Privacy policy
Privacy policy
The following data and information are stored in the cookies: The collection and processing of your personal data takes place in compliance with the applicable data protection regulations, in particular the EU General Data Protection Regulation (GDPR). We collect and process your personal data in order to be able to offer you our website and our services. Gem. Art. 13 GDPR, we describe in this statement which data is used by us, in what way and for what purpose and to what extent, and what choices and rights you have in connection with the use of your personal data.
1. Responsible body
AA-Grading, owner: Ali Karim, Am Schorn 59, 40472 Düsseldorf, is responsible for compliance with data protection on our website. We have not appointed a data protection officer.
We will be happy to answer any questions you may have regarding data protection issues. To do this, you have the following contact options:
E-Mail: info@aa-grading.com
Tel. +49 152 07536842
2. Data collection on our website
a) Server-Logfiles
When you access our website, information is automatically transmitted by your browser to the server of our website. This information is only stored for a short time in a so-called log file and is automatically deleted.
This includes the following data:
▪ Your IP address,
▪ the date and time of the call,
▪ Name and URL of the file you are viewing,
▪ Website from which the call is made (referrer URL),
▪ Information about the browser and operating system you are using,
▪ Name of your access provider.
This data is used for the purpose of ensuring a smooth connection and comfortable use of our website as well as for evaluating system security and stability.
The legal basis for data processing is Art. 6 Abs. 1 S. 1 lit. f GDPR., as we have a legitimate interest in collecting data for the aforementioned purposes. In addition, a legal basis also arises from Art. 6 Abs. 1 lit. b GDPR for the processing of data for the performance of a contract or pre-contractual measures.
The data will not be used to draw conclusions about your person.
b) Contact form/communication by e-mail
On our site you will find a contact form. We would like to give our customers the opportunity to contact us in an uncomplicated way. You can also contact us directly by e-mail. If you wish to use our contact form, you must provide your name and a valid email address. If you send us a letter by e-mail, we will at least receive your e-mail address. All other data provided is optional. The data is collected for the purpose of initiating or executing contractual relationships pursuant to Art. Art. 6 Abs. 1 lit. b GDPR Insofar as your enquiry is not aimed at initiating or executing a contract, we still have a legitimate interest in processing and answering your enquiry. In this respect, the use of personal data for this purpose is governed by Art. 6 Abs. 1 lit. f DSGVO.
We will only use the data you provide to process your request. Insofar as your enquiry is directed towards the initiation or execution of business, we will delete your data after our internal deletion periods.
Insofar as your request is related to another purpose, we will delete your data after processing, insofar as there is no other legal basis for data storage.
c) Processing of customer and contract data
When initiating a business, concluding a contract and fulfilling a contract, we use your personal data necessary for this purpose in accordance with Art. Art. 6 Abs. 1 lit. b DSGVO.
Data will only be transmitted to third parties if and to the extent that this is necessary for the fulfilment of the contract, e.g. if a company for production or transport services or a credit institution has been commissioned to process payments.
This personal data will be deleted after the expiry of the statutory warranty periods. after the end of statutory retention periods.
For each order or other binding action, we store your IP address as well as the day and time. This is done for your protection as well as in accordance with Art. Art. 6 Abs. 1 lit. f GDPR for our legitimate interest in proving the existence of a claim and in order to prevent acts of abuse or unauthorized use of our system.
Furthermore, within the scope of your consent pursuant to Art. Art. 6 Abs. 1 lit. a. GDPR, a cookie is set that stores your data so that it is automatically entered on your next visit.
d) Processing by payment service providers
In the case of fee-based services, we process your personal data, in particular payment data (account, credit card and other bank details) on the basis of Art. 6 Abs. 1 lit. b DSGVO. This is done for the purpose of executing the contract (payment processing/accounting). To the extent necessary, your payment data will be transmitted to service providers (credit institutions, payment providers, accounting service providers) for the payment transaction and for billing. processed directly by them.
Your payment data will be stored for the duration of the contractual relationship and will be deleted after the complete termination of the contractual relationship (until the conclusion of all mutual contractual obligations), insofar as there is no other legal basis for data storage.
We use the following payment providers:
PayPal
Privacy Policy of PayPal: https://www.paypal.com/de/smarthelp/article/datenschutz-und-sicherheit-faq3712
(a) Cookies
Our website uses cookies. Cookies are small text files that are stored on your device. They help us to make it easier for you to navigate through our offer and enable the website to be displayed correctly. They are intended to support the user-friendliness of the website and are of course completely harmless to your device. In this way, information is temporarily collected in connection with the device and software you use. No conclusions about your identity will be drawn from this.
For example, we use so-called "session cookies". These cookies are automatically deleted after your visit. We also use cookies, which are stored on your device, for example, to make it easier for you to use our site on a subsequent visit and to recognize your browser on your next visit ("permanent cookies"). Of course, you can manually delete these cookies at any time .
We also use cookies to statistically record and evaluate the use of our website. This is done for the purpose of further optimising our offer for you.
We also use cookies for pseudonymised reach measurement. You will be informed about this in more detail below.
The cookies that are absolutely necessary for the operation of our website, i.e. without which our website cannot be displayed, are set for this purpose in order to safeguard our legitimate interests in accordance with Art. 6 Abs. 1 S. 1 lit. f GDPR. These are automatically deleted after a defined period of time.
The cookies that are required for the execution of contracts or for the contractually agreed use of our website are set in accordance with Art. 6 Abs. 1 S. 1 lit. b GDPR. These are automatically deleted after a defined period of time.
The use of necessary cookies, which are not as described above, is based on your consent pursuant to Art. Art. 6 Abs. 1 lit. and DSGVO. Your consent can be revoked at any time with immediate effect. To do this, go to the settings of the browser you are using and select "Clear browsing data", here you must have selected "Cookies and other website data" and then remove them.
Of course, you can also view our website without cookies. To do this, you must prevent cookies from being stored on your hard drive by selecting "do not accept cookies" in your browser settings. For a more detailed description, please refer to the instructions provided by your browser manufacturer. You can also use the deactivation page of the Network Advertising Initiative (/) and additionally the US website () or the European website (http://www.youronlinechoices.com/uk/your-ad-choiceshttp://optout.networkadvertising.orghttp://www.aboutads.info/choices/) to disable cookies. If you do not accept cookies, this may lead to functional limitations on our website.
f) Google Analytics
On the basis of your consent (within the meaning of Art. 6 Abs. 1 lit. a GDPR), we use Google Analytics, a web analysis service provided by Google LLC, 1600 AmphitheatreParkway, Mountain View, CA 94043, USA. With regard to the use of the data, there is a joint responsibility with regard to the data processing between Google and us pursuant to Art. Art. 26 GDPR. We have agreed with Google that we assume primary responsibility under the GDPR for the processing of the data and comply with all obligations under the GDPR with regard to the processing of the data (e.g. a. Articles 12 and 13 of the GDPR, Articles 15 to 22 of the GDPR and Articles 32 to 34 of the GDPR). Google Analytics is used for the needs-based design and continuous optimisation of our website as well as to statistically record and evaluate our website. In this context, pseudonymised user profiles are created and cookies are used. This includes information about your use of this website, such as:
▪ Your IP address,
▪ the date and time of the call,
▪ Name and URL of the file you are viewing,
▪ Website from which the call is made (referrer URL),
▪ Information about the browser and operating system you are using,
▪ Name of your access provider.
If you have given your consent, this information will be transmitted to a Google server in the USA and stored there. Please note that this is a data transfer to a country outside the EU. Google will use this information to evaluate your use of our website, to compile reports on website activity for the website operators and to provide further information on website activity and internet usage. related services. The anonymized IP address transmitted by your browser as part of Google Analytics will not be merged with other data held by Google.
As described above, you can prevent cookies from being stored on your computer. In addition, it is possible to prevent the use of the data collected by cookies by Google by downloading and installing the browser plugin available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de
For more information on data protection in connection with Google Analytics, please refer to the Google Analytics Help Center (https://support.google.com/analytics/answer/6004245?hl=de).
With the Standard Contractual Clauses, Google submits to European data protection and thus offers a guarantee to comply with European data protection law.
g) Google marketing and remarketing services
On the basis of your consent (within the meaning of Art. 6 Abs. 1 lit. a. GDPR), we use Google Marketing and Remarketing Services, hereinafter referred to as Google Marketing Services, Google LLC, 1600 AmphitheatreParkway, Mountain View, CA 94043, USA, hereinafter referred to as Google. With regard to the use of the data, there is a joint responsibility with regard to the data processing between Google and us pursuant to Art. Art. 26 GDPR. We have agreed with Google that we assume primary responsibility under the GDPR for the processing of the data and comply with all obligations under the GDPR with regard to the processing of the data (e.g. a. Articles 12 and 13 of the GDPR, Articles 15 to 22 of the GDPR and Articles 32 to 34 of the GDPR). The use of Google's marketing services is for the needs-based design and continuous optimisation of our website as well as for analysis purposes and for the economic improvement of our online offering.
Insofar as you have given your consent, we can use the Google marketing services to display targeted advertisements on our site as well as for our site on third-party sites in such a way that they are adapted to the potential interests of the users. The advertisements can be adapted to the extent that the user receives offers on other pages that he has viewed on our site but not purchased (remarketing). On our website as well as on pages on which Google marketing services are activated, a (re-)marketing tag, a corresponding code, is carried out by Google for this purpose and the Internet pages are integrated. This code generates a cookie on your device in which it is noted which websites you have visited as a user, which content you are interested in and which offers you have completed or even just viewed. Furthermore, technical data such as browser, visiting times and information of the other visited page are also stored in it. In addition, your IP address will be transmitted to Google in anonymized form. It is also possible for Google to merge the data with data from other sources.
As part of these Google marketing services, we use the Google Adwords service. By using Google Adwords , we can see what happens after a user clicks on the corresponding ad. This can be, for example, the purchase of a product, the registration for a newsletter, a call to our company or that of a file. In this case, corresponding customer actions that we have defined are referred to as conversions . The conversion cookie is therefore specifically tailored to us and cannot be tracked by other AdWords customers. These conversion cookies are important to us because they allow us to compile statistics on the usage of all customers in order to optimize our offer even better. No information is used that can identify an individual user.
As part of the Google marketing services, we can integrate third-party advertisements on our website with the Google service "AdSense". AdSense uses cookies that allow partner websites of Google and Google itself to display ads based on users' visits to that website or Google itself. other websites on the Internet.
As part of Google's marketing services, Google's Google Optimizer service allows us to understand the effects of various changes to a website as part of so-called A/B testing . For these testing purposes, cookies are placed on users' devices. Only pseudonymous user data is processed.
As part of the Google marketing services, we can integrate third-party advertisements into our website with the Google service DoubleClick . DoubleClick sets cookies for you. These cookies make it possible for Google's partner websites to display ads based on users' visits to this website or on the basis of their visits. other websites.
In addition, the Google Tag Manager service is used. Through Tag Manager, we manage Google's marketing and analytics services on our website.
As described above, you can prevent cookies from being stored on your computer. In addition, it is possible to prevent the use of the data collected by cookies by Google by downloading and installing the browser plugin available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de
In addition, you can use the settings and opt-out options provided by Google if you wish to object to this processing. A corresponding link can be found here: https://adssettings.google.com/authenticated
Please note that this is a data transfer to a country outside the EU.
You can find more information about the marketing services on Google's overview page: https://policies.google.com/technologies/ads
Google's privacy policy can be found here: https://policies.google.com/privacy
With the Standard Contractual Clauses, Google submits to European data protection and thus offers a guarantee to comply with European data protection law.
h) Google Ajax & jQuery Bibliotheken, Google Webfonts
On the basis of Art. 6 Abs. 1 S. 1 lit. f GDPR, we use Google Ajax & jQueryLibraries, Google Webfonts of the company Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland , hereinafter referred to as "Google ", for the purpose of a customer-friendly and appealing presentation of our website. In this case, program libraries and fonts are retrieved by your browser from Google and loaded into the browser cache in order to display content, text and fonts correctly. In this process, information about your provider, operating system, browser and your IP address may be transmitted to Google.
Google complies with European data protection law. You can find more information about data protection at Google here: https://policies.google.com/privacy?hl=en
i) Facebook
On the basis of your consent (within the meaning of Art. 6 Abs. 1 lit. a. GDPR), we use the plug-in of the social network Facebook (address: Facebook Ireland Limited, 4 Grand Canal Square , Dublin 2, Ireland ) to increase our level of awareness on our website. You can recognize the plug-ins by the Facebook logo or Facebook logo. the Like button - an overview can be found here: http://developers.facebook.com/docs/Plug-ins/
If you have given your consent, the plug-in establishes a direct connection between your browser and the Facebook servers. We have no influence whatsoever on the nature and scope of the data that the plug-in transmits to the servers of Facebook Inc. Information can be found here: https://www.facebook.com/help/186325668085084
The plug-in informs Facebook Inc. that you, as a user, have visited this website. It is possible that your IP address is stored. If you are logged in to your Facebook account during your visit to this website, the aforementioned information will be linked to it.
If you use the functions of the plug-in – for example, by sharing or "liking" a post – the corresponding information will also be transmitted to Facebook Inc.
Do you want to prevent the Facebook. Inc. links this data to your Facebook account, please log out of Facebook before visiting this website and delete the stored cookies. You can use your Facebook profile to make further settings for data processing for advertising purposes or object to the use of your data for advertising purposes. You can access the settings here:
Profile settings on Facebook: https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen
Your consent can be revoked at any time for the future.
j) Instagram
On the basis of your consent (within the meaning of Art. 6 Abs. 1 lit. a. GDPR), we integrate plug-ins from the social network Instagram (address: Instagram LLC., 1601 Willow Road, Menlo Park, CA 94025, USA) on our website. You can recognize the plug-ins by the Instagram logo.
If you have given your consent, the plug-in establishes a direct connection between your browser and the Instagram servers. We have no influence whatsoever on the nature and scope of the data that the plug-in transmits to Instagram's servers. Information can be found here: https://help.instagram.com/519522125107875?helpref=page_content
The plug-in informs Instagram that you, as a user, have visited this website. It is possible that your IP address is stored. If you are logged into your Instagram account during your visit to this website, the aforementioned information will be linked to it.
Use the functions of the plug-in – for example, by using the Instagram button, the corresponding information is also transmitted to Instagram.
If you would like to prevent Instagram from linking this data to your Instagram account, please log out of Instagram before visiting this website and delete the stored cookies.
3. Social Media Banner
We have created a fan page on the social network Facebook (address: Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland), hereinafter referred to as Facebook, and as the operator of this fan page together with Facebook , we are considered jointly responsible within the meaning of Art. 26 GDPR. As the operator of a fan page, Facebook offers us the opportunity to compile anonymous statistics in the form of so-called page insights about the usage behavior of our fan page. For this purpose, Facebook installs and reads cookies on the user's device.
We have agreed with Facebook that the primary responsibility under the GDPR for the processing of Insights data will be assumed by Facebook and will comply with all obligations under the GDPR with regard to the processing of Insights data (e.g. a. Articles 12 and 13 of the GDPR, Articles 15 to 22 of the GDPR and Articles 32 to 34 of the GDPR). In addition, Facebook Ireland will make the essence of this Page Insights Supplement available to data subjects.
This addendum can be viewed here:
https://www.facebook.com/legal/terms/page_controller_addendum
We process the data collected by means of Facebook Insights on the basis of our legitimate interest pursuant to Art. Art. 6 Abs. 1 lit. f) DSGVO. Our legitimate interest in raising our profile is to provide information about our services and our company on the frequently used social media. In particular, the modern and up-to-date presentation of our company is important to us.
All further information about Facebook Insights can be found here:
https://www.facebook.com/legal/terms/information_about_page_insights_data
We have created a business profile on the social network Instagram (operated by Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland ), hereinafter referred to as Facebook, and as the operator of this profile together with Facebook , we are considered jointly responsible within the meaning of Art. 26 GDPR. As the operator of an Instagram profile, Facebook offers us the opportunity to compile anonymous statistics in the form of so-called page insights about the usage behavior of our profile. For this purpose, Facebook installs and reads cookies on the user's device.
We have agreed with Facebook that the primary responsibility under the GDPR for the processing of Insights data will be assumed by Facebook and will comply with all obligations under the GDPR with regard to the processing of Insights data (e.g. a. Articles 12 and 13 of the GDPR, Articles 15 to 22 of the GDPR and Articles 32 to 34 of the GDPR). In addition, Facebook Ireland will make the essence of this Page Insights Supplement available to data subjects.
This addendum can be viewed here:
https://www.facebook.com/legal/terms/page_controller_addendum
We process the data collected by means of Facebook Insights on the basis of our legitimate interest pursuant to Art. Art. 6 Abs. 1 lit. f) DSGVO. Our legitimate interest in raising our profile is to provide information about our services and our company on the frequently used social media. In particular, the modern and up-to-date presentation of our company is important to us.
All further information about Facebook Insights can be found here:
https://www.facebook.com/legal/terms/information_about_page_insights_data
4. Disclosure of data
As a matter of principle, your personal data will not be transmitted to third parties. However, data may exceptionally be transferred for the following reasons:
▪ insofar as you have given your explicit consent, Art. 6 Abs. 1 S. 1 lit. to DSGVO
▪ insofar as the disclosure pursuant to Art. 6 Abs. 1 S. 1 lit. f GDPR and there is no overriding interest worthy of protection in the non-disclosure of your data
▪ insofar as we are legally obliged to pass on the data, Art. 6 Abs. 1 S. 1 lit. c DSGVO
▪ insofar as a disclosure pursuant to Art. 6 Abs. 1 S. 1 lit. b GDPR is permissible and necessary for the processing of contractual relationships with you
Insofar as your data is processed by third parties commissioned by us, this is done on the basis of Art. 28 GDPR by means of an order processing agreement.
5. Transfers to third countries
If we process data in a third country (i.e. outside the European Union (EU) or the European Economic Area (EEA)) or this within the framework of the use of third-party services or disclosure, or Data is only transferred to third parties if this is done to fulfill our (pre)contractual obligations, on the basis of your consent, on the basis of a legal obligation or on the basis of our legitimate interests. Subject to legal or contractual authorisations, we will process or have the data processed in a third country only if the special requirements of Art. 44 ff. Process GDPR. This means that the processing is carried out, for example, on the basis of special guarantees, such as the officially recognised determination of a level of data protection equivalent to that of the EU or compliance with officially recognised special contractual obligations (so-called "standard contractual clauses").
Your data collected on this website will be transmitted in the USA by Google, Facebook, Twitter: By accepting further cookies, you agree to our consent to the use of cookies. Art. 49 Abs. 1 S. 1 lit. a GDPR requires your data to be processed in the United States.
6. Rights of data subjects
▪ Right of access Art. 15 GDPR
You have the right to request confirmation from us as to whether we are processing personal data about you. If this is the case, you may request access to this personal data and to the following information:
▪ the purposes of processing
▪ the categories of personal data that are processed
▪ the recipients or categories of recipients to whom the personal data have been or will be disclosed, in particular recipients in third countries or international organisations
▪ if possible, the envisaged period for which the personal data will be stored or, if this is not possible, the criteria used to determine that period
▪ the existence of a right to rectification or erasure of personal data concerning you or to restriction of processing or a right to object to such processing
▪ the existence of a right to lodge a complaint with a supervisory authority
▪ if the personal data is not collected from you, any available information about the origin of the data
▪ the existence of automated decision-making, including profiling , in accordance with Article 22(1) and (4) of the GDPR and, at least in these cases, meaningful information about the logic involved, as well as the scope and intended effects of such processing for the data subject
▪ Right of rectification Art. 16 GDPR
You can immediately request the correction of incorrect personal data or the completion of your personal data stored by us.
▪ Right to erasure (right to be forgotten) of your data, Art. 17 GDPR
You can request the deletion of your data stored by us, insofar as:
▪ the personal data are not used for the purposes for which they were collected or otherwise processed, or are no longer necessary;
▪ you withdraw your consent on which the processing is based pursuant to Article 6(1)(a) of the GDPR or Article 9(2)(a) of the GDPR and there is no other legal basis for the processing as a result;
▪ you object to the processing pursuant to Article 21(1) of the GDPR and there are no overriding legitimate grounds for the processing, or you object to the processing pursuant to Article 21(2) of the GDPR;
▪ the personal data has been unlawfully processed;
▪ the erasure of the personal data is necessary for compliance with a legal obligation under Union or Member State law to which you are subject;
▪ the personal data has been collected in relation to information society services offered, in accordance with Article 8(1) of the GDPR.
Upon presentation of the requirements, we are obliged to erase the data, unless the processing is necessary for the exercise of the right to freedom of expression and information, for compliance with a legal obligation, for reasons of public interest or for the assertion, exercise or defence of legal claims.
▪ Right to restriction of processing, Art. 17 GDPR
You have the right to obtain from us the restriction of processing insofar as
▪ the accuracy of the personal data is disputed by you, but only for the period enabling us to verify the accuracy of the data;
▪ the processing is unlawful and you do not want your personal data to be erased immediately, but instead request the restriction of the use of the personal data;
▪ we no longer need the personal data for the purposes of the processing, but you need it for the establishment, exercise or defence of legal claims, or
▪ you have objected to the processing pursuant to Article 21 (1) GDPR, as long as it has not yet been determined whether the legitimate grounds on our part prevail over you.
To the extent that processing is restricted, we may only process your personal data – apart from their storage – with your consent or for the establishment, exercise or defence of legal claims or for the protection of the rights of another natural or legal person or for reasons of important public interest of the Union or of a Member State.
Before the restriction is lifted, you will be informed again.
▪ Right to data portability Art. 20 GDPR
You have the right to receive your personal data that you have provided to us in a structured, commonly used and machine-readable format or to request that it be transmitted to another controller.
▪ Right to object Art. 21 GDPR
You have the right, according to Art. 21 GDPR, to object to the processing of your personal data if it is based on legitimate interest pursuant to Art. 6 Abs. 1 S. 1 lit. f GDPR. However, this only applies if there are reasons arising from your particular situation or if the objection is directed against direct marketing.
▪ Right of revocation Art. 7 Abs. 3 GDPR
You have the right to change your acc. Art. 6 Abs. 1 S. 1 lit. a GDPR at any time. This revocation is only valid for future use.
▪ Right to lodge a complaint with supervisory authorities
Without prejudice to any other administrative or judicial remedy, you have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, your place of work or our registered office, if you believe that the processing of your personal data infringes the General Data Protection Regulation.
If you wish to make use of your rights as a data subject, you can also do so by e-mail to the e-mail address mentioned above.
7. Data integrity
For security reasons and to protect the transmission of confidential content, such as enquiries that you send to us as the site operator, this site uses SSL or SSL encryption. TLS encryption. This can be recognized by the fact that the address bar of the browser changes from "http://" to "https://". In addition, a lock symbol can be seen in the browser bar.
If the SSL or If TLS encryption is activated, the data that you transmit to us cannot be read by third parties.
In addition, we have taken precautions in the form of technical and organizational measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction or unauthorized access by third parties.
8. Up-to-dateness and changes to this privacy policy
This privacy policy is currently valid and has the status 31. December 2020.
In order to ensure that our privacy policy always complies with the current legal requirements, we reserve the right to make changes at any time. This also applies in the event that the privacy policy has to be adapted due to new or revised services, for example new services. The new privacy policy will then take effect on your next visit to our website.
Our privacy policy is available for you to view and print out at any time on our website.
9. Complaints and warnings
If you feel that your rights have been violated or otherwise disadvantaged, please let us know yourself. You will then receive a personal, individual answer. As part of your duty to mitigate damages, we would like to point out that costs will not be covered by us by a lawyer hired by you out of court, without prior contact. There is expressly no intention on our part for you to instruct a lawyer to issue a cease-and-desist order and/or a cease-and-desist declaration with a penalty clause. Consequently, a presumed intention cannot be taken into account.