Data Protection

Responsible body within the meaning of data protection laws, in particular the EU General Data Protection Regulation (GDPR), is:


XC Therm GmbH
Daniel Moser
Ferenbacherrain 2
8909 Zwillikon

Phone:
E-Mail:
WebSite: https://xctherm.com/

The following text has been machine translated for your convenience and is not legally binding. The legally binding version of this data protection declaration in German can be found here.

General remark

Based on Article 13 of the Swiss Federal Constitution and the data protection provisions of the federal government (Data Protection Act, DSG), every person has the right to the protection of their privacy and protection against misuse of their personal data. The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this data protection declaration.

In cooperation with our hosting providers, we strive to protect the databases as well as possible from unauthorized access, loss, misuse or falsification.

We would like to point out that data transmission over the Internet (e.g. when communicating by email) can have security gaps. A complete protection of the data against access by third parties is not possible.

By using this website you consent to the collection, processing and use of data as described below. This website can generally be visited without registration. Data such as pages accessed or the name of the file accessed, date and time are stored on the server for statistical purposes without this data being directly related to your person. Personal data, in particular name, address or email address, are collected on a voluntary basis as far as possible. The data will not be passed on to third parties without your consent.

 

Processing of personal data

Personal data is all information that relates to a specific or identifiable person. A data subject is a person about whom personal data is processed. Processing includes all handling of personal data, regardless of the means and procedures used, in particular the storage, disclosure, procurement, deletion, storage, modification, destruction and use of personal data.

We process personal data in accordance with Swiss data protection law. In addition, we process - insofar and as far as the EU GDPR is applicable - personal data in accordance with the following legal bases in connection with Art. 6 Para. 1 GDPR:

  • lit. a) Processing of personal data with the consent of the data subject.
  • lit. b) Processing of personal data to fulfill a contract with the data subject and to carry out corresponding pre-contractual measures.
  • lit. c) Processing of personal data to fulfill a legal obligation to which we are subject in accordance with any applicable EU law or in accordance with any applicable law of a country in which the GDPR is fully or partially applicable.
  • lit. d) Processing of personal data in order to protect the vital interests of the data subject or another natural person.
  • lit. f) Processing of personal data in order to safeguard the legitimate interests of us or of third parties, provided that the fundamental freedoms and rights and interests of the person concerned do not prevail. Legitimate interests are, in particular, our economic interest in being able to provide our website, information security, the enforcement of our own legal claims and compliance with Swiss law.

We process personal data for the duration that is necessary for the respective purpose or purposes. In the case of longer storage obligations due to legal and other obligations to which we are subject, we limit the processing accordingly.

 

Privacy policy for cookies

This site uses cookies. These are small text files that make it possible to save specific, user-related information on the user's device while he is using the website. Cookies make it possible in particular to determine the frequency of use and the number of users of the pages, to analyze the behavior of the page usage, but also to make our offer more customer-friendly. Cookies remain stored at the end of a browser session and can be called up again when you visit the site again. If you do not want this, you should set your internet browser so that it refuses to accept cookies.

A general objection to the use of cookies used for online marketing purposes can be declared for a large number of services, especially in the case of tracking, via the US website http://www.aboutads.info/choices/ or the EU website http://www.youronlinechoices.com/. Furthermore, cookies can be prevented by deactivating them in the browser settings. Please note that you may then not be able to use all the functions of this online offer.

 

Data protection declaration for SSL / TLS encryption

This website uses SSL / TLS encryption for security reasons and to protect the transmission of confidential content, such as the inquiries that you send to us as the website operator. You can recognize an encrypted connection by the fact that the address line of the browser changes from "http: //" to "https: //" and by the lock symbol in your browser line.

If SSL or TLS encryption is activated, the data that you transmit to us cannot be read by third parties.

 

Third party services

This website uses Google Maps for embedding maps, Google Invisible reCAPTCHA for protection against bots and spam and YouTube for embedding videos.

These services of the American Google LLC use cookies, among other things, and as a result data is transferred to Google in the USA, whereby we assume that no personal tracking takes place solely through the use of our website.

Google is committed to ensuring adequate data protection in accordance with the American-European and American-Swiss Privacy Shields.

Further information can be found in Google's privacy policy.

 

Privacy policy for contact form

If you send us inquiries using the contact form, your details from the inquiry form, including the contact details you provided there, will be stored by us for the purpose of processing the request and in case of follow-up questions. We do not pass on this data without your consent.

 

Data protection declaration for newsletter data

If you would like to receive the newsletter offered on this website, we need an e-mail address from you as well as information that allows us to verify that you are the owner of the e-mail address provided and that you agree to receive the newsletter. Further data is not collected. We use this data exclusively for sending the requested information and do not pass it on to third parties.

You can revoke your consent to the storage of the data, the e-mail address and their use for sending the newsletter at any time, for example via the “unsubscribe” link in the newsletter.

 

Paid services

To provide chargeable services, we ask for additional data, such as Payment details to process your order or to be able to carry out your order. We store this data in our systems until the statutory retention periods have expired.

 

Google AdWords

This website uses Google conversion tracking. If you have reached our website via an advertisement placed by Google, Google Adwords will set a cookie on your computer. The conversion tracking cookie is set when a user clicks on an ad placed by Google. These cookies lose their validity after 30 days and are not used for personal identification. If the user visits certain pages on our website and the cookie has not yet expired, we and Google can recognize that the user clicked on the ad and was redirected to this page. Every Google AdWords customer receives a different cookie. Cookies cannot therefore be tracked via the websites of AdWords customers. The information obtained using the conversion cookie is used to generate conversion statistics for AdWords customers who have opted for conversion tracking. Customers find out the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not receive any information with which users can be personally identified.

If you do not want to participate in the tracking, you can refuse the setting of a cookie required for this - for example via a browser setting that generally deactivates the automatic setting of cookies or set your browser so that cookies from the domain "googleleadservices.com" are blocked.

Please note that you must not delete the opt-out cookies as long as you do not want measurement data to be recorded. If you have deleted all of your cookies in your browser, you have to set the respective opt-out cookie again.

 

Data protection declaration for Google Analytics

This website uses Google Analytics, a web analysis service from Google Ireland Limited. If the person responsible for data processing on this website is outside the European Economic Area or Switzerland, Google Analytics data processing is carried out by Google LLC. Google LLC and Google Ireland Limited are hereinafter referred to as “Google”.

We can use the statistics obtained to improve our offer and make it more interesting for you as a user. This website also uses Google Analytics for a cross-device analysis of visitor flows, which is carried out via a user ID. If you have a Google user account, you can deactivate the cross-device analysis of your usage in the settings there under “My data”, “Personal data”.

The legal basis for the use of Google Analytics is Art. 6 Para. 1 S. 1 lit. f GDPR. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. We would like to point out that on this website Google Analytics has added the code «_anonymizeIp ();» to ensure an anonymous collection of IP addresses. As a result, IP addresses are further processed in abbreviated form, so that personal references can be excluded. If the data collected about you can be linked to a person, this will be excluded immediately and the personal data will be deleted immediately.

The full IP address is only transmitted to a Google server in the USA and shortened there in exceptional cases. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide the website operator with other services relating to website activity and internet usage. For the exceptional cases in which personal data is transferred to the USA, Google has submitted to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.

Google Analytics uses cookies. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there. You can prevent the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by downloading the browser plug-in available under the following link and install: Deactivate Google Analytics.

You can also prevent the use of Google Analytics by clicking on this link: Deactivate Google Analytics. This saves a so-called opt-out cookie on your data carrier, which prevents the processing of personal data by Google Analytics. Please note that if you delete all cookies on your device, these opt-out cookies will also be deleted, i.e. you will have to set the opt-out cookies again if you want to continue preventing this form of data collection. The opt-out cookies are set for each browser and computer / device and must therefore be activated separately for each browser, computer or other device.

 

Data protection declaration for the use of Google Web Fonts

This website uses so-called web fonts, which are provided by Google, for the uniform display of fonts. When you call up a page, your browser loads the required web fonts into your browser cache in order to display texts and fonts correctly. If your browser does not support web fonts, a standard font will be used by your computer.

You can find more information about Google Web Fonts at https://developers.google.com/fonts/faq and in Google's data protection declaration: https://www.google.com/policies/privacy/

 

Privacy policy for Facebook

This website uses functions from Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA. When you visit our pages with Facebook plug-ins, a connection is established between your browser and the Facebook servers. In doing so, data is already being transferred to Facebook. If you have a Facebook account, this data can be linked to it. If you do not want this data to be assigned to your Facebook account, please log out of Facebook before visiting our page. Interactions, especially the use of a comment function or clicking a “Like” or “Share” button, are also passed on to Facebook. You can find out more at https://en-us.facebook.com/about/privacy.

 

External payment service providers

This website uses external payment service providers, through whose platforms the user and we can carry out payment transactions. For example over

  • PostFinance (https://www.postfinance.ch/en/detail/legal-information-and-accessibility.html)
  • Visa (https://www.visa.de/nutzungsbedingungen/visa-privacy-center.html)
  • Mastercard (https://www.mastercard.ch/de-ch/datenschutz.html)
  • American Express (https://www.americanexpress.com/de/content/privacy-policy-statement.html)
  • Paypal (https://www.paypal.com/de/webapps/mpp/ua/privacy-full)
  • Bexio AG (https://www.bexio.com/de-CH/datenschutz)
  • Payrexx AG (https://www.payrexx.ch/site/assets/files/2592/datenschutzerklaerung.pdf)
  • Apple Pay (https://support.apple.com/de-ch/ht203027)
  • Stripe (https://stripe.com/ch/privacy)
  • Klarna (https://www.klarna.com/de/datenschutz/)
  • Skrill (https://www.skrill.com/de/fusszeile/datenschutzrichtlinie/)
  • Giropay (https://www.giropay.de/rechtliches/datenschutz-agb/) etc.

As part of the fulfillment of contracts, we use the payment service providers on the basis of the Swiss Data Protection Regulation and, if necessary, Art. 6 Para. 1 lit. b. EU GDPR. In addition, we use external payment service providers on the basis of our legitimate interests in accordance with Swiss Data Protection Regulation and, if necessary, in accordance with Art. 6 para. 1 lit. f. EU GDPR in order to offer our users effective and secure payment options.

The data processed by the payment service providers include inventory data, such as the name and address, bank details, such as Account numbers or credit card numbers, passwords, TANs and checksums as well as contract, sums and recipient-related information. The information is required to carry out the transactions. However, the data entered will only be processed and stored by the payment service providers. As the operator, we do not receive any information about your (bank) account or credit card, only information to confirm (accept) or reject the payment. Under certain circumstances, the data will be transmitted to credit agencies by the payment service provider. The purpose of this transmission is to check your identity and creditworthiness. For this we refer to the terms and conditions and data protection information of the payment service providers.

For payment transactions, the terms and conditions and the data protection notices of the respective payment service providers apply, which can be accessed on the respective website or transaction applications. We refer to these for the purpose of further information and assertion of rights of revocation, information and other data subjects.

 

Order processing in the online shop with customer account

We process the data of our customers acc. the data protection regulations of the federal government (Data Protection Act, DSG) and the EU-DSGVO, as part of the order processes in our online shop, to enable you to select and order the selected products and services, as well as their payment and delivery or execution.

The processed data includes master data (inventory data), communication data, contract data, payment data and the persons affected by the processing include our customers, interested parties and other business partners. Processing takes place for the purpose of providing contractual services in the context of operating an online shop, billing, delivery and customer services. Here we use session cookies, e.g. for storing the contents of the shopping cart and permanent cookies, e.g. to save the login status.

The processing takes place on the basis of Art. 6 Abs. 1 lit. b (execution of order processes) and c (legally required archiving) GDPR. The information marked as necessary is required for the establishment and fulfillment of the contract. We only disclose the data to third parties in the context of delivery, payment or within the framework of legal permits and obligations. The data will only be processed in third countries if this is necessary to fulfill the contract (e.g. at the customer's request for delivery or payment).

Users can optionally create a user account in which they can see their orders in particular. As part of the registration, the required mandatory information is communicated to the users. The user accounts are not public and cannot be accessed by search engines, e.g. Google, to be indexed. If users have terminated their user account, their data will be deleted with regard to the user account, subject to their retention is for commercial or tax reasons in accordance with Art. 6 Para. 1 lit. c GDPR necessary. Information in the customer account remains until it is deleted and then archived in the event of a legal obligation. It is up to the users to save their data before the end of the contract if they have canceled.

As part of the registration and renewed logins as well as the use of our online services, we save the IP address and the time of the respective user action. The storage takes place on the basis of our legitimate interests, as well as the users in protection against misuse and other unauthorized use. This data is generally not passed on to third parties unless it is necessary to pursue our claims or there is a legal obligation to do so in accordance with. Art. 6 para. 1 lit. c GDPR.

The deletion takes place after the expiry of statutory warranty and comparable obligations, the need to store the data is checked at irregular intervals. In the case of the legal archiving obligations, the deletion takes place after their expiry.

 

Copyrights

The copyright and all other rights to content, images, photos or other files on the website belong exclusively to the operator of this website or the specifically named rights holders. The written consent of the copyright holder must be obtained in advance for the reproduction of all files.

Whoever commits a copyright infringement without the consent of the respective rights holder can make himself liable to prosecution and possibly liable for damages.

 

General disclaimer

All information on this website has been carefully checked. We strive to keep our information offering up-to-date, correct and complete. Nevertheless, the occurrence of errors cannot be completely ruled out, which means that we cannot guarantee the completeness, correctness and topicality of information, including journalistic and editorial information. Liability claims from material or immaterial damage caused by the use of the information provided are excluded, unless it can be proven that there was willful intent or gross negligence.

The publisher can change or delete texts at his own discretion and without notice and is not obliged to update the content of this website. Use or access to this website is at the visitor's own risk. The publisher, its clients or partners are not responsible for damage, such as direct, indirect, accidental, specifically to be determined in advance or consequential damage allegedly caused by visiting this website and therefore assume no liability for this.

The publisher also assumes no responsibility or liability for the content and availability of third-party websites that can be accessed via external links on this website. The operators of the linked pages are solely responsible for their content. The publisher thus expressly distances itself from all third-party content that may be relevant under criminal or liability law or that offends morality.

 

Changes

We can adapt this data protection declaration at any time without prior notice. The current version published on our website applies. If the data protection declaration is part of an agreement with you, we will inform you of the change in the event of an update by e-mail or in another suitable manner.

 

Questions to the data protection officer

If you have any questions about data protection, please write us an email or contact the person responsible for data protection in our organization listed at the beginning of the data protection declaration.

 

Wettswil, 07.08.2020
Quelle: SwissAnwalt