The responsible party regarding data protection laws, in particular the EU General Data Protection Regulation (GDPR), is:
Dr. Jan Hendrik Taubert
Phone +41 (0)44 5178811
Fax +41 (0)44 5178812
Based on Article 13 of the Swiss Federal Constitution and the federal data protection regulations (Data Protection Act, DSG), every person has the right to protection of their privacy as well as protection against misuse of their personal data.
In cooperation with our hosting providers, we make every effort to protect the databases as well as possible against unauthorized access, loss, misuse or falsification.
We would like to point out that data transmission on the Internet (e. g. non-encrypted communication by e-mail) can have security gaps. A complete protection of data against access by third parties is not possible.
By using this website, you consent to the collection, processing and use of data in accordance with the following description. This website can generally be visited without registration. Data such as pages accessed or names of files accessed, date and time are stored on the server for statistical purposes without this data being directly related to your person.
Personal data, in particular name, address or e-mail address are collected as far as possible on a voluntary basis. Without your consent, the data will not be passed on to third parties.
Processing of Personal Data
Personal data is any information that relates to an identified or identifiable individual. A data subject is a person about whom personal data are processed. Processing includes any handling of personal data, regardless of the means and procedures used, in particular the storage, disclosure, acquisition, deletion, storage, modification, destruction and use of personal data.
We process personal data in accordance with Swiss data protection law. Furthermore, to the extent and insofar as the EU Data Protection Regulation applies, we process personal data in accordance with the following legal bases in connection with Art. 6 (1) GDPR:
lit. a) Processing of personal data with the consent of the data subject.
lit. b) Processing of personal data for the performance of a contract with the data subject as well as for the implementation of corresponding pre-contractual measures.
lit. c) Processing of personal data to comply with a legal obligation to which we are subject under any applicable law of the EU or under any applicable law of a country where the GDPR is applicable in whole or in part.
lit. d) Processing of personal data in order to protect vital interests of the data subject or another natural person.
lit. f) Processing of personal data to protect the legitimate interests of us or of third parties, unless the fundamental freedoms and rights and interests of the data subject prevail. Legitimate interests are in particular our business interest in being able to provide our website, information security, the enforcement of our own legal claims and compliance with Swiss law.
We process personal data for the duration required for the respective purpose or purposes. In the case of longer-lasting retention obligations due to legal and other obligations to which we are subject, we restrict the processing accordingly.
Cookies remain stored beyond the end of a browser session and can be retrieved when you visit the site again. If you do not wish this to happen, you should set your Internet browser to refuse to accept cookies or to delete Cookies automatically once you close the browser program.
Furthermore, the storage of cookies can be achieved by means of their deactivation in the browser settings. Please note that then not all functions of this online offer can be used.
This website uses SSL/TLS encryption for security reasons and to protect the transmission of confidential content, such as requests you send to us as the site operator. You can recognize an encrypted connection by the fact that the address line of the browser changes from "http://" to "https://" and by the lock symbol in your browser line.
If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
The provider of this website automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:
- Browser type and browser version
- Operating system used
- Referrer URL
- Host name of the accessing computer
- Time of the server request
These data are not assignable to specific persons. A combination of this data with other data sources is not made. We reserve the right to check this data retrospectively if we become aware of specific indications of unlawful use.
Third Party Services
This website may use Google Maps for embedding maps, Google Invisible reCAPTCHA for protection against bots and spam, and YouTube for embedding videos.
Google has undertaken to ensure adequate data protection in accordance with the US-European and the US-Swiss Privacy Shield.
If you send us inquiries via contact form, your data from the inquiry form including the contact data you provided there will be stored by us for the purpose of processing the inquiry and in case of follow-up questions. The same applies to files that you transmit to us by other means, e. g. by e-mail. We do not pass on this data without your consent.
Data Protection Statement for Newsletter Data
If you would like to receive the newsletter offered on this website, we require a name and an e-mail address from you as well as information that allows us to verify that you are the owner of the e-mail address provided and that you agree to receive the newsletter. Further data will not be collected. We use this data exclusively for sending the requested information and do not pass it on to third parties.
You can revoke your consent to the storage of the data, the e-mail address and their use for sending the newsletter at any time, for example via the "unsubscribe link" in the newsletter.
For the comment function on this website, in addition to your comment, information on the time of creation of the comment, your e-mail address and, if you do not post anonymously, the username you have chosen will be stored.
Storage of the IP Address
Our comments feature stores the IP addresses of users who post comments. We need this data to be able to take action against the author in the event of legal violations such as insults or propaganda.
Subscribing to Comments
As a user of the site, you can possibly subscribe to comments after registering. You will receive a confirmation email to verify that you are the owner of the email address provided. You can unsubscribe from this feature at any time via a link in the info emails.
Rights of Affected Persons
Right to Confirmation
Every data subject has the right to request confirmation from the website operator as to whether personal data concerning him or her are being processed. If you wish to exercise this right of confirmation, you may, at any time, contact the data protection officer.
Right of Access
Every person affected by the processing of personal data has the right to receive information free of charge from the operator of this website at any time about the personal data stored about him or her and a copy of this information. Furthermore, information may be provided about the following information, if applicable:
- the purposes of processing;
- the categories of personal data processed;
- the recipients to whom the personal data have been or will be disclosed;
- if possible, the planned duration for which the personal data will be stored or, if this is not possible, the criteria for determining this duration;
- the existence of a right to obtain the rectification or erasure of personal data concerning him or her, or the restriction of processing by the controller, or a right to object to such processing;
- the existence of a right of appeal to a supervisory authority;
- if the personal data are not collected from the data subject: Any available information about the origin of the data.
Furthermore, the data subject shall have the right to obtain information as to whether personal data have been transferred to a third country or to an international organization. If this is the case, the data subject is also entitled to receive information about the appropriate safeguards in connection with the transfer.
If you would like to exercise this right to information, you can contact our data protection officer at any time.
Right of Correction
Every person affected by the processing of personal data has the right to demand that inaccurate personal data concerning him or her be corrected without delay. Furthermore, the data subject has the right, taking into account the purposes of the processing, to request that incomplete personal data be completed, including by means of a supplementary declaration.
If you wish to exercise this right of rectification, you may contact our data protection officer at any time.
Right to Erasure (Right to be Forgotten)
Any person concerned by the processing of personal data has the right to obtain from the controller of this website the immediate erasure of personal data concerning him or her, where one of the following grounds applies and insofar as the processing is not necessary:
- The personal data were collected or otherwise processed for such purposes for which they are no longer necessary.
- The data subject withdraws the consent on which the processing was based and there is no other legal basis for the processing.
- The data subject objects to the processing on grounds relating to his or her particular situation and there are no overriding legitimate grounds for the processing, or the data subject objects to the processing in the case of direct marketing and related profiling.
- The personal data have been processed unlawfully.
- The erasure of the personal data is necessary for compliance with a legal obligation under Union or Member State law to which the controller is subject.
- The personal data have been collected in relation to information society services offered directly to a child.
If one of the above reasons applies, and you want to arrange for the deletion of personal data stored by the Operator of this website, you can contact our data protection officer at any time. The data protection officer of this website will arrange for the deletion request to be complied with immediately.
Right to Restriction of Processing
Any person concerned by the processing of personal data has the right to obtain from the controller of this website the restriction of processing if one of the following conditions is met:
- The accuracy of the personal data is contested by the data subject for a period enabling the controller to verify the accuracy of the personal data.
- The processing is unlawful, the data subject objects to the erasure of the personal data and requests instead the restriction of the use of the personal data.
- The controller no longer needs the personal data for the purposes of processing, but the data subject needs it for the establishment, exercise or defense of legal claims.
- The data subject has objected to the processing on grounds relating to his or her particular situation, and it is not yet clear whether the legitimate interests of the controller override those of the data subject.
If one of the aforementioned conditions is met, you can request the restriction of personal data stored by the operator of this website at any time by contacting our data protection officer. The data protection officer of this website will arrange the restriction of the processing.
Right to Data Portability
Every person affected by the processing of personal data has the right to receive the personal data concerning him or her in a structured, common and machine-readable format. He or she also has the right to have this data transferred to another controller if the legal requirements are met.
Furthermore, the data subject has the right to obtain that the personal data be transferred directly from one controller to another controller, insofar as this is technically feasible and insofar as this does not adversely affect the rights and freedoms of other persons.
To assert the right to data portability, you may at any time contact the data protection officer appointed by the operator of this website.
Right of Objection
Any person affected by the processing of personal data has the right to object at any time, on grounds relating to his or her particular situation, to the processing of personal data concerning him or her.
The operator of this website shall no longer process the personal data in the event of the objection, unless we can demonstrate compelling legitimate grounds for the processing which override the interests, rights and freedoms of the data subject, or if the processing serves the purpose of asserting, exercising or defending legal claims.
To exercise the right to object, you may directly contact the data protection officer of this website.
Right of Withdrawal of Consent under Data Protection Law
Every person affected by the processing of personal data has the right to revoke a given consent to the processing of personal data at any time.
If you would like to exercise your right to revoke consent, you can contact our data protection officer at any time.
The use of contact data published within the framework of the imprint obligation to send unsolicited advertising and information materials is hereby prohibited. The operators of the pages expressly reserve the right to take legal action in the event of unsolicited promotional information, such as spam emails.
For the provision of chargeable services, we ask for additional data, such as payment details, in order to be able to execute your order or your order. We store this data in our systems until the legal retention periods have expired.
Use of Google reCAPTCHA
This website uses the reCAPTCHA service provided by Google Ireland Limited (Gordon House, Barrow Street Dublin 4, Ireland "Google"). The query serves the purpose of distinguishing whether the input is made by a human or by automated, machine processing. The query includes the sending of the IP address and possibly other data required by Google for the reCAPTCHA service to Google.
For this purpose, your input is transmitted to Google and further used there. However, your IP address will be shortened beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there.
On behalf of the operator of this website, Google will use this information to evaluate your use of this service. The IP address transmitted by your browser as part of reCaptcha will not be merged with other data from Google. Your data may also be transmitted to the USA in the process. For data transfers to the USA, there is an adequacy decision of the European Commission, the "Privacy Shield".
Google participates in the "Privacy Shield" and has submitted to the requirements. By pressing the query, you consent to the processing of your data. The processing is based on Art. 6 (1) lit. a GDPR with your consent. You can revoke your consent at any time without affecting the lawfulness of the processing carried out on the basis of the consent until revocation.
This website uses Google Analytics, a web analytics service provided by Google Ireland Limited. If the data controller on this website is located outside the European Economic Area or Switzerland, then Google Analytics data processing is carried out by Google LLC. Google LLC and Google Ireland Limited are hereinafter referred to as "Google".
The statistics obtained enable us to improve our offer and make it more interesting for you as a user. This website also uses Google Analytics for a cross-device analysis of visitor flows, which is carried out via a user ID. If you have a Google user account, you can deactivate the cross-device analysis of your usage in the settings there under "My data", "Personal data".
The legal basis for the use of Google Analytics is Art. 6 para. 1 p. 1 lit. f GDPR. The IP address transmitted by your browser as part of Google Analytics will not be merged with other data from Google. We would like to point out that on this website Google Analytics has been extended by the code "_anonymizeIp();" to ensure anonymized collection of IP addresses.
This means that IP addresses are processed in abbreviated form, which means that they cannot be linked to a specific person. If the data collected about you is related to a person, this is immediately excluded and the personal data is deleted immediately.
Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there. On behalf of the operator of this website, Google will use this information for the purpose of evaluating your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator. For the exceptional cases in which personal data is transferred to the USA, Google has submitted to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.
You can also prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) to Google and the processing of this data by Google by downloading and installing the browser plugin available at the following link: Disable Google Analytics.
In addition, you can also prevent the use of Google Analytics. This will save a so-called opt-out cookie on their data carrier, which prevents the processing of personal data by Google Analytics. Please note that if you delete all cookies on your end device, these opt-out cookies will also be deleted, i. e. you will have to set the opt-out cookies again if you wish to continue to prevent this form of data collection. The opt-out cookies are set per browser and computer/end device and must therefore be activated separately for each browser, computer or other end device.
This website uses so-called web fonts provided by Google for the uniform display of fonts. When you call up a page, your browser loads the required web fonts into its browser cache in order to display texts and fonts correctly. If your browser does not support web fonts, a standard font is used by your computer.
Google Tag Manager
Google Tag Manager is a solution that allows us to manage so-called website tags via an interface, allowing us to integrate Google Analytics, for example, as well as other Google marketing services into our online offering. The Tag Manager itself, which implements the tags, does not process any personal data of the users. With regard to the processing of users' personal data, please refer to the following information on Google services. Usage policy https://www.google.com/intl/de/tagmanager/use-policy.html.
Use of Matomo
This website may use Matomo (formerly Piwik), an opensource software for statistical analysis of visitor traffic. Matomo uses so-called cookies, which are text files placed on your computer, to help the website analyze how users use the site.
The information generated by the cookie about your use of the website is stored on a server in Germany.
The IP address is anonymized immediately after processing and before it is stored. You have the option to prevent the installation of cookies by changing the settings of your browser software. We would like to point out that if you change this setting, not all functions of this website may be available.
You can decide whether a unique web analysis cookie may be stored in your browser to enable the website operator to collect and analyse various statistical data.
This website uses the service of Hotjar to improve the user experience. Hotjar Ltd Hotjar Ltd is a European company based in Malta (Hotjar Ltd, Level 2, St Julians Business Centre, 3, Elia Zammit Street, St Julians STJ 1000, Malta, Europe). Mouse clicks as well as mouse and scroll movements can be recorded. Likewise, keystrokes performed on this website can be recorded. Personalized information is not recorded.
Hotjar uses a tracking code to collect and transmit your data. When you visit our website, the Hotjar tracking code automatically collects data based on your activity and stores it on Hotjar servers (located in Ireland). In addition, the cookies placed by the website on your computer or terminal device also collect data. For more information on how Hotjar works, visit this page https://www.hotjar.com/privacy.
If you would like to object to the collection of data by Hotjar (opt-out), please click here https://www.hotjar.com/opt-out.
This website might use functions of Facebook Inc, 1601 S. California Ave, Palo Alto, CA 94304, USA. When calling up our pages with Facebook plug-ins, a connection is established between your browser and the servers of Facebook. In the process, data is already transmitted to Facebook. If you have a Facebook account, this data can be linked to it.
If you do not want this data to be associated with your Facebook account, please log out of Facebook before visiting our site. Interactions, in particular the use of a comment function or the clicking of a "Like" or "Share" button are also passed on to Facebook. You can learn more at https://de-de.facebook.com/about/privacy.
This website uses functions of Twitter, Inc, 1355 Market St, Suite 900, San Francisco, CA 94103, USA. When calling up our pages with Twitter plug-ins, a connection is established between your browser and the servers of Twitter. In the process, data is already transferred to Twitter. If you have a Twitter account, this data can be linked to it. If you do not want this data to be associated with your Twitter account, please log out of Twitter before visiting our site. Interactions, in particular clicking a "re-tweet" button, are also passed on to Twitter. To learn more, please visit https://twitter.com/privacy.
On our website, functions of the service Instagram might be integrated. These functions are offered by Instagram Inc, 1601 Willow Road, Menlo Park, CA, 94025, USA integrated. If you are logged into your Instagram account, you can link the content of our pages to your Instagram profile by clicking on the Instagram button.
This allows Instagram to associate the visit to our pages with your user account. We would like to point out that we, as the provider of the pages, have no knowledge of the content of the transmitted data or its use by Instagram.
We use the marketing services of the social network LinkedIn of LinkedIn Ireland Unlimited Company, Wilton Plaza, Wilton Place, Dublin 2, Ireland ("LinkedIn") within our online offer.
For example, information on the operating system, the browser, the website you previously visited (referrer URL), which websites the user visited, which offers the user clicked on, and the date and time of your visit to our website is collected.
The information generated by the cookie about your use of this website is transferred pseudonymously to a LinkedIn server in the USA and stored there. LinkedIn therefore does not store the name or email address of the respective user. Rather, the above-mentioned data is only assigned to the person for whom the cookie was generated. This does not apply if the user has allowed LinkedIn to process without pseudonymization or has a LinkedIn account.
We use LinkedIn Analytics to analyse and regularly improve the use of our website. The statistics obtained allow us to improve our offer and make it more interesting for you as a user. All LinkedIn companies have adopted the standard contractual clauses to ensure that the data traffic to the USA and Singapore necessary for the development, implementation and maintenance of the services takes place in a lawful manner. If we ask users for consent, the legal basis for processing is Art. 6 (1) lit. a GDPR. Otherwise, the legal basis for the use of LinkedIn Analytics is Art. 6 para. 1 p. 1 lit. f GDPR.
External Payment Service Providers
This website may use external payment service providers through whose platforms users and we may make payment transactions. For example, via
- PostFinance (https://www.postfinance.ch/de/detail/rechtliches-barrierefreiheit.html)
- Visa (https://www.visa.de/nutzungsbedingungen/visa-privacy-center.html)
- Mastercard (https://www.mastercard.ch/de-ch/datenschutz.html)
- American Express (https://www.americanexpress.com/de/legal/online-datenschutzerklarung.html)
- Paypal (https://www.paypal.com/de/webapps/mpp/ua/privacy-full)
- Bexio AG (https://www.bexio.com/de-CH/datenschutz)
- Payrexx AG (https://www.payrexx.ch/site/assets/files/2592/datenschutzerklaerung.pdf)
- Apple Pay (https://support.apple.com/de-ch/ht203027)
- Stripe (https://stripe.com/ch/privacy)
- Klarna (https://www.klarna.com/de/datenschutz/)
- Skrill (https://www.skrill.com/de/fusszeile/datenschutzrichtlinie/)
- Giropay (https://www.giropay.de/rechtliches/datenschutzerklaerung) etc.
(These are all German language links. The English language versions can be accessed through the respective websites.)
In the context of the performance of contracts, we use the payment service providers on the basis of the Swiss Data Protection Ordinance and, where necessary, Art. 6 para. 1 lit. b. GDPR. Furthermore, we use external payment service providers on the basis of our legitimate interests pursuant to the Swiss Data Protection Ordinance as well as and to the extent necessary pursuant to Art. 6 para. 1 lit. f. GDPR in order to offer our users effective and secure payment options.
The data processed by the payment service providers includes inventory data, such as the name and address, bank data, such as account numbers or credit card numbers, passwords, TANs and checksums, among others, as well as the contract, totals and recipient-related information. The information is required in order to carry out the transactions.
However, the data entered is only processed by the payment service providers and stored with them. We as the operator do not receive any information about (bank) account or credit card, but only information to confirm (accept) or reject the payment. Under certain circumstances, the data is transmitted by the payment service providers to credit agencies. The purpose of this transmission is to check identity and creditworthiness. In this regard, we refer to the terms and conditions and data protection information of the payment service providers.
Newsletter – FluentCRM, Amazon Simple E-Mail Service (SES)
The dispatch service provider may use the data of the recipients in pseudonymous form, i. e. without assignment to a user, to optimize or improve its own services, e. g. to technically optimize the dispatch and presentation of the newsletters or for statistical purposes. However, the dispatch service provider does not use the data of our newsletter recipients to write to them itself or to pass the data on to third parties.
Audio and Video Conferencing
We use audio and video conferencing services to be able to communicate with our users as well as other persons. In particular, we may use them to conduct audio and video conferences, virtual meetings, and training such as webinars.
On this website, functions of the service "YouTube" are integrated. "YouTube" is owned by Google Ireland Limited, a company incorporated and operated under the laws of Ireland, with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland, which operates the services in the European Economic Area and Switzerland.
Your legal agreement with "YouTube" consists of the terms and conditions found at the following link https://www.youtube.com/static?gl=de&template=terms&hl=en.
Plugins of the video portal Vimeo of Vimeo, LLC, 555 West 18th Street, New York, New York 10011, USA are integrated on this website. Each time you visit a page that offers one or more Vimeo video clips, a direct connection is established between your browser and a Vimeo server in the USA. In the process, information about your visit and your IP address are stored there.
If you have a Vimeo user account and do not want Vimeo to collect data about you via this website and link it to your membership data stored with Vimeo, you must log out of Vimeo before visiting this website.
In addition, Vimeo calls up the Google Analytics tracker via an iFrame in which the video is called up. This is Vimeo's own tracking, to which we have no access. You can prevent tracking by Google Analytics by using the deactivation tools that Google offers for some Internet browsers.
You can also prevent the collection of data generated by Google Analytics and related to your use of the website (including your IP address) to Google and the processing of this data by Google by downloading and installing the browser plugin available at the following link https://tools.google.com/dlpage/gaoptout?hl=de
We process the data of our contractual partners and interested parties as well as other clients, customers, clients or contractual partners (uniformly referred to as "contractual partners") in accordance with the data protection provisions of the German Federal Data Protection Act (Datenschutzgesetz, DSG) and the GDPR pursuant to Art. 6 para. 1 lit. b. GDPR, in order to provide them with our contractual or pre-contractual services. The data processed in this context, the type, scope and purpose and the necessity of their processing, are determined by the underlying contractual relationship.
The data processed includes the master data of our contractual partners (e. g. names and addresses), contact data (e.g. e-mail addresses and telephone numbers) as well as contractual data (e.g. services used, contract content, contractual communication, names of contact persons, dates and times) and payment data (e.g. bank details, payment history).
As a matter of principle, we do not process special categories of personal data, unless these are components of a commissioned or contractual processing.
We process data that are required for the justification and fulfilment of contractual services and point out the necessity of their disclosure, unless this is evident to the contractual partners. Disclosure to external persons or companies is made only if it is necessary in the context of a contract. When processing data provided to us in the context of an order, we act in accordance with the instructions of the client as well as the legal requirements.
In the context of the use of our online services, we may store the IP address and the time of the respective user action. The storage is based on our legitimate interests, as well as the interests of users in protection against misuse and other unauthorized use. In principle, this data is not passed on to third parties, unless it is necessary for the pursuit of our claims pursuant to Art. 6 para. 1 lit. f. GDPR or there is a legal obligation to do so pursuant to Art. 6 para. 1 lit. c. GDPR.
The deletion of the data takes place when the data is no longer required for the fulfilment of contractual or legal duties of care as well as for dealing with any warranty and comparable obligations, whereby the necessity of keeping the data is reviewed at irregular intervals. In all other respects, the statutory retention obligations shall apply.
Note on Data Transfer to the USA
Among other things, tools from companies based in the USA are integrated on our website. If these tools are active, your personal data may be transferred to the US servers of the respective companies. We would like to point out that the USA is not a safe third country in the sense of EU data protection law.
US companies are obliged to hand over personal data to security authorities without you as a data subject being able to take legal action against this. It can therefore not be ruled out that US authorities (e.g. intelligence services) process, evaluate and permanently store your data located on US servers for monitoring purposes. We have no influence on these processing activities.
Questions to the Data Protection Officer
Zurich, 21. April 2021