Data security and privacy policy
Privacy Notice and Legal Disclosures
Last updated at: 30.08.2024
Information about Personal Data Collection and Provider Identification on this Website
Notice: This website contains exclusively the privacy policy for the Lindera GmbH website! The privacy policy for the digital care application (DiPA) – LINDERA Mobility Analysis App can be found here.
The following information describes our collection of personal data when using this website. Personal data includes all information that can be personally attributed to you, such as name, address, email addresses, and user behavior.
The data controller under Art. 4 No. 7 EU General Data Protection Regulation (GDPR) is Lindera GmbH, Modersohnstr. 36, 10245 Berlin, Germany, hello@lindera.de (see Legal Notice).
Notice Regarding Compliance with ISO 13485 and ISO 27001 as well as MDR 2017/745
Lindera GmbH operates as a manufacturer of medical devices in compliance with the requirements of Regulation (EU) 2017/745 on medical devices (MDR) as well as the international standards ISO 13485 for Quality Management Systems (QMS) and ISO 27001 for Information Security Management Systems (ISMS). These certifications ensure that our products and processes meet the highest quality and safety standards and that the protection of your personal data is always guaranteed according to the strictest regulations.
1. Data Controller and Data Protection Officer
Data Controller for data processing on this website: Lindera GmbH, Modersohnstr. 36, 10245 Berlin, Germany, Email: hello@lindera.de
Data Protection Officer: Ms. Attorney Nicole Motiee Tehrani, reachable at: info@ap-datenschutz.de
Data Protection Officer Details:
Nicole Motiee Tehrani
ap datenschutz GmbH
Hohenstaufenring 8
50674 Cologne, Germany
Phone: +49 221 99989 030
Fax: +49 221 423 2785 -9
Email: info@ap-datenschutz.de
Responsible Supervisory Authority: Berlin Commissioner for Data Protection and Information Security
Alt-Moabit 59-61
10555 Berlin, Germany
Phone: +49 (0) 30 13889-0
Fax: +49 (0) 30 2155050
Email: mailbox@datenschutz-berlin.de
If we use commissioned service providers for individual functions of our services or wish to use your data for other purposes, we will inform you in detail about the respective processes below.
We will specify detailed criteria and storage duration.
Your Data Protection Rights
You have the following rights regarding your personal data:
- Right to information
- Right to correction or deletion
- Right to restriction of processing
- Right to object to processing
- Right to data portability
If you have given consent for data use, you can withdraw this at any time. If the lawfulness of processing is based on consent, it remains valid until withdrawal is exercised.
Please direct all information requests, access requests, or objections to data processing via email to datenschutz@lindera.de or to the address mentioned in Section 1.
You may request deletion of your data at any time. Legal retention periods may exist that allow us to retain your data until expiration of such periods.
If your data is incorrect, you have the right to request correction. We will comply with this request immediately.
You have the right to receive your personal data provided to us in a readable format, as far as technically possible, to make it available to another company (right to data portability).
You have the right to file a complaint with the supervisory authority responsible for you. A list of data protection officers and their contact details can be found at: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html
2. Collection and Processing of Personal Data
2.1 Data for Informational Website Use
When using the website purely for information purposes, meaning when you do not register or otherwise transmit information to us, we collect only the personal data that your browser transmits to our server. When you wish to view our website, we collect the following data that is technically necessary to display our website and ensure its stability and security (legal basis is Art. 6(1)(1)(f) GDPR):
For purely informational use of our website, we automatically collect the following data that your browser transmits to our server:
- IP address
- Date and time of request
- Time zone difference to Greenwich Mean Time (GMT)
- Content of request (specific webpage)
- Access status/HTTP status code
- Amount of data transferred
- Website from which the request originates
- Browser
- Operating system and its interface
- Language and version of browser software
Legal Basis: Art. 6(1)(1)(f) GDPR.
2.2 Data When Contacting Us
When you contact us via email or contact form, we store the data you provide (your email address, name, and possibly your phone number) to process your inquiry.
Legal Basis: Art. 6(1)(1)(a) GDPR.
2.3 Data Processing When Using LINDERA Mobility Analysis App
When you use the LINDERA Mobility Analysis App, additional specific data is collected. This is explained in the privacy policy "LINDERA Mobility Analysis App" upon first use of the app.
Detailed information about privacy provisions for the "LINDERA Mobility Analysis App" can be found here.
Legal Basis: Art. 6(1)(a) GDPR and Art. 6(1)(b) GDPR.
2.4 Applicant Data
With our online presence jobs.lindera.de, we offer open positions. When you apply for a position, we will store your application documents received by mail or email until the application process is completed.
Should we not select you, we will destroy your application documents four months after the end of the application process. We rely on our legitimate interest in efficient legal defense according to Art. 6(1)(1)(f) GDPR in conjunction with § 21(5) AGG. The preclusion period for such lawsuits is 2 months.
Processing of your applicant data is based on § 26(1) BDSG, as it is necessary for establishing an employment relationship.
Legal Basis: § 26(1) BDSG.
3. Your Rights, Particularly Information and Withdrawal
You have the following rights regarding your personal data:
- Right to information (Art. 15 GDPR): You have the right to request information about your personal data processed by us.
- Right to correction (Art. 16 GDPR): You have the right to immediately request correction of incorrect or completion of your personal data stored by us.
- Right to deletion (Art. 17 GDPR): You can request deletion of your personal data stored by us, provided no legal retention obligations prevent this.
- Right to restriction of processing (Art. 18 GDPR): You have the right to request restriction of processing your personal data.
- Right to object (Art. 21 GDPR): You can object to processing of your personal data.
- Right to data portability (Art. 20 GDPR): You have the right to request transmission of your data in a structured, common and machine-readable format.
Right to complain: You have the right to file a complaint with your data protection supervisory authority about our processing of your personal data (Art. 77 GDPR).
4. Data Security
We maintain current technical measures to ensure data security, particularly to protect your personal data from dangers during data transmission and from access by third parties. These are adjusted according to current state of technology.
5. Cookies
5.1 General Information
Our website uses cookies. Cookies are small files stored on your device through which certain information flows to us. Such cookies are necessary so you can move freely on the website and use its features; this includes access to secure areas of the website. Through cookies, we can track who has visited the website(s) and derive from this how often certain webpages are visited and which parts of the site enjoy particular popularity. Session cookies store information about your activities on our website.
5.2 Types of Cookies
We use the following types of cookies:
- Transient cookies: These are automatically deleted when you close the browser.
- Persistent cookies: These are automatically deleted after a predetermined duration.
- Third-party cookies: These originate from third-party providers and are not set by us.
Transient cookies are automatically deleted when you close the browser. This includes session cookies in particular. These store a so-called session ID, with which various requests from your browser can be assigned to the common session. This allows your computer to be recognized when you return to the website. Session cookies are deleted when you log out or close the browser.
Persistent cookies are automatically deleted after a predetermined duration, which can vary depending on the cookie. You can delete cookies in your browser's security settings at any time. You can configure your browser settings according to your wishes and, for example, decline acceptance of third-party cookies or all cookies. We point out that you may not be able to use all functions of this website.
Legal Basis: Art. 6(1)(a) GDPR.
5.3 Cookie Settings
Here you can manage your consents:
[Cookie Settings Interface Would Appear Here]
You can adjust your cookie settings at any time via our cookie banner. You have the right to object to the use of certain cookies. You can also do this here.
List of cookies used on this website:
Necessary Essential cookies enable basic functions and are required for proper website operation.
Statistics Statistics cookies collect information anonymously. This information helps us understand how our visitors use our website.
Google Analytics
Name | Google Analytics |
---|---|
Provider | Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland |
Purpose | Google cookie for website analysis. Generates statistical data about how visitors use the website. |
Privacy Policy | https://policies.google.com/privacy?hl=de |
Cookie Name | _ga,_gat,_gid |
Cookie Duration | 2 Months |
Marketing Marketing cookies are used by third-party providers or publishers to display personalized advertising. They do this by tracking visitors across websites.
External Media Content from video platforms and social media platforms is blocked by default. When cookies from external media are accepted, access to this content no longer requires manual consent.
Name | |
---|---|
Provider | Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland |
Purpose | Used to unlock Facebook content |
Privacy Policy | https://www.facebook.com/privacy/explanation |
Host(s) | .facebook.com |
Name | |
---|---|
Provider | Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland |
Purpose | Used to unlock Instagram content |
Privacy Policy | https://www.instagram.com/legal/privacy/ |
Host(s) | .instagram.com |
Cookie Name | pigeon_state |
Cookie Duration | Session |
X (Formerly Twitter)
Name | X |
---|---|
Provider | X International Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07, Ireland |
Purpose | Used to unlock X content |
Privacy Policy | https://x.com/de/privacy |
Host(s) | .twimg.com, .twitter.com |
Cookie Name | __widgetsettings, local_storage_support_test |
Cookie Duration | Unlimited |
YouTube
Name | YouTube |
---|---|
Anbieter | Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland |
Zweck | Used to unlock YouTube content |
Datenschutzerklärung | https://policies.google.com/privacy |
Host(s) | google.com |
Cookie Name | NID |
Cookie Laufzeit | 6 Months |
Rechtsgrundlage: Art. 6 Abs. 1 lit. c DSGVO.
6. Use of IT Service Providers
Our IT service providers have access to our stored data to fix errors and enable us to implement required technical and organizational measures. We rely on our legitimate interest in securing our IT according to Art. 6(1)(1)(f) GDPR or fulfillment of legal obligations according to Art. 6(1)(1)(c) GDPR.
The IT service provider(s) were carefully selected and commissioned in writing. They are bound by our instructions and are regularly monitored by us. Service providers will not share this data with third parties.
No data transfer outside the EU/EEA area takes place.
Legal Basis: Art. 28 GDPR.
7. Cloud Usage
Our website is hosted and operated on Hetzner Cloud. The server location is exclusively in Nuremberg, Germany. Hetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen, Germany Website: https://www.hetzner.com
8. Social Media
Our website contains links to external social media pages. Once you click these links, data is transmitted to the respective provider. Responsibility for data processing then lies with the respective provider. However, these are merely links to external websites of third-party social media providers and not plugins (extensions). Consequently, when visiting our website, no connections are established or personal data transmitted to third-party providers. When clicking the respective button marked with the provider's symbol, you are redirected to that provider's website. You leave our website at that moment. If you have questions about data collection by third-party providers, please read the privacy policies provided by the third-party providers. We reference the following social media:
Our website references the social network facebook.com via the "f" button, whose operator for users outside the USA and Canada is Facebook Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, D2 Dublin, Ireland.
More information about privacy can be found here: https://www.facebook.com/about/privacy/
Facebook processes your data outside the European Union and European Economic Area to its parent company Meta Platforms, Inc. Data transmission of personal data to a so-called third country requires compliance with provisions of §§ 44 ff. GDPR to guarantee the protection level ensured in the EU.
Transmission of personal data to the USA is based on an adequacy decision of the EU Commission (Adequacy decision for the EU-US Data Privacy Framework of 10.07.2023) according to Art. 45(1) GDPR, the so-called EU-US Data Privacy Framework (DPF). Meta Platforms, Inc. can only base processing of personal data on Art. 45(1) GDPR if registered in the list of participating organizations according to Article 1 DPF (list available at: https://www.dataprivacyframework.gov/). Meta Platforms, Inc. is registered in the list of participating companies.
Instagram is a service of Instagram Inc., 1601 Willow Road, Menlo Park, CA, 94025, USA. More information can be found in Instagram's privacy policy: http://instagram.com/about/legal/privacy/.
[Similar DPF language as Facebook]
LinkedIn Corporation
2029 Stierlin Court, Mountain View, California 94043, USA. LinkedIn ensures comparable data protection level for data transfer to the parent company in the USA through conclusion of so-called Standard Data Protection Clauses (SCCs) according to Art. 46(2) GDPR. More information available at: http://www.linkedin.com/legal/privacy-policy
X (formerly Twitter)
By clicking the button with the bird symbol, you reach the microblogging service of X International Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07, Ireland. Privacy information can be found here: https://x.com/privacy
YouTube Integration
We have embedded YouTube videos in our online offering that are stored on http://www.YouTube.com and can be played directly from our website. Provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google"). All videos are embedded in "enhanced privacy mode," meaning no data about you as a user is transmitted to YouTube if you don't play the videos. Only when you play videos is the data mentioned in paragraph 2 transmitted. We have no influence on this data transmission.
By visiting the website, YouTube (and thus always Google) receives information that you have accessed the corresponding subpage of our website. Additionally, data mentioned in § 4 of this declaration is transmitted. This occurs regardless of whether YouTube provides a user account through which you are logged in, or whether no user account exists. If you are logged in to Google, your data is directly assigned to your account. If you don't wish assignment to your YouTube profile, you must log out before activating the button. YouTube stores your data as usage profiles and uses them for advertising, market research and/or needs-based design of its website. Such evaluation occurs particularly (even for non-logged-in users) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to creation of these user profiles, whereby you must contact YouTube to exercise this right.
Legal Basis: Art. 6(1)(1)(a) GDPR for sharing personal data with YouTube based on your consent.
More information about purpose and scope of data collection and processing by YouTube can be found in the privacy policy: https://policies.google.com/privacy
9. Web Tracking & Analysis: Google Analytics
This website uses Google Analytics, a web analytics service of Google Ireland Limited ("Google"), provided you have given consent. Google Analytics uses "cookies": text files stored on your computer that enable analysis of your website usage. Information generated by cookies about your use of this website is usually transmitted to and stored on a Google LLC server in the USA.
In case of IP anonymization activation on this website, your IP address is truncated by Google within member states of the European Union or other contracting states of the European Economic Area agreement beforehand. Only in exceptional cases is the full IP address transmitted to a Google LLC server in the USA and truncated there. On behalf of this website's operator, Google will use this information to evaluate your website usage, compile reports about website activities, and provide other services related to website usage and internet usage to the website operator.
The IP address transmitted by your browser as part of Google Analytics is not merged with other Google data.
You can prevent cookie storage through appropriate browser software settings; however, we note that in this case you may not be able to use all functions of this website fully. You can also prevent collection of data generated by cookies related to your website usage (including your IP address) to Google and processing of this data by Google by downloading and installing the browser plugin available at: http://tools.google.com/dlpage/gaoptout
This website uses Google Analytics with the extension "_anonymizeIp()." This causes IP addresses to be processed in truncated form, excluding personal reference. Insofar as collected data about you has personal reference, this is immediately excluded and personal data thus immediately deleted.
We use Google Analytics to analyze our website usage and thereby regularly improve it. Through obtained statistics, we can improve our offering and make it more interesting for you as a user.
Legal Basis: Art. 6(1)(1)(a) GDPR based on your consent.
Provider Information: Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Ireland Terms of Use: http://www.google.com/analytics/terms/ Privacy Policy: https://policies.google.com/privacy
This website also uses Google Analytics for cross-device analysis of visitor flows conducted via User-ID. You can deactivate cross-device analysis of your usage in your customer account under "My Data," "personal data."
Google Tag Manager Usage
Google Tag Manager is a tool that allows marketers to manage website tags through an interface. Provider is Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland ("Google").
The Tag Manager tool itself (which implements tags) is a cookieless domain and does not collect personal data. The tool triggers other tags that may collect data. Google Tag Manager does not access this data. If deactivation has been made at domain or cookie level, this persists for all tracking tags implemented with Google Tag Manager. For more information see: https://www.google.com/analytics/terms/tag-manager/
Legal Basis: Art. 6(1)(1)(a) GDPR for sharing personal data with Google based on your consent.
10. Use of LINDERA Mobility Analysis App
On our website, we advertise our mobile app, the LINDERA Mobility Analysis App. Privacy information for app usage is provided upon first use.
The privacy policy for the LINDERA Mobility Analysis App can be found here.
Installation occurs either via Google Play Store (Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Privacy Policy: https://policies.google.com/privacy) or App Store (Provider: Apple Distribution International Ltd., Hollyhill Industrial Estate, Hollyhill, Cork, Republic of Ireland; Privacy Policy: https://www.apple.com/legal/privacy/).
11. Use of jQuery
Our website uses the JavaScript extension jQuery, which is loaded via the website code.jquery.com. In this regard, program libraries are called from StackPath servers. Provider is The OpenJS Foundation, 1 Letterman Drive, Building D, Suite D4700, San Francisco, CA 94129, USA.
When calling a webpage, your browser loads the required program libraries into your browser cache. For this purpose, your browser must establish a connection to jQuery servers located in the USA. Use of jQuery is in the interest of optimized and appealing presentation of our online offerings. This represents a legitimate interest within the meaning of Art. 6(1)(1)(f) GDPR.
jQuery ensures comparable data protection level for data transfer to the USA through conclusion of so-called Standard Data Protection Clauses according to Art. 46(2)(c) GDPR.
More information about jQuery can be found at www.jquery.com.
12. Newsletter
With your consent, you can subscribe to our newsletter, through which we inform you about our current interesting offers. The advertised goods and services are named in the consent declaration.
For newsletter registration, we use the so-called double-opt-in procedure. This means we send you an email to the provided email address after registration, asking you to confirm that you wish to receive the newsletter. If you don't confirm your registration within 24 hours, your information is blocked and automatically deleted after one month. Additionally, we store your respective IP addresses and times of registration and confirmation. The purpose of this procedure is to prove your registration and potentially clarify possible misuse of your personal data. Legal basis is Art. 6(1)(1)(f) GDPR.
Required information for newsletter delivery includes name, email address, phone number, and company. After your confirmation, we store your email address for newsletter delivery purposes. Legal basis is Art. 6(1)(1)(a) GDPR.
You can withdraw your consent for newsletter delivery at any time and unsubscribe from the newsletter. You can declare withdrawal by clicking the link provided in each newsletter email, via email to service@lindera.de, or through a message to the contact data provided in the legal notice.
The newsletter contains no additional web tracking but occurs only as a simple email.
13. Changes to This Privacy Policy
We reserve the right to update this privacy policy at any time according to legal provisions. The current version is available on our website.
14. Other
Data Processing Agreement by Lindera GmbH – If you need a data processing agreement, please send us your request via email.