Last updated: December 2019
It is of utmost importance for Influence.vision GmbH, Neustiftgasse 94 / B5, 1070 Vienna, Austria, firstname.lastname@example.org ("influence.vision", "we", "us") as data controller to protect your personal data. We therefore comply with the applicable data protection provisions, in particular the EU General Data Protection Regulation ("GDPR") and the Austrian Data Protection Act ("DSG")
2. WHAT KIND OF DATA DO WE COLLECT, FOR WHICH PURPOSES AND ON WHICH LEGAL BASIS DO WE PROCESS IT?
When you fill out the contact form on our Website and send us your enquiry or get in contact with us via e-mail or through other channels (such as social media platforms), we process the data you provided us with (e.g. name, e-mail address, subject of your message and the content of your message).
We process the data provided within the course of contacting us solely for processing your enquiry, to get in contact with you if desired and to provide you with the requested information. This data processing is therefore necessary for the fulfilment of our (pre)contractual obligations.
We collect and process the following data when you use our Online Services (so called log files): browser type and browser version, used operating system, referrer URL, host name of the accessing computer, time of the server request, IP address.
These log files are generated automatically by our servers when you use our Online Services and are necessary so that we can provide you with the desired service. We therefore process log files solely to be able to operate our Online Services, to identify you as a user authorized to access, to distribute web server requests in our server pool as well as for security reasons (e.g. for clarification of abusive and fraudulent activities). Thus, this data processing activity is necessary to ensure our legitimate interests in operating user friendly and secure Online Services.
REGISTRATION AND USER ACCOUNT
It is possible for you to register within our Online Services and open up an account for the use of our Online Services. In course of the registration process and in course of administrating and providing you with your account, we process the personal data provided by you. These data include your name, profile picture, company name (if applicable), email address, address, telephone number as well as your access data (password).
We also offer you the possibility to register for our Online Services by using your existing Facebook or Google account (Facebook-Connect and Google Sign-In). In this case, you will be forwarded to Facebook or Google, where you can log in with your user data and consent to the transfer of the following data categories to us: name/username, e-mail address, date of birth, profile picture.
We process your personal data provided in course of the registration and set-up of your account solely for operating your account, to provide you with our Online Services as well as for the billing of our services. This data processing is therefore necessary for the fulfilment of our (pre)contractual obligations.
PERSONAL PROFILE AND CONTENT PROVIDED BY YOU
You have to possibility to provide us with further information about you in order to complement and update your personal profile within our Online Services. In addition, you have the possibility to voluntarily upload your content to our Online Services. You may for example provide us with images and videos, texts, comments, details about your previous experience, clothing size or your telephone number.
We process these voluntarily provided data solely for the operation your personal profile and in order to provide you and other users with our Online Services. This data processing is therefore necessary for the fulfilment of our (pre)contractual obligations.
INTEGRATION OF SOCIAL MEDIA PROFILES
In order to complement your personal profile within our Online Services, you have the option to integrate your existing social media profiles, pages or channels and add them through the interface of the respective social platform and connect them to your influence.vision profile.
In course of this integration, you will be forwarded to the respective provider of the social media platform, where you can log in with your user data and consent to the integration of your social media profile within our Online Services. This integration of your social media profile allows influnence.vision to read your contributions from the social feed and also read data on likes, reach, comments and subscribers for the respective content.
In case you enter into a fee-based contract with us or conclude a contract with other users via our Online Services, we process the respective personal data required for this business processing, including your name and e-mail address as well as banking and payment details.
We process these data solely for the provision of your Online Services and handling the respective transactions. This data processing is therefore necessary for the fulfilment of our (pre)contractual obligations.
Based on your consent declaration, we process the personal data that you provided us with voluntarily in course of the subscription to our newsletter (your e-mail address and your name) for sending you e-mail newsletters about our current projects, marketing and service information.
You can withdraw your consent to the receipt of our newsletter at any time (e.g. via e-mail to email@example.com or through the unsubscribe link in our e-mail newsletters) with effect for the future and free of charge.
We run our own profiles and pages in social media networks in order to communicate with our users, interested persons and to inform the public about our services.
In case you get in contact with us via our social media profiles, we process the personal data you provide us with in order to get in contact with you if desired and to provide you with the requested information. In addition, we may process your data concerning the respective social media network for market research and advertising purposes. Such data processing is done by us and the respective provider of the social media network as joint data controllers.
We point out that some providers of social media networks are seated outside the European Union in a country that does not provide adequate data protection provisions.
For detailed information about the data processing activities concerning social media as well as opt-out options, please see the privacy policies of the respective network providers:
SOCIAL MEDIA PLUGINS
Within our Online Services, we have implemented so-called social media plugins, in particular Facebook like button, Google +1 button and Twitter buttons. Based on your consent declaration to the use of social media plugins, your browser will establish a direct connection to the respective server of the social network in order to load the button from there. At the same time, the provider of the social network will know that the respective page on our website has been visited by you.
Overall, we have implemented the following social plugins:
EMBEDDED SERVICES AND CONTENTS OF THIRD PARTIES
Within our Online Services, we use further services and contents of third party providers to incorporate their contents and services on the basis of our legitimate interests in the provision, optimisation and economical operation of our Online Services. This regularly requires that the third parties of these contents receive the IP address of your device as they are not able to send the requested contents to the correct browser without the IP address. The IP address is therefore necessary for the display of these contents and the use of the embedded services.
Specifically, we use the following services and contents of third parties in our Online Services:
Cookies are files that are transmitted from our web server to your web browser and are stored on your device for later retrieval. Through such cookies, our Online Services can store important data to provide you with our services and to make the use of our Online Services more comfortable for you.
We use the following types of cookies within our Online Services:
We use the following Tracking, Marketing and Web-Analysis Cookies provided that you render your consent:
Provided that you have given your consent to cookies, we use Google Analytics, a web analysis service of Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google") within our Online Services. The information generated through the Google Analytics cookie about the use of our Online Services are usually transmitted to the servers of Google in the United States of America and stored there. Google will use this information on our behalf to evaluate the usage of our Online Services by the users, to assemble reports about the activities within our Online Services and to deliver to us further services connected to the use of our Online Services. In doing so, pseudonymised user profiles of users can be generated from the processed data. Google will also potentially transmit the data to third parties if legally required or third parties process the data on behalf of Google. We use Google Analytics only with activated IP-anonymisation. This means that your IP address is shortened, in order to exclude a direct link to a specific device.
You can prevent the use of Google Analytics by downloading and installing the browser plug-in available through the following link: https://tools.google.com/dlpage/gaoptout?hl=en . You can find out more information about the data usage through Google, setting and objection possibilities here: https://policies.google.com/privacy .
Google Ads (former Google Adwords)
We also use the advertising tool "Google Ads" to promote our website. As part of this, we use the "Conversion Tracking" analytics service provided by Google. If you have reached our website via a Google Ad, a cookie will be stored on your device. These socalled "conversion cookies" lose their validity after 30 days and are not used for your personal identification. If you visit certain pages on our website and the cookie has not expired yet, we and Google may recognize that you, as a user, clicked on one of our Google ads and were redirected to our site.
The information obtained through the "Conversion Cookies" is used by Google to create visitor statistics for our website. These statistics tell us the total number of users who clicked on our ad and also which pages of our website were subsequently accessed by the respective user. However, we do not receive any information that personally identifies users.
Facebook Pixel and Facebook Custom Audience
Our website uses the remarketing feature "Facebook-Pixel" from Facebook Inc. ("Facebook"). This function serves to present to visitors of this website, as part of their visit to the social network Facebook, interest-based advertisements ("Facebook Ads"). For this purpose, Facebook pixel was implemented on our website. Via Facebook pixels, a direct connection to the Facebook servers is made when visiting the website. It is transmitted to the Facebook server that you have visited this website and Facebook assigns this information to your personal Facebook user account. Thus, we are together with Facebook joint controllers according to Art 26 GDPR.
We also use Facebook Custom Audience. Thereby, we upload our own contact lists that are compared with Facebook users. By this, we can create "Custom Audience" lists. We can then direct advertisements in the Facebook network (Facebook, Instagram) to these users (so-called "targeting"). We can also create such custom audience lists via the use of our website (via the Facebook pixel), the use of our apps or via certain interactions with our content (on Facebook or Instagram).
4. IS YOUR DATA TRANSMITTED TO THIRD PARTIES?
We entrust your personal data in the extent necessary to the following external service providers (data processors) that support us with the performance of our services:
All our data processors process your data only on our behalf and on the basis of our instructions so that we can provide you with our Online Services.
Apart from that, we transmit your personal data in the extent necessary to the following recipients (controllers):
If we process your data in a third country outside the European Union (EU), or respectively the European Economic Area (EEA) or this happens within the scope of using services of third parties, this only occurs, if necessary for the fulfilment of our (pre)contractual obligations, on the basis of your consent, due to a legal obligation or on the basis of our legitimate interests. We have implemented suitable and appropriate guarantees to develop a way of transmission of your data to the respective third country compliant with data protection (e.g. for the US through the "Privacy Shield" or the conclusion of so called "Standard Data Protection Clauses"). Upon your enquiry we can transmit a copy of those suitable guarantees to you, provided that we process or let your data be processed in third countries.
5. HOW LONG DO WE STORE YOUR PERSONAL DATA?
We store your personal data just as long as necessary for the purposes for which they are processed. Beyond that, we are potentially obligated to store your data for longer in accordance to legal retention periods.
Specifically, we store your data in connection with the establishment of contact with us in accordance with legal retention periods for a time period of usually seven years.
Usage data and log files are stored for a maximum time period of 500 days and are erased subsequently. We store data about your user behaviour for a time period of usually three years, or respectively at the latest until the withdrawal of your consent.
Provided that you have only registered for our newsletter and are, apart from that, no client of us, we store your data until the withdrawal of your consent and beyond that for a maximum of three years.
We store data in connection with your registration and your user account until the end of your client relationship with us, or respectively beyond that until the expiry of the respective legal retention periods (usually for a time period of seven years).
Apart from that, we also store your personal data after an incident beyond the abovementioned time periods as long as legal claims out of the relationship between you and us can be enforced, or respectively until the definitive clarification of an incident or legal dispute. This longer storage occurs for the ensuring of our overriding legitimate interests to the enforcement, clarification and defence of our legal claims.
6. RIGHTS OF DATA SUBJECTS
You have the right to access your personal data that is being processed by us (Art 15 GDPR). Apart from that, you have the right to rectification of inaccurate or incomplete data and – under certain circumstances – the right to erasure (Art 16 and Art 17 GDPR). Additionally, you have the right to restriction of processing (Art 18 GDPR) as well as the right to data portability concerning the data you have provided us with (Art 20 GDPR).
Moreover, you have the right to object on grounds relating to your particular situation (Art 21 GDPR). Such an objection can in particular occur relating to processing of data for the purposes of direct marketing.
Additionally, you have the right to withdraw your consent at any time with effect for the future.
Finally, you have the right to lodge a complaint with the responsible supervisory authority (Art 77 GDPR). The responsible supervisory authority for Austria is the Österreichische Datenschutzbehörde, Barichgasse 40-42, 1030 Vienna, Austria.
If you have questions relating to this or any other questions, you can contact us at: firstname.lastname@example.org
7. NO OBLIGATION TO PROVIDE US YOUR PERSONAL DATA
You are not obliged to provide us with your personal data. However, some personal details are required in order to enter into a contract with us (especially your name and e-mail address). In case you do not provide us with these data, we are not able to enter into a contract with you.
8. NO AUTOMATED DECISION-MAKING
You will not be subject to an automated decision-making when using our Online Services.
9. DATA SECURITY
We comply with appropriate technical and organisational security measures pursuant to Art 32 GDPR to, considering the risks, guarantee an appropriate data protection level, especially to protect your personal data against accidental or unlawful destruction, alteration or against loss and against unauthorised disclosure or unauthorised access.