data protection
privacy policy
with this privacy policy, we would like to inform you about the type, scope, and purpose of the processing of personal data (hereinafter also referred to as "data"). personal data includes all data that relates to you personally, such as your name, address, e-mail address, or user behavior. this privacy policy applies to all data processing operations carried out by us, both in the context of our core business activities and for the online media we provide.
responsible party
responsible for data processing is:
dr. leila selvi
studio vils interior design
sonnenstraße 19
85764 oberschleißheim
germany
phone: +49 1590 170 26 51
e-mail: hello@studiovils.com
website: www.studiovils.com
www.studiovils.com/impressum
processing of your data within the scope of our core business
if you are our client, business partner, or interested in our services, the type, scope, and purpose of the processing of your data is determined by the contractual or pre-contractual relationship existing between us. this means that we process all data you provide to us for the purpose of using our services, as well as any data required to handle your request or fulfill the contract concluded between us. unless otherwise stated in this privacy policy, the processing of your data and its transfer to third parties is limited to what is necessary to answer your inquiries and/or fulfill the contract, protect our rights, and comply with legal obligations.
categories of data processed:
-
master data (e.g. names, addresses)
-
payment data (e.g. bank details, invoices)
-
contact data (e.g. e-mail address, telephone number, postal address)
-
contract data (e.g. subject, duration)
data subjects: interested parties, business partners, contractual partners
purpose of processing: contract management, communication, office and organizational procedures
legal basis: art. 6 para. 1 lit. b gdpr (performance of contract and pre-contractual requests), art. 6 para. 1 lit. c gdpr (legal obligation), art. 6 para. 1 lit. f gdpr (legitimate interest)
your rights under the gdpr
you have the following rights, which you may assert at any time by contacting the responsible party named above:
-
right of access: to know whether and which of your data we process.
-
right to rectification: to request correction of inaccurate or incomplete data.
-
right to erasure: to request deletion of your data.
-
right to restriction: to request limited processing of your data in certain cases.
-
right to data portability: to receive your data in a structured, commonly used, and machine-readable format.
-
right to lodge a complaint: with a supervisory authority at your residence, workplace, or our registered office.
right to withdraw consent: you may withdraw your consent to data processing at any time.
right to object: you may object at any time to processing based on legitimate interests under art. 6 para. 1 lit. f gdpr. if you object, we will stop processing unless we can demonstrate compelling legitimate grounds. you may also object at any time to processing for advertising or data analysis purposes.
We delete your data when we no longer need it or when you instruct us to do so. This means that – unless otherwise specified in the individual data protection notices of this privacy policy – we will delete your data if:
-
the purpose of the data processing no longer applies and thus the respective legal basis specified in the individual data protection notices of this privacy policy no longer exists, for example:
-
after termination of the contractual or membership relationship between us (Art. 6(1)(a) GDPR), or
-
after our legitimate interest in the further processing or storage of your data ceases to exist (Art. 6(1)(f) GDPR),
-
-
you withdraw your consent and no other legal basis for processing applies in the sense of Art. 6(1)(b–f) GDPR,
-
you exercise your right to object and there are no compelling legitimate grounds preventing deletion.
If we are obliged to retain (parts of) your data for other purposes – for example due to statutory retention obligations (generally 6 years for business correspondence or 10 years for accounting records), for the assertion, exercise, or defense of legal claims arising from contractual relationships (up to four years), or for the protection of the rights of another natural or legal person – we will delete (the relevant part of) your data only after these periods have expired. Until the expiry of these periods, however, we will restrict the processing of such data exclusively to these purposes (fulfillment of retention obligations).
Our website uses cookies. Cookies are small text files consisting of a sequence of numbers and letters that are stored on the device you are using. Cookies primarily serve to exchange information between your device and our website. This includes, for example, language settings on a website, login status, or the point at which a video was viewed.
When you visit our website, two types of cookies are used:
-
Temporary cookies (session cookies): These store a so-called session ID, which allows various requests from your browser to be assigned to the same session. Session cookies are deleted when you log out or close your browser.
-
Persistent cookies: Persistent cookies remain stored even after the browser is closed. This allows our website to recognize your computer when you return. For example, such cookies may store information on language settings or login details. They can also document and store your browsing behavior. These data may be used for statistical, marketing, and personalization purposes.
In addition to this classification, cookies can also be distinguished by their purpose:
-
Necessary cookies: These are cookies that are strictly required for the operation of our website, e.g. to store logins or shopping carts for the duration of a session, or cookies that are set for security reasons.
-
Statistics, marketing, and personalization cookies: These are cookies used for analysis or reach measurement. Such “tracking” cookies can store information such as entered search terms or the frequency of page views. In addition, the browsing behavior of an individual user (e.g. viewing certain content, using functions, etc.) can be stored in a user profile. These profiles are used to display content to users that matches their potential interests. Where we use services through which cookies for statistical, marketing, and personalization purposes are stored on your device, we will inform you of this separately in the following sections of this privacy policy or in the course of obtaining your consent.
Data concerned:
-
Usage data (e.g. access times, websites visited)
-
Communication data (e.g. information about the device used, IP address)
Data subjects: Users of our online services
Purpose of processing: Displaying our websites, ensuring the operation of our websites, improving our online offering, communication, and marketing
Legal basis:
-
Legitimate interest, Art. 6(1)(f) GDPR
If we do not obtain your consent for the use of cookies, we base the processing of your data on our legitimate interest in improving the quality and user-friendliness of our website, in particular its content and functions. You may object to the use of cookies set by us in the course of our legitimate interest via the security settings of your browser. There you have the option to determine whether you generally do not accept cookies, only accept them on request, or specify that cookies are deleted after each browser session. If cookies are disabled for our website, some functions of the website may no longer be fully usable. -
Consent, Art. 6(1)(a) GDPR
If we ask you for consent prior to your visit to our website to place certain cookies on your device, your consent serves as the legal basis. In this case, we inform you which cookies we set in detail. If you do not grant such consent, only technically necessary cookies will be set, which are required for the proper operation of our website and its display in your browser. If you have consented to the use of cookies, you may revoke your consent at any time.
Web Hosting
We use a provider to host our websites, on whose servers our websites are stored and made available on the Internet. In doing so, all data transmitted by your browser may be processed, which arise during the use of our websites. This includes, in particular, your IP address, which the provider needs to deliver our online content to the browser you are using, as well as all data you enter via our website.
In addition, the provider used by us may collect:
-
Date and time of access to our website
-
Time zone difference to Greenwich Mean Time (GMT)
-
Access status (HTTP status)
-
Amount of data transferred
-
The Internet service provider of the accessing system
-
The browser type and version used
-
The operating system used
-
The website from which you accessed our website
-
The pages or subpages you visit on our website
The above data are stored as log files on the servers of our provider. This is necessary to ensure the stability and security of the operation of our website.
Data concerned:
-
Content data (e.g. posts, photos, videos)
-
Usage data (e.g. access times, websites visited)
-
Communication data (e.g. device information, IP address)
Data subjects: Users of our website
Purpose of processing: Display of our websites, ensuring the operation of our websites
Legal basis: Legitimate interest, Art. 6(1)(f) GDPR
Hosting provider commissioned by us:
Wix.com Ltd., Nemal St. 40, 6350671 Tel Aviv, Israel
Website: https://de.wix.com
Privacy Policy: https://de.wix.com/about/privacy
Contact
If you contact us via e-mail, social media, telephone, fax, post, our contact form, or otherwise and provide us with personal data such as your name, phone number, or e-mail address, or other information about yourself or your request, we will process this data in order to respond to your inquiry in the context of contractual or pre-contractual relationships.
Data concerned:
-
Inventory data (e.g. names, addresses)
-
Contact data (e.g. e-mail, telephone number, postal address)
-
Content data (texts, photos, videos)
-
Contract data (e.g. subject matter, duration)
Data subjects: Prospective clients, customers, business and contractual partners
Purpose of processing: Communication and response to contact inquiries, office and organizational procedures
Legal basis: Performance of contract and pre-contractual requests, Art. 6(1)(b) GDPR; legitimate interest, Art. 6(1)(f) GDPR
Web Analytics and Statistics
To record and statistically evaluate visitor flows on our website, we use web analytics services. Such services collect data, among other things, about which website you came to our site from (so-called referrer), which pages of our website you accessed, how long you visited our pages, and which interactions you performed there. In addition, data about the browser you use, your computer system, and the type of device used are collected. Demographic information such as age or gender may also be recorded as pseudonymous values. If you have consented to the collection of your location data, these may also be processed depending on the provider.
In order to collect and store this data, the analytics service used generally places a cookie on your device, which also records your IP address. However, this is shortened by means of an IP masking procedure so that the IP address can no longer be assigned to your visit to our website. No clear data such as names or e-mail addresses are stored. Neither we nor the service provider used know the identity of the visitors to our websites.
Please note that depending on the provider's country of domicile, the data collected by the service may be transferred and processed outside the European Union. In such cases, there is a risk that the level of data protection prescribed by the GDPR may not be maintained and the enforcement of your rights may be more difficult.
Data concerned:
-
Usage data (e.g. access times, websites visited)
-
Communication data (e.g. device information, IP address)
Data subjects: Users of our online services
Purpose of processing: Measurement of reach, evaluation of campaigns, remarketing, as well as interest- and behavior-based marketing
Legal basis: If we request your consent before using the respective service, your consent forms the legal basis, Art. 6(1)(a) GDPR. Otherwise, we use the respective service on the basis of our legitimate interest in analyzing visitor flows on our websites in order to continuously improve functions, offerings, and the user experience, Art. 6(1)(f) GDPR.
We use the following analytics services:
Google Analytics
Provider: Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA
Within the EU: Google Dublin, Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland
Website: https://marketingplatform.google.com/intl/de/about/analytics/
Privacy Policy: https://policies.google.com/privacy?hl=en
Opt-out option: If you do not want your data to be used by Google Analytics, you can install an opt-out plugin that prevents data from being collected on our website in the future. This plugin is available here: https://tools.google.com/dlpage/gaoptout?hl=en
Google Universal Analytics
Provider: Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA
Within the EU: Google Dublin, Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland
Website: https://marketingplatform.google.com/intl/de/about/analytics/
Privacy Policy: https://policies.google.com/privacy?hl=en
Cross-device tracking: With cross-device tracking, a user ID can be used to evaluate data not only from the websites you visit but also from other devices, and the user can be recognized on the other device. The user ID is assigned by us and serves as a pseudonym. Identification of the internet user is excluded.
Opt-out option: https://tools.google.com/dlpage/gaoptout?hl=en
Our Online Presences on Social Networks
We operate online presences within the following social networks. When you visit these, the providers collect and process data as described below. These data are generally collected for advertising and market research purposes, and usage profiles are created. These usage profiles can store data independently of the device used, especially if you are a member of the respective platform and logged in. They can be used to display interest-based advertising to you. You have the right to object to the creation of user profiles. To exercise this, you must contact the respective provider.
If you have an account with one of the providers listed below and are logged in when visiting our website, the provider may collect data about your usage behavior on our site. To avoid such linkage, you can log out before visiting our site.
For details on the purpose and scope of data collection, please refer to the privacy policies of the providers:
Data concerned:
-
Inventory and contact data (e.g. name, address, telephone number, e-mail)
-
Content data (e.g. posts, photos, videos)
-
Usage data (e.g. access times, websites visited)
-
Communication data (e.g. device information, IP address)
Purpose of processing: Communication and marketing, tracking and analyzing user behavior
Legal basis: Consent, Art. 6(1)(a) GDPR; legitimate interest, Art. 6(1)(f) GDPR
Opt-out options: See providers’ information below
We maintain presences on the following networks:
-
Facebook
Provider: Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA
EU: Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland
Website: https://www.facebook.com/
Privacy Policy: https://www.facebook.com/about/privacy/
Privacy Policy for Facebook Pages: https://www.facebook.com/legal/terms/information_about_page_insights_data -
Instagram
Provider: Instagram Inc., 1601 Willow Road, Menlo Park, CA 94025, USA
Parent company: Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA
EU: Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland
Website: https://www.instagram.com/
Privacy Policy: http://instagram.com/about/legal/privacy -
LinkedIn
Provider: LinkedIn Corporation, 1000 W Maude, Sunnyvale, CA 94085, USA
Germany: LinkedIn, Hofstatt 4th Floor, Sendlinger Str. 12, 80331 Munich
Website: https://www.linkedin.com/
Privacy Policy: https://www.linkedin.com/legal/privacy-policy -
XING
Provider: New Work SE, Dammtorstraße 30, 20354 Hamburg, Germany
Website: https://www.xing.com/
Privacy Policy: https://privacy.xing.com/en/privacy-policy
Security Measures
We take technical and organizational security measures in accordance with the state of the art to comply with data protection laws and to protect your data against accidental or intentional manipulation, partial or complete loss, destruction, or unauthorized access by third parties.
Updates and Amendments to this Privacy Policy
This privacy policy is currently valid and dated September 2023. Due to changes in legal or regulatory requirements, it may be necessary to amend this privacy policy.
This privacy policy was created with the help of the privacy generator of SOS Recht, an offering by Mueller.legal Rechtsanwälte Partnerschaft, Berlin.
