Thank you for your interest in our band. Data protection is of the utmost importance to our website team. Our website may for the main part be used without submitting personal data. If a data subject wishes to avail themselves of specific services provided by our website, this may necessitate the processing of personal data. If this is necessary, we will obtain the data subject's consent.
Personal data will always be processed subject to the provisions of the General Data Protection Regulation and in compliance with national data protection legislation. This data protection policy is designed to inform our users about the contents and purposes of the personal data that we collect and process. Furthermore, this data protection policy informs data subjects about the rights they are entitled to.
As the website operator, Aeons of Ashes and their website team have implemented an extensive number of technical and organisational measures in order to ensure that the data processed in connection with this website is reliably protected. However, there is always a possibility that data transmissions between your device and our server may feature security gaps, especially if the device you are using to communicate with our server can be accessed by third parties. If you have any concerns regarding security, you can use an alternative method, e.g. the telephone or one of our branch offices, to submit your information.
1. Definition of terms
Aeons of Ashes'sdata protection policy is based on the provisions and definitions of the General Data Protection Regulation (GDPR). Our data protection policy is designed to be easily readable and comprehensible for our visitors. In order to ensure this, we would like to define the terms used beforehand:
1) Personal data
Personal data comprises all information relating to an identifiable natural person.
2) Data subject
A data subject is any identifiable natural person whose personal data is processed by a controller.
The controller is the company that collects the data subject's personal data and determines the purposes and means of processing.
The processor is a natural person or company involved by the controller in the processing of personal data.
The recipient is a natural or legal person, or public authority, to whom the personal data are disclosed.
6) Third party
A third party is a natural or legal person or public authority who processes personal data on behalf of the controller or processor.
Processing is any operation performed in connection with personal data. This ranges from the collection and storage to the restriction or erasure of personal data.
8) Restriction of processing
Restriction of processing means limiting the use of personal data.
Consent means any statement issued by a person to indicate that he or she agrees to the processing of personal data concerning him or her.
A person issuing a revocation revokes the right of the controller to process his or her data on the basis of consent.
Pseudonymisation separates the data from the identifiable person. This connection cannot be re-established without the use of additional, specially safeguarded information. The pseudonymisation process also corresponds to what is known as data minimisation.
Profiling is any form of automated evaluation of personal data.
2. Name and address of the controller
For the purposes of the GDPR, the controller is:
Aeons of Ashes
3100 St. Pölten
aeonsofashes [at] gmail.com
3. Collection of data
Every time the website is accessed, the website collects a variety of data and information which is then stored in the server's logfiles. The information collected in this manner includes, among other things: 1) Browser types and versions 2) Your computer's operating system 3) The website that linked you to us 4) Pages accessed on our web server 5) The date and time of your visit 6) Your IP address 7) Your Internet service provider
When using this anonymously collected information, we will not attempt to use it to identify the data subject. This data is, however, necessary in order to deliver the content of our website correctly, optimise the display, and provide the authorities with the necessary information in the event of a hacking attack. The data is therefore processed both statistically and as a technical measure to ensure data protection and information security of this processing and your data.
4. Registering on our website
You have the option of registering on our website. The data entered by the data subject is processed solely for the controller's internal use and purposes. By registering on our website, the IP address assigned by your Internet service provider, the date, and the time of registration will be stored. This data will, in general, not be disclosed to third parties insofar as no legal disclosure obligations exist or disclosure is not required for the purposes of prosecution. Registration allows us to offer you content and services which may only be offered to registered users. As a registered user, you may change your submitted data at any time or have it erased from our database in its entirety.
6. Subscribing to our newsletter
Users have the option of subscribing to our newsletter via our website. We use our newsletter to keep our customers and business partners informed about our offers at regular intervals. After you have registered, a confirmation email will be sent to the email address you have submitted, using the double opt-in method. This confirmation email serves to ensure that you, as the owner of the email address, have actually authorised delivery of the newsletter. If you subscribe to the newsletter via our website, your email address, the IP address assigned by your Internet service provider, and the date and time of registration will be stored. This data will, in general, not be disclosed to third parties insofar as no legal disclosure obligations exist or disclosure is not required for the purposes of prosecution. You can, of course, unsubscribe from our newsletter at any time. Please see the bottom of the newsletter for the necessary information.
7. Contacting us via the website
Due to legal provisions, our website contains information on how to easily contact Aeons of Ashes. If you contact us via email or a contact form, the data you have transmitted will be automatically stored and used solely for the purposes of replying to your message.
8. Routine erasure and blocking of personal data
We shall process and store the personal data of the data subject only for the period necessary to achieve the purpose of storage, or insofar as this is granted by legal provisions. If the storage purpose or the legal basis are no longer given, your personal data will be blocked or erased on the basis of our processes and in accordance with legal requirements.
9. Rights of the data subject
Comprehensive rights of the data subject apply for the processing of personal data, in accordance with the EU-GDPR. A general list of these rights is provided below for your information:
1) Right of access
Every data subject shall at any time have the right to obtain information about the stored personal data concerning him or her as well as a copy of this information from the controller.
2) Right to rectification
Every data subject shall have the right to obtain the rectification or completion of inaccurate personal data concerning him or her from the controller without delay.
3) Right to erasure
Every data subject shall have the right to obtain from the controller the erasure of personal data concerning him or her, where one of the following grounds applies - The purposes for processing no longer exist - The legal grounds for processing no longer exist (termination of the contract, revocation of consent) Please contact one of our staff members - in particular by electronic means via aeonsofashes [at] gmail.com - to obtain erasure of your data stored by us.
4) Right of restriction
Every data subject affected by the processing of personal data shall have the right to obtain from the controller restriction of processing where one of the following applies: - The purposes for processing no longer exist - The legal grounds for processing no longer exist (termination of the contract, revocation of consent) Please contact one of our staff members - in particular by electronic means via aeonsofashes [at] gmail.com - to obtain erasure of your data stored by us.
5) Right of data portability
Every data subject shall have the right to receive the personal data that he or she has personally provided to a controller, in a structured, commonly used and machine-readable format, and to transmit those data to another controller without hindrance from the original controller, if the processing is based on consent or on a contract and is carried out by electronic means. Please contact one of our staff members - in particular by electronic means via aeonsofashes [at] gmail.com - to obtain erasure of your data stored by us.
6) Right to object
Every data subject shall have the right to object to the processing of personal data concerning him or her based on legitimate interests. In the event of an objection, Aeons of Ashes will no longer process the personal data, unless we can demonstrate compelling legitimate grounds for the processing which override the interests, rights and freedoms of the data subject, or for the establishment, exercise or defence of legal claims. Please contact one of our staff members - in particular by electronic means via aeonsofashes [at] gmail.com - to obtain erasure of your data stored by us.
7) Automated individual decision-making, including profiling
As a responsible company, we refrain from automated decision-making and profiling.
8) Right to revoke consent
Every data subject shall have the right to revoke his or her consent to the processing of his or her personal data at any time. Please contact one of our staff members - in particular by electronic means via aeonsofashes [at] gmail.com - to obtain erasure of your data stored by us.
10. Data protection provisions concerning the application and use of Facebook
Our website contains plugins provided by Facebook, 1601 South California Avenue, Palo Alto, CA 94304, USA. Facebook is a social network. The respective plugin can be identified by the Facebook logo or the "like" button. An overview of all of the Facebook plugins is provided under the following link: developers.facebook.com/docs/plugins As soon as you visit our website, the Facebook plugin creates a direct connection between your Internet browser and Facebook's servers. This informs Facebook that our website was accessed by your IP address. If you are logged into Facebook, you can link the content on our website to your Facebook profile by clicking on the "like" button. Facebook will then be able to assign your visit to our website to your Facebook account. Facebook does not inform us, as the providers of our website, of the content of the transmitted data or the data usage. For more information, please click on the following link: www.facebook.com/policy.php If you are a member of Facebook but do not want data concerning you to be transmitted to Facebook via our website and linked to your membership data, please sign out of Facebook before viewing our website.
11. Data protection provisions concerning the application and use of YouTube
This website contains at least one YouTube plugin. YouTube is operated by the company YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. YouTube, LLC is a subsidiary of Google Inc., 1600 Amphitheatre Pkwy, Mountain View, CA 94043-1351, USA. As soon as you view one of the pages of our website that features a YouTube plugin, a connection to YouTube's servers is established. YouTube's servers are informed of which specific page of our website you have visited. If you are also signed into your YouTube account, this allows YouTube to assign your browsing patterns directly to your personal profile. You can rule out this possibility by logging out of your account before visiting our web pages. Please see YouTube's data protection provisions under policies.google.com/privacy for more information on how YouTube collects and uses your data.
12. Forwarding data
Aeons of Ashes may issue instructions for your contact data to be forwarded on to one or more processors, for example a parcel service provider, who will also use the personal data exclusively for internal purposes, which are to be ascribed to the controller. Our contracts with all the relevant processors ensure that these service providers also comply with the provisions of the GDPR.
13. Legal basis for processing
The legal basis for processing personal data on our website is either our legitimate interest in acquiring you as a future customer, e.g. as a pre-contractual measure, informing you of our products and services, or to fulfil our contractual obligations towards you as the data subject, if an order has been placed that would necessitate the delivery of goods. Legal retention obligations or the obligation to provide statements to government authorities may, as a result, become a legal basis, in and of themselves. We will obtain your revocable consent for all other processing operations, e.g. newsletters.
14. Period for which the personal data will be stored
The storage of personal data is limited to the statutory retention period. After this period has expired, the corresponding data will be deleted, insofar as it is no longer necessary for the fulfilment of the contract or the initiation of a contract.