Privacy Policy

Privacy Policy

Privacy Policy

Table of Contents

Introduction and Overview

We have prepared this privacy policy to explain to you, in accordance with the requirements of the General Data Protection Regulation (EU) 2016/679 and applicable national laws, which personal data (in short, "data") we process as controller — and which our engaged processors (e.g. providers) process — now and in the future, and what lawful options are available to you. The terms used are to be understood as gender-neutral.

In short: we inform you comprehensively about the data we process about you.

Privacy policies usually sound very technical and use legal jargon. This privacy policy, however, aims to describe the most important matters to you as simply and transparently as possible. If you still have questions, please contact the responsible party named below or in the Imprint.

Scope

This privacy policy applies to all personal data processed by us within the company and to all personal data processed by companies we commission (processors). By personal data we mean information within the meaning of Art. 4 No. 1 GDPR, such as name, email address, and postal address of a person. The scope of this privacy policy covers:

  • all online presences (websites, online shops) that we operate
  • social media presences and email communication
  • mobile apps for smartphones and other devices

In short: this privacy policy applies to all areas in which personal data is processed within the company via the channels named above.

In the following, we provide you with transparent information on the legal principles and provisions, i.e. the legal bases of the GDPR, that enable us to process personal data. With regard to EU law, we refer to REGULATION (EU) 2016/679 OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL of 27 April 2016, which you can read online at EUR-Lex.

We process your data only if at least one of the following conditions applies:

  • Consent (Article 6(1)(a) GDPR): You have given us your consent to process data for a specific purpose. An example would be the storage of data you enter into a contact form.
  • Contract (Article 6(1)(b) GDPR): We process your data in order to fulfil a contract or pre-contractual obligations with you.
  • Legal obligation (Article 6(1)(c) GDPR): We process your data because we are subject to a legal obligation, e.g. to retain invoices for accounting purposes.
  • Legitimate interests (Article 6(1)(f) GDPR): In the case of legitimate interests that do not restrict your fundamental rights, we reserve the right to process personal data.

In addition to the EU regulation, national laws also apply: in Austria, the Datenschutzgesetz (DSG); in Germany, the Federal Data Protection Act (BDSG).

Contact Details of the Controller

Should you have any questions regarding data protection or the processing of personal data, please find below the contact details of the responsible person or body:
Gedomo GmbH
Hannes Hörting
8225 Pöllau, Austria

Authorised representative: Hannes Hörting
Email: This email address is being protected from spambots. You need JavaScript enabled to view it.
Phone: +43 699 10542832
Imprint: https://www.gedomo.com/en/imprint

Storage Period

As a general principle, we only store personal data for as long as is strictly necessary to provide our services and products. In some cases, we are legally obliged to retain certain data even after the original purpose has ceased to apply, for example for accounting purposes.

Should you wish to have your data deleted, or should you withdraw your consent to data processing, your data will be deleted as quickly as possible, provided there is no obligation to retain it.

Rights under the General Data Protection Regulation

In accordance with Articles 13 and 14 GDPR, we inform you of the following rights to which you are entitled, in order to ensure fair and transparent processing of data:

  • Under Article 15 GDPR, you have a right of access to find out whether we process data about you, including the purpose, categories, recipients, storage duration, and origin of the data.
  • Under Article 16 GDPR, you have a right to rectification of data.
  • Under Article 17 GDPR, you have the right to erasure ("right to be forgotten").
  • Under Article 18 GDPR, you have the right to restriction of processing.
  • Under Article 20 GDPR, you have the right to data portability.
  • Under Article 21 GDPR, you have a right to object to processing.
  • Under Article 22 GDPR, you may have the right not to be subject to a decision based solely on automated processing.
  • Under Article 77 GDPR, you have the right to lodge a complaint with a supervisory authority.

In Austria, the responsible supervisory authority is:

Austrian Data Protection Authority
Address: Barichgasse 40-42, 1030 Vienna
Phone: +43 1 52 152-0
Email: This email address is being protected from spambots. You need JavaScript enabled to view it.
Website: https://www.dsb.gv.at/

Security of Data Processing

In order to protect personal data, we have implemented both technical and organisational measures. Article 25 GDPR refers to this as "data protection by design and by default."

We use HTTPS (Hypertext Transfer Protocol Secure) to transmit data securely over the internet, so that the entire transmission of data from your browser to our web server is secured. You can recognise this by the padlock symbol in your browser and the use of https in our web address.

Communication

Communication Summary
👥 Affected parties: All persons who communicate with us by telephone, email, or online form
📓 Data processed: e.g. telephone number, name, email address, data entered into forms
🤝 Purpose: Handling communication with customers, business partners, etc.
📅 Storage period: for the duration of the business case and as required by statutory provisions
⚖️ Legal basis: Art. 6(1)(a) GDPR (consent), Art. 6(1)(b) GDPR (contract), Art. 6(1)(f) GDPR (legitimate interests)

If you contact us and communicate by telephone, email, or online form, personal data may be processed for the purpose of handling and processing your enquiry and the related business transaction. The data is deleted once the business matter has been concluded and statutory provisions permit deletion.

Cookies

Cookies Summary
👥 Affected parties: Visitors to the website
🤝 Purpose: depends on the respective cookie
📓 Data processed: depends on the respective cookie used
📅 Storage period: depends on the respective cookie and can range from hours to years
⚖️ Legal basis: Art. 6(1)(a) GDPR (consent), Art. 6(1)(f) GDPR (legitimate interests)

Our website uses technically necessary HTTP cookies to ensure the basic functionality of this website.

For strictly necessary cookies, legitimate interests exist even without consent (Article 6(1)(f) GDPR). Insofar as cookies that are not strictly necessary are used, this only takes place with your consent (Art. 6(1)(a) GDPR).

Google reCAPTCHA Privacy Policy

Google reCAPTCHA Summary
👥 Affected parties: Website visitors who use our contact form
🤝 Purpose: Protection against automated access, spam, and abuse
📓 Data processed: including IP address, mouse movements, click behaviour, browser and device information. For more details, please see Google's privacy policy.
📅 Storage period: depends on Google, typically up to 6 months
⚖️ Legal basis: Art. 6(1)(f) GDPR (legitimate interests)

We use Google reCAPTCHA ("reCAPTCHA") on our website to protect our contact form from spam and abuse through automated access. The service provider is the American company Google LLC; for the European area, Google Ireland Limited (Gordon House, Barrow Street, Dublin 4, Ireland) is responsible.

reCAPTCHA works in the background and analyses various information (e.g. IP address, time spent on the website, or the user's mouse movements) in order to distinguish whether an interaction originates from a human or is carried out fraudulently through automated means. In the course of this analysis, data is transmitted to Google and processed there, which may also result in the transfer of data to the USA and other third countries outside the EU.

Why we use Google reCAPTCHA on our website

By using reCAPTCHA on our website, we aim to protect our services against spam and abuse by automated systems. This also allows us to comply as effectively as possible with our legal obligations to protect your data when you contact us (Art. 25(1) GDPR).

What data does reCAPTCHA store?

reCAPTCHA collects personal data in order to distinguish between human and machine users. This includes the IP address and other data required by Google for the reCAPTCHA service. Data is exchanged between your browser and the website, and cookies may be set on your device for the duration of the analysis.

The use of Google reCAPTCHA is based on our legitimate interest (Art. 6(1)(f) GDPR) in a functioning contact form that is protected against abuse.

Further information on Google reCAPTCHA can be found in Google's privacy policy at https://policies.google.com/privacy and at https://www.google.com/recaptcha/about/.

Newsletter

Newsletter Summary
👥 Affected parties: Individuals who sign up for our newsletter
🤝 Purpose: Information about promotions and offers
📓 Data processed: Email address
📅 Storage period: until unsubscription from the newsletter
⚖️ Legal basis: Art. 6(1)(a) GDPR (consent)

If you sign up for our newsletter, we process the data required for this purpose (your email address) solely for the purpose of sending the newsletter. The newsletter function is managed using software operated on our own web server; your data is not passed on to external newsletter providers outside our company.

Data processing is based on your consent (Art. 6(1)(a) GDPR). You may withdraw this consent at any time by using the unsubscribe link included in every newsletter email, or by contacting us using the contact details provided in our Imprint.

Product Display

To display our products on this website, we use the software HikaShop. This is used exclusively to display product information; no ordering or payment process takes place via this website, and no personal data is processed through this function.

Explanation of Terms Used

Below you will find an alphabetical list of important terms used that may not yet have been sufficiently explained elsewhere in this privacy policy.

Controller
The natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data. In our case, we are the controller for the processing of your personal data.

Processor
A natural or legal person, public authority, agency or other body which processes personal data on behalf of the controller, e.g. hosting providers or newsletter services.

Personal Data
Any information relating to an identified or identifiable natural person, such as name, email address, or IP address.

Processing
Any operation performed on personal data, such as collection, storage, use, or deletion.

Closing Remarks

It is important to us to inform you, to the best of our knowledge, about the processing of personal data. Should you have any further questions, please do not hesitate to contact us using the contact details provided in the "Contact Details of the Controller" section or in our Imprint.

Newsletter Sign up

Do not miss any information about promotions and offers!

Please enable the javascript to submit this form

A Google Maps map is embedded here.
Loading it transfers data to Google.

Open location on OpenStreetMap

Contact Us

Gedomo GmbH

Erlacker 483, 8225 Pöllau Austria
CONNECT WITH US

Send us your request

This website uses cookies

This website only uses technically necessary cookies for its basic functions. External services are not loaded without being asked: the Google Maps map only appears once you explicitly request it. We use Cloudflare Turnstile to protect the newsletter form against automated input. Further details can be found in our privacy policy.