Privacy policy
We welcome you to our website and appreciate your interest in our company. We take the protection of your personal data very seriously. We process your data in accordance with the applicable legal provisions for the protection of personal data, in particular the EU General Data Protection Regulation (EU GDPR) and the country-specific implementation laws applicable to us. This privacy policy provides you with comprehensive information about the processing of your personal data by NICI GmbH and the rights to which you are entitled.
Personal data is information that makes it possible to identify a natural person. This includes, in particular, name, date of birth, address, telephone number, e-mail address, but also your IP address.
Data is anonymous if no personal reference to the user can be established.
Responsible party and data protection officer
Address:
Langheimer Straße 94
96264 Altenkunstadt / Germany
Contact details:
Website: www.nici.de
Phone: +49 9572 / 7220-100
Mail: info@nici.de
Contact data privacy:
Mail: kommunikation@nici.de
Your rights as data subject
First of all, we would like to inform you here about your rights as a data subject. These rights are standardized in Art. 15 - 22 EU GDPR. This includes:
The right to information (Art. 15 EU GDPR),
The right to erasure (Art. 17 EU GDPR),
The right to rectification (Art. 16 EU GDPR),
The right to data portability (Art. 20 EU GDPR),
The right to restrict data processing (Art. 18 EU GDPR),
The right to object to data processing (Art. 21 EU GDPR).
To assert these rights, please contact: kommunikation@nici.de. The same applies if you have any questions about data processing in our company or wish to withdraw your consent. You also have the right to lodge a complaint with a data protection supervisory authority.
Rights of objection
Please note the following in connection with rights of objection:
If we process your personal data for the purpose of direct marketing, you have the right to object to this data processing at any time without giving reasons. This also applies to profiling insofar as it is associated with direct advertising.
If you object to processing for direct marketing purposes, we will no longer process your personal data for these purposes. The objection is free of charge and can be made informally, if possible to: kommunikation@nici.de.
In the event that we process your data to protect legitimate interests, you can object to this processing at any time for reasons arising from your particular situation; this also applies to profiling based on these provisions.
We will then no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms or the processing serves the establishment, exercise or defense of legal claims.
Purposes and legal basis of data processing
When processing your personal data, the provisions of the EU GDPR and all other applicable data protection regulations are complied with. The legal basis for data processing arises in particular from Art. 6 EU GDPR.
We use your data to initiate business, to fulfill contractual and legal obligations, to implement the contractual relationship, to offer products and services and to strengthen the customer relationship, which may also include analyses for marketing purposes and direct advertising.
Your consent to data processing may also constitute a data protection authorization provision. Before you give your consent, we will inform you about the purpose of the data processing and your right of withdrawal.
Disclosure to third parties
We will only pass on your data to third parties within the framework of the statutory provisions or with the appropriate consent. Otherwise, your data will not be passed on to third parties unless we are obliged to do so due to mandatory legal provisions (disclosure to external bodies such as supervisory authorities or law enforcement agencies).
Recipients of the data / categories of recipients
Within our company, we ensure that only those persons receive your data who need it to fulfill contractual and legal obligations.
In certain cases, service providers support our specialist departments in fulfilling their tasks. These include hosting, store programming, payment processing, credit checks, newsletters and shipping. The necessary data protection contracts have been concluded with all service providers.
Third country transfer / intention to transfer to a third country
Data will only be transferred to third countries (outside the European Union or the European Economic Area) if this is necessary for the performance of the contractual relationship, is required by law or if you have given us your consent to do so.
We do not transfer your personal data to any service provider outside the European Economic Area.
Storage duration of the data
We store your data for as long as it is required for the respective processing purpose. Please note that numerous retention periods require that data (must) continue to be stored. This applies in particular to retention obligations under commercial or tax law (e.g. German Commercial Code, German Fiscal Code, etc.). If there are no further retention obligations, the data will be routinely deleted once the purpose has been achieved.
In addition, we may retain data if you have given us your permission to do so or if legal disputes arise and we use evidence within the framework of statutory limitation periods, which can be up to thirty years; the regular limitation period is three years.
Secure transmission of your data
We use appropriate technical and organizational security measures to protect the data stored by us against accidental or intentional manipulation, loss, destruction or access by unauthorized persons. The security levels are continuously reviewed in cooperation with security experts and adapted to new security standards.
The exchange of data to and from our website is encrypted. We offer HTTPS as the transmission protocol for our website, using the latest encryption protocols. It is also possible to use alternative communication channels (e.g. by post).
Obligation to provide data
Various personal data are necessary for the establishment, execution and termination of the contractual relationship and the fulfillment of the associated contractual and legal obligations. The same applies to the use of our website and the various functions it provides.
We have summarized the details for you in the point above. In certain cases, data must also be collected or made available due to legal provisions. Please note that it is not possible to process your request or execute the underlying contractual relationship without providing this data.
Categories, sources and origin of data
Which data we process is determined by the respective context: this depends on whether, for example, you place an order online or enter an inquiry in our contact form or declare a revocation.
Please note that we may also provide information for special processing situations separately in a suitable place, e.g. when uploading application documents or in the case of a contact request.
We collect and process the following data when you visit our website:
Name of the Internet service provider
Information about the website from which you are visiting us
Web browser and operating system used
The IP address assigned by your Internet service provider
Information about the websites you visit on our site, including date and time
Access status / http status code
For reasons of technical security (in particular to defend against attempted attacks on our web server), this data is stored in accordance with Art. 6(1)(F) EU GDPR. After 7 days at the latest, anonymization takes place by shortening the IP address so that no reference to the user is established.
We collect and process the following data as part of a contact request:
Surname, first name
Contact details
Title
Details on wishes and interests
Company name (if applicable)
Telephone number (not mandatory)
We process the following data as part of the ordering process:
Title
Surname, first name
Shipping address
Billing address
Email address
Data that may be permissibly processed from other sources
We collect and process the following data for newsletters:
Email address as mandatory field
Last name, first name and title can be optionally entered when registering for the newsletter.
When you order the NICI catalog / brochure, we collect and process the following data:
Title
Surname, first name
Email address
Address
We collect and process the following data for competitions:
Surname, first name
E-mail address (depending on the notification channel)
Address
Date of birth
When registering / opening a customer account, we collect and process the following data:
Title
Surname, first name
E-mail address
Address, possibly different delivery address
Data that may be permissibly processed from other sources
Automated decisions in individual cases
We do not use purely automated processing to reach a decision.
Cookies (Art. 6 para. 1 lit. f EU-GDPR / Art. 6 para. 1 lit. a EU-GDPR with consent)
Our website uses so-called cookies in several places. They serve to make our website more user-friendly, effective and secure. Cookies are small text files that are stored on your end device.
These cookies enable us to analyze how users use our websites. This enables us to tailor the website content to the needs of visitors. Cookies also enable us to measure the effectiveness of a particular advertisement and to place it according to the thematic interests of the user, for example. The legal basis for this is Art. 6 para. 1 lit. f or, if consent has been given, Art. 6 para. 1 lit. a EU GDPR.
We use the following cookies:
Own cookies:
This type of cookie is controlled directly by NICI GmbH. Depending on their purpose, they remain stored permanently - even after the session has ended (so-called persistent cookies, e.g.: implementation of opt-out) or are deleted when the browser is closed (so-called session cookies; they are only valid for one browser session)
Third-party cookies:
This type of cookie is controlled by third-party providers. Third-party providers are providers who display advertising banners on other websites, in particular for NICI GmbH. They use cookies, for example, to transmit the information that an advertising banner displayed by you has led to a purchase. (e.g. conversion tracking).
So-called temporary/permanent cookies are used here, which are automatically deleted after the specified time (usually six months). These temporary or permanent cookies are stored on your end device and delete themselves after the specified time. The cookies of our partner companies also only contain pseudonymous, usually even anonymous data. They enable our partners to track which products you have viewed, whether something has been purchased, which products have been searched for, etc. Some of our advertising partners also collect information beyond the websites about which pages you have previously visited or which products you were interested in, for example. This makes it possible to display personalized advertising. This pseudonymous data is never merged with your personal data.
Most web browsers accept cookies automatically. Of course, you can also deactivate, restrict or delete cookies on your end device manually via your browser settings or with the help of software.
Please note: If you deactivate the setting of cookies, you may not be able to use all functions of our website to their full extent.
User profiles / web tracking procedure
Google Analytics
This website uses functions of the web analysis service Google Analytics. The provider is Google Inc, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Google Analytics uses so-called "cookies". These are text files that are stored on your computer and enable your use of the website to be analyzed. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there.
The storage of Google Analytics cookies and the use of this analysis tool are based on Art. 6 para. 1 lit. f GDPR. The website operator has a legitimate interest in the analysis of user behavior in order to optimize both its website and its advertising.
IP anonymization
We have activated the IP anonymization function on this website. This means that your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area before being transmitted to the USA. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. Google will use this information on behalf of the operator of this website for the purpose of evaluating your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.
Browser plugin
You may refuse the use of cookies by selecting the appropriate settings on your browser, however please note that if you do this you may not be able to use the full functionality of this website. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by downloading and installing the browser plug-in available under the following link: https://tools.google.com/dlpage/gaoptout?hl=de.
Objection to data collection
You can prevent the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie will be set to prevent your data from being collected on future visits to this website:
Opt-Out: https://adssettings.google.com/authenticated
You can view Google's terms of use at http://www.google.de/intl/de/policies/terms/regional.html einsehen
Order data processing
We have concluded a contract with Google for commissioned data processing and fully implement the strict requirements of the German data protection authorities when using Google Analytics.
Demographic characteristics in Google Analytics
This website uses the "demographic characteristics" function of Google Analytics. This allows reports to be created that contain statements about the age, gender and interests of site visitors. This data comes from interest-based advertising from Google and from visitor data from third-party providers. This data cannot be assigned to a specific person. You can deactivate this function at any time via the ad settings in your Google account or generally prohibit the collection of your data by Google Analytics as described in the section "Objection to data collection".
Google Analytics Remarketing
Our websites use the functions of Google Analytics Remarketing in conjunction with the cross-device functions of Google AdWords and Google DoubleClick. The provider is Google Inc, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
This function makes it possible to link the advertising target groups created with Google Analytics Remarketing with the cross-device functions of Google AdWords and Google DoubleClick. In this way, interest-based, personalized advertising messages that have been adapted to you depending on your previous usage and surfing behavior on one device (e.g. cell phone) can also be displayed on another of your devices (e.g. tablet or PC).
If you have given your consent, Google will link your web and app browsing history to your Google account for this purpose. In this way, the same personalized advertising messages can be displayed on every device on which you sign in with your Google account.
To support this function, Google Analytics collects Google-authenticated user IDs that are temporarily linked to our Google Analytics data in order to define and create target groups for cross-device advertising.
You can permanently object to cross-device remarketing/targeting by deactivating personalized advertising in your Google account by following this link.
Opt-Out:
https://adssettings.google.com/authenticatedThe aggregation of the data collected in your Google Account is based solely on your consent, which you can give or withdraw from Google (Art. 6 para. 1 lit. a GDPR). For data collection processes that are not merged in your Google account (e.g. because you do not have a Google account or have objected to the merging), the collection of data is based on Art. 6 para. 1 lit. f GDPR. The legitimate interest arises from the fact that the website operator has an interest in the anonymized analysis of website visitors for advertising purposes.
Further information and the data protection provisions can be found in Google's privacy policy.
Google AdWords and Google Conversion-Tracking
This website uses Google AdWords. AdWords is an online advertising program of Google Inc, 1600 Amphitheatre Parkway, Mountain View, CA 94043, United States ("Google").
As part of Google AdWords, we use what is known as conversion tracking. When you click on an ad placed by Google, a cookie is set for conversion tracking. Cookies are small text files that the Internet browser stores on the user's computer. These cookies lose their validity after 30 days and are not used to personally identify the user. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user clicked on the ad and was redirected to this page.
Each Google AdWords customer receives a different cookie. The cookies cannot be tracked via the websites of AdWords customers. The information collected using the conversion cookie is used to generate conversion statistics for AdWords customers who have opted for conversion tracking. Customers are told the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they do not receive any information that can be used to personally identify users. If you do not wish to participate in tracking, you can object to this use by easily deactivating the Google Conversion Tracking cookie via your Internet browser under user settings. You will then not be included in the conversion tracking statistics.
The storage of "conversion cookies" takes place on the basis of Art. 6 para. 1 lit. f GDPR. The website operator has a legitimate interest in analyzing user behavior in order to optimize both its website and its advertising.
You can find more information about Google AdWords and Google Conversion Tracking in Google's privacy policy.
You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general and activate the automatic deletion of cookies when closing the browser. If cookies are deactivated, the functionality of this website may be restricted.
Google Maps
On our website we use Google Maps from Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA ("Google"). Google Maps is a web service for displaying interactive (land) maps to visually display geographical information. The legal basis is Art. 6 para. 1 lit. f) GDPR. Our legitimate interest lies in optimizing the functionality of our website.
Information about your use of our website (such as your IP address) is transmitted to Google servers in the USA and stored there as soon as you access the subpages in which the Google Maps map is integrated. This occurs regardless of whether Google provides a user account through which you are logged in or whether no user account exists. If you are logged in to Google, your data will be assigned directly to your account. If you do not wish your data to be associated with your Google profile, you must log out before activating the button.
Google LLC, based in the USA, is certified for the US-European data protection agreement "Privacy Shield", which guarantees compliance with the level of data protection applicable in the EU.
If you do not agree to the future transmission of your data to Google in the context of the use of Google Maps, you also have the option of completely deactivating the Google Maps web service by switching off the JavaScript application in your browser. Google Maps and thus also the map display on this website can then not be used.
The terms of use for Google Maps can be found at https://www.google.com/intl/de_US/help/terms_maps/ . Detailed information on data protection in connection with the use of Google Maps can be found on the Google website ("Google Privacy Policy"): https://policies.google.com/privacy?hl=de&gl=de
YouTube
We embed videos from the "YouTube" platform of the provider Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, in our online offering. The videos are embedded in extended data protection mode.
By embedding the video in extended data protection mode, no cookies are set that record user behaviour in order to personalize video playback. However, the extended data protection mode only refers to the recording of user behavior, not to the provision of ads.
By accessing our site, a device ID is generated in the local storage of the web browser and stored beyond the session; in addition, accessing the site leads to a connection being established with the Google DoubleClick network. If you start the video, this could trigger further data processing operations. We have no influence on this.
If you are logged in to Google, your data will be assigned directly to your account. If you do not wish your data to be associated with your YouTube profile, you must log out before activating the button.
YouTube stores your data as usage profiles and uses them for the purposes of advertising, market research and/or the needs-based design of its website. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, whereby you must contact YouTube to exercise this right.
Possibility of objection: https://adssettings.google.com/authenticated
Further information on the purpose and scope of data collection and its processing by YouTube can be found in Google's privacy policy. There you will also find further information on your rights and setting options to protect your privacy: https://www.google.de/intl/de/policies/privacy
Google also processes your personal data in the USA and has submitted to the EU-US Privacy Shield: https://www.privacyshield.gov/EU-US-Framework.
Hotjar (hotjar Ltd.)
This website uses the web analysis service Hotjar of Hotjar Ltd. Hotjar Ltd. is a European company based in Malta (Hotjar Ltd, Level 2, St Julians Business Centre, 3, Elia Zammit Street, St Julians STJ 1000, Malta, Europe Tel.: +1 (855) 464-6788).
This tool can be used to track movements on the websites on which Hotjar is used (so-called heat maps). For example, it is possible to see how far users scroll and which buttons users click and how often. The tool also makes it possible to obtain feedback directly from website users. In this way, we obtain valuable information to make our websites even faster and more customer-friendly. The above analysis is carried out on the basis of your consent in accordance with Art. 6 para. 1 lit. a EU GDPR. We pay particular attention to the protection of your personal data when using this tool. For example, we can only track which buttons you click and how far you scroll. Areas of the websites in which personal data about you or third parties is displayed are automatically hidden by Hotjar and are therefore not traceable at any time.
Personal data is stored for 6 months and then deleted by us.
Further information about Hotjar Ltd. and the Hotjar tool can be found at: https://www.hotjar.com/
The privacy policy of Hotjar Ltd. can be found at: https://www.hotjer.com/privacy
Facebook Custom Audiences („Visitor action pixel“)
This website uses the so-called "Facebook pixel" of the social network Facebook, which is operated by Facebook Inc, 1 Hacker Way, Menlo Park, CA 94025, USA, or if you are based in the EU, Facebook Ireland Ltd, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland. Data processing is based on the legal basis of your consent in accordance with Art. 6 para. 1 lit. a EU GDPR. Facebook Inc. may transfer personal data to the USA. However, Facebook is certified under the Privacy Shield Agreement ( https://www.privacyshield.gov/participant?id=a2zt0000000GnywAAC&status=Active). Facebook thereby undertakes to comply with EU data protection standards.
You can enable Facebook and its partners to place advertisements on and outside of Facebook. A cookie may be stored on your computer for this purpose. We use the Facebook pixel to display the advertisements placed by us only to those users who have also visited our website or who have certain characteristics that we transmit to Facebook. With the help of the Facebook pixel, Facebook is able to determine our website visitors as a target group for the display of advertisements.
We collect and process the following data from your use of our service
Data attributes
Pixel specific data
Http-Header
Optional parameters
Data collected
This list contains all (personal) data collected by or through the use of this service.
Facebook user ID
Browser information
Usage data
Device information
Non-sensitive user-defined data
Referrer URL
Pixel-ID
Location information
Pixel-specific data
User behavior
Viewed advertisements
Interactions with advertising, services and products
Marketing information
Respected content
IP address
With the help of the Facebook pixel, your behavior can be tracked across multiple pages after you have seen or clicked on a Facebook ad. This process is used to evaluate the effectiveness of Facebook ads for statistical and market research purposes and can help to optimize future advertising measures. Facebook processes the data in accordance with the Facebook Data Usage Policy: https:/www.facebook.com/policy. Specific information about the Facebook pixel and how it works can be found here: https://www.facebook.com/business/help/651294705016616.
Links Social media
You will find links to social media services on our website. You can recognize links to the websites of social media services by the respective company logo. If you follow these links, you will reach the corporate presence of NICI GmbH on the respective social media service. When you click on a link to a social media service, a connection to the servers of the social media service is established. This tells the social media service's servers that you have visited our website. In addition, further data is transmitted to the provider of the social media service. These are, for example
Address of the website on which the activated link is located
Date and time the website was accessed or the link was activated
Information about the browser and operating system used
IP address
If you are already logged in to the relevant social media service when you activate the link, the provider of the social media service may be able to determine your user name and possibly even your real name from the transmitted data and assign this information to your personal user account with the social media service. You can exclude this possibility of assignment to your personal user account if you log out of your user account beforehand.
The servers of the social media services are located in the USA and other countries outside the European Union. The data may therefore also be processed by the provider of the social media service in countries outside the European Union. Please note that companies in these countries are subject to data protection laws that do not generally protect personal data to the same extent as is the case in the member states of the European Union.
Please note that we have no influence on the scope, type and purpose of data processing by the provider of the social media service. For more information on the use of your data by the social media services integrated on our website, please refer to the privacy policy of the respective social media service.
Social plugins of social networks
Facebook Plugins (Like & Share-Button)
Plugins of the social network Facebook, provider Facebook Inc, 1 Hacker Way, Menlo Park, California 94025, USA, are integrated on our pages. You can recognize the Facebook plugins by the Facebook logo or the "Like" button on our site. You can find an overview of the Facebook plugins here: https://developers.facebook.com/docs/plugins/?locale=de_DE
When you visit our pages, a direct connection is established between your browser and the Facebook server via the plugin. Facebook receives the information that you have visited our site with your IP address. If you click on the Facebook "Like" button while you are logged into your Facebook account, you can link the content of our pages to your Facebook profile. This allows Facebook to associate your visit to our pages with your user account. We would like to point out that, as the provider of the pages, we have no knowledge of the content of the transmitted data or its use by Facebook. You can find further information on this in Facebook's privacy policy at: https://de-de.facebook.com/privacy/explanation
If you do not want Facebook to be able to associate your visit to our pages with your Facebook user account, please log out of your Facebook user account.
The Facebook plugins are used on the basis of Art. 6 para. 1 lit. f GDPR. The website operator has a legitimate interest in the widest possible visibility in social media.
X Plugin (former Twitter)
Functions of the X service are integrated on our pages. These functions are offered by Twitter Inc, 1355 Market Street, Suite 900, San Francisco, CA 94103, USA. By using X and the "Re-Tweet" function, the websites you visit are linked to your X account and made known to other users. Data is also transmitted to X in the process. We would like to point out that, as the provider of the pages, we have no knowledge of the content of the transmitted data or its use by X. Further information on this can be found in Twitter's privacy policy at: https://twitter.com/privacy
The X-Plugin is used on the basis of Art. 6 para. 1 lit. f GDPR. The website operator has a legitimate interest in the widest possible visibility in social media.
You can change your data protection settings for X in the account settings under https://twitter.com/settings/account
Contact form / contact by e-mail (Art. 6 para. 1 lit. a, b EU-GDPR)
There are contact forms on our website that can be used to contact us electronically. If you write to us via a contact form, we will process the data you provide in the contact form to contact you and answer your questions and requests.
The principle of data minimization and data avoidance is observed in that you only have to provide the data that we absolutely need to contact you. This is your e-mail address, the message field itself and any other information required to process your request. Your IP address is also processed for technical reasons and for legal protection. All other data are voluntary fields and can be provided optionally (e.g. to answer your questions more individually).
In order to protect the security and confidentiality of your data in the best possible way, we implement appropriate security measures. Your request will be transmitted to us https-encrypted.
If you contact us by e-mail, we will process the personal data provided in the e-mail solely for the purpose of processing your request. If you do not use the forms provided to contact us, no further data will be collected.
Newsletter (Art. 6 para. 1 lit. a EU-GDPR)
You can subscribe to a free newsletter on our website. The e-mail address provided when registering for the newsletter will be used to send the newsletter. If you provide us with an optional salutation, first name and surname, the newsletter will be sent in a personalized form.
The principle of data minimization and data avoidance is observed here, as only the e-mail address is marked as a mandatory field. For technical reasons and for legal protection, your IP address is also processed when you subscribe to the newsletter.
We use the so-called double opt-in procedure for sending newsletters by e-mail. This means that you will only receive advertising by e-mail if you have previously expressly confirmed that we should activate the newsletter service. We do this by sending you a notification e-mail and asking you to confirm that you wish to receive our newsletter at this e-mail address by clicking on a link contained in this e-mail.
You can of course unsubscribe at any time using the unsubscribe option provided in the newsletter and thus revoke your consent. It is also possible to unsubscribe from the newsletter at any time directly via our website.
This also applies to any newsletter tracking pixels used.
Competition / advertising consent (Art. 6 para. 1 lit. a, b EU GDPR)
You have the opportunity to take part in temporary competitions on our website. If you fill in the competition form, we will process the data you enter there exclusively for the purpose of running the competition.
The principle of data minimization and data avoidance is observed in that you only have to provide the data that we absolutely need from you to carry out the competition and to notify you of the prize.
The mandatory fields are marked with an (*). Your IP address will also be processed for technical reasons and for legal protection. The other fields are optional and can be filled in if you wish. Unfortunately, we cannot carry out the competition without the mandatory fields. Participation is then not possible.
We will only pass on your data to third parties within the framework of the statutory provisions or with the appropriate consent. Otherwise, your data will not be passed on to third parties unless we are obliged to do so due to mandatory legal provisions (disclosure to external bodies such as supervisory authorities or law enforcement agencies).
As part of the competition mask, you also have the option of giving us your consent to send you a newsletter. Of course, it is also possible to take part in the competition without giving your advertising consent.
If you give us your consent by ticking the newsletter checkbox, we will process your data as described in the Newsletter section. You can revoke this consent at any time as described in the Newsletter section.
Order process in the web store (Art. 6 para. 1 lit. b EU GDPR)
We process the data provided by you during the ordering process only for the execution or processing of the contractual relationship, unless you consent to further use.
The principle of data economy and data avoidance is observed in that you only have to provide us with the data that we absolutely need to execute the contract or to fulfill our contractual obligations or that we are legally obliged to collect.
In addition, your IP address is processed for technical reasons and for legal protection. Without this data, we will unfortunately have to refuse to conclude the contract, as we will then not be able to execute it or may have to terminate an existing contract.
Registration / customer account (Art. 6 para. 1 lit. a, b EU-GDPR)
On our website, we offer users the opportunity to register by providing personal data. The advantage of this is that you can view your order history in particular and the data you enter for the order form is saved. This means that you do not have to enter them again when you place another order.
The principle of data minimization and data avoidance is observed here, as only the data required for registration is marked with an asterisk (*) as a mandatory field.
By registering on our website, the user's IP address and the date and time of registration are also stored (technical background data). By clicking the "Register now" button, you consent to the processing of your data.
Please note: The password you assign is stored by us in encrypted form. Employees of our company cannot read this password. They are therefore unable to provide you with any information if you have forgotten your password.
In this case, please use the "Forgotten password" function, which will send you an automatically generated new password by e-mail. No employee is authorized to ask you for your password by telephone or in writing. Therefore, please never give your password if you receive such requests.
Upon completion of the registration process, your data is stored with us for use in the protected customer area. As soon as you log in to our website with your e-mail address as your user name and password, this data will be made available for actions you carry out on our website (e.g. for orders in our online store). Completed orders can be tracked in the order history. You can enter changes to the billing or delivery address here.
Registered persons are free to make changes / corrections to the billing or delivery address in the order history independently. Of course, you can also cancel or delete your registration or customer account.
Payment systems (Art. 6 para. 1 lit. a, b EU-GDPR), credit check (Art. 6 para. 1 lit. f EU-GDPR)
In our online store you can pay by credit card, PayPal or instant bank transfer. For this purpose, the relevant payment-related data is collected in order to process your order and payment. In addition, your IP address is processed for technical reasons and for legal protection.
The principle of data minimization and data avoidance is observed in that you only have to provide us with the data that we absolutely need to process the payment and thus process the contract or that we are legally obliged to collect.
Without this data, we will unfortunately have to refuse to conclude the contract, as we will then not be able to execute it.
The payment system we use uses SSL encryption to protect the transmission of your data.
Note on credit card payment: As is usual with credit card payments, the credit card details are checked and a credit check is carried out.
Note on PayPal: PayPal is a company of PayPal (Europe) S.à r.l. et Cie, S.C.A. 22-24 Boulevard Royal, L-2449 Luxembourg. If the data subject selects "PayPal" as the payment option during the ordering process in our online store, the data of the data subject is automatically transmitted to PayPal.
By selecting this payment option, the data subject consents to the transfer of personal data required for payment processing. The personal data transmitted to PayPal is usually first name, last name, address, email address, IP address, telephone number, cell phone number or other data required for payment processing.
Personal data in connection with the respective order is also required to process the purchase contract. Details on data protection at PayPal can be found at: https://www.paypal.com/de/webapps/mpp/ua/privacy-prev (for the legal situation from 25.5.2018).
Advertising purposes for existing customers (Art. 6 para. 1 lit. f EU GDPR)
NICI GmbH is interested in maintaining the customer relationship with you and sending you information and offers about our products / services. We therefore process your data in order to send you relevant information and offers by e-mail.
If you do not wish this, you can object to the use of your personal data for the purpose of direct advertising at any time; this also applies to profiling insofar as it is associated with direct advertising. If you object, we will no longer process your data for this purpose.
The objection can be made free of charge and without giving reasons and should be sent by e-mail to kommunikation@nici.de or by post to NICI GmbH, Datenschutz, Langheimer Straße 94, 96264 Altenkunstadt, Germany.
Online services for children
Persons under the age of 16 may not transmit any personal data to us or submit a declaration of consent without the consent of their legal guardian. We would like to encourage parents and legal guardians to actively participate in the online activities and interests of their children.
Links to other providers
Our website also contains - clearly recognizable - links to the websites of other companies. Where links to websites of other providers are available, we have no influence on their content. Therefore, no guarantee or liability can be assumed for this content. The respective provider or operator of the pages is always responsible for the content of these pages.
The linked pages were checked for possible legal violations and recognizable infringements at the time of linking. Illegal contents were not recognizable at the time of linking. However, permanent monitoring of the content of the linked pages is not reasonable without concrete evidence of an infringement. If we become aware of any legal infringements, such links will be removed immediately.
Transparency and information obligations for customers, suppliers, contractual partners and interested parties of NICI GmbH
Categories / origin of data
We process the following personal data as part of the contractual relationship and for the initiation of the contract:
For business customers:
Contact details (e.g. first and last names of the current and, if applicable, previous contact persons as well as name affixes, company name and address of the customer (employer), telephone number with extension, business e-mail address)
Job-related data (e.g. function in the company, department)
For private customers:
Master data (title, first/last name, name affixes)
Contact details (name and address, e-mail address)
Different delivery/billing address
Order history
If applicable, bank details (in the context of a SEPA direct debit mandate also first/last name of the account holder)
Preferred payment system, if applicable
For suppliers:
Contact details (e.g. first and last names of the current and, if applicable, previous contact persons as well as name affixes, company name and address of the customer (employer), telephone number with extension, business e-mail address)
Job-related data (e.g. function in the company, department)
We generally receive your personal data from you as part of the contract initiation process or during the ongoing contractual relationship. Exceptionally, your personal data may also be collected from other sources in certain constellations. This includes occasion-related queries regarding relevant information from credit agencies, in particular regarding creditworthiness and credit behavior.
Purposes and legal bases of data processing
When processing your personal data, the provisions of the EU GDPR, the BDSG (new) and other relevant legal provisions are always complied with.
Your personal data will be processed exclusively for the implementation of pre-contractual measures (e.g. for the preparation of offers for products or services) and for the fulfillment of contractual obligations (e.g. for order/order/payment processing), (Art. 6 para. 1 lit. b EU-GDPR) or if there is a legal obligation to process (e.g. due to tax law requirements) (Art. 6 para. 1 lit. c EU-GDPR). The personal data was originally collected for these purposes.
Your consent to data processing can, of course, also constitute a data protection authorization provision (Art. 6 para. 1 lit. a EU GDPR). Before granting consent, we will inform you about the purpose of the data processing and about your right of withdrawal in accordance with Art. 7 (3) EU GDPR.
NICI GmbH is also interested in maintaining the customer relationship with you and sending you information and offers about our products / services (advertising purposes may be specified) by e-mail. We therefore process your data in order to send you corresponding information and offers (Art. 6 para. 1 lit. f EU GDPR).
Your personal data will only be processed for the detection of criminal offenses under the conditions of Art. 10 EU GDPR.
Transparency and information obligations for applicants of NICI GmbH
Categories / origin of the data
We process the following personal data as part of the application process:
Your master data (surname, first name, name affixes, date of birth)
Contact details (address, telephone number, e-mail address)
Qualification data (CV, cover letter, degrees, certificates, work samples)
Photo / work permit / residence permit, if applicable
If applicable, criminal record / certificate of good conduct
Your personal data is generally collected directly from you as part of the application process.
Exceptionally, your personal data is also collected from other sources in certain constellations, for example from recruitment agencies. We also use personal data that we have permissibly obtained from publicly accessible sources (e.g. professional networks).
Purposes and legal bases of data processing
When processing your personal data, the provisions of the EU GDPR, the BDSG (new) and all other (labor) law provisions are always complied with.
We are aware of the importance of your data. Your personal data will be processed exclusively for the purpose of the effective and correct handling of the application procedure and for contacting you as part of the application process.
We also process your data if we have a legal obligation to do so, in particular under employment law. In the case of special categories of personal data in accordance with Art. 9 para. 1 EU GDPR, a balancing of interests also takes place, i.e. data processing only takes place if your interests worthy of protection do not outweigh this (Art. 88 para. 1 EU GDPR in conjunction with. § Section 26 (1), (3) BDSG (new)).
Your consent also constitutes permission for data processing. If you have therefore given us your consent (e.g. for longer storage of the application documents in our applicant pool), we will also process your data for this purpose (Art. 88 para. 1 EU GDPR in conjunction with Section 26 para. 2 BDSG (new). § Section 26 (2) BDSG (new)). If we obtain your consent, we will of course inform you about the specific purpose of the data processing and about your right of withdrawal. If the consent also relates to the processing of special categories of personal data in accordance with Art. 9 EU GDPR, we will expressly inform you of this in advance.
Data storage period
We store your applicant data until the application process has been completed or we no longer need your data for the above-mentioned purposes or you have withdrawn your consent. If we enter into an employment relationship with you, we will continue to store the relevant applicant data, provided that it is still relevant for the performance of the employment relationship.
If we unfortunately have to reject your application, we will delete your application documents no later than 6 months afterwards.
Unless you have given us your consent to include you in our applicant pool and the associated indefinite storage of your application documents. In this case, we will not delete your data or will only delete it if you withdraw your consent.
Supplements to the privacy policy
– Social Media –
NICI GmbH maintains appearances in the "social media", in this case on Facebook, Instagram and YouTube. Insofar as we have control over the processing of your data, we ensure that the applicable data protection regulations are complied with.
Below you will find the most important information on data protection law in relation to our websites.
Name and address of the person responsible for the company
In addition to NICI GmbH, NICI GmbH is responsible for the company websites within the meaning of the EU General Data Protection Regulation (EU GDPR) and other data protection regulations....
Facebook (Meta Platforms Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Irland)
Instagram (Meta Platforms Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Irland)
YouTube (Google Ireland Ltd., Gordon House, Barrow Street, Dublin 4, Irland)
However, you use these platforms and their functions at your own risk. This applies in particular to the use of interactive functions (e.g. commenting, sharing, rating).
We would also like to point out that your data may be processed outside the European Union.
Purpose and legal basis
We maintain the fan pages ourselves in order to communicate with visitors to these pages and to inform them about our offers in this way.
We also collect data for statistical purposes in order to further develop and optimize the content and to make our offer more attractive. The data required for this (e.g. total number of page views, page activities and data provided by visitors, interactions) are processed by the social networks and made available to us. We have no influence on the generation and presentation of this data.
In addition, your personal data is processed by the social media providers for market research and advertising purposes. For example, it is possible that user profiles are created based on your usage behavior and the resulting interests. This allows, among other things, advertisements to be placed within and outside the platforms that correspond to your interests. Cookies are usually stored on your computer for this purpose. Irrespective of this, data that is not collected directly on your end devices may also be stored in your usage profiles. Data is also stored and analyzed across devices; this applies in particular, but not exclusively, if you are registered as a member and logged in to the respective platforms.
The processing of your personal data by NICI GmbH is based on our legitimate interests in effective information and communication in accordance with Art. 6 para. 1 sentence 1 lit. f. EU-GDPR.
If you are asked for consent to data processing, i.e. if you declare your consent by confirming a button or similar (opt-in), the legal basis for processing is Art. 6 para. 1 sentence 1 lit. a., Art. 7 EU-GDPR.
Your rights / option to object
If you are a member of a social network and do not want the network to collect data about you via our website and link it to your stored membership data with the respective network, you must
log out of the respective network before visiting our fan page,
delete the cookies present on the device and
close and restart your browser.
However, after logging in again, you will be recognizable to the network as a specific user.
For a detailed description of the respective processing and the opt-out options, please refer to the information linked below:
You have the following rights with regard to the processing of your personal data:
Right of access; right to rectification; right to erasure; right to restriction of processing; right to object; right to data portability; right to lodge a complaint about unlawful processing of your personal data with the competent data protection authority.
However, since NICI GmbH does not have full access to your personal data, you should contact the social media providers directly if you wish to make a claim, as they have access to the personal data of their users and can take appropriate measures and provide information.
If you still need help, we will of course try to support you. Please contact kommunikation@nici.de.
Notes on copyright and artistic copyright
If you wish to publish images, texts, plans, videos, music etc. on our website, you should be aware that you may be assigning all rights of use to the network, which could ultimately have legal consequences for you if you are not the author or rights holder yourself.