Thank you for visiting our website. We attach great importance to the protection of your data and would like to take this opportunity to provide you with comprehensive information on how we process it.
This policy applies both to data processing within Wertheim Vertriebsgesellschaft m.b.H. and to the use of our website. The legal basis for this data processing is the General Data Protection Regulation (GDPR) and the Austrian Data Protection Act (DSG).
The controller pursuant to Art. 4 (7) of the EU General Data Protection Regulation (GDPR) is
Wertheim Vertriebsgesellschaft m.b.H.
Danfoss-Straße 6
2353 Guntramsdorf
Tel: +43 (0)2236 320 350 – 0
Fax: +43 (0)2236 320 350 – 21
Email: office@wertheim.at
The company has appointed Ms Birgit von Maurnböck as its external data protection officer. She can be contacted at bvm@meineberater.at.
We process data that is provided to us by various individuals, for example when registering a customer account, as part of a job application, or generally when concluding contracts.
In addition, we process data from persons that is not provided by the data subject themselves. This is the case, for example, when managing directors provide us with the names and contact details of their employees in the course of a collaboration on projects or a business relationship.
We process the following data from interested parties: company, name of the contact person and professional contact and address details.
We process the following data from corporate customers: company, name of contact persons, professional address and contact details, bank details and contract data.
We process the following data from private customers: name, address and contact details, bank details and contract data.
We process the following data from suppliers and distribution partners: company, names of contact persons, professional address and contact details, bank details, contract data.
We process and publish the names of authors in connection with the works (photos or videos) they have created.
The legal basis for data processing is:
We will inform you separately about the legal basis and purpose of the processing for each of the data processing operations described below.
Data is transferred exclusively for the purpose of fulfilling the contract in accordance with Art. 6 (1) (b) GDPR in order to provide you with our services.
If you contact us by email, telephone, contact form or social media, we will store the data you provide in order to respond to your enquiries. Once processing has been completed, we will delete the data or restrict its processing in accordance with applicable statutory retention obligations.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
Legal basis: Art. 6(1)(b) GDPR (contract initiation and fulfilment)
If we wish to keep you on file for future contact, we will send you a separate request for your consent. If you explicitly grant us this consent, we will store your application documents. If no further job opportunities arise within our company within one year, we will delete all your applicant data one year after receipt of your consent.
Legal basis: Art. 6(1)(a) GDPR (consent)
Legal basis: Art. 6 (1) (b) (contract initiation and fulfilment)
As part of our security measures, we use video surveillance technology at our Guntramsdorf and Uttendorf sites to ensure the safety of persons and the protection of property. Surveillance serves to enforce house rules and to investigate criminal offences and security-related incidents. Monitored areas are marked with appropriate signs. The recordings are stored for a period of 72 hours and then deleted, unless they are required for the clarification of incidents or for the initiation of legal proceedings. Access to the recordings is restricted to authorised persons only. The data is only passed on to law enforcement authorities in the event of a criminal investigation.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
We operate social media pages on LinkedIn and Instagram as well as a YouTube channel. When you visit our social media presence or our YouTube channel, personal data, including the IP address of the respective provider, is processed and cookies are used for data collection. Please refer to the privacy policy of the respective service for details on which specific information is transmitted. There you will also find information about contact options and ways to restrict the processing of this data.
We would also like to point out that you use the respective services and their functions at your own responsibility. This applies in particular to the use of interactive functions (e.g. sharing, commenting or rating).
The providers of social media services have provided us with corresponding agreements – in most cases, these are agreements on joint responsibility for data processing. The use of social media is based on our legitimate business interest.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
When you use the website for informational purposes only, we only collect the personal data that your browser transmits to our server (server log files). If you wish to view our website, we collect only the data that is technically necessary for us to display our website to you and to ensure stability and security:
This data is not merged with personal data sources. We reserve the right to subsequently check this data if we become aware of specific indications of illegal use and to pass the data on to the law enforcement authorities in the event of a hacking attack. No further disclosure to third parties takes place.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
When you use our website, cookies are stored on your computer. Cookies are small text files that are stored on your hard drive and assigned to the browser you are using, and through which certain information flows to the entity that sets the cookie (in this case, us or third-party providers). Cookies cannot execute programmes or transfer viruses to your computer.
The cookie allows you to be recognised when you visit the website without having to re-enter data that you have already entered previously.
The information contained in the cookies is used, for example, to determine whether you are logged in, what data you have already entered, or to recognise you as a user when a connection is established between our web server and your browser.
We distinguish between technical cookies, which serve exclusively to ensure the operation of a website, and other cookies, which are set by us or third-party providers for the purposes of statistical analysis, tracking or advertising/marketing.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest; for technical cookies), Art. 6(1)(a) GDPR (consent; for all other cookies)
It cannot be ruled out that personal data may be transferred to an unsafe third country (countries outside the EEA without an adequate level of data protection) when visiting our website. If this is the case, we will point this out directly in the description of the external service in this privacy policy.
The GDPR requires so-called appropriate safeguards in accordance with Art. 46 GDPR for data transfers to an unsafe third country or to an international organisation.
When personal data is processed in a third country or when data is processed by US data recipients who are not subject to the provisions of the EU-US Data Privacy Framework, the following risks in particular cannot currently be ruled out for you as the data subject:
By giving your consent via the consent banner to the use of external services and the setting of the corresponding cookies, you expressly consent to the possible transfer of your personal data to unsafe third countries.
Legal basis: Art. 6(1)(a) GDPR (consent)
You have the option of registering on our website. To do so, we require login details consisting of your email address or user name and a password of your choice, which you can reset at any time. The following data must be provided during registration: first name, surname, email address, user name and password, and optionally the name of the company. You can edit the data you have provided at any time in the “My Account” settings. You can log in to our website at any time using your login details in the footer at the bottom right. With your customer account, you can configure and save safe configurations and place orders.
Legal basis: Art. 6 (1) (b) GDPR (contract initiation and fulfilment)
When purchasing goods via our online shop, the following data must be provided: first name, surname, address, email address, telephone number and payment method (purchase on account), optionally the company name.
We store information about your purchases and transactions for the period required by law.
Legal basis: Art. 6(1)(b) GDPR (contract initiation and fulfilment)
Amazon CloudFront is a content delivery network (CDN) operated by Amazon Web Services EMEA SARL, 38 Avenue John F. Kennedy, L-1855, Luxembourg.
The CDN service allows website content such as web videos or other large media to be delivered quickly and securely. To do this, proxy servers store the files locally, thereby improving access speed during download. Using the Amazon CloudFront CDN helps us to optimise the loading speed of our website.
The CDN service processes the IP address of the website visitor. The IP address is automatically deleted from CloudFront’s logs.
Further information can be found in the Amazon Web Services Privacy Policy at https://aws.amazon.com/privacy/?nc1=f_pr.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
We have integrated the appointment scheduling tool “Calendly”, provided by Calendly, LLC, 271 17th St NW, Atlanta, GA 30363, USA, into our website to ensure efficient planning of appointments and meetings by managing calendar availability and bookings.
By using Calendly, you can conveniently make appointments with us online by entering your name, email address and the date and time of the appointment.
The integration of Calendly leads to the reloading of the Airbrake service.
For more information, please refer to Calendly’s privacy policy at: https://calendly.com/de/privacy.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
In order to ensure that consent for the use of cookies and services requiring consent is obtained and managed in accordance with data protection regulations as part of our appointment booking process, Calendly uses the Consent Management Platform (CMP) OneTrust from OneTrust LLC, 1200 Abernathy Road NE, Building 600, Atlanta, GA 30328, USA. The tool is used exclusively in connection with appointment booking (via Calendly) and serves to legally record and document users’ consent to the processing of personal data or the use of certain cookies or services. The OneTrust consent banner stores the website visitor’s selection of consent options. Only after express consent is given are the corresponding cookies or services that require consent activated. The consent tool records, logs and stores the settings selected by the website visitor for a specific session duration or until revoked. Technical information (e.g. IP address, browser information, time of consent or rejection) is also processed and stored for the purpose of clearly assigning the consent. This data processing serves to fulfil legal obligations to provide evidence and to ensure that our online offerings are used in compliance with data protection regulations.
Further information can be found in the OneTrust privacy policy at: https://www.onetrust.com/privacy/
Legal basis: Art. 6(1)(f) GDPR (legitimate interest).
Our website uses a so-called “content delivery network” (CDN) from Cloudflare, Inc., 101 Townsend Street, San Francisco, 94107 California, USA.
The CDN service allows website content such as web videos or other large media to be delivered quickly and securely. To do this, proxy servers store the files locally, thereby improving access speed during download. Using the Cloudflare CDN helps us to optimise the loading speed of our website.
The CDN service processes the IP address of the website visitor. The IP address is automatically deleted from Cloudflare’s logs.
For more information, please refer to Cloudflare’s privacy policy: https://www.cloudflare.com/security-policy.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
Our website uses Cloudinary, a service provided by Cloudinary Inc., 3400 Central Expressway, Suite 110, Santa Clara, 95051 California, USA.
This service is used to optimise the delivery of images and videos. Cloudinary enables us to efficiently store, manage and deliver media files on our website. This contributes to improved loading times and user experience. When media files are retrieved via Cloudinary, technical data such as your IP address, browser type, operating system, the website you previously visited, the date and time of access, and the requested file are automatically transmitted to Cloudinary. This data is processed by Cloudinary for the delivery and optimisation of the media files. The data is processed for the purpose of fast and efficient delivery of media files and to improve the performance of our website.
For more information, please refer to Cloudinary’s privacy policy at https://cloudinary.com/privacy.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
Contentsquare
Our website uses the Contentsquare service provided by Contentsquare SAS (7 rue de Madrid, 75008 Paris, France).
This service is used to analyse user behaviour, including heatmaps, journeys and other experience analytics features, to gain insights into how visitors use our website and thus optimise the user experience and performance of our website. When you visit the website, technical information such as your IP address, browser type, operating system, the website you visited previously, the date and time of access, and the pages or elements you clicked on are automatically transmitted to Contentsquare. This data is processed for the purpose of making our online offering more secure and user-friendly and developing it further on the basis of the insights gained.
Further information can be found in Contentsquare’s privacy policy at: https://contentsquare.com/privacy-policy
Legal basis: Art. 6(1)(a) GDPR (consent)
We use services provided by Google Ireland Limited (“Google”), a company registered and operating under Irish law with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland, on our website.
For more information, please refer to Google’s privacy policy at https://policies.google.com/privacy?hl=de.
We use Google Analytics on our website, a tool that helps us understand how our website is used. With Google Analytics, we can see how many people visit our site and how long they stay.
This website uses the “IP anonymisation” function (i.e. Google Analytics has been extended by the code “gat._anonymizeIp();” to ensure anonymous collection of IP addresses (known as IP masking)). As a result your IP address is truncated by Google within member states of the European Union or in other contracting states to the Agreement on the European Economic Area before transmission. Only in exceptional cases is the full IP address transmitted to a Google server in the USA and truncated there.
Google uses the information collected to analyse your use of the website, to compile reports on website activity and to provide other services relating to website usage.
Your IP address transmitted by your browser to Google Analytics will not be merged with other Google data. However, Google may transfer this information to third parties if required by law or if third parties process this data on behalf of Google.
You can prevent cookies from being stored on your computer by adjusting the settings in your browser. Please note, however, that in this case you may not be able to use all the functions of our website to their full extent.
For more information on terms of use and data protection, please visit https://www.google.com/analytics/terms/de.html or https://support.google.com/analytics/answer/6004245?hl=de.
Legal basis: Art. 6 (1) (a) GDPR (consent)
We use Google Fonts on our website. To ensure a consistent and appealing display of fonts and icons, your browser loads the required fonts into your browser cache. To do this, it is necessary for the browser you are using to contact the Google Fonts servers, which means that Google Fonts will be aware that our website has been accessed via your IP address.
You can find out what data Google collects and what this data is used for at https://www.google.com/intl/de/policies/privacy/.
Legal basis: Art. 6(1)(a) GDPR (consent)
We use Google Maps on this website. This allows us to display interactive maps directly on the website and enables you to conveniently use the map function. When you visit the website, Google receives information that you have accessed the corresponding subpage of our website. In addition, the data already mentioned under “Informational use of the website” is transmitted. This occurs regardless of whether Google provides a user account that you are logged in to or whether no user account exists. If you are logged in to Google, your data will be directly associated with your account. If you do not want your data to be associated with your Google profile, you must log out before activating the button. Google stores your data as usage profiles and uses it for the purposes of advertising, market research and/or the design of its website in line with requirements. Such evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact Google to exercise this right.
The integration of Google Maps leads to the reloading of additional Google services on our website, such as Google Static, Google Fonts and rrota.com in particular.
Legal basis: Art. 6(1)(a) GDPR (consent)
We use the Google service reCAPTCHA to determine whether a human or a computer is making a particular entry in our contact form. Google uses the following data to check whether you are a human or a computer: IP address of the device used, the website you are visiting and on which the captcha is integrated, the date and duration of the visit, the identification data of the browser and operating system type used, Google account if you are logged in to Google, mouse movements on the reCAPTCHA areas and tasks in which you have to identify images.
More detailed information is available here: https://cloud.google.com/security/products/recaptcha
Legal basis: Art. 6(1)(a) GDPR (consent)
We use Google Tag Manager on our website, which enables us to integrate and manage website tags such as tracking codes or conversion pixels. This collects data on the website and forwards it to connected analysis tools, which store and evaluate this data. Although Google Tag Manager collects data (e.g. IP address), it does not store it and has no access to it. It merely acts as an interface between the website and the analysis software.
More detailed information is available here: https://www.google.com/intl/de/tagmanager/faq.html.
Legal basis: Art. 6(1)(a) GDPR (consent)
We use Hotjar, an analysis tool from Hotjar Ltd., Dragonara Business Centre 5th Floor, Dragonara Road, Paceville St Julian’s, STJ 3141, Malta, to analyse user behaviour on our website and improve its user-friendliness. Hotjar enables us to better understand the behaviour of our users on our website by recording activities such as mouse clicks, mouse movements and scrolling behaviour. This information helps us to tailor our website to the needs of our visitors and make it more user-friendly.
Hotjar uses cookies and other technologies to collect data about our users’ behaviour and their end devices, in particular the IP address of the device (in anonymised form), screen size, device type (unique device identifiers), browser information, geographical location (country only) and preferred language for displaying our website. The information is not used by Hotjar or us to identify individual users or merge it with other data about individual users.
For more information, please see Hotjar’s privacy policy at https://www.hotjar.com/legal/policies/privacy.
Legal basis: Art. 6(1)(a) GDPR (consent)
We use the open source software Sourcebuster.js on our website, which is provided by the developer community and is not operated by a specific provider. The software is integrated into our website to analyse the origin and traffic data of visitors.
Our website uses Sourcebuster.js, a JavaScript plugin, to analyse the origin and traffic of our website visitors. Sourcebuster.js helps us to collect and analyse information about the source of visitors (e.g. search engine, referring website, campaign). This data is used to evaluate the success of our marketing measures and to improve the user experience on our website. Sourcebuster.js collects information such as the referrer URL, the search engine used, the search terms entered and the campaign name (if applicable). This data is processed anonymously and does not allow any conclusions to be drawn about your identity.
As this service is hosted locally on the web server, no data is transferred to third parties.
Legal basis: Art. 6(1)(a) GDPR (consent)
We use the online payment service provider Stripe to process certain payments. The provider is Stripe Payments Europe Ltd., 1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland.
You will be informed if Stripe is used for a payment. The data you provide for the payment process will be passed on to Stripe and processed for the payment process.
The following data is processed by Stripe during a payment transaction: the payment method, bank code, currency, amount and date of payment, your first and last name, your billing and shipping address, and possibly your transaction history. Stripe also records your IP address and your country. Your personal data will only be stored for as long as is necessary to provide the service.
For more information, please refer to Stripe’s privacy policy: https://stripe.com/at/privacy.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
Our website uses the Storepoint service provided by Storepoint, Inc., 862 Richmond Street W, Toronto, ON M6J 1C9, Canada, to display interactive maps and location information. Storepoint enables us to provide you with a user-friendly map at , which you can use to easily find [e.g. our locations, branches or other relevant places].
When using Storepoint maps, technical data such as your IP address, browser type, operating system, previously visited website, date and time of access, and location information (if shared) may be automatically transmitted to Storepoint. This data is processed by Storepoint to provide and optimise map functionality.
The integration of Storepoint results in Storepoint icons being reloaded on our website.
For further information, please refer to Storepoint’s privacy policy at https://storepoint.co/privacy.
Legal basis: Art. 6(1)(a) GDPR (consent)
Our website uses RocketCDN, a service provided by SAS WP MEDIA, 4 rue de la République, 69001 Lyon, France.
This service is used to deliver static web content (e.g. images, JavaScript and CSS files) more efficiently via a global content delivery network (CDN). When using RocketCDN, technical data such as your IP address, browser type, operating system, date and time of access, and the requested file or resource is automatically transmitted when you access our website. The primary purpose of this data transfer is to reduce the loading times of our website worldwide, improve performance, and ensure stable and secure delivery.
Further information can be found in RocketCDN’s privacy policy at: https://rocketcdn.me/privacy-policy/
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
In order to obtain data protection-compliant consent for the use of cookies and services requiring consent on our website, we use the Consent Banner Usercentrics Cookiebot from Usercentrics A/S, Havnegade 39, 1058 Copenhagen, Denmark.
The consent banner records and stores the selection of cookies and consent-based services of the respective user of our website. With the express consent of the website visitor, it is ensured that statistical, functional and marketing cookies and consent-based services are only set thereafter.
The consent tool records, logs and stores the website visitor’s settings for the duration of a session. In order to clearly assign the selected settings to the respective website visitor, Cookiebot collects, transmits and stores certain user information (including the IP address).
For more information, please refer to the privacy policy of Usercentrics https://usercentrics.com/de/datenschutzerklaerung/ and Usercentrics Cookiebot https://www.cookiebot.com/de/privacy-policy/.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest)
We have integrated the open source shop system WooCommerce from Automattic Inc., 60 29th Street #343 San Francisco, 94110 California, USA, into our website. Aut O’Mattic A8C Ireland Ltd., Grand Canal Dock, 25 Herbert Pl, Dublin, D02 AY86, Ireland, is responsible for in Europe.
The implemented functions send data to Automattic Inc., where it is stored and processed. We use WooCommerce to offer you a user-friendly and secure shopping experience. WooCommerce provides the technical basis for our online shop, manages your orders and integrates secure payment services. It also enables the creation and management of customer accounts, which store order history and delivery addresses. WooCommerce helps us personalise and improve your shopping experience by analysing purchasing behaviour and generating reports. When you register with us or order a product, Automattic may collect, process and store this data. In addition to your email address, name or address, this may also include credit card or billing information. Automattic may also use this information for its own marketing campaigns.
WooCommerce uses a number of different cookies, which are set depending on user actions. This means that if, for example, you add a product to your shopping basket, a cookie is set so that the product remains in the basket when you leave our website and return at a later date. Unless there is a legal obligation to retain data for a longer period of time, WooCommerce deletes the data when it is no longer needed for the purposes for which it was stored.
For more information, please refer to Automattic Inc.’s privacy policy at https://automattic.com/de/privacy/ and general information about WooCommerce at https://woocommerce.com/.
Legal basis: Art. 6(1)(a) GDPR (consent)
You have the following rights with regard to your personal data:
Barichgasse 40 – 42, 1030 Vienna, Telephone: +43 1 52 152-0
Email: dsb@dsb.gv.at
If you believe that we have violated Austrian or European data protection law in the processing of your data and thereby infringed your rights, please contact us so that we can clarify any questions you may have.
Please send your enquiries and concerns by email to office@wertheim.at or contact us using the contact details provided.
We reserve the right to make changes to our privacy policy from time to time. All changes to the privacy policy will be published by us on this page. Please refer to the current version of our privacy policy in this regard.