Privacy Policy

[borlabs-cookie type=”btn-cookie-preference” title=”Cookie-Einstellungen”/]

1. Responsible data manager pursuant to Art. 4 (7) GDPR:

Hänsler Medical GmbH
Nordring 8
76473 Iffezheim
Germany
info@haensler-medical.com

2. Purpose of processing / Categories of data

The processing (collection, processing, or use) of personal data is carried out to fulfill our business purpose and to ensure our legal compliance as well as our own legitimate interests for the benefit of our employees, shareholders, and investors.

Processing is carried out in particular for these categories of data subjects:

2.1. Applicants

Personal data is processed for the pre-contractual fulfillment of employment contracts and for our own legitimate interests. Legal basis: Art. 6 (1) litt. b and f GDPR and §26 BDSG nF.

Categories of personal data include, for example:

  • Name data
  • Address and communication data
  • Date of birth, certificate of good conduct, training and qualification certificates
  • Detailed information on current employment status

Special personal data relevant for assessing suitability for a position, information on professional career.

2.2. Customers

Personal data is processed for the purpose of fulfilling contracts, complying with legal obligations, and pursuing our own legitimate interests. Legal basis: Art. 6 (1) litt. b, c, and f GDPR.

Categories of personal data include, for example:

  • Individual details about persons, contact details, address details, function/position of the person in the company, contract data, billing data, account data, purchase data, date of birth, social networks, industry, usage behavior.
2.3. Suppliers / Service providers

Personal data is processed for the purpose of fulfilling contracts, complying with legal obligations, and pursuing our own legitimate interests. Legal basis: GDPR Art. 6 (1) lit. b, c, and f.

Categories of personal data include, for example:

  • Individual details about persons, contact details, address details, function/position of the person in the supplier’s company, contract details, billing details, account detailsrsonenbezogene Daten werden zur Erfüllung von Verträgen, zur Erfüllung rechtlicher Verpflichtungen sowie eigener berechtigter Interessen verarbeitet. Rechtsgrundlage: DSGVO Art. 6 (1) litt. b, c und f.
2.4. Interessenten / allgemeine Geschäfts- und Netzwerkkontakte

Personal data is primarily processed for the purpose of responding to inquiries, preparing contracts, and pursuing our own legitimate interests. Legal basis: GDPR Art. 6 (1) litt. b and f.

Categories of personal data include, for example:

  • Individual details about persons, contact details, address details, function/position of the person in the company, inquiry details, social networks, industry, and other details about the company.
2.5. Recipients of personalized information

Personal data is used to provide general company information (e.g., company and industry brochures), seasonal information (e.g., summer mailings, year-end mailings), information on events and anniversaries (e.g., in-house exhibitions, specialist presentations), occasion-related information (e.g., condolence cards), and specific technical information (e.g., industry news, technological developments). This information is provided electronically, by post, by telephone, or in person.

Legal basis: Protection of our own legitimate interests pursuant to Art. 6 (1) lit. f GDPR for the continuous improvement of our customer service, an increase in our service quality, and the strengthening of our customer loyalty for the benefit of our company and our employees.

2.6. Recipients of personalized advertising

Personal data is processed on the basis of consent for the provision of personalized advertising. Contact is made via email, telephone, fax, SMS, post, social networks, or personal visits.

Personalized advertising is provided in accordance with the respective purpose of the underlying consent (e.g., sending birthday mail).

Legal basis: Art. 6 (1) lit. a GDPR.

3. Storage period:

Personal data will be stored for as long as is necessary for the processing purpose (point 3) or for legal documentation and retention obligations. Applicant data without an employment contract will be stored for 4 months.

We delete data from interested parties, including offer data, no later than 24 months after the last contact. Until then, processing is based on our legitimate interests, which lie in increasing the quality of our service to interested parties and minimizing internal company expenses.

Offer data without a subsequent order is stored for 24 months on the basis of our legitimate interest. Our legitimate interest lies in increasing the quality of our service to our prospective customers and customers and in minimizing internal company expenses.

If consent has been given:

The storage period depends on the purpose of the consent. After consent has been revoked, processing will be restricted and the data will be deleted after 30 days, provided that this does not conflict with any legal obligations to provide evidence or retain data.

4. Data origin:

Personal data is mainly collected directly from the persons concerned. In addition, we may receive data from third parties (e.g., authorities, contractual partners) or collect it from public directories (e.g., websites).

5. Categories of recipients:

Where necessary, personal data will be transferred to the following categories of recipients:

  • IT service providers (who provide information and telecommunications services)
  • Marketing service providers (who create and support advertising measures)
  • Shipping service providers (who deliver email advertising)
  • Logistics service providers (shipping of goods and documents)
  • Customer service providers (contact persons for queries regarding your request)
  • Suppliers (purchase of goods/services related to end customers)
  • Subcontractors (provision of services or work contracts)
  • File and data destroyers (professional disposal of files and data carriers)
  • Public authorities and agencies (e.g., tax authorities, health insurance companies, pension insurance providers, social security providers, KfW, courts, fines office)
  • Funding agencies (e.g., BafA, BWHM, RKW)
  • Chamber of Crafts and Guild (e.g., training contract)
  • Tax advisors (e.g., payroll accounting, proper bookkeeping, balance sheet preparation)
  • Lawyers (e.g., defense or enforcement of claims)
  • Financial service providers (e.g., banks, SCHUFA, Creditreform)
  • Insurance companies (e.g., surety insurance)

6. Rights of data subjects:

Data subjects can request information about the data stored about them at any time using the above contact details. In addition, they have the right to rectification, erasure, restriction of processing, and data portability.

There is no obligation to provide us with personal data. However, this would mean that the purposes set out in point 3 could not be fulfilled, or only partially.

We do not carry out automated decision-making or profiling.

In addition, data subjects have the option of contacting our data protection officer or the competent supervisory authority.

7. Right to object:

If processing is carried out on the basis of our legitimate interests within the meaning of Art. 6 (1) lit. f GDPR, this processing may be objected to. This applies in particular to processing in the context of direct marketing.

8. Right of withdrawal:

Data subjects may revoke their consent to the collection and storage of their personal data within the meaning of Art. 6 (1) lit. a or Art. 9 (2) lit. a GDPR by contacting us at the above contact details at any time with effect for the future. The lawfulness of the processing carried out on the basis of the consent until revocation remains unaffected. Status 10/2020.

9. Google Analytics

We use Google Analytics, a web analytics service provided by Google Ireland Limited, Google Building Gordon House, Barrow St, Dublin 4, Ireland (hereinafter referred to as “Google”) on our website. Google uses cookies, which are small text files stored on your device that enable analysis of your use of our website. The information generated by the cookie about your use of our website is usually transferred to a Google server and stored there. Since anonymization of the IP address to be transmitted by the cookie is activated on the website (“IP anonymization”), your IP address will be truncated by Google within member states of the European Union or in other signatory states to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server outside the EU and truncated there. Google will use this information on our behalf to evaluate your use of our website, compile reports on website activity, and provide us with other services related to website activity and internet usage. Pseudonymous usage profiles may be created from the processed data. The IP address transmitted when using Google Analytics is not merged with other Google data.

We only use Google Analytics with the IP anonymization described above activated. This means that your IP address will only be processed by Google in truncated form. This means that it cannot be linked to a specific person.

We use Google Analytics for the purpose of analyzing the use of our website and continuously improving individual functions and offers as well as the user experience. By statistically evaluating user behavior, we can improve our offer and make it more interesting for you as a user. The legal basis is Art. 6 (1) (a) GDPR (consent).

You can also prevent the storage of cookies generated by Google Analytics by adjusting the settings of your web browser accordingly. Please note that in this case you may not be able to use all the functions of our website. If you want to prevent the collection of data generated by the cookie and related to your user behavior (including your IP address) and the processing of this data by Google, you can also download and install the web browser plugin available at the following link: https://tools.google.com/dlpage/gaoptout?hl=de.

In order to oblige Google to process the transmitted data only in accordance with our instructions and in compliance with the applicable data protection regulations, we have concluded a data processing agreement with Google.

Third-party information: Google Ireland Limited, Google Building Gordon House, Barrow St, Dublin 4, Ireland

Further information on data use by Google, settings and objection options, and data protection can be found on the following Google websites:

The data will be deleted as soon as it is no longer required for the purpose for which it was collected.