Data protection information
MADAUS Capital Partners GmbH with registered office at Triftstraße 13, 80538 Munich (hereinafter "Madaus" or "we") is the controller within the meaning of Art. 4 (7) of the General Data Protection Regulation ("GDPR"). Unless otherwise stated, we are responsible for the processing of personal data collected through the use of our website https://www.madaus.com. We respect your privacy by processing and protecting the personal data provided to us in accordance with applicable data protection laws. In this privacy policy, we explain what personal data we collect, use and for what purpose. We recommend that you read it carefully.
1. name and address of the controller within the meaning of Art. 4 No. 7 GDPR
MADAUS Capital Partners GmbH
Triftstraße 13, 80538 Munich
Telephone number: 089 374 26 79 0
E-mail address: backoffice@madaus.com
2. purpose of data processing and legal basis
2.1 When visiting the website
2.1.1 When you visit our website https://www.madaus.com and portal.madauscp.de, the browser used on your device automatically sends information to the server of our website. This information is temporarily stored in a so-called log file. The following information is collected without any action on your part and stored until it is automatically deleted:
- IP address of the requesting computer,
- Date and time of the request,
- Time zone difference to Greenwich Mean Time (GMT),
- Content of the request (specific page),
- Access status/http status code,
- Amount of data transferred in each case,
- Website from which the request is made (referrer URL),
- the browser used and, if applicable, the operating system of your computer and the name of your access provider,
- Language and version of the browser software.
2.1.2 We process the aforementioned data for the following purposes:
- Ensuring a smooth connection to the website,
- Ensuring user-friendly use of our website,
- For the utilization of network and information security,
- Evaluation of system security and stability and
- for other administrative purposes.
2.1.3 The legal basis for data processing is Art. 6 para. 1 sentence 1 lit. f GDPR. Our legitimate interest follows from the purposes for data collection listed above. Under no circumstances do we use the data collected for the purpose of drawing conclusions about your person. We also use cookies and analysis services when you visit our website. You can find more detailed explanations on this in section 5 of this privacy policy.
2.2 When registering for our newsletter
If you subscribe to our newsletter, we collect the following personal data from you:
- First and last name
- E-mail address
- Address.
This data is collected on the basis of your consent in accordance with Art. 6 para. 1, sentence 1 lit. a GDPR. You can withdraw your consent at any time with effect for the future. To do so, please use the e-mail address provided above or unsubscribe from the newsletter, e.g. via a link at the end of each newsletter. The consequence of the revocation is that Madaus will no longer continue the data processing based on this consent for the future and will delete the data, unless there is another legal basis or statutory retention obligations exist.
2.3 Contact form or other means of contact
If you use the contact form provided on the website or contact us in any other way, we collect the following data from you:
- First and last name
- E-mail address
- Your request
- Phone number
All other information is provided voluntarily and is not required for processing the request. This data is collected on the basis of your consent in accordance with Art. 6 para. 1 sentence 1 lit. a GDPR. You can revoke your consent at any time with effect for the future. To do so, please use the e-mail address provided above. The consequence of the revocation is that Madaus will no longer continue the data processing based on this consent for the future and will delete the data, unless there is another legal basis or statutory retention obligations exist
3. transfer of personal data to third parties
3.1 In order to carry out our business operations and provide this website, we may grant access to your personal data to our processors and other service providers. These are service providers that we require for the operation of our website and the processing of data stored or transmitted by the systems (e.g. data center services, payment processing, IT security). The legal basis for the transfer is Art. 6 para. 1 sentence lit. b or lit. f GDPR. In addition, we may transfer your personal data to government bodies or authorities if this is necessary to fulfill a legal obligation. This is done on the basis of Art. 6 para. 1 lit. c GDPR. Data is also transferred to our employees (e.g. employees, business customers). This is done on the basis of your consent in accordance with Art. 6 para. 1 lit. a GDPR or for the fulfillment of contractual law in accordance with Art. 6 para. 1 lit. b GDPR.
3.2 If we process personal data in a third country (i.e. outside the European Union (EU) or the European Economic Area (EEA) or if this is done in the context of the use of third-party services or disclosure or transfer of data to third parties, this will only take place if it is done to fulfill our (pre)contractual obligations, on the basis of your consent, on the basis of a legal obligation or on the basis of our legitimate interests. If there are no legal permissions, we only allow data to be processed in a third country if the special requirements of Art. 44 et seq. GDPR are met.
4. duration of storage
Your personal data will be deleted or blocked as soon as the purpose or legal basis for storage no longer applies.
However, data may be stored beyond the specified period in the event of an (impending) legal dispute with you or other legal proceedings or if storage is provided for by legal regulations to which we as the controller are subject. If the storage period prescribed by the statutory provisions expires, the personal data will be blocked or deleted unless further storage by us is necessary and there is a legal basis for this.
5. cookies
We only use necessary cookies on our website. These are the following cookies:
Name | Provider | Purpose | Procedure | Type |
---|---|---|---|---|
privacy_embeds | Avada | Saves the user's consent status for cookies for https://www.madaus.com | 1 month | HTTP Cookie |
cookieconsent_status | ngx-cookieconsent | Saves the user's consent status for cookies for https://portal.madauscp.de | 1 month | HTTP Cookie |
long | MADAUS | Saves the currently selected language of the MADAUS online customer portal. | Session | HTML Local Storage |
tokenMFA | MADAUS | This cookie is used to authenticate you on the MADAUS online customer portal. | Session | HTML Local Storage |
id | MADAUS | This cookie temporarily stores the currently logged-in account of the MADAUS online customer portal. | Session | HTML Local Storage |
lastUpdate | MADAUS | Saves the time of the last update of the data on the MADAUS online customer portal | Session | HTML Local Storage |
vcc | MADAUS | Saves the number of attempts required to retrieve the latest version of the MADAUS online customer portal from the server. | Session | HTML Local Storage |
pdfjs.history | pdf.js | This cookie stores your preferences for viewing PDF documents on the MADAUS online customer portal | Persistent | HTML Local Storage |
6. your rights
You can assert your rights as a data subject with regard to your processed personal data at any time using the contact details provided at the beginning of section 1. As the data subject, you have the right to
- in accordance with Art. 15 GDPR, to request information about your personal data processed by us. In particular, you can request information about the processing purposes, the category of personal data, the categories of recipients to whom your data has been or will be disclosed, the planned storage period, the existence of a right to rectification, erasure, restriction of processing or objection, the existence of a right to lodge a complaint, the origin of your data if it was not collected by us, and the existence of automated decision-making including profiling and, if applicable, meaningful information about its details;
- in accordance with Art. 16 GDPR, to immediately request the correction of incorrect or incomplete personal data stored by us;
- in accordance with Art. 17 GDPR, to demand the deletion of your personal data stored by us, unless the processing is necessary to exercise the right to freedom of expression and information, to fulfill a legal obligation, for reasons of public interest or to assert, exercise or defend legal claims;
- in accordance with Art. 18 GDPR, to demand the restriction of the processing of your personal data if the accuracy of the data is disputed by you, the processing is unlawful but you refuse to delete it and we no longer need the data, but you need it to assert, exercise or defend legal claims or you have lodged an objection to the processing in accordance with Art. 21 GDPR;
- in accordance with Art. 20 GDPR, to receive your personal data that you have provided to us in a structured, commonly used and machine-readable format or to request that it be transmitted to another controller
- pursuant to Art. 21 GDPR to object to the processing if the processing is based on Art. 6 para. 1 lit. e or f GDPR. This is particularly the case if the processing is not necessary for the performance of a contract with you. If it is not an objection to direct advertising, we ask you to explain the reasons why we should not process your data as we have done when exercising such a right of objection. In the event of your justified objection, we will examine the situation and either discontinue or adapt the data processing or show you our compelling reasons worthy of protection on the basis of which we will continue the processing;
- in accordance with Art. 7 para. 3 GDPR, to revoke your consent once given - i.e. your voluntary, informed and unequivocal consent to the processing of the personal data concerned for one or more specific purposes by means of a declaration or other unequivocal confirmatory act - at any time, if you have given such consent. The consequence of this is that we may no longer continue the data processing based on this consent in the future and
- in accordance with Art. 77 GDPR, to complain to a data protection supervisory authority about the processing of your personal data in our company, for example to the data protection supervisory authority responsible for us: Bavarian State Office for Data Protection Supervision (BayLDA), Promenade 189, 1522 Ansbach, poststelle@lda.bayern.de, https://www.lda.bayern.de.
7. data security
Within the website visit, we use the widespread SSL protocol (Secure Socket Layer) in connection with the highest encryption level supported by your browser. As a rule, this is a 256-bit encryption. If your browser does not support 256-bit encryption, we use 128-bit v3 technology instead. You can tell whether an individual page of our website is encrypted by the closed key or lock symbol in the lower status bar of your browser. We also use appropriate technical and organizational security measures to protect your data against accidental or intentional manipulation, partial or complete loss, destruction or against unauthorized access by third parties. Our security measures are continuously improved in line with technological developments.
8. topicality and amendment of this privacy policy
This privacy policy is currently valid and is dated October 2024.
Due to the further development of our website and offers on it or due to changed legal or official requirements, it may become necessary to change this data protection declaration.