Privacy policy

The use of this website may involve the processing of personal data. In order for you to understand this processing, we would like to give you an overview of this processing with the following information. In order to ensure fair processing, we would also like to inform you about your rights under the European General Data Protection Regulation (GDPR) and the Data Protection Act (DSG).

Translation Disclaimer

Please note that this Privacy Policy is provided in German and English for your convenience. In case of any discrepancies or inconsistencies between the two versions, the German version shall prevail and be legally binding. The English version is a translation and for informational purposes only.

Responsible and order processor

The responsible body for data processing (in the sense of Art 4 Z 7 DSGVO) or, if applicable, as the processor on this website is:

Valcome Innovation GmbH
Im Bäckerfeld 12a
4060 Leonding
Austria

Our data protection officer can be reached at the following contact details: privacy@valcome.at

General information on data processing

We process personal data in compliance with the relevant data protection regulations, in particular the GDPR and the DSG. Data processing by us only takes place on the basis of legal permission. When using this website, we only process personal data with your consent (Art. 6 Para. 1 Letter a) GDPR), to fulfill a contract to which you are a party, or at your request to carry out pre-contractual measures (Art. 6 Para 1 letter b) GDPR), to fulfill a legal obligation (Article 6 paragraph 1 letter c) GDPR) or if the processing is necessary to protect our legitimate interests or the legitimate interests of a third party, unless your interests or Fundamental rights and freedoms that require the protection of personal data,

What types of information are collected

In order to offer our services, we process the following categories of personal data:

Account Information
We collect the information you provide to us when you create an account with us. This includes: name, email address, billing address, encrypted password, account ID and, if provided, your social media account details. This data is required to enable you to access our services.

Payment information
In relation to the processing of our services, we collect information from you to collect payments. This includes your bank account number, details of payment methods such as credit cards or other forms of payment, payments that you have received from us or made to us directly or indirectly, and your billing and transaction data.

Usage Information
We collect information about how you use our content and services, what activities you engage in, and how you interact with them. This includes, for example, your navigation on the platform, which pages you access, what content you view

Marketing Information
If you tell us what marketing communications you would like to receive from us and other companies, we will collect information about them. Additionally, this includes any direct marketing communications we send to you, such as emails, push notifications and text messages.

Technical Information
We collect technical information about the device or browser you use to access our Services. This also includes your IP address and device or unique identifiers. Information on the use of cookies can be found in our cookie notice.

Customer Support Information
If you have contacted our customer service, we collect information such as chat logs, contact information and details about why you contacted us.

Information about feedback
If you use the feedback function provided by us on our site, we collect this data for later evaluation.

Aggregated Information
We collect, store and use aggregated information such as statistical or demographic data (“Aggregated Information”). This information may be derived from your personal information, but is not itself personal information. However, if that information is linked to a personal identifier, the terms of this Privacy Notice apply and the aggregated information will be treated as personal information.

We do not collect any  special categories (within the meaning of Article 9 of the GDPR) of personal data.

For what purposes do we process your data?

In the course of our business relationship, we process data on the basis of contractual (handling of the contractual relationship with you, pre-contractual obligations, billing of services, dispatch of documents, communication for the execution of the contract) and legal obligations (legally required storage within the meaning of § 132 BAO; as well as due to our legitimate interests or due to legitimate interests of third parties (Art 6 Para 1 lit f GDPR), namely:

• for the purpose of internal administration and management of your business case to the required extent (eg: processing your business case, forwarding your business case to various departments, file filing, archiving purposes, correspondence with you);

• Processing of customer data as part of our partner program;

• for the purpose of direct advertising (e.g.: mailing, e-mailing, satisfaction surveys, letters of congratulations, statistical evaluations);

We would like to expressly inform you that you can object to the processing of your data for the purpose of direct advertising (Article 21 (2) GDPR).

• Assertion and defense of legal claims

in each case to the required extent. The processing of your data serves to initiate, maintain and process our business relationships. If you do not provide us with this data, we will unfortunately not be able to process your business case.

In addition, personal data can be transmitted to our processors (within the meaning of Article 4 Z 8 GDPR). These processors are listed under point V.

If necessary, we process your data based on your voluntary, express consent (Art 6 Para 1 lit a DSGVO), for example to transmit data to our trading partners for advertising purposes.

Who may receive your data?

For the operation of our website it may be necessary for us to disclose your data to the following recipients:

Recipient of the data:  Hetzner Online GmbH
Purpose of the data processing:  Website hosting 
Legal basis of the data processing:  Predominantly legitimate interests (Art 6 Para 1 lit f GDPR) Processor contract according to Art 28 GDPR 
Place of business:  Gunzenhausen, Germany
Basis for transmission to a third country¹:  Within the EEA

Recipient of the data:  Amazon.com, Inc
Purpose of data processing:  Cloud provider
Legal basis for data processing:  Predominantly legitimate interests (Art 6 Para 1 lit f GDPR)
Place of business:  USA
Basis for transmission to a third country¹:  Standard data protection clauses according to Art 46 Para 2 lit c GDPR

Recipient of the data:  Google LLC
Purpose of data processing:  Social media plug-in
Legal basis for data processing:  Predominantly legitimate interests (Art 6 Para 1 lit f GDPR) Consent (Art 6 Para 1 lit a GDPR)
Place of business:  USA
Basis for transmission to a third country¹:  Standard data protection clauses according to Art. 46 Para. 2 lit c DSGVO Consent according to Art. 49 Para. 1 lit a DSGVO

Recipient of the data:  Facebook Inc.
Purpose of data processing:  Social media plug-in
Legal basis for data processing:  Predominantly legitimate interests (Art 6 Para 1 lit f GDPR) Consent (Art 6 Para 1 lit a GDPR)
Place of business:  USA
Basis for transmission in a third country¹:  Standard data protection clauses according to Art. 46 Para. 2 lit c DSGVO Consent according to Art. 49 Para. 1 lit a DSGVO

Recipient of the data:  Stripe, Inc.
Purpose of data processing:  Payment provider
Legal basis for data processing:  Predominantly legitimate interests (Art 6 Para 1 lit f GDPR) Contractual obligation (Art 6 Para 1 lit b GDPR)
Place of business:  USA
Basis for transmission to a third country¹:  Standard data protection clauses according to Art. 46 Para. 2 lit c DSGVO Consent according to Art. 49 Para. 1 lit a DSGVO

Recipient of the data:  PayPal Holdings, Inc.
Purpose of data processing:  Payment provider
Legal basis for data processing:  Predominantly legitimate interests (Art 6 Para 1 lit f GDPR) Contractual obligation (Art 6 Para 1 lit b GDPR) Place of business USA
Basis for transmission to a third country¹ :  Standard data protection clauses according to Art. 46 Para. 2 lit c DSGVO Consent according to Art. 49 Para. 1 lit a DSGVO

Recipient of the data:  Sentry, Inc.
Purpose of the data processing:  Error monitoring
Legal basis of the data processing:  Mainly legitimate interests (Art 6 Para 1 lit f GDPR)
Place of business:  USA
Basis for transmission to a third country¹:  Standard data protection clauses according to Art 46 Para 2 lit c GDPR

Recipient of the data:  Zendesk
Purpose of data processing:  Online customer support
Legal basis for data processing:  Mainly legitimate interests (Art 6 Para 1 lit f GDPR)
Place of business:  USA
Basis for transmission to a third country¹:  Standard data protection clauses according to Art 46 Para 2 lit c GDPR

Recipients of the data:  Lawyers
Purpose of data processing:  Pursuing claims
Legal basis for data processing:  Contractual obligation (Art 6 Para 1 lit b GDPR)
Place of business:  Generally Austria – but also third countries in exceptional cases
Basis for transmission to a third country¹:  If outside the EEA – Art 49 para 1 b and e GDPR (contractual obligation and enforcement of legal claims)

Recipients of the data:  auditors and tax consultants
Purpose of data processing:  tax advice and auditing
Legal basis for data processing:  contractual obligation (Art 6 Para 1 lit b GDPR) 
Place of business:  Austria
Basis for transmission to a third country¹:  Within the EEA

¹"Third country" includes all states except (1) the member states of the European Union and (2) the member states of the European Economic Area, i.e. in addition to the EU member states Iceland, Liechtenstein and Norway.

How long is your data stored?

We will only store your data for as long as is necessary for the purposes for which we collected your data. In this context, statutory storage obligations must be taken into account (e.g. for tax reasons, contracts and other documents from our contractual relationship must be stored for a period of seven years (§ 132 BAO)). In justified individual cases, for example to assert and defend against legal claims, we can also store your data for up to 30 years after the end of the business relationship.

We store the data of interested parties for up to three years from the time the interested party last contacted us.

Does automated decision-making or profiling take place (Art 13 Para 2 lit f GDPR)?

There is no automated decision-making or profiling in our company.

Cookies

Our website uses cookies to improve your experience when you visit our site and to help us improve our website and services. Cookies are small text files that are stored by your browser when you visit our website. We use both first-party cookies (set by ourselves) and third-party cookies (set by other companies). Some of the third party cookies we use are from advertising networks and allow us to show you relevant ads on other websites based on your interaction with our website. We also use analytics tools that use cookies to help us understand and improve how our website is used.

In accordance with the provisions of the General Data Protection Regulation (GDPR), we must inform you about the use of cookies on our website and obtain your consent to the use of cookies. Therefore, when you visit our website, you will see a cookie consent message informing you of the types of cookies we use and giving you the opportunity to give or deny your consent to the use of cookies. Please note that rejecting cookies may limit the functionality of our website.

We respect your privacy and only use cookies in accordance with applicable data protection laws. We do not use cookies to collect personally identifiable information without your consent. If you have further questions about the use of cookies on our website, you can always contact us.

How can I delete cookies?

It is entirely up to you whether you wish to use cookies or not. Regardless of which website or service they come from, you always have the option to disable, partially allow, or completely delete them. For example, you can block third-party cookies while allowing all other cookies.

If you want to find out which cookies are stored in your browser or change or delete your cookie settings, you can do this in your browser settings:

Chrome: Delete, enable and manage cookies in Chrome

Safari: Managing Cookies and Website Data with Safari

Firefox: Clear cookies to remove data websites have placed on your computer

Internet Explorer: Delete and manage cookies

Microsoft Edge: Deleting and managing cookies

If you generally do not want to use cookies, you can configure your browser so that it notifies you when a cookie is about to be placed. You then have the opportunity to decide for each individual cookie whether you want to allow it or not. The exact procedure depends on your browser. The best way to do this is to search Google for instructions using the search term "delete cookies Chrome" or "disable cookies Chrome" if you are using the Chrome browser.

TLS encryption with https

To ensure that confidential data is protected on the Internet, we use https for tap-proof transmission (data protection through technology design, Article 25 paragraph 1 GDPR ). By using TLS (Transport Layer Security), an encryption protocol for secure data transmission on the Internet, we can guarantee the confidentiality of your data. You can recognize the use of this data encryption by the small lock symbol in the top left of the browser and the use of the https scheme (instead of http) in our Internet address.

Adobe Fonts

We use Adobe Fonts, a service provided by Adobe Inc., to provide the fonts on our website. Adobe can collect and store information about the fonts (e.g. font name, version, size) and the IP address of the user. Further information on data processing by Adobe can be found in Adobe's data protection declaration at https://www.adobe.com/de/privacy/policy.html . Adobe is certified according to the EU-US Privacy Shield, which ensures an appropriate level of data protection in accordance with the GDPR.

Google Tag Manager (Google Analytics)

We use Google Tag Manager, a service provided by Google LLC, to analyze the use of our website. Google Tag Manager uses cookies to collect data about the usage behavior of visitors. This information is anonymized and forwarded to Google Analytics to generate statistics about website activity. We do not use the collected data to identify individuals and do not pass it on to third parties. You can deactivate the use of cookies at any time by changing the settings in your browser.

https://policies.google.com/privacy?hl=de

Google Login Plugin

Our website offers you the option of logging in with your Google account. For this we use the Google Login Plugin provided by Google LLC. By using the plugin, data such as your name, email address and profile picture are sent to us to enable registration on our website. We use this data exclusively for the purpose of registration and do not pass it on to third parties.

https://policies.google.com/privacy?hl=de

Facebook Login Plugin

Our website gives you the option to log in with your Facebook account. For this we use the Facebook Login Plugin provided by Facebook Inc. By using the plugin, data such as your name, email address and profile picture are sent to us to enable registration on our website. We use this data exclusively for the purpose of registration and do not pass it on to third parties.

https://www.facebook.com/about/privacy/

Zendesk

In order to offer you optimal customer support, we use Zendesk, a service provided by Zendesk, Inc. If you contact us via the contact form or by e-mail, the data you enter will be transmitted to Zendesk and stored there. We use this data exclusively to process your request and do not pass it on to third parties. Zendesk is certified according to the EU-US Privacy Shield, which ensures an appropriate level of data protection in accordance with the GDPR.

https://www.zendesk.de/company/customers-partners/privacy-policy/

Sentry.io

We use Sentry.io to detect and fix errors on our website. Sentry.io collects information such as IP address, browser type, and operating system version to help us troubleshoot problems. This information is anonymized and we do not use it to identify individuals. Sentry.io is certified according to the EU-US Privacy Shield, which ensures an appropriate level of data protection in accordance with the GDPR.

https://sentry.io/privacy/

Stripe

To process payments on our website, we use Stripe, a service provided by Stripe, Inc. When you make a payment, Stripe processes personal information such as your name, address, email address, and payment information in order to process the payment to handle. We only receive a confirmation of receipt of payment from Stripe and no further personal data. Stripe is certified according to the EU-US Privacy Shield, which ensures an appropriate level of data protection in accordance with the GDPR.

https://stripe.com/de/privacy

PayPal

We offer you the option of processing payments via PayPal, a service provided by PayPal (Europe) S.à rl et Cie. When you make a payment, PayPal processes personal data such as your name, address, email address and payment information in order to process the payment. We only receive a confirmation of receipt of payment from PayPal and no further personal data. PayPal is certified according to the EU-US Privacy Shield, which ensures an appropriate level of data protection in accordance with the GDPR. Please also note PayPal's data protection declaration for further information on data processing.

https://www.paypal.com/de/webapps/mpp/ua/privacy-full

What rights do you have with regard to data processing?

We would like to inform you that, provided the legal requirements are met, you can:

• Have the right to request information about which of your data is processed by us (see Art. 15 GDPR for details).

• Have the right to request the correction or completion of incorrect or incomplete data concerning you (see Art. 16 GDPR for details).

• Have the right to have your data deleted (see Art. 17 GDPR for details).

• Have the right to object to any processing of your data that is necessary to safeguard our legitimate interests or those of a third party. This applies in particular to the processing of your data for advertising purposes.

• Have the right to receive the transmission of the data you have provided in a structured, commonly used and machine-readable format.

If we process your data on the basis of your consent, you have the right to withdraw this consent at any time by email. This does not affect the legality of the data processing that has taken place up to this point in time (Article 7 (3) GDPR).

What rights of appeal do you have?

If, contrary to expectations, your right to the lawful processing of your data is violated, please contact us by post or email. We will endeavor to process your request immediately. However, you also have the right to lodge a complaint with the supervisory authority responsible for you for data protection matters.

The address of the Austrian data protection authority is:

Austrian Data Protection Authority
Barichgasse 40-42,
1030 Vienna

Any use of this data protection declaration, or even parts of it, without the consent of the author constitutes a violation of copyright.

Oops! Something Went Wrong

We apologize for the inconvenience. It looks like we've hit a snag and couldn't load this site.

What Can You Do?

  • Reload the Page: Sometimes a simple refresh can work wonders. Try reloading to see if that fixes the issue.
  • Update Your Browser: Always make sure you're using the latest version of your browser. Outdated browsers can cause all sorts of trouble.
  • Check Network Connection: Ensure you have a stable internet connection.

Still Need Help?

If the problem persists, please take a screenshot of the following error message and email it to support@valcome.at. We appreciate your patience and are actively working to resolve this as quickly as possible.