Privacy Policy
1) INFORMATION ABOUT THE COLLECTION OF PERSONAL DATA AND CONTACT DETAILS OF THE RESPONSIBLE PARTY
1.1
We are pleased that you are visiting our website and thank you for your interest. Below, we inform you about the handling of your personal data when using our website. Personal data refers to all data that can personally identify you.
1.2
The responsible party for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is MaxoraBuy. The responsible party for processing personal data is the individual or legal entity that alone or jointly determines the purposes and means of processing personal data.
1.3
For security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries to the responsible party), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the “https://” prefix and the padlock symbol in your browser’s address bar.
2) DATA COLLECTION WHEN VISITING OUR WEBSITE
When you visit our website for informational purposes only, without registering or otherwise providing information, we only collect data that your browser transmits to our server (known as "server log files"). When you visit our website, we collect the following data, which is technically necessary for us to display the website:
-
The website visited
-
Date and time of access
-
Amount of data sent in bytes
-
Source/referral from which you accessed the site
-
Browser used
-
Operating system used
-
IP address (if applicable: in anonymized form)
Processing is carried out in accordance with Art. 6(1)(f) GDPR based on our legitimate interest in improving the stability and functionality of our website. The data will not be shared or used for other purposes. However, we reserve the right to review the server log files later if there are concrete indications of unlawful use.
3) COOKIES
To enhance the attractiveness of our website and enable certain functions, we use cookies on various pages. Cookies are small text files stored on your device. Some of the cookies we use are deleted after you close your browser (session cookies). Other cookies remain on your device and allow us or our partner companies (third-party cookies) to recognize your browser on your next visit (persistent cookies). Persistent cookies are automatically deleted after a specified duration, which may vary depending on the cookie.
Some cookies simplify the ordering process by storing settings (e.g., remembering the contents of a virtual shopping cart for a future visit). If personal data is processed through cookies, this is done in accordance with Art. 6(1)(b) GDPR for contract execution or Art. 6(1)(f) GDPR to protect our legitimate interest in the best possible functionality and a customer-friendly website experience.
If we collaborate with advertising partners, who place third-party cookies on your device, you will be informed separately in the sections below.
You can configure your browser to notify you about cookie settings and individually decide whether to accept them or to exclude cookies for specific cases or in general. Each browser manages cookie settings differently, as described in its help menu:
-
Internet Explorer: Microsoft Support
-
Firefox: Mozilla Support
-
Chrome: Google Support
-
Safari: Apple Support
-
Opera: Opera Help
Please note that if you do not accept cookies, some functions of our website may be limited.
4) CONTACTING US
When you contact us (e.g., via contact form or email), we collect personal data. The specific data collected is evident from the respective contact form. This data is used solely for processing your request and the associated technical administration. The legal basis for this processing is our legitimate interest in responding to your request per Art. 6(1)(f) GDPR. If your inquiry aims to conclude a contract, Art. 6(1)(b) GDPR serves as an additional legal basis.
Your data will be deleted once your inquiry has been fully processed, provided there are no legal retention obligations preventing deletion.
5) DATA PROCESSING WHEN OPENING A CUSTOMER ACCOUNT AND CONTRACT EXECUTION
In accordance with Art. 6(1)(b) GDPR, personal data is collected and processed if you provide it to us for contract fulfillment or when opening a customer account. The specific data collected is visible in the respective input forms. You can delete your customer account at any time by sending a request to the responsible party listed above.
After the contract is fully processed, or your customer account is deleted, your data will be restricted for further processing and deleted after statutory retention periods, unless you have explicitly consented to further use of your data or we reserve the right to use your data within the legally permitted scope.
6) USE OF YOUR DATA FOR DIRECT ADVERTISING
6.1 Subscription to Our Email Newsletter
If you subscribe to our email newsletter, we will send you regular information about our offers. The only mandatory information required for sending the newsletter is your email address. The provision of further data is voluntary and serves to address you personally.
To send the newsletter, we use the double opt-in procedure, meaning we will only send you a newsletter once you have confirmed that you agree to receive it. You will receive a confirmation email asking you to verify your subscription.
By activating the confirmation link, you consent to the use of your personal data in accordance with Art. 6(1)(a) GDPR. You may unsubscribe at any time via the designated link in the newsletter or by contacting us directly. Your email address will then be promptly removed from our mailing list unless you have explicitly consented to further use of your data.
6.2 Email Advertising for Existing Customers
If you have provided us with your email address when purchasing goods or services, we reserve the right to regularly send you offers for similar goods or services from our range. This is based on our legitimate interest in personalized direct marketing per Art. 6(1)(f) GDPR.
You can object to the use of your email address for this purpose at any time by contacting us. The only cost incurred is the transmission cost at standard rates. After receiving your objection, we will cease sending you promotional emails.
7) DATA PROCESSING FOR ORDER PROCESSING
7.1
The personal data we collect will be passed on to the transport company responsible for delivery, insofar as this is necessary for the delivery of the goods. Your payment data will be forwarded to the authorized credit institution as part of the payment processing, provided that this is necessary for the payment transaction. If payment service providers are used, we will explicitly inform you about this below. The legal basis for the data transfer is Art. 6(1)(b) GDPR.
7.2 Use of Payment Service Providers (Payment Processors)
-
PayPal If you choose to pay via PayPal, credit card via PayPal, direct debit via PayPal, or – if offered – "purchase on account" or "installment payment" via PayPal, your payment data will be transferred to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter "PayPal"). The transfer is carried out in accordance with Art. 6(1)(b) GDPR and only to the extent necessary for payment processing.
PayPal reserves the right to conduct a credit check for the payment methods credit card via PayPal, direct debit via PayPal, or – if offered – "purchase on account" or "installment payment" via PayPal. For this purpose, your payment data may be transmitted to credit agencies in accordance with Art. 6(1)(f) GDPR based on PayPal's legitimate interest in assessing your payment ability. The result of the credit check in relation to the statistical probability of non-payment is used by PayPal for the purpose of deciding whether to provide the respective payment method. The credit check may include probability values (so-called score values), which are calculated based on scientifically recognized mathematical-statistical procedures. Address data is included in the calculation of score values, among other factors.
Further privacy-related information, including the credit agencies used, can be found in PayPal's privacy policy:https://www.paypal.com/de/webapps/mpp/ua/privacy-full
You may object to this processing of your data at any time by sending a message to PayPal. However, PayPal may still be entitled to process your personal data if this is necessary for contractual payment processing.
-
SOFORT If you select the "SOFORT" payment method, the payment transaction will be processed via the payment service provider SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany (hereinafter "SOFORT"), to whom we will pass on the information you provided during the ordering process, along with details about your order, in accordance with Art. 6(1)(b) GDPR. SOFORT GmbH is part of the Klarna Group (Klarna Bank AB (publ), Sveavägen 46, 11134 Stockholm, Sweden). The transfer of your data is carried out exclusively for the purpose of payment processing with SOFORT and only to the extent necessary for this purpose.
Further information on SOFORT's data protection policy can be found at:https://www.klarna.com/sofort/datenschutz
8) CONTACT FOR REVIEW REMINDER
We use your email address to send a one-time reminder to submit a review of your order for our review system, provided that you have given us your explicit consent during or after your order, in accordance with Art. 6(1)(a) GDPR.
You can revoke your consent at any time by notifying the data processing controller.
9) USE OF SOCIAL MEDIA: SOCIAL PLUGINS
9.1 Facebook Plugins with Shariff Solution
Special additional customs clearance fees and/or import duties are not included in the price and must be borne by the customer.
Our website uses social plugins ("plugins") of the social network Facebook, operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook").
To protect your data when visiting our website, these buttons are not unrestricted plugins but are only integrated using an HTML link. This integration ensures that when a page of our website containing such buttons is accessed, no connection is established with Facebook's servers. When you click the button, a new browser window opens and loads the Facebook page where you can interact with Facebook plugins (possibly after entering your login data).
Facebook Inc. is certified under the US-European "Privacy Shield" agreement, which ensures compliance with EU data protection standards.
For more information on Facebook’s data protection policies, please visit: https://www.facebook.com/policy.php
Our website uses so-called social plugins (“Plugins”) of the social network Google+, which is operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
To enhance the protection of your data when visiting our website, these buttons are not fully integrated as plugins but are embedded in the page using an HTML link. This type of integration ensures that when a page of our website containing such buttons is accessed, no connection is established with Google+ servers. If you click on the button, a new browser window opens and calls up the Google+ page, where you can interact with the plugins (after logging in if necessary).
Google LLC, based in the USA, is certified under the US-European data protection agreement “Privacy Shield,” which ensures compliance with the level of data protection required in the EU.
For details on the purpose and scope of data collection, further processing, and use of data by Google, as well as your rights and options for privacy protection, please refer to Google’s privacy policy:
https://www.google.com/intl/de/policies/privacy/
9.3 Instagram Plugin as a Shariff Solution
Our website uses so-called social plugins (“Plugins”) of the online service Instagram, operated by Instagram LLC, 1601 Willow Rd, Menlo Park, CA 94025, USA (“Instagram”).
To enhance the protection of your data when visiting our website, these buttons are not fully integrated as plugins but are embedded in the page using an HTML link. This ensures that when a page on our website containing such buttons is accessed, no connection is established with Instagram’s servers. If you click on the button, a new browser window opens and calls up the Instagram page, where you can interact with the plugins (after logging in if necessary).
Instagram LLC, based in the USA, is certified under the US-European data protection agreement “Privacy Shield,” ensuring compliance with the EU data protection standards.
For details on the purpose and scope of data collection, further processing, and use of data by Instagram, as well as your rights and options for privacy protection, please refer to Instagram’s privacy policy:
https://help.instagram.com/155833707900388/
10) ONLINE MARKETING
10.1 DoubleClick by Google
This website uses the online marketing tool DoubleClick by Google, operated by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“DoubleClick”).
DoubleClick uses cookies to serve relevant ads to users, improve campaign performance reports, or prevent users from seeing the same ad multiple times. Google tracks which ads appear in which browsers using a cookie ID, preventing duplicate displays. This processing is based on our legitimate interest in optimizing the marketing of our website according to Art. 6 (1) (f) GDPR.
Additionally, DoubleClick can record conversions using cookie IDs related to ad requests. This happens when a user views a DoubleClick ad and later visits the advertiser’s website using the same browser and makes a purchase. According to Google, DoubleClick cookies do not contain personal data.
Due to the marketing tools used, your browser automatically establishes a direct connection to Google’s server. We have no control over the scope and further use of data collected by Google through this tool. According to our knowledge, Google receives information that you visited a specific part of our website or clicked on one of our ads. If you are registered with a Google service, Google may link your visit to your account. Even if you are not registered or logged into Google, Google may obtain and store your IP address.
If you wish to opt out of this tracking, you can disable cookies for conversion tracking by setting your browser to block cookies from the domain www.googleadservices.com (https://www.google.de/settings/ads), but this setting will be deleted if you erase your cookies. Alternatively, you can visit the Digital Advertising Alliance at www.aboutads.info to learn more about setting preferences. You can also configure your browser to notify you before cookies are set and to allow cookies only on a case-by-case basis or block them entirely. However, this may limit the functionality of our website.
Google LLC, based in the USA, is certified under the US-European “Privacy Shield” agreement, ensuring compliance with EU data protection standards.
For more details on DoubleClick by Google’s privacy policy, visit:
https://www.google.de/policies/privacy/
10.2 Use of Google AdWords Conversion Tracking
This website uses the online advertising program “Google AdWords” and, within Google AdWords, conversion tracking provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
We use Google AdWords to promote our attractive offers on external websites using advertisements (Google AdWords). Based on data from advertising campaigns, we can determine the effectiveness of individual ads. Our goal is to display ads that interest you, enhance our website’s attractiveness, and ensure a fair cost calculation for advertising.
A cookie for conversion tracking is placed when a user clicks on a Google AdWords ad. Cookies are small text files stored on your computer. These cookies generally expire after 30 days and do not personally identify users. If a user visits certain pages on our website before the cookie expires, Google and we can recognize that the user clicked on the ad and was redirected to our site. Each Google AdWords customer receives a different cookie, meaning cookies cannot be tracked across multiple AdWords customers’ websites.
The data obtained from conversion cookies helps us generate statistics for AdWords customers who use conversion tracking. Customers learn how many users clicked on their ad and were redirected to a page containing a conversion tracking tag. However, they do not receive information that personally identifies users.
If you do not wish to participate in tracking, you can disable this feature by adjusting your browser settings to block the Google conversion tracking cookie. You will then be excluded from conversion tracking statistics.
We use Google AdWords based on our legitimate interest in targeted advertising as per Art. 6 (1) (f) GDPR.
Google LLC, based in the USA, is certified under the “Privacy Shield” agreement, ensuring compliance with EU data protection standards.
For more information on Google’s privacy policy, visit:
https://www.google.de/policies/privacy/
You can disable cookies for ad preferences permanently by adjusting your browser settings or downloading and installing the browser plugin available here:
https://www.google.com/settings/ads/plugin?hl=de
Please note that disabling cookies may limit certain website functions.
11) WEB ANALYSIS SERVICES
Google (Universal) Analytics
This website uses Google Analytics, a web analysis service provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). Google Analytics uses “cookies,” which are text files stored on your computer that enable an analysis of your use of the website. The information generated by the cookie about your use of this website (including the truncated IP address) is generally transmitted to a Google server in the USA and stored there.
This website uses Google Analytics exclusively with the extension “_anonymizeIp(),” which ensures that IP addresses are anonymized through truncation, preventing direct personal identification. Through this extension, your IP address is shortened by Google within member states of the European Union or other contracting states of the Agreement on the European Economic Area before transmission. Only in exceptional cases is the full IP address transmitted to a Google server in the USA and shortened there. In these exceptional cases, the processing is carried out in accordance with Article 6(1)(f) of the GDPR based on our legitimate interest in the statistical analysis of user behavior for optimization and marketing purposes.
On our behalf, Google will use this information to evaluate your use of the website, compile reports on website activity, and provide other services related to website usage and internet usage. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.
You can prevent the storage of cookies by adjusting your browser settings accordingly. However, please note that if you do so, you may not be able to use all functions of this website to their full extent. You can also prevent the collection of data generated by the cookie related to your use of the website (including your IP address) by Google, as well as the processing of this data by Google, by downloading and installing the browser plugin available at the following link:
Alternatively, you can click on the following link within mobile browsers to set an opt-out cookie that prevents future tracking by Google Analytics on this website. This opt-out cookie only works in this browser and for this domain. If you delete your cookies, you will need to click this link again: Disable Google Analytics.
Google LLC, based in the USA, is certified under the EU-U.S. Privacy Shield Agreement, ensuring compliance with EU data protection standards.
This website also uses Google Analytics for cross-device analysis of visitor flows through a User ID. Upon first visiting a page, the user is assigned a unique, permanent, and anonymized ID that is set across devices. This allows interaction data from different devices and sessions to be attributed to a single user. The User ID does not contain any personal data and does not transmit such data to Google.
You can object to data collection and storage via the User ID at any time with future effect. To do so, you must disable Google Analytics on all systems you use, for example, in another browser or on your mobile device.
Deactivation can be done using a Google browser plugin:
Alternatively, you can click on the following link within mobile browsers to set an opt-out cookie that prevents future tracking by Google Analytics on this website. This opt-out cookie only works in this browser and for this domain. If you delete your cookies, you will need to click this link again: Disable Google Analytics.
Further information on Universal Analytics can be found here:
Google Support - Universal Analytics
12) RETARGETING/ REMARKETING/ REFERRAL ADVERTISING
Facebook Custom Audience via Pixel Method
This website uses the “Facebook Pixel” from Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA (“Facebook”). With explicit consent, this allows the tracking of user behavior after they have viewed or clicked on a Facebook advertisement.
This process helps evaluate the effectiveness of Facebook ads for statistical and market research purposes and can contribute to optimizing future advertising efforts.
The collected data remains anonymous to us and does not provide insights into the identity of users. However, Facebook stores and processes the data, making it possible to connect the information to a specific user profile. Facebook may use this data for its own advertising purposes in accordance with its Data Usage Policy (https://www.facebook.com/about/privacy/).
This allows Facebook and its partners to display advertisements on and outside of Facebook. A cookie may also be stored on your computer for this purpose. These processing activities occur only with explicit consent under Art. 6 (1) (a) GDPR.
Consent for the use of the Facebook Pixel can only be given by users over the age of 13. If you are younger, please obtain permission from your legal guardians.
Facebook Inc., based in the USA, is certified under the EU-U.S. Privacy Shield Agreement, which ensures compliance with EU data protection standards.
To disable the use of cookies on your computer, you can adjust your internet browser settings to prevent cookies from being stored in the future or to delete existing cookies. However, disabling cookies completely may result in some functions on our website no longer working properly.
You can also disable third-party cookies (e.g., Facebook) through the Digital Advertising Alliance at: https://www.aboutads.info/choices/.
Google AdWords Remarketing
Our website uses Google AdWords Remarketing, which allows us to advertise this website in Google search results and on third-party websites. The service provider is Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
For this purpose, Google places a cookie in your browser, which enables interest-based advertising based on a pseudonymous cookie ID and the pages you have visited. This processing is carried out on the basis of our legitimate interest in optimizing the marketing of our website in accordance with Art. 6 (1) (f) GDPR.
Further data processing occurs only if you have agreed to allow Google to link your internet and app browsing history with your Google account and to use this information for personalized ads across devices. If you are logged into Google while visiting our website, Google uses your data together with Google Analytics data to create and define cross-device remarketing target groups.
For this purpose, Google temporarily links your personal data with Google Analytics data to form target audiences.
You can permanently disable cookie-based advertising settings by downloading and installing the browser plugin available at:
https://www.google.com/settings/ads/onweb/
Alternatively, you can visit the Digital Advertising Alliance at www.aboutads.info to learn more about cookie settings and make necessary adjustments. Additionally, you can configure your browser to notify you about cookie placements and decide whether to accept them individually or block cookies in general. However, blocking cookies may limit the functionality of our website.
Google LLC, based in the USA, is certified under the EU-U.S. Privacy Shield Agreement, ensuring compliance with EU data protection standards.
For more information on Google’s advertising policies and data protection, visit:
https://www.google.com/policies/technologies/ads/
13) RIGHTS OF THE DATA SUBJECT
13.1 The applicable data protection law grants you, as the data subject, comprehensive rights regarding the processing of your personal data by the responsible party. Below, we inform you about these rights (rights to information and intervention):
• Right of access pursuant to Article 15 GDPR: You have the right to obtain information about your personal data processed by us, the purposes of processing, the categories of processed personal data, the recipients or categories of recipients to whom your data has been disclosed or will be disclosed, the planned storage period or the criteria for determining the storage period, the existence of a right to rectification, erasure, restriction of processing, objection to processing, the right to lodge a complaint with a supervisory authority, the source of your data if it was not collected directly from you, the existence of automated decision-making including profiling, and, if applicable, meaningful information about the logic involved as well as the scope and intended effects of such processing. You also have the right to be informed about the safeguards in place pursuant to Article 46 GDPR regarding the transfer of your data to third countries.
• Right to rectification pursuant to Article 16 GDPR: You have the right to request the immediate correction of inaccurate data concerning you and/or the completion of incomplete data stored by us.
• Right to erasure pursuant to Article 17 GDPR: You have the right to request the deletion of your personal data if the conditions of Article 17(1) GDPR are met. However, this right does not apply in particular when the processing is necessary for exercising the right to freedom of expression and information, for fulfilling a legal obligation, for reasons of public interest, or for asserting, exercising, or defending legal claims.
• Right to restriction of processing pursuant to Article 18 GDPR: You have the right to request the restriction of processing of your personal data if:
• The accuracy of your data is contested by you, for the period necessary to verify its accuracy.
• You oppose the deletion of your data due to unlawful processing and instead request the restriction of its use.
• You need your data for the assertion, exercise, or defense of legal claims, even though we no longer need it for processing purposes.
• You have objected to processing for reasons related to your particular situation, and it has not yet been determined whether our legitimate interests outweigh yours.
Rights Under the GDPR
Right to Information Pursuant to Article 19 GDPR:
If you have exercised your right to rectification, erasure, or restriction of processing against the controller, they are obligated to inform all recipients to whom your personal data has been disclosed about this rectification, erasure, or restriction of processing, unless this proves impossible or involves disproportionate effort. You also have the right to be informed about these recipients.
Right to Data Portability Pursuant to Article 20 GDPR:
You have the right to receive your personal data, which you have provided to us, in a structured, commonly used, and machine-readable format or to request the transfer of this data to another controller, where technically feasible.
Right to Withdraw Consent Pursuant to Article 7(3) GDPR:
You have the right to withdraw your consent to data processing at any time with effect for the future. Upon withdrawal, we will immediately delete the affected data, provided that further processing cannot be based on a legal ground that does not require consent. The withdrawal of consent does not affect the lawfulness of the processing carried out based on consent before its withdrawal.
Right to Lodge a Complaint Pursuant to Article 77 GDPR:
If you believe that the processing of your personal data violates the GDPR, you have the right to lodge a complaint with a supervisory authority, without prejudice to any other administrative or judicial remedy. This supervisory authority can be in the Member State of your residence, workplace, or the location of the alleged violation.
13.2 RIGHT TO OBJECT
IF WE PROCESS YOUR PERSONAL DATA BASED ON OUR OVERRIDING LEGITIMATE INTERESTS AS PART OF A BALANCING OF INTERESTS, YOU HAVE THE RIGHT TO OBJECT TO THIS PROCESSING AT ANY TIME FOR REASONS ARISING FROM YOUR PARTICULAR SITUATION, WITH EFFECT FOR THE FUTURE.
If you exercise your right to object, we will stop processing the affected data. However, further processing remains reserved if we can demonstrate compelling legitimate grounds for the processing that outweigh your interests, fundamental rights, and freedoms, or if the processing serves the establishment, exercise, or defense of legal claims.
If your personal data is processed by us for direct marketing purposes, you have the right to object at any time to the processing of your personal data for such advertising purposes. You can exercise your right to object as described above.
If you exercise your right to object, we will stop processing the affected data for direct marketing purposes.
14) Duration of Storage of Personal Data
The duration of storage of personal data is determined based on the respective statutory retention period (e.g., commercial and tax law retention periods). After the expiration of this period, the corresponding data is routinely deleted, provided that it is no longer required for contract fulfillment or initiation and/or there is no legitimate interest on our part in continued storage.