The protection of your personal data is of particular concern to us. As a company governed by private law, we are subject to the provisions of the European General Data Protection Regulation (“GDPR”) and the German Federal Data Protection Act (“BDSG”). In order to ensure the processing of your personal data meets the requirement of transparency, we would like to inform you in the following sections in detail about which of your personal data we collect, for which purposes we use your personal data, with whom we share it and which rights of control and information you are entitled to.
NAME AND CONTACT DETAILS OF CONTROLLER
The Maglite Europe GmbH & Co. KG, Saline 14, 78628 Rottweil in Germany (hereinafter „we“ or „controller”) is the controller of the processing of personal data on this website.
You may contact us using the following contact details:
“Personal data” means any information relating to an identified or identifiable natural person (“data subject”) such as yourself, i.e. a person who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
“Processing” or “process” refers to any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
“Profiling” means any form of automated processing of personal data consisting of the use of personal data to evaluate certain personal aspects relating to a natural person, in particular to analyze or predict aspects concerning that natural person’s performance at work, economic situation, health, personal preferences, interests, reliability, behaviour, location or movements.
“Pseudonymization” means the processing of personal data in such a manner that the personal data can no longer be attributed to a specific data subject without the use of additional information, provided that such additional information is kept separately and is subject to technical and organizational measures to ensure that the personal data cannot be attributed to an identified or identifiable natural person.
“Controller” refers to the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data, i.e., regarding our website, us.
“Processor” means a natural or legal person, public authority, agency or other body, which processes personal data on behalf of the controller.
“Recipient” means a natural or legal person, public authority, agency or another body, to which the personal data are disclosed, whether a third party or not.
“Third party” means a natural or legal person, public authority, agency or body other than the data subject, controller, processor and persons who, under the direct authority of the controller or processor, are authorized to process personal data.
“Consent” of the data subject means any freely given, specific, informed and unambiguous indication of the data subject’s wishes by which he or she signifies agreement to the processing of personal data relating to him or her.
INFORMATION ON OUR PROCESSING OF PERSONAL DATA
- Visits to our website for informational purposes
When you visit our website for informational purposes, your browser automatically sends us information that is then temporarily saved in a logfile. This information includes your IP address, the date and time of your visit, time deviation from GMT, language and version of browser software, operating system and its interface, transmitted data volume, content of request, HTTP status code as well as the domain name of the website from which you visited ours www.maglite.eu. We process these data to ensure the correct display, use, stability and security of our own website.
The legal basis for this processing is our legitimate interest (Art. 6 para. 1 lit. f GDPR), which consists in enabling the provision of a secure and stable website.
We use the following cookies on our website:
Essential cookies help to make a website usable by enabling basic functions such as page navigation and access to secure areas of the website. Without these cookies, the website cannot function properly.
|Description||Declared as||Validity period|
|_ab||Used in connection with access to admin.||Essential||1 day|
|_secure_session_id||Used in connection with navigation through a storefront.||Essential||30 minutes|
|__cfduid||The _cfduid cookie helps Cloudflare detect malicious visitors to our Customers’ websites and minimizes blocking legitimate users.||Essential||30 days|
|Cart||Used in connection with shopping cart.||Essential||14 days|
|cart||Used in connection with shopping cart.||Essential||14 days|
|cart_sig||Used in connection with checkout.||Essential||14 days|
|cart_ts||Used in connection with checkout.||Essential||14 days|
|checkout_token||Used in connection with checkout.||Essential||1 year|
|Secret||Used in connection with checkout.||Essential||1 year|
|secure_customer_sig||Used in connection with customer login.||Essential||1 year|
|storefront_digest||Used in connection with customer login.||Essential||1 year|
|_shopify_u||Used to facilitate updating customer account information.||Essential||1 year|
|XSRF-TOKEN||Used in connection with GDPR legal Cookie.||Essential||1 year|
|Used in connection with GDPR legal Cookie app.||Essential||session|
|_bc_c_set||Used in connection with GDPR legal Cookie app.||Essential||30 days|
|_tracking_consent||For Shopify User Consent Tracking.||Essential||1 year|
Statistical and Marketing Cookies
Statistical cookies help website owners understand how customers interact with websites by anonymously collecting and reporting information. Marketing cookies are used to track visitors across Web pages. The goal is to serve advertisements that are relevant and appealing to the individual user and are therefore more valuable to third-party advertisers.
|Description||Declared as||Validity period|
|_orig_referrer||Used in connection with shopping cart.||Marketing & Analytics||14 days|
|_landing_page||Track landing pages.||Marketing & Analytics||14 days|
|_s||Shopify analytics.||Marketing & Analytics||30 minutes|
|_shopify_fs||Shopify analytics.||Marketing & Analytics||14 days|
|_shopify_s||Shopify analytics.||Marketing & Analytics||30 minutes|
|_shopify_y||Shopify analytics.||Marketing & Analytics||1 year|
|_y||Shopify analytics.||Marketing & Analytics||1 year|
|_shopify_sa_p||Shopify analytics relating to marketing & referrals.||Marketing & Analytics||30 minutes|
|_shopify_sa_t||Shopify analytics relating to marketing & referrals.||Marketing & Analytics||30 minutes|
|_shopify_uniq||Shopify analytics.||Marketing & Analytics||30 minutes|
|_shopify_visit||Shopify analytics.||Marketing & Analytics||30 minutes|
|tracked_start_checkout||Shopify analytics relating to checkout.||Marketing & Analytics||30 minutes|
|ki_r||Shopify analytics.||Marketing & Analytics||30 minutes|
|ki_t||Shopify analytics.||Marketing & Analytics||30 minutes|
|ab_test_*||Shopify analytics.||Marketing & Analytics||30 minutes|
In particular: Google Analytics
We use functions of the web analysis service Google Analytics on our website. The provider is Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA („Google”).
Our use of Google Analytics cookies is based on your consent, Art. 6 para. 1 lit. a GDPR. A transfer of personal data to the USA may take place in exceptional cases. Such transfer is based on the so-called EU standard contractual clauses.
This website uses the "demographic characteristics" feature of Google Analytics. This enables us to generate reports that contain statements about the age, gender and interests of website visitors. This data comes from interest-based advertising by Google as well as from visitor data from third parties. This data cannot be assigned to a specific person.
- Using the contact form
When you contact us via the contact form on our website, we process your personal data (i.e. your email address, your ZIP code, city and country as well as any information and details you provide us with within the content of your message) in order to provide you with an individualized response to your request. You may voluntarily add your name, phone number and/or a website URL.
Depending on the circumstances of the specific case and the content of your request, such processing is either necessary to fulfill contractual obligations or carry out pre-contractual measures with you (Art. 6 para. 1 lit. b GDPR) or is based on our legitimate interest, which is responding to your enquiry (Art. 6 para. 1 lit. f GDPR).
- Contacting us via email
When you contact us via email, we process all thereby provided personal data, particularly your email address, destination address, IP address, email program date and time of your email, your name, the content of your email as well as the information you provide to enable us to respond to your enquiry individually.
This processing of your data either is necessary to fulfill contractual obligations or carry out pre-contractual measures with you (Art. 6 para. 1 lit. b GDPR) or is based on our legitimate interest in responding to your enquiry (Art. 6 para. 1 lit. f GDPR).
If you have consented to receiving our newsletter, we will use your email address and your name to send you our newsletter. In this newsletter, we would like to inform you about the following topics: news, new products, products, contests and special offers; the sending of our newsletter is based on your consent (Art. 6 para 1 lit. a GDPR). You may withdraw your consent at any time by sending us an email to online.marketing[@]maglite.eu or clicking on the “unsubscribe” link in any newsletter.
We also keep a list of email addresses of people who no longer wish to be contacted by us. This processing of your email address is based on our legitimate interest in not sending you emails against your will and therefore is based on Art. 6 para. 1 lit. f GDPR.]
- Using the product registration form
When you contact us and you use the product registration form on our website, we process your personal data (i.e. purchased product with its serial number, your receipt, date of purchase, name, phone number, your email address as well as any information and details you provide us with within the content of your message) in order to provide you with an individualized response to your request. You may voluntarily add your address and country where you're living and confirm to receive our Newsletter.
Depending on the circumstances of the specific case and the content of you filling out the product registration, such processing is either necessary to fulfill contractual obligations or carry out pre-contractual measures with you (Art. 6 para. 1 lit. b GDPR) or is based on our legitimate interest, which is responding to your enquiry (Art. 6 para. 1 lit. f GDPR). You may withdraw your registration at any time by sending us an email to online.marketing[@]maglite.eu.
We also keep a list of email addresses, phone numbers and names of people who no longer wish to be contacted by us. This processing of your email address, name and phone number is based on our legitimate interest in not sending you emails or contacting you against your will and therefore is based on Art. 6 para. 1 lit. f GDPR.]
- MAGLITE® Stories
If you submit a photograph and a statement to us and accept the use of both in our MAGLITE® Stories gallery, we process that photograph and statement (including your name or other personal details, if contained in the statement or the photograph) for the use in the MAGLITE® Stories gallery. This processing of personal data is based on your consent (Art. 6 para 1 lit. a GDPR). You may withdraw your consent at any time by sending us an email to online.marketing[@]maglite.eu.
RECIPIENTS AND THIRD-COUNTRY TRANSFER
In some cases, we commission external service providers to process your personal data. All contractual relationships between such processors and us are governed by the requirements of the GDPR.
We may also pass your personal data to third parties if sales promotions, competitions, contract conclusions or similar services are offered by us in cooperation with partners (e.g. cookie providers).
Our processors or we may transfer some of your personal data outside the European Economic Area (EEA). Where we or our service providers or partners transfer your personal data outside the EEA, we will ensure the protection of your personal data in accordance with Artt. 44 ff. GDPR and inform you about any implemented additional safeguards.
As a general principle, we only store personal data until the originally intended and approved purpose of collection and storage is fulfilled.
Notwithstanding the above general principle, we will not delete personal data if necessary to fulfill a statutory obligation. For instance, we are subject to statutory commercial as well as taxation data-storage provisions that require certain personal data to be stored for up to ten years under applicable local law.
RIGHTS OF THE DATA SUBJECT
You have various rights with regard to our processing of your personal data. You can exercise these rights by contacting us under the details provided above. Additionally, you have the right to lodge an official complaint with a supervisory authority.
- Withdrawal of consent
Where our processing of your personal data is based on your consent, you have the right to withdraw this consent at any time and without reason. The withdrawal of consent shall not affect the lawfulness of processing based on consent before its withdrawal.
- Right of access
According to Art. 15 GDPR, you have the right to obtain from the controller confirmation as to whether or not personal data concerning you are being processed, and, where that is the case, access to the personal data along with detail information regarding our processing activities.
Where personal data are transferred to a third country or to an international organization, we will inform you of the appropriate safeguards pursuant to Art. 46 GDPR relating to the transfer.
- Right to rectification
According to Art. 16 GDPR, you have the right to obtain from us without undue delay the rectification of inaccurate personal data concerning you. Taking into account the purposes of the processing, you have the right to have incomplete personal data completed, including by means of providing a supplementary statement.
- Right to erasure
According to Art. 17 GDPR, you have the right to obtain from us the erasure of personal data concerning you without undue delay and we are obliged to erase personal data without undue delay.
- Right to restriction of the processing
According to Art. 18 GDPR, you have the right to request the restriction of the processing of your personal data carried out by us.
- Right to data portability
According to Art. 20 GDPR, you have the right to receive the personal data concerning you, which you have provided to us, in a structured, commonly used and machine-readable format and have the right to transmit those data to another controller without hindrance.
You have the right to object the processing of your personal data based on our legitimate interests (Art. 6 para. 1 lit. f GDPR) at any time. Where personal data are processed for direct marketing purposes, you have the right to object at any time to processing of personal data concerning you for such marketing purposes, which includes profiling to the extent that it is related to such direct marketing. Where you object to processing of your personal data for certain purposes, processing will be terminated.