Privacy Statement in accordance with Article 13 of Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data, on the free movement of such data and repealing Directive 95/46/EC (General Data Protection Regulation).
In accordance with the EU General Data Protection Regulation (Regulation 2016/679 of the European Parliament and of the Council), we inform you about the following.
NAME AND CONTACT DETAILS OF THE CONTROLLER
The person responsible for processing the data is the company:
We, Weingut Poys, are the owners of the top-level domain www.poys.at and collect, process and use your personal data only with your consent, in the context of contract performance or to achieve the agreed purposes or if there is another legal basis in accordance with the General Data Protection Regulation (DSGVO); this in compliance with data protection and civil law provisions.
Only such personal data is collected that is necessary for the implementation and processing of your reservation or user account registration and your order, for contacting you via the contact form, sending our newsletter and for detecting and combating fraud and other illegal activities and data that you have voluntarily provided to us. For more information on our data processing activities, please see below.
Personal data is any data that contains individual information about personal or factual circumstances. This includes the following personal data processed by us: name, account name, account password, IP address, social media data, address, email address, telephone number, date of birth, age, gender or payment information (bank account data, credit card data, etc.).
Information and deletion
As a data subject, you have the right to information about your stored personal data, its origin and recipient and the purpose of data processing at any time, as well as a right to rectification, data transfer, objection, restriction of processing and blocking or deletion of incorrect or inadmissibly processed data.
If there are changes to your personal data, we request that you inform us accordingly.
You have the right to revoke your consent to the use of your personal data at any time. Your request for information, deletion, correction, objection and / or data transfer, in the latter case, provided that this does not cause a disproportionate effort, can be directed to the address provided by us or by e-mail.
If you are of the opinion that the processing of your personal data by us violates applicable data protection law or that your data protection claims have been violated in any other way, you have the option of complaining to the competent supervisory authority. In Austria, the data protection authority is responsible for this (www.dsb.gv.at, T: +43 1 521 52 0, M: firstname.lastname@example.org). Please still contact us in advance – we assume that we can answer your questions directly in most cases.
Your personal data is protected by appropriate organisational and technical precautions. These precautions relate in particular to protection against unauthorised, illegal or accidental access, processing, loss, use and manipulation (e.g. firewalls, data encryption, physical access restrictions for our data centres, authorisation controls for data access, etc.).
Notwithstanding our efforts to maintain a reasonably high level of due diligence at all times, we cannot rule out that information you disclose to us over the internet may be viewed and used by others.
Please note that we therefore accept no liability whatsoever for the disclosure of information due to errors in data transmission not caused by us and / or unauthorised access by third parties (e.g. hacking attack on e-mail account or telephone).
We will not process the data provided to us for purposes other than those covered by our contractual relationship with you or by your consent or otherwise by a provision in accordance with the GDPR. This excludes the use for statistical purposes, provided that the data provided has been anonymised.
Transfer of data to third parties
In order to fulfill the agreed purpose, in particular to fulfill your order based on your prior consent, it may also be necessary to forward your data to third parties (e.g. carriers, insurance companies, public authorities, service providers, in particular IT and payment service providers that we use and to whom we provide data, etc.). Your data will only be forwarded on the basis of the DSGVO. We limit the amount of personal data we share to what is directly relevant and necessary to achieve the relevant purpose.
Some of the recipients of your personal data mentioned above are located outside of your country or process your personal data there. The level of data protection in other countries may not be the same as in Austria. If we need to transfer your personal data to countries for which the EU Commission has not decided that they have an adequate level of data protection, we take measures to ensure that all recipients have an adequate level of data protection; for this purpose, we conclude standard contractual clauses (2010/87/EC and/or 2004/915/EC).
Disclosure of data breaches
We strive to ensure that data breaches are identified at an early stage and, where appropriate, reported to you or the relevant supervisory authority without delay, including the relevant categories of data involved.
Retention of data
We will not retain data for longer than is necessary to fulfill our contractual or legal obligations and to defend and enforce claims.
Our website uses “cookies” to make our services more user-friendly, effective and secure. A “cookie” is a small text file that we transfer via our web server to the cookie file of the browser on the hard drive of your computer. This enables our website to recognise you as a user when a connection is established between our web server and your browser. Cookies help us to determine the frequency of use and the number of users of our web pages. The content of the cookies we use is limited to an identification number that does not allow any personal reference to the user. The main purpose of a cookie is to recognise visitors to the website.
Two types of cookies are used on our website:
You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general, and activate the automatic deletion of cookies when closing the browser. If cookies are deactivated, the functionality of our website may be limited.
Server log files
In order to optimise our website in terms of system performance, user-friendliness and provision of useful information about our offerings, the provider of the website automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. This includes your internet protocol address (IP address), browser and language setting, operating system, referrer URL, your internet service provider and date/time.
We do not merge this data with personal data sources. We reserve the right to check this data retrospectively if we become aware of specific indications of unlawful use.
We use Google Analytics, a web analytics service provided by Google LLC, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA (Google). Google Analytics uses methods that enable an analysis of your use of the websites, such as so-called “cookies”, text files that are stored on your computer. The information generated about your use of the websites is usually transmitted to a Google server in the USA and stored there. By activating IP anonymisation on the websites, the IP address is shortened before transmission within the member states of the European Union or in other contracting states to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. On our behalf, Google will use this information for the purpose of evaluating your use of the websites, compiling reports on website activity and providing us with other services relating to website activity and internet usage. The anonymised IP address transmitted by your browser as part of Google Analytics will not be merged with other data from Google.
You can prevent the collection of data generated by the cookie and related to your use of the websites (including your IP address), as well as the processing of this data by Google, by downloading and installing the browser plugin available at https://tools.google.com/dlpage/gaoptout?hl=de. However, we would like to point out that in this case you may not be able to use all functions of our websites to their full extent.
For more information on data usage by Google, settings and opt-out options, please visit the Google websites at https://policies.google.com/privacy/partners?hl=de (“Data usage by Google when you use our partners’ websites or apps”), https://policies.google.com/technologies/ads?hl=de (“Data usage for advertising purposes”), https://adssettings.google.com (“Manage information Google uses to show you ads”). Translated with www.DeepL.com/Translator (free version)
We process our customers’ data in the context of ordering processes in our online shop to enable you to select and order products and services, and in the context of their payment and delivery or execution. The processed data includes inventory data, communication data, contract data, payment data; the data subjects are our customers, prospective customers and other business partners. The processing is carried out for the purpose of providing contractual services in the context of operating an online shop, billing, delivery and customer services. In this context, we use session cookies to store the contents of the shopping cart and permanent cookies to store the login status.
We disclose the data to third parties only in the context of delivery, payment or in the context of legal permissions and obligations to legal advisors and authorities. The data will only be processed in third countries if this is necessary for the fulfillment of the contract (e.g. at the request of the customer for delivery or payment).
In order to complete an order in the online shop, you must register to create an account. You can also create a user account without placing an order. The data entered during registration will be processed for the purpose of processing the order. In addition, you may be informed by e-mail about information relevant to the offer or registration, such as changes to the scope of the offer or technical circumstances. If you have cancelled your user account, your data will be deleted, provided that you ask for this and that the deletion does not conflict with any legal obligations to retain data. We are entitled to delete irretrievably all your data stored during the contract period.
If you use our contact form, we use this information to contact you regarding your enquiry or to answer your reservation or order. This data is stored and used exclusively for the purpose of answering your request or for contacting you and for the related technical administration. Your data will be deleted after the final processing of your request, provided that you ask for this and the deletion does not conflict with any legal obligations to retain data.
Insofar as you have approved the use of personal data for special purposes that are subject to the consent requirement, you can revoke this approval at any time. The data will then be deleted by us. Data which you have entered in the course of the online contact request with us will not be passed on to third parties. You are entitled to limit your consent to the use of your data. In this case, the data will only be deleted within the scope of the that limitation.
If you have consented to receive our newsletter by means of double opt-in (after registration you will receive an e-mail asking you to confirm your registration), we will use your e-mail address to send you an e-mail newsletter several times a year with information about products, promotions, and news on our winery. You can revoke your consent to receive the newsletter at any time. You also have the option to unsubscribe from the newsletter by clicking on a special link at the end of each newsletter.
Links to other websites
Changes to this statement
We reserve the right to change this privacy statement at any time in accordance with legal requirements and business needs.