Privacy policy of ITRIS GmbH
Privacy policy of ITRIS GmbH pursuant to Art. 13 and 14 GDPR
Data protection information
We at ITRIS GmbH take the protection of your personal data very seriously. We treat your data confidentially and in accordance with the statutory data protection regulations.
We also host the ERP and CRM software on-premise on our own premises on our own servers in Switzerland for data protection purposes.
Personal data refers to all data with which you can be personally identified. Various personal data is collected when you use this website.
The following data protection information provides you with an overview of the purposes for which we store data and how we ensure and guarantee the protection of your data.
1. name and contact details of the responsible office
This data protection information applies to data processing by:
ITRIS GmbH
Modecenterstrasse 14B
1030 Vienna
Phone: +43 1 796 37 11
E-mail info@itris.at
2. name and contact details of the data protection officer
datenschutz@itris.at
Our external data protection officer can be contacted directly via the e-mail address provided and at the above address.
Please send postal correspondence to the attention of Ms. Vanessa Egle, quoting “Data protection”.
3. processing of your personal data
Visit our website
When you visit our website, data is automatically collected by our IT systems. This is primarily technical data (e.g. internet browser, operating system or time of page view). This data is collected automatically as soon as you enter our website. Some of the data is collected to ensure that the website is provided without errors. Other data can be used to analyze your user behavior.
Personal data such as name, address, telephone number, e-mail address or other identifying information is not collected. We will only collect this data if you provide it to us voluntarily, for example by sending us an e-mail or by filling out the contact form. You can therefore visit our website without providing any personal data.
If you contact us by e-mail or via the contact form, the data you provide will be stored automatically. We process your personal data exclusively to answer your inquiries and in the event of follow-up questions, or they are stored by us for further contact with you.
We would like to point out that data transmission on the Internet, for example when communicating by e-mail or contact form, can have security gaps and therefore we cannot guarantee complete protection of data from access by third parties.
4. storage, use and processing of your data
We use, process and store your personal data to fulfill your requests, such as to answer your inquiries, to process orders and to prepare, negotiate, process and fulfill contracts and to provide you with certain information.
We also host the ERP and CRM software on-premise on our own premises on our own servers in Switzerland for data protection purposes.
This website is hosted by an external service provider (Hostpoint AG from Rapperswil-Jona). The personal data collected on this website is stored on the host’s servers. This includes IP addresses, meta and communication data as well as data from contact requests.
The hoster is used in the interest of a fast and efficient provision of our online offer by a professional provider (Art. 6 para. 1 lit. f GDPR) and for the purpose of fulfilling the contract with our potential and existing customers (Art. 6 para. 1 lit. b GDPR).
Our hoster will only process your data to the extent necessary to fulfill its performance obligations and follow our instructions with regard to this data.
5. disclosure of your data
Your data will not be passed on to third parties. Only in the case of newsletters will your data be passed on on the basis of contractual agreements (Art. 6 para. 1 lit. b GDPR) or legal obligations. (Art. 6 para. 1 lit. c GDPR)
As part of order processing in accordance with Art. 28 GDPR, we use external service providers (e.g. in the area of web design). These have been carefully selected and commissioned by us and are bound by our instructions.
6. your rights regarding the processing of your personal data
To exercise your rights, please contact the responsible office at ITRIS.
All you need to do is send an informal message by e-mail to datenschutz@itris.at
a) Right to information
You have the right to request information about your personal data processed by us.
You can request the following as part of your rights as a data subject:
- Information about processing purposes and categories of personal data
- Categories of recipients to whom your personal data has been or will be disclosed
- Storage duration
- Existence of a right to rectification, erasure, restriction of processing or objection
- Existence of a right of appeal to the supervisory authority
- Origin of your data, if it was not collected by us
- Existence of automated decision-making, including profiling
b) Right to rectification
You have the right to immediate correction of incorrect or completion of incomplete personal data.
c) Right to erasure (“right to be forgotten”)
You have the right to immediate erasure (“right to be forgotten”) of your personal data if, for example, the purpose of the processing is no longer necessary, if you withdraw your consent or if there is no legal basis.
d) Right to restriction of processing
You have the right to restrict the processing of your personal data if, for example, the accuracy of the data is disputed, the processing is unlawful and you refuse to delete it and instead request the restriction of its use if we no longer need it for the purposes of processing but you need it to assert, exercise or defend legal claims or if you have lodged an objection to the processing.
e) Right to data portability
You have the right to receive the personal data that you have provided to us in a structured, commonly used and machine-readable format or to have it transmitted to another controller, provided that the processing is automated.
Your personal data will only be transferred directly to another controller if this is technically possible.
f) Right of objection
You have the right to object to the processing of your personal data at any time for reasons arising from your particular situation. Your data will no longer be processed following an objection unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms or the processing serves the establishment, exercise or defense of legal claims.
Furthermore, you can object to the processing of your personal data for the purpose of direct marketing at any time.
The lawfulness of the data processing carried out until the revocation remains unaffected.
g) Right to automated decision-making, including profiling
You have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you. This means that you have the right to question this decision and, if necessary, to have it rectified.
h) Right to lodge a complaint with a supervisory authority
In the event of breaches of data protection law or if you are of the opinion that the processing of your personal data is unlawful, you have the right to lodge a complaint with a supervisory authority.
7. protection of your data when visiting our website
This site uses SSL or TLS encryption for security reasons and to protect the transmission of confidential content, such as orders or inquiries that you send to us as the site operator. You can recognize an encrypted connection by the fact that the address line of the browser changes from “http://” to “https://” and by the lock symbol in your browser line. If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
8. data collection on our website
a) Server log files
The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are
- Browser type and browser version
- Operating system used
- Referrer URL
- Host name of the accessing computer
- Time of the server request
- IP address (anonymized)
- Visited pages (subpages)
This data cannot be assigned to a specific person.
It is not possible for us to draw conclusions about your identity. The data in the log files is always stored separately from other personal data. This data is processed by us to deliver the content of our website and to ensure the functionality of our information technology systems, to optimize our website and to evaluate system security and stability. This data is not merged with other data sources. The basis for data processing is Art. 6 para. 1 lit. f GDPR; we have a legitimate interest in ensuring the error-free presentation and security of our website.
a) Contact form
If you send us inquiries via the contact form, your details from the inquiry form, including the contact details you provide there, will be stored for the purpose of processing the inquiry and recorded in our CRM system in the event of follow-up questions. We will not pass on this data without your consent.
This data is processed on the basis of Art. 6 para. 1 lit. b GDPR if your request is related to the performance of a contract or is necessary for the implementation of pre-contractual measures. In all other cases, the processing is based on our legitimate interest in the effective processing of the inquiries addressed to us (Art. 6 para. 1 lit. f GDPR) or on your consent (Art. 6 para. 1 lit. a GDPR) if this has been requested. We will retain the data you provide on the contact form until you request its deletion, revoke your consent for its storage, or the purpose for its storage no longer pertains (e.g. after fulfilling your request). Mandatory statutory provisions – in particular retention periods – remain unaffected.
9. analysis tools and tools from third-party providers
a) Cookies
We use so-called cookies on our website. Cookies are small text files that are stored on your end device and saved by your browser. They serve to make the offer on this website more user-friendly, effective and secure.
The cookies used on this website are so-called “session cookies”. These are automatically deleted from your device at the end of your visit. Other cookies remain stored on your device until you delete them. These cookies enable us to recognize your browser on your next visit. You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general and activate the automatic deletion of cookies when closing the browser. If cookies are deactivated, the functionality of this website may be restricted. Information on settings for cookies can be found in the operating instructions for the browser you are using.
Cookies that are required to carry out the electronic communication process or to provide certain functions you wish to use (e.g. shopping cart function, registration) are stored on the basis of Art. 6 para. 1 lit. f GDPR. As the website operator, we have a legitimate interest in the storage of cookies for the technically error-free and optimized provision of our services. Insofar as other cookies (e.g. cookies to analyze your surfing behavior) are stored, they are treated separately in this privacy policy.
Note on data transfer to the USA and other third countries:
Among other things, tools from companies based in the USA or other third countries that are not secure under data protection law are integrated on our website. If these tools are active, your personal data may be transferred to these third countries and processed there. We would like to point out that no level of data protection comparable to that in the EU can be guaranteed in these countries. For example, US companies are obliged to hand over personal data to security authorities without you as the data subject being able to take legal action against this. It can therefore not be ruled out that US authorities (e.g. secret services) may process, evaluate and permanently store your data on US servers for surveillance purposes. We have no influence on these processing activities.
b) LinkedIn
We only use the LinkedIn button integrated into our pages as a hyperlink to our LinkedIn page. If you click on the LinkedIn button while you are logged into your LinkedIn account, LinkedIn can assign the visit to our pages to your user account. We would like to point out that, as the provider of the LinkedIn fan page, we have no knowledge of the content of the transmitted data or its use by LinkedIn.
You can find further information on this in LinkedIn’s data protection information at https://de.linkedin.com/legal/privacy-policy?
If you do not want LinkedIn to be able to associate your visit to our pages with your user account, please log out of your LinkedIn user account.
c) Google Analytics
Our website uses Google Analytics, a web analysis service of Google Inc (“Google”). Google Analytics uses “cookies”, which are text files placed on your computer, to help the website analyze how users use the site. The information generated by the cookie about your use of the website (including your IP address) will be transmitted to and stored by Google on servers in the United States. Google will use this information for the purpose of evaluating your use of the website, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. Google may also transfer this information to third parties where required to do so by law, or where such third parties process the information on Google’s behalf. Google will not associate your IP address with any other data held by Google. You may refuse the use of cookies by selecting the appropriate settings on your browser, however please note that if you do this you may not be able to use the full functionality of this website. By using this website, you consent to the processing of data about you by Google in the manner and for the purposes set out above.
You can object to the collection and use of your IP address by Google Analytics at any time with effect for the future. You can find more information on this at http://tools.google.com/dlpage/gaoptout?hl=de. Please note that on our website Google Analytics has been extended by the code “gat._anonymizeIp();” to ensure anonymized collection of IP addresses.”
d) Google reCAPTCHA
We use “Google reCAPTCHA” (hereinafter “reCAPTCHA”) on this website. The provider is Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland. The purpose of reCAPTCHA is to check whether the data input on this website (e.g. in a contact form) is made by a human or by an automated program. For this purpose, reCAPTCHA analyzes the behavior of the website visitor based on various characteristics. This analysis begins automatically as soon as the website visitor enters the website. For the analysis, reCAPTCHA evaluates various information (e.g. IP address, time spent on the website by the website visitor or mouse movements made by the user). The data collected during the analysis is forwarded to Google.
The reCAPTCHA analyses run completely in the background. Website visitors are not informed that an analysis is taking place.
The data is stored and analyzed on the basis of Art. 6 para. 1 lit. f GDPR. The website operator has a legitimate interest in protecting its website from abusive automated spying and SPAM. If a corresponding consent has been requested, the processing is carried out exclusively on the basis of Art. 6 para. 1 lit. a GDPR. Consent can be revoked at any time.
For more information about Google reCAPTCHA, please refer to the Google Privacy Policy and the Google Terms of Use at the following links: https://policies.google.com/privacy?hl=de and https://policies.google.com/terms?hl=de.
e) Newsletter – Mailchimp
You have the option of subscribing to our newsletter on our website. We only send newsletters to recipients who have consented to receive the newsletter and in accordance with the statutory provisions. To subscribe to our newsletter, you must provide an e-mail address. We may collect additional data, for example to personalize our newsletter. However, this information is voluntary.
Our newsletter is only sent after the double opt-in procedure has been completed. If visitors to our website decide to subscribe to our newsletter, they will receive a confirmation e-mail, which serves to prevent the misuse of false e-mail addresses and to prevent the newsletter from being sent by a simple, possibly inadvertent click. You can unsubscribe from our newsletter at any time in the future. An unsubscribe link (opt-out link) is included at the end of each newsletter. We are obliged to provide proof that our subscribers actually wanted to receive the newsletter. For this purpose, we collect and store the IP address and the time of subscription and unsubscription.
The purpose of processing your data for the newsletter is marketing, customer loyalty and customer acquisition, analysis and evaluation of the campaign.
The legal basis is exclusively your consent in accordance with Art. 6 para. 1 lit. a GDPR
The newsletter is sent using the mailing service provider ‘MailChimp’, a newsletter platform of the US provider Rocket Science Group, LLC, 675 Ponce De Leon Ave NE #5000, Atlanta, GA 30308, USA.
f) Google Maps
Our website uses the Google Maps service. This allows us to show you interactive maps directly on the website and enables you to use the map function conveniently. When you visit the website, Google receives the information that you have accessed the corresponding subpage of our website. This occurs regardless of whether Google provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be assigned directly to your account. If you do not wish your data to be associated with your Google profile, you must log out before activating the button. Google stores your data as usage profiles and uses them for the purposes of advertising, market research and/or the needs-based design of its website. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact Google to exercise this right. For more information on the purpose and scope of data collection and its processing by Google, as well as further information on your rights in this regard and setting options to protect your privacy, please visit: www.google.de/intl/de/policies/privacy.
g) Teamviewer
We use the Team Viewer remote maintenance tool for support with our customers. This is a tool from TeamViewer Germany GmbH, Jahnstraße 30, 73037 Göppingen, Germany.
TeamViewer collects all the data required to establish a connection. TeamViewer also processes the duration of the conference, the start and end (time) of participation in the conference, the number of participants and other “context information” in connection with the communication process (metadata).
Furthermore, TeamViewer processes all technical data required for the processing of online communication. This includes, in particular, IP addresses, MAC addresses, device IDs, device type, operating system type and version, client version, camera type, microphone or speaker and the type of connection.
If content is exchanged, uploaded or otherwise made available within TeamViewer, it is also stored on the servers of the tool providers. Such content includes, in particular, cloud recordings, chat/instant messages, voicemails, uploaded photos and videos, files, whiteboards and other information shared while using the service.
h) Vimeo platform
Vimeo content is integrated by including a JavaScript tag. By simply inserting a code provided by Vimeo into the code of a website, the content is displayed and its layout is reloaded from the Vimeo servers. In order to be able to play the Vimeo content, we require your consent (Art. 6 para. 1 lit. a) EU GDPR), which you can give – if you have not already given it as part of your cookie selection – via the button in the area of the respective video. By clicking on the play button, you consent to your IP address being transmitted to Vimeo (Vimeo, LLC555 West 18th Street New York, NY 10011 United States) and to the provider setting cookies in your browser.
i) Clarity Microsoft
This website uses Clarity, a web analysis tool from Microsoft https://clarity.microsoft.com/, to record individual visits (only with anonymized IP addresses). This creates a log of mouse movements and clicks with the intention of analyzing website visits and deriving potential improvements for the website. The information is not personal and is not passed on.
j) Google Tag Manager
We use the Google Tag Manager on our website. The data that is transmitted to Google does not contain any IP addresses or measurement IDs that are linked to a specific person. Google only uses the collected data to monitor the stability of the system and to obtain data for diagnosis. Further information on this topic can be found here: https://support.google.com/tagmanager/answer/9323295?hl=de
10. topicality and amendment of the data protection information
The data protection information was amended in October 2022 and corresponds to the current status. We reserve the right to adapt it accordingly in the event of changes.