WELCOME TO OUR WEBSITE!
We attach great importance to the protection of your data and the protection of your privacy. Below we therefore inform you about the collection and use of personal data when using our website.
We would like to inform you in the following about the processing of personal data in the context of the use of our website.
1. RESPONSIBLE & DATA PROTECTION OFFICER
This privacy statement is valid for data processing by the responsible party:
Dr. Goerg GmbH
Tel: +49 (0) 2602 93 46 90
Commissioned with the operational data protection is:
Morgenstern consecom GmbH
Große Himmelsgasse 1
Further information about our company and the persons authorized to represent it can be found in our imprint.
2. PROCESSING OF PERSONAL DATA, LEGAL BASIS AND DELETION
According to the definition of the EU Data Protection Regulation (GDPR) and this Privacy Statement (DSE), personal data is any information relating to an identified or identifiable natural person. An identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
Processing according to the GDPR and this DSE is any operation or set of operations which is performed upon personal data, whether or not by automated means, such as collection, recording, organization, arrangement, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
Insofar as we obtain the consent of the data subject for processing operations of personal data, Art. 6 (1) sentence 1 lit. a) DSGVO serves as the legal basis. When processing personal data that is necessary for the performance of a contract to which the data subject is a party, paragraph 1 sentence 1 lit. b) DSGVO serves as the legal basis. This also applies to processing operations that are necessary for the performance of pre-contractual measures. Insofar as processing of personal data is necessary for compliance with a legal obligation to which our company is subject, Article 6 (1) sentence 1 lit. c) DSGVO serves as the legal basis.
In the event that vital interests of the data subject or another natural person make processing of personal data necessary, Art. 6 (1) sentence 1 lit. d) DSGVO serves as the legal basis. If the processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the controller, Art. 6(1) sentence 1 lit. e) DSGVO serves as the legal basis. If the processing is necessary to protect a legitimate interest of our company or a third party and the interests, fundamental rights and freedoms of the data subject do not override the former interest, Art. 6 (1) sentence 1 lit. f) DSGVO serves as the legal basis for the processing.
The personal data of the data subjects will be deleted or blocked as soon as the purpose of the processing no longer applies. Storage may take place beyond this if this has been provided for by the European or national legislator in Union regulations, laws or other provisions to which the controller is subject. Data will also be blocked or deleted if a legally prescribed period for storage expires, unless there is a need for further storage of the data for the conclusion or performance of a contract.
3. NATURE AND PURPOSE OF THE PROCESSING OF PERSONAL DATA
As a matter of principle, we process personal data of our users only insofar as this is necessary for the provision of a functional website as well as our contents and services. The processing of personal data of our users is regularly carried out only with the consent of the user. An exception applies in those cases where it is not possible to obtain prior consent for factual reasons and the processing of the data is required or permitted by legal regulations, such as §§ 22 ff. Federal Data Protection Act (BDSG). Please refer to Section 8 for the rights you have as a result of the processing of your personal data, unless otherwise stated.
a) Access data when visiting the website
When you call up our website with the homepage https://www.drgoerg.com/, personal data is processed in order to be able to display the contents of the website on your end device (PC, laptop, tablet, smartphone or similar). This is done by the browser used on your end device automatically sending information to the server of our website. We are obligated under data protection law to also ensure the confidentiality and integrity of the personal data processed with our IT systems. For this purpose and out of this interest, the following data is logged on the basis of a balancing of interests and without your intervention:
- IP address of the calling computer (for a maximum of 7 days)
- Operating system of the calling computer
- Browser used by the calling computer and, if applicable, the name of your access provider
- Name and URL of the retrieved file
- Date and time of the retrieval Referring URL and URLs that are called up by the end device via our website
- Amount of data transferred
b) When registering for our newsletter
c) When using our contact form or contact by e-mail.
Data processing for the purpose of contacting us is carried out in accordance with Art. 6 (1) sentence 1 lit. a) DSGVO on the basis of your voluntarily given consent. If the purpose of contacting you is to conclude a contract, the additional legal basis for the processing is Art. 6 (1) sentence 1 lit. b) DSGVO. The other personal data processed during the submission process serve to prevent misuse of the contact form and to ensure the security of our information technology systems and are based on the legal basis of Art. 6 (1) sentence 1 lit. f) DSGVO. The transmission of the form data via the Internet is carried out using encrypted connections.
d) For orders in our online shop
The mandatory fields are marked as such. If you provide additional data during your order process, we assume that we may also use this data to facilitate the processing of your order. A transfer of data to third parties - with the exception of the data required for the execution of the contract to contracted companies (eg transport companies) - does not take place. The following data is collected as part of the ordering process: e-mail address full name Salutation Date of birth Billing and delivery address phone number Payment data At the time of the order, your IP address and the date and time of the order are also stored. During the ordering process, you will be informed about the collection and processing of your personal data for the purpose of order processing. With regard to the display of suitable products in your terminal device, we also process data from the use of the online store on the basis of a weighing of interests.
e) When registering in the Coconut Club or registering a customer account
You have the option to open a customer account with us by joining our Coconut Club. This gives you the opportunity to participate in our bonus points system. You can also manage your contact details, view your order history, check current order status and create notepads for our online store. In order to provide this service, the relevant personal data provided in the customer account will be collected and processed. In addition, your IP address as well as the date and time of the corresponding activity are stored at the time of your log-in as well as when your data is changed and when orders are placed in our store.
To create a user account, you must fill out an input mask with the following mandatory fields: Full name E-mail address Individual password Furthermore, we process the sales data of the last 12 months for each order in order to be able to correctly classify you in our membership program. The processing of this data is necessary to fulfill our obligations, which arise from your membership in our bonus points system for us. During the registration process for the Coconut Club we will inform you about the purpose-related storage and processing of your personal data. You can terminate your membership and close your user account at any time. To do so, please send an email to firstname.lastname@example.org with the info that you would like to delete your customer account. We will then delete your user account for Our Website as well as the data stored here.
Please note that even after the conclusion of a contract and even after the deletion of your Coconut Club membership, there is a need to store the personal data of the contract partner in order to fulfill contractual or legal obligations. Furthermore, any retention periods that have arisen remain unaffected.
4. TRANSFER OF DATA
Your personal data will not be transferred to third parties for purposes other than those listed below and within this DSE. In principle, we only pass on your personal data to third parties if:
- you have given your express consent to do so in accordance with Art. 6 (1) sentence 1 lit.a) DSGVO,
- the disclosure is necessary for the assertion,exercise or defense of legal claims pursuant to Art. 6(1) sentence 1 lit. f) DSGVO and there is no reason to assume that you have an overriding interest worthy of protection in the non-disclosure of your data,
- in the event that there is a legal obligation for the disclosure pursuant to paragraph 1 sentence 1 lit. c) DSGVO, as well as this is legally permissible and necessary
- according to Art. 6 Paragraph 1 Sentence 1 lit. b) DSGVO for the processing of contractual relationships with you.
If you use third-party payment services for the payment process (e.g. PayPal or Visa), your data will be passed on to the commissioned credit institutions or payment intermediaries in accordance with the order. Their data protection regulations apply to the processing there. Please also note that we may use service providers for the operation of our websites or for other products or services of ours.
Here it may happen that a service provider obtains knowledge of personal data. We select our service providers carefully - especially with regard to data protection and data security - and in this case take all measures required by data protection law for permissible data processing.
This site uses different types of cookies. Some cookies are placed by third parties that appear on our pages. Below is a list of the cookies used on this site and how to change your cookie settings.
6. ANALYSIS TOOLS
The tracking measures listed below and used by us are carried out on the basis of your consent via our cookie banner (Art. 6(1) sentence 1 lit. a) DSGVO). This helps us to continuously improve our website and its user-friendliness. With the tracking measures used, we want to ensure a needs-based design and continuous optimization of our website. On the other hand, we use the tracking measures to statistically record the use of our website and to evaluate it for the purpose of optimizing our offer for you. These interests are to be regarded as legitimate within the meaning of the aforementioned provision. Our legitimate interest in processing the data also lies in these purposes. By anonymizing the IP address, the interest of the users in their protection of personal data is sufficiently taken into account. The respective data categories can be obtained from the corresponding tracking tools.
a) Google Analytics
On our Internet pages, we use Google Analytics, a web analytics service provided by Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland, https://www.google.de/contact/impressum.html), hereinafter referred to as "Google". The purpose of the use is the "needs-based design" of this website, which is carried out on the basis of a balance of interests. The web analysis also enables us to detect and correct errors on the website, e.g. due to faulty links. Google Analytics uses so-called "cookies" (see section 5). These are text files that are stored on your computer and enable an analysis of your use of the website. So-called "client IDs" are used, which are used to create pseudonymous usage profiles that record the use of the website by desktop computers and mobile devices by a user together. The information generated by the cookie about your use of this website such as. Browser type/version, operating system used, Referrer URL (the previously visited page), Host name of the accessing computer (IP address), time of the server request, are transmitted to a Google server in the USA and stored there.
The information is used to evaluate the use of the website, to compile reports on website activity and to provide other services relating to website activity and internet usage for the purposes of market research and demand-oriented design of these internet pages. This information may also be transferred to third parties if this is required by law or if third parties process this data on our behalf. Since we have activated the so-called IP anonymization on this website and concluded a corresponding order processing agreement with Google, your IP address will, however, be shortened beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area ("IP masking"), so that an allocation is not possible. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there.
b) Google Ads Remarketing & Conversion Tracking
For our Internet pages, we use the functions of Google Ads Remarketing, which allows us to advertise our offer in Google search results and on third-party websites. The provider is Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland, https://www.google.de/contact/impressum.html), hereinafter referred to as "Google". The function of Google Ads Remarketing serves the purpose of analyzing visitor behavior and visitor interest on our website, so that interest-based advertisements can be created on the basis of the results obtained and can be controlled in the Google display network. For this purpose, Google sets a cookie (see section 5) in the browser of your terminal device, which automatically enables interest-based advertising by means of a pseudonymous cookie ID and on the basis of the web pages you visit.
The processing is based on your consent (Art. 6 (1) lit. a DSGVO). Further data processing only takes place if you have consented to Google linking your internet and app browsing history to your Google account and using information from your Google account to personalize ads you view on the web. In this case, if you are logged in to Google while visiting our website, Google will use your data together with Google Analytics data to create and define target group lists for cross-device remarketing. For this purpose, Google temporarily links your personal data with Google Analytics data to form target groups. This website uses the online advertising program "Google Ads" and, as part of Google Ads, the conversion tracking of Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland (https://www.google.de/contact/impressum.html). We use the offer of Google Ads to draw attention to our attractive offers with the help of advertising media (so-called Google Ads) on external websites. We can determine how successful the individual advertising measures are in relation to the data of the advertising campaigns. In this way, we pursue the interest of showing you advertising that is of interest to you and making our website more interesting for you, as well as achieving a fair calculation of advertising costs.
The conversion tracking cookie is set when a user clicks on an ad placed via Google Ads. Cookies are small text files that are stored on your computer system. These cookies usually lose their validity after 30 days and are not used for personal identification. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user clicked on the ad and was redirected to this page. Each user who clicks on a Google ad receives a different cookie. Cookies can therefore not be tracked across Ads customers' websites. The information obtained using the conversion cookie is used to create conversion statistics for Google Ads customers who have opted in to conversion tracking. The clients learn the total number of users who clicked on their ad and were redirected to a page tagged with a conversion tracking tag. However, they do not receive any information that can be used to personally identify users. You can permanently deactivate the setting of cookies for ad specifications at Google at the following link: https://adssettings.google.com.
Alternatively, you can obtain information about the setting of cookies from the Digital Advertising Alliance at the Internet address www.aboutads.info and make settings in this regard. Finally, you can set your browser so that you are informed about the setting of cookies and decide individually about their acceptance or exclude the acceptance of cookies for certain cases or in general. If you do not accept cookies, the functionality of our website may be limited. If applicable, Google Ireland Limited will transfer personal data to the USA. Further information and the data protection regulations regarding advertising and Google can be viewed here: https://policies.google.com/technologies/ads?hl=de.
c) Google Optimize
On our website we use the analysis service Google Optimize to optimize the content of our website. The provider here is also Google (see above). The legal basis for the evaluation of your user data to optimize the website content results from Art. 6 para. 1 f) DS-GVO (legitimate interest). We use Google Optimize to display various content on the website and to test which website elements can be meaningfully integrated for the website visitor. The legitimate interest of us therefore lies in the optimization of our website content. In this context, we also access the data collected by Google Analytics. Cookies are also used to display the various website contents and compare them with each other. The information generated by the cookie about your use of these web pages is also transmitted to a Google server in the USA and stored there.
This information may also be transferred to third parties if this is required by law or if third parties process this data on our behalf. Since we have activated the so-called IP anonymization on this website and concluded a corresponding order processing agreement with Google, your IP address will, however, be shortened beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area ("IP masking"), so that an assignment is not possible. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there.
d) Google Tag Manager
To manage the services for usage-based advertising, we also use the Google Tag Manager. The Tag Manager tool itself is a cookie-less domain and does not collect any personal data. Rather, the tool provides for the triggering of other tags, which in turn may collect data (for this: see above). If you have made a deactivation at the domain or cookie level, this remains in place for all tracking tags implemented with Google Tag Manager.
e) Bing Ads
We use Bing Ads from Microsoft Corporation (Microsoft Corporation, One Microsoft Way, Redmond, WA 98052-6399, USA; hereinafter "Microsoft") on our website. When you click on an ad placed by Microsoft Bing Ads, a cookie for conversion tracking is stored on your computer. This cookie has a limited validity and is not used for personal identification. If you visit certain pages of our website and the cookie has not yet expired, Microsoft and we can recognize that you clicked on the ad and were redirected to that page. Information obtained using the conversion cookie is used for the purpose of creating conversion statistics. We learn the total number of users who clicked on one of our ads and were redirected to a page tagged with a conversion tracking tag. However, a personal identification of these users is not possible as a result.
The processing is based on the legitimate interest in targeted advertising and the analysis of the effect and efficiency of this advertising. For this purpose, you can prevent the storage of cookies by selecting the appropriate technical settings of your browser software. However, you may not be able to use all functions of this website to their full extent afterwards. As a result, you will not be included in the conversion tracking statistics. For more information on data protection and the cookies used by Microsoft Bing, please visit: https://privacy.microsoft.com/de-de/privacystatement
f) Facebook Website Custom Audiences ("Visitor Action Pixel").
This website uses the "Facebook pixel" of Facebook Inc. (1 Hacker Way, Menlo Park, CA 94025, USA), hereinafter "Facebook". In the event that explicit consent is given, this allows the behavior of users to be tracked after they have seen or clicked on a Facebook advertisement. This procedure is used to evaluate the effectiveness of Facebook ads for statistical and market research purposes and may help to optimize future advertising measures. The data collected is anonymous for us, so it does not offer us any conclusions about the identity of the users. However, the data is stored and processed by Facebook, so that a connection to the respective user profile is possible and Facebook can use the data for its own advertising purposes, in accordance with the Facebook Data Use Policy (https://www.face- book.com/about/privacy/). You may allow Facebook, as well as its partners, to serve ads on and off Facebook. Furthermore, a cookie may be stored on your computer for these purposes. The processing is based on your consent through the cookie banner Art. 6 (1) lit. a DSGVO.
g) Google Web Fonts
i) Use of the recovery plugin from Uptain
To improve the interaction with our visitors, we use a Java-Script plugin from uptain GmbH ("uptain plugin"). This allows us to analyze your use of our website and to improve our customer approach (e.g. through a dialog box). For this purpose, we collect information about your usage behavior, i.e. movement of the cursor, dwell time, links clicked and, if applicable, information provided. The legal basis for the processing is our legitimate interest in direct marketing and the provision of our website. As a processor, uptain GmbH is strictly bound by our instructions. The information collected is not passed on to third parties unless we are legally obliged to do so. Insofar as the information collected by the uptain plugin contains personal data, this will be deleted immediately after your visit to our website. You can deactivate the use of the uptain plugin at any time via the following link: Click here to deactivate
j) AWIN Performance Advertising Network
We participate in the performance advertising network of AWIN AG (Eichhornstraße 3, 10785 Berlin), hereinafter "AWIN". As part of its tracking services, AWIN stores cookies for the documentation of transactions (e.g., of leads and sales) on end devices of users who visit or use websites or other online offers of its customers (e.g., by placing an order in an online store). These cookies serve the sole purpose of correctly assigning the success of an advertising medium and the corresponding billing within the AWIN network. Only the information about when a certain advertising medium was clicked on by an end device is placed in a cookie. In the AWIN tracking cookies, an individual sequence of numbers, which cannot be assigned to the individual User, is stored with which the partner program of an advertiser, the publisher and the time of the User's action (e.g. click) are documented. In this context, AWIN also collects information about the end device from which a transaction is carried out, e.g. the operating system and the calling browser. If the information also contains personal data, the described processing is based on our legitimate financial interest in processing commission payments with AWIN. If you do not wish cookies to be stored in your browser, you can do so by setting your browser accordingly. You can deactivate the storage of cookies in your respective browser under Tools/Internet Options, limit it to certain websites or set your browser to notify you as soon as a cookie is sent. Please note, however, that in this case you must expect a restricted display of the online offers and a restricted user guidance. You can also delete cookies at any time. In this case, the information stored in them will be removed from your end device. Further information on data use by AWIN can be found in the company's data protection declaration: https://www.awin.com/de/rechtliches/privacy-policy-DACH.
To make it easier for our users to share content on our site with others, we use the ShareThis tool. When you visit our site, a connection is established to ShareThis (ShareThis, Inc., 4005 Miranda Ave, Suite 100, Palo Alto, California 94304) in the USA. This enables links to be shared with others via various channels. The processing is based on a balance of interests. Our legitimate interest lies in the easier discoverability of our offers and an uncomplicated way for users of our website to share content from the site with others. For more information about the data processing by the service provider ShareThis, please visit the following address: https://www.sharethis.com/de/privacy/ Here you can also object to the data collection by ShareThis.
7. DATA SUBJECT RIGHTS
You have the right to:
- In accordance with Art. 15 DSGVO, to request information about your personal data processed by us. In particular, you may request information about the purposes of processing, the category of personal data, the categories of recipients to whom your data have been or will be disclosed, the planned storage period or the criteria for determining this period, the existence of a right to rectification or erasure of the personal data concerning you or to restriction of processing by us or to object to such processing, the existence of a right of appeal, the origin of your data if it has not been collected by us, and the existence of automated decision-making, including profiling within the meaning of Art. 22 DSGVO and, if applicable, meaningful information about its details;
- pursuant to Art. 16 DSGVO, to request the correction of incorrect or incomplete personal data stored by us without undue delay;
- pursuant to Art. 17 DSGVO, to request the erasure of your personal data stored by us, unless the processing is necessary for the exercise of the right to freedom of expression and information, for compliance with a legal obligation, for reasons of public interest or for the establishment, exercise or defense of legal claims;
- pursuant to Art. 18 DSGVO, to request the restriction of the processing of your personal data, insofar as the accuracy of the data is disputed by you, the processing is unlawful, but you object to its erasure and we no longer require the data, but you need it for the assertion, exercise or defense of legal claims or you have objected to the processing pursuant to Art. 21 DSGVO;
- pursuant to Art. 20 DSGVO, to receive your personal data that you have provided to us in a structured, common and machine-readable format or to request that it be transferred to another controller;
- in accordance with Art. 7 (3) DSGVO, to revoke your consent once given to us at any time as indicated in section 9;
- and complain to a supervisory authority in accordance with Art. 77 DSGVO. In principle, you can contact the competent supervisory authority of your usual place of residence or workplace or our registered office for this purpose, currently available at https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html. The competent authority for us is: The State Commissioner for Data Protection and Freedom of Information Rhineland-Palatinate, P.O. Box 30 40, 55020 Mainz, Phone: +49 (0) 6131 208-2449, Fax: +49 (0) 6131 208-2497, E-mail: email@example.com, Web: https://www.datenschutz.rlp.de/de/startseite/.
8. REVOCATION, OBJECTION AND DELETION
Insofar as your personal data is processed on the basis of legitimate interests pursuant to Art. 6 (1) p. 1 lit. f DSGVO, you have the right to object to the processing of your personal data pursuant to Art. 21 DSGVO, insofar as there are grounds for doing so that arise from your particular situation or the objection is directed against direct advertising. In the latter case, you have a general right of objection, which is implemented by us without specifying a particular situation.
If you wish to exercise your right of revocation or objection, it is sufficient to send an e-mail to firstname.lastname@example.org or a statement via one of the specified contact options. As a matter of principle, we delete personal data when there is no need for further storage. A requirement may exist, in particular, if the data is still needed to fulfill contractual services, to check and grant or defend against warranty and, if applicable, guarantee claims. In the case of statutory retention obligations, deletion will only be considered after expiry of the respective retention obligation.
9. DATA SECURITY
Within the website visit, we use the widespread SSL procedure (Secure Socket Layer) in connection with the highest encryption level supported by your browser. As a rule, this is a 256-bit encryption. If your browser does not support 256-bit encryption, we use 128-bit v3 technology instead. You can tell whether an individual page of our website is encrypted by the closed key or lock symbol in the status bar of your browser.
We also use appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction or against unauthorized access by third parties. Our security measures are continuously improved in line with technological developments. We would like to point out that in the case of data transmission via the Internet (e.g. communication by e-mail), it is currently not possible to guarantee consistently secure transmission. Sensitive data should therefore either not be transmitted at all or only via a fully encrypted e-mail.
Our employees and any service providers commissioned by us are obliged to maintain confidentiality and to comply with the provisions of the applicable data protection laws.
10. UPDATING AND AMENDMENT OF THIS DATA PROTECTION DECLARATION