Privacy and Data Protection
Data Privacy Statement
1. Purpose of and legal grounds for the processing of personal data
Your personal data is processed based on the following purposes and legal grounds:
1.1 Contractual relationship pursuant to Art. 6(1) lit b DS-GVO
We use the personal data you have voluntarily provided (name, address, date of birth, e-mail address) in accordance with Section 6, para. 1 lit. b DS-GVO to process contractual orders, to open a customer account or as part of pre-contractual measures.
1.2 Legitimate interest pursuant to Art. 6(1) lit. f DS-GVO
Based on legitimate interest pursuant to Art. 6(1) lit. f DS-GVO, we process the required data for the following purposes:
- In order to process orders and promotions, when necessary we will forward the required data to specialized service providers (IT, payment and logistics service providers, suppliers, call centers, parcel delivery services, letter shops) and to 21sportsgroup GmbH, Planet Sports GmbH and mysportgroup GmbH. The data may only be stored and used by these service providers in order to perform their tasks. In the case of order processing, this processing is carried out in compliance with the regulations for order processing pursuant to Art. 28 DS-GVO.
- We process address and order data for our own advertising purposes, market and opinion research purposes, competitions, as well as for the promotional offers of our partner companies from various industries (charities, financial service providers, etc.) and carry out advertising scoring for interest-based advertising. Of course, you have the right to object at any time to the use of the data for advertising purposes / scoring or for market and opinion research purposes. Notification to this effect in written form sent to the contact information under point 6 (e. g. e-mail, fax, letter) is sufficient.
- Your e-mail address and telephone number are used for communication as part of order processing (confirmation of order and shipment, queries, notification of delivery, processing of supplier complaints). When goods are delivered by our shipping service providers (in particular DHL), we will forward your e-mail address to the shipping service provider for communication during the delivery process. You may object to the use of your e-mail address at any time. Notification to this effect in written form sent to the contact information under point 6 (e. g. e-mail, fax, letter) is sufficient.
2. Use of data for advertising purposes
When you subscribe to our newsletter, you receive regular information on current offers, competitions, coupon promotions and partner offers from the companies in our group of companies (Planet Sports GmbH, 21run GmbH and mysportgroup GmbH). You must be over the age of 16 to register for the newsletter. We use the so-called double-opt-in method, i. e. we will only send you a newsletter if you confirm our notification e-mail by clicking the link provided to confirm that we should activate the newsletter service. The personal data collected during registration for the newsletter along with your consent pursuant to Art. 6(1) lit. a DS-GVO will be used for the distribution of newsletters, to process your queries and for specific product recommendations based on legitimate interest pursuant to Art. 6(1) lit. f DS-GVO. For statistical purposes, we evaluate in anonymous form which links were clicked in the newsletter. This e-mail address is not passed on to third parties, but is only used to send our own newsletter.
You can revoke your consent to receiving the newsletter and to the processing of your personal data at any time via the Unsubscribe link in the newsletter or via email@example.com.
2.2. Individual advertising tailored to your interests
The information you provide helps us to improve and tailor your shopping experience. We use existing information, such as receipt and read confirmations, order history, service history, date and time visiting the homepage, and products viewed. We use this information exclusively in pseudonymous form. The legal basis for this is Art. 6(1) lit f DS-GVO. Analyzing and evaluating this information enables us to improve our websites and our internet offering and to send you advertisement that could in fact be of interest to you. In this context, we will send you product recommendations via e-mail.
2.2.1 Product recommendations via e-mail
If we receive your e-mail address in connection with an order and if you have not objected to this, we reserve the right to regularly send you offers from our range of products and services in accordance with Sect. 7(3) UWG. You will receive these product recommendations regardless of whether you have subscribed to a newsletter. In this way, we would like to inform you about the products we offer that may be of interest to you based on your recent purchases. If you do not wish to receive any product recommendations or any further advertising from us, you can object to this at any time. Notification in written form sent to the contact details provided under point 6 (e. g. e-mail, fax, letter) is sufficient. Of course, you will also find an Unsubscribe link in every e-mail.
Voucher offers of Sovendus GmbH: In order to select a currently interesting voucher offer for you, we will transmit your pseudonymised hash value of your e-mail address and your IP- address in encrypted form to Sovendus GmbH, Moltkestrasse 11, D-76133 Karlsruhe (Sovendus) (Art. 6 par. 1 f GDPR). The pseudonymised hash value of your e-mail address is used to consider a possibly existing objection to receive offers from Sovendus (Art. 21 par.3, Art. 6 par. 1 c GDPR). The IP-address will be exclusively used for data security purposes and as a rule the same will be anonymised after seven days (Art. 6 Abs.1 f DSGVO). Furthermore, we will transmit order number, order value with currency, session ID, coupon code, and time stamp in pseudonymised form to Sovendus for billing purposes (Art. 6 Abs.1 f DSGVO). If you are interested in a voucher offer of Sovendus, while there is no objection existing to receive such offers, and if you click on the voucher banner, we will transmit your form of address, your name and your e-mail address in encrypted form to Sovendus to prepare a voucher (Art. 6 par. 1 b, f GDPR).
You will find further information about the processing of your data by Sovendus in their Online Data Protection Notice at https://www.sovendus.de/en/privacy_policy/
2.2.3 Facebook Custom Audiences via customer lists
To continually enhance your shopping experience, we use the retargeting-tag Website Custom Audiences of the social network Facebook, 1601 South California Avenue, Palo Alto, CA 94304, USA. In general, a non-reversible and non-personal checksum (hash value) is generated from your usage data, which can be transmitted to Facebook for marketing and analysis purposes. Any transmission of customer lists will only be carried out using the hash method; the legal basis for this is Art. 6(1) lit f DS-GVO.
3. Duration of data storage
We store data as long as it is being used for the respective processing purposes (e. g. contract execution, warranty, advertising purposes) and for the fulfillment of commercial and tax-related retention provisions pursuant to Art. 6(1) lit. c DS-GVO and Section 257(1) HGB and Section 147(2) AO.
4. Data transfer outside of the EU
Data processing is primarily carried out in Germany or in states of the European Union. If processing is planned in certain instances in third countries, this processing will only be carried out if the level of adequacy of data protection in the third country has been established by the EU Commission according to Art. 45 DS-GVO or based on EU standard contractual clauses.
5. Entity responsible for processing personal data
The entity responsible for processing personal data in accordance with the General Data Protection Regulation is 21run GmbH, Vorpommernstr. 2, 68775 Ketsch, e-mail address: firstname.lastname@example.org, represented by the Managing Directors Dr. Henner Schwarz and Frank Zwirner.
6. Rights of disclosure and to lodge complaints
According to the General Data Protection Regulation, you have the right to receive free of charge any information pertaining to your stored data as well as the right to correction, deletion, limitation of processing, data portability and to lodge a complaint regarding your stored data. Please contact 21run GmbH, Vorpommernstr. 2, 68775 Ketsch or send an e-mail to email@example.com.
You can contact our data protection officer at firstname.lastname@example.org.
Moreover, you have the right to lodge a complaint with our supervisory authority concerning data privacy.
7. Information on your right to object pursuant to Art. 21 DS-GVO
For reasons arising out of your particular situation, you have the right at any time to object to the processing of any personal data relating to you, according to Art. 6(1) lit. f DS-GVO. Moreover, you have the right to object to the processing of personal data for direct marketing purposes. Notification to this effect in written form sent to the contact information under point 6 (e. g. e-mail, fax, letter) is sufficient.
8. Data security
We take technical and organizational measures to protect the privacy of the users of our website and the connected systems. To ensure the secure transmission of personal data, we use the SSL 3.0 encryption protocol (RSA-2048 is used as the underlying encryption method for the public key infrastructure). This method is used successfully throughout the entire World Wide Web. All personal data (name, address, payment information, etc.) is encrypted and thus transmitted securely on the internet. You will recognize it by a symbol (closed padlock) in the window bar of your browser, indicating that you are currently located in a secure area.
When visiting our website, information is stored on your browser in the form of a cookie (small text files). This stores information pertaining to your use on the website (identifier ID, date of visit, etc.). With these cookies, we facilitate the use of our online offering through various service functions (for example the recognition of previous visits) and can thus tailor our internet offering to better suit your needs. Cookies from the following providers may be used:
- Google Analytics
- Google Adwords
- Google Remarketing
You will find comprehensive information on how to deactivate cookies on numerous browsers on the following websites: youronlinechoices, Network Advertising Initiative and / or Digital Advertising Alliance. There you also will find information on how to delete cookies from your computer as well general information on cookies:
This website uses the technology of Criteo SA, 32 Rue Blanche, 75009 Paris, France, and Google Inc. to collect and store information about the browsing behavior of website visitors in anonymous form for marketing purposes. The browsing behavior stored in cookies is analyzed using an algorithm, so that subsequently targeted product recommendations can be displayed in the form of banner advertisement or advertisements on third-party websites. In addition, the data collected will be used to tailor the design and optimization of the internet offering. A direct personal reference is excluded as the IP addresses are not stored. The tracking tools are not used to collect personal information about you without you noticing, to transmit such data to third-party providers or marketing platforms, or to link the data with your personal data (name, address, etc.). You can opt out of the anonymous analysis of your browsing behavior by clicking on the Criteo deactivation links: https://www.criteo.com/privacy/.
9.2 DoubleClick by Google
9.3 Google Adwords and Conversion Tracking
This website uses the “Google AdWords” online advertising program and Google AdWords conversion tracking. The conversion tracking cookie is stored when a user clicks on an ad displayed by Google. Cookies are small text files that are stored on your computer system. These cookies lose their validity after 30 days and are not used for personal identification. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user has clicked on the ad and was redirected to this page. Each Google AdWords customer receives a different cookie. Thus, cookies cannot be tracked through AdWords advertisers' websites. The information gathered using the conversion cookie is used to generate conversion statistics for AdWords advertisers who have opted for conversion tracking. Customers are informed of the total number of users who clicked on their ad and were redirected to a conversion tracking tag page. They do not, however, receive information that personally identifies users. If you do not want to participate in tracking, you can opt out of this usage by disabling the Google Conversion Tracking cookie from your internet browser under User Settings. You will not be included in the conversion tracking statistics.
9.4 Google Analytics
This website uses Google Analytics, a web analytics service provided by Google Inc. (“Google”). Google Analytics uses so-called “cookies,” text files that are stored on your computer and that enable an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there. In the event that IP anonymization is activated on this website, your IP address will be shortened by Google, however, within member states of the European Union or other countries participating in the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be sent to a Google server in the USA and shortened there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website to compile reports on website activity and to provide the website operator with other services related to website and internet use. The IP address of your browser transmitted by Google Analytics will not be merged with other Google data. You can prevent the storage of cookies by setting your browser software accordingly; however, we point out that in this case you may not be able to fully use all the functionality of this website. In addition, you can prevent Google from collecting the data generated by the cookie and related to your use of the website (including your IP address) as well as the processing of this data by Google by downloading and installing the browser plug-in available under the following link https://tools.google.com/dlpage/gaoptout?hl=en-GB.
It must be noted that this website uses Google Analytics with the extension “_anonymizeIp()” and therefore IP addresses are processed only in shortened form to exclude a direct personal reference.
9.5 New Relic
We use the New Relic service of New Relic Inc. to check the functionality and performance of our web offering. Your browser connects to New Relic and temporarily places a cookie to analyze, for example, the loading times of individual page components. The data is transmitted to a New Relic server in the USA where it is aggregated and evaluated in such a way that it cannot be linked to individual users. Information pertaining to individual hits is collected only in special instances such as for unusually high load times. However, an identification of the user is not provided in these cases. New Relic complies with the privacy provisions of the EU-US Privacy Shield Agreement and is registered with the US Department of Commerce Privacy Shields Program. The purpose and scope of data collection and how New Relic processes and uses the data, as well as ways to protect users' privacy, can be found under New Relic's privacy notices: https://newrelic.com/privacy-shield and https://newrelic.com/privacy.
9.6 Facebook Custom Audiences
10. Social Plugins