• buy direct from the manufacturer
  • quick delivery with DHL
  • the perfect gift

Privacy policy

Privacy policy

Welcome to our website and thank you for your interest in our company. We take the protection of your personal data very seriously. We process your data in accordance with applicable personal data protection legislation, in particular the GDPR and our country-specific implementation laws, which provide comprehensive information about the processing of your personal data by NICI GmbH and your rights. 

Personal data is any information that makes it possible to identify a natural person. This includes, in particular, your name, date of birth, address, telephone number, email address and IP address. 

Anonymous data is available if no personal reference to the individual/user can be made.

 

Responsible body and data protection officer

Adress:                                

Langheimer Straße 94

D-96264 Altenkundstadt

 

Contact information:               

Homepage: www.nici.de

Phone: +49 9572 / 7220-100

Email: info@nici.de

 

Contact data protection: kommunikation@nici.de

 

Your rights as a data subject

We would first like to notify you of your rights as a data subject. These rights are set out in Articles 15 - 22 GDPR, and include:

 

  • The right of access (Art. 15 GDPR),
  • The right to rectification (Art. 16 GDPR),
  • The right to data portability (Art. 20 GDPR),
  • The right to object to data processing (Art. 21 GDPR),
  • The right to erasure / right to be forgotten (Art. 17 GDPR),
  • The right to restriction of data processing (Art. 18 GDPR).

 

To exercise these rights, please contact: kommunikation@nici.de. The same applies if you have any questions regarding data processing in our company or when you withdraw your consent. You also have a right of appeal to the relevant data protection supervisory authority.

 

 

Right to object

Please note the following with respect to your right to object:

 When we process your personal data for the purpose of direct marketing, you have the right to object to this data processing at any time without providing the reasons for such objection. This also applies to profiling insofar as it is associated with direct marketing.

 

If you object to the processing for direct marketing, we will no longer process your personal data for such purposes. The objection is free of charge and can be made informally, where appropriate to: kommunikation@nici.de

 

Should we process your data to protect legitimate interests, you may object to such processing at any time for reasons that arise from your specific situation; this also applies to profiling based on these provisions.

 

We will then cease to process your personal information unless we can demonstrate compelling legitimate grounds for processing such information that outweigh your interests, rights and freedoms, or the processing is intended to assert, exercise or defend legal claims.

 

Purposes and legal bases of data processing

The processing of your personal data complies with the provisions of the GDPR and all other applicable data protection regulations. Legal bases for data processing arise in particular from Art. 6 GDPR.

 

We use your data to initiate business, to fulfil contractual and legal obligations, to conduct the contractual relationship, to offer products and services and to consolidate customer relationships, which may include marketing and direct marketing. Your consent may also constitute a legal basis for data processing. In this respect, we will inform you of the purposes of data processing and the right to withdraw your consent in advance.

 

Data transfers / Disclosure to third parties

We will only transmit your data to third parties within the scope of given statutory provisions or based on consent. In all other cases, information will not be transferred to third parties unless we are obliged to do so owing to mandatory legal regulations (disclosure to external bodies, including the supervisory authorities or law enforcement authorities).  

 

Data recipients / categories of recipients

In our organization, we ensure that only individuals who are required to process the relevant data to fulfil their contractual and legal obligations are authorized to handle personal data.

In certain cases, service providers assist our specialist departments to fulfil their tasks, including hosting, shop-programming, payment-processing, credit-check, newsletter and shipping. The necessary data protection contract has been concluded with all service providers.

 

Transfers of personal data to third countries 

A transfer of data to third countries (outside the European Union or the European Economic Area) shall only take place if required by law or if you have provided your consent for such a transfer.

We don’t transfer your personal data to recipients outside the European Economic Area.  

 

Period of data storage

We store your data for as long as such is required for the relevant processing purposes. Please note that numerous retention statutory periods require that data must be stored for a specific period of time. This relates in particular to retention obligations for commercial or fiscal purposes (e.g. commercial code, tax code, etc.). The data will be routinely deleted after use unless a further period of retention is required.

 

We may also retain data if you have given us your permission to do so, or in the event of any legal disputes and we use the evidence within the statutory limitation period, which may be up to 30 years; the standard limitation period is 3 years. 

 

Secure transfer of data

We implement the appropriate technical and organisational security measures to ensure the optimal protection of the data stored by us against accidental or intentional manipulation, loss, destruction or access by unauthorised persons. The security levels are continuously reviewed in collaboration with security experts and adapted to new security standards.

The data exchange to and from our website is encrypted. We provide https as a transfer protocol for our website, and always use the current encryption protocols. It is also possible to use alternative communication channels (e.g. surface mail).

 

Obligation to provide data

A range of personal data is required to establish, implement and terminate the obligation and the fulfilment of the relevant contractual and legal obligations. The same applies to the use of our website and the various functions we provide.

We have summarised the relevant details in the above point. In some cases, legal regulations require data to be collected or made available. Please note that it will not be possible to process your request or execute the underlying contractual obligation without this information.

 

Data categories, sources and origin of data

The data we process is defined by the relevant context: it depends on whether, for example, you place an order online, enter a request on our contact form or if you want to send us an application or submit a complaint.

Please note that we may also provide information at specific points for specific processing situations separately where appropriate, e.g. when uploading application documents or when making a contact request.

 

We collect and process the following data when you visit our website:

  • Name of the Internet service provider
  • Information on the website from which you visited us
  • Web browser and operating system used
  • The IP address by your allocated Internet service provider
  • Information on websites accessed on our site, including date and time
  • Access-status/ http status-code

For reasons of technical security (in particular to safeguard against attempts to attack of our web server), this data is stored in accordance with Article 6 (1) lit f GDPR. Anonymization takes place no later than after seven days by abbreviating the IP address so that no reference is made to the user. 

We collect and process the following data as part of a contact request:

  • Name, first name
  • Contact data
  • Salutation
  • Information on wishes and interests
  • Company name (if applicable)

 

We process the following data as part of the ordering process:

  • Salutation
  • Name, first name
  • Delivery address
  • Invoice address
  • Email
  • Data that may be legitimately processed from other / external sources

 

We collect and process the following data for newsletters:

  • Email (mandatory)
  • Name, first name and salutation may be provided optionally

 

We collect and process the following data as a part of the ordering of the NICI catalog / brochure:

  • Salutation
  • Name, first name
  • Email
  • Address

 

We collect and process the following data for lotteries:

  • Name, first name
  • Email (depending on the communication channel)
  • Address
  • Date of birth

 

We collect the followig data as a part of the registration / opening of a user account:

  • Salutation
  • Name, first name
  • Email
  • Address, deviating delivery address (if applicable)
  • Data that may be legitimately processed from other / external sources

 

Automated decisions in individual cases

We do not use purely automated processing to make decisions. 

 

Cookies (Art. 6 Abs. 1 lit. f EU-DS-GVO / Art. 6 Abs. 1 lit. a EU-DS-GVO bei Einwilligung)

Our website uses “cookies” at various locations, which serve to make our offer more user-friendly, effective and secure. Cookies are small text files that are placed on your computer and stored by your browser (locally on your hard disk).

Cookies enable us to analyse how users use our websites so we can design the website content in accordance with the visitor’s needs. Cookies also allow us to measure the effectiveness of a particular ad and, for example, to place it based on the user's interests. Legal basis is Art. 6 para. 1 lit. f, if consent is given Art. 6 para. 1 lit. a EU-DS-GVO.

We use the following cookies:

First-party-cookies:

Those cookies are being operated directly by NICI GmbH. Depending on the purpose, these remain permanently - even after the end of the session (so-called persistent cookies, e.g.: implementation of opt-out) or are deleted when the browser is closed (so-called session cookies; they have only one Browser session validity).

Third-party-cookies:

This type of cookies is controlled by third parties. Third-party providers are providers who display advertising banners on other websites, in particular for NICI GmbH. These use cookies to e.g. to transmit the information that an advertising banner you have shown has led to a purchase. (e.g. conversion tracking).

So-called temporary / permanent cookies are used, which are automatically deleted after the specified time (usually 6 months). These temporary or permanent cookies are stored on your end device and delete themselves after the specified time. The cookies of our partner companies also only contain pseudonymous, usually even anonymous, data. They enable our partners to retrace which products you viewed, whether something was bought, which products were searched for, etc.

Some of our advertising partners also collect information beyond the website about which pages you have previously visited or which products you have been interested in, for example. This makes it possible to display individual advertising. This pseudonymous data is never combined with your personal data.

Most web browsers automatically accept cookies. Of course, you can also deactivate, restrict or delete cookies on your end device manually via the settings of your browser or using software.

Please note: If you deactivate the setting of cookies, you may not be able to use all functions of our website to their full extent. 

 

Webtracking

Google Analytics

This website uses functions of the web analytics service Google Analytics. The provider is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

Google Analytics uses so-called "cookies". These are text files that are stored on your computer and that enable an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there.

Google Analytics cookies are saved and this analysis tool is used on the basis of Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in analyzing user behavior in order to optimize both its website and its advertising.

IP anonymization

We have activated the IP anonymization function on this website. This means that your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area before it is transmitted to the USA. The full IP address is only transferred to a Google server in the USA and abbreviated there in exceptional cases. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide the website operator with other services related to website activity and internet usage. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.

 

Browser plugin

You can prevent the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by downloading the browser plug-in available under the following link and install: https://tools.google.com/dlpage/gaoptout?hl=de.

 

Objection against data collection

You can prevent Google Analytics from collecting your data by clicking on the following link. An opt-out cookie is set that prevents the collection of your data on future visits to this website:

Opt-out: https://adssettings.google.com/authenticated.

You can view Google's terms of use at http://www.google.de/intl/de/policies/terms/regional.html

 

Data-processing

We have concluded a data processing agreement with Google and fully implement the strict requirements of the German data protection authorities when using Google Analytics. 

Demographic features with Google Analytics

This website uses the "demographic features" function of Google Analytics. This allows reports to be created that contain information about the age, gender and interests of the website visitors. This data comes from interest-based advertising from Google and visitor data from third-party providers. This data cannot be assigned to a specific person. You can deactivate this function at any time via the ad settings in your Google account or generally prohibit the collection of your data by Google Analytics as shown in the point “Objection against data collection”. 

 

Google Analytics Remarketing

Our websites use the functions of Google Analytics Remarketing in connection with the cross-device functions of Google AdWords and Google DoubleClick. The provider is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

This function enables the advertising target groups created with Google Analytics Remarketing to be linked to the cross-device functions of Google AdWords and Google DoubleClick. In this way, interest-related, personalized advertising messages that have been adapted to you depending on your previous usage and surfing behavior on one device (e.g. cell phone) can also be displayed on another of your devices (e.g. tablet or PC).

If you have given your consent, Google will link your web and app browser history to your Google account for this purpose. In this way, the same personalized advertising messages can be displayed on any device on which you log in with your Google account.

To support this function, Google Analytics records Google-authenticated IDs of the users, which are temporarily linked to our Google Analytics data in order to define and create target groups for cross-device advertising.

You can permanently object to cross-device remarketing / targeting by deactivating personalized advertising in your Google account; follow this link. (Link)

The summary of the data recorded in your Google account takes place exclusively on the basis of your consent, which you can give or revoke to Google (Art. 6 Para. 1 a GDPR). In the case of data collection processes that are not merged into your Google account (e.g. because you do not have a Google account or have objected to the merging), the recording of the data is based on Art. 6 Para. 1 lit. f GDPR. The legitimate interest arises from the fact that the website operator has an interest in the anonymized analysis of website visitors for advertising purposes.

Further information and the data protection regulations can be found in Google's data protection privacy. 

 

Google AdWords and Google Conversion-Tracking

This website uses Google AdWords. AdWords is an online advertising program by Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, United States (“Google”).

As part of Google AdWords, we use so-called conversion tracking. If you click on an advertisement placed by Google, a cookie for the conversion tracking is set. Cookies are small text files that the Internet browser places on the user's computer. These cookies expire after 30 days and are not used to personally identify users. If the user visits certain pages of this website and the cookie has not yet expired, Google and we can recognize that the user clicked on the ad and was redirected to this page.

Every Google AdWords customer receives a different cookie. The cookies cannot be tracked through the websites of AdWords customers. The information obtained using the conversion cookie is used to create conversion statistics for AdWords customers who have opted for conversion tracking. Customers receive the total number of users who clicked on their ad and were redirected to a page with a conversion tracking tag. However, they will not receive any information that can be used to personally identify users. If you do not want to participate in tracking, you can object to this use by easily deactivating the Google Conversion Tracking cookie via your Internet browser under user settings. You will then not be included in the conversion tracking statistics.

“Conversion cookies” are saved on the basis of Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in analyzing user behavior in order to optimize both its website and its advertising.

You can find more information on Google AdWords and Google Conversion Tracking in Google's data protection privacy.

You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general, and activate the automatic deletion of cookies when the browser is closed. If cookies are deactivated, the functionality of this website may be restricted. 

 

Google Maps

On our website we use Google Maps from Google LLC., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA ("Google"). Google Maps is a web service for displaying interactive (land) maps to visually display geographic information. The legal basis is Article 6 (1) (f) GDPR Our legitimate interest lies in optimizing the functionality of our website.

As soon as you call up the sub-pages in which the Google Maps map is integrated, information about your use of our website (such as your IP address) is transmitted to Google servers in the USA and stored there. This takes place regardless of whether Google provides a user account that you are logged in to or whether there is no user account. If you are logged in to Google, your data will be assigned directly to your account. If you do not want your profile to be assigned to Google, you must log out before activating the button.

Google LLC, based in the USA, is certified for the US-European data protection convention "Privacy Shield", which guarantees compliance with the data protection level applicable in the EU.

If you do not agree to the future transmission of your data to Google when using Google Maps, there is also the option of completely deactivating the Google Maps web service by switching off the JavaScript application in your browser. Google Maps and thus the map display on this website can then not be used.

The terms of use for Google Maps can be found at https://www.google.com/intl/de_US/help/terms_maps.html. Detailed information on data protection in connection with the use of Google Maps can be found on the Google website ("Google Privacy Policy"): http://www.google.de/intl/de/policies/privacy/

 

YouTube

We integrate the videos of the “YouTube” platform from Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA, into our online offer. The videos were embedded in the extended data protection mode.

By embedding the video in the extended data protection mode, no cookies are set that record usage behavior in order to personalize the video playback. However, the extended data protection mode only refers to the recording of user behavior, not to the provision of ads.

When you visit our site, a device ID is generated in the local storage of the web browser and saved beyond the session. In addition, calling up the site leads to a connection to the Google DoubleClick network. If you start the video, this could trigger further data processing operations. We have no influence on that.

If you are logged in to Google, your data will be assigned directly to your account. If you do not want your YouTube profile to be assigned, you must log out before activating the button.

YouTube stores your data as usage profiles and uses it for the purposes of advertising, market research and / or the needs-based design of its website. Such an evaluation is carried out in particular (even for users who are not logged in) to provide needs-based advertising and to inform other users of the social network about your activities on our website. You have the right to object to the creation of these user profiles, although you must contact YouTube to exercise it.

Opposition option: https://adssettings.google.com/authenticated

Further information on the purpose and scope of data collection and processing by YouTube can be found in Google's data protection declaration. There you will also find further information on your rights and setting options to protect your privacy: https://www.google.de/intl/de/policies/privacy

Google also processes your personal data in the USA and has submitted to the EU-US Privacy Shield, https://www.privacyshield.gov/EU-US-Framewok

 

Hotjar (hotjar Ltd.)

This website uses the web analysis service Hotjar from Hotjar Ltd. Hotjar Ltd. is a European company based in Malta (Hotjar Ltd, Level 2, St Julians Business Center, 3, Elia Zammit Street, St Julians STJ 1000, Malta, Europe Tel .: +1 (855) 464-6788)

With this tool, movements on the websites on which Hotjar is used can be tracked (so-called heat maps). For example, you can see how far users scroll and which buttons users click and how often. It is also possible to use the tool to obtain feedback directly from the website users. In this way, we obtain valuable information to make our websites even faster and more customer-friendly. The above analysis is based on your consent in accordance with Art. 6 Para. 1 lit. a EU GDPR. When using this tool, we pay particular attention to the protection of your personal data. So we can only retrace which buttons you click and how far you scroll. Areas of the websites in which personal data of you or third parties are displayed are automatically hidden by Hotjar, and are therefore at no time traceable.

Personal data is stored for 6 months and then deleted by us.

More information about Hotjar Ltd. and the Hotjar tool can be found at: https://www.hotjar.com

Hotjar Ltd.'s privacy policy can be found at: https://www.hotjar.com/privacy

 

Facebook Custom Audiences („User-activity-pixel“)
This website uses the so-called "Facebook pixel" of the social network Facebook, which is operated by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA, or, if you are based in the EU, Facebook Ireland Ltd., 4 Grand Canal Square, Grand Canal Harbor, Dublin 2, Ireland. The data processing is based on the legal basis of your consent in accordance with Art. 6 Para. 1 lit. a EU-GDPR.

Facebook Inc. may transfer personal data to the United States. However, Facebook is certified under the Privacy Shield Agreement (https://www.privacyshield.gov/participant?id=a2zt0000000GnywAAC&status=Active). Facebook is thus committed to complying with EU data protection standards.

You can enable Facebook and its partners to place advertisements on and outside of Facebook. A cookie can be stored on your computer for these purposes. We use the Facebook pixel to only display the advertisements placed by us to those users who have also visited our website or have certain features that we transmit to Facebook. With the help of the Facebook pixel, Facebook is able to determine our website visitors as a target group for the display of advertisements.

We collect and process the following data from your use of our service

Data attributes

  • Pixelspecific data
  • Http-Header
  • Optional parameters

Collected data

This list contains all (personal) data collected by or through the use of this service.

  • Facebook-user-ID
  • Browser information
  • Usage data
  • Device information
  • Non-sensitive custom data
  • Referrer URL
  • Pixel ID
  • Location information
  • Pixel-specific data
  • User behavior
  • Viewed advertisements
  • Interactions with advertising, services and products
  • Marketing information
  • Viewed content
  • IP address


With the help of the Facebook pixel, your behavior can be tracked over several pages after you have seen or clicked on a Facebook advertisement. This procedure serves to evaluate the effectiveness of Facebook advertisements for statistical and market research purposes and can help to optimize future advertising measures. Facebook processes the data in accordance with the Facebook data usage guidelines: https://www.facebook.com/policy. You can find specific information about the Facebook pixel and how it works here:

https://www.facebook.com/business/help/651294705016616.

 

 

 

Links social media

On our website you will find links to social media services. You can recognize links to the websites of the social media services by the respective company logo. If you follow these links, you can reach the corporate identity of NICI GmbH at the respective social media service. When clicking on a link to a social media service, a connection to the servers of the social media service is established. This means that the servers of the social media service are informed that you have visited our website. In addition, further data is transmitted to the provider of the social media service. For example:

• Address of the website on which the activated link is located

• Date and time of accessing the website or activating the link

• Information about the browser and operating system used

• IP address

If you are already logged into the corresponding social media service at the time the link is activated, the provider of the social media service may be able to determine your user name and, if applicable, your real name from the transmitted data and this information to your personal Assign user account to the social media service. You can exclude this possibility of assignment to your personal user account if you log out of your user account beforehand.

The social media service servers are located in the United States and other countries outside the European Union. The data can therefore also be processed by the provider of the social media service in countries outside the European Union. Please note that companies in these countries are subject to a data protection law that generally does not protect personal data to the same extent as is the case in the member states of the European Union.

Please note that we have no influence on the scope, type and purpose of data processing by the provider of the social media service. You can find more information on the use of your data by the social media services integrated on our website in the data protection guideline of the respective social media service.

 

Social Plugins

Facebook plugins (Like & Share button)

Plugins from the social network Facebook, provider Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA, are integrated on our website. You can recognize the Facebook plugins by the Facebook logo or the "Like" button on our website. An overview of the Facebook plugins can be found here: https://developers.facebook.com/docs/plugins/?locale=de_DE

When you visit our website, the plugin creates a direct connection between your browser and the Facebook server. Facebook receives the information that you have visited our site with your IP address. If you click the Facebook "Like" button while you are logged into your Facebook account, you can link the content of our pages to your Facebook profile. This enables Facebook to assign your visit to our website to your user account. We would like to point out that, as the provider of the website, we have no knowledge of the content of the data transmitted or how it is used by Facebook. You can find further information on this in Facebook's data protection declaration at: https://de-de.facebook.com/privacy/explanation

If you do not want Facebook to be able to assign your visit to our website to your Facebook user account, please log out of your Facebook user account.

The Facebook plug-ins are used on the basis of Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in the greatest possible visibility in social media. 

Twitter Plugin

Functions of the Twitter service are integrated on our sites. These functions are offered by Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA. By using Twitter and the "Re-Tweet" function, the websites you visit are linked to your Twitter account and made known to other users. This data is also transmitted to Twitter. We would like to point out that, as the provider of the pages, we have no knowledge of the content of the transmitted data or of their use by Twitter. Further information can be found in Twitter's data protection declaration at: https://twitter.com/privacy.

The Twitter plug-in is used on the basis of Art. 6 Para. 1 lit. f GDPR. The website operator has a legitimate interest in the greatest possible visibility in social media.

You can change your data protection settings on Twitter in the account settings at https://twitter.com/account/settings. 

 

Contact form / Contact via email (Article 6 (1) lit a, b GDPR)

A contact form is available on our website which can be used to contact us electronically. If you write to us using the contact form, we will process the data you submitted in the contact form to respond to your queries and requests.

In so doing, we respect the principle of data minimization and data avoidance, such that you only have to provide the information we require to contact you, which is your email address and the message field itself and (if applicable) further information required to address your request. Your IP address will also be processed for technical reasons and for legal protection. All other data is voluntary, and additional fields are optional (e.g. to provide a more detailed response to your questions).

In order to best protect the security and confidentiality of your data, we implement appropriate security measures. Your request will be transmitted to us using https encryption.

If you contact us by email, we will process the personal information provided in the email solely for the purpose of processing your request. If you do not use the forms offered to contact us, no additional data will be collected.

 

Newsletter (Art. 6 Para. 1 lit. a GDPR)

You can subscribe to a free newsletter on our website. The email address and name you provided when you subscribed to the newsletter will be used to send the personalized newsletter. If you provide us with an optional salutation, first and last name, the newsletter will be sent in a personalized form.

The principle of data minimization and data avoidance is observed here, as only the email address is mandatory. Your IP address will also be processed when you subscribe to the newsletter for technical reasons and legal protection.

We use the so-called double opt-in procedure to send newsletters by email. This means that you will only receive advertising by email if you have expressly confirmed beforehand that we should activate the newsletter service. We do this by sending you a notification email and asking you to confirm by clicking on a link contained in this email that you would like to receive our newsletter at this email address.

You can of course terminate the subscription at any time via the opt-out option provided in the newsletter and therefore withdraw your consent. You can also unsubscribe from the newsletter via our website.

This also applies to any newsletter tracking pixels used. 

 

Competition / advertising consent (Article 6 (1) lit a, b GDPR)

You can participate in various lotteries we offer on our website. If you complete the competition form, we process the relevant data you provided for the sole purpose of operating the competition.

The principle of data minimization and data avoidance is observed here, as we only request data that is required to operate the competition itself, as well as the notification of the winner.

The mandatory fields are marked with an asterisk (*). Your IP address will also be processed for technical reasons and legal protection. The additional fields are optional and can be completed on a voluntary basis. We cannot operate the competition without the mandatory fields, as users will not be able to participate.

We will only forward your data to third parties within the framework of the statutory provisions or with the appropriate consent. Otherwise, it will not be forwarded to third parties, unless we are obliged to do so due to mandatory legal provisions (disclosure to external bodies such as supervisory authorities or law enforcement authorities).

As part of the competition mask, you also have the option of giving us your consent to send a newsletter. Of course, it is also possible to take part in the competition without giving your advertising consent.

If you give us your consent by ticking the newsletter checkbox, we will process your data as described in the newsletter section. You can revoke this consent at any time, as described in the newsletter section.

 

Ordering through the web shop (Article 6 (1) lit b GDPR)

We process the data provided by you within the scope of the order form solely to execute and fulfil the underlying contractual relationship, unless you agree to further use. The principle of data minimization and data avoidance is observed here, as we only request data that is required to perform the contract or fulfil our contractual obligations or to collect data that is mandatory under the law. Your IP address will also be processed for technical reasons and legal protection.

If this data is not provided, we will have to decline the conclusion of the contract, as we cannot then perform the contract or will be obliged to terminate an existing contract, where appropriate. You can of course provide additional data on a voluntary basis 

 

Registration / Customer account (Article 6 (1) lit a, b GDPR)

On our website, we offer users the opportunity to register by providing personal information. The advantage is that you can see the order history in particular and the data you enter will be saved for the order form. If you order again, you do not have to enter it again.

Registration is therefore possible either to fulfill a contract with you (via our online shop) or to carry out pre-contractual measures. An order can also be placed without opening a customer account.

The principle of data minimization and data avoidance is observed, since only the data required for registration are marked with an asterisk (*) as a mandatory field.

By registering on our website, the user's IP address, the date and time of registration are also saved (technical background data). By clicking the "Register now" button, you give your consent to the processing of your data.

Please note: The password you assign will be saved in encrypted form. Employees from our company cannot read this password. They can therefore not give you any information should you have forgotten your password.

In this case, use the "Forgot password" function, which will send you an automatically generated new password by email. No employee is authorized to ask for your password by phone or in writing. Therefore, please never give your password if you receive such requests.

With the completion of the registration process, your data is stored with us for the use of the protected customer area. As soon as you log on to our website with your email address as your user name and password, this customer data will be made available on our website for actions you have carried out (e.g. for orders in our online shop). Executed orders can be tracked in the order history. You can specify changes to the billing or delivery address here.

Registered persons are free to make changes / corrections to the billing or delivery address in the order history independently. Of course, you can also cancel or delete the registration or your customer account. 

 

 

Payment systems / credit check (Article 6 (1) lit a, b, f GDPR)

In our online shop you can select to pay by credit card, PayPal or direct debit. In order to proceed accordingly, the relevant payment data is collected to perform and process your order. Your IP address will also be processed for technical reasons and legal protection.

The principle of data minimization and data avoidance is observed in a manner that you only submit the data we need to process the payment and therefore fulfil the contract or to collect the payment or for which we are under a legal obligation.

We cannot fulfil the contract without this data, and we will therefore have to decline it.

The payment system we use implements SSL encryption to protect your data.

Note on credit card payment: As a standard procedure with credit card payments, your credit card details will be checked and a credit check is carried out.

Note on PayPal: PayPal is a PayPal (Europe) S.à.r.l. et Cie, S.C.A company, 22-24 Boulevard Royal, L-2449 Luxembourg. If the data subject selects “PayPal” as an option during the order process in our online shop, the data subject’s information will be automatically sent to “PayPal”.

By selecting this payment option, the data subject consents to the transfer of personal data required for payment processing. The personal data transmitted to PayPal is generally a first name, last name, address, email address, IP address, telephone number, mobile phone number or other data required for payment processing.

Personal data associated with the relevant order is also necessary to execute the purchase contract. Details on data protection at PayPal can be found at: https://www.paypal.com/de/webapps/mpp/ua/privacy-prev (legal position from May 25, 2018).

 

Marketing purposes (Article 6 (1) lit f GDPR)

NICI GmbH is keen to nurture the customer relationship with you and to send you information and offers about our products / services. We therefore process your data to send you the relevant information and offers via email.

Die NICI GmbH ist daran interessiert, die Kundenbeziehung mit Ihnen zu pflegen und Ihnen Informationen und Angebote über unsere Produkte / Dienstleistungen zukommen zu lassen. Daher verarbeiten wir Ihre Daten, um Ihnen entsprechende Informationen und Angebote per E-Mail zuzusenden. 

You may object to the use of your personal data for the purpose of direct marketing at any time; this also applies to profiling insofar as it is associated with direct marketing. If you object, we will cease processing your personal information for this purpose.

You can withdraw your consent at any time free of charge and informally without stating the reasons for such. Withdrawal should be sent via email to kommunikation@nici.de or via surface mail to NICI GmbH, Datenschutz, Langheimer Strasse 94, D-96264 Altenkunstadt.

 

 

 

Online offers for children

Persons under the age of 16 may not submit personal data to us or give a declaration of consent without the authorization of their legal guardian. We encourage parents and guardians to actively participate in the online activities and interests of their children. 

 

Links to other providers

Our website also contains clearly identifiable links to the Internet sites of other companies. Although we provide links to websites of other providers, we have no influence on their content, and no guarantee or liability can therefore be assumed for such. The content of these pages is always the responsibility of the respective provider or operator of the pages.

The linked pages were checked at the time of linking for potential legal violations and identifiable infringements. No illegal content was identified at the time of linking. However, a permanent content control of the linked pages is not reasonable without concrete evidence of an infringement and, upon notification of a violation of rights, such links will be promptly removed.