Controller

AHW Hunold & Partner mbB Tax Consultants Accountants Lawyers
Wankelstraße 9
50996 Cologne

represented by the Managing Directors
Heinz-Günther Hunold
Oliver Weber
Michael Becker
Klaus Esch
Andreas Amelung
Christoph Felten
Kai-Jens Egerlandt
Sebastian Löhr
Willi Mezger

(0) 22 36 / 39 82 – 0
info(at)ahw-steuerberater.de

Data protection officer contact details

Kompass Datenschutz/ Fischenicher Str. 10/ 50354 Hürth
besold (at) kompass-datenschutz.de
01575. 26 23 22 4

Purpose

The Telemedia Act (TMG) and the General Data Protection Regulation (GDPR) require us to inform you in plain language about the collection, transmission, storage, and processing of your data. First, we offer you information on the subject matter, about our team, and our services at https://www.ahw-unternehmerkanzlei.de. Doing so requires us to collect data.

Personal data

According to Article 4(1) of the GDPR, “‘personal data’ means any information relating to an identified or identifiable natural person (…); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person;”

Types of personal data we collect, process or use

We do not collect, process, or use any personal data from you when you use our website’s information. However, there is an exception to every rule. We need some of your data to provide you with certain services. We will inform you of such data as follows:

Data collection for technical reasons

Each time you visit our website, we automatically collect data that your browser sends to our server. This involves the following information:

The type and version of your browser
Your operating system
The URL you entered
The date and time you accessed the website
Your IP address (see below)
We do not have any possibility to assign this data to you individually, nor do we merge it with other data sources. The data is retained for a maximum of seven days.

IP- Addresses

Note: We do not store complete IP addresses on this website.
The web server’s access logs record every access to the website. These contain the following data: IP, directory protection user, date, time, pages accessed, logs, status code, data volume, referrer, user agent, hostname accessed.
IP addresses are stored in anonymized form. For this purpose, the last three digits are removed, i.e., 127.0.0.1 is changed to 127.0.0.*. IPv6 addresses are also anonymized. The anonymized IP addresses are stored for 60 days. Information about the directory protection user is anonymized after one day. Error logs that record erroneous accessing of pages are deleted after seven days. Such logs include error messages, the accessing IP address, and, depending on the type of error, the accessed website.
Access via FTP is logged with anonymized information on username and IP address and kept for 60 days.
These data are collected based on Article 6(1)(f) of the GDPR. Our “interest” as defined in Article is the operation of this website and the implementation of the security objectives of confidentiality, integrity, and data availability. This includes, for example, taking action under criminal or civil law to prosecute attacks on our infrastructure.

Contact form

Our website uses a contact form through which you can request information about our products or contact us in general. In addition to the information, you volunteer and your message, we require the following information from you:

Company name
Family name
first name
Street
house number
zip code
place
E-mail address
Telephone

We need this information to process your inquiry, address you correctly, and send you an answer. We store inquiries we receive via the contact form in our document management system (DMS). We check the DMS regularly to see whether we can delete data. Where data is no longer required within the context of an existing or prospective client relationship, or the client’s interest prevails, we will delete the data concerned, subject to statutory record-keeping requirements. These data are collected based on Article 6(1)(f) of the GDPR. Our “interest” as defined in Article 6(1)(f) of the GDPR is to communicate with existing and prospective clients.

Contact by e-mail

If you contact us by e-mail, we need your data. We collect, process, or use your data only to the extent and for the period necessary to provide you with our services. We delete your data once we have provided you with our services unless we are legally obliged to store your data longer. Please note our specific instructions if you apply to us by e-mail or send us information on establishing a business relationship.

Data processing for application purposes

You can apply for jobs on our website. Our experts are on hand for support. Please feel free to send them your application documents. We will review your documents and get in touch with you. If your profile does not meet our requirements, we will block your data and delete it after a maximum of five months.

Data processing for establishing business relationships

Suppose you contact us to establish a business relationship (e.g., summary of the facts to be considered, a specific question, forwarding of documents). Then, we will save this e-mail in our system. How long we may use your e-mail and any attachments depends on the individual requirements.

Data processing for soliciting clients

Suppose you contact us to solicit clients (e.g., summary of the facts to be considered, a specific question, forwarding of documents). Then, we will save this e-mail in our system. How long we may use your e-mail and any attachments follows from the individual professional regulations. Please consult with the professional consultant (tax consultant, accountant, or lawyer) responsible for your matter.

Use of data for journalistic-editorial purposes

We offer some editorial content on our website, which we believe serves to influence public opinion. For example, our editors create reports on tax and commercial law. In this context, we may use your data for the journalistic and editorial purposes explained. If this adversely affects your legitimate interests, you can request access to the personal data we hold about you. Please send your request to info@ahw-steuerberater.de. We may refuse to provide information after considering your legitimate interests:
– if notifying you would affect our journalistic work by searching the information stored;
– if the data could be used to identify persons involved in the preparation, production or distribution, or the sender, or the person in charge of contributions, documents, and communications for the editorial component.

Recipients or categories of recipients

All data collected via our website remains exclusively in our company on our servers. The content of e-mails can only be viewed by our employees and is treated as strictly confidential. We will only pass on data that we have logged during your visit to our website to third parties if required to do so by law or by court order, or if we need the logged data to take action under criminal or civil law to prosecute attacks on our infrastructure.

Legal basis

We make every effort to process your data only with your consent. However, in some circumstances, we may have legitimate interests in processing your data under Article 6(1)(f) of the GDPR, e.g., to establish business relationships, contact you without your consent, or enforce or defend against civil law claims arising from contractual and legal obligations. We process and store data to fulfill a legal obligation, under a contract, e.g., to observe any retention periods required under tax and commercial law (Article 6 (1)(c)). If the provision of personal data is prescribed by law or contract or is necessary for contract conclusion, we will arrange for it.

Transfer of personal data to third countries

Following the Commission’s adequacy decision (EU-US Privacy Shield), the controller intends to transfer your data to a third country (e.g., USA). Your data will be transferred to the companies listed below and processed for the following purposes:

Collection and use of data by google maps

This website uses the Google Maps API to visually display geographic information, i.e., to plan journeys and routes and enable the display of our location. For this purpose, we use Google Maps. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). If you access Google Maps on our website, Google will collect, process, and use data on the use of Google Maps components. For more information about how Google uses data, see Google’s privacy policy. We use Google Maps to present our online services appealingly and make it easy to find the locations we mention on the website. This constitutes a legitimate interest within the meaning of Article 6(1)(f) of the GDPR.

Collection and use of data by google fonts

This website incorporates typefaces, so-called Fonts, to ensure online legibility. This constitutes a legitimate interest within the meaning of Article 6(1)(f) of the GDPR. For this purpose, we use Fonts provided by Google. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). When you visit our website, your browser sends your IP address to Google. For more information about how Google collects and uses data, your rights and privacy options, see Google’s privacy policy: https://www.google.de/policies/privacy/. These data are collected based on Article 6(1)(f) of the GDPR. Our “interest” as defined in Article 6(1)(f) is the operation of this website.

Use of ajax/google apis/jquery

This website incorporates so-called Libraries to make it more user-friendly. For this purpose, Google’s ‘jQuery’ is uploaded to our website. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). When you visit our website, your browser sends your IP address to Google. For more information about how Google collects and uses data, your rights and privacy options, see Google’s privacy policy: https://www.google.de/policies/privacy/. These data are collected based on Article 6(1)(f) of the GDPR. Our “interest” as defined in Article 6(1)(f) is the operation of this website.

Cloudflare

This website is provided by the technological partner Cloudflare Inc, 101 Townsend Street, San Francisco, CA 94107, USA. The worldwide network of CloudFlare, Inc. filters all the traffic through this website. It caches data and logs access, regularly using the closest data center. Cloudflare also operates data centers outside the European Union. According to Cloudflare, cached data is generally deleted within four hours but no later than three days. For more information, see Cloudflare’s privacy policy: https://www.cloudflare.com/en-gb/privacypolicy/. These data are collected based on Article 6(1)(f) of the GDPR. Our “interest” as defined in Article 6(1)(f) is the operation of this website.

Fast.font.net

This website uses so-called web fonts to present fonts uniformly. The provider is Monotype GmbH, Werner-Reimers-Str. 2, 61352 Bad Homburg (fonts.com or fast.fonts.net). When you access a website, your browser loads the required web fonts into your browser cache to display texts and fonts correctly. To do so, the browser you are using must connect to the fonts.com servers. fonts.com is thus informed that our website has been accessed via your IP address. For more information about these web fonts, see: https://www.fonts.com/info/legal, Fonts.com’s privacy policy: https://www.fonts.com/info/legal/privacy, and Monotype’s privacy policy: https://www.monotype.com/legal/privacy-policy.
We use Fonts.com web fonts to present our online services uniformly and appealingly. This constitutes a legitimate interest within the meaning of Article 6(1)(f) of the GDPR.

Consent for mailchimp newsletter

We previously used Mailchimp for our newsletter service, which also involved the use of your data. And we are still using Mailchimp today for technical reasons. If you subscribe to our newsletter, your email address will be sent to Mailchimp. You will then receive an e-mail from Mailchimp asking you to confirm your subscription. If you do not wish to receive advertising, please use the unsubscribe link in the advertising message or send us a message to the e-mail stated in the legal notice. You can unsubscribe from the newsletter at any time. We do not match the data collected this way with data that other components of our website may collect. Mailchimp is a service provided by The Rocket Science Group, LLC, 512 Means Street, Suite 404, Atlanta, GA 30318, USA.
Your data that was saved when you subscribed to the newsletter (e-mail address, name, IP address, date and time of your subscription) will be transferred to The Rocket Science Group servers in the USA and stored there in compliance with the EU-US Privacy Shield. For more information about data protection, see Mailchimp’s privacy policy: http://mailchimp.com/legal/privacy/.
These data are collected based on Article 6(1)(a) of the GDPR. Our “processing” as defined in Article 6(1)(a) is based on your consent.

Analytical tools and advertising

Google Analytics

This website uses the web analytics service Google Analytics. This service is provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”). Google Analytics uses so-called cookies. These are text files that are stored on your computer and allow your website usage to be analyzed. The information about your website usage generated by the cookie is usually transferred to a Google server located in the USA and stored there.
Google Analytics cookies are stored based on Article 6(1)(f) of the GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize its website and its advertising.

IP anonymization

We have enabled the IP anonymization feature on this website. This means that Google will shorten your IP address within the European Union or other parties to the Agreement on the European Economic Area before transmission to the United States. Only in exceptional cases is the full IP address sent to a Google server in the US and shortened there. Google will use the collected information on behalf of the website operator to evaluate your website usage, compile reports on website activity, and provide the website operator with other services related to website and Internet usage. The IP address transmitted by your browser in the context of Google Analytics will not be merged with any other data held by Google.

Browser Plugin

You can prevent these cookies from being stored by selecting the appropriate settings in your browser. However, we wish to point out that doing so may mean you will not be able to enjoy the full functionality of this website. You can also prevent the data generated by cookies about your website usage (incl. your IP address) from being passed to Google, and the processing of these data by Google, by downloading and installing the browser plugin available at the following link: https://tools.google.com/dlpage/gaoptout?hl=en.

Objecting to the collection of data

You can prevent the collection of your data by Google Analytics by clicking on the following link. An opt-out cookie will be set to prevent your data from being collected on future visits to this site: Disable Google Analytics.
For more information about how Google Analytics handles user data, see Google’s privacy policy: https://support.google.com/analytics/answer/6004245?hl=en.

Commissioned data processing

We have concluded a Commissioned Data Processing Agreement with Google and fully implement the strict requirements of the German data protection authorities for the use of Google Analytics.

Demographics data in google analytics

This website uses the “demographics” feature of Google Analytics. Doing so allows us to create reports that provide information about visitors’ age, gender, and interests. This data comes from personalized ads by Google and visitor data from third-party providers. These data cannot be used to identify an individual. You can deactivate this feature at any time by adjusting the ads setting in your Google account or generally prohibiting the collection of your data by Google Analytics as indicated in point “Objecting to the collection of data.”

Google AdSense

This website uses Google AdSense, a tool for integrating advertisements. This service is provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
Google AdSense uses so-called cookies, text files that are stored on your computer and that enable an analysis of website usage. Google AdSense also uses so-called web beacons (invisible graphics). These web beacons allow information such as visitor traffic on these pages to be analyzed.
Information generated by cookies and web beacons about the use of this website (including your IP address) and delivery of advertising formats are transferred to a Google server in the USA and stored there. Google may share this information with its affiliates. However, Google will not merge your IP address with other data stored about you.
Storage of AdSense cookies is based on Article 6(1)(f) of the GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize its website and its advertising.
You can prevent these cookies from being installed by selecting the appropriate settings in your browser. However, we wish to point out that doing so may mean you will not be able to enjoy the full functionality of this website. By using this website, you agree to the processing of the data collected about you by Google in the manner and for the purposes set out above.

Google Analytics Remarketing

Our websites use Google Analytics Remarketing features in conjunction with the cross-device features of Google AdWords and Google DoubleClick. This service is provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
This feature allows Google Analytics Remarketing to link advertising targets with the cross-device capabilities of Google AdWords and Google DoubleClick. This way, interest-based, personalized ads that have been customized for you on one device (e.g., cell phone) based on your past usage and browsing habits can also be displayed on one of your other devices (e.g., tablet or PC).
With your permission, Google will link your web and app browsing history to your Google Account for this purpose. That way, the same personalized ads can be displayed on any device you sign in with your Google Account.
To support this feature, Google Analytics collects Google-authenticated user IDs that are temporarily linked to our Google Analytics data to help us define and create audiences for cross-device advertising.
You can opt out of cross-device remarketing/targeting permanently by deactivating personalized advertising in your Google Account, following this link: https://www.google.com/settings/ads/onweb/.
The data collected in your Google Account will only be aggregated with your consent, which you may give or withdraw from Google (Article 6(1)(a) of the GDPR). For data collection operations not merged into your Google Account (e.g., because you do not have a Google Account or have objected to the merge), the collection of data is based on Article 6(1)(f) of the GDPR. The website operator has a legitimate interest in analyzing anonymous user behavior for promotional purposes.
For more detailed information and data protection provisions, see Google’s privacy policy: https://www.google.com/policies/technologies/ads/.

Google adwords and google conversion tracking

This website uses Google AdWords. AdWords is an online advertising program from Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
As part of Google AdWords, we use so-called conversion tracking. When you click on an ad provided by Google, a conversion tracking cookie is set. Cookies are small text files that your web browser stores on your computer. These cookies expire after 30 days and are not used for personal identification of users. Should the user visit certain pages of the website and the cookie has not yet expired, Google and the website will be able to detect that the user clicked on the ad and was redirected to that page.
Each Google AdWords customer is assigned a different cookie. Thus, cookies cannot be tracked via the websites of AdWords customers. The information obtained using the conversion cookie is used to generate conversion statistics for AdWords customers who have opted for conversion tracking. Customers are provided with information on the total number of users who clicked on their ad and were redirected to a page containing a conversion tracking tag. However, they do not receive information that allows users to be personally identified. Suppose you do not wish to participate in tracking. Then, you can opt out by disabling cookies for conversion tracking in the user settings of your web browser. In doing so, you will not be included in conversion tracking statistics.
Conversion cookies are stored based on Article 6(1)(f) of the GDPR. The website operator has a legitimate interest in analyzing user behavior to optimize its website and its advertising.
For more information about Google AdWords and Google Conversion Tracking, see Google’s privacy policy: https://www.google.de/policies/privacy/.
You can configure your browser to inform you about the use of cookies so that you can decide whether to accept or reject a cookie on a case-by-case basis. Alternatively, your can set your browser to automatically accept cookies under certain conditions, always reject them, or automatically delete them when you close the browser. Disabling cookies may affect the functionality of this website.

Google reCAPTCHA

We use “Google reCAPTCHA” (from now on referred to as “reCAPTCHA”) on our websites. This service is provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).
reCAPTCHA is used to check whether the data entered on our website (such as on a contact form) has been entered by a human or an automated program. To this end, reCAPTCHA analyzes the behavior of website visitors based on various factors. This analysis starts automatically as soon as the website visitor accesses the website. To carry out the analysis, reCAPTCHA evaluates various data (for example, IP address, how long the visitor has been on the website, or mouse movements made by the user). The data collected during the analysis will be forwarded to Google.
The reCAPTCHA analyses run entirely in the background. Website visitors are not informed that such an analysis is taking place.
Data processing is based on Article 6(1)(f) of the GDPR. The website operator has a legitimate interest in protecting its website from abusive automated crawling and spam.
For more information about Google reCAPTCHA and Google’s privacy policy, please visit the following links: https://policies.google.com/privacy?hl=en and https://www.google.com/recaptcha/about/.

Facebook Pixel

Our website uses Facebook Pixel to measure the effectiveness of advertising by understanding website visitors’ actions. This service is provided by Facebook Inc., 1601 S. California Ave, Palo Alto, CA 94304, USA (“Facebook”).
Doing so allows us to track the actions of website visitors who clicked on a Facebook ad and were redirected to the provider’s website. This enables us to measure the effectiveness of Facebook ads for statistical and market research purposes and optimize future promotional activities.
The data collected in this way is anonymous, i.e., we cannot draw any conclusions about user identity. However, Facebook stores and processes this data and may link this information to the respective user profile. Moreover, Facebook can use the data for its advertising purposes, following Facebook’s data policy. This enables Facebook to place ads on Facebook pages and other sites outside of Facebook. As the website operator, we cannot influence this use of the data.
For more information about your privacy options, see Facebook’s privacy policy: https://www.facebook.com/about/privacy/.
You can also deactivate the “Custom Audiences” remarketing feature in the ad settings: https://www.facebook.com/ads/preferences/?entry_product=ad_settings_screen. You must log in to Facebook to do this.
If you do not have a Facebook account, you can deactivate any interest-based advertising by Facebook on the website of the European Interactive Digital Advertising Alliance: https://www.youronlinechoices.com/uk/your-ad-choices.

Cookies

This website uses cookies. Cookies are small text files that are created by websites you visit and stored on your device. Cookies are not harmful but make your online experience easier. Our website uses the following cookies:
Viewed_cookie_policy

Session-Cookies

Session cookies are mostly used for the current session to manage the privacy policy statement.
These data are collected based on Article 6(1)(f) of the GDPR and Section 15 of the TMG. Our “interest” as defined in Article 6(1)(f) is the operation of these websites.

Facebook-Fanpage

Please see our separate privacy notice for our Facebook page: https://www.ahw-unternehmerkanzlei.de/datenschutzhinweis-facebook/#.

Your rights

You have the right to request a copy of any of your data that the controller is processing. You also have the right to have your data corrected, erased, or have their processing restricted. You have the right to object to processing of your data. The right to data portability is equally applicable. Please contact the addresses above. Suppose we contact you based on Article 6(1)(f). Then, you have the right to withdraw your consent at any time without prejudice to the lawfulness of processing based on consent before its withdrawal.
Should you have any complaints, please contact your national supervisory authority, e.g., the State Commissioner for Data Protection and Freedom of InformationNordrhein-Westfalen

Kavalleriestr. 2-4
40213 Düsseldorf
Telefon: 0211/38424-0
Fax: 0211/38424-10
E-Mail: poststelle@ldi.nrw.de

Links to other websites

Our website contains links to websites of third parties. These providers are not affiliated with us. If you click on these links, we have no control over the data collection and usage practices of these providers. For more detailed information on data collection and use, please refer to each provider’s privacy policy. We assume no responsibility for the data collection and processing practices of third parties. However, we would like to point out, where technically feasible, that you are accessing a third-party provider. As far as this is not already clear from the corresponding text, we will label the link leading to a third-party website with the notification “external link.”

Changes to our privacy policy

The legal framework for us as a service provider is subject to changes and adjustments. These changes and adjustments require us to update this privacy policy occasionally. You can find the date of the last update at the beginning of this privacy notice (“Last updated: …”).