Privacy Policy

Introduction

With the following data protection declaration we would like to inform you about the types of personal data (hereinafter also referred to as “data”) we process, for what purposes and to what extent. The data protection declaration applies to all processing of personal data carried out by us, both in the context of providing our services and, in particular, on our websites, in mobile applications and within external online presences, such as our social media profiles (hereinafter also referred to collectively as “online offer”). The terms used are not gender-specific. Status: June 2, 2020  

Table of contents

  1. Introduction
  2. Responsible
  3. Overview of the processing operations
  4. Relevant legal bases
  5. Provision of the online offer and web hosting
  6. Blogs and publication media
  7. Contact
  8. Presence in social networks (social media)

 

Responsible

Young Journal of European Relations Römerstraße 14 86949 Windach   Authorized representatives: Lara Breitmoser and Florian Lenner E-Mail-Adresse: board@yjea.org Imprint: https://yjea.org/imprint/  

 

Overview of the processing operations

The following overview summarises the types of data processed and the purposes of their processing, and refers to the data subjects.

Types of data processed

  • Inventory data (e.g. names, addresses).
  • Content data (e.g. text entries, photographs, videos).
  • Contact data (e.g. e-mail, telephone numbers).
  • Meta/communication data (e.g. device information, IP addresses).
  • Usage data (e.g. websites visited, interest in content, access times).

 

Categories of data subjects

  • Communication partner.
  • Users (e.g. website visitors, users of online services).

 

Purposes of processing

  • Feedback (e.g. collecting feedback via online form).
  • Contact requests and communication.
  • Remarketing.
  • Reach measurement (e.g. access statistics, recognition of returning visitors).
  • Security measures.
  • Tracking (e.g. interest/behavioural profiling, use of cookies).
  • Contractual performance and service.
  • Management and response to inquiries.

 

Relevant legal bases

In the following, we provide the legal basis of the basic data protection regulation (DSGVO), on the basis of which we process personal data. Please note that in addition to the regulations of the DSGVO, national data protection regulations may apply in your or our country of residence and domicile. If, in addition, more specific legal bases are applicable in individual cases, we will inform you of these in the data protection declaration.

  • Consent (Art. 6 para. 1 sentence 1 letter a DSGVO) – The data subject has given his or her consent to the processing of personal data relating to him or her for one or more specific purposes.
  • Fulfilment of a contract and pre-contractual requests (Art. 6 para. 1 sentence 1 letter b. FADP) – Processing is necessary for the performance of a contract to which the data subject is party or for the implementation of pre-contractual measures taken at the request of the data subject.
  • Protection of vital interests (Art. 6 para. 1 sentence 1 lit. d. FADP) – Processing is necessary to protect the vital interests of the data subject or of another natural person.
  • Legitimate interests (Art. 6 para. 1 sentence 1 lit. f. FADP) – The processing is necessary to protect the legitimate interests of the controller or of a third party, unless the interests or fundamental rights and freedoms of the data subject which require the protection of personal data outweigh those of the data subject.

National data protection regulations in Germany: In addition to the data protection regulations of the Basic Data Protection Regulation, national regulations on data protection apply in Germany. These include in particular the law on protection against misuse of personal data in data processing (Federal Data Protection Act – BDSG). In particular, the BDSG contains special regulations on the right to information, the right to deletion, the right of objection, the processing of special categories of personal data, processing for other purposes and transmission as well as automated decision making in individual cases including profiling. Furthermore, it regulates data processing for the purposes of the employment relationship (Section 26 BDSG), in particular with regard to the establishment, implementation or termination of employment relationships and the consent of employees. Furthermore, state data protection laws of the individual federal states may apply.

 

Provision of the online offer and web hosting

In order to provide our online services securely and efficiently, we use the services of one or more web hosting providers from whose servers (or servers managed by them) the online services can be accessed. For these purposes, we may use infrastructure and platform services, computing capacity, storage space and database services, and security and technical maintenance services. The data processed within the framework of the provision of the hosting offer may include all data relating to the users of our online offer, which are generated within the framework of use and communication. This regularly includes the IP address, which is necessary to be able to deliver the contents of online offers to browsers, and all entries made within our online offer or from websites. E-mail dispatch and hosting: The web hosting services we use also include the dispatch, receipt and storage of e-mails. For these purposes, the addresses of the recipients and senders as well as other information concerning the e-mail dispatch (e.g. the providers involved) and the contents of the respective e-mails are processed. The aforementioned data may also be processed for the purpose of SPAM detection. Please note that e-mails on the Internet are generally not sent in encrypted form. As a rule, e-mails are encrypted in transit, but (unless a so-called end-to-end encryption method is used) not on the servers from which they are sent and received. We can therefore not assume any responsibility for the transmission path of the e-mails between the sender and the reception on our server.

  • Types of data processed: Content data (e.g. text entries, photographs, videos), usage data (e.g. websites visited, interest in content, access times), meta/communication data (e.g. device information, IP addresses).
  • Affected persons: Users (e.g. website visitors, users of online services).
  • Legal basis: legitimate interests (Art. 6 para. 1 sentence 1 lit. f. DSGVO).

 

Blogs and publication media

We use blogs or comparable means of online communication and publication (hereinafter “publication medium”). Readers’ data are processed for the purposes of the publication medium only to the extent necessary for its presentation and for communication between authors and readers or for security reasons. In addition, we refer to the information on the processing of visitors to our publication medium in the context of this data protection notice. Comments and contributions: If users leave comments or other contributions, their IP addresses may be stored based on our legitimate interests. This is done for our security in case someone leaves unlawful content in comments and contributions (insults, prohibited political propaganda, etc.) In this case we can be prosecuted ourselves for the comment or contribution and are therefore interested in the identity of the author. Furthermore, based on our legitimate interests, we reserve the right to process user information for the purpose of spam detection. On the same legal basis, we reserve the right, in the case of surveys, to store the IP addresses of users for the duration of the survey and to use cookies to avoid multiple votes. The personal information provided in the comments and contributions, any contact and website information as well as the content information will be permanently stored by us until the users object. Akismet anti-spam check: We use the “Akismet” service based on our legitimate interests. With the help of Akismet, comments from real people are distinguished from spam comments. To do this, all comment data is sent to a server in the USA, where it is analyzed and stored for four days for comparison purposes. If a comment is classified as spam, the data is stored beyond this time. This information includes the name entered, the e-mail address, the IP address, the comment content, the referrer, information on the browser used and the computer system and the time of entry. Users are welcome to use pseudonyms or to refrain from entering their name or e-mail address. They can completely prevent the transmission of data by not using our comment system. That would be a pity, but unfortunately we do not see any alternatives that work as effectively.

  • Processed data types: inventory data (e.g. names, addresses), contact data (e.g. e-mail, telephone numbers), content data (e.g. text entries, photographs, videos), usage data (e.g. websites visited, interest in content, access times), meta/communication data (e.g. device information, IP addresses).
  • Affected persons: Users (e.g. website visitors, users of online services).
  • Purposes of processing: contractual services and performance, feedback (e.g. collecting feedback via online forms), security measures, administration and answering of inquiries.
  • Legal basis: Fulfilment of contract and pre-contractual enquiries (Art. 6 para. 1 sentence 1 lit. b. DSGVO), legitimate interests (Art. 6 para. 1 sentence 1 lit. f. DSGVO), consent (Art. 6 para. 1 sentence 1 lit. a DSGVO), protection of vital interests (Art. 6 para. 1 sentence 1 lit. d. DSGVO).

 

Used services and service providers:

  • Akismet Anti-Spam Check: Akismet Anti-Spam Check; Service Provider: Automattic Inc, 60 29th Street #343, San Francisco, CA 94110, USA; Website: https://automattic.com; Privacy Policy: https://automattic.com/privacy; Privacy Shield (ensuring the level of data protection when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt0000000CbqcAAC&status=Active.
  • WordPress.com: Hosting platform for blogs; service provider: Automattic Inc, 60 29th Street #343, San Francisco, CA 94110, USA; Website: https://wordpress.com; Privacy Policy: https://automattic.com/de/privacy/; Privacy Shield (ensuring the level of data protection when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt0000000CbqcAAC&status=Active.

 

Contact

When contacting us (e.g. via contact form, e-mail, telephone or via social media), the data of the inquiring persons will be processed to the extent necessary to answer the contact inquiries and any requested measures. The answering of contact inquiries within the scope of contractual or pre-contractual relations is carried out in order to fulfil our contractual obligations or to answer (pre)contractual inquiries and otherwise on the basis of the legitimate interest in answering the inquiries.

  • Processed data types: inventory data (e.g. names, addresses), contact data (e.g. e-mail, telephone numbers), content data (e.g. text entries, photographs, videos).
  • Persons concerned: communication partners.
  • Purposes of processing: contact requests and communication.
  • Legal basis: Fulfilment of contract and pre-contractual enquiries (Art. 6 Paragraph 1 S. 1 lit. b. DSGVO), legitimate interests (Art. 6 Paragraph 1 S. 1 lit. f. DSGVO).

 

Presence in social networks (social media)

We maintain online presences within social networks and process user data in this context in order to communicate with the users active there or to offer information about us. Please note that user data may be processed outside the European Union. This can result in risks for the users, because the enforcement of the users’ rights could be made more difficult. With regard to US providers that are certified under the Privacy Shield or offer comparable guarantees of a secure level of data protection, we would like to point out that they thereby undertake to comply with the data protection standards of the EU. Furthermore, user data within social networks is generally processed for market research and advertising purposes. Thus, for example, user profiles can be created on the basis of user behaviour and the resulting interests of the users. The user profiles can in turn be used, for example, to place advertisements within and outside the networks that presumably correspond to the interests of the users. For these purposes, cookies are usually stored on the users’ computers, in which the usage behaviour and interests of the users are stored. Furthermore, data may also be stored in the user profiles independently of the devices used by the users (especially if the users are members of the respective platforms and are logged in to them). For a detailed description of the respective forms of processing and the possibilities of objection (opt-out), we refer to the data protection declarations and information provided by the operators of the respective networks. Also in the case of requests for information and the assertion of data subject rights, we point out that these can be most effectively asserted with the providers. Only the providers have access to the data of the users in each case and can directly take appropriate measures and provide information. Should you nevertheless require assistance, you can contact us.  

  • Processed data types: inventory data (e.g. names, addresses), contact data (e.g. e-mail, telephone numbers), content data (e.g. text entries, photographs, videos), usage data (e.g. websites visited, interest in content, access times), meta/communication data (e.g. device information, IP addresses).
  • Affected persons: Users (e.g. website visitors, users of online services).
  • Purposes of processing: contact requests and communication, tracking (e.g. interest/behavioural profiling, use of cookies), remarketing, reach measurement (e.g. access statistics, recognition of returning visitors).
  •  Legal basis: legitimate interests (Art. 6 para. 1 sentence 1 lit. f. DSGVO).

 

Used services and service providers:

  • Instagram : Social network; Service provider: Instagram Inc, 1601 Willow Road, Menlo Park, CA, 94025, USA; Web site: https://www.instagram.com; Privacy policy: https://instagram.com/about/legal/privacy.
  • Facebook: Social network; service provider: Facebook Ireland Ltd, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland, parent company: Facebook, 1 Hacker Way, Menlo Park, CA 94025, USA; Website: https://www.facebook.com; Privacy Statement: https://www.facebook.com/about/privacy; Privacy Shield (ensuring the level of data protection when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt0000000GnywAAC&status=Active; Opt-Out: Advertising Settings: https://www.facebook.com/settings?tab=ads; Additional Privacy Notice: Agreement on Joint Processing of Personal Data on Facebook Pages: https://www.facebook.com/legal/terms/page_controller_addendum, Privacy Notice for Facebook Pages: https://www.facebook.com/legal/terms/information_about_page_insights_data.
  • LinkedIn: social network; service provider: LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland; website: https://www.linkedin.com; privacy statement: https://www.linkedin.com/legal/privacy-policy; Privacy Shield (ensuring the level of data protection when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt0000000L0UZAA0&status=Active; opt-out: https://www.linkedin.com/psettings/guest-controls/retargeting-opt-out.
  • Twitter: social network; service provider: Twitter Inc, 1355 Market Street, Suite 900, San Francisco, CA 94103, USA; Privacy Statement: https://twitter.com/de/privacy, (Settings) https://twitter.com/personalization; Privacy Shield (ensuring the level of data protection when processing data in the USA): https://www.privacyshield.gov/participant?id=a2zt0000000TORzAAO&status=Active.

  Created with free data protection generator.de by Dr. Thomas Schwenke