PRIVACY POLICY

In general, you can use our website without providing any personal data. In certain cases, however, the collection and processing of your personal data may be necessary in order to use specific features of our website. In addition, we collect and process personal data to optimize our website and services, and we process this data in accordance with data protection regulations.

We take the protection of your personal data very seriously and would therefore like to inform you below about your rights, as well as the nature and scope of the data we collect.

1. Data Controller and Contact Person for Data Protection Inquiries

The person responsible for data processing within the meaning of the General Data Protection Regulation (GDPR) and the Federal Data Protection Act (BDSG):

Koch Tiefkühlkost International GmbH & Co. KG.
Kurfürstendamm 177, 10707 Berlin
Mr. Andreas Spieß
Phone: 0304962082
Email: info@koch-berlin.com

2. Definitions

Personal Data

Personal data refers to any information relating to an identified or identifiable natural person (hereinafter referred to as the “data subject”). A natural person is considered identifiable if they can be identified, directly or indirectly, in particular by association with an identifier such as a name, an identification number, location data, an online identifier, or one or more specific characteristics that reflect the physical, physiological, genetic, mental, economic, cultural, or social identity of that natural person.

Data Subject

A data subject is a person whose personal data is processed by the controller.

Processing

Processing means any operation or set of operations performed on personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, distribution, or any other form of disclosure, the matching or linking, the restriction, erasure, or destruction.

Profiling

Profiling is any form of automated processing of personal data that consists of using such personal data to evaluate certain personal aspects relating to a natural person, in particular to analyze or predict aspects concerning that person’s work performance, economic situation, health, personal preferences, interests, reliability, behavior, location, or movements of that natural person.

Pseudonymization

Pseudonymization is the processing of personal data in such a way that the personal data can no longer be attributed to a specific data subject without the use of additional information, provided that such additional information is kept separately and is subject to technical and organizational measures that ensure the personal data is not attributed to an identified or identifiable natural person.

Person in Charge

The controller is the person who determines the purposes and means of processing personal data and who also carries out such processing accordingly.

Data Processor

A processor is any other natural or legal person, public authority, agency, or other body that processes personal data on behalf of the controller.

Recipient

The recipient is a natural or legal person, public authority, agency, or other body to whom personal data is disclosed.

Consent

Consent of the data subject is any freely given, specific, informed, and unambiguous indication of the data subject’s wishes, expressed in the form of a statement or by a clear affirmative action, by which the data subject indicates that he or she consents to the processing of personal data relating to him or her.

Violation of Personal Data Protection

A personal data breach is a security breach that results in the destruction, loss, or alteration—whether accidental or unlawful—of personal data that has been transmitted, stored, or otherwise processed, or in the unauthorized disclosure of or unauthorized access to such data.

Biometric Data

Biometric data refers to personal data obtained through specialized technical methods regarding the physical, physiological, or behavioral characteristics of a natural person that enable or confirm the unique identification of that natural person, such as facial images or fingerprint data.

Health Data

Health data is personal data relating to the physical or mental health of a natural person, including the provision of health care services, and from which information about that person’s state of health can be derived.

Regulatory Authority

A supervisory authority is an independent government body established by a Member State pursuant to Article 51 of the GDPR that is responsible for monitoring compliance with data protection laws and regulations.

3. Information Regarding the Processing of Personal Data

We process your personal data using various technical means and, where necessary, may also engage additional service providers. We would like to provide you with specific details about this processing in the following sections.

Visit our website

(1) When you visit our website—that is, if you do not register or otherwise provide us with information—we collect only the personal data that your browser transmits to our server. If you wish to view our website, we collect the following data, which is technically necessary for us to display our website to you and to ensure its stability and security (the legal basis is Art. 6(1), sentence 1, lit. f of the GDPR, § 15 of the German Telemedia Act (TMG)):

  • IP Address and Service Provider
  • Date and time of the request
  • Content of the request (specific page)
  • Access Status/HTTP Status Code
  • amount of data transferred in each case
  • Website from which the request originates
  • Browser, including language and software version
  • Operating system and its user interface

(2) The data listed in paragraph 1 is also automatically stored in our server’s log files. The log data is stored separately from other data and is accessible only to the hosting provider. The log data is stored for 7 days. The legal basis for processing your data when you visit our website is Article 6(1)(f) of the GDPR and Section 15 of the German Telemedia Act (TMG).

Use of Cookies

  1. In addition to the data mentioned above, cookies are stored on your computer when you use our website. Cookies are small text files that are stored on your hard drive and associated with the browser you are using, and through which certain information is transmitted to the entity that sets the cookie (in this case, us). Cookies cannot run programs or transfer viruses to your computer. They serve to make the website more user-friendly and effective overall.
  2. This website uses the following types of cookies, the scope and functionality of which are explained below: Transient cookies
    Persistent cookies
  3. Transient cookies are automatically deleted when you close your browser. These include, in particular, session cookies. These cookies store a so-called session ID, which allows various requests from your browser to be associated with the same session. This enables your computer to be recognized when you return to our website. Session cookies are deleted when you log out or close your browser.
  4. Persistent cookies are automatically deleted after a specified period of time, which may vary depending on the cookie. You can delete these cookies at any time in your browser’s security settings.
  5. You can configure your browser settings according to your preferences and also choose to reject third-party cookies or all cookies. Please note, however, that you may not be able to use all features of this website if you do so. The legal basis for the use of cookies is Article 6(1)(f) of the GDPR.

Using the Contact Form

  1. When you contact us via the contact form on our website, the information you enter (your email address and, typically, your name, phone number, and any other information you provide) is stored by us at the time of submission so that we can respond to your inquiry and process your request.
  2. As an alternative to the contact form, you can also contact us using the email address provided on our website, which can be found in the legal notice.
  3. You may object to the processing of your personal data at any time by sending an email to info@koch-berlin.com or by notifying the person(s) listed in Section 1 of your objection to the processing of your personal data. If you contact us directly via email, you may object to the processing of your personal data at any time using the same channels.
  4. Processing: We delete the data collected in this context once storage is no longer necessary, or we restrict processing if there are legal retention requirements. The legal basis is Article 6(1), first sentence, subparagraph (f) of the GDPR.
  5. If your inquiry is intended to lead to the conclusion of a contract, the additional legal basis for the processing of your personal data is Article 6(1)(b) of the GDPR.

Matomo (formerly Piwik)

  1. This website uses the web analytics service Matomo to analyze how our website is used and to improve it on a regular basis. The statistics we collect allow us to improve our website and make it more interesting for you as a user. The legal basis for the use of Matomo is Article 6(1)(f) of the GDPR.
  2. For this analysis, cookies (see Section 2 above, “Use of Cookies”) are stored on your computer. The data controller stores the information collected in this manner exclusively on its server in Germany. You can disable this analysis by deleting existing cookies and preventing cookies from being stored. Please note that if you prevent cookies from being stored, you may not be able to use this website to its full extent. You can prevent cookies from being stored by adjusting your browser settings. You can prevent the use of Matomo by unchecking the following box to activate the opt-out plugin:

    You are currently viewing placeholder content from Standard. To access the actual content, click the button below. Please note that this will result in data being shared with third parties.

    Further Information

  3. This website uses Matomo with the “AnonymizeIP” extension. This ensures that IP addresses are truncated during processing, thereby preventing direct identification of individuals. The IP address transmitted by your browser via Matomo is not combined with any other data we collect.
  4. The Matomo program is an open-source project. You can find the third-party provider’s privacy policy at https://matomo.org/docs/privacy/.

Integration of Google reCAPTCHA

  1. To protect the contact form on our website, we use the Google service reCAPTCHA. This service checks whether the information entered into the contact form was entered by a human or, in an abusive manner, by automated, machine-based processing. The legal basis for the use of Google reCAPTCHA is Article 6(1)(f) of the GDPR.
  2. When you visit the website, the reCAPTCHA described above is retrieved from a Google server. In addition, the data specified in Section 3, “Use of Cookies” and “Visiting Our Website,” of this policy is transmitted. This occurs regardless of whether Google provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be directly associated with your account. If you do not wish for your data to be associated with your Google profile, you must log out of your Google account before visiting our website. Google stores your data as usage profiles and uses them for advertising, market research, and/or to tailor its website to your needs. Such analysis is carried out in particular (even for users who are not logged in) to deliver targeted advertising. You have the right to object to the creation of these user profiles; to exercise this right, you must contact Google.
  3. Information from the provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. For more information on the purpose and scope of data collection and its processing by the plug-in provider, please refer to the provider’s privacy policy. There you will also find further information about your rights in this regard and settings options for protecting your privacy: https://www.google.de/intl/de/policies/privacy. Google also processes your personal data in the United States and has certified its compliance with the EU-U.S. Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.

Integration of Google Maps

  1. We use Google Maps on this website. This allows us to display interactive maps directly on the website and enables you to use the map feature conveniently. The legal basis for the use of Google Maps is Article 6(1), first sentence, point (f) of the GDPR.
  2. When you visit the website, Google receives information indicating that you have accessed the corresponding page of our website. In addition, the data described in Section 3, “Use of Cookies” and “Visiting Our Website,” of this policy is transmitted. This occurs regardless of whether Google provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be directly associated with your account. If you do not want this data to be associated with your Google profile, you must log out before clicking the button. Google stores your data as usage profiles and uses them for advertising, market research, and/or to tailor its website to user needs. Such analysis is carried out in particular (even for users who are not logged in) to deliver targeted advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles; to exercise this right, you must contact Google.
  3. Information from the provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. For more information on the purpose and scope of data collection and its processing by the plug-in provider, please refer to the provider’s privacy policy. There you will also find further information about your rights in this regard and settings options for protecting your privacy: https://www.google.de/intl/de/policies/privacy. Google also processes your personal data in the United States and has certified its compliance with the EU-U.S. Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.

Integration of Google Web Fonts

  1. On this website, we use Google Web Fonts to improve the visual presentation. These are fonts that are retrieved from a Google server when you visit our website and are stored in your browser’s cache to display our website. For more information, please visit https://fonts.google.com/about#. The legal basis for the use of Google Web Fonts is Article 6(1)(f) of the GDPR.
  2. When you visit the website, Google receives the information that you have accessed it. In addition, the data specified in Section 3, “Use of Cookies” and “Visiting Our Website,” of this policy is transmitted. This occurs regardless of whether Google provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be directly associated with your account. If you do not wish for your data to be associated with your Google profile, you must log out of your Google account before visiting our website. Google stores your data as usage profiles and uses them for advertising, market research, and/or to tailor its website to your needs. Such analysis is carried out in particular (even for users who are not logged in) to deliver personalized advertising. You have the right to object to the creation of these user profiles; to exercise this right, you must contact Google.
  3. Information from the provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. For more information on the purpose and scope of data collection and its processing by the plug-in provider, please refer to the provider’s privacy policy. There you will also find further information about your rights in this regard and settings options to protect your privacy: https://www.google.de/intl/de/policies/privacy. Google also processes your personal data in the United States and has complied with the EU-U.S. Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.

Integration of Font Awesome

  1. On this website, we use so-called web fonts provided by Fonticons to ensure a consistent and improved display. These are fonts that are retrieved from an external server when you visit our website and are stored in your browser’s cache to display our website. The legal basis for the use of Font Awesome web fonts is Article 6(1)(f) of the GDPR.
  2. When you visit a page, your browser downloads the necessary web fonts to your computer in order to display text and fonts correctly. In addition, the data specified in Section 3, “Use of Cookies” and “Visiting Our Website,” of this policy is transmitted. To do this, the browser you are using must establish a connection to Fonticons’ servers. As a result, Fonticons becomes aware that our website has been accessed via your IP address. If your browser does not support web fonts, a default font from your computer will be used.
  3. Provider information: Fonticons Inc., 6 Porter Road, Apartment 3R, Cambridge, MA 02140, United States. For more information about Font Awesome, visit https://fontawesome.com/help.

Embedding YouTube Videos

  1. We have embedded YouTube videos in our online content that are stored on https://www.YouTube.com and can be played directly from our website. These are all embedded in “enhanced privacy mode,” which means that no data about you as a user is transmitted to YouTube unless you play the videos. Only when you play the videos is the data specified in paragraph 2 transmitted. We have no control over this data transmission. The legal basis for embedding YouTube videos is Article 6(1)(f) of the GDPR.
  2. When you visit the website, YouTube receives information indicating that you have accessed the corresponding page of our website. In addition, the data described in Section 3, “Use of Cookies” and “Visiting Our Website,” of this policy is transmitted. This occurs regardless of whether you are logged in to a YouTube user account or do not have a user account. If you are logged in to Google, your data will be directly associated with your account. If you do not want this data to be associated with your YouTube profile, you must log out before clicking the button. YouTube stores your data as user profiles and uses them for advertising, market research, and/or to tailor its website to your needs. Such analysis is carried out in particular (even for users who are not logged in) to deliver targeted advertising. You have the right to object to the creation of these user profiles; to exercise this right, you must contact YouTube.
  3. Provider information: YouTube LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland, is responsible for data processing. For more information on the purpose and scope of data collection and its processing by YouTube, please refer to the privacy policy. There you will also find further information about your rights and settings options for protecting your privacy: https://www.google.de/intl/de/policies/privacy. Google also processes your personal data in the United States and has complied with the EU-U.S. Privacy Shield, https://www.privacyshield.gov/EU-US-Framework

Integrating jQuery

  1. We have integrated jQuery into this website to make the site as appealing as possible for you. jQuery is a fast, compact, and feature-rich JavaScript library. When you visit our website, animations or other files are retrieved from the jQuery server and stored in your browser’s cache to display our website. By integrating jQuery, we can make our website more engaging for you as a user. For more information, please visit http://jquery.com/. The legal basis for the use of jQuery is Article 6(1)(f) of the GDPR.
  2. To connect to jQuery, the data listed above under “Visiting Our Website” is transmitted to jQuery. In addition, cookies (see “Use of Cookies” above) are stored on your computer to enable recognition when you visit our website again. According to jQuery, it collects and stores usage data in pseudonymous profiles, which are stored on jQuery’s servers and protected against unauthorized access and modification by third parties.
  3. You can prevent this processing by deleting existing cookies and blocking the storage of cookies. You can block the storage of cookies by adjusting your browser settings. Please note that if you disable cookies, you may not be able to use this website to its full extent.
  4. Information from the provider: jQuery is a project run by various volunteers and is part of the JS Foundation, Inc., Attn: Privacy Office, 1 Letterman Drive, San Francisco, CA 94129. For more information, visit https://js.foundation/. For more information from the provider regarding data protection, please visit https://js.foundation/about/governance/privacy-policy.

4. Social Media Presence

  1. We also maintain online presences (fan pages) on social networks and platforms. Through these, we present ourselves as a company, communicate with you—our customers, partners, or prospective clients—and publish information and offers. We may also analyze activity on our fan page using statistical data provided to us by the operators of social networks and platforms (so-called “Insights” data). However, data processing does not take place until you interact with our fan page. The legal basis for this is Article 6(1)(f) of the GDPR, as the data processing is based on our legitimate interests in more effective information sharing and communication with you. For contract-related communication with us, Article 6(1), first sentence, subparagraph (b) of the GDPR serves as the legal basis.
  2. When you visit and use our fan page, your personal data is processed by the social media providers and platforms themselves for analytical and advertising purposes. As the operator of the fan page, we have no control over this, and we do not receive any information from the respective providers regarding the exact scope of the data processing. The providers may use this data to create user profiles, for example, to display interest-based advertising. Cookies are typically stored on your devices for this purpose. Data processing may also take place outside the European Union. The U.S.-based social media and platform providers are certified under the Privacy Shield, which requires them to comply with EU data protection standards (https://www.privacyshield.gov/list). The respective social media and platform providers are primarily responsible for data processing via the fan page. You also have the option of exercising your data subject rights (see “Your Rights” below) directly with the social media and platform providers.
  3. For more information about data processing and your rights, please refer to the providers’ privacy policies:

5. Transfer to Third Countries

In some cases, your data may be transferred by external service providers to servers outside the EU (so-called third countries). These may include, in particular, service providers in the areas of hosting, compliance with regulatory obligations, debt collection, and marketing; we carefully select these service providers and contractually require them to comply with data protection regulations in accordance with legal requirements. If the service providers are located in the United States, we ensure that they have submitted to the EU-U.S. Privacy Shield Framework, thereby guaranteeing an adequate level of data protection. The following companies receive data in third countries outside the European Union:

6. Your Rights

You have the following rights with respect to the processing of your personal data, which you may exercise at any time by contacting the person listed in section 1 above without having to follow any specific formalities.

Right to Information

Upon request, we will provide you with information regarding what personal data we have stored about you, for what purpose, for how long, from what source, and on what legal basis, as well as whether we have disclosed this data to third parties.

Right to Rectification

If it turns out that the personal data you have provided to us is incorrect or incomplete, we will correct or supplement it immediately upon request.

Right to Erasure (Right to Be Forgotten)

You have the right to have your personal data deleted immediately, provided there is no legal obligation to retain it.

Right to Restriction of Processing

You may request that we restrict the processing of your personal data.

Right to Object to Processing

You may object to the processing of your personal data at any time. This applies in particular when the legal basis for the processing is Article 6(1), first sentence, subparagraph (f) of the GDPR.

Right to Data Portability

You have the right to receive the personal data we hold about you in a universally readable format.

Right to File a Complaint with a Regulatory Authority

You also have the right to file a complaint with the competent data protection supervisory authority regarding our processing of your personal data. The competent authority is the data protection authority of the federal state in which we are headquartered. For more information, please visit https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.

We would like to politely point out that, in certain cases, the exercise of your rights may be subject to specific conditions.

Ensuring Data Security and Privacy

To ensure the protection and security of your personal data, we implement a wide range of technical and organizational security measures, the effectiveness of which we regularly review.