Privacy Statement

KBK Antriebstechnik GmbH takes the protection of your personal data very seriously. We treat your personal information confidentially and according to the legal data security regulations and privacy statements as referred to below.

Please note that the latest GDPR (General Data Protection Regulation), which came into effect on 25 May 2018, still contains many loopholes and unexplained definitions, that will not be filled or answered within the next few months or years by court decisions, law changes and further concretions. At present there exist different statements for the same facts of a case, depending on the German state and the responsible data protection authority, how the new law is interpreted by the data protection authority.

A further complicating fact is that some software on the market that is also used in our company has partially not yet been prepared for the use or the implementation of certain obligations due to the GDPR or these changes are still in progress.

Therefore, the below-mentioned rules, information and other points, are subject to a constant change, to successfully implement legally mandatory changes. In particular, regarding the order information and histories for drawings collected as well as your orders, we expect decisions regarding time-periods and ascertainments, which data needs to be retained for which period of time. For the time being, we refrain from an automatic deletion at a certain date, to be able to process frequently occurring enquiries, regarding past orders or constructions that are considerably exceeding the legal storage periods. This is considered as a service to our customers. Unfortunately, once data that has been deleted it cannot be retrieved anymore.

The following information provides a summary of the data involved.

Protection of the website

Generally, the use of our website does not request any personal data. Personal data (e.g. name, address or e-mail addresses) on our website is only collected on a voluntary basis. This data will not be passed on to any third parties without your approval.

We would like to point out that the data transfer on the internet (e.g. during communication by e-mail) may have security gaps. A complete data protection against access of third parties is not possible.

Social Media PlugIns

We deliberately avoid social media plugins like Facebook Pixel, Facebook Like, Google Plus and similar services on our website.

Cookies

The legal basis for the processing of any personal data by using cookies is Art 6 (1) lit. f, GDPR.

Internet pages use so-called cookies in several places. Cookies do not damage your computer in any way and do not contain any viruses. The purpose of these cookies is to make our services more user-friendly, effective and secure. Cookies are small text files that are placed on your computer and stored by your browser.

Most of the cookies we use are so-called “session-cookies” which are deleted at the end of your visit. Other cookies are stored on your terminal device until you decide to delete them. These cookies enable us to recognize your browser again the next time you visit our website.

You can set your browser configuration that you will be informed about the setting of cookies, so you are able to decide whether to accept cookies in individual cases or exclude them in general as well as you can activate the automatic deletion of cookies when closing the browser. The deactivation of cookies may restrict the functionality of the website.

Server-Log- Files

The legal basis for the temporary storage of data and log-files is Art 6 (1) lit. f, GDPR.

We operate our server ourselves and store the access to the log-files that can contain any of the following information, provided that your browser supports these functions:

  • Browser type and browser version
  • Operating system 
  • Referrer URL 
  • Host name of the accessing computer (IP address) 
  • Time of server inquiry 
  • Duration of the visit / inquiry 
  • Traffic consumption

This data is analyzed once the following day, to allow the graphical processing of the use of our website, independent of any third-party providers like Google Analytics. An analysis or tracking up to IP level is not activated. If somehow possible, we will prepare a point of access at city level at the most, whereas they are technically inaccurate and are viewed cumulatively from our side. Any further data like accessed pages, used internet browsers etc. are both used to improve our website, the security of the server and information technology services, to detect any misuse or attacks.

The analysis data, including the technically necessary history, are filed permanently, to be able to track the development of our website and the corresponding accesses. This data is cumulated and individual accesses are untraceable. A transfer of data to third parties shall not take place and is undesirable on our part.

Access to analyses is limited to a restricted in-house group of people.

In order to enable criminal investigation and prosecution in case of any evidence for illegal use of, or attacks on the website, log-files are stored non-anonymized for 7 days and we reserve the right to check the log-files in case of an inappropriate use and take legal action where appropriate. Upon the expiration of a retention time of 7 days, the data will be deleted automatically.

Data acquisition for providing the website and saving the data in log-files is mandatory for operating the website. Consequently, users on their part have no possibility of objection. Due to the fact, that the collected data cannot be technically allocated to any person, an opt-out is impossible in contrast to Google Analytics.

Contact- and inquiry forms

The legal basis therefore is Art 6 (1) lit. a, b, c, f, GDPR.

If you send us a request by contact form, your information on the inquiry form including the contact info will be stored for the purpose of processing enquiries and in case of any follow-up questions. As a rule, data is only transferred anonymous to our pre-suppliers (e.g. drawings) to enable us to submit you an offer or to process your order. In case of any further data transfer, it will be coordinated with you within the scope of the order, as for example a direct delivery of our pre-supplier due to time constraints.

Any data is encrypted and sent to us by mail – it is not stored on the web server.

Additionally, you will receive an e-mail (an encrypted version – if supported by your mail provider) at your provided e-mail address, including all data we had acquired via the contact form. This e-mail is purely informative and contains no advertising. In addition to the data entered by you in the contact form, the IP address, the time and date are also stored, so we are able to prove your consent legally, for the date to be processed. This data is only relevant for the proof and is not collected or processed elsewhere.

To protect the contact forms against spam, we use “reCaptcha” by Google Inc., which is the safest and most user-friendly anti-spam protection available. The module used for this purpose, sends out various data to Google, among other things the IP address, which is necessary for the verification by reCaptcha. No data from the contact form will be passed on! By using reCaptcha, you agree that this data is transmitted to Google (anonymized) and possibly further processed to improve the service.

Which information will be processed, where and in which way, can be seen on Google privacy statement, which can be found on https://policies.google.com/privacy?hl=de.

Google Analytics

The legal basis for the processing of personal data is Art 6 (1) lit. f. GDPR.

This website uses functions of the web analysis service Goodle Analytics. The provider is Google Inc., 1600 Amphitheatre Parkway Mountain View, CA 94043, USA.

IP anonymization

We have activated the IP-anonymization on this website. Resulting therefrom, your IP address will be shortened by Google within the member states of the European Union and all other signatories to the agreement within the European Economic Area (EEA). Only in exceptional cases, the complete IP address is transmitted to Google in the USA and will be shortened there. On behalf of the operator of this website, Google will use the information to evaluate your use of this website to compile reports on the website activities, and to provide other services related to the use of the website and of the internet towards the operator of the website. The IP address transmitted by your browser as part of Google Analytics, will not be merged with any other data by Google.

Browser Plugin

You can prevent the installation of cookies by activating the relevant setting of your browser software; however, we would like to point out that in this case you might not be able to use the full functions of this website. Furthermore, you can prevent the information generated by the cookie, concerning any data regarding your use of the website (incl. your IP address) from being captured by Google by installing and downloading the browser plugin available via the following link: https://tools.google.com/dlpage/gaoptout?hl=de

Objection against data acquisition

More information concerning the handling of user data with Google Analytics can be found on the Privacy Statement of Google: support.google.com/analytics/answer/6004245

Using Google Maps

We use “Google Maps API” by Google for example to show the route map. In doing so, the visitor’s data is collected, processed and used by Google Maps. The terms of use for Google Maps can be found hier. Further information regarding the data protection guidelines by Google can be found on https://policies.google.com/privacy?hl=de.

SSL encryption

For security reasons, and to protect the transmission of confidential contents like your requests to us as website operator, this site uses an SSL encryption. An encrypted connection can be recognized at the address line of the browser changes from http:// to https:// and at the padlock icon in the browser line.

If the SSL encryption is activated, the data transmitted to us cannot be read by any third party.

Objection to receiving promotional e-mails

We hereby expressly object to any third party use of contact data that has been published in accordance with the editorial requirements, for the transmission of not expressly solicited advertising and information material. The operators of these web sites reserve the right to take legal steps in the event of unsolicited forwarding of promotional material, i.e. by spam mail.

Source: e-recht24.de

Data protection in general

We would like to inform you about our internal data storage which you agree to by placing an order or an inquiry. This does not affect your general right to information, to delete and to correct.

Address data

The legal basis therefore is Art 6 (1) lit. a, b, c, f, GDPR.

As our offer is primary addressed to B2B, the creation of an address requests at least an official letterhead including all company-relevant and tax-related data, which is entered in our ERP System. Moreover, the contact person is entered in our system, which we use in the context of our orders, purchases and so on.

The following data is collected, provided the latter is known:

  • Title
  • First name
  • Last name
  • Telephone, fax, mobile number
  • E-mail address

This data is permanently stored in the system, unless the trading partner has provided any information, e.g. that an employee has left the company.

In this case, the data of the contact person will be overwritten or deleted.  

Order-related data

The legal basis therefore is Art 6 (1) lit. a, b, c, f, GDPR.

For customer-related and legal reasons, order-related data is stored without any expiration period for an indefinite time. We consider this as a service for our customers, to offer an informative history menu if necessary or to ensure the tracking of older orders. It often occurs that we receive inquiries regarding drawings or orders, which are significantly older than 10 years.

E-mail communication

Logging

The legal basis for temporary storage of data and log files is Art 6 (1) lit. f, GDPR.

All incoming and outgoing e-mails are subject to an automatic check in context with a spam-, virus- and a general security audit. For this purpose, data is reconciled with special cloud protection systems of our mail server. This reconciliation refers only to checksums or special signatures, which do not allow any conclusions to any personal data. NO e-mails will be transmitted to the provider.

  • Sender and recipient of the mail 
  • Reference line 
  • IP address of the mail server 
  • Feedback / codes of the server (e.g. whether the delivery was successful)

If necessary, special detailed debug log files are created to troubleshoot any problems with the own system or the communication with any other systems. Upon resolving the problem, they will be deleted immediately. No further communication data will be gathered as mentioned in the context above. The mail protocols are currently not anonymized and will remain for 7 days on the computer because problems sending e-mails and/or misuse of the server may occur significantly later.

The access to the log files is protected and only administration has access when necessary. Both an opt-out regarding this log and the systematic deletion of individual entries are impossible, due to technical settings by the manufacturer. If necessary, we would work out a satisfactory solution.

E-mail archiving / backup / storing

Legal basis are Art 6 (1) lit. a, b, c, f, GDPR

Any correspondence regarding orders, purchase, etc., are imported into our ERP-system according to the order and/or address.

E-mails are usually not deleted but moved into an archive file, to enable a quick and easy access to the e-mails outside the existing ERP-system if necessary. There is no general access to any user and/or e-mail accounts except our info(at)kbk-antriebstechnik.de address, which are edited in a regular mailbox. E-mails are not automatically deleted.

Data transfer, data vending, advertising, information letters

Legal basis are Art 6 (1) lit. a, b, c, f, GDPR

All collected data will not be sold and/or passed on to any third parties, except this is done in the context of an order, if necessary in consultation with the business partner. This is only order-relevant data.

We also use the collected address data for mailings via post, fax or e-mails, whereas it is limited to active business relationships (according to a certain turnover / purchase within the past 1-3 years, depending on the type of letter). This is not regular advertising, like a Newsletter for example, but information letters regarding price increases or changes in general, expansion of our product range, as well as the changes and/or adjustments of certain products by the supplier, legal and/or significant changes regarding our company (e.g. change of management) and greeting cards or postal services at Christmas, for instance.

Address lists are only generated for that purpose and will be deleted upon usage.

If you do not agree with the treatment of your data, please contact our privacy officer immediately.

Right to information, deletion, correction, suspension and transmitting data

You are entitled to free information about your stored data at any time, the origin and the recipient as well as the purpose of the data processing. Furthermore, you are entitled to correct, suspend and/or delete this data. For more detailed and legally sound information regarding your rights, we recommend visiting the website https://dsgvo-gesetz.de/kapitel-3/.

Data protection officer and contact person

In case of any questions, suggestions and/or asserting rights against us, we would like to ask you to contact us direct via the addresses mentioned in the imprint, by mail to a.karpstein(at)kbk-antriebstechnik.de. Your request will be processed immediately. Alternatively you may also contact our data protection officer, Mrs. Anna Karpstein, at +49 9372-940612