Privacy

General Information

The following information provides a simple overview of what happens to your personal data when you visit this website. Personal data means any data by which you can be personally identified. Detailed information on data protection can be found in the privacy policy listed below this text.

1. Data Collection on This Website​

Who is responsible for data collection on this website?

Data processing on this website is carried out by the website operator. The operator’s contact details can be found in the legal notice of this website.

How do we collect your data?

Some data is collected when you provide it to us. This may include, for example, data that you enter into a contact form.

Other data is collected automatically or with your consent by our IT systems when you visit the website. This mainly includes technical data, such as your internet browser, operating system, or the time at which the page was accessed. This data is collected automatically as soon as you enter this website.

What do we use your data for?

Part of the data is collected to ensure the error-free provision of the website. Other data may be used to analyze your user behavior.

What rights do you have regarding your data?

You have the right at any time to receive information free of charge about the origin, recipients, and purpose of your stored personal data. You also have the right to request correction or deletion of this data.

If you have given consent to data processing, you may withdraw this consent at any time with effect for the future. You also have the right, under certain circumstances, to request restriction of the processing of your personal data. Furthermore, you have the right to lodge a complaint with the competent supervisory authority.

For this purpose, as well as for any further questions regarding data protection, you may contact us at any time using the address provided in the legal notice.

2. Hosting and Content Delivery Networks (CDN)

External Hosting

This website is hosted by an external service provider, referred to as a hosting provider. The personal data collected on this website is stored on the servers of the hosting provider.

This may include, in particular, IP addresses, contact inquiries, metadata and communication data, contractual data, contact details, names, website access data, and other data generated through a website.

The use of the hosting provider is carried out for the purpose of fulfilling contracts with our potential and existing customers pursuant to Art. 6(1)(b) GDPR and in the interest of secure, fast, and efficient provision of our online offering by a professional provider pursuant to Art. 6(1)(f) GDPR.

Our hosting provider will process your data only to the extent necessary to fulfill its performance obligations and will follow our instructions regarding this data.

Conclusion of a Data Processing Agreement

To ensure data protection-compliant processing, we have concluded a data processing agreement with our hosting provider.

3. General Information and Mandatory Information

Data Protection

The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with statutory data protection regulations and this privacy policy.

When you use this website, various personal data is collected. Personal data means data by which you can be personally identified. This privacy policy explains which data we collect and what we use it for. It also explains how and for what purpose this is done.

We would like to point out that data transmission over the internet, for example communication by email, may have security vulnerabilities. Complete protection of data against access by third parties is not possible.

Information on the Responsible Entity

The responsible entity for data processing on this website is:

Stefan Vielhaber
Scharnweber Straße 14
13405 Berlin
Germany

Phone: +49 30 32669063
Email: info@stefan-vielhaber.com

The responsible entity is the natural or legal person who, alone or jointly with others, determines the purposes and means of processing personal data, such as names, email addresses, or similar data.

Legally Required Data Protection Officer

We are not legally required to appoint a data protection officer and have not appointed a data protection officer for our company.

Withdrawal of Your Consent to Data Processing

Many data processing operations are only possible with your explicit consent. You may withdraw consent you have already given at any time. An informal notification by email to us is sufficient for this purpose.

The legality of the data processing carried out before the withdrawal remains unaffected by the withdrawal.

Right to Object to Data Collection in Special Cases and to Direct Advertising pursuant to Art. 21 GDPR

IF DATA PROCESSING IS CARRIED OUT ON THE BASIS OF ART. 6(1)(E) OR (F) GDPR, YOU HAVE THE RIGHT AT ANY TIME, FOR REASONS ARISING FROM YOUR PARTICULAR SITUATION, TO OBJECT TO THE PROCESSING OF YOUR PERSONAL DATA. THIS ALSO APPLIES TO PROFILING BASED ON THESE PROVISIONS.

THE RESPECTIVE LEGAL BASIS ON WHICH PROCESSING IS BASED CAN BE FOUND IN THIS PRIVACY POLICY.

IF YOU OBJECT, WE WILL NO LONGER PROCESS YOUR AFFECTED PERSONAL DATA UNLESS WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING THAT OVERRIDE YOUR INTERESTS, RIGHTS, AND FREEDOMS, OR THE PROCESSING SERVES THE ESTABLISHMENT, EXERCISE, OR DEFENSE OF LEGAL CLAIMS.

IF YOUR PERSONAL DATA IS PROCESSED FOR DIRECT MARKETING PURPOSES, YOU HAVE THE RIGHT AT ANY TIME TO OBJECT TO THE PROCESSING OF PERSONAL DATA CONCERNING YOU FOR THE PURPOSE OF SUCH ADVERTISING. THIS ALSO APPLIES TO PROFILING INSOFAR AS IT IS RELATED TO SUCH DIRECT MARKETING.

IF YOU OBJECT, YOUR PERSONAL DATA WILL THEREAFTER NO LONGER BE USED FOR DIRECT MARKETING PURPOSES.

Right to Lodge a Complaint with the Competent Supervisory Authority

In the event of violations of the GDPR, data subjects have the right to lodge a complaint with a supervisory authority, in particular in the member state of their habitual residence, place of work, or place of the alleged violation.

The right to lodge a complaint exists without prejudice to any other administrative or judicial remedies.

Right to Data Portability

You have the right to have data that we process automatically on the basis of your consent or in fulfillment of a contract handed over to you or to a third party in a commonly used, machine-readable format.

If you request the direct transfer of the data to another controller, this will only be done insofar as it is technically feasible.

SSL or TLS Encryption

This website uses SSL or TLS encryption for security reasons and to protect the transmission of confidential content, such as orders or inquiries that you send to us as the website operator.

You can recognize an encrypted connection by the fact that the address line of the browser changes from “http://” to “https://” and by the lock symbol in your browser line.

If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.

Information, Deletion, and Correction

Within the framework of the applicable statutory provisions, you have the right at any time to receive information free of charge about your stored personal data, its origin and recipients, and the purpose of data processing. You may also have a right to correction or deletion of this data.

For this purpose, as well as for further questions regarding personal data, you may contact us at any time using the address provided in the legal notice.

Right to Restriction of Processing

You have the right to request restriction of the processing of your personal data. You may contact us at any time using the address provided in the legal notice.

The right to restriction of processing exists in the following cases:

If you dispute the accuracy of your personal data stored by us, we usually need time to verify this. For the duration of the review, you have the right to request restriction of the processing of your personal data.

If the processing of your personal data was or is unlawful, you may request restriction of data processing instead of deletion.

If we no longer need your personal data, but you require it for the exercise, defense, or establishment of legal claims, you have the right to request restriction of the processing of your personal data instead of deletion.

If you have lodged an objection pursuant to Art. 21(1) GDPR, a balancing of your interests and our interests must be carried out. As long as it has not yet been determined whose interests prevail, you have the right to request restriction of the processing of your personal data.

If you have restricted the processing of your personal data, this data may, apart from its storage, only be processed with your consent, or for the establishment, exercise, or defense of legal claims, or for the protection of the rights of another natural or legal person, or for reasons of important public interest of the European Union or a member state.

Objection to Advertising Emails

The use of contact data published within the framework of the legal notice obligation for sending unsolicited advertising and information materials is hereby objected to.

The operators of this website expressly reserve the right to take legal action in the event of unsolicited advertising information being sent, for example through spam emails.

4. Data Collection on This Website

Cookies

Our websites use so-called “cookies”. Cookies are small text files and do not cause any damage to your device. They are stored either temporarily for the duration of a session, known as session cookies, or permanently, known as persistent cookies, on your device.

Session cookies are automatically deleted after your visit. Persistent cookies remain stored on your device until you delete them yourself or your web browser deletes them automatically.

In some cases, cookies from third-party companies may also be stored on your device when you visit our website, known as third-party cookies. These enable us or you to use certain services provided by the third-party company, for example cookies for processing payment services.

Cookies have various functions. Many cookies are technically necessary because certain website functions would not work without them, for example shopping cart functions or the display of videos. Other cookies are used to analyze user behavior or display advertising.

Cookies that are required to carry out the electronic communication process, necessary cookies, or to provide certain functions requested by you, functional cookies, for example shopping cart functions, or to optimize the website, for example cookies for measuring web audiences, are stored on the basis of Art. 6(1)(f) GDPR, unless another legal basis is specified.

The website operator has a legitimate interest in storing cookies for the technically error-free and optimized provision of its services. If consent to the storage of cookies has been requested, the relevant cookies are stored exclusively on the basis of this consent, Art. 6(1)(a) GDPR. Consent can be withdrawn at any time.

You can configure your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general, and activate the automatic deletion of cookies when closing the browser.

If cookies are disabled, the functionality of this website may be restricted.

If cookies from third-party companies or cookies for analysis purposes are used, we will inform you separately in this privacy policy and, where necessary, request your consent.

Server Log Files

The provider of this website automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:

Browser type and browser version
Operating system used
Referrer URL
Host name of the accessing computer
Time of the server request
IP address

This data is not combined with other data sources.

This data is collected on the basis of Art. 6(1)(f) GDPR. The website operator has a legitimate interest in the technically error-free display and optimization of the website. For this purpose, server log files must be collected.

Contact Form

If you send us inquiries via the contact form, the information from the inquiry form, including the contact details you provide there, will be stored by us for the purpose of processing the inquiry and in case of follow-up questions.

We do not pass on this data without your consent.

The processing of this data is carried out on the basis of Art. 6(1)(b) GDPR if your inquiry is related to the fulfillment of a contract or is necessary for the implementation of pre-contractual measures.

In all other cases, processing is based on our legitimate interest in effectively processing inquiries addressed to us, Art. 6(1)(f) GDPR, or on your consent, Art. 6(1)(a) GDPR, if this has been requested.

The data you enter in the contact form remains with us until you request deletion, withdraw your consent to storage, or the purpose for data storage no longer applies, for example after your inquiry has been fully processed.

Mandatory statutory provisions, especially retention periods, remain unaffected. In addition, we regularly review processing activities and carry out an additional review at the end of each year, deleting data in accordance with statutory provisions and our internal requirements.

Inquiry by Email, Telephone, or Fax

If you contact us by email, telephone, or fax, your inquiry, including all personal data resulting from it, such as name and inquiry, will be stored and processed by us for the purpose of handling your request.

We do not pass on this data without your consent.

The processing of this data is carried out on the basis of Art. 6(1)(b) GDPR if your inquiry is related to the fulfillment of a contract or is necessary for the implementation of pre-contractual measures.

In all other cases, processing is based on our legitimate interest in effectively processing inquiries addressed to us, Art. 6(1)(f) GDPR, or on your consent, Art. 6(1)(a) GDPR, if this has been requested.

The data you send to us through contact inquiries remains with us until you request deletion, withdraw your consent to storage, or the purpose for data storage no longer applies, for example after your request has been fully processed.

Mandatory statutory provisions, especially statutory retention periods, remain unaffected.

5. Plugins and Tools

YouTube

This website embeds videos from the YouTube platform. The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.

When you visit one of our pages on which YouTube is embedded, a connection to YouTube servers is established. The YouTube server is informed which of our pages you have visited.

Furthermore, YouTube may store various cookies on your device. With the help of these cookies, YouTube can obtain information about visitors to this website. This information is used, among other things, to compile video statistics, improve user-friendliness, and prevent fraud attempts. The cookies remain on your device until you delete them.

If you are logged into your YouTube account, you allow YouTube to assign your browsing behavior directly to your personal profile. You can prevent this by logging out of your YouTube account.

The use of YouTube is in the interest of an appealing presentation of our online offerings. This constitutes a legitimate interest pursuant to Art. 6(1)(f) GDPR. If consent has been requested, processing is carried out exclusively on the basis of Art. 6(1)(a) GDPR. Consent can be withdrawn at any time.

Further information on the handling of user data can be found in YouTube’s privacy policy:
https://policies.google.com/privacy

YouTube with Enhanced Privacy Mode

This website uses YouTube in enhanced privacy mode. According to YouTube, this mode means that YouTube does not store any information about visitors to this website before they watch a video.

However, the transfer of data to YouTube partners is not necessarily excluded. For example, YouTube establishes a connection to the Google DoubleClick network regardless of whether you watch a video.

As soon as you start a YouTube video on this website, a connection to YouTube servers is established. The YouTube server is informed which of our pages you have visited.

If you are logged into your YouTube account, YouTube can assign your browsing behavior directly to your personal profile. You can prevent this by logging out of your account.

Furthermore, YouTube may store cookies on your device after starting a video. With these cookies, YouTube can obtain information about visitors to this website. This information is used, among other things, to compile video statistics, improve user experience, and prevent fraud.

Further data processing operations may be triggered after starting a YouTube video, over which we have no control.

The use of YouTube is based on Art. 6(1)(f) GDPR. If consent has been requested, processing is based on Art. 6(1)(a) GDPR. Consent can be withdrawn at any time.

More information can be found in YouTube’s privacy policy:
https://policies.google.com/privacy

Google Web Fonts

This website uses so-called web fonts provided by Google Ireland Limited for the uniform display of fonts.

When you access a page, your browser loads the required web fonts into your browser cache in order to display texts and fonts correctly.

For this purpose, your browser must establish a connection to Google’s servers. As a result, Google becomes aware that this website was accessed via your IP address.

The use of Google Web Fonts is based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in the uniform presentation of the typeface on the website.

If consent has been requested, processing is carried out exclusively on the basis of Art. 6(1)(a) GDPR. Consent can be withdrawn at any time.

If your browser does not support web fonts, a standard font from your computer will be used.

Further information:
https://developers.google.com/fonts/faq
https://policies.google.com/privacy

6. Our Social Media Presence

Data Processing by Social Networks

We maintain publicly accessible profiles on social networks. The individual social networks we use are listed below.

Social networks such as Facebook, Twitter, etc., can generally analyze your user behavior extensively when you visit their website or a website with integrated social media content, such as like buttons or advertising banners.

When you visit our social media profiles, numerous data processing operations relevant to data protection are triggered.

If you are logged into your social media account and visit our social media profile, the operator of the social media platform can assign this visit to your user account.

Your personal data may also be collected even if you are not logged in or do not have an account. This may occur, for example, through cookies stored on your device or by collecting your IP address.

Using this data, social media platform operators can create user profiles in which your preferences and interests are stored. This allows interest-based advertising to be displayed to you both within and outside the respective platform.

If you have an account with the respective social network, this advertising can be displayed across all devices on which you are or were logged in.

Please also note that we cannot track all processing operations on social media platforms. Depending on the provider, additional processing operations may therefore be carried out by the operators of the platforms.

Details can be found in the terms of use and privacy policies of the respective social networks.

Legal Basis

Our social media presence is intended to ensure the most comprehensive online presence possible. This constitutes a legitimate interest within the meaning of Art. 6(1)(f) GDPR.

Processing may also be based on your consent, for example when using tracking technologies. In this case, the legal basis is Art. 6(1)(a) GDPR.

Controller and Assertion of Rights

If you visit one of our social media profiles, we are jointly responsible with the operator of the respective platform for the data processing operations triggered during your visit.

You can generally assert your rights both against us and against the operator of the respective social media platform.

Please note that despite joint responsibility, we do not have full control over data processing by social media platforms. Our options depend largely on the policies of the respective provider.

Storage Duration

Data collected directly by us via social media will be deleted from our systems as soon as the purpose for storage no longer applies, you request deletion, withdraw your consent, or the purpose ceases to exist.

Stored cookies remain on your device until you delete them. Mandatory legal provisions, especially retention periods, remain unaffected.

We have no influence on the storage duration of your data stored by social network operators for their own purposes. For details, please refer to the privacy policies of the respective social networks.

Social Networks in Detail

Facebook

We maintain a profile on Facebook. The provider is Facebook Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland.

According to Facebook, collected data may also be transferred to the USA and other third countries.

We have concluded a joint processing agreement with Facebook (Controller Addendum), which defines responsibilities for data processing when visiting our Facebook page.

You can view this agreement here:
https://www.facebook.com/legal/terms/page_controller_addendum

You can adjust your advertising settings in your user account:
https://www.facebook.com/settings?tab=ads

Further details:
https://www.facebook.com/about/privacy/

7. Analytics Tools and Advertising

Google Analytics

This website uses functions of the web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.

Google Analytics enables the website operator to analyze the behavior of website visitors. The website operator receives various usage data, such as page views, time spent on pages, operating systems used, and the origin of the user.

These data may be combined by Google into a profile assigned to the respective user or their device.

Google Analytics uses technologies that enable user recognition for the purpose of analyzing user behavior, such as cookies or device fingerprinting. The information collected by Google about your use of this website is usually transmitted to a Google server in the United States and stored there.

The use of this analytics tool is based on Art. 6(1)(f) GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize both the website and advertising.

If consent has been requested, processing is carried out exclusively on the basis of Art. 6(1)(a) GDPR. Consent can be withdrawn at any time.

IP Anonymization

We have activated IP anonymization on this website. As a result, your IP address is shortened by Google within member states of the European Union or in other contracting states of the European Economic Area before being transmitted to the USA.

Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there.

On behalf of the operator of this website, Google will use this information to evaluate your use of the website, compile reports on website activity, and provide other services related to website and internet usage.

The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.

Browser Plugin

You can prevent the collection and processing of your data by Google by downloading and installing the browser plugin available at the following link:
https://tools.google.com/dlpage/gaoptout

Further information:
https://support.google.com/analytics/answer/6004245

Data Processing Agreement

You can prevent the collection and processing of your data by Google by downloading and installing the browser plugin available at the following link:
https://tools.google.com/dlpage/gaoptout

Further information:
https://support.google.com/analytics/answer/6004245

Demographic Features in Google Analytics

This website uses the “demographic features” function of Google Analytics to display suitable advertisements to website visitors within the Google advertising network.

This allows reports to be created containing information about the age, gender, and interests of website visitors.

This data originates from interest-based advertising by Google and from third-party visitor data. It cannot be assigned to a specific individual.

You can deactivate this function at any time via the ad settings in your Google account or generally prohibit the collection of your data by Google Analytics.

Google Analytics E-Commerce Tracking

This website uses the “e-commerce tracking” function of Google Analytics.

With the help of e-commerce tracking, the website operator can analyze the purchasing behavior of website visitors to improve online marketing campaigns.

Information such as orders placed, average order values, shipping costs, and the time from viewing to purchasing a product are recorded.

These data may be combined by Google under a transaction ID assigned to the respective user or their device.

Storage Duration

Data stored by Google at user and event level, which is linked to cookies, user identifiers, or advertising IDs, is anonymized or deleted after 14 months.

Details:
https://support.google.com/analytics/answer/7667196

Use of Hotjar

We use the web analytics service Hotjar provided by Hotjar Ltd., Dragonara Business Centre, 5th Floor, Dragonara Road, Paceville St Julian’s STJ 3141, Malta, to better understand user behavior and optimize the user experience.

Data Collected by Hotjar

Hotjar analyzes user behavior visually and technically, including:

  • mouse movements, scrolling behavior, and clicks
  • heatmaps showing aggregated interactions
  • session replays of user visits
  • information about device, screen size, browser, and operating system
  • inputs in form fields, excluding sensitive data
  • time, duration, and frequency of visits
  • use of feedback tools such as surveys


Hotjar automatically anonymizes IP addresses and stores only pseudonymized user profiles. No personal content is collected or combined with other data.

Legal Basis

Processing is carried out on the basis of your consent pursuant to Art. 6(1)(a) GDPR, provided you have given this consent via our cookie banner.

You can withdraw your consent at any time or adjust it via the cookie settings.

Opt-Out Option

You can disable data collection by Hotjar at any time:
https://www.hotjar.com/policies/do-not-track

Alternatively, you can disable tracking via our cookie settings.

Further Information

Processing is carried out on the basis of your consent pursuant to Art. 6(1)(a) GDPR, provided you have given this consent via our cookie banner.

You can withdraw your consent at any time or adjust it via the cookie settings.

Use of CRM System (Zoho)

We use the CRM system of Zoho Corporation to manage customer relationships and process inquiries and appointments.

When you book a consultation appointment on our website, the data you provide, such as your name, email address, phone number, and any additional information you submit, will be stored and processed in our CRM system.

The purpose of this processing is to organize and manage consultation appointments, communicate with you, and provide our services efficiently.

The processing of your data is carried out on the basis of Art. 6(1)(b) GDPR, insofar as it is necessary for the performance of a contract or pre-contractual measures. If consent has been requested, processing is carried out on the basis of Art. 6(1)(a) GDPR, and consent may be withdrawn at any time.

Zoho may process data on servers located outside the European Union. In such cases, appropriate safeguards are implemented, in particular the use of EU Standard Contractual Clauses, to ensure an adequate level of data protection.

We have concluded a data processing agreement with Zoho to ensure that your data is handled in compliance with applicable data protection laws.

Your data will be stored in the CRM system only as long as necessary for the respective purpose or as required by statutory retention obligations.

8. eCommerce and Payment Providers

Processing of Customer and Contract Data

We collect, process, and use personal data only insofar as it is necessary for the establishment, content design, or modification of the legal relationship, known as inventory data.

This is carried out on the basis of Art. 6(1)(b) GDPR.

Personal data regarding the use of this website, known as usage data, is collected, processed, and used only insofar as necessary to enable the user to use the service or to bill for it.

Collected customer data is deleted after completion of the order or termination of the business relationship. Statutory retention periods remain unaffected.

Data Transfer Upon Conclusion of Contract for Online Shops and Goods Delivery

We transfer personal data to third parties only if this is necessary within the framework of contract processing, for example to companies entrusted with the delivery of goods or to the financial institution responsible for payment processing.

Further transmission of data does not take place or only takes place if you have expressly consented.

Your data will not be passed on to third parties without your explicit consent, for example for advertising purposes.

The legal basis is Art. 6(1)(b) GDPR.

Data Transfer for Services and Digital Content

Personal data is transferred to third parties only if this is necessary within the framework of contract processing, for example to the financial institution responsible for payment processing.

No further transfer takes place unless you have expressly consented.

Payment Services

We integrate payment services from third-party providers on our website.

If you make a purchase, your payment data, such as name, payment amount, bank details, or credit card number, is processed by the payment service provider.

The respective contractual and data protection provisions of the providers apply to these transactions.

The use of payment providers is based on Art. 6(1)(b) GDPR and on our legitimate interest in a smooth, convenient, and secure payment process pursuant to Art. 6(1)(f) GDPR.

If consent is required, processing is based on Art. 6(1)(a) GDPR and can be withdrawn at any time.

Payment Providers Used

PayPal

Provider: PayPal (Europe) S.à r.l. et Cie, S.C.A., Luxembourg

Data transfers to the USA are based on EU standard contractual clauses.

Details:
https://www.paypal.com/privacy

Apple Pay

Provider: Apple Inc., USA

Privacy Policy:
https://www.apple.com/legal/privacy

Google Pay

Provider: Google Ireland Limited

Privacy Policy:
https://policies.google.com/privacy

Bitte trage Dich hier ein, damit wir Dir unser Gratis-Strategiepapier zusenden können.

*Du willigst darin ein, dass wir Dich per E-Mail kontaktieren können.

Fünf fatale Fehler,
Die Deine Geldanlage zum finanziellen Abenteuer machen.

Jetzt in unserem Newsletter anmelden und das eBook kostenfrei downloaden.