Stoxser Logo

Privacy Policy

Privacy Policy

1) Introduction and Contact Details of the Controller

1.1 We are pleased that you are visiting our website and thank you for your interest. In the following, we inform you about the handling of your personal data when using our website. Personal data is all data with which you can be personally identified.

1.2 The controller for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is AFI-Products GmbH, Meesdorferstrasse 20, 49328 Melle, Germany, Tel.: +49 5422-9618081, E-Mail: contact@stoxser.de. The controller for the processing of personal data is the natural or legal person who, alone or jointly with others, determines the purposes and means of the processing of personal data.

1.3 This website uses SSL or TLS encryption for security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries to the controller). You can recognize an encrypted connection by the character string "https://" and the lock symbol in your browser line.

2) Data Collection when Visiting our Website

When using our website for informational purposes only, i.e., if you do not register or otherwise transmit information to us, we only collect data that your browser transmits to the page server (so-called "server log files"). When you access our website, we collect the following data, which are technically necessary for us to display the website to you:

The processing takes place in accordance with Art. 6 Para. 1 lit. f GDPR on the basis of our legitimate interest in improving the stability and functionality of our website. No disclosure or other use of the data takes place. However, we reserve the right to subsequently check the server log files if concrete indications of illegal use become apparent.

3) Cookies

In order to make visiting our website attractive and to enable the use of certain functions, we use cookies, which are small text files that are stored on your end device. Some of these cookies are automatically deleted after closing the browser (so-called "session cookies"), while others remain on your end device for a longer period and enable the storage of page settings (so-called "persistent cookies"). In the latter case, you can see the storage period in the overview of the cookie settings of your web browser.

If personal data is processed by individual cookies used by us, the processing takes place in accordance with Art. 6 Para. 1 lit. b GDPR either for the performance of the contract, in accordance with Art. 6 Para. 1 lit. a GDPR in the case of a given consent, or in accordance with Art. 6 Para. 1 lit. f GDPR to safeguard our legitimate interests in the best possible functionality of the website and a customer-friendly and effective design of the page visit.

You can set your browser so that you are informed about the setting of cookies and can decide individually about their acceptance or exclude the acceptance of cookies for certain cases or generally.

Please note that if cookies are not accepted, the functionality of our website may be limited.

4) Contacting Us

When contacting us (e.g., via contact form or email), personal data will be processed – exclusively for the purpose of processing and responding to your inquiry and only to the extent necessary for this purpose.

The legal basis for processing this data is our legitimate interest in responding to your inquiry in accordance with Art. 6 Para. 1 lit. f GDPR. If your contact aims at concluding a contract, then the additional legal basis for processing is Art. 6 Para. 1 lit. b GDPR. Your data will be deleted when it can be inferred from the circumstances that the matter concerned has been conclusively clarified and provided that no statutory retention obligations conflict with this.

5) Data Processing when Opening a Customer Account

In accordance with Art. 6 Para. 1 lit. b GDPR, personal data will be collected and processed to the extent required, if you provide us with this data when opening a customer account. Which data is required for opening an account can be found in the input mask of the corresponding form on our website.

Your customer account can be deleted at any time by sending a message to the controller's address mentioned above. After deleting your customer account, your data will be deleted, provided that all contracts concluded through it have been completely processed, no statutory retention periods conflict with this, and we no longer have a legitimate interest in continued storage.

6) Comment Function

Within the comment function on this website, in addition to your comment, information about the time the comment was created and the commentator name you chose will be stored and published on this website. Furthermore, your IP address will be stored for security reasons to enable assignment to the author in case of illegal comments. Your email address will be stored for contacting you if a third party should object to your published content as illegal.

Legal bases for storing your data are Art. 6 Para. 1 lit. b and f GDPR. We reserve the right to delete comments if they are objected to as illegal by third parties.

7) Use of Customer Data for Direct Marketing

7.1 Subscription to our Email Newsletter

If you subscribe to our email newsletter, we will regularly send you information about our offers. The mandatory information for sending the newsletter is solely your email address. Providing further data is voluntary and will be used to address you personally. For newsletter dispatch, we use the so-called double opt-in procedure, which ensures that you only receive newsletters if you have expressly confirmed your consent to receive newsletters by activating a verification link sent to the email address provided.

By activating the confirmation link, you give us your consent for the use of your personal data in accordance with Art. 6 Para. 1 lit. a GDPR. In this context, we store your IP address registered by the Internet Service Provider (ISP) as well as the date and time of registration, to be able to trace any possible misuse of your email address at a later date. The data collected by us when you subscribe to the newsletter is used strictly for the intended purpose.

You can unsubscribe from the newsletter at any time via the link provided in the newsletter or by sending a message to the controller mentioned above. After unsubscribing, your email address will be immediately deleted from our newsletter distribution list, unless you have expressly consented to further use of your data or we reserve the right to further data use that is legally permitted and about which we inform you in this statement.

7.2 Product Availability Notification by Email

For temporarily unavailable items, you can sign up to receive email product availability notifications. In this case, we will send you a one-time email notification about the availability of the item you selected. The mandatory information for sending this notification is solely your email address. Providing further data is voluntary and may be used to address you personally. For email dispatch, we use the so-called double opt-in procedure, which ensures that you only receive a notification if you have expressly confirmed your consent by activating a verification link sent to the email address provided.

By activating the confirmation link, you give us your consent for the use of your personal data in accordance with Art. 6 Para. 1 lit. a GDPR. In this context, we store your IP address registered by the Internet Service Provider (ISP) as well as the date and time of registration, to be able to trace any possible misuse of your email address at a later date. The data collected by us when you subscribe to our email notification service for product availability is used strictly for the intended purpose.

You can unsubscribe from the availability notifications at any time by sending a message to the controller mentioned above. After unsubscribing, your email address will be immediately deleted from our distribution list set up for this purpose, unless you have expressly consented to further use of your data or we reserve the right to further data use that is legally permitted and about which we inform you in this statement.

8) Data Processing for Order Fulfillment

8.1 To the extent necessary for contract fulfillment for delivery and payment purposes, the personal data collected by us will be passed on to the commissioned transport company and the commissioned credit institution in accordance with Art. 6 Para. 1 lit. b GDPR.

If, on the basis of a corresponding contract, we owe you updates for goods with digital elements or for digital products, we process the contact data you provided when ordering (name, address, email address) to inform you personally about upcoming updates within the legally prescribed period in a suitable communication channel (e.g., by post or email) in accordance with Art. 6 Para. 1 lit. c GDPR. Your contact data will be used strictly for communications about updates owed by us and will only be processed by us to this extent as is necessary for the respective information.

For the processing of your order, we also cooperate with the following service provider(s) who support us entirely or partially in the execution of concluded contracts. Certain personal data will be transmitted to these service providers in accordance with the following information.

8.2 To fulfill our contractual obligations towards our customers, we work with external shipping partners.

We transmit your name and delivery address and, if necessary for delivery, your telephone number, exclusively for the purpose of goods delivery in accordance with Art. 6 Para. 1 lit. b GDPR to a shipping partner selected by us.

8.3 Use of special service providers for fulfillment

8.4 Amazon Fulfillment (FBA)

We use the following provider for order processing: Amazon EU S.a. r.l., 38 avenue John F. Kennedy, L-1855 Luxembourg.

Name, address, and, if applicable, other personal data will be transmitted to the provider in accordance with Art. 6 Para. 1 lit. b GDPR exclusively for the purpose of processing the online order. Your data will only be transmitted to the extent that this is actually necessary for the processing of the order.

8.5 Easybill

We use the following provider for order processing: easybill GmbH, Düsselstr. 21, 41564 Kaarst, Germany.

Name, address, and, if applicable, other personal data will be transmitted to the provider in accordance with Art. 6 Para. 1 lit. b GDPR exclusively for the purpose of processing the online order. Your data will only be transmitted to the extent that this is actually necessary for the processing of the order.

8.6 JTL

We use the following provider for order processing: JTL-Software-GmbH, Rheinstr. 7, 41836 Hückelhoven, Germany.

Name, address, and, if applicable, other personal data will be transmitted to the provider in accordance with Art. 6 Para. 1 lit. b GDPR exclusively for the purpose of processing the online order. Your data will only be transmitted to the extent that this is actually necessary for the processing of the order.

8.7 Transmission of personal data to shipping service providers

8.8 DHL

As a transport service provider, we use the following provider: DHL Paket GmbH, Sträßchensweg 10, 53113 Bonn, Germany.

We transmit your email address and/or telephone number in accordance with Art. 6 Para. 1 lit. a GDPR before the delivery of the goods for the purpose of coordinating a delivery date or for delivery notification to the provider, provided that you have given your express consent for this in the ordering process. Otherwise, for the purpose of delivery in accordance with Art. 6 Para. 1 lit. b GDPR, we only transmit the recipient's name and delivery address to the provider. The transmission only takes place to the extent that this is necessary for the delivery of the goods. In this case, prior coordination of the delivery date with the provider or the delivery notification is not possible.

Consent can be revoked at any time with effect for the future towards the above-mentioned controller or towards the provider.

8.9 GLS

As a transport service provider, we use the following provider: General Logistics Systems Germany GmbH & Co. OHG, GLS Germany-Straße 1 – 7, 36286 Neuenstein, Germany.

We transmit your email address and/or telephone number in accordance with Art. 6 Para. 1 lit. a GDPR before the delivery of the goods for the purpose of coordinating a delivery date or for delivery notification to the provider, provided that you have given your express consent for this in the ordering process. Otherwise, for the purpose of delivery in accordance with Art. 6 Para. 1 lit. b GDPR, we only transmit the recipient's name and delivery address to the provider. The transmission only takes place to the extent that this is necessary for the delivery of the goods. In this case, prior coordination of the delivery date with the provider or the delivery notification is not possible.

Consent can be revoked at any time with effect for the future towards the above-mentioned controller or towards the provider.

8.10 Use of Payment Service Providers (Payment Services)

8.11 Amazon Pay

On this website, one or more online payment methods of the following provider are available: Amazon Payments Europe s.c.a., 38 avenue J.F. Kennedy, L-1855 Luxembourg.

When selecting a payment method from the provider where you make an advance payment (e.g., credit card payment), your payment data communicated during the ordering process (including name, address, bank and payment card information, currency and transaction number) as well as information about the content of your order will be transmitted to this provider in accordance with Art. 6 Para. 1 lit. b GDPR. The transmission of your data in this case takes place exclusively for the purpose of payment processing with the provider and only to the extent that it is necessary for this.

8.12 Paypal

On this website, one or more online payment methods of the following provider are available: PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg.

When selecting a payment method from the provider where you make an advance payment (e.g., credit card payment), your payment data communicated during the ordering process (including name, address, bank and payment card information, currency and transaction number) as well as information about the content of your order will be transmitted to this provider in accordance with Art. 6 Para. 1 lit. b GDPR. The transmission of your data in this case takes place exclusively for the purpose of payment processing with the provider and only to the extent that it is necessary for this.

8.13 Paypal Checkout

This website uses PayPal Checkout, an online payment system from PayPal that consists of PayPal's own payment methods and local payment methods from third-party providers.

When paying via PayPal, credit card via PayPal, direct debit via PayPal, or – if offered – "Pay Later" via PayPal, we transmit your payment data within the framework of payment processing to PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg (hereinafter "PayPal"). The transmission takes place in accordance with Art. 6 Para. 1 lit. b GDPR and only to the extent that this is necessary for payment processing.

8.14 SOFORT

On this website, one or more online payment methods of the following provider are available: SOFORT GmbH, Theresienhöhe 12, 80339 Munich, Germany.

When selecting a payment method from the provider where you make an advance payment (e.g., credit card payment), your payment data communicated during the ordering process (including name, address, bank and payment card information, currency and transaction number) as well as information about the content of your order will be transmitted to this provider in accordance with Art. 6 Para. 1 lit. b GDPR. The transmission of your data in this case takes place exclusively for the purpose of payment processing with the provider and only to the extent that it is necessary for this.

9) Site Functionalities

9.1 ShopVote Graphics

Graphics elements from the following provider are integrated on our website to display external customer reviews and/or an externally awarded seal of quality: Blickreif GmbH, Schulstraße 46, 80634 Munich, Germany.

When you access a page of our website that contains such graphic elements, your browser establishes a direct connection to the provider's servers to load the elements correctly. In this process, certain browser information, including your IP address, is transmitted to the provider.

If personal data is processed in the process, this is done in accordance with Art. 6 Para. 1 lit. f GDPR on the basis of our legitimate interest in the optimal marketing of our offer and the appealing design of our website.

9.2 Trustami Seal of Trust

Graphics elements from the following provider are integrated on our website to display external customer reviews and/or an externally awarded seal of quality: Trustami GmbH, Schröderstraße 5, 10115 Berlin, Germany.

When you access a page of our website that contains such graphic elements, your browser establishes a direct connection to the provider's servers to load the elements correctly. In this process, certain browser information, including your IP address, is transmitted to the provider.

If personal data is processed in the process, this is done in accordance with Art. 6 Para. 1 lit. f GDPR on the basis of our legitimate interest in the optimal marketing of our offer and the appealing design of our website.

9.3 Google Web Fonts

This site uses so-called web fonts from the following provider for the uniform display of fonts: Google Ireland Limited, Gordon House, 4 Barrow St, Dublin, D04 E5W5, Ireland.

When you access a page, your browser loads the required web fonts into your browser cache to correctly display texts and fonts and establishes a direct connection to the provider's servers. In this process, certain browser information, including your IP address, is transmitted to the provider.

Data may also be transmitted to: Google LLC, USA.

The processing of personal data in the course of establishing a connection with the font provider will only be carried out if you have given us your express consent in accordance with Art. 6 Para. 1 lit. a GDPR. You can revoke your given consent at any time with effect for the future by deactivating this service via the "Cookie Consent Tool" provided on the website. If your browser does not support web fonts, a standard font from your computer will be used.

For the transmission of data to the USA, the provider relies on standard contractual clauses of the European Commission, which are intended to ensure compliance with the European level of data protection.

10) Tools and Other

Cookie Consent Tool

This website uses a "Cookie Consent Tool" to obtain effective user consent for cookies and cookie-based applications that require consent. The "Cookie Consent Tool" is displayed to users when they access the page in the form of an interactive user interface, on which consent for certain cookies and/or cookie-based applications can be given by checking a box. This ensures that all cookies/services requiring consent are only loaded if the respective user has given corresponding consent by checking a box. This ensures that such cookies are only set on the respective end device of the user if consent has been given.

The tool sets technically necessary cookies to save your cookie preferences. Personal user data is generally not processed here.

If, in individual cases, personal data (such as the IP address) is processed for the purpose of storing, assigning or logging cookie settings, this is done in accordance with Art. 6 Para. 1 lit. f GDPR on the basis of our legitimate interest in a legally compliant, user-specific and user-friendly consent management for cookies and thus in a legally compliant design of our website.

Another legal basis for the processing is also Art. 6 Para. 1 lit. c GDPR. As the controller, we are subject to the legal obligation to make the use of technically unnecessary cookies dependent on the respective user's consent.

We have concluded a data processing agreement with the provider that ensures the protection of our site visitors' data and prohibits unauthorized disclosure to third parties.

Further information on the operator and the setting options of the Cookie Consent Tool can be found directly in the corresponding user interface on our website.

11) Rights of the Data Subject

11.1

The applicable data protection law grants you the following data subject rights (rights to information and intervention) vis-à-vis the controller with regard to the processing of your personal data, whereby the legal basis referred to is for the respective exercise conditions:

11.2 Right to Object

IF WE PROCESS YOUR PERSONAL DATA ON THE BASIS OF OUR OVERRIDING LEGITIMATE INTEREST WITHIN THE SCOPE OF A BALANCING OF INTERESTS, YOU HAVE THE RIGHT TO OBJECT TO THIS PROCESSING AT ANY TIME FOR REASONS ARISING FROM YOUR PARTICULAR SITUATION, WITH EFFECT FOR THE FUTURE.

IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL CEASE PROCESSING THE AFFECTED DATA. HOWEVER, FURTHER PROCESSING REMAINS RESERVED IF WE CAN DEMONSTRATE COMPELLING LEGITIMATE GROUNDS FOR THE PROCESSING THAT OVERRIDE YOUR INTERESTS, RIGHTS AND FREEDOMS, OR IF THE PROCESSING SERVES THE ASSERTION, EXERCISE OR DEFENCE OF LEGAL CLAIMS.

IF YOUR PERSONAL DATA IS PROCESSED BY US FOR THE PURPOSE OF DIRECT MARKETING, YOU HAVE THE RIGHT TO OBJECT AT ANY TIME TO THE PROCESSING OF PERSONAL DATA CONCERNING YOU FOR THE PURPOSE OF SUCH ADVERTISING. YOU CAN EXERCISE THE OBJECTION AS DESCRIBED ABOVE.

IF YOU EXERCISE YOUR RIGHT TO OBJECT, WE WILL CEASE PROCESSING THE AFFECTED DATA FOR DIRECT MARKETING PURPOSES.

12) Duration of Storage of Personal Data

The duration of the storage of personal data is determined by the respective legal basis, the purpose of processing and – if applicable – additionally by the respective statutory retention period (e.g., commercial and tax law retention periods).

When personal data is processed on the basis of an explicit consent in accordance with Art. 6 Para. 1 lit. a GDPR, the data concerned will be stored until you revoke your consent.

If statutory retention periods exist for data processed within the scope of legal or similar obligations on the basis of Art. 6 Para. 1 lit. b GDPR, this data will be routinely deleted after the retention periods have expired, provided that it is no longer necessary for the performance or initiation of the contract and/or we no longer have a legitimate interest in continued storage.

When personal data is processed on the basis of Art. 6 Para. 1 lit. f GDPR, this data will be stored until you exercise your right to object in accordance with Art. 21 Para. 1 GDPR, unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights and freedoms, or the processing serves the assertion, exercise or defence of legal claims.

When personal data is processed for the purpose of direct marketing on the basis of Art. 6 Para. 1 lit. f GDPR, this data will be stored until you exercise your right to object in accordance with Art. 21 Para. 2 GDPR.

Unless otherwise stated in the other information in this declaration about specific processing situations, stored personal data will otherwise be deleted when it is no longer necessary for the purposes for which it was collected or otherwise processed.