Privacy Notice

Introduction
Welcome to the privacy notice of LAIA’S GmbH.

It is especially important to us that we handle your personal data responsibly. We respect your privacy and are fully committed to protect the personal data you provide. We aim to be just as transparent about your personal data as we are about our products. This privacy statement will inform you about your privacy rights and the measures we take to protect your personal data.

Content

  1. Who are we?
  2. What personal data do we collect?
  3. How do we collect your personal data?
  4. For what do we use your data?
  5. Data security
  6. Data retention (How long do we keep your data)
  7. Your legal rights
  8. Questions and complaints?
  9. Social plugins (Facebook etc.)
  10. Cookie statement

1. Who are we?
We are Laia's Proteinhanf GmbH. Our registered address is Wühlischstraße 56, 10245 Berlin. You can reach our data protection officer at info@laias-organic.com or data protection officer c/o Laia's Proteinhanf GmbH; Wühlischstraße 56, 10245 Berlin.

2. Welche personenbezogenen Daten erheben wir?
Durch die Nutzung unserer Website können wir verschiedene Arten von personenbezogenen Daten über Sie erheben, nutzen und speichern. Dazu gehören alle Daten, die Sie angeben, wenn Sie ein Produkt kaufen, sich für exklusive E-Mails anmelden, an einem Gewinnspiel teilnehmen oder sich auf eine freie Stelle bei Laia’s bewerben. Wir haben die verschiedenen Arten von personenbezogenen Daten, die wir sammeln, wie folgt kategorisiert:

Identity data: Includes first name and last name.

Contact data: Includes Billing address, delivery address, email address and telephone number.

Financial data: Includes bank account and payment card details.

Transaction data: Includes details about payment from and to you, as well as other details of products you have purchased from us.

Technical data: Includes information about the browser type and version, operating system, internet service provider, IP address and date and time of access. In addition, technical data includes information about websites from which our website is accessed, as well as web pages that are accessed via our website.

Usage data: Includes information about how you use our website, such as the search terms entered, frequency of page use, and use of website functions.

3. How do we collect your personal data?
We collect your personal data in different ways:

Direct interactions
Most of the personal information we process is provided to us directly by you. We may collect your Identity, Contact and Financial data by filling in forms or communicating with us by post, phone, email or otherwise. This includes information you provide when you:

  1. Order our products.
  2. Subscribe to the newsletter and exclusive emails.
  3. Engage with us on social media or through our contact form.
  4. Enter a competition or promotion.
  5. Give us feedback or make a complaint

Automated technologies or interactions.
As you use our website, we will automatically collect technical data about your equipment, browsing actions and patterns. We collect this data through cookies, log files and other similar technologies. For further information about the data collected through cookies, please see our cookie policy below.

4. For what do we use your data?
We ensure you that we only use your personal data when the law allows us to. Your personal data will not be passed on to third parties and will be deleted as soon as it is no longer required to achieve the purpose for which it was acquired.
In the following section we have set out a description of all the ways we plan to use your data, and on which legal bases we rely to do so. Please contact us if you have questions about the legal grounds we are relying on to process your personal data.

Purpose: To process and deliver your order of our products

this includes:

1) Managing payments, fees and charges
2) Collecting money owed to us

Legal basis for processing:

a) Performance of a contract with you according to Art. 6 para. 1 lit. b DSGVO
b) The legitimate interest in the processing of personal data according to Art. 6 para. 1 lit. f DSGVO

Purpose: To enable you to partake in a prize draw or complete a survey

Legal basis for processing:

a) Performance of a contract with you according to Art. 6 para. 1 lit. b DSGVO
b) The legitimate interest in the processing of personal data according to Art. 6 para. 1 lit. f DSGVO (to learn more about the way in which consumers use our products, to develop them and grow our business)

Purpose: optimise the functionality of the website and ensure the security of our information technology

Legal basis for processing:

a) The legitimate interest in the processing of personal data according to Art. 6 para. 1 lit. f DSGVO

Purpose: use google analytics to improve our website, products, marketing and customer relationships

Legal basis for processing:

a) The legitimate interest in the processing of personal data according to Art. 6 para. 1 lit. f DSGVO (to define customers for our products, to keep our website updated and relevant, and to develop our business)

Purpose: to send you marketing communications by email. These exclusive emails include information about our products, events, offers and promotions

Legal basis for processing:

a) The user has given consent to receive marketing communications (Art. 6 para. 1 lit. a DSGVO)

5. Data security
We have put in place significant security measures to prevent your personal data from accidentally being lost, accessed or used in unauthorised ways, altered or disclosed. We only give access to your personal data to employees and service providers that need this information in order to provide a service. These may be technical service providers or service providers who support us in shipping. These carefully selected service providers will only process your data on our instructions and are subject to a duty of confidentiality.

In addition, we have procedures in place to deal with any form of suspected data breach. In case of a breach, we will notify you and any regulator where we are legally required to do so.

6. Data retention
We will only keep your personal data for as long as necessary to fulfil the purpose we collected it for, and it will be deleted as soon as it is no longer required. Storage in data log files will be deleted after 90 days the latest. In the case of longer retention, your data will be completely anonymised, and your IP address will be deleted.

7. Your legal rights
If the legal requirements are met, you are entitled to data protection rights in accordance with Art. 13 (2), 15 to 22 DS-GVO. If you wish to exercise any of the following right, please contact us directly at info@laias-organic.com.

  1. You have the right to request information about your personal data processed by us in accordance with Art. 15 DSGVO. In particular, you can request information about the processing purposes, the category of personal data, the categories of recipients to whom your data have been or will be disclosed, the planned storage period, the existence of a right to rectification, erasure, restriction of processing or objection, the existence of a right of complaint, the origin of your data if it has not been collected by us, and the existence of automated decision-making.
  2. You have the right to demand the correction of incorrect or incomplete personal data stored by us.
  3. You have the right to request the deletion of your personal data stored by us. This enables you to ask us to remove personal data where there is no good reason for us to continue to process it. However, we may not be able to comply with your request when processing is necessary for: (a) the exercise of the right to freedom of expression and information; (b) compliance with a legal obligation; (c) reasons of public interest; or (d) the affirmation, exercise or defence of legal claims.
  4. You have the right to request the restriction of the processing of your personal data. You can ask us to suspend the processing of your personal data in the following scenarios: (a) the accuracy if the data is disputed by you; (b) the processing of the data is unlawful, but you don’t want us to erase it; (c) we no longer need the data , but you need it to establish, exercise or defend legal claims; (d) you have objected to the processing in accordance with Art. 21 DSGVO.
  5. You have the right to receive your personal data or request that it be transferred to another controller. We will provide your personal data to you, or the controller you have chosen, in a structured, common and machine-readable format.
  6. You have the right to revoke your consent at any time when we are relying on your consent to process your personal data. The revocation of consent does not affect the lawfulness of the processing carried out on the basis of consent until the revocation.
  7. You have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your place of residence, place of work or place of the alleged infringement, if you consider that the processing of personal data relating to you infringes the DSGVO.

In order to access your personal data or exercise any of your other rights, we may request some specific information from you in order to confirm your identity. We do this to ensure your right to access your personal data and guarantee that personal data is not disclosed to people who have no right to receive it.

8. Questions and Complaints
We always want to hear from our customers, especially if you think we could do better. If you have questions of feedback about this privacy notice, please do not hesitate to contact us. You can reach us by sending an e-mail to info@laias-organic.com.

9. Social Plugins
On our website you will find buttons that offer the possibility to interact with various social media networks. When you activate these social plugins, information about your browser, operating system used, and current IP address are transmitted to the respective social media provider. If you are already logged in to the corresponding network at the time a plugin is activated, the plugin is also able to determine your username, and possibly your real name.

We have no influence on the type and scope of the data collected and transmitted to Facebook. The purpose and scope of the data collection and the further processing and use of the data by Facebook can be found under the data protection information of Facebook https://www.facebook.com/about/privacy/. Here you will also find information on how to manage your content and information on Facebook, as well as the general privacy policy of Facebook.

10. Cookie statement
What are cookies?

Our website uses cookies. Cookies are text files that are stored in the Internet browser or by the Internet browser on the user's computer system. When a user calls up a website, a cookie may be stored on the user's operating system. This cookie contains a characteristic string of characters that enables the browser to be uniquely identified when the website is called up again.

Which cookies do we use on our website?

1) Technically necessary cookies

We use cookies to make our website more user-friendly. The purpose of using technically necessary cookies is to simplify the use of websites for users. Some functions of our website cannot be offered without the use of cookies. For these, it is necessary that the browser is recognised even after a page change. We require cookies for the following applications: (1) Shopping cart (2) Acceptance of language settings (3) Remembering search terms.

The user data collected through technically necessary cookies is not used to create user profiles. The legal basis for the processing of personal data using cookies is Art. 6 para. 1 lit. f DSGVO.

2) Analytical cookies

We also use cookies on our website that enable an analysis of the user's surfing behaviour. Analysis cookies are collected by Google Analytics and are used for the purpose of improving the quality of our website and its content. Through the analysis cookies, we learn how the website is used and can thus constantly optimise our offer. The following data can be transmitted in this way:

- Search terms entered
- Frequency of page views
- Use of website functions

Your data that is collected in this way is pseudonymised by technical precautions. Therefore, it is no longer possible to assign this data to you. The data is thus not stored together with your other personal data.

We only use Google Analytics with IP anonymisation activated. This means that the IP address of the user is shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. The IP address transmitted by the user's browser will not be merged with other data from Google.

The legal basis for the processing of personal data using cookies for analysis purposes is Art. 6 para. 1 lit. a DSGVO if the user has consented to this.

Recipients of the data and storage period

The information on the use of the online offer obtained through the cookies from Google Analytics is generally transferred by Google to a server in the USA and stored there. All other information due to technically necessary cookies will not be passed on to third parties by us and will be deleted as soon as it is no longer required to achieve the purpose for which it was collected. User data is deleted after 14 months at the latest.

Do we need consent to use cookies on our website?

1) Technically necessary cookies: We do need your consent to store and access essential cookies, however you can still delete or block them (see section below)

2) Analytical cookies: We are only allowed to store and access non-essential cookies with your permission. You are not required to give consent to these analytical cookies. When you do give consent but change your mind, you can delete or block them at any given time (see section below)

How do I delete or block cookies?

As a user, you have control over the use of cookies on your computer. By changing the settings of your internet browser, you can deactivate or restrict the transfer of cookies. Cookies that have already been stored can be deleted at any time. This can also be done automatically. However, keep in mind that it may no longer be possible to use all the functions of the website when you deactivate cookies.

The following links explain how to manage cookies for the most used browsers:

Google chrome: https://support.google.com/chrome/answer/95647

Internet explorer: https://support.microsoft.com/nl-nl/topic/cookies-verwijderen-en-beheren-168dab11-0753-043d-7c16-ede5947fc64d#ie=ie-11

Microsoft edge: https://support.microsoft.com/en-us/windows/microsoft-edge-browsing-data-and-privacy-bb8174ba-9d73-dcf2-9b4a-c582b4e640dd

Safari: https://support.apple.com/nl-nl/guide/safari/sfri11471/mac

Stand 01.12.2020

Questions?