3. Which personal data is processed?
4. Purpose and legal basis
All data you provide is stored to provide functionality, error analysis, and reporting.
Each time you access the app, information (server log files) is automatically collected. That information includes the username that was used to log in to the app.
The data is processed according to Art. 6 (1) lit. f GDPR based on our legitimate interest in improving the stability and functionality of the app.
5. Data recipients
6. Storage period
The personal data will only be stored as long as the intended purpose is given. As a general rule, we delete your data after 6 months.
Since, due to your use of the application, a contractual relationship exists between you and the EBF, we are subject to the statutory retention periods.
7. Which data protection rights do you have?
You have the right to receive information about all your personal data stored by EBF GmbH at any time. You also have the right to have your personal data corrected, blocked, or, apart from the statutory provisions on data storage for business purposes, deleted. For this purpose, please contact EBF GmbH’s data protection officer. In order that blocking of data can be taken into account at any time, this data must be kept in a blocking file for control purposes. You can also request the deletion of data unless there is a legal archiving obligation. If such an obligation exists, we will block your data upon request.
You may change or revoke consent by notifying us accordingly with effect for the future.
You may at any time complain to the supervisory authority responsible for you. Your responsible supervisory authority depends on the federal state of your residence, your work, or the presumed violation. A list of supervisory authorities (for the non-public sector) including address can be found at: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html
If you would like more detailed information about your personal data with us, our data protection officer will be happy to answer any questions you may have regarding the protection of our data.
8. Data security
We only process personal data to the extent that this is possible under the provisions of data protection law. All necessary technical and organizational security measures are taken to ensure that your personal data is adequately protected against unauthorized access and misuse at all times.
Various encryption methods (e.g. SSL via HTTPS) are used to protect the security of your data when it is transmitted. All our servers are secured by means of a firewall and virus protection. Back-up and recovery procedures as well as role and authorization concepts are a part of our security philosophy.
All of our employees are obligated to observe the regulations of the GDPR and the BDSG (“Bundesdatenschutzgesetz”: German Federal Data Protection Act) when handling personal data.
9. Amendments to the data protection provisions
We reserve the right to adapt this data protection statement as necessary to ensure that it always complies with the current legal requirements, or to implement changes to our services in the data protection statement, e.g. when introducing new services as part of the application. At all times, the most recent version of the data privacy policy shall apply.