Privacy Policy
We created this Privacy Policy (version 15.10.2020-111433998), to declare which information we collect, how we use data and which options the users of our website have, according to the guidelines of the General Data Protection Regulation (EU) 2016/679
Unfortunately, these subjects sound rather technical due to their nature, but we have put much effort into describing the most important things as simply and clearly as possible.
Automatic Data Retention
Every time you visit a website nowadays, certain information is automatically created and saved, just as it happens on this website.
Whenever you visit our website such as you are doing right now, our webserver (computer on which this website is saved/stored) automatically saves data such as
-
the address (URL) of the accessed website
-
browser and browser version
-
the used operating system
-
the address (URL) of the previously visited site (referrer URL)
-
the host name and the IP-address of the device the website is accessed from
-
date and time
in files (webserver-logfiles).
Generally, webserver-logfiles stay saved for two weeks and then get deleted automatically. We do not pass this information to others, but we cannot exclude the possibility that this data will be looked at in case of illegal conduct.
Cookies
Our website uses HTTP-cookies to store user-specific data.
For your better understanding of the following Privacy Policy statement, we will explain to you below what cookies are and why they are in use.
What exactly are cookies?
Every time you surf the internet, you use a browser. Common browsers are for example Chrome, Safari, Firefox, Internet Explorer and Microsoft Edge. Most websites store small text-files in your browser. These files are called cookies.
What should not be dismissed, is that cookies are very useful little helpers. Nearly all websites use cookies. More accurately speaking these are HTTP-cookies, since there are also different cookies for other uses. http-cookies are small files which our website stores on your computer. These cookie files are automatically put into the cookie-folder, which is like the “brain” of your browser. A cookie consists of a name and a value. Moreover, to define a cookie, one or multiple attributes must be specified.
Cookies save certain parts of your user data, such as e.g. language or personal page settings. When you re-open our website, your browser submits these “user specific” information back to our site. Thanks to cookies, our website knows who you are and offers you the settings you are familiar to. In some browsers every cookie has its own file, in others such as Firefox, all cookies are stored in one single file.
There are both first-party cookies and third-party coookies. First-party cookies are created directly by our site, while third-party cookies are created by partner-websites (e.g. Google Analytics). Every cookie is individual, since every cookie stores different data. The expiration time of a cookie also varies – it can be a few minutes, or up to a few years. Cookies are no software-programs and contain no computer viruses, trojans or any other malware. Cookies also cannot access your PC’s information.
This is an example of how cookie-files can look:
name: _ga
value: GA1.2.1326744211.152111433998-9
purpose: differentiation between website visitors
expiration date: after 2 years
A browser should support these minimum sizes:
-
at least 4096 bytes per cookie
-
at least 50 cookies per domain
-
at least 3000 cookies in total
Which types of cookies are there?
What exact cookies we use, depends on the used services. We will explain this in the following sections of the Privacy Policy statement. Firstly, we will briefly focus on the different types of HTTP-cookies.
There are 4 different types of cookies:
Essential Cookies
These cookies are necessary to ensure the basic function of a website. They are needed when a user for example puts a product into their shopping cart, then continues surfing on different websites and comes back later in order to proceed to the checkout. Even when the user closed their window priorly, these cookies ensure that the shopping cart does not get deleted.
Purposive Cookies
These cookies collect info about the user behaviour and record if the user potentially receives any error messages. Furthermore, these cookies record the website’s loading time as well as its behaviour within different browsers.
Target-orientated Cookies
These cookies care for an improved user-friendliness. Thus, information such as previously entered locations, fonts or data in forms stay saved.
Advertising Cookies
These cookies are also known as targeting-Cookies. They serve the purpose of delivering individually adapted advertisements to the user. This can be very practical, but also rather annoying.
Upon your first visit to a website you are usually asked which of these cookie-types you want to accept. Furthermore, this decision will of course also be saved in a cookie.
How can I delete cookies?
You yourself take the decision if and how you want to use cookies. Thus, no matter what service or website cookies are from, you always have the option to delete, deactivate or only partially allow them. Therefore, you can for example block cookies of third parties but allow any other cookies.
If you want change or delete cookie-settings and would like to determine which cookies have been saved to your browser, you can find this info in your browser-settings:
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
If you generally do not want to allow any cookies at all, you can set up your browser in a way, to notify you whenever a potential cookie is about to be set. This gives you the opportunity to manually decide to either permit or deny the placement of every single cookie. The settings for this differ from browser to browser. Therefore, it might be best for you to search for the instructions in Google. If you are using Chrome, you could for example put the search phrase “delete cookies Chrome” or “deactivate cookies Chrome” into Google.
How is my data protected?
There is a “cookie policy” that has been in place since 2009. It states that the storage of cookies requires the user’s consent. However, among the countries of the EU, these guidelines are often met with mixed reactions. In Austria the guidelines have been implemented in § 96 section 3 of the Telecommunications Act (TKG).
If you want to learn more about cookies and do not mind technical documentation, we recommend https://tools.ietf.org/html/rfc6265, the Request for Comments of the Internet Engineering Task Force (IETF) called “HTTP State Management Mechanism”.
Rights in accordance with the General Data Protection Regulation
You are granted the following rights in accordance with the provisions of the GDPR (General Data Protection Regulation) and the Austrian Data Protection Act (DSG):
-
right to rectification (article 16 GDPR)
-
right to erasure (“right to be forgotten“) (article 17 GDPR)
-
right to restrict processing (article 18 GDPR)
-
righ to notification – notification obligation regarding rectification or erasure of personal data or restriction of processing (article 19 GDPR)
-
right to data portability (article 20 GDPR)
-
Right to object (article 21 GDPR)
-
right not to be subject to a decision based solely on automated processing – including profiling – (article 22 GDPR)
If you think that the processing of your data violates the data protection law, or that your data protection rights have been infringed in any other way, you can lodge a complaint with your respective regulatory authority. For Austria this is the data protection authority, whose website you can access at https://www.data-protection-authority.gv.at/.
TLS encryption with https
We use https to transfer information on the internet in a tap-proof manner (data protection through technology design Article 25 Section 1 GDPR). With the use of TLS (Transport Layer Security), which is an encryption protocol for safe data transfer on the internet, we can ensure the protection of confidential information. You can recognise the use of this safeguarding tool by the little lock-symbol, which is situated in your browser’s top left corner, as well as by the use of the letters https (instead of http) as a part of our web address.
Google Fonts Privacy Policy
On our website we use Google Fonts, from the company Google Inc. (1600 Amphitheatre Parkway Mountain View, CA 94043, USA).
To use Google Fonts, you must log in and set up a password. Furthermore, no cookies will be saved in your browser. The data (CSS, Fonts) will be requested via the Google domains fonts.googleapis.com and fonts.gstatic.com. According to Google, all requests for CSS and fonts are fully separated from any other Google services. If you have a Google account, you do not need to worry that your Google account details are transmitted to Google while you use Google Fonts. Google records the use of CSS (Cascading Style Sheets) as well as the utilised fonts and stores these data securely. We will have a detailed look at how exactly the data storage works.
What are Google Fonts?
Google Fonts (previously Google Web Fonts) is a list of over 800 fonts which href=”https://en.wikipedia.org/wiki/Google?tid=111433998”>Google LLC provides its users for free.
Many of these fonts have been published under the SIL Open Font License license, while others have been published under the Apache license. Both are free software licenses.
Why do we use Google Fonts on our website?
With Google Fonts we can use different fonts on our website and do not have to upload them to our own server. Google Fonts is an important element which helps to keep the quality of our website high. All Google fonts are automatically optimised for the web, which saves data volume and is an advantage especially for the use of mobile terminal devices. When you use our website, the low data size provides fast loading times. Moreover, Google Fonts are secure Web Fonts. Various image synthesis systems (rendering) can lead to errors in different browsers, operating systems and mobile terminal devices. These errors could optically distort parts of texts or entire websites. Due to the fast Content Delivery Network (CDN) there are no cross-platform issues with Google Fonts. All common browsers (Google Chrome, Mozilla Firefox, Apple Safari, Opera) are supported by Google Fonts, and it reliably operates on most modern mobile operating systems, including Android 2.2+ and iOS 4.2+ (iPhone, iPad, iPod). We also use Google Fonts for presenting our entire online service as pleasantly and as uniformly as possible.
Which data is saved by Google?
Whenever you visit our website, the fonts are reloaded by a Google server. Through this external cue, data gets transferred to Google’s servers. Therefore, this makes Google recognise that you (or your IP-address) is visiting our website. The Google Fonts API was developed to reduce the usage, storage and gathering of end user data to the minimum needed for the proper depiction of fonts. What is more, API stands for „Application Programming Interface“ and works as a software data intermediary.
Google Fonts stores CSS and font requests safely with Google, and therefore it is protected. Using its collected usage figures, Google can determine how popular the individual fonts are. Google publishes the results on internal analysis pages, such as Google Analytics. Moreover, Google also utilises data of ist own web crawler, in order to determine which websites are using Google fonts. This data is published in Google Fonts’ BigQuery database. Enterpreneurs and developers use Google’s webservice BigQuery to be able to inspect and move big volumes of data.
One more thing that should be considered, is that every request for Google Fonts automatically transmits information such as language preferences, IP address, browser version, as well as the browser’s screen resolution and name to Google’s servers. It cannot be clearly identified if this data is saved, as Google has not directly declared it.
How long and where is the data stored?
Google saves requests for CSS assets for one day in a tag on their servers, which are primarily located outside of the EU. This makes it possible for us to use the fonts by means of a Google stylesheet. With the help of a stylesheet, e.g. designs or fonts of a website can get changed swiftly and easily.
Any font related data is stored with Google for one year. This is because Google’s aim is to fundamentally boost websites’ loading times. With millions of websites referring to the same fonts, they are buffered after the first visit and instantly reappear on any other websites that are visited thereafter. Sometimes Google updates font files to either reduce the data sizes, increase the language coverage or to improve the design.
How can I delete my data or prevent it being stored?
The data Google stores for either a day or a year cannot be deleted easily. Upon opening the page this data is automatically transmitted to Google. In order to clear the data ahead of time, you have to contact Google’s support at https://support.google.com/?hl=en-GB&tid=111433998. The only way for you to prevent the retention of your data is by not visiting our website.
Unlike other web fonts, Google offers us unrestricted access to all its fonts. Thus, we have a vast sea of font types at our disposal, which helps us to get the most out of our website. You can find out more answers and information on Google Fonts at https://developers.google.com/fonts/faq?tid=111433998. While Google does address relevant elements on data protection at this link, it does not contain any detailed information on data retention.
It proofs rather difficult to receive any precise information on stored data by Google.
On https://policies.google.com/privacy?hl=en-GB you can read more about what data is generally collected by Google and what this data is used for.
Embedded Social Media elements Privacy Policy
We have embedded elements from social media services on our website, to display pictures, videos and texts. By visiting pages that present such elements, data is transferred from your browser to the respective social media service, where it is stored. We do not have access to this data.
The following links lead to the respective social media services’ sites, where you can find a declaration on how they handle your data:
-
Instagram Data Policy: https://help.instagram.com/519522125107875
-
For YouTube, the Google Privacy Policy applies: https://policies.google.com/privacy?hl=en-GB
-
Facebook Data Policy: https://www.facebook.com/about/privacy
-
Twitter Privacy Policy: https://twitter.com/en/privacy
Twitter Privacy Policy
We have incorporated Twitter functions on our website. These are, for example, embedded tweets, timelines, buttons or hashtags. Twitter is a short message service and social media platform from the firm Twitter Inc., One Cumberland Place, Fenian Street, Dublin 2 D02 AX07, Ireland.
To our knowledge, in the European Economic Area and Switzerland, a mere integration of the Twitter function does not transfer any personal data or data about your web activities to Twitter. Only when you interact with the Twitter functions, such as by clicking a button, data could be sent to Twitter and get saved as well as processed there. We have no influence on this processing of data and do not bare any responsibility for it. Within this privacy statement, we want to give you an overview of what data Twitter stores, what Twitter does with this data and how you can largely protect yourself from data transmission.
What is Twitter?
For some, Twitter is a news service, for others, a social media platform, and for others still it is a microblogging service. All these terms are justified and mean pretty much the same.
Both individuals as well as companies use Twitter for communicating with interested people via short messages. Twitter only allows 280 characters per message. These messages are called “tweets”. In contrast to Facebook, for example, the service does not focus on the expansion of a network of “friends”, but strives to be regarded as an open, worldwide news platform. On Twitter you can also have an anonymous account and tweets can be deleted by both, either the company or the users themselves.
Why do we use Twitter on our website?
Like many other websites and companies, we try to use different channels for offering our services and communicating with our customers. Twitter is a truly useful “small” news service, which is why it has grown dear to us. We regularly tweet or retweet exciting, funny or interesting content. We understand that you do not have the time to follow every channel after channel, as you surely have enough other things to do. That is why we also have integrated Twitter functions to our website. That way, you can experience our Twitter activities “on site” or come to our Twitter page via a direct link. With the integration, we want to strengthen the service and user-friendliness on our website.
What data is stored by Twitter?
You will find integrated Twitter functions on some of our subpages. If you interact with Twitter content, such as by clicking a button, Twitter may collect and save data. This can happen even if you don’t have a Twitter account yourself. Twitter calls this data “log data”. It includes demographic data, browser cookie IDs, your smartphone’s ID, hashed email addresses, and information on which pages you have visited on Twitter and what actions you have taken there. Of course, Twitter stores more data if you have a Twitter account and are logged in. This retention is usually done via cookies. Cookies are small text files that are usually set in your browser and transmit various information to Twitter.
We will now show you which cookies are placed if you are not logged in to Twitter but visit a website with built-in Twitter functions. Please consider this list as an example. We do not claim for this list to be extensive, since the array of cookies always changes and depends on your individual actions with Twitter content.
The following cookies have been used in our test:
Name: personalization_id
Value: “v1_cSJIsogU51SeE111433998”
Purpose: This cookie stores information on how you use the website and what ad may have led you to Twitter.
Expiry date: after 2 years
Name: lang
Value: en
Purpose: This cookie stores your deafault or preferred language.
Expiry date: after end of session
Name: guest_id
Value: 111433998v1%3A157132626
Purpose: This cookie is set to identify you as a guest.
Expiry date: after 2 years
Name: fm
Value: 0
Purpose: Unfortunately, we could not find out the purpose of this cookie.
Expiry date: after end of session
Name: external_referer
Value: 1114339982beTA0sf5lkMrlGt
Purpose: This cookie collects anonymous data, such as how often you visit Twitter and how long you visit Twitter.
Expiry date: after 6 days
Name: eu_cn
Value: 1
Purpose: This cookie stores user activity and is used for Twitter’s various advertising purposes.
Expiry date: after one year
Name: ct0
Value: c1179f07163a365d2ed7aad84c99d966
Purpose: Unfortunately we could not find any information on this cookie.
Expiry date: after 6 hours
Name: _twitter_sess
Value: 53D%253D–dd0248111433998-
Purpose: With this cookie you can use functions within Twitter’s website.
Expiry date: after end of session
Note: Twitter also works with third parties. Therefore, we have recognized the three Google Analytics cookies _ga, _gat, _gid in our test.
On the one hand, Twitter uses the collected data for gaining better understand on user behaviour, and thus to improve their own services and advertising offers. On the other hand, the data are also used for internal security measures.
How long and where are the data stored?
When Twitter collects data from other websites, after a maximum of 30 days, they will be deleted, summarized or otherwise concealed. Twitter’s servers are in various server centres in the United States. Accordingly, it can be assumed that the gathered data will be collected and stored in America. In our research we could not clearly determine whether Twitter also owns servers in Europe. Generally, Twitter may keep collected data stored until either the data are no longer useful to the company, until you delete the data or until a potential legal deletion period has been reached.
How can I delete my data or prevent data retention?
In their Privacy Policy, Twitter repeatedly emphasize that they do not save data from external website visits, provided you or your browser are in the European Economic Area or Switzerland. However, if you interact directly with Twitter, the company will of course store your data.
If you have a Twitter account, you can manage your data by clicking on “More” under the “Profile” button. Then click on “Settings and privacy”. Here you can manage data processing individually.
If you do not have a Twitter account, you can go to twitter.com and click “Settings”. At “Personalization and data” you can manage data that is collected on you.
As mentioned above, most data are stored via cookies, which you can manage, deactivate or delete in your browser. Please note that when changing cookie settings in your browser, the edits will only affect that very browser. This means that if you use another browser in the future, you will have to manage your cookie settings there again. In the following you will find instructions for managing cookies in the most popular browsers.
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
You can also set your browser to notify you about each individual cookie. This lets you decide individually whether you want to allow or deny a cookie.
Twitter also uses the data for personalised advertising in-and outside of Twitter. You can switch off personalised advertising in the settings under “Personalization and data”. If you use Twitter on a browser, you can deactivate personalised advertising at http://optout.aboutads.info/?c=2〈=EN.
Twitter is an active participant in the EU-U.S. Privacy Shield Framework. This framework ensures correct data transmission between the USA and the European Union. You can learn more about it at https://www.privacyshield.gov/participant?id=a2zt0000000TORzAAO.
We hope we could give you a basic overview of Twitter’s data processing. We do not receive any data from Twitter and are not responsible for what Twitter does with your data. If you have any further questions on this topic, we recommend reading Twitter’s privacy statement at https://twitter.com/en/privacy.
ShareThis Privacy Policy
On our website we have implemented functions of ShareThis from ShareThis Inc. (4005 Miranda Ave, Suite 100, Palo Alto, 94304 California, USA). These are, for example, “share” plugins of various social media channels. With the help of these functions, you can share our website’s content on social media channels. If you open a website with a ShareThis function, your data may be transferred to the company, where it may be stored and processed. In this privacy policy you can read why we use ShareThis, what data is processed and how you can prevent this data transmission.
What is ShareThis?
ShareThis is a technology company that offers website operators tools to improve website quality. With ShareThis social plugins, you can share our website’s content on various social media channels such as Facebook, Twitter, Instagram etc. The company offers content sharing for over 40 different channels and is used by over 3 million website operators worldwide. The data collected by ShareThis are also used for tailored advertisements.
Why do we use ShareThis on our website?
We strive to provide quality content and we are of course happy, if our content is also recommended to and shared with others. This helps us to know that we are on the right path.
The easiest way to do this is via any “Share” directly on our website. Thanks to the different variety social media channels, we can present our content to a wide audience. This helps us to increase awareness for us and to become more successful on the Internet. However, the plugins also help you since you can share interesting content with your social media community with just one click.
What data is stored by ShareThis?
If you share content with ShareThis and are logged into a social media account, data e.g. on your visit to our website, as well as your sharing of content may be assigned to your user account on the respective social media channel. ShareThis uses cookies, pixels, HTTP headers and browser identifiers to collect data about your visitor behaviour. In addition, some of this data is shared with third parties, but only after it has been pseudonymised.
Here is a list of the data that may be processed:
-
Unique ID of a cookie placed in the web browser
-
General click behavior
-
Addresses of visited websites
-
Search queries which led a visitor to the ShareThis page
-
Navigation from website to website provided it happened via ShareThis services
-
Time spent on a website
-
Which elements have been clicked or highlighted
-
The IP address of the computer or mobile device
-
Mobile advertising IDs (Apple IDFA or Google AAID)
-
Information contained in HTTP headers or other utilised transmission protocols
-
Which program on the computer (browser) or which operating system was used (iOS)
ShareThis uses cookies, which we will list examples of below. You can find out more about ShareThis cookies at https://www.sharethis.com/privacy/.
Name: __unam
Value: 8961a7f179d1d017ac27lw87qq69V69111433998-5
Purpose: This cookie counts the “clicks” and “shares” on a website.
Expiry date: after 9 months
Name: __stid
Value: aGCDwF4hjVEI+oIsABW7111433998Ag==
Purpose: This cookie stores user behavior, such as the websites accessed, page-to-page navigations and the length of time spent on the website.
Expiry date: after 2 years
Name: __sharethis_cookie_test__
Value: 0
Purpose: This cookie monitors the “clickstream” activity. That means is records where you clicked on the website.
Expiry date: after end of session
Note:We do not claim for this list to be exhaustive. The cookies that are set in individual cases depend on the embedded functions and the use thereof.
How long and where is the data retained?
ShareThis stores collected data for a period of up to 14 months from the date of data collection. ShareThis cookies expire 13 months after the last update. Since ShareThis is an American company, data is transferred to and stored on American ShareThis servers.
How can I delete my data or prevent data retention?
If you no longer want to see advertisements based on data collected by ShareThis, you can use the opt-out button at https://www.sharethis.com/privacy/. Then, an opt-out cookie is set, which you must not delete in order to keep this setting.
You can also set your preferences for usage-based online advertising at https://www.youronlinechoices.com/uk/ in “Your Ad Choices”.
You also have the option of managing, deactivating or deleting data that is stored in your browser via cookies. How exactly the administration works depends on your browser. Here you will find the instructions for the most popular browsers.
Chrome: Clear, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Clear cookies and site data in Firefox
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete cookies in Microsoft Edge
You can also set your browser to always inform you when a cookie is about to be set.
ShareThis is an active participant in the EU-U.S. Privacy Shield Framework, which regulates correct and secure transfer of personal data. You can find more information on this at https://www.privacyshield.gov/participant?id=a2zt0000000L1HMAA0&status=Active. If you would like to know more about the processing of your data by ShareThis, you will find all information at https://www.sharethis.com/privacy/.
Source: Created with the Datenschutz Generator by AdSimple® Webdesign in cooperation with bauguide.at