This data protection declaration informs you about the nature, scope and purpose of the collection and use of personal data on our website www.huberband.com (hereinafter "website") by Huber & Co. AG Bandfabrik (hereinafter "we" or "us") and provides information about the rights to which you are entitled. These rights are governed by the applicable data protection laws.
1. responsible body and contact
The person responsible for data processing on this website and the contact person for data protection concerns is:
Huber & Co. AG Bandfabrik
+41 62 768 82 82
2. Collection and processing of personal data
Personal data is processed in the following categories:
- Client data from clients for whom we provide or have provided services.
- Personal data that we have received indirectly from our customers in the course of providing services.
- Digital visitor data when clicking on our website.
- Client data relating to personal profile / interests based on participation in an event of ours.
- Miscellaneous data when we communicate in any way (location, time, subject matter varies).
- Data in the case of other contractual relationships, e.g. as a supplier, service provider or consultant.
- Personal data in the case of job applications.
- Data if we are obliged to do so for legal reasons.
- Data which we use in connection with data protection or compliance with the law.
You can find more detailed information under point 4.
3. categories of personal data
The type of processing of personal data and the scope depends on the relationship between you and Huber & Co. AG Bandfabrik and the purpose or reason for which we process the data. In addition to your contact details, we also process other information about you or about persons who have a relationship with you. If this information is particularly sensitive personal data, this has further consequences for our processing and our internal procedures.
The following categories of personal data, depending on the purpose, are collected by us:
- Contact information (e.g. surname, first name, address, telephone number, email).
- Personal customer information (e.g. date of birth, nationality, marital status, profession, title, job title, AHV number)
- Data on their creditworthiness and company law data as well as financial information (bank accounts)
- Data in connection with specific orders / contracts
- Website data (e.g. IP address, device information (UDI), browser information, website usage (analysis and use of plugins, etc.)
- Application data (e.g. CV, references)
- Advertising and marketing information as well as personal interests (e.g. newsletter subscription, interest in specific topics, specialisations)
- Security and network data (e.g. visitor lists, access controls, network and mail scanners, telephone call lists)
To the extent permitted, we also take certain data from publicly accessible sources (e.g. debt collection registers, land registers, commercial registers, press, internet) or receive such data from our clients and their employees, from authorities, (arbitration) courts and other third parties. In addition to the data about you that you give us directly, the categories of personal data that we receive about you from third parties include, in particular, information from public registers, information that we learn in connection with official and legal proceedings, information in connection with your professional functions and activities, information about you in correspondence and meetings with third parties, creditworthiness information, information about you that people close to you (family, advisors, legal representatives, etc.) give us so that we can conclude or process contracts with you or involving you (e.g. references, your address for deliveries). Information on compliance with legal requirements such as anti-money laundering and export restrictions, information from banks, insurance companies, sales and other contractual partners of ours on the use or provision of services by you (e.g. payments made, purchases made), information from the media and Internet about you (where this is appropriate in a specific case, e.g. as part of a job application, etc.), your addresses and, where applicable, interests and other socio-demographic data (for marketing), Data related to the use of the website (e.g. IP address, MAC address of the smartphone or computer, details of your device and settings, cookies, date and time of visit, pages and content accessed, functions used, referring website, location details).
4 What do we process the data for (purpose)?
When you contact us (e.g. via telephone, contact form or e-mail), when we contact you or within the framework of our business relationship with our customers and other contractual relationships with business partners and other persons involved, we process the necessary personal data.
The personal data is in particular the following information:
- Contact information (e.g. surname, first name, address, telephone number, e-mail, other contact information).
- Personal information (e.g. date of birth, nationality, marital status, profession, title, job title, passport / ID number, AHV number, family circumstances, etc.).
- Data on your creditworthiness and on your entries in various registers or, if applicable, sanction lists, as well as data in specialised databases and from digitally publicly accessible sources
- Financial information (e.g. data on bank accounts, investments or shareholdings)
- Business data, depending on the order/contract
- Personal data requiring special protection
We process this personal data for the described purposes based on the following legal grounds:
- Conclusion or performance of a contract with or for the benefit of the data subject, including contract initiation and possible enforcement (e.g. supply contract, sales contract, service contract).
- Fulfilment of a legal obligation (e.g. if we have to collect and/or disclose data due to a legal obligation)
- Safeguarding legitimate interests, (e.g. for administrative purposes, to improve our quality, ensure security, manage risk, enforce our rights, defend ourselves against claims or to check for potential conflicts of interest)
No personal data need to be disclosed in order to use our website. However, the server collects a series of user information with each call, which is temporarily stored in the server's log files.
When using this general information, there is no assignment to a specific person. The collection of this information or data is technically necessary to display our website and to ensure its stability and security. This information is also collected in order to improve the website and analyse its use.
If you participate in an event organised by us, we collect personal data in order to organise and hold the event and, if necessary, to send you additional information afterwards. We also use your information to inform you of other events. It is possible that you will be photographed or filmed by us at these events and that we will publish this footage internally or externally.
5. tracking technologies
The data processed by cookies are necessary for the purposes mentioned. Most browsers accept cookies automatically. However, you can configure your browser so that no cookies are stored on your computer or a notice always appears before a new cookie is created. However, the complete deactivation of cookies may mean that you cannot use all the functions of our website.
6. web analysis
In order to obtain information about the use of our website, to improve our Internet offering and to be able to address you with advertising on third-party websites or on social media, we use the following technologies: Google Analytics, Google Maps, Google Tag Manager, Google reCAPTCHA, Adobe Fonts, Social Media Plugins.
The transmission of the data usually takes place with shortening of the IP addresses, which prevents the identification of individual end devices. A transmission of this information by third-party providers only takes place due to legal regulations or in the context of order data processing.
6.1 Google Analytics
6.2 Google Maps
On our website we use Google Maps (API) from Google Inc. (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; responsible for Europe is Google Limited Ireland, "Google"). Google Maps is a web service for displaying interactive (land) maps in order to visually present geographical information. By using this service, our location is shown to you and a possible approach is made easier. When you call up those sub-pages in which the Google Maps map is integrated, information about your use of our website (such as your IP address) is transmitted to Google servers in the USA and stored there. This occurs regardless of whether Google provides a user account via which you are logged in or whether no user account exists. If you are logged in to Google, your data will be directly assigned to your account. If you do not wish your data to be associated with your Google profile, you must log out before activating the button. Google stores your data (even for users who are not logged in) as usage profiles and evaluates them.
For data transfers to the USA, Google has undertaken to sign and comply with the EU standard contractual clauses.
6.3 Google Tag Manager
We use Google Tag Manager on our website to create tags for our website and applications. These tags enable us to target marketing measures concerning our services to potential customers (re-targeting).
We use advertising technologies from Google (Ads) and Facebook. According to our settings in Google Tag Manager, Google and Facebook set so-called conversion cookies. This is necessary to verify the effectiveness of the corresponding advertising measures. We have a legitimate interest in this. In addition, we use Google Tag Manager to set re-targeting tags. These tags enable us to target users with information about our services when they visit another website (e.g. Facebook).
6.4 Google reCAPTCHA
On our website we use Google reCAPTCHA from Google Inc. (1600 Amphitheatre Parkway, Mountain View, CA 94043, USA; responsible for Europe is Google Limited Ireland, "Google"). Google reCAPTCHA is intended to check whether the data input on this website (e.g. in a contact form) is made by a human being or by an automated programme. To do this, Google reCAPTCHA analyses the behaviour of the website visitor on the basis of various characteristics. This analysis begins automatically as soon as the website visitor enters the website. For the analysis, Google reCAPTCHA evaluates various information (e.g. IP address, time spent by the website visitor on the website or mouse movements made by the user). The data collected during the analysis is forwarded to Google. These analyses run entirely in the background. Website visitors are not informed that an analysis is taking place.
The storage and analysis of the data is based on Art. 6 para. 1 lit. f DSGVO. The website operator has a legitimate interest in protecting its web offers from abusive automated spying and from SPAM. Insofar as a corresponding consent has been requested, the processing is carried out exclusively on the basis of Art. 6 para. 1 lit. a DSGVO and § 25 para. 1 TTDSG, insofar as the consent includes the storage of cookies or access to information in the user's terminal device (e.g. device fingerprinting) within the meaning of the TTDSG. The consent can be revoked at any time.
For data transfers to the USA, Google has undertaken to sign and comply with the EU standard contractual clauses.
6.5 Adobe Fonts
This website uses web fonts from Adobe for the uniform display of certain fonts. The provider is Adobe Systems Incorporated, 345 Park Avenue, San Jose, CA 95110-2704, USA (Adobe).
When you call up this website, your browser loads the required fonts directly from Adobe in order to be able to display them correctly on your end device. In doing so, your browser establishes a connection to Adobe's servers in the USA. This enables Adobe to know that your IP address has been used to access this website. According to Adobe, no cookies are stored when providing the fonts.
The storage and analysis of the data is based on Art. 6 para. 1 lit. f DSGVO. The website operator has a legitimate interest in the uniform presentation of the typeface on its website. If a corresponding consent has been requested, the processing is carried out exclusively on the basis of Art. 6 para. 1 lit. a DSGVO and § 25 para. 1 TTDSG, insofar as the consent includes the storage of cookies or access to information in the user's terminal device (e.g. device fingerprinting) as defined by the TTDSG. The consent can be revoked at any time.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission.
6.6 Social media plugins
So-called social media plugins ("plugins") from third-party providers are used on our website. The plugins are recognisable by the logo of the respective social network. Via the plugins, we offer you the opportunity to interact with the social networks and other users. We use the following plugins on our website: YouTube. When you call up our website, your browser establishes a direct connection to the servers of the third-party provider. The content of the plugin (e.g. YouTube videos) is transmitted directly to your browser by the respective third-party provider and integrated into the page.
The data transfer for the display of content (e.g. publications on Instagram) takes place regardless of whether you have an account with the third-party provider and are logged in there. If you are logged in to the third-party provider, the data we collect is also directly assigned to your account with the third-party provider. If you activate the plugins, the information will also be published on the social network and displayed to your contacts there. The purpose and scope of the data collection and the further processing and use of the data by the third-party providers, as well as your rights in this regard and setting options for protecting your privacy, can be found in the data protection information of the third-party providers. The third-party provider stores the data collected about you as usage profiles and uses them for the purposes of advertising, market research and/or demand-oriented design of its website. In particular, such an evaluation is also carried out for non-logged-in users for the display of needs-based advertising and to inform other users of the social network about your activities on our website. If you would like to prevent the third-party providers from assigning the data collected via our website to your personal profile in the respective social network, you must log out of the respective social network before visiting our website. You can also completely prevent the loading of the plugins with specialised add-ons for your browser such as "Ghostery" (https://www.ghostery.com/) or "NoScript" (http://noscript.net/).
7. data disclosure and data transfer
We will only disclose your data to third parties if this is necessary to provide our service, if these third parties provide a service for us, if we are obliged to do so by law or by the authorities or if we have an overriding interest in disclosing the personal data. We will also disclose personal data to third parties if you have given your consent or requested us to do so.
Not all personal data is transmitted in encrypted form as standard. Unless explicitly agreed otherwise with the client, all data is transmitted unencrypted.
The following categories of recipients may receive personal data from us:
Other service providers (e.g. IT service providers, hosting providers, suppliers).
Third parties within the scope of our legal or contractual obligations, authorities, state institutions, courts.
We conclude contracts with service providers who process personal data on our behalf, obliging them to ensure data protection. The majority of our service providers are located in Switzerland or in the EU / EEA. Certain personal data may also be transferred to the USA (e.g. Google Analytics data) or, in exceptional cases, to other countries worldwide. Should it be necessary to transfer data to other countries that do not have an adequate level of data protection, this will be done on the basis of the EU standard contractual clauses (e.g. in the case of Google) or other suitable instruments.
8. duration of the storage of personal data
We process and store your personal data for as long as it is necessary for the fulfilment of our contractual and legal obligations or otherwise the purposes pursued with the processing, i.e. for example for the duration of the entire business relationship (from the initiation, processing to the termination of a contract) as well as beyond that in accordance with the legal storage and documentation obligations. In this context, it is possible that personal data will be retained for the time during which claims can be asserted against our company (i.e. in particular during the statutory limitation period) and insofar as we are otherwise legally obliged to do so or legitimate business interests require this (e.g. for evidence and documentation purposes). As soon as your personal data is no longer required for the above-mentioned purposes, it will be deleted or anonymised as a matter of principle and as far as possible. For operational data (e.g. system logs, logs), shorter retention periods of twelve months or less apply in principle.
9. data security
We take appropriate technical and organisational security precautions to protect your personal data from
- from unauthorised access (confidentiality)
- so that they are available when they are needed (availability)
- against misuse and alteration (integrity)
- so that they are processed in a traceable manner (traceability).
This can be achieved by issuing directives, training, IT and network security solutions, access controls and restrictions, encryption of data carriers and transmissions, pseudonymisation and controls.
The data protection officer of Huber & Co. AG Bandfabrik is to be involved in new projects from the outset and regularly checks data security in accordance with the principles, objectives and TOM's in Art. 1 to 3 DSV.
10 Obligation to provide personal data
As part of our business relationship, you must provide such personal data as is necessary for the establishment and performance of a business relationship and the fulfilment of the related contractual obligations (you do not usually have a legal obligation to provide us with data). Without this data we will not be able to enter into or perform a contract with you (or the entity or person you represent). Also, the website cannot be used if certain information to secure traffic (such as IP address) is not disclosed.
11. your rights
You have the following rights in connection with our processing of personal data:
- Right to information about personal data we hold about you, the purpose of the processing, the origin and about recipients or categories of recipients to whom personal data is disclosed.
- Right to rectification if your data is incorrect or incomplete.
- Right to restrict the processing of your personal data.
- Right to request the deletion of processed personal data.
- Right to data portability.
- Right to object to data processing or to withdraw consent to the processing of personal data at any time without giving reasons.
- Right to lodge a complaint with a competent supervisory authority, where provided for by law.
To exercise these rights, please contact us at the address given in section 1.
Please note, however, that we reserve the right to assert the restrictions provided for by law on our part, for example if we are obliged to retain or process certain data, have an overriding interest in doing so (insofar as we are entitled to rely on this) or require it for the assertion of claims. If you incur costs, we will inform you in advance.