Privacy Policy
Privacy Policy
Controller responsible for data processing:
PSA Marketing GmbH
Rheinpromenade 13
40789 Monheim am Rhein Germany
Email: info@psamarketing.de
Phone: 022156094145
We are pleased about your interest in our online shop. The protection of your privacy is very important to us. Below, we provide you with detailed information about how we handle your data.
1. Access Data and Hosting
You can visit our websites without providing any personal information. Each time a webpage is accessed, the web server only automatically stores what is known as a server log file, which includes, for example, the name of the requested file, your IP address, date and time of access, amount of data transferred, and the requesting provider (access data), and documents the access.
These access data are evaluated solely for the purpose of ensuring a smooth operation of the site and improving our offer. This serves to safeguard our predominantly legitimate interests in the correct presentation of our offer according to Art. 6 para. 1 sentence 1 lit. f GDPR.
2. Data Processing for Contract Fulfillment and Contact
2.1 Data Processing for Contract Fulfillment
We collect personal data if you voluntarily provide it to us within the scope of your order or when contacting us (e.g., via contact form or email). Mandatory fields are marked as such because in these cases, we require the data to fulfill the contract or to process your contact inquiry, and without their provision, you cannot complete the order or send the contact form. The data that is collected is evident from the respective input forms.
We use the data you provide for contract processing and for handling your inquiries (including inquiries and processing of possible warranty and performance claims, as well as statutory update obligations) according to Art. 6 para. 1 sentence 1 lit. b GDPR. Further information about data processing, particularly regarding the transfer of data to our service providers for order, payment, and shipping processing, can be found in the following sections of this privacy policy.
Once the contract has been fully processed, your data will be restricted for further processing and deleted after the expiry of tax and commercial law retention periods according to Art. 6 para. 1 sentence 1 lit. c GDPR, unless you have expressly consented to further use of your data according to Art. 6 para. 1 sentence 1 lit. a GDPR or we reserve the right to use data beyond this which is legally permitted and about which we inform you in this policy.
Inventory Management System
To process orders and contracts, we use inventory management systems from external service providers. Our service providers operate on our behalf under a data processing agreement. If you have any questions about our service providers or the basis of our cooperation with them, please contact us using the contact details provided in this privacy policy.
2.2 Contacting Us
As part of customer communication, we collect personal data to process your inquiries in accordance with Art. 6 para. 1 sentence 1 lit. b GDPR when you voluntarily provide it to us when contacting us (e.g., via contact form, live chat tool, or email). Mandatory fields are marked as such because we require this data to process your contact inquiry. The data that is collected is evident from the respective input forms.
Once your inquiry has been fully processed, your data will be deleted unless you have expressly consented to further use of your data according to Art. 6 para. 1 sentence 1 lit. a GDPR or we reserve the right to further use as permitted by law and described in this policy.
3. Data Processing for Shipping Purposes
To fulfill the contract according to Art. 6 para. 1 sentence 1 lit. b GDPR, we pass on your data to the shipping service provider commissioned with the delivery, to the extent necessary for the delivery of the ordered goods.
If you have any questions about our service providers and the basis of our cooperation with them, please contact us using the contact details provided in this privacy policy.
4. Data Processing for Payment
When processing payments in our online shop, we collaborate with the following partners: technical service providers, credit institutions, payment service providers.
4.1 Data Processing for Transaction Execution
Depending on the selected payment method, we pass on the data necessary for the execution of the payment transaction to our technical service providers, who work on our behalf under a data processing agreement, or to the authorized credit institutions or the selected payment service provider, to the extent required for payment processing. This is done pursuant to Art. 6 para. 1 sentence 1 lit. b GDPR.
In some cases, the payment service providers collect the required data themselves, for example, on their own website or through a technical integration during the order process. In this case, the privacy policy of the respective payment service provider applies.
If you have questions about our payment processing partners and the basis for our cooperation with them, please contact us using the contact details provided in this privacy policy.
4.2 Data Processing for Fraud Prevention and Optimization of Our Payment Processes
Where applicable, we provide our service providers with additional data, which they use, together with the data necessary for payment processing, as our processors for the purpose of fraud prevention and optimization of our payment processes (e.g., invoicing, handling disputed payments, supporting accounting). This serves our legitimate interests in protecting against fraud and in efficient payment management, in accordance with Art. 6 para. 1 sentence 1 lit. f GDPR.
5. Advertising via Email, Mail, Telephone
5.1 Email Newsletter with Subscription
If you subscribe to our newsletter, we will use the data required or separately provided by you to regularly send you our email newsletter based on your consent pursuant to Art. 6 para. 1 sentence 1 lit. a GDPR. You may unsubscribe at any time either by sending a message to the contact option described below or via a link provided in the newsletter. After unsubscribing, your email address will be removed from the distribution list unless you have expressly consented to further use of your data under Art. 6 para. 1 sentence 1 lit. a GDPR, or we reserve the right to use your data beyond this in ways permitted by law and described in this policy.
5.2 Postal Advertising and Your Right to Object
We also reserve the right to use your first and last name as well as your postal address for our own advertising purposes, such as sending you interesting offers and information about our products by mail. This serves to safeguard our legitimate interests in promotional communication with our customers, in accordance with Art. 6 para. 1 sentence 1 lit. f GDPR. You may object to the storage and use of your data for these purposes at any time by sending a message to the contact option described in this privacy policy.
After your objection or withdrawal of consent, we will delete your address from the distribution list unless you have expressly agreed to further use of your data or unless such use is otherwise legally permitted and described in this policy.
The advertising mailings are carried out by a service provider on our behalf, to whom we transmit your data for this purpose. If you have any questions about these service providers and the basis of our cooperation, please contact us using the contact details provided.
5.3 Telephone Advertising
If you have given your consent under Art. 6 para. 1 sentence 1 lit. a GDPR, we will use the data required or separately provided by you for our own advertising purposes, e.g., to inform you about interesting offers and our products. You may withdraw your consent at any time either by sending a message to the contact option described in this privacy policy or by verbal notice during any call.
After your withdrawal, we will delete your phone number unless you have expressly agreed to further use of your data or unless such use is otherwise legally permitted and described in this policy.
6. Cookies and Other Technologies
General Information
To make visiting our website attractive and to enable the use of certain functions, we use various technologies on different pages, including so-called cookies.
Cookies are small text files that are automatically stored on your end device. Some of the cookies we use are deleted after the browser session ends, i.e., when you close your browser (so-called session cookies). Other cookies remain on your end device and allow us to recognize your browser on your next visit (persistent cookies).
Privacy Protection on End Devices
When using our online services, we deploy technologies that are strictly necessary to provide the explicitly requested telemedia service. The storage of information in your end device or access to information already stored on your end device does not require your consent in this case.
For functions that are not strictly necessary, the storage of information on your end device or access to such information requires your consent. We would like to point out that if you do not give your consent, some parts of the website may not function without restrictions. Any consent you have given remains valid until you change the respective settings on your device or reset them.
Subsequent Data Processing Using Cookies and Other Technologies
We use such technologies that are strictly necessary for the use of certain website functions (e.g., shopping cart functionality). Through these technologies, IP addresses, visit time, device and browser information, and information about your use of our website (e.g., content of the shopping cart) are collected and processed. This is in line with our legitimate interest in providing an optimized presentation of our offering pursuant to Art. 6 para. 1 sentence 1 lit. f GDPR.
Cookie Settings
You can find the cookie settings for your browser under the following links:
● Microsoft Edge™ ● Safari™ ● Chrome™ ● Firefox™ ● Opera™
If you have given your consent to the use of technologies pursuant to Art. 6 para. 1 sentence 1 lit. a GDPR, you can revoke your consent at any time by sending a message to the contact address specified in this privacy policy.
7. Integration of Trusted Shops Trustbadge/Other Widgets
To display the Trusted Shops services (e.g., trustmark, collected reviews) and to offer Trusted Shops products for buyers after an order, Trusted Shops widgets are integrated on this website.
This serves to safeguard our legitimate interests in optimal marketing by enabling secure shopping pursuant to Art. 6 para. 1 sentence 1 lit. f GDPR. The Trustbadge and the associated services are an offering by Trusted Shops SE, Subbelrather Str. 15C, 50823 Cologne, Germany (“Trusted Shops”), with whom we are jointly responsible for data protection under Art. 26 GDPR.
Below, we inform you about the essential contents of the joint responsibility agreement according to Art. 26 para. 2 GDPR.
As part of the joint responsibility agreement between us and Trusted Shops SE, please primarily contact Trusted Shops using the contact options listed in their privacy policy if you have data protection concerns or wish to exercise your rights. You can also contact the controller of your choice at any time. If necessary, your inquiry will be forwarded to the other controller.
7.1 Data Processing When Integrating the Trustbadge/Other Widgets
The Trustbadge is provided by a U.S.-based CDN (Content Delivery Network) provider. An appropriate level of data protection is ensured by an adequacy decision of the EU Commission, which is available for the U.S. here. Service providers based in the U.S. are generally certified under the EU-U.S. Data Privacy Framework (DPF). More information is available here. If a service provider is not certified under the DPF, standard contractual clauses have been concluded as a suitable guarantee.
When the Trustbadge is accessed, the web server automatically stores a so-called server log file, which also includes your IP address, the date and time of access, the amount of data transferred, and the requesting provider (access data), and documents the access. The IP address is anonymized immediately after collection so that the stored data cannot be attributed to you personally. The anonymized data is particularly used for statistical purposes and for error analysis.
7.2 Data Processing After Completion of Order
After completing an order, order information (order total, order number, possibly purchased product) as well as your email address (hashed using a one-way cryptographic function) are transmitted to Trusted Shops. The legal basis is Art. 6 para. 1 sentence 1 lit. f GDPR. This serves to verify whether you are already registered for Trusted Shops services and is necessary to fulfill our and Trusted Shops’ overriding legitimate interests in providing buyer protection linked to the specific order and transactional rating services.
If you are already registered, further processing is carried out according to the contractual agreement between you and Trusted Shops. If you are not yet registered, you will be offered the opportunity to register. Further processing after registration will also be governed by your agreement with Trusted Shops. If you do not register, all transmitted data will automatically be deleted by Trusted Shops and will no longer be associated with your person.
Trusted Shops uses service providers for hosting, monitoring, and logging. The legal basis is Art. 6 para. 1 lit. f GDPR for ensuring the proper operation of the system. Processing may take place in third countries (USA, UK, and Israel). An adequate level of data protection is ensured by adequacy decisions from the EU Commission for these countries. U.S. service providers are usually certified under the EU-U.S. Data Privacy Framework. More information can be found here. If providers are not certified, standard contractual clauses are used.
8. Social Media
8.1 Social Buttons from Facebook (Meta), Instagram (Meta), WhatsApp
Our website uses social buttons from social networks. These are only integrated as HTML links so that no connection to the servers of the respective providers is established when our website is accessed. If you click on one of the buttons, the page of the respective social network opens in a new window of your browser. There you can, for example, press the Like or Share button.
8.2 Our Online Presence on Facebook (Meta), YouTube
If you have given your consent in accordance with Art. 6 para. 1 sentence 1 lit. a GDPR to the respective social media operator, your data will be automatically collected and stored for market research and advertising purposes when you visit our online presence on the mentioned social media platforms. Usage profiles are created using pseudonyms. These profiles can be used, for example, to place ads inside and outside the platforms that presumably match your interests. For this purpose, cookies are usually used. Please refer to the privacy notices of the providers linked below for detailed information about the processing and use of data by the respective social media operators, including your rights and settings options to protect your privacy. If you need help with this, you can also contact us.
Facebook (Meta) is provided by Meta Platforms Ireland Ltd., Block J, Serpentine Avenue, Dublin 4, Ireland. Data collected by Meta Platforms Ireland about your use of our Facebook presence is usually transmitted to a server of Meta Platforms, Inc., 1601 Willow Road, Menlo Park, California 94025, USA, and stored there.
Data processing for Facebook Fanpages is based on a joint controller agreement pursuant to Art. 26 GDPR. More information (including insights into page statistics) can be found here. Our service providers are located and/or use servers in countries for which the European Commission has determined an adequate level of data protection: USA, Canada, Japan, South Korea, New Zealand, United Kingdom, Argentina.
For the USA, the adequacy decision is the basis for data transfers as long as the respective provider is certified. Certification is in place.
Our service providers also use servers in countries such as Australia, Hong Kong, India, Indonesia, Malaysia, Singapore, Thailand, Taiwan, Brazil, and Mexico. For these countries, no adequacy decision exists. In such cases, we rely on the European Commission’s standard contractual clauses.
YouTube is provided by Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland. Data collected by Google about your use of our YouTube presence is usually transmitted to a server of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, and stored there.
Our service providers use servers in countries outside the EU/EEA. Where there is no adequacy decision by the EU Commission, we rely on the Commission’s standard contractual clauses for cooperation.
9. Contact Information and Your Rights
9.1 Your Rights
As a data subject, you have the following rights:
- Right of access (Art. 15 GDPR): You have the right to obtain information about the personal data we process about you.
- Right to rectification (Art. 16 GDPR): You have the right to request the correction of inaccurate data or completion of incomplete personal data stored by us.
- Right to erasure (Art. 17 GDPR): You have the right to request deletion of your personal data stored by us unless further processing is required:
- for exercising the right to freedom of expression and information;
- for compliance with a legal obligation;
- for reasons of public interest; or for the establishment, exercise, or defense of legal claims.
- ● Right to restriction of processing (Art. 18 GDPR): You have the right to request restriction of the processing of your personal data if:
- you contest the accuracy of the data;
- the processing is unlawful, but you oppose erasure;
- we no longer need the data, but you require it for the establishment, exercise, or defense of legal claims; or you have objected to processing pursuant to Art. 21 GDPR.
- Right to data portability (Art. 20 GDPR): You have the right to receive your personal data that you have provided to us in a structured, commonly used, and machine-readable format or to request its transmission to another controller.
- Right to lodge a complaint (Art. 77 GDPR): You have the right to lodge a complaint with a supervisory authority. Generally, you can contact the supervisory authority at your habitual residence or workplace or at our company headquarters.
Right to Object
If we process personal data to safeguard our legitimate interests based on a balancing of interests as described above, you may object to such processing with future effect. If the data is processed for direct marketing purposes, you may exercise this right at any time as described above.
If the processing is for other purposes, you only have the right to object on grounds relating to your particular situation.
After you exercise your right to object, we will no longer process your personal data for these purposes unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights, and freedoms, or if the processing is for the establishment, exercise, or defense of legal claims.
This does not apply if the processing is for direct marketing. In that case, we will no longer process your personal data for this purpose.
9.2 Contact Options
If you have any questions regarding the collection, processing, or use of your personal data, or if you wish to request information, correction, restriction, or deletion of data, or revoke any consent you have given, or object to a particular use of data, please contact us directly using the contact details provided in our legal notice.