Privacy

All the data we get from you, (your name, adress, email, etc. ) is only used to process your order. We will also use this data to inform you about Samahan (no daily spam) or send you a marry chrismas card.  We will not give or sell your data to anyone else.

For payment we use Paypal and Stripe (creditcards) 

Both companies send us a money transfer notice and the data for shipment.

We get no information about your account, credit card number etc.

 When you transfer money through your bank, we also see your account number. 

Data protection guidelines / privacy policy
Principle:
We only collect and save such (personal) data that we need to process the order, for bookkeeping and to answer queries, etc.
All of your data, i.e. name, address, e-mail, etc., will not be passed on, sold or similar by us. This also applies to anonymized or aggregated data.

Data in payment transactions
In addition to bank transfers, we also work with two service providers, PayPal and Stripe.
PayPal processes direct payments through your PayPal account, Stripe payments by credit card.
We only receive the payment confirmation from both service providers, as well as the order-related data (name, shipping address, article ...).
We do not receive account information, credit card numbers, etc.

P.S .: With a bank transfer we will of course see your account number on our statement.

New EU data protection regulation (GDPR)
 
- We assume that with your order you also consent to the use of the (personal) data you have entered for order processing.
 
- We only store information that we need for order processing and accounting, i.e. name, address (es), e-mail, telephone number, items ordered, prices, VAT, order date, shipping date, payment date, etc. These data remain also stored after completion of the actual order in order to be able to handle inquiries, reorders, returns, complaints, etc.
 
- We receive additional information (see above) if you use a payment service provider (PayPal, Stripe).
- If you use our blog, your email address and the date of your blog entry will be saved.

- Data evaluations, statistics, etc. are only created for internal purposes and are not passed on.

-Our website is provided (hosted) by WIX.COM. Your data is not stored directly with us, but on the WIX.COM servers. WIX.COM secures its systems according to the latest state of the art. You can find the data protection guidelines of Wix.Com at https://de.wix.com/about/privacy

- Our online store is provided by Wix.Com. This shop needs some cookies in order to carry out the order process or to memorize entries. These are in detail:

Cookie name Life span Purpose
svSession Permanent Creates activities and BI
hs session security
incap_ses _ $ {Proxy ID} _ $ {Site ID} Session Security
incap_visid _ $ {Proxy-ID} _ $ {Site-ID} Session Security
nlbi_ {ID} Persistent cookie security
XSRF-TOKEN Persistent cookie security
smSession Two weeks Identify logged in site members

- We (samahan.online) do not know your IP address, but WIX.COM stores this data.

- SSL or TLS encryption
For security reasons and to protect the transmission of confidential content, such as orders or inquiries that you send to us as the website operator, this site uses an SSL or. TLS encryption. You can recognize an encrypted connection by the fact that the address line of the browser changes from “http: //” to “https: //” and by the lock symbol in your browser line.
If the SSL or TLS encryption is activated, the data that you transmit to us cannot be read by third parties.

- You can ask us at any time (info@samahan.online) to delete the stored data.
- You can request a list of the data stored about you at any time (info@samahan.online).
- You can request your data in machine-transferable form at any time (info@samahan.online)
To be on the safe side: Please send your inquiries to the same e-mail address as when you placed your order.
 
Server log files
The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:
Browser type and browser version
operating system used
Referrer URL
Host name of the accessing computer
Time of the server request
IP address
This data will not be merged with other data sources.
The basis for data processing is Article 6 (1) (b) GDPR, which allows the processing of data for the fulfillment of a contract or pre-contractual measures.

Contents of this website:
We do not assume any liability for the topicality, correctness, completeness or quality of the information provided. Liability claims against us relating to material or immaterial damage caused by the use or non-use of the information provided or the use of incorrect and incomplete information are fundamentally excluded, unless we can be shown to have acted willfully or grossly negligent. We expressly reserve the right to change, add to, or delete parts of the presence or the entire offer or to temporarily or permanently cease publication without prior notice. Brand names and trademarks are the property of their respective owners.

References and links:
This website contains direct or indirect references to external websites ("links") that are outside our area of ​​responsibility. We have no influence whatsoever on the current and future design and on the content of the linked / connected pages. We therefore expressly distance ourselves from the content of all linked pages and do not adopt them as our own.

This website uses Google Analytics, a web analysis service from Google Inc. (“Google”). Google Analytics uses so-called "cookies", text files that are stored on your computer and that enable your use of the website to be analyzed. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there. If IP anonymization is activated on this website, your IP address will be shortened beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. The full IP address will only be transmitted to a Google server in the USA and shortened there in exceptional cases. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide the website operator with other services relating to website activity and internet usage. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. You can prevent the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by downloading the browser plug-in available under the following link and install: http://tools.google.com/dlpage/gaoptout
 
For more information on terms of use and data protection, see the Google Analytics terms and conditions or the Google Analytics overview. We would like to point out that on this website Google Analytics has been expanded to include the code "gat._anonymizeIp ();" has been expanded to ensure an anonymous collection of IP addresses (so-called IP masking).

General notice and mandatory information

Designation of the responsible body

The responsible body for data processing on this website is:

Samahan Online GmbH
Charly Grecki
Breitenbachstrasse 24-29
13509 Berlin

The responsible body decides alone or jointly with others on the purposes and means of processing personal data (e.g. names, contact details, etc.).

Revocation of your consent to data processing

Some data processing operations are only possible with your express consent. You can revoke your already given consent at any time. An informal e-mail notification is sufficient for the revocation. The legality of the data processing carried out before the revocation remains unaffected by the revocation.

Right to lodge a complaint with the competent supervisory authority

As a data subject, you have the right to lodge a complaint with the competent supervisory authority in the event of a breach of data protection law. The competent supervisory authority with regard to data protection issues is the state data protection officer of the federal state in which our company is based. The following link provides a list of data protection officers and their contact details: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.

Right to data portability

You have the right to have data that we process automatically on the basis of your consent or in fulfillment of a contract handed over to you or to third parties. It is provided in a machine-readable format. If you request the direct transfer of the data to another person responsible, this will only be done if it is technically feasible.

Right to information, correction, blocking, deletion

You have the right to free information about your stored personal data, the origin of the data, their recipients and the purpose of the data processing and, if necessary, the right to correct, block or delete this data at any time within the framework of the applicable legal provisions. You can contact us at any time using the contact options listed in the legal notice if you have any further questions on the subject of personal data.

SSL or TLS encryption

For security reasons and to protect the transmission of confidential content that you send to us as the site operator, our website uses an SSL or. TLS encryption. This means that data that you transmit via this website cannot be read by third parties. You can recognize an encrypted connection by the "https: //" address line of your browser and by the lock symbol in the browser line.

Server log files

The website provider automatically collects and stores information that your browser automatically transmits to us in server log files. These are:

   Visited page on our domain
   Date and time of the server request
   Browser type and browser version
   Operating system used
   Referrer URL
   Host name of the accessing computer
   IP address

There is no merging of this data with other data sources. The basis for data processing is Article 6 (1) (b) GDPR, which allows the processing of data for the fulfillment of a contract or pre-contractual measures.

Data transmission when concluding a contract for the purchase and dispatch of goods

Personal data will only be transmitted to third parties if there is a need to process the contract. Third parties can be payment service providers or logistics companies, for example. A further transmission of the data does not take place or only if you have expressly consented to this.

The basis for data processing is Article 6 (1) (b) GDPR, which allows the processing of data for the fulfillment of a contract or pre-contractual measures.

Registration on this website

You can register on our website to use certain functions. The transmitted data are used exclusively for the purpose of using the respective offer or service. Mandatory information requested during registration must be given in full. Otherwise we will refuse the registration.

In the event of important changes, e.g. for technical reasons, we will inform you by email. The e-mail will be sent to the address that was given during registration.

The processing of the data entered during registration takes place on the basis of your consent (Art. 6 Para. 1 lit. a GDPR). You can revoke your already given consent at any time. An informal e-mail notification is sufficient for the revocation. The legality of the data processing that has already taken place remains unaffected by the revocation.

We store the data collected during registration for the period that you are registered on our website. Your data will be deleted if you cancel your registration. Statutory retention periods remain unaffected.

contact form

Data transmitted via the contact form, including your contact details, will be stored in order to be able to process your request or to be available for follow-up questions. This data will not be passed on without your consent.

The processing of the data entered in the contact form takes place exclusively on the basis of your consent (Art. 6 Para. 1 lit. a GDPR). You can revoke your already given consent at any time. An informal e-mail notification is sufficient for the revocation. The legality of the data processing operations carried out before the revocation remains unaffected by the revocation.

Data transmitted via the contact form will remain with us until you ask us to delete it, revoke your consent to storage or there is no longer any need to store data. Mandatory legal provisions - in particular retention periods - remain unaffected.

Storage duration of contributions and comments

Contributions and comments as well as related data, such as IP addresses, are saved. The content remains on our website until it has been completely deleted or had to be deleted for legal reasons.

The contributions and comments are saved on the basis of your consent (Art. 6 Para. 1 lit. a GDPR). You can revoke your already given consent at any time. An informal e-mail notification is sufficient for the revocation. The legality of data processing operations that have already taken place remains unaffected by the revocation.

Subscribe to comments

As a user of our website, you can subscribe to comments after you have registered. With a confirmation e-mail we will check whether you are the owner of the given e-mail address. You can unsubscribe from the subscription function for comments at any time via a link in a subscription email. Data entered to set up the subscription will be deleted if you cancel. If this data has been transmitted to us for other purposes and elsewhere, it will remain with us.

Newsletter data

We need an email address from you to send our newsletter. Verification of the specified email address is necessary and the receipt of the newsletter must be consented to. Additional data is not collected or is voluntary. The data is used exclusively for sending the newsletter.

The data provided when registering for the newsletter are processed exclusively on the basis of your consent (Art. 6 Para. 1 lit. a GDPR). You can revoke your already given consent at any time. An informal e-mail notification is sufficient for the revocation or you can unsubscribe using the "Unsubscribe" link in the newsletter. The legality of the data processing operations that have already taken place remains unaffected by the revocation.

Data entered to set up the subscription will be deleted if you cancel. If this data has been transmitted to us for other purposes and elsewhere, it will remain with us.

YouTube

Our website uses plugins from YouTube to integrate and display video content. The video portal is provided by YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA.

When you visit a page with an integrated YouTube plugin, a connection to the YouTube servers is established. This tells YouTube which of our pages you have accessed.

YouTube can assign your surfing behavior directly to your personal profile if you are logged into your YouTube account. You can prevent this by logging out beforehand.

YouTube is used in the interest of an appealing presentation of our online offers. This represents a legitimate interest within the meaning of Art. 6 Para. 1 lit.f GDPR.

You can find details on handling user data in YouTube's data protection declaration at: https://www.google.de/intl/de/policies/privacy.

Cookies

Our website uses cookies. These are small text files that your web browser saves on your device. Cookies help us to make our offer more user-friendly, more effective and safer.

Some cookies are "session cookies." Such cookies are automatically deleted at the end of your browser session. However, other cookies remain on your device until you delete them yourself. Such cookies help us to recognize you when you return to our website.

With a modern web browser you can monitor, restrict or prevent the setting of cookies. Many web browsers can be configured so that cookies are automatically deleted when the program is closed. Deactivating cookies can limit the functionality of our website.

The setting of cookies, which are necessary to carry out electronic communication processes or to provide certain functions you want (e.g. shopping cart), is based on Art. 6 Para. 1 lit.f GDPR. As the operator of this website, we have a legitimate interest in storing cookies for the technically error-free and smooth provision of our services. If other cookies are set (e.g. for analysis functions), these will be treated separately in this data protection declaration.

Google Analytics

Our website uses functions of the web analysis service Google Analytics. The provider of the web analysis service is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

Google Analytics uses "cookies." These are small text files that your web browser saves on your device and that enable website usage to be analyzed. Information generated by cookies about your use of our website is transmitted to a Google server and stored there. The server location is usually the USA.

Google Analytics cookies are set on the basis of Art. 6 Para. 1 lit.f GDPR. As the operator of this website, we have a legitimate interest in analyzing user behavior in order to optimize our website and, if necessary, advertising.

IP anonymization

We use Google Analytics in conjunction with the IP anonymization function. It ensures that Google shortens your IP address within member states of the European Union or in other contracting states of the Agreement on the European Economic Area before it is transmitted to the USA. There may be exceptional cases in which Google transmits the full IP address to a server in the USA and abbreviates it there. On our behalf, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide us with other services relating to website activity and internet usage. The IP address transmitted by Google Analytics is not merged with other Google data.

Browser plugin

The setting of cookies by your web browser can be prevented. However, this could limit some functions of our website. You can also prevent the collection of data relating to your website usage including your IP address and subsequent processing by Google. You can do this by downloading and installing the browser plug-in available via the following link: https://tools.google.com/dlpage/gaoptout?hl=de.

Objection to data collection

You can prevent Google Analytics from collecting your data by clicking on the following link. An opt-out cookie will be set which prevents the collection of your data on future visits to our website: Deactivate Google Analytics.

You can find details on how user data is handled by Google Analytics in Google's data protection declaration: https://support.google.com/analytics/answer/6004245?hl=de.

Order processing

In order to fully comply with the statutory data protection requirements, we have concluded an order processing contract with Google.

Demographic characteristics in Google Analytics

Our website uses the “demographic characteristics” function of Google Analytics. It can be used to create reports that contain statements on the age, gender and interests of the site visitors. This data comes from interest-based advertising from Google as well as from visitor data from third-party providers. It is not possible to assign the data to a specific person. You can deactivate this function at any time. You can do this via the ad settings in your Google account or by generally prohibiting the collection of your data by Google Analytics, as explained in the section “Objection to data collection”.

PayPal

Our website allows payment via PayPal. The payment service provider is PayPal (Europe) S.à.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg.

If you pay with PayPal, the payment data you have entered will be transmitted to PayPal.

Your data is transmitted to PayPal on the basis of Art. 6 Paragraph 1 lit. a GDPR (consent) and Art. 6 Paragraph 1 lit. b GDPR (processing to fulfill a contract). You can revoke your already given consent at any time. Data processing operations in the past remain effective in the event of a revocation.

Klarna

Our website enables payment via Klarna. The payment service provider is Klarna AB, Sveavägen 46, 111 34 Stockholm, Sweden.

When paying with Klarna (Klarna checkout solution), Klarna collects various personal data from you. Details can be found in Klarna's data protection declaration at: https://www.klarna.com/de/datenschutz/.

Klarna uses cookies to optimize the Klarna checkout solution. This optimization represents a legitimate interest within the meaning of Article 6 (1) (f) GDPR. Cookies are small text files that your web browser saves on your device. Klarna cookies remain on your device until you delete them. Details on the use of Klarna cookies can be found at: https://cdn.klarna.com/1.0/shared/content/policy/cookie/de_de/checkout.pdf.

Your data is transmitted to Klarna on the basis of Art. 6 Paragraph 1 lit. a GDPR (consent) and Art. 6 Paragraph 1 lit. b GDPR (processing to fulfill a contract). You can revoke your already given consent at any time. Data processing operations in the past remain effective in the event of a revocation.

Instant bank transfer

Our website enables payment via "Sofortüberweisung." The payment service provider is Sofort GmbH, Theresienhöhe 12, 80339 Munich.

With the help of the “Sofortüberweisung” process, we receive a real-time payment confirmation from Sofort GmbH and can immediately begin to meet our obligations.

When paying by “Sofortüberweisung”, your PIN and TAN are transmitted to Sofort GmbH. The payment provider logs into your online banking account, automatically checks your account balance and makes the transfer. An immediate confirmation of the transaction follows. Your sales, the credit line of your overdraft facility and the existence of other accounts and their stocks are also automatically checked after logging in.

In addition to PIN and TAN, the transmission to Sofort GmbH also includes payment data and personal data. Your personal data include your first and last name, address, telephone number (s), email address, IP address and any other data required for payment processing. This data transfer is necessary in order to establish your identity beyond any doubt and to prevent attempted fraud.

The transfer of your data to Sofort GmbH takes place on the basis of Article 6 (1) (a) GDPR (consent) and Article 6 (1) (b) GDPR (processing to fulfill a contract). You can revoke your already given consent at any time. Data processing operations in the past remain effective in the event of a revocation.

You can find details on payment with immediate transfer at: https://www.sofort.de/datenschutz.html and https://www.klarna.com/sofort/.

Pinterest plugin

Our website uses functions of the social network Pinterest. The provider is Pinterest Inc., 808 Brannan Street, San Francisco, CA 94103-490, USA.

When you access a page with functions from Pinterest, your browser establishes a direct connection to the Pinterest servers. Log data are transmitted to the Pinterest servers. The servers are located in the USA. The log data may allow conclusions to be drawn about your IP address, websites visited, the type and settings of the browser, the date and time of the request, your use of Pinterest and cookies.

You can find details on this in the data protection information from Pinterest: https://about.pinterest.com/de/privacy-policy.

Google AdWords and Google Conversion Tracking

Our website uses Google AdWords. The provider is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, United States.

AdWords is an online advertising program. We work with conversion tracking as part of the online advertising program. After clicking on an ad placed by Google, a conversion tracking cookie is set. Cookies are small text files that your web browser stores on your device. Google AdWords cookies lose their validity after 30 days and are not used to personally identify users. Google and we can tell from the cookie that you clicked on an ad and were redirected to our website.

Every Google AdWords customer receives a different cookie. The cookies cannot be tracked via the websites of AdWords customers. Conversion cookies are used to create conversion statistics for AdWords customers who use conversion tracking. Adwords customers find out how many users clicked on their ad and were redirected to pages with a conversion tracking tag. However, AdWords customers do not receive any information that enables users to be personally identified. If you do not want to participate in tracking, you can object to its use. Here the conversion cookie must be deactivated in the user settings of the browser. This means that there is no inclusion in the conversion tracking statistics.

The storage of “conversion cookies” takes place on the basis of Art. 6 Para. 1 lit. f GDPR. As a website operator, we have a legitimate interest in analyzing user behavior in order to optimize our website and our advertising.

You can find details on Google AdWords and Google Conversion Tracking in Google's privacy policy: https://www.google.de/policies/privacy/.

With a modern web browser you can monitor, restrict or prevent the setting of cookies. Deactivating cookies can limit the functionality of our website.

Google Web Fonts

Our website uses web fonts from Google. The provider is Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

The use of these web fonts makes it possible to present you with the presentation of our website that you want, regardless of which fonts are available locally. This is done by retrieving the Google Web Fonts from a Google server in the USA and the associated transfer of your data to Google. This is your IP address and which of our pages you have visited. The use of Google Web Fonts is based on Art. 6 Para. 1 lit. f GDPR. As the operator of this website, we have a legitimate interest in the optimal presentation and transmission of our website.

The company Google is certified for the US-European data protection agreement "Privacy Shield". This data protection agreement is intended to ensure compliance with the data protection level applicable in the EU.

You can find details about Google Web Fonts at: https://www.google.com/fonts#AboutPlace:about and further information in Google's data protection provisions: https://policies.google.com/privacy/partners?hl=de

Source: data protection configurator from mein-datenschutzbeauftragter.de

If you have any questions or suggestions about our data protection guidelines, we would be happy to receive an email.

Charly Grecki
samahan.online