Privacy Policy
1. Preamble
This privacy policy applies to all users and contracting parties of the website artisaninstruments.eu as well as to visitors of the site.
We inform you about the processing of your personal data in accordance with Articles 12–14 of the General Data Protection Regulation (GDPR) in the context of our online shop.
A data protection officer has not been appointed, as this is not legally required.
2. Data Controller
The controller responsible for the processing of personal data is the operator of this website. Please refer to the legal for contact details.
3. Collection and Processing of Personal Data
We process personal data solely on the basis of legal provisions (in particular Art. 6 GDPR) and in the context of using our online shop.
We may process the following personal data:
- Name
- Address
- Contact details (email, phone number)
- Payment information (e.g., IBAN)
- Order information
- Technical data such as IP address or browser ID
This data is processed either for the fulfilment of a contract, for pre-contractual measures, or for the technical provision of our services.
4. Purpose of Data Processing
Your data is processed solely for the following purposes:
- Order fulfilment and shipping
- Customer communication
- Compliance with legal obligations (e.g., tax regulations)
- Website performance and security optimization
5. Your Rights
You have the right to:
- Access your stored personal data
- Correct inaccurate data
- Request deletion ("right to be forgotten")
- Restrict processing
- Data portability
- Object to the processing of your data
To exercise your rights, please contact us using the information provided in the legal.
You also have the right to lodge a complaint with the competent data protection authority.
6. Data Security
We take appropriate technical and organizational measures to protect your personal data from unauthorized access, loss, or misuse.
All data transmissions on this website are secured using SSL/TLS encryption.
Please note that 100% security in internet-based communications cannot be guaranteed.
7. Hosting
This website is hosted by an external service provider. This may involve the processing of personal data such as IP addresses, access data, and other technical data. Processing is based on Art. 6 para. 1 lit. b and f GDPR.
8. Data Transfers
Your data is only shared with third parties as necessary for order fulfilment (e.g., shipping providers, payment processors) or where legally required.
If data is processed outside the EU, we ensure that an adequate level of data protection is maintained (e.g., via standard contractual clauses).
9. Data Retention
We retain your data for the duration of the business relationship and beyond, for at least 7 and up to 30 years, as required by commercial and tax law, or as necessary to assert or defend legal claims.
After that period, your data will be deleted or anonymized.
10. Cookies
Our website uses cookies to improve usability and analyze website usage.
Types of cookies:
- Session cookies: temporary and deleted after you leave the website
- Persistent cookies: remain stored to improve user experience
You can configure your browser to notify you about cookie usage, accept them only in specific cases, or block them entirely. Please note that disabling cookies may limit the functionality of this website.
11. Server Log Files
To optimize system performance, usability, and security, technical data such as your IP address, browser type, language, operating system, referrer URL, and access timestamp may be collected and stored in server log files.
- IP-Adress
- Browsertype and -version
- Operating system
- Referrer URL
- Date/Time of the request
These logs are not linked to personally identifiable information and are only reviewed in case of suspected unlawful use.
12. Contact Form
If you contact us via the contact form, we store your message and contact details to process your inquiry. Your data will not be shared without your consent.
Legal basis: Art. 6 para. 1 lit. b GDPR.
13. Communication via Email or Phone
When you contact us by email or phone, your message and contact data will be stored for the purpose of processing your request. These will not be disclosed without your permission.
Legal basis: Art. 6 para. 1 lit. b and/or f GDPR.
14. Google Services (reCAPTCHA, Maps, Fonts)
We use services from Google Ireland Ltd.:
- Google reCAPTCHA (to prevent spam)
- Google Maps (for map display)
- Google Fonts (for font rendering)
These may involve the transfer of your IP address to servers in the USA. The use of these services is based on our legitimate interest pursuant to Art. 6 para. 1 lit. f GDPR.
For more information: https://policies.google.com/privacy
15. Cloudflare
We use Cloudflare to improve page load speed and security. Your IP address may be processed in this context. Processing is based on Art. 6 para. 1 lit. f GDPR.
Privacy Policy: https://www.cloudflare.com/de-de/privacypolicy/
16. Contact Information
Protecting your personal data is especially important to us. Please contact us using the details provided in our legal if you have any questions or requests concerning your personal data.