Privacy Policy
Datenschutz
General Information / Introduction
We greatly appreciate your interest in our website. The protection of your personal data is of utmost importance to us. Below, you will gain insights into how we handle the information collected during your use of our website, strictly adhering to legal data protection regulations.
Based on Article 13 of the Swiss Federal Constitution and the data protection provisions of the Federal Government (Data Protection Act, DSG), every individual is entitled to the protection of their privacy and safeguarding against the misuse of their personal data. We take the protection of your personal data very seriously, treating it confidentially and in accordance with legal data protection regulations and this privacy policy.
In collaboration with our hosting providers, we make every effort to secure databases against unauthorized access, loss, misuse, or tampering..
Please note that data transmission over the Internet (e.g., in communication via email) may have security vulnerabilities. Complete protection of data from access by third parties is not possible.
By using this website, you agree to the collection, processing, and use of data as described below. This website can generally be visited without registration. Data such as accessed pages or names of accessed files, date, and time are stored on the server for statistical purposes without directly relating these data to your person. To the extent that personal data (e.g., name, address, or email addresses) is collected on our pages, this is done on a voluntary basis whenever possible. This data will not be disclosed to third parties without your explicit consent.
Data Controller in accordance with data protection regulations
Company:
Green Secrets GmbH
Spisergasse 43
9000 St. Gallen
Switzerland
E-Mail: datenschutz@kultkosmetik.ch
Company Number: CHE-402.573.616
VAT Number:: CHE-402.573.616MWST
Managing Director and Shareholder
Sandra Gimmel
Data Processing by Visiting Our Website
When you visit our website, it is technically necessary for data to be transmitted to our web server through your internet browser. The following data is logged during an active connection between your internet browser and our web server:
- Browser type and version
- Operating system used
- Referrer URL
- Hostname of the accessing compute
- Time of the server request
- Access status
This listed data is collected to ensure a smooth connection to the website and to enable comfortable use of our website for users. Additionally, the log file serves the evaluation of system security and stability, as well as administrative purposes. The legal basis for the temporary storage of this data or log files is Art. 6 para. 1 lit. f GDPR.
Using SSL/TLS Encryption
For security reasons and to protect the transmission of confidential content, such as inquiries you send to us as the site operator, this website uses SSL/TLS encryption. You can recognize an encrypted connection by the address line of the browser changing from "http://" to "https://" and the padlock symbol in your browser line.
When SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
Cookies
Our website uses cookies that are stored on your device by your browser and contain certain settings for the use of the website (e.g., for the current session). Cookies are used to make our offer more user-friendly, efficient, and secure. These are small text files that are stored on your computer and managed by your browser. Most of the cookies we use are session cookies, which are automatically deleted when you close your browser. Other cookies remain stored on your device until you delete them or the storage period expires. These cookies allow us to recognize your browser on your next visit.
Some cookies are used to simplify website processes by storing certain settings (e.g., previously selected options). If cookies processed personal data are implemented by us, this is done in accordance with Art. 6 para. 1 lit. b GDPR either for the performance of the contract or in accordance with Art. 6 para. 1 lit. f GDPR to safeguard our legitimate interests in the best possible functionality of the website and a user-friendly and effective design of the website visit.
You can configure your browser to be informed about the setting of cookies, allow cookies only in individual cases, reject the acceptance of cookies for specific cases, or generally exclude them, and activate the automatic deletion of cookies when closing the browser. The cookie settings can be managed under the following links for the respective browsers:
You can also individually manage the cookies of many companies and functions used for advertising. Use the appropriate tools available at this link or this link.
Most browsers also offer a "Do Not Track" function, with which you can specify that you do not want to be tracked by websites. When this function is activated, the respective browser informs advertising networks, websites, and applications that you do not want to be tracked for behavioral advertising and similar purposes. Information and instructions on how to edit this function can be obtained depending on your browser provider, under the following links:
In addition, you can default to preventing the loading of so-called scripts. The NoScript add-on allows the execution of JavaScripts, Java, and other plug-ins only on trusted domains of your choice. Information and instructions on how to edit this function can be obtained from your browser provider (e.g., for Mozilla Firefox at this link). Please note that disabling cookies may limit the functionality of this website.
Duration of Storage of Personal Data
The storage period of personal data is based on relevant legal retention periods, as set, for example, in commercial and tax law. After these periods expire, the corresponding data is routinely deleted. However, if data is necessary for the fulfillment of a contract or for contract initiation, or if we have a legitimate interest in further storage, the data will be deleted as soon as it is no longer needed for these purposes or you exercise your right of revocation or objection.
Data Transfer and Recipients
We do not transfer your personal data to third parties unless:
- We have explicitly indicated it in the description of the respective data processing.
- You have given us express consent pursuant to Art. 6 para. 1 sentence 1 lit. a GDPR.
- The transfer pursuant to Art. 6 para. 1 sentence 1 lit. f GDPR is necessary for the assertion, exercise, or defense of legal claims, and there is no reason to believe that you have an overriding legitimate interest in not disclosing your data.
- In the event of a legal obligation to disclose under Art. 6 para. 1 sentence 1 lit. c GDPR.
- To the extent necessary under Art. 6 para. 1 sentence 1 lit. b GDPR for the execution of contractual relationships with you.
Right to Object
If we process your personal data based on our legitimate interests according to Art. 6 para. 1 sentence 1 lit. f GDPR, you have the right, according to Art. 21 GDPR, to object to the processing of your personal data if this is justified by your specific situation. If the objection is against the processing of personal data for the purpose of direct marketing, you have a general right to object without specifying a particular situation. If you wish to exercise your right of revocation or objection, you can simply send us an email to datenschutz@kultkosmetik.ch.
External Links
On our website, social networks (such as Facebook, Twitter, Xing, etc.) are only integrated as links to the respective services. When you click on the embedded text or image link, you will be redirected to the page of the respective provider. Only after this redirection are user information transferred to the respective provider. For information on the handling of your personal data when using these websites, we refer to the respective privacy policies of the providers you use.
Third-Party Services
This website may use Google Maps for map embedding, Google Invisible reCAPTCHA for protection against bots and spam, and YouTube for video embedding.
These services from the American Google LLC use cookies, leading to data being transferred to Google in the USA. We assume that, in this context, personal tracking does not take place solely through the use of our website.
Google has committed to ensuring adequate data protection in accordance with the EU-US Privacy Shield and the US-Swiss Privacy Shield.
For more information, please refer to Google's privacy policy.
Contact Form
If you send us inquiries via the contact form, your information from the inquiry form, including the contact details you provided, will be stored with us for the purpose of processing the inquiry and for follow-up questions. We do not pass on this data without your conse
Google Analytics 4
This website uses Google Analytics, a web analytics service provided by Google Ireland Limited. If the person responsible for data processing on this website is outside the European Economic Area or Switzerland, Google Analytics data processing is carried out by Google LLC. Google LLC and Google Ireland Limited are hereinafter referred to as "Google.".
The statistics obtained allow us to improve our offer and make it more interesting for you as a user. This website also uses Google Analytics for cross-device analysis of visitor flows, which is done via a user ID. If you have a Google user account, you can deactivate cross-device analysis of your usage in the settings there under "My Data," "Personal Data."
The legal basis for the use of Google Analytics is Art. 6 para. 1 sentence 1 lit. f GDPR. The IP address transmitted by your browser as part of Google Analytics will not be merged with other data from Google. We would like to point out that on this website Google Analytics has been extended by the code "_anonymizeIp();" to ensure an anonymous collection of IP addresses. This means that IP addresses are processed in a shortened form, and a direct reference to a specific person can be excluded. If the data collected about you is related to a person, this is immediately excluded, and the personal data is deleted immediately.
In exceptional cases, the full IP address may be sent to a Google server in the USA and shortened there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, compile reports on website activity, and provide other services related to website activity and internet usage to the website operator. For the exceptional cases in which personal data is transferred to the USA, Google has submitted to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.
Google Analytics uses cookies. You can prevent the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case, you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the cookie and related to your use of the website (including your IP address) and from processing this data by downloading and installing the browser plug-in available under the following link: Google Analytics Opt-out.
Furthermore, you can prevent the use of Google Analytics by clicking on this link: Google Analytics Opt-out. This will set an opt-out cookie on your device that prevents the processing of personal data by Google Analytics. Please note that if you delete all cookies on your device, these opt-out cookies will also be deleted, meaning you must set the opt-out cookies again if you continue to want to prevent this form of data collection. The opt-out cookies are set per browser and device/computer and must therefore be activated separately for each browser, computer, or other device.
Google Tag Manager
Google Tag Manager is a solution that allows us to manage so-called website tags via an interface and thus integrate services such as Google Analytics and other Google marketing services into our online offering. The Tag Manager itself, which implements the tags, does not process any personal user data. Regarding the processing of personal user data, we refer to the following information on Google services. Usage policies: https://www.google.com/intl/de/tagmanager/use-policy.html.
Google Ads
This website uses Google Conversion Tracking. If you arrive at our website via an ad placed by Google, Google Ads will set a cookie on your computer. The conversion tracking cookie is set when a user clicks on an ad placed by Google. These cookies lose their validity after 30 days and are not used for personal identification. If the user visits certain pages of our website and the cookie has not expired, we and Google can recognize that the user clicked on the ad and was redirected to this page. Each Google Ads customer receives a different cookie. Therefore, cookies cannot be tracked across the websites of Ads customers. The information obtained using the conversion cookie is used to create conversion statistics for Ads customers who have opted for conversion tracking. Customers learn the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not receive any information that can be used for personal identification of users.
If you do not want to participate in tracking, you can refuse the setting of the necessary cookie - for example, by a browser setting that generally deactivates the automatic setting of cookies or by setting your browser to block cookies from the domain "googleleadservices.com."
Please note that you must not delete the opt-out cookies as long as you do not want measurement data to be recorded. If you have deleted all your cookies in the browser, you must set the respective opt-out cookie again.
Google Remarketing
This website uses the remarketing function of Google Inc. This function is used to present website visitors with interest-based advertising within the Google advertising network. A so-called "cookie" is stored in the visitor's browser, allowing the visitor to be recognized when visiting websites that belong to the Google advertising network. On these websites, the visitor may be shown ads related to content the visitor has previously viewed on websites using Google's remarketing function.
According to Google, no personal data is collected during this process. However, if you do not want to use Google's remarketing function, you can generally deactivate it by adjusting the corresponding settings at http://www.google.com/settings/ads. Alternatively, you can disable the use of cookies for interest-based advertising through the Network Advertising Initiative by following the instructions at http://www.networkadvertising.org/managing/opt_out.asp.
Google Maps
his website uses the services of Google Maps. This allows us to display interactive maps directly on the website and enables you to conveniently use the map function. By visiting the website, Google receives information that you have accessed the corresponding subpage of our website. This happens regardless of whether Google provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be directly assigned to your account. If you do not want the assignment to your profile on Google, you must log out before activating the button. Google saves your data as user profiles and uses them for advertising, market research, and/or the needs-based design of its website. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles; to exercise this right, you must contact Google. For more information on the purpose and scope of data collection and processing by Google, as well as further information on your rights and privacy settings, please visit: www.google.de/intl/de/policies/privacy.
YouTube
This website incorporates features of the "YouTube" service. "YouTube" is owned by Google Ireland Limited, a company established and operated under Irish law with its registered office at Gordon House, Barrow Street, Dublin 4, Ireland, operating the services in the European Economic Area and Switzerland.
Your legal agreement with "YouTube" consists of the terms found at the following link: https://www.youtube.com/static?gl=de&template=terms&hl=de. These terms constitute a legally binding agreement between you and "YouTube" regarding your use of the services. In Google's privacy policy, it is explained how "YouTube" treats and protects your personal data when you use the service.
This website uses features of Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA. When you access our pages with Facebook plugins, a connection is established between your browser and the Facebook servers, and data is already being transmitted to Facebook. If you have a Facebook account, this data can be linked to it. If you do not want this data to be linked to your Facebook account, please log out of Facebook before visiting our page. Interactions, especially the use of a comment function or the clicking of a "Like" or "Share" button, are also transmitted to Facebook. For more information, please visit https://de-de.facebook.com/about/privacy.
Our website incorporates features of the Instagram service. These features are offered by Instagram Inc., 1601 Willow Road, Menlo Park, CA, 94025, USA. If you are logged into your Instagram account, you can link the contents of our pages to your Instagram profile by clicking the Instagram button. This allows Instagram to associate your visit to our pages with your user account. We would like to point out that, as the provider of the pages, we have no knowledge of the content of the transmitted data or its use by Instagram. For more information, please see Instagram's privacy policy: http://instagram.com/about/legal/privacy/
Copyrights
Copyright and all other rights to content, images, photos, or other files on the website belong exclusively to the operator of this website or the specifically named rights holders. The reproduction of any files requires the prior written consent of the copyright holder.
Anyone who commits a copyright infringement without the consent of the respective copyright holder may be liable to prosecution and may be required to pay damages under certain circumstances.
External Payment Service Providers
This website uses external payment service providers through whose platforms users and we can conduct payment transactions. For example, through
- PostFinance
- Visa
- Mastercard
- American Express
- Paypal
- Bexio AG
- Payrexx AG
- Apple Pay
- Stripe
- Klarna
- Skrill
- Giropay etc.
As part of contract fulfillment, we use payment service providers based on the Swiss Data Protection Ordinance and, if necessary, Art. 6(1)(b) of the EU General Data Protection Regulation (EU-GDPR). Additionally, we use external payment service providers based on our legitimate interests according to the Swiss Data Protection Ordinance and, if necessary, Art. 6(1)(f) of the EU-GDPR to provide our users with effective and secure payment options.
The data processed by the payment service providers includes, among other things, inventory data such as name and address, banking information such as account numbers or credit card numbers, passwords, TANs, checksums, as well as contract, sum, and recipient-related information. This information is required to carry out transactions. However, the entered data is processed and stored only by the payment service providers. As the operator, we do not receive any information about (bank) accounts or credit cards but only receive information for confirmation (acceptance) or rejection of the payment. Under certain circumstances, the data may be transmitted by the payment service providers to credit reporting agencies. The purpose of this transmission is to verify identity and creditworthiness. In this regard, we refer to the terms and privacy policies of the payment service providers.
For payment transactions, the terms and privacy policy of the respective payment service providers apply and can be accessed within the respective website or transaction applications. We also refer to them for the purpose of further information and the assertion of withdrawal, information, and other data subject rights.
Newsletter Sending - Mailchimp
The newsletter is sent via the sending service provider 'MailChimp,' a newsletter sending platform of the US provider Rocket Science Group, LLC, 675 Ponce De Leon Ave NE #5000, Atlanta, GA 30308, USA. You can view the privacy policy of the sending service provider here. The Rocket Science Group LLC d/b/a MailChimp is certified under the Privacy Shield Agreement, providing a guarantee of compliance with European data protection standards (Privacy Shield). The use of the sending service provider is based on our legitimate interests according to Art. 6(1)(f) GDPR and a data processing agreement according to Art. 28(3) S. 1 GDPR.
The sending service provider may use the data of recipients in pseudonymous form, i.e., without assignment to a user, to optimize or improve its own services, e.g., for the technical optimization of sending and the presentation of newsletters or for statistical purposes. However, the sending service provider does not use the data of our newsletter recipients to address them themselves or pass them on to third parties.
Onlineshop / Webshop
We process the data of our customers in accordance with the data protection regulations of the Federal Data Protection Act (DSG) and the EU General Data Protection Regulation (EU-GDPR) in the context of order processes in our online shop, to enable them to select and order the selected products and services as well as their payment and delivery or processing.
The processed data includes master data (inventory data), communication data, contract data, and payment data. The data subjects affected by the processing include our customers, interested parties, and other business partners. The processing is carried out for the purpose of providing contractual services in the operation of an online shop, billing, delivery, and customer service. In this context, we use session cookies, e.g., to store the contents of the shopping cart, and permanent cookies, e.g., to store the login status.
The processing is based on Art. 6(1)(b) (performance of order processes) and c (legally required archiving) GDPR. The data marked as necessary is required for the establishment and fulfillment of the contract. We only pass on the data to third parties within the scope of delivery, payment, or within the scope of legal permissions and obligations. The data will only be processed in third countries if this is necessary for the fulfillment of the contract (e.g., at the customer's request for delivery or payment).
Users can optionally create a user account, in which they can view their orders, among other things. During the registration process, users are provided with the necessary mandatory information. User accounts are not public and cannot be indexed by search engines, such as Google. If users have terminated their user account, their data with respect to the user account will be deleted, unless its retention is necessary for commercial or tax reasons according to Art. 6(1)(c) GDPR. Information in the customer account remains until its deletion with subsequent archiving in the event of a legal obligation.
As part of registration and re-registration, as well as the use of our online services, we store the IP address and the time of the respective user action. Storage is based on our legitimate interests as well as those of users in protection against misuse and other unauthorized use. This data will not be passed on to third parties unless it is necessary to pursue our claims or there is a legal obligation to do so according to Art. 6(1)(c) GDPR.
Deletion takes place after the expiration of legal warranty and comparable obligations, the necessity of data retention is reviewed at irregular intervals. In the case of legal archiving obligations, deletion takes place after their expiry.
Disclaimer
All information on our website has been carefully checked. We strive to ensure that the information we provide is current, correct, and complete. However, errors cannot be completely ruled out, so we cannot guarantee the completeness, correctness, and timeliness of the information, including journalistic-editorial content. Liability claims for damages of a material or immaterial nature caused by the use or non-use of the information provided or by the use of incorrect and incomplete information are fundamentally excluded.
The publisher may change or delete texts at its own discretion and without prior notice and is not obligated to update the content of this website. Use of this website or access to it is at the visitor's own risk. The publisher, its clients, or partners are not responsible for damages, such as direct, indirect, accidental, or consequential damages, allegedly caused by visiting this website, and consequently assume no liability for such damages.
The publisher also assumes no responsibility or liability for the content and availability of third-party websites that can be accessed via external links from this website. The operators of the linked pages are solely responsible for their content. The publisher expressly distances itself from all third-party content that may be relevant under criminal or liability law or that violates good morals.
Reservation of Changes
We reserve the right to change this privacy policy at any time without prior notice. The current version published on our website is applicable. If the privacy policy is part of an agreement with you, we will inform you of the change by email or other suitable means in the event of an update.