Privacy policy

PRIVACY POLICY


Unless otherwise stated below, the provision of your personal data is not required by law or contract, nor is it necessary for the conclusion of a contract. You are not obliged to provide the data. Non-provision has no consequences. This applies only insofar as no other information is given in the following processing procedures.


Responsible person in terms of the EU-DSGVO

goodlifescience GmbH

Ludwigstrasse 9

80539 Munich

Contact: hello@goodlifescience.co

Data protection officer: Andy Reschke


1. Access data and hosting


Server log files

Every time you access our website, usage data is transmitted by your Internet browser and stored in log files (server log files). This stored data includes, for example, the name of the page accessed, your IP address, date and time of access, the amount of data transferred and the requesting provider.


This data is used exclusively to ensure the trouble-free operation of our website and to improve our offer.


Hosting services by a third party provider

In the context of processing on our behalf, a third party provider provides us with the services for hosting and displaying the website. All data collected in the course of using this website or in forms provided for this purpose in the online store as described below are processed on its servers. Processing on other servers only takes place within the scope described here.


This service provider is located in the USA and is certified under the EU-US Privacy Shield. A current certificate can be viewed at https://www.privacyshield.gov/list. On the basis of this agreement between the USA and the European Commission, the latter has established an adequate level of data protection for companies certified under the Privacy Shield.


2. collection and use of data for contract processing, contacting and opening a customer account


When you place an order, we collect and use your personal data only to the extent necessary to fulfill and process your order and to process your inquiries. The provision of the data is necessary for the conclusion of the contract. Failure to provide the data means that no contract can be concluded.


When opening a customer account, we collect your personal data to the extent stated there. The data processing serves the purpose of improving your shopping experience and simplifying the order processing. The processing is based on Art. 6 (1) lit. a DSGVO with your consent. You may revoke your consent at any time by notifying us, without affecting the legality of the processing carried out on the basis of your consent until revocation. Your customer account will then be deleted. Translated with www.DeepL.com/Translator (free version)


Processing is based on Art. 6 (1) lit. b DSGVO and is necessary for the fulfilment of a contract with you. Your data will not be passed on to third parties without your express consent. The only exceptions to this are our service partners who we need to process the contractual relationship or service providers we use for processing orders. In addition to the recipients named in the respective clauses of this privacy policy, these are, for example, recipients of the following categories: Shipping service providers, payment service providers, merchandise management service providers, service providers for order processing, web hosters, IT service providers and dropshipping merchants. In all cases we strictly observe the legal requirements. The extent of data transfer is limited to a minimum. Translated with www.DeepL.com/Translator (free version)


3. Data transfer


Data transfer to shipping service providers

We pass on your e-mail address and telephone number to the transport company within the scope of the contract processing, provided that you have expressly agreed to this in the ordering process. The forwarding serves the purpose of informing you by e-mail about the shipping status. The processing is based on Art. 6 (1) lit. a DSGVO with your consent. You can revoke your consent at any time by notifying us or the transport company DHL, without affecting the legality of the processing carried out on the basis of the consent until revocation.


Use of an external merchandise management system

Within the scope of order processing, we use an enterprise resource planning system for contract processing. For this purpose your personal data collected in the course of the order will be sent to VIISON GmbH, Goebelstr. 21, 64293 Darmstadt, Germany.


Use of data for e-mail newsletter


E-mail advertising with newsletter subscription

If you register for our newsletter, we will use the data required for this purpose or separately provided by you to send you our e-mail newsletter on a regular basis on the basis of your consent in accordance with Art. 6 para. 1 sentence 1 lit. a DSGVO.


You can unsubscribe from the newsletter at any time and can either be done by sending a message to the contact option described below or via a link provided for this purpose in the newsletter. After unsubscribing, we will delete your e-mail address from the list of recipients unless you have expressly consented to further use of your data or we reserve the right to use your data for other purposes that are permitted by law and about which we inform you in this declaration.


The newsletter will be sent by a service provider on our behalf, to whom we will pass on your e-mail address for this purpose. This service provider is located in the USA and is certified under the EU-US Privacy Shield. A current certificate can be viewed here. On the basis of this agreement between the USA and the European Commission, the latter has determined an adequate level of data protection for companies certified under the Privacy Shield.


More information about our newsletter provider and its data protection can be found at: https://www.klaviyo.com/privacy


Use of data for payment processing


Klarna

If you have chosen Klarna's payment services Klarna Invoice and/or Klarna Installment Purchase as payment option, you have agreed that we have collected and transmitted to Klarna the following personal data necessary for the processing of the purchase on account and an identity and credit check, such as first and last name, address, date of birth, gender, e-mail address, IP address, telephone number as well as the data necessary for the processing of the purchase on account, which are related to the order, such as the number of items, item number, invoice amount and taxes in percent. The data processing serves the purpose of offering the payment methods invoice purchase and installment purchase as well as the necessary credit assessment. The processing is based on Art. 6 (1) lit. a DSGVO with your consent. You may revoke your consent at any time by notifying us, without affecting the legality of the processing carried out on the basis of the consent until revocation. This data is transmitted so that Klarna can issue an invoice and carry out an identity and credit check in order to process your purchase with the invoice processing you requested. Klarna needs the personal data of the buyer to obtain information from credit agencies for the purpose of identity and credit assessment. In Germany these can be the following credit agencies.


Right of withdrawal Klarna

1. you can revoke your consent to Klarna to use your personal data at any time. However, Klarna may still process, use and transfer your personal data if this is necessary for the contractual handling of payments by Klarna's services, if it is required by law or if it is demanded by a court or an authority.

2. you can of course obtain information about the personal data stored by Klarna at any time. This right is guaranteed by the Federal Data Protection Act. If you as a buyer wish to do so or if you want to inform Klarna about changes regarding the stored data, you can contact datenschutz@klarna.de.


Use of PayPal

All PayPal transactions are subject to the PayPal Privacy Policy. This can be found here.


4. cookies and web analysis


To make your visit to our website more attractive and to enable the use of certain functions, we use so-called cookies on various pages.


Cookies are small text files that are automatically stored on your end device. If a user calls up a website, a cookie can be stored on the user's operating system. This cookie contains a characteristic string of characters that enables the browser to be uniquely identified when the website is called up again. We use cookies for the purpose of making our website more user-friendly, effective and secure. Furthermore, cookies enable our systems to recognize your browser even after a page change and to offer you services. Some functions of our website cannot be offered without the use of cookies. For these it is necessary that the browser is recognized even after a change of page.


We also use cookies on our website for the purpose of analyzing the surfing behavior of our visitors.


Furthermore, we use cookies for the purpose of subsequently addressing visitors to the site on other websites with targeted, interest-related advertising.


The data collected from you in this way is pseudonymized by technical precautions. It is therefore no longer possible to assign the data to your person. The data will not be stored together with other personal data of yours.

By selecting the appropriate technical settings in your Internet browser, you can prevent the storage of cookies and transmission of the data they contain. Already stored cookies can be deleted at any time. However, we would like to point out that you may not be able to use all functions of this website to their full extent.


Under the following links you can find out how to manage (among other things deactivate) the cookies in the most important browsers:


Chrome™

Internet Explorer™

Mozilla Firefox™

Safari™

Opera™


What types of cookies are used?

a. Necessary Cookies

These cookies are necessary to enable the operation of our website. This includes, for example, cookies that enable you to log in to the customer area or to place something in the shopping cart.


b. Analytical / Performance - Cookies

These cookies enable us to collect anonymous data about the usage behavior of our visitors. This data is then evaluated by us, for example to improve the functionality of the website and to display interesting offers to you.


c. Functional Cookies

These cookies are used for certain functionalities of our website, e.g. to suggest a better navigation flow on our website, to show you personalized and relevant information (e.g. "interest-based advertisements")


d. Targeting Cookies

These cookies record your visit to our website, the pages you have visited and the links you have followed. We will use this information to tailor our website and the advertisements you see to your interests.


e. Third-Party-Cookies

These cookies from some of our advertising partners help us to make our website more interesting for you. Therefore, when you visit our website, cookies from partner companies are also stored on your hard drive. These are temporary cookies that are automatically deleted after the specified time. Cookies from partner companies are usually deleted after a few days or up to 24 months, in individual cases even after several years. The cookies of our partner companies also do not contain any personal data. Data is only collected under a user ID pseudonym. This pseudonym data is at no time merged with your personal data.


Use of Google (Universal) Analytics for web analysis

This website uses Google (Universal) Analytics for website analysis. The web analytics service is provided by Google Ireland Limited, a company incorporated and operated under the laws of Ireland, with registered office at Gordon House, Barrow Street, Dublin 4, Ireland (www.google.de). This serves to safeguard our predominantly legitimate interests in an optimized presentation of our offer in accordance with Art. 6 para. 1 sentence 1 lit. f DSGVO. Google (Universal) Analytics uses methods that enable an analysis of your use of the website, such as cookies. The automatically collected information about your use of this website is usually transferred to a Google server in the USA and stored there. By activating IP anonymization on this website, the IP address is shortened before transmission within the member states of the European Union or in other states that are party to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there. The anonymized IP address transmitted by your browser within the scope of Google Analytics is generally not merged with other Google data. The data collected in this context will be deleted after the end of the purpose and use of Google Analytics by us.


As far as information is transferred to and stored on Google servers in the USA, the American company Google LLC is certified under the EU-US Privacy Shield and the Swiss-US Privacy Shield. A current certificate can be viewed at https://www.privacyshield.gov/list. For companies certified under the Privacy Shield, an appropriate level of data protection is determined on the basis of the agreements between the USA with the European Commission and Switzerland.


You may refuse the transfer of data generated by the cookie and relating to your use of the website (including your IP address) to Google and the processing of this data by Google by downloading and installing the browser plugin available at the following link: https://tools.google.com/dlpage/gaoptout?hl=de


As an alternative to the browser plugin, you can click this link to prevent Google Analytics from recording data on this website in the future. In doing so, an opt-out cookie will be stored on your end device. If you delete your cookies, you have to click the link again.


5. Online Marketing


Google Ads Remarketing

Through Google Ads we promote this site in Google search results and on third party sites. To this end, when you visit our website, the so-called remarketing cookie is set by Google, which automatically enables interest-based advertising by means of a pseudonymous cookie ID and based on the pages you visit. This serves to protect our legitimate interests in the optimal marketing of our website in accordance with Art. 6 Para. 1 S. 1 lit. f DSGVO. After the discontinuation of the purpose and the end of the use of Google Ads Remarketing by us, the data collected in this context will be deleted.


Any further data processing will only take place if you have agreed with Google that your web and app browsing history is linked by Google to your Google account and information from your Google account is used to personalize ads you see on the web. In this case, if you are logged in to Google while visiting our website, Google will use your information along with Google Analytics data to create and define target audience lists for cross-device remarketing. For this purpose, your personal data is temporarily linked by Google with Google Analytics data to form target groups.


Google Ads is a service provided by Google Ireland Limited, a company incorporated and operated under the laws of Ireland, with registered office at Gordon House, Barrow Street, Dublin 4, Ireland (www.google.de).


As far as information is transferred to and stored on Google servers in the USA, the American company Google LLC is certified under the EU-US Privacy Shield and the Swiss-US Privacy Shield. A current certificate can be viewed at https://www.privacyshield.gov/list. For companies certified under the Privacy Shield, an appropriate level of data protection is determined on the basis of the agreements between the USA with the European Commission and Switzerland.


You can deactivate the remarketing cookie via this link [link to: https://adssettings.google.com/authenticated?hl=de ]. In addition, you can find out about setting cookies and adjust the settings for them from the Digital Advertising Alliance [link to: https://www.aboutads.info/].


6. Social Media


Our online presence on Facebook, Instagram, LinkedIn and Youtube

Our presence on social networks and platforms serves to improve active communication with our customers and prospects. There we inform about our products and current special offers.


When you visit our online presence in social media, your data may be automatically collected and stored for market research and advertising purposes. So-called user profiles are created from this data using pseudonyms. These can be used, for example, to place advertisements within and outside the platforms that presumably correspond to your interests. For this purpose, cookies are usually used on your end device. Visitor behaviour and user interests are stored in these cookies. This serves according to Art. 6 Para. 1 lit. f. DSGVO, this serves to protect our legitimate interests in an optimized presentation of our offer and effective communication with customers and interested parties. If you are asked by the respective social media platform operators for consent (permission) to data processing, e.g. by means of a checkbox, the legal basis for data processing is Art. 6 para. 1 lit. a DSGVO.


Insofar as the aforementioned social media platforms have their headquarters in the USA, the following applies: For the USA, an adequacy finding has been issued by the European Commission and Switzerland. This goes back to the EU-US Privacy Shield and the Swiss-US Privacy Shield. A current certificate for the respective company can be downloaded from https://www.privacyshield.gov/list

can be viewed


For detailed information on the processing and use of data by the providers on their sites as well as a contact option and your rights and settings options for the protection of your privacy, in particular the possibility to object (opt-out), please refer to the providers' data protection information linked below. Should you nevertheless require assistance in this regard, you can contact us.


Facebook: https://www.facebook.com/about/privacy/


The data processing is based on an agreement between jointly responsible parties in accordance with article 26 of the DSGVO, which can be viewed here.


Further information on data processing in the context of visiting a Facebook fan page (information on Insights data) can be found here.


Google/ YouTube: https://policies.google.com/privacy?hl=de

Instagram: https://help.instagram.com/519522125107875

LinkedIn: https://www.linkedin.com/legal/privacy-policy


Opt out:

Facebook: https://www.facebook.com/settings?tab=ads

Google/ YouTube: https://adssettings.google.com/authenticated?hl=de

Instagram: https://help.instagram.com/519522125107875

LinkedIn: https://www.linkedin.com/psettings/guest-controls/retargeting-opt-out


7. Sending evaluation reminders by e-mail


Evalution through Shopifyy

Provided that you have given us your express consent to do so during or after your order in accordance with Art. 6 Para. 1 S. 1 lit. a DSGVO, we will transmit your e-mail address to STAMPED.IO (https://stamped.io/) so that they can send you an evaluation reminder by e-mail.

This consent can be revoked at any time by sending a message to the contact option described below or directly to STAMPED.IO.


Duration of storage

After the contract has been completely processed, the data will be stored initially for the duration of the warranty period, thereafter under consideration of legal, in particular tax and commercial law retention periods, and then deleted after the period has expired, unless you have consented to further processing and use.


8. Contact possibilities and your rights


As a data subject, you have the following rights:

- in accordance with Art. 15 of the DSGVO, the right to request information about your personal data processed by us to the extent described therein;

- in accordance with Art. 16 DSGVO, the right to demand the immediate correction of incorrect or incomplete personal data stored by us;

- in accordance with Art. 17 DSGVO, the right to demand the deletion of your personal data stored by us, insofar as further processing is not required.

o to exercise the right to freedom of expression and information;

o to fulfil a legal obligation;

o for reasons of public interest; or

o is necessary for the assertion, exercise or defense of legal claims;

- in accordance with Art. 18 DSGVO, the right to demand the restriction of the processing of your personal data, insofar as

o the correctness of the data is disputed by you

o the processing is unlawful, but you object to its deletion;

o we no longer need the data, but you need it to assert, exercise or defend legal claims; or

o you have lodged an objection to the processing in accordance with Art. 21 DSGVO

- in accordance with Art. 20 DSGVO, the right to receive your personal data that you have provided us with in a structured, common and machine-readable format or to request that it be transferred to another responsible party;

- pursuant to Art. 77 DSGVO, the right to complain to a supervisory authority. As a rule, you can contact the supervisory authority of your usual place of residence or workplace or our company headquarters for this purpose.

- If you have any questions regarding the collection, processing or use of your personal data, or if you wish to obtain information, correct, restrict or delete data, revoke consents granted or object to a particular use of data, please contact us directly using the contact options listed above.


Right of objection


If we process personal data as described above in order to safeguard our legitimate interests, which are predominant in the context of weighing up interests, you can object to this processing with effect for the future. If the processing is for direct marketing purposes, you can exercise this right at any time as described above. If the processing is carried out for other purposes, you only have the right to object if there are reasons arising from your particular situation.

After exercising your right of objection, we will not process your personal data further for these purposes unless we can demonstrate compelling reasons for processing which are worthy of protection and which outweigh your interests, rights and freedoms, or if the processing serves to assert, exercise or defend legal claims

This does not apply if the processing is for direct marketing purposes. In this case we will not process your personal data further for this purpose.


Data security


We use the common SSL (Secure Socket Layer) procedure within the website visit in connection with the highest encryption level supported by your browser. Usually this is a 256 bit encryption. If your browser does not support 256-bit encryption, we use 128-bit v3 technology instead. You can tell whether an individual page of our website is being transmitted in encrypted form by the closed display of the key or lock symbol in the lower status bar of your browser.


We also use appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction or unauthorized access by third parties. Our security measures are continuously improved in line with technological developments.


9. Actuality and change of this data protection notice


Due to the further development of our website and offers above or due to changed legal or official requirements it may become necessary to change this data protection declaration. You can access and print out the current data protection declaration at any time on the website at https://www.andshine.de.


This data protection declaration is currently valid, as of August 2020

English
EN