Data Protection Declaration

If a data subject wishes to make use of special services of our company via our website, it may be necessary to process personal data. If it is necessary to process personal data and there is no legal basis for such processing, we generally obtain the consent of the data subject.

The processing of personal data, for example the name, address, e-mail address or telephone number of a person concerned, is always in accordance with the basic data protection regulation and in compliance with the country-specific data protection regulations applicable to Greenstein Nutraceuticals Ltd. By means of this privacy policy, our company wishes to inform the public about the type, scope and purpose of the personal data collected, used and processed by us. Furthermore, this data protection declaration informs the persons concerned about their rights.

Greenstein Nutraceuticals Ltd. as the person responsible for processing has implemented numerous technical and organisational measures to ensure that the personal data processed via this website is protected as completely as possible. Nevertheless, Internet-based data transmissions can generally have security gaps, so that absolute protection cannot be guaranteed. For this reason, every person concerned is free to transmit personal data to us by alternative means, such as by telephone.

  • Information on the collection of personal data and provider identification

(1) In the following, we provide information about the collection of personal data when using this website. Personal data are all data that can be related to you personally, e.g. name, address, e-mail addresses, user behaviour.

(2) The person responsible in accordance with Art. 4 Para. 7 EU Data Protection Basic Regulation (DS-GVO) is Greenstein Nutraceuticals Ltd, 29 Francesco Zahra Street, Birkirkara 1782, Malta, info@noeo.co (feel free to contact us anytime).

(3) If we would like to use commissioned service providers for individual functions of our offer or use your data for advertising purposes, we will inform you in detail about the respective procedures below. In this context, we will also state the specified criteria for the storage period.

  • Rights, in particular to information and revocation

(1) You have the following rights in relation to the personal data concerning you:

- Right to information,

- Right of correction or deletion,

- Right to restrict processing,

- Right to object to the processing,

- Right to data portability.

(2) If you have given your consent to the use of data, you can revoke this consent at any time. If the lawfulness of the processing is based on consent, this consent remains valid until you exercise your right to revoke it.

(3) Please send all requests for information, requests for disclosure or objections to data processing by e-mail to info@noeo.co.

(4) You can request us to delete your data at any time. This may be subject to statutory retention periods, which allow us to retain your data until the expiry of the period.

(5) If your data is incorrect, you have the right to ask us to correct it. This request will be complied with immediately after.

(6) You have the right to receive the personal data you have provided us with in a readable format, as far as technically possible, in order to make it available to another company (right to data transferability).

(7) You have the right to complain to the supervisory authority responsible for you.

  • Data security

We maintain up-to-date technical measures to ensure data security, in particular to protect your personal data from risks during data transmission and from third parties gaining knowledge of them. These measures are adapted to the current state of the art.

  • Collection of personal data for informational use and contact

(1) If you use the website for informational purposes only, i.e. if you do not register or send us information in any other way, we only collect the personal data that your browser sends to our server. If you wish to view our website, we collect the following data, which is technically necessary for us to display our website and to ensure its stability and security (legal basis is Art. 6 para. 1 sentence 1 lit. f DS-GVO):

- IP address

- Date and time of the request

- Time zone difference to Greenwich Mean Time (GMT)

- Content of the request (concrete page)

- Access status/HTTP status code

- Amount of data transmitted in each case

- Website from which the request comes

- Browser

- Operating system and its interface

- Language and version of the browser software

(2) When you contact us by e-mail or via the contact form, your e-mail address and your name will be stored by us. The purpose of this storage is merely to contact you in order to answer your questions.

(3) The legal basis for the stated collection is the consent you have given by visiting our website and confirming the cookie banner (Art. 6 para. 1 lit. a DSGVO).

(4) We will only use your data for advertising purposes to the extent permitted by law. In particular, we will only use your e-mail address for direct advertising for our own similar goods or services. You can object to the use of your data for advertising purposes at any time in writing or in text form (e-mail to info@noeo.co). In doing so, we invoke our legitimate interest in advertising our products to our customers in accordance with Art. 6 para. 1 lit. f DSGVO.

(5) In addition to the above-mentioned data, cookies are stored on your computer when you use our website. Cookies are small text files which are stored on your hard disk, assigned to the browser you are using and through which certain information flows to the site that sets the cookie (in this case by us). Cookies cannot execute programs or transfer viruses to your computer. They serve to make the Internet offer as a whole more user-friendly and effective.

  • Cookies

(1) We use cookies on our website. Such cookies are necessary to enable you to move freely around the website and use its features, including access to secure areas of the website. Cookies enable us to track who has visited the site(s) and to deduce how often certain pages are visited, which parts of the site are particularly popular. Session cookies store information about your activities on our website.

(2) This website uses the following types of cookies, the scope and function of which are explained below:

- Transient cookies (temporary use)

- Persistent cookies (temporary use)

- 3rd party cookies

(3) Transient cookies are automatically deleted when you close the browser. This includes in particular the session cookies. These store a so-called session ID, with which various requests from your browser can be assigned to the common session. This enables your computer to be recognised when you return to the website. The session cookies are deleted when you log out or close the browser.

(4) Persistent cookies are automatically deleted after a specified period of time, which may vary depending on the cookie. You can delete the cookies in the security settings of your browser at any time.

(5) You can configure your browser settings according to your wishes and, for example, refuse to accept third-party cookies or all cookies. Please note that you may not be able to use all functions of this website.

(6) We use cookies to identify you for subsequent visits if you have an account with us. Otherwise you would have to log in again for each visit.

(7) The following cookies are used:

Name

Persistence

Description

cookie_notice_accepted

30 days

Stores the information whether the cookie hint should be displayed or not

_ga

2 years

Registers a unique ID that is used to generate statistical data on how the visitor uses the website.

_gid

Session

Registers a unique ID that is used to generate statistical data on how the visitor uses the website.

_gat

Session

Is used by Google Analytics to limit the request rate

_icl_current_language

Session

Saves the currently set language

wpml_referer_url

Session

Stores the last URL called up in the frontend.

NID

Session

The NID cookie contains a unique ID that Google uses to store preferred settings and other information, including your preferred language (e.g. English).

VISITOR_INFO1_LIVE

179 days

Attempts to estimate user bandwidth on pages with integrated YouTube videos.

PREF

8 months

Registers a unique ID that is used by Google to keep statistics about how visitors use YouTube videos on different websites.

YSC

Session

Registers a unique ID to keep statistics of the videos from YouTube that the user has seen.

wordpress_test_cookie

Session

Test cookie, which checks whether cookies are allowed or not

wordpress_<sessionid>

Session

Identification of the logged-in user

test_cookie

Session

Used for: doubleclick.net, test cookie that checks whether cookies are allowed or not

IDE

2 years

doubleclick.net, This cookie is used to store the preferences of the user.

woocommerce_items_in_cart

Session

Contains information about the shopping cart in the online shop.

woocommerce_cart_hash

Session

Contains information about the shopping cart in the online shop.

 

  • Use of our webshop

(1) If you want to order in our web shop, it is necessary for the conclusion of the contract that you provide your personal data, which we need to process your order. Mandatory data necessary for the processing of contracts are marked separately, further data are voluntary. We process the data provided by you to legitimize and process your order (name, e-mail, address). To make it easier for us to contact you, you can give us your fax number and telephone number. For this purpose we can pass on your payment data to our house bank. The legal basis for this is Art. 6 para. 1 sentence 1 lit. b DS-GVO.

(2) For legal reasons, you must create a customer account through which we can store your data for future purchases. When you create an account under "My Account", the data you provide will be stored revocably. You can always delete all other data, including your user account, in the customer area.

(3) We may also process the data you provide in order to inform you about other interesting products from our portfolio (also by telephone) or to send you e-mails with technical information.

(4) We are obliged by commercial and tax law to store your address, payment and order data for a period of ten years. After two years, however, we will restrict processing, i.e. your data will only be used to comply with legal obligations.

(5) We use the data you provide for processing your order. For this purpose, we pass on your address data to a commissioned shipping company. We will delete this data after the contract has been processed and the tax and commercial law obligations to retain it have expired. The legal basis of the specified collection is your consent, which you have given by creating the customer account or by placing an order (Art. 6 para. 1 lit. a DSGVO).

(6) Payment shall be made on account or by SEPA direct debit. You will find more details in our General Terms and Conditions (AGB).

(7) If you decide to make a payment by direct debit, you shall transmit your name, address and account data for this purpose to the respective bank or to the respective payment intermediary used by the customer (e.g. Paypal).

(8) In order to prevent unauthorized access to your personal data by third parties, especially financial data, the ordering process is encrypted using SSL technology.

  • Use of our portal

We process your contact data for communication with you and for the processing of purchases in our shop (see above, § 6). Of course you can manage and change your contact and login data in the protected customer area or delete your account.

  • Webtracking - Google Analytics

(1) This website uses Google Analytics, a web analysis service of Google Inc. ("Google"). Google Analytics uses "cookies", which are text files placed on your computer, to help the website analyze how users use the site (see § 5). The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there. However, in the event that IP anonymisation is activated on this website, your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on the website activities and to provide further services to the website operator in connection with the use of the website and the Internet.

(2) The IP address transmitted by your browser within the framework of Google Analytics is not combined with other data from Google.

(3) You may refuse the use of cookies by selecting the appropriate settings on your browser, however please note that if you do this you may not be able to use the full functionality of this website.

You can prevent the collection by Google Analytics by clicking on the following link. An opt-out cookie is set, which prevents the future collection of your data when you visit this website:

Deactivation of Google Analytics

You can also prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) to Google and the processing of this data by Google by downloading and installing the browser plug-in available at the following link: http://tools.google.com/dlpage/gaoptout?hl=de.

(4) This website uses Google Analytics with the extension "_anonymizeIp()". This allows IP addresses to be processed in a shortened form, thus excluding the possibility of personal references. If the data collected about you contains a personal reference, this is immediately excluded and the personal data is immediately deleted.

(5) We use Google Analytics to analyse and regularly improve the use of our website. We can use the statistics obtained to improve our offer and make it more interesting for you as a user. For the exceptional cases in which personal data is transferred to the USA, Google has subjected itself to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework. The legal basis for the use of Google Analytics is Art. 6 para. 1 sentence 1 lit. f DS-GVO.

(6) Third party information: Google Dublin, Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland, Fax: +353 (1) 436 1001. User conditions: http://www.google.com/analytics/terms/de.html, overview of data protection: http://www.google.com/intl/de/analytics/learn/privacy.html, and the data protection declaration: http://www.google.de/intl/de/policies/privacy.

(7) This website also uses Google Analytics for a cross-device analysis of visitor flows, which is carried out using a user ID. You can deactivate the cross-device analysis of your usage in your customer account under "My Data", "Personal Data".

(8) You can prevent the installation of cookies from Google AdSense in different ways: a) by a corresponding setting of your browser software, in particular the suppression of third party cookies leads to the fact that you do not receive ads from third parties; b) by deactivating interest-based ads on Google via the link http://www.google.de/ads/preferences, this setting being deleted if you delete your cookies; c) by deactivating the interest-based ads of the providers that are part of the self-regulation campaign "About Ads" via the link http://www.aboutads.info/choices, this setting being deleted if you delete your cookies; d) by permanently deactivating them in your Firefox, Internet Explorer or Google Chrome browsers via the link http://www.google.com/settings/ads/plugin. We would like to point out that in this case you may not be able to use all functions of this offer to their full extent.

(9) For further information on the purpose and scope of data collection and its processing, as well as further information on your rights in this regard and setting options for protecting your privacy, please contact Google Inc., 1600 Amphitheater Parkway, Mountainview, California 94043, USA; Privacy policy for advertising: http://www.google.de/intl/de/policies/technologies/ads. Google has adopted the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.

  • Use of social media plug-ins

(1) We currently use the following social media plug-ins: Facebook, Instagram. We use the so-called two-click solution. This means that when you visit our site, no personal data is initially passed on to the providers of the plug-ins. You can recognize the provider of the plugin by the initial letter or the logo on the box. We give you the opportunity to communicate directly with the provider of the plug-in via the button. Only if you click on the marked box and thereby activate it, the plug-in provider will receive the information that you have accessed the corresponding website of our online offer. In addition, the data mentioned under § 2 of this declaration will be transmitted. In the case of Facebook, the IP address will be anonymized immediately after the data is collected, according to the respective providers in Germany. Thus, by activating the plug-in, personal data is transmitted from you to the respective plug-in provider and stored there (with US providers in the USA). Since the plug-in provider collects data in particular via cookies, we recommend that you delete all cookies via your browser's security settings before clicking on the grayed-out box.

(2) We have no influence on the collected data and data processing procedures, nor are we aware of the full scope of data collection, the purposes of processing, the storage periods. We also have no information on the deletion of the collected data by the plug-in provider.

(3) The plug-in provider stores the data collected about you as user profiles and uses them for the purposes of advertising, market research and/or the needs-based design of its website. Such an evaluation is carried out in particular (also for users who are not logged in) for the purpose of presenting needs-based advertising and to inform other users of the social network about your activities on our website. You have a right of objection to the creation of these user profiles, whereby you must contact the respective plug-in provider in order to exercise this right. Through the plug-ins we offer you the possibility to interact with the social networks and other users, so that we can improve our offer and make it more interesting for you as a user. The legal basis for the use of the plug-ins is Art. 6 para. 1 sentence 1 lit. f DS-GVO.

(4) The data is passed on regardless of whether you have an account with the plug-in provider and are logged in there. If you are logged in with the plug-in provider, the data we collect from you will be assigned directly to your existing account with the plug-in provider. If you click on the activated button and, for example, link to the page, the plug-in provider will also save this information in your user account and share it publicly with your contacts. We recommend that you log out regularly after using a social network, but especially before activating the button, as you can then avoid being assigned to your profile with the plug-in provider.

(5) Further information on the purpose and scope of data collection and its processing by the plug-in provider can be found in the following data protection declarations of these providers. There you will also find further information on your rights in this regard and setting options for protecting your privacy.

(6) Addresses of the respective plug-in providers and URL with their data protection information:

No. 1 Facebook Inc, 1601 S California Ave, Palo Alto, California 94304, USA; http://www.facebook.com/policy.php; further information on data collection: http://www.facebook.com/help/186325668085084, http://www.facebook.com/about/privacy/your-info-on-other#applications and http://www.facebook.com/about/privacy/your-info#everyoneinfo. Facebook has submitted to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framework.

No 2 Instagram LLC, represented by Kevin Systrom and Mike Krieger, 1601 Willow Rd, Menlo Park CA 94025, USA; http://instagram.com/legal/terms. Instagram has submitted itself to the EU-US privacy shield, https://www.privacyshield.gov/EU-US-Framework.

No 3 LinkedIn Corporation, 2029 Stierlin Court, Mountain View, California 94043, USA; http://www.linkedin.com/legal/privacy-policy. LinkedIn has submitted to the EU-US privacy shield, https://www.privacyshield.gov/EU-US-Framework.