Privacy policy.
The Chair of Logistics and Services Management of WHU – Otto Beisheim School of Management, Erkrather Str. 224a, 40233 Düsseldorf ("WHU") is happy to welcome you on our website.
With this privacy policy, WHU fulfils its existing legal obligation to provide information in accordance with Art. 13 of the General Data Protection Regulation ("GDPR") with regard to the processing of personal data on our website. In the following, we therefore explain which of your personal data we process and in what way. Please contact us if you have any further questions. You will find our contact details below and at the end of this page.
General information about the processing of personal data
Responsible according to Art. 4 (7) of the EU General Data Protection Regulation ("GDPR") is WHU - Otto Beisheim School of Management, Burgplatz 2, 56179 Vallendar (see our imprint, e-mail: datenschutz(at)whu.edu).
You can contact our data protection officer with the data provided at the end of this Privacy Policy.
Personal data
Personal data is any information that relates to an identified or identifiable natural person. A natural person is considered to be identifiable if, directly or indirectly, in particular by association with an identifier such as a name, an identification number, location data, an online identifier or one or more special features, that expresses the physical, physiological, genetic, mental, economic, cultural or social identity of this natural person, can be identified. This includes, for example, information such as your name, address, telephone number, language, location, e-mail address, bank details and date of birth.
Processing of personal data
A processing of personal data applies to any operation performed with or without the aid of automated procedures or in any series of procedures related to personal data. In particular, data processing means any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
We process personal data in accordance with the specifications and conditions described below within the framework of automated processing based on a relevant legal authorisation. The scope of the processing of your personal data is limited by the purposes described in each case.
Automated decision-making in individual cases including profiling according to Art. 22 GDPR does not take place.
If we use a processor for the processing of your personal data, we conclude a data processing contract with them, which fulfills all the requirements of Art. 28 GDPR.
Purpose of processing personal data when visiting our website
In the case of merely informative use of the website, for example, if you do not register or otherwise provide us with information, we only collect the personal data that your browser transmits to our server. If you visit our website, we collect the following data that is technically necessary for us to show you our website and to ensure the stability and security (legal basis is Art. 6 para. 1 sentence 1 lt. f GDPR):
IP address
Date and time of the request
Time zone difference to Greenwich Mean Time (GMT)
Content of the requirement (concrete page)
Access Status / HTTP status code
Transmitted amount of data
Website that the request comes from
Browser
Operating system and its interface
Language and version of the browser software.
In addition to the purely informative use of our website, we offer various services which you can use if you are interested. For this purpose, you will generally have to provide additional personal data which we use to provide the respective service and to which the aforementioned data processing principles apply. We present these to you in this privacy policy.
Use of Cookies
In addition to the above-mentioned data, cookies are stored on your computer when you use our website, if you give us your consent.
Cookies are small text files that are stored on your hard drive in accordance with the browser you are using and through which certain information flows to the site that sets the cookie. Cookies cannot execute programs or transfer viruses to your computer. They serve to make the Internet offer altogether more user-friendly and effective.
On the one hand we use technically necessary cookies. These cookies are necessary for a good functionality of our website and cannot be switched off in our system. The legal basis is Art. 6 para. 1 sentence 1 lt. f GDPR ("legitimate interest"). However, you can of course configure your browser settings according to your wishes and also reject such technically necessary cookies. Please note that you will not be able to use our website in that case.
Otherwise, Art. 6 para. 1 sentence 1 lt. a GDPR is the legal basis for the use of cookies ("consent"). You can differentiate whether you give us consent for all cookies, only for certain types of cookies (e.g. functional cookies, performance cookies, advertising/tracking cookies) or no consent at all.
This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages. However, we would like to point out that if you do not give your consent or if you revoke it, you may not be able to use all the functions of this website to their full extent.
We will also provide you with further information on the use of cookies in the following sections if cookies are used.
You will also find detailed information in our cookie policy, which you can access via the following link.
Use of social media plug-ins
We currently use the following social media plug-ins: Facebook, Xing, Youtube, LinkedIn, Twitter, Instagram, Google+, Flickr, skype (for business), iTunes U
We use the two-click solution. In other words, when you visit our site, no personal data is initially passed on to the providers of the plug-ins. The provider of the plug-in can be identified by the marking on the box above its initial letter or by its logo. We provide you with the opportunity to communicate directly with the provider of the plug-in via the button. Only if you click on the marked field and activate it, the provider of the plug-in receives the information that you have accessed the corresponding website of our online service. In addition, the data mentioned above under "Purpose of processing personal data when visiting our website" is transmitted. In the case of Facebook and Xing, according to the respective providers in Germany, the IP address is anonymized immediately after collection. By activating the plug-in, personal data will be transmitted by you to the respective plug-in provider and stored there (with US providers in the USA).
We have no influence on the collected data and data processing operations, nor are we aware of the full extent of data collection, the purpose of the processing, the retention periods. We also have no information on how to delete the data collected by the plug-in provider.
The plug-in provider stores the data collected about you as usage profiles and uses them for the purposes of advertising, market research and / or customized website design. Such an evaluation is carried out in particular (also for non-logged-in users) for the presentation of customized advertising and to inform other users of the social network about your activities on our website. You have the right to object to the formation of these user profiles, whereby you must contact the respective plug-in provider to exercise it. Through the plug-ins we offer you the opportunity to interact with the social networks and other users, so that we can improve our offer and make it more interesting for you as a user.
The data transfer takes place regardless of whether you have an account with the plug-in provider and whether you are logged in. If you are logged in, the data collected from us will be assigned directly to your existing account with the plug-in provider. If you press the activated button and, for example, link the page, the plug-in provider also stores this information in your user account and shares it with your contacts publicly. We recommend logging out regularly after using a social network, but especially before activating the button, as this will prevent your data from being associated with your profile with the plug-in provider.
The plug-in provider may also process your personal data in the USA. Before giving your consent in accordance with Art. 49 para. 1 a GDPR, we would like to point out in particular that in the USA, without an adequacy finding and without suitable guarantees, there may not be an adequate level of data protection, as data protection laws do not comply with the provisions of the GDPR, and in particular the rights of data subjects may not be enforceable.
The above will only take place if you give us your consent. The legal basis is Art. 6 para. 1 sentence 1 lt a GDPR ("Consent"). This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages.
For more information on the purpose and scope of the data collection and its processing by the plug-in provider, please refer to the privacy declarations of these providers provided below. There you will also find further information about your rights and settings options for the protection of your privacy.
Addresses of the respective plug-in providers and URL with their privacy notices:
Facebook (Meta Platforms Ireland Limited), 1601 S California Ave, Palo Alto, California 94304, USA, www.facebook.com/policy.php further information on data collection: www.facebook.com/help/186325668085084 www.facebook.com/about/privacy/your-info-on-other#applications sowie www.facebook.com/about/privacy/your-info#everyoneinfo
Xing AG, Gänsemarkt 43, 20354 Hamburg, Germany, www.xing.com/privacy
YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA, represented by: Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, policies.google.com/privacy?hl=de&gl=de
LinkedIn Corporation, 2029 Stierlin Court, Mountain View, California 94043, USA; www.linkedin.com/legal/privacy-policy
Instagram LLC, 1601 Willow Rd, Menlo Park CA 94025, USA, help.instagram.com/155833707900388/?helpref=hc_fnav&bc[0]=Instagram-Hilfe&bc[1]=Datenschutz%20und%20Sicherheitsbereich
Twitter, Inc., 1355 Market St, Suite 900, San Francisco, California 94103, USA, twitter.com/privacy
Google Inc., 1600 Amphitheater Parkway, Mountainview, California 94043, USA, www.google.com/policies/privacy/partners/?hl=de
Flickr, Oath (EMEA) Limited, 5-7 Point Square, North Wall Quay, Dublin 1, policies.yahoo.com/privacy/flickr/
Skype (for business), One Microsoft Way, Redmond, WA 98052-6399, USA, privacy.microsoft.com/de-de/privacystatement
iTunes U, Apple Inc., Infinite Loop, Cupertino, CA 95014, USA, www.apple.com/legal/privacy/de-ww/
Integration of YouTube Videos
We have included YouTube videos in our online offering, which are saved on www.YouTube.com and are directly playable on our website. These are all incorporated in the "extended privacy mode", which means that none of your user data is transferred to YouTube if you are not playing the videos. Only when you play the videos, the above data will be transmitted. We don't have any influence on this data transfer.
By visiting the website, YouTube receives the information that you have accessed the corresponding sub-page of our website. Furthermore, the data mentioned above in this privacy policy under "Purpose of processing personal data when visiting our website" will be transmitted. This happens regardless of whether YouTube provides a user account that you are logged in to, or if there is no user account. When you're logged in to Google, your data will be assigned directly to your account. If you do not wish to be associated with your profile on YouTube, you must log out before activating the button. YouTube saves your data as usage profiles and uses them for advertising, market research and / or custom design of its website. Such an evaluation is done in particular (even for users who are not logged in) to provide appropriate advertising and to inform other users of the social network about their activities on our website. You have a right to object to the creation of these usage profiles, but you need to get in touch with YouTube in order to do so.
YouTube also processes your personal data in the USA. Before you give your consent in accordance with Art. 49 para. 1 a GDPR, we would like to point out in particular that in the USA there may not be an adequate level of data protection without a decision on appropriateness and without suitable guarantees, as data protection laws do not comply with the provisions of the GDPR and in particular the rights of data subjects may not be enforceable.
The above will only take place if you give us your consent. The legal basis is Art. 6 para. 1 sentence 1 lt. a GDPR ("Consent"). This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages.
For more information on the purpose and scope of data collection and its processing by YouTube, please see the Privacy Policy. There you will also find further information on your rights and setting options to protect your privacy: www.google.de/intl/de/policies/privacy.
Integration of Google Maps
On this website, we use Google Maps. This allows us to show you interactive maps directly on the website and enable you to conveniently use the map feature.
By visiting the website, Google receives the information that you have accessed the corresponding subpage of our website. Furthermore, the data mentioned above in this declaration under "Purpose of processing personal data when visiting our website" will be transmitted. This is done regardless of whether Google provides a user account that you are logged in to, or if there is no user account. When you're logged in to Google, your data will be assigned directly to your account. If you do not wish to be associated with your profile on Google, you must log out before activating the button. Google stores your data as user profiles and uses them for the purposes of advertising, market research, and / or tailor-made website design. Such an evaluation is done (even for users who are not logged in) to provide appropriate advertising and to inform other users of the social network about their activities on our website. You have the right to object to the formation of these user profiles, whereby you must contact respective provider to exercise this right.
Google also processes your personal data in the USA. Before giving your consent in accordance with Art. 49 para. 1 a GDPR, we would like to point out in particular that in the USA there may not be an adequate level of data protection without a decision on appropriateness and without suitable guarantees, as data protection laws do not comply with the provisions of the GDPR and in particular the rights of data subjects may not be enforceable.
The above will only take place if you give us your consent. The legal basis is Art. 6 para. 1 sentence 1 lt. a GDPR ("Consent"). This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages.
Further information on the purpose and scope of data collection and processing can be found in the provider's data protection declarations. There you will also find further information on your rights in this regard and setting options to protect your privacy: www.google.de/intl/de/policies/privacy.
LinkedIn Insight tag
This website uses the LinkedIn Insight tag of LinkedIn Ireland Unlimited Company, Wilton Plaza, Wilton Pl, Dublin, 2, Ireland ("LinkedIn"), subject to your consent. The LinkedIn Insight tag is a small JavaScript code snippet that we have added to our website to enable detailed campaign reporting and to gain valuable information about visitors to our website. Specifically, we use the LinkedIn Inside tag to track conversions, retarget our site visitors, and gather additional information about LinkedIn members who view our ads.
In particular, the LinkedIn Insight tag allows us to collect information about visits to our site, including URL, referrer URL, IP address, device and browser characteristics (user agent), and timestamps. IP addresses are truncated or (if used to reach members across devices) hashed. The direct identifiers of members are removed within seven days to pseudonymize the data. This remaining pseudonymised data is then deleted within 180 days. LinkedIn does not share any personally identifiable information with us, but only provides reports (in which you are not identified) about website audience and ad performance. LinkedIn also provides retargeting for site visitors, which allows us to use this data to display targeted advertising outside of our site without identifying the member. We also use data that does not identify you to improve the relevance of ads and reach members across devices. LinkedIn members can also control the use of their personal information for advertising purposes in their account settings.
LinkedIn also processes your personal data in the USA. Before giving your consent in accordance with Art. 49 para. 1 a GDPR, we would like to point out in particular that in the USA there may not be an adequate level of data protection without a decision on appropriateness and without suitable guarantees, as data protection laws do not comply with the provisions of the GDPR and in particular the rights of data subjects may not be enforceable.
The above will only take place if you give us your consent. The legal basis is Art. 6 para. 1 sentence 1 lt. a GDPR ("Consent"). This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages.
For more information about LinkedIn's processing of your personal data and your rights and options for protecting your privacy, please refer to LinkedIn's privacy policy at www.linkedin.com/legal/privacy-policy.
Facebook pixel
This website uses the Facebook pixel of Meta Platforms Ireland Limited, 1601 South California Avenue, Palo Alto, CA 94304, USA ("Facebook"), if you have given your consent.
As a result, users of the website can be shown interest-related advertisements ("Facebook Ads") when visiting the social network Facebook or other websites that also use the procedure. In this way, we pursue the interest in displaying advertisements that are of interest to you in order to make our website more interesting for you.
Via the Facebook pixel we process in particular information about the activities of website visitors outside of Facebook. This includes information about the website visitor's device, the websites visited, purchases made, advertisements that the website user sees and information about how the visitor uses our website. This happens regardless of whether you have a Facebook account or are logged in to Facebook as a visitor to our website. If you are registered with a Facebook service, Facebook can assign the visit to your account. Even if you are not registered with Facebook or are not logged in, there is a possibility that the provider will find out and store your IP address and other identifying features.
The Facebook pixel records these five types of data:
Http headers - everything that is present in HTTP headers. HTTP headers are a standard web protocol that is sent between any browser request and any server on the Internet. HTTP headers contain IP addresses, web browser information, page location, document, referrer, and information about the website visitor.
Pixel-specific data - this includes the pixel ID and the Facebook cookie.
Button-click data - this includes any buttons clicked by visitors to the site, the labels of those buttons, and any pages viewed as a result of clicking on the button.
Optional values - developers and marketers can optionally send additional information about the visit through personalized data events. Examples of personalized data events are the conversion value, page type, etc.
Form field names - these include the names of website fields such as "email", "address" and "quantity" that are filled in when a product or service is purchased. The pixel generally does not capture field values.
In the context of usage-based online advertising, we use the "Custom Audiences" service of Meta Platforms Ireland Limited. (1601 S. California Avenue, Palo Alto, CA 94304, USA). For this purpose, we define target groups of users based on certain characteristics in the Facebook Ads Manager, who are subsequently shown ads within the Facebook network. Users are selected by Facebook based on the profile information they provide, and other data provided through their use of Facebook. If a user clicks on an advertisement and subsequently arrives on our website, Facebook receives the information that the user has clicked on the advertising banner via the Facebook pixel embedded on our website. Basically, a non-reversible and non-personal checksum (hash value) is generated from your usage data, which is transmitted to Facebook for analysis and marketing purposes. A Facebook cookie is set in the process. This collected information about your activities on our website (e.g., surfing behavior, subpages visited, etc.). For the geographic targeting of advertising, your IP address is also stored and used. Facebook Custom Audiences via the customer list is not used by us, as is the "advanced matching" function.
Facebook also processes your personal data in the USA. Before giving your consent in accordance with Art. 49 para. 1 a GDPR, we would like to point out in particular that in the USA there may not be an adequate level of data protection without a decision on appropriateness and without suitable guarantees, as data protection laws do not comply with the provisions of the GDPR and in particular the rights of data subjects may not be enforceable.
The above will only take place if you give us your consent. The legal basis is Art. 6 para. 1 sentence 1 lt. a GDPR ("Consent"). This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages.
You can also deactivate the Facebook Marketing function as a logged in Facebook user at https://www.facebook.com/settings/?tab=ads#. You can also disable the Custom Audiences remarketing feature in the Ad Settings section at https://accountscenter.facebook.com/ad_preferences. To do this, you must be logged into Facebook.
If you do not have a Facebook account, you can disable usage-based advertising from Facebook on the European Interactive Digital Advertising Alliance website: http://www.youronlinechoices.com/de/praferenzmanagement/.
Further information on the processing of personal data by Facebook as well as on your rights and options for protecting your privacy can be found in the Facebook privacy policy at www.facebook.com/about/privacy/.
TikTok Pixel
Within our online offer, the so-called "TikTok pixel" of the social network TikTok, which is operated by TikTok Technology Limited, 10 Earlsfort Terrace, Dublin, D02 T380, Ireland ("TikTok"), is used. This is a code which has been implemented on our website. If you give your explicit consent, when you visit our website a connection is made to TikTok in order to track your behaviour on our website.
With the help of the TikTok pixel, it is possible for TikTok, on the one hand, to determine you as a visitor to our online offer as a target group for the display of advertisements (so-called "TikTok ads"). Accordingly, we use the TikTok pixel to display the TikTok ads placed by us only to those TikTok users who have also shown an interest in our online offer or who have certain characteristics (e.g. interests in certain topics or products determined on the basis of the websites visited) that we transmit to TikTok (so-called "Custom Audiences"). With the help of the TikTok pixel, we also want to ensure that our TikTok ads correspond to the potential interest of users and are not harassing. The TikTok pixel also allows us to track the effectiveness of the TikTok ads for statistical and market research purposes by seeing whether users have been redirected to our website after clicking on a TikTok ad (so-called "conversion").
The processing of the data by TikTok takes place within the framework of TikTok's data use policy. Accordingly, general guidance on the display of TikTok ads is to be found in TikTok's Data Use Policy. For specific information and details about the TikTok Pixel and how it works, please see the TikTok help section.
The use of the TikTok pixel as well as the storage of "conversion cookies" is based on Art. 6 (1) lit. a DSGVO. You can revoke your consent to the use of marketing cookies by TikTok at any time with effect for the future here.
You can object to the collection by the TikTok pixel and use of your data to display TikTok ads. You can find an opt-out option in our cookie declaration.
Contact form
When you contact us by e-mail or through a contact form, we will collect the personal information you provide (e-mail address, first name, last name and, if applicable, your telephone number) to answer your questions. We will delete data for these purposes after storage is no longer required, or limit the processing if there are statutory retention requirements.
The legal basis is Art. 6 para. 1 sentence 1 lt. f GDPR.
Newsletter
With your voluntary consent, you can subscribe to our newsletter, which informs you about our current products and services. The advertised products and services are named in the declaration of consent.
To register for our newsletter, we use the double-opt-in procedure. This means that after you have registered, we will contact you on the e-mail address specified asking you to confirm that you wish to receive the newsletter. If you do not confirm your registration within 14 days, your information will be blocked and automatically deleted after one month. In addition, we store your IP addresses and times of registration and confirmation. The purpose of this is to prove your registration and, if necessary, to inform you about possible misuse of your personal data.
The only requirement for sending the newsletter is your e-mail address. The specification of additional, separately marked, data is voluntary and will be used to address you personally. After your confirmation, we will save your e-mail address for the purpose of sending you the newsletter. Legal basis is Art. 6 para. 1 sentence 1 lt. GDPR in combination with Art. 7 GDPR ("Consent"). You can revoke your voluntary consent to the sending of the newsletter at any time and unsubscribe. You can declare the revocation by clicking on the link provided in each newsletter e-mail, by e-mail to datenschutz(at)whu.edu, or by sending a message to the contact details stated in the imprint. Failure to provide or revocation of consent does not have any disadvantages for you. In this case, however, we cannot send you the newsletter.
Among others, to send our newsletter, we use the e-mail tool CleverReach, which is operated by CleverReach GmbH & Co. KG, Rastede, Germany. Your data is also processed by CleverReach on basis of a data processing contract according to Art. 28 GDPR. CleverReach offers evaluation options on how the newsletters are opened and used. Your data will not be passed on to other third parties for the receipt of the newsletter and CleverReach does not acquire any right to transfer your data.
Furthermore, the newsletter software Newsletter2Go is used. Your data will be transmitted to Newsletter2Go GmbH. Newsletter2Go is prohibited from selling and using your data for purposes other than sending newsletters. Newsletter2Go is a German, certified provider, which was selected according to the requirements of the General Data Protection Regulation and the Federal Data Protection Act. Further information can be found here: www.newsletter2go.de/informationen-newsletter-empfaenger/. Your data will also be processed by Newsletter2Go on basis of a data processing contract according to Art. 28 GDPR.
Pardot Marketing Automation System
We use the Pardot Marketing Automation System ("Pardot MAS") from Pardot LLC, 950 E. Paces Ferry Rd. Suite 3300 Atlanta, GA 30326, USA ("Pardot") on our websites. Pardot is a software that collects and evaluates the use of a website by website visitors. Insofar as Pardot LLC processes personal data, the processing takes place exclusively on our behalf and in accordance with our instructions. A data processing contract according to Art. 28 GDPR has been established. Through an individual agreement with Pardot LLC, we have also ensured that Pardot LLC complies with the requirements of the EU basic data protection regulation.
When visiting our website, the Pardot MAS captures your click path and creates an individual usage profile using a pseudonym. For this purpose, cookies are used to enable the recognition of your browser.
Pardot also processes your personal data in the USA. Before giving your consent in accordance with Art. 49 para. 1 a GDPR, we would like to point out in particular that in the USA there may not be an adequate level of data protection without a decision on appropriateness and without suitable guarantees, as data protection laws do not comply with the provisions of the GDPR and in particular the rights of data subjects may not be enforceable.
The above will only take place if you give us your consent. The legal basis is Art. 6 para. 1 sentence 1 lt. a GDPR ("Consent"). This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages.
Use of Google Analytics
This website uses Google Analytics, a web analytics service provided by Google Inc. ("Google"). Google Analytics uses "cookies", text files that are stored on your computer and that allow an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted and stored at a Google server in the USA. However, if IP address anonymization is activated on this website, your IP address will be shortened by Google beforehand within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. It is only in exceptional cases that the full IP address will be sent to a Google server in the US and shortened there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity, and to provide other services related to website usage and internet usage to the website operator.
The IP address provided by Google Analytics as part of Google Analytics will not be merged with other Google data.
This website uses Google Analytics with the extension "_anonymizeIp()". This allows IP addresses to be further processed in a shortened form, thus excluding the possibility of personal references. If the data collected about you contains a personal reference, this is immediately excluded and the personal data is immediately deleted.
Google also processes your personal data in the USA. Before you give your consent in accordance with Art. 49 para. 1 a GDPR, we would like to point out in particular that in the USA there may not be an adequate level of data protection without a decision on appropriateness and without suitable guarantees, as data protection laws do not comply with the provisions of the GDPR and in particular the rights of data subjects may not be enforceable.
The above will only take place if you give us your consent. The legal basis is Art. 6 para. 1 sentence 1 lt. a GDPR ("Consent"). This consent is voluntary. You can refuse it without giving reasons and without having to fear any disadvantages. You can also revoke this consent at any time with future effect here, without having to fear any disadvantages.
We use Google Analytics to analyse and regularly improve the use of our website. We can use the statistics obtained to improve our offer and make it more interesting for you as a user.
Third Party Information: Google Dublin, Google Ireland Ltd, Gordon House, Barrow Street, Dublin 4, Ireland, Fax: +353 (1) 436 1001, Terms of Use: www.google.com/analytics/terms/de.html, Privacy Policy: www.google.com/intl/de/analytics/learn/privacy.html, and the Privacy Policy: https://policies.google.com/privacy.
Duration of data processing
The maximum duration of storage depends on the purpose of the data processing. The duration of storage depends in particular on the period for which the processing is necessary to fulfil the purpose or to comply with legal obligations. The statutory storage obligations, in particular in accordance with § 257 HGB and § 147 AO (6 or 10 years), remain unaffected.
Recipient of personal data
We transmit your data to the specialist departments within WHU, as far as this is necessary and legally permissible.
If we use a commissioned processor to process your personal data, we conclude a commissioned processing contract with this processor, which fulfils all the requirements of Art. 28 GDPR.
Your personal data will not be transferred beyond this, unless this is expressly stated in this document.
Place of data processing
The processing of your personal data by us takes place in Germany or in member states of the European Union, unless a transfer of your personal data to states outside the member states of the European Union (so-called third countries) or to other international organisations has been described in the cases listed above, in which case the necessary requirements under Art. 44 ff. GDPR are observed.
Safety / Technical and organizational measures
We take all necessary technical and organizational measures in accordance with the provisions of Articles 24, 25 and 32 GDPR in order to protect your personal data from misuse and loss, destruction, access, modification or disclosure by unauthorized persons.
In this way, we comply with the legal requirements for pseudonymizing and encrypting personal data, the confidentiality, integrity, availability and resilience of systems and services related to processing, the availability of personal data and the ability to rapidly restore them in the event of a physical or technical incident as well as the establishment of procedures for periodic tests, assessment and evaluation of the effectiveness of technical and organizational measures to ensure the safety of processing.
Furthermore, we also follow the requirements of Art. 25 GDPR with regard to the principles of "privacy by design" (data protection by means of technical design) and "privacy by default" (data protection by means of privacy-friendly default settings).
Your rights
You have a right to free information (right of access) about your personal data as well as, subject to the relevant conditions, a right to rectification, blocking and eraser of your data, to the restriction of processing, to data portability as well as a right of objection.
Insofar as we base the processing of your personal data on the weighing of interests, you can object to the processing. This is the case if the processing is in particular not necessary for the fulfilment of a contract with you. If you do so, please explain why we should not process your personal data as we have done. In the event of your justified objection, we will examine the facts of the case and will either stop or adapt the data processing or show you our compelling reasons worthy of protection on the basis of which we will continue the processing.
You also have the opportunity to complain to a competent supervisory authority (e.g. Landesbeauftragter für den Datenschutz und Informationsfreiheit Rheinland-Pfalz, Prof. Dr. Kugelmann, Hintere Bleiche 34, 55116 Mainz, Germany).
Please contact us or our external data protection officer if you have any questions regarding the processing of your personal data, as well as questions relating to the above-mentioned rights and their assertion, or if you have any suggestions:
Mr. Ralf Wickert
c/o Dornbach GmbH Rechtsanwaltsgesellschaft
Anton-Jordan-Straße 1
56070 Koblenz
Email: datenschutz(at)whu.edu
Phone: 0261 9431-434
As of: January 2024