top of page

Privacy policy

In the following privacy policy, we inform you about the key aspects of data processing in connection with our website. We collect and process personal data only on the basis of statutory provisions (General Data Protection Regulation, Telecommunications Act 2003).

When you access or visit our website, your IP address and the start and end times of the session are recorded. This is a technical necessity and therefore constitutes a legitimate interest within the meaning of Art. 6(1)(f) GDPR (to ensure technical operation).

The party responsible for data processing on this website is:
STM Vertriebs GmbH, represented by Managing Director Jan Harbrecht
Innsbrucker Bundesstraße 126, 5020 Salzburg, Austria
E-mail: info@stm-vertriebs-gmbh.at, Telephone: +43 662 251500333

Contacting us

If you contact us via the contact form on our website or by e-mail, the data you transmit to us will be stored for six months for the purpose of processing your inquiry and handling any subsequent questions. Your transmitted data will not be passed on to third parties without your consent.

Data storage

To facilitate the purchasing process and for subsequent contract fulfillment, the webshop operator stores the connection holder's IP address (via cookies), as well as the e-mail address, name, company name (optional), telephone number (optional), and address.
The following data is also stored by us for the purpose of contract fulfillment:
E-mail address, name, company name (optional), telephone number (optional), and address.

The data provided by you is required for the fulfillment of the contract and the implementation of pre-contractual measures. It is not possible to conclude a contract without this data. The collected data is not transmitted to third parties, with the exception of the transmission of payment data (credit card details) to the processing banking institutions or payment service providers for the purpose of debiting the purchase price; to the shipping company (carrier) commissioned by us to deliver the goods; and to our tax advisor for the fulfillment of our tax obligations.

If you cancel the purchasing process, the data stored by us will be deleted. If a contract is concluded, all data resulting from the contractual relationship will be stored until the expiration of the statutory retention period for tax purposes (7 years). Furthermore, the transmitted name, address, purchased goods, and date of purchase will be stored until the expiration of the product liability period (10 years). Data processing is carried out based on the statutory provisions of Section 96 Para. 3 of the Telecommunications Act (TKG) and Article 6 Para. 1 lit. a (consent) and/or lit. b (necessary for the performance of a contract) of the GDPR.

Cookies

Our website uses so-called cookies. These are small text files that are stored on your device via your browser. They do not cause any damage. We use cookies to make our services user-friendly. Some cookies remain stored on your device until you delete them. They enable us to recognize your browser upon your next visit. If you do not wish this to happen, you can configure your browser to inform you about the setting of cookies and allow them only on a case-by-case basis. Disabling cookies may limit the functionality of our website. To obtain and document your consent for the use of cookies and third-party content requiring consent, we use the Wix consent tool. Your selection is saved and can be revoked at any time. Our website uses Google Analytics, a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland.
Google Analytics uses cookies to collect information about website usage. The data collected (e.g., IP address, usage behavior) is transmitted to Google servers within the EU or, where applicable, the USA, and processed there.
We have configured Google Analytics to anonymize IP addresses (“IP anonymization”).
The legal basis for the use of Google Analytics is your explicit consent (Art. 6 para. 1 lit. a GDPR). You may withdraw your consent at any time via the consent tool.
Further information can be found at: https://policies.google.com/privacy

Third-party providers and external services

Our website is hosted on servers provided by Wix.com Ltd., 40 Namal Tel Aviv St., Tel Aviv 6350671, Israel. For hosting and content delivery, Wix utilizes infrastructure from providers such as Google Cloud (Google LLC, USA).
Consequently, data processing also takes place outside the European Union, particularly in the USA and Israel. Wix is ​​certified under the EU-U.S. Data Privacy Framework (DPF) and thus ensures an adequate level of data protection. A data processing agreement pursuant to Art. 28 GDPR has been concluded with Wix.
Further information on data protection at Wix: https://de.wix.com/about/privacy

Our website uses a Content Delivery Network (CDN) provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, to deliver content—such as scripts, stylesheets, or media files—more quickly and reliably. In this process, your IP address is transmitted to Google.
The legal basis for this use is Art. 6(1)(f) GDPR. Our legitimate interest lies in the fast and secure provision of our website.
Data processing may occur outside the EU, particularly in the USA. Google is certified under the EU-U.S. Data Privacy Framework. A data processing agreement has been concluded (to the extent covered by Wix).
Further information can be found at: https://cloud.google.com/cdn/docs/overview

For technical monitoring and error analysis, we use the tool "Sentry," provided by Functional Software Inc., 132 Hawthorne Street, San Francisco, CA 94107, USA.
In the event of an error, technical data—such as IP address, browser and device type, and usage behavior—may be collected and processed to improve the stability and reliability of our website.
The legal basis for this processing is Art. 6(1)(f) GDPR (legitimate interest in secure and stable operation).
Sentry is integrated via our hosting provider; a data processing agreement has been concluded. Data processing in third countries (e.g., the USA) may occur. Sentry provides appropriate safeguards in accordance with Art. 46 GDPR. Further information: https://sentry.io/privacy/

Our website uses features of the web mapping service "Google Maps." The service provider for this feature is:
Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Tel: +353 1 543 1000
Using Google Maps requires the storage and processing of your IP address. Google generally transfers this data to a server in the USA and stores it there. Processing is carried out by the service provider (named above); the operator of this website has no influence over the data transfer.
Data processing is based on the statutory provisions of Section 96(3) of the Telecommunications Act (TKG) and Art. 6(1)(f) (legitimate interest) of the GDPR. The use of Google Maps improves the discoverability of the locations presented on our website.

Further information about how the service provider “Google” handles user data can be found in the data protection declaration:
https://policies.google.com/privacy?hl=de .
Google also processes the data in the USA, but has refused to do so
Subject to EU-US Privacy Shield.
https://www.privacyshield.gov/EU-US-Framework

Payment service provider PayPal

If you select the payment method “PayPal”, payment is processed via the payment service provider PayPal (Europe) S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg.
Personal data (name, address, email address, payment information) is transmitted to PayPal for the purpose of payment processing.
The legal basis for the processing is Article 6 Paragraph 1 Letter b GDPR (fulfillment of the contract). Further information on data protection at PayPal can be found at: https://www.paypal.com/de/webapps/mpp/ua/privacy-full

Your rights as a data subject

As a data subject, you generally have the right to: 
Right to information (Art. 15 GDPR) 
Right to rectification (Article 16 GDPR) 
Right to deletion (Article 17 GDPR) 
Right to restriction of processing (Article 18 GDPR) 
Right to data portability (Art. 20 GDPR) 
Right to object (Art. 21 GDPR) 
Right to revoke consent given (Art. 7 Para. 3 GDPR)

If you suspect that data protection law violations have occurred in the course of processing your data, you have the opportunity to complain to us (info@stm-vertriebs-gmbh.at) or the data protection authority.
You can reach us using the following contact details:
Website operator: STM Vertriebs GmbH
Telephone number: +43 662251500333
Email: info@stm-vertriebs-gmbh.at

We use technical and organizational security measures to protect your data from unauthorized access, loss or manipulation.

Source: Datenschutzgenerator Österreich DSGVO

2. General Information and Mandatory Information

Data protection

The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with the statutory data protection regulations and this privacy policy.

When you use this website, various pieces of personal data are collected. Personal data is data with which you can be personally identified. This privacy policy explains what data we collect and what we use it for. It also explains how and for what purpose this is done.

We would like to point out that data transfer over the Internet (e.g. when communicating by email) can have security gaps. Complete protection of data against access by third parties is not possible.

Note on the responsible body

The responsible body for data processing on this website is:

 

STM Vertriebs GmbH

Innsbrucker Bundesstraße 126
A-5020 Salzburg

 

Phone +43 662 25 15 00 - 333
Fax +43 662 25 15 00 - 555
E-Mail: info@stm-malsch-gmbh.at

 

The responsible body is the natural or legal person who alone or jointly with others decides on the purposes and means of the processing of personal data (e.g. names, email addresses, etc.).

Revocation of your consent to data processing

Many data processing operations are only possible with your express consent. You can revoke your consent at any time. To do so, simply send us an informal email. The lawfulness of the data processing carried out until the revocation remains unaffected by the revocation.

Right of appeal to the competent supervisory authority

In the event of violations of data protection laws, the data subject has the right to appeal to the competent supervisory authority. The competent supervisory authority for data protection issues is the state data protection officer of the federal state in which our company is based. A list of Data Protection Officers and their contact details can be found at the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.

Right to data portability

You have the right to have data that we process automatically on the basis of your consent or in fulfillment of a contract delivered to you or to a third party in a common, machine-readable format. If you request the direct transmission of the data to another responsible party, this will only be done to the extent that it is technically feasible.

SSL or TLS encryption

For security reasons and to protect the transmission of confidential content, such as orders or inquiries that you send to us as the site operator, this site uses SSL or TLS encryption. You can recognize an encrypted connection by the fact that the address line of the browser changes from “http://” to “https://” and by the lock symbol in your browser line.

If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.

Information, blocking, deletion

Within the scope of the applicable legal provisions, you have the right to obtain information free of charge at any time about your stored personal data, its origin and recipients, and the purpose of data processing, and, if applicable, a right to correction, blocking, or deletion of this data. For this purpose, as well as for further questions on the subject of personal data, you can contact us at any time at the address given in the imprint.

Objection to advertising emails

The use of contact data published as part of the imprint obligation to send unsolicited advertising and information materials is hereby prohibited. The operators of the pages expressly reserve the right to take legal action in the event of unsolicited advertising information being sent, for example through spam emails.

3. Data Protection Officer

Legally required Data Protection Officer

We have appointed a Data Protection Officer for our company.

Jan Harbrecht
Otto-Eckerle-Straße 7-11
76316 Malsch Germany

Telephone: +49 72 46 91 16-0
Email: jan.harbrecht@stm-malsch.de

4. Data collection on our website

c

Some of the Internet pages use so-called cookies. Cookies do not cause any damage to your computer and do not contain viruses. Cookies serve to make our offer more user-friendly, effective, and secure. Cookies are small text files that are stored on your computer and saved by your browser.

Most of the cookies we use are so-called “session cookies.” They are automatically deleted after your visit. Other cookies remain stored on your device until you delete them. These cookies enable us to recognize your browser when you next visit.

You can set your browser so that you are informed about the setting of cookies and only allow cookies in individual cases, exclude the acceptance of cookies for certain cases or in general, and activate the automatic deletion of cookies when closing the browser. If you deactivate cookies, the functionality of this website may be limited.

Cookies that are necessary for the carrying out of the electronic communication process or for the provision of certain functions you have requested (e.g. The website operator has a legitimate interest in storing cookies for the technically error-free and optimized provision of its services. cookies for analyzing your surfing behavior) are stored, these are treated separately in this privacy policy.

Server log files

The provider of the pages automatically collects and stores information in so-called server log files, which your browser automatically transmits to us. These are:

  • Browser type and browser version

  • Operating system used

  • Referrer URL

  • Host name of the accessing computer

  • Time of the server request

  • IP address

These data are not merged with other data sources.

The basis for data processing is Art. 6 (1) lit. b GDPR, which permits the processing of data for the fulfillment of a contract or pre-contractual measures.

Contact Form

If you send us inquiries via the contact form, your information from the inquiry form including the contact details you provided there will be stored by us for the purpose of processing the inquiry and in the event of follow-up questions. We will not pass on this data without your consent.

The processing of the data entered in the contact form is therefore carried out exclusively on the basis of your consent (Art. 6 para. You can revoke this consent at any time. To do so, simply send us an informal email. The lawfulness of the data processing operations carried out until revocation remains unaffected by the revocation.

The data you enter in the contact form will remain with us until you request its deletion, revoke your consent to its storage, or the purpose for which it was collected no longer applies (e.g., after your inquiry has been processed). Mandatory legal provisions – in particular retention periods – remain unaffected.

5. Analysis Tools and Advertising

Google Analytics

This website uses functions of the web analysis service Google Analytics. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

Google Analytics uses so-called "cookies" These are text files that are stored on your computer and enable an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there.

Google Analytics cookies are stored on the basis of Art. 6 para. 1 lit. f GDPR. The website operator has a legitimate interest in analyzing user behavior in order to optimize both its website and its advertising.

IP anonymization

We have activated the IP anonymization function on this website. This means that your IP address will be truncated by Google within member states of the European Union or in other states party to the Agreement on the European Economic Area prior to transmission to the USA. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and truncated there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide other services related to website activity and internet usage to the website operator. The IP address transmitted by your browser within the scope of Google Analytics will not be merged with other data from Google.

Browser plugin

You can prevent the storing of cookies by selecting the appropriate settings on your browser software; however, we would like to point out that in this case you may not be able to use all functions of this website to their full extent. You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by downloading and installing the browser plugin available at the following link: https://tools.google.com/dlpage/gaoptout?hl=de.

Objection to data collection

You can prevent Google Analytics from collecting your data by clicking on the following link. An opt-out cookie will be set to prevent your data from being collected on future visits to this website: Disable Google Analytics.

For more information on how Google Analytics handles user data, please refer to Google's privacy policy: https://support.google.com/analytics/answer/6004245?hl=de.

Order data processing

We have concluded a contract with Google for order data processing and fully implement the strict specifications of the German data protection authorities when using Google Analytics.

Demographic characteristics in Google Analytics

This website uses the “demographic characteristics” function of Google Analytics. This allows reports to be created that contain statements about the age, gender, and interests of the site visitors. This data comes from interest-based advertising by Google and from visitor data from third parties. This data cannot be assigned to a specific person. You can disable this feature at any time via the ad settings in your Google account or generally prohibit the collection of your data by Google Analytics as described in the section “Objection to data collection.”

Google Analytics Remarketing

Our websites use the functions of Google Analytics Remarketing in connection with the cross-device functions of Google AdWords and Google DoubleClick. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

This function allows the advertising target groups created with Google Analytics Remarketing to be linked to the cross-device functions of Google AdWords and Google DoubleClick. This means that interest-based, personalized advertising messages that have been tailored to you based on your previous usage and surfing behavior on one device (e.g., cell phone) can also be displayed on another of your devices (e.g., tablet or PC).

If you have given your consent, Google will link your web and app browsing history to your Google account for this purpose. This allows the same personalized advertising messages to be displayed on any device you sign in to with your Google account.

To support this feature, Google Analytics collects Google-authenticated user IDs that are temporarily linked to our Google Analytics data to define and create target groups for cross-device advertising.

You can permanently opt out of cross-device remarketing/targeting by disabling personalized advertising in your Google account; to do so, follow this link: https://www.google.com/settings/ads/onweb/.

The data collected in your Google account is only aggregated on the basis of your consent, which you can give or revoke at Google (type 6 para. For data collection processes that are not merged into your Google account (e.g. because you do not have a Google account or have objected to the merger), the collection of data is based on type 6 para. The legitimate interest arises from the fact that the website operator has an interest in the anonymous analysis of website visitors for advertising purposes.

Further information and the privacy policy can be found in Google's privacy policy at: https://www.google.com/policies/technologies/ads/.

Google reCAPTCHA

We use “Google reCAPTCHA” (hereinafter “reCAPTCHA”) on our websites. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google”).

reCAPTCHA is used to check whether the data entered on our websites (e.g. in a contact form) is entered by a human or by an automated program. To do this, reCAPTCHA analyzes the behavior of the website visitor based on various characteristics. This analysis begins automatically as soon as the website visitor enters the website. For analysis, reCAPTCHA evaluates various information (e.g., IP address, length of time the website visitor stays on the website, or mouse movements made by the user). The data collected during the analysis is forwarded to Google.

The reCAPTCHA analyses run completely in the background. Website visitors are not informed that an analysis is taking place.

Data processing is carried out on the basis of Art. 6 para. The website operator has a legitimate interest in protecting its web offerings from misuse and spam.

Further information about Google reCAPTCHA and Google's privacy policy can be found at the following links: https://www.google.com/intl/de/policies/privacy/ and https://www.google.com/recaptcha/intro/android.html.

6. Plugins and tools

YouTube

Our website uses plugins from the Google-operated YouTube site. The operator of the site is YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA.

When you visit one of our pages equipped with a YouTube plugin, a connection to the YouTube servers is established. This tells the YouTube server which of our pages you have visited.

If you are logged into your YouTube account, you enable YouTube to associate your surfing behavior directly with your personal profile. You can prevent this by logging out of your YouTube account.

YouTube is used in the interest of an appealing presentation of our online offerings. This constitutes a legitimate interest within the meaning of Art. 6 para.

For more information on the handling of user data, please refer to YouTube's privacy policy at: https://www.google.de/intl/de/policies/privacy.

Google Web Fonts

This site uses web fonts provided by Google for the uniform presentation of fonts. When you access a page, your browser loads the required web fonts into your browser cache to display texts and fonts correctly.

For this purpose, the browser you are using must establish a connection to Google's servers. This allows Google to know that our website has been accessed from your IP address. The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online offerings. This constitutes a legitimate interest within the meaning of Art. 6 para.

If your browser does not support web fonts, a standard font will be used by your computer.

Further information on Google Web Fonts can be found at https://developers.google.com/fonts/faq and in Google's privacy policy: https://www.google.com/policies/privacy/.

Google Maps

This site uses the Google Maps map service via an API. The provider is Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

To use the functions of Google Maps, it is necessary to store your IP address. This information is usually transferred to a Google server in the USA and stored there. The provider of this site has no influence on this data transfer.

Google Maps is used in the interest of an appealing presentation of our online offerings and to ensure that the locations we specify on the website are easy to find. This constitutes a legitimate interest within the meaning of Art. 6 para.

For more information on the handling of user data, please refer to Google's privacy policy: https://www.google.de/intl/de/policies/privacy/.

bottom of page