Last Modified: March 2024
Thank you for your interest in BioThrust! This privacy notice explains how information about you, that directly identifies you, or that makes you identifiable („personal data„) is collected, used, disclosed, and otherwise processed by BioThrust in connection with our services.
BioThrust GmbH („BioThrust“, „we“ or „us„) is committed to protecting your personal data. With this privacy notice, we would like to inform you as a data subject („you„, „customer“ or „user„) comprehensively about how we handle your personal data.
Personal data means any information that can be used to directly or indirectly identify a natural person or that is likely to make a person identifiable („personal data„). By way of example, a person can be identified by reference to an identifier such as a name, an identification number, location data or by reference to individual physical, physiological, economic or cultural identity characteristics.
Processing of personal data means any operation or set of operations which is performed on personal data or on sets of personal data. It does not matter whether the data processing is automated or not. Processing may include, for example, the collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction of data.
This privacy notice applies to the processing of your personal data when you visit our websites, including but not limited to „biothrust.de“, or contact us by post, e-mail or telephone (together, the „Service„).
We are the controller of the processing of personal data described in this privacy notice. This means that BioThrust determines the purposes and means of the processing of your personal data. You can contact the following address for all data protection inquiries:
BioThrust GmbH
Pauwelsstraße 17
52074 Aachen
Germany
E-Mail: contact@biothrust.de
We collect and process various personal data from you depending on the specific processing situations. We may collect the following personal data you provide in connection with our Service:
In most cases, we collect personal data directly from you, e.g., when you visit our website, use our Services or contact us by email. As with most digital platforms, we and our third-party providers collect your data automatically when you use our Services.
We may receive personal data from our business partners who you have given permission to share personal data with us.
In some cases, we collect your data from third parties, such as when a friend sends you an invitation to visit our website.
Detailed information on the processing activities we carry out, the categories of personal data, the legal bases, the purposes and the duration of the processing in each case can be found in Appendix 1.
The purposes and legal bases for processing your personal data may vary from case to case. In principle, we process your personal data in accordance with the provisions of the General Data Protection Regulation („GDPR„) and the Federal Data Protection Act („BDSG„) for the following purposes and based on the following legal bases:
Detailed information on the legal bases and the purposes can be found in Appendix 1.
We only process your personal data for as long as is necessary to fulfill the purposes for which it was collected. This also applies to the fulfillment of our legitimate interests or statutory retention and documentation obligations that we must observe. Once the purposes have been fulfilled, your personal data will generally be deleted.
The statutory retention and documentation obligations are generally between two and ten years and result, for example, from Section 147 of the German Fiscal Code (Abgabenordnung) or Section 257 of the German Commercial Code (Handelsgesetzbuch).
Upon request, we will delete the data collected and stored for the use of our website, unless we are legally required to keep this data or we need this data to protect, enforce or assert our rights. We will delete the data ourselves within a certain cycle, unless there is a special interest in continued storage in individual cases, e.g., in the event of cyber-attacks.
When determining the retention period required in individual cases, we take into account the scope, nature and sensitivity of the data, the potential risk of damage through unauthorized use or disclosure, the purposes for which we process your personal data and the applicable legal provisions.
Insofar as statutory retention and documentation obligations or the protection of our legitimate interests, which outweigh your conflicting interests, require longer storage, for example in the event of legal disputes, your personal data will be stored and processed for a longer period of time.
We may share your personal data with the following:
Detailed information about the service providers we use can be found in Appendix 2.
It is possible that we or one of our service providers may process or access your data in or from a country outside the European Economic Area, (e.g., to carry out maintenance work). If this is the case, we ensure that your data is still subject to an appropriate level of protection by applying one or more of the following security mechanisms:
Email Communications. From time to time, we may send you emails regarding updates to our Services, notices about our organization, or information about products and services we offer that we think may be of interest to you. If you wish to unsubscribe from such emails, simply click the „unsubscribe link“ provided at the bottom of the email communication. Note that you cannot unsubscribe from certain services-related communications (e.g., confirmations of transactions, technical or legal notices).
Additional rights may be granted under applicable data protection law. Please also see the region-specific disclosure applicable to you.
You are generally not required by law or contract to provide us with your personal data. However, some information, such as your name, address, payment information and information on your requested Services may be necessary for the performance of our contractual obligations. Without providing this information, you might not be able to request or use certain Services or enter a contract with us.
You have the right not to be subject to a decision based solely on automated processing, including profiling, if the decision is not necessary for the conclusion or performance of a contract, is not required by mandatory legal provisions or is not based on your express consent.
BioThrust does not use any automated decision-making processes, including profiling, unless we have explicitly informed you of such processes.
The Services may contain integrations or links to third party websites or services, including those of our business partners. By interacting with these third parties, you are providing information directly to the third party and not BioThrust. Please note that BioThrust is not responsible for the privacy practices of these third parties or any entity that it does not own or control. We encourage you to review the privacy notices and online terms of those third parties to learn more about how they handle your personal data.
Below you will find a list of your rights regarding the processing of your personal data:
RIGHT TO OBJECT ACCORDING TO ART. 21 GDPR
OBJECTION ON GROUNDS RELATING TO YOUR PARTICULAR SITUATION
ACCORDING TO ARTICLE 21 PARA. 1 GDPR, YOU HAVE THE RIGHT TO OBJECT, ON GROUNDS RELATING TO YOUR PARTICULAR SITUATION, AT ANY TIME TO PROCESSING OF YOUR PERSONAL DATA WHERE SUCH PROCESSING IS FOR THE PURPOSES OF OUR LEGITIMATE INTERESTS, INCLUDING PROFILING BASED ON THOSE INTERESTS (E.G., FOR CREDITWORTHINESS ASSESSMENT). FURTHER PROCESSING OF YOUR PERSONAL DATA WILL THEN NO LONGER TAKE PLACE UNLESS WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING WHICH OVERRIDE YOUR INTERESTS, RIGHTS AND FREEDOMS, OR THE PROCESSING SERVES THE ESTABLISHMENT, EXERCISE OR DEFENSE OF LEGAL CLAIMS.
YOU ALSO HAVE THE RIGHT TO OBJECT TO PROCESSING FOR DIRECT MARKETING PURPOSES AT ANY TIME:
CONTACT OPTION
YOU CAN DECLARE YOUR OBJECTION INFORMALLY BY POST OR E-MAIL, ADDRESSED TO:
BioThrust GmbH
Pauwelsstraße 17
52074 Aachen
Germany
Email: contact@biothrust.de
Cookies are small text files that are stored on your end device (e.g., PC/laptop, tablet or smartphone). These text files are downloaded from your browser when you visit our website. If a cookie is not deleted automatically (for example, immediately after your visit to our website), the cookie and the information stored in it will be sent back to the respective website that generated it (first party cookie) or to another website to which it belongs (third party cookie), when you call up this website again with the same end device or browser. In this way, the website „recognizes“ that it deals with the same user and enables the provision of certain functionalities, such as customizing the display of content on the website. Cookies can, for example, „remember“ your preferences, tell how you use a page, and/or customize the offers displayed in part to your preferences.
We also include other tracking technologies under the term „cookie“. For example, it is possible to identify you on the basis of your „digital fingerprint“, i.e., the combination of technical data, the device used, the location of access, etc. It is also possible, for example, to incorporate so-called pixels into the website in order to track you. In fact, however, these technologies serve similar purposes, so they are dealt with together below.
Depending on the specific purpose, a further distinction is made between the different types of cookies.
Functional cookies. We use several functional cookies on our website. When we use functionally necessary cookies, we process your personal data in order to provide basic functions of our websites and the services you have requested, as well as to temporarily store your cookie settings. Without the use of these cookies, we would not be able to provide the website or there would be functional limitations.
Non-functional cookies. We use several non-functional cookies on our website. These cookies are not functionally necessary for the operation of our website and include, for example, cookies to analyze user behavior on websites, cookies to enable a better user experience by embedding videos from other websites, or cookies to show you advertisements.
More details on the processing of personal data through cookies. For more information on the cookies we use, the processing purposes, the types of data, as well as storage duration and recipients, please refer to „Cookie settings“. You can access these via the cookie banner or the tab at the end of the website.
We reserve the right to change this privacy notice from time to time in our sole discretion. We will notify you about material changes in the way we treat personal data by placing a prominent notice on our website, or through other appropriate communication channels. It is your responsibility to review this privacy notice periodically. All changes shall be effective from the date of publication unless otherwise provided.
If you have any questions or requests in connection with this privacy notice or other privacy-related matters, please send an email to contact@biothrust.de.
Processing operation and categories of personal data | Processing purposes | Legal basis | Retention perod (storage period) |
---|---|---|---|
Visiting our Website
collectively "Log Data" |
|
The processing is necessary for our legitimate interest in providing a secure, needs-based website. |
At least seven days, up to 30 days. |
When you contact us:By contact form:
By telephone:
By e-mail:
|
|
Depending on the reasons for which you contact us:If you have contacted us through the contact form
otherwise
or
Regarding the documentation of our communication and your consent:
|
Up to three years after your request has been answered. |
Analytics
Collectively "Analytics Data" |
|
Your consent |
|
Newsletters, company and marketing communication
|
|
or, in cases where we received your email address through an order and send you marketing communication regarding similar products or services, and you have not objected to the processing,
|
We store your data until you unsubscribe from the newsletter or we have not sent you a newsletter for more than 17 months. If you unsubscribe from the newsletter, your data will be deleted within 7 days with the following exceptions. |
Service Provider | Description of the service | Existence or absence of an adequacy decision or reference to the adequate or appropriate safeguards |
---|---|---|
Hubspot |
|
HubSpot, Inc. is certified according to the EU-US Data Privacy Framework. |
Hetzner | Website Hosting |