or for the implementation of pre-contractual measures taken at the data subject's request

Legal obligation according to Art. 6 para. 1 lit. c) GDPR
Processing is necessary for compliance with a legal obligation to which the controller is subject.

Legitimate interests according to Art. 6 para. 1 lit. f) GDPR
Processing is necessary for the purposes of the legitimate interests of the controller or of a third party, except where such interests are overridden by the interests or fundamental rights and freedoms of the data subject which require the protection of personal data.

National regulations
In addition to the General Data Protection Regulation, national legal regulations also apply in connection with data protection. Here, the Federal Data Protection Act (BDSG) specifies the rights of data subjects, the processing of special categories of personal data according to Art. 9 GDPR, profiling, data processing in the context of an employment relationship (Section 26 BDSG), in particular with regard to the establishment, implementation or termination of employment relationships, and the consent of employees. Ultimately, data protection laws at the federal state level may also apply.

8. Security Measures

We take appropriate technical and organisational measures to ensure a level of protection appropriate to the risk in accordance with the legal requirements, taking into account the state of the art, the implementation costs and the type, scope, circumstances and purposes of the processing as well as the different probabilities of occurrence and the extent of the threat to the rights and freedoms of individuals.

The measures include, in particular, ensuring the confidentiality, integrity and availability of data by controlling physical and electronic access to the data, as well as access to, entry into, disclosure of, assurance of availability of and segregation of the data. We also have procedures in place to ensure the exercise of data subjects' rights, the deletion of data and responses to data compromise. Furthermore, we already take the protection of personal data into account in the development or selection of hardware, software and procedures in accordance with the principle of data protection, through technology design and through data protection-friendly default settings.

In order to protect your data transmitted via our online offer, we use SSL encryption. You can recognise such encrypted connections by the prefix https:// in the address bar of your browser.

9. Information about cookies

We use cookies. Cookies are text files that are stored in the internet browser or by the internet browser on the user's computer system. When a user calls up a website, a cookie may be stored on the user's operating system. This cookie contains a characteristic string of characters that enables the browser to be uniquely identified when the website is called up again. We use cookies to make our website more user-friendly. Some elements of our website require that the calling browser can be identified even after a page change. The following data is stored and transmitted in the cookies: Language settings, items in a shopping cart, log-in information, etc.

The purpose of using technically necessary or functional cookies is to enable the website to function at all (necessary) or to simplify the use of websites for users (functional). Some functions of our website cannot be offered without the use of cookies. For these, it is necessary that the browser is recognised even after a page change. We require cookies for the provision of shopping baskets, adoption of language settings, remembering search terms, etc. The processing of cookies therefore takes place on the basis of Art. The processing therefore takes place on the basis of Art. 6 Para. 1 lit. b or f GDPR.

We also use cookies on some of our websites that enable an analysis of the user's surfing behaviour. In this way, search terms entered, frequency of page views, use of website functions, etc. are transmitted. The user data collected in this way is pseudonymised by technical precautions. Therefore, it is no longer possible to assign the data to the calling user. The data is not stored together with other personal data of the user.

Legal basis for data processing using cookies: The legal basis for the processing of personal data using technically necessary cookies is Art. 6 para. 1 lit. f) GDPR. The legal basis for the processing of personal data using cookies for analysis purposes is Art. 6 para. 1 lit. a) GDPR if the user has consented to this, otherwise Art. 6 para. 1 lit. f) GDPR in conjunction with. EC 47.

10. External integrations as well as tracking and retargeting

On our website, we use external integrations due to technical necessities as well as for the needs-based design, which we inform about in the following.

Google Tag Manager
We use the Google Tag Manager service to control website tags and implement tracking services via a web interface. No personal data is processed or tracking is carried out, only the IP address can be processed in some cases.

The legal basis is our legitimate interest according to Art. 6 para. 1 lit. f GDPR, which lies in the simpler and event-based code implementation. Further information can be found at the following link: https://policies.google.com/privacy

Google Analytics
We use the Google Analytics service to analyse user behaviour on our website. Parameters such as the websites visited, behaviour on the website (e.g. clicking on links and buttons, scrolling), your IP address, the referrer url (the page from which you arrived at our website) and technical information about your terminal device are recorded.

The legal basis is your consent in accordance with Art. 6 Para. 1 lit. a GDPR. Further information can be found under the following link: https://policies.google.com/privacy

YouTube
On some of our pages, we use the video portal YouTube of Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. The purpose of using this service is to integrate videos stored on YouTube servers and to deliver the content in a performance- and geo-location-optimised manner. In doing so, we use YouTube's data protection-friendly integration method. It may happen that your IP address is passed on and also data about your usage behaviour.

Therefore, consent in accordance with Art. 6 (1) a) GDPR serves as the legal basis for the external integration. Further information on data protection can be found under the following link: https://policies.google.com/privacy

11. Contact

In the context of contacting us via a contact form, by e-mail, telephone or social media, the information provided is processed in order to answer the enquiry and, if necessary, to carry out the requested measures.

The response to your enquiry is based on Art. 6 para. 1 lit. b) GDPR for the fulfilment of contractual obligations or response to pre-contractual enquiries. In addition, in certain cases a legitimate interest according to Art. 6 para. 1 lit. f) GDPR is the legal basis.

12. Data subject rights

You have the right

• to confirm whether personal data relating to you are being or have been processed by us and may request information about this from us in accordance with Art. 15 GDPR;

• demand the correction of incorrect or incomplete personal data stored by us without delay in accordance with Art. 16 GDPR;

• pursuant to Art. 17 GDPR to request the erasure of your personal data stored by us, unless the processing is necessary for the exercise of the right to freedom of expression and information, for compliance with a legal obligation, for reasons of public interest or for the assertion, exercise or defence of legal claims;

• to request the restriction of the processing of your personal data in accordance with Art. 18 DSGVO, insofar as the accuracy of the data is disputed by you, the processing is unlawful, but you object to its erasure and we no longer require the data, but you need it for the assertion, exercise or defence of legal claims or you have objected to the processing in accordance with Art. 21 GDPR;

• pursuant to Art. 20 DSGVO to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request the transfer to another controller;

• revoke your consent at any time in accordance with Art. 7 (3) GDPR. This has the consequence that we may no longer continue the data processing based on this consent for the future, and

• Pursuant to Article 77 of the GDPR, you have the right to lodge a complaint with a supervisory authority, without prejudice to any other administrative or judicial remedy. As a rule, you can contact the supervisory authority of your usual place of residence or place of work or the place of the alleged infringement for this purpose if the data subject is of the opinion that the processing of personal data concerning him or her violates the EU General Data Protection Regulation (GDPR).

13. Data deletion

Your data will generally be deleted when the client relationship has ended, the data is not subject to any statutory retention periods, all claims have been fulfilled and you have not exercised your right to deletion in accordance with Art. 17 GDPR.