Privacy policy

Information and transparency obligations under the GDPR

We welcome you to our website and appreciate your interest in our company. We take the protection of your personal data very seriously. We process your data in accordance with the applicable legal provisions for the protection of personal data, in particular the EU General Data Protection Regulation (EU GDPR) and the country-specific implementation laws applicable to us. This privacy policy provides you with comprehensive information about the processing of your personal data by KOSMETIK international Messe GmbH and the rights to which you are entitled.

Personal data is information that makes it possible to identify a natural person. This includes, in particular, name, date of birth, address, telephone number, e-mail address, but also your IP address.

Anonymous data exists if no personal reference to the user can be established.

Responsible body and data protection officer

KOSMETIK international Messe GmbH
Medienplatz 1
D-76571 Gaggenau
General Manager: Nathalie Bock

www.cosmetica.de
phone +49 (0) 7225 916-159, Fax +49 (0) 7225 916-179
besucher@8< SPAM-Schutz, bitte entfernen >8cosmetica.de

Contact data protection: datenschutz@8< SPAM-Schutz, bitte entfernen >8cosmetica.de.

Your rights as a data subject
First of all, we would like to inform you about your rights as a data subject. These rights are standardized in Art. 15 – 22 EU GDPR. This includes:

The right of access (Art. 15 EU GDPR),
The right to erasure (Art. 17 EU GDPR),
The right to rectification (Art. 16 EU GDPR),
The right to data portability (Art. 20 EU GDPR),
The right to restriction of data processing (Art. 18 EU GDPR),
The right to object to data processing (Art. 21 EU GDPR).
To assert these rights, please contact: datenschutz@8< SPAM-Schutz, bitte entfernen >8cosmetica.de. The same applies if you have any questions about data processing in our company. You also have the right to lodge a complaint with a data protection supervisory authority.

Rights of objection
Please note the following in connection with rights of objection:

If we process your personal data for the purpose of direct marketing, you have the right to object to this data processing at any time without giving reasons. This also applies to profiling insofar as it is associated with direct advertising.

If you object to processing for direct marketing purposes, we will no longer process your personal data for these purposes. The objection is free of charge and can be made informally, if possible to: datenschutz@8< SPAM-Schutz, bitte entfernen >8cosmetica.de.

In the event that we process your data to protect legitimate interests, you can object to this processing at any time for reasons arising from your particular situation; this also applies to profiling based on these provisions.

We will then no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms or the processing serves the establishment, exercise or defense of legal claims.

Purposes and legal bases of data processing
When processing your personal data, we comply with the provisions of the EU GDPR and all other applicable data protection regulations. The legal basis for data processing arises in particular from Art. 6 EU GDPR.

We use your data to initiate business, to fulfill contractual and legal obligations, to execute the contractual relationship, to offer products and services and to strengthen the customer relationship, which may also include analyses for marketing purposes and direct advertising.

Your consent also constitutes a data protection authorization requirement. We will inform you about the purposes of data processing and your right of withdrawal. If the consent also relates to the processing of special categories of personal data, we will expressly point this out to you in the consent.

Special categories of personal data within the meaning of Art. 9 (1) EU GDPR will only be processed if this is required by law and there is no reason to assume that you have an overriding legitimate interest in the exclusion of processing.

Disclosure to third parties
We will only pass on your data to third parties within the framework of the statutory provisions or with your consent. Within the scope of your consent, your data will be passed on to KOSMETIK international Verlag GmbH, Medienplatz 1, 76571 Gaggenau and TOP HAIR International GmbH, Medienplatz 1, 76571 Gaggenau. Otherwise, your data will not be passed on to third parties unless we are obliged to do so due to mandatory legal provisions (disclosure to external bodies such as supervisory authorities or law enforcement agencies).

Recipients of the data / categories of recipients
Within our company, we ensure that only those persons receive your data who need it to fulfill their contractual and legal obligations

In many cases, service providers support our specialist departments in the fulfillment of their tasks. The necessary data protection contracts have been concluded with all service providers.

We use service providers to process orders for our trade fairs, in the advertising environment (direct mailing, newsletter mailing) and for customer surveys by telephone and online. Orders for our trade fairs are processed by the company doo GmbH, Hultschiner Straße 8, 81677 Munich. You can find doo GmbH’s privacy policy with more detailed information on the collection and use of your data at https://doo.net/de/datenschutz.html. Another service provider is the company Westermann Logistik GmbH, Georg-Westermann-Allee 66, 38104 Braunschweig, the privacy policy can be found at Datenschutz – Westermann Logistik (westermann-logistik.de)

We reserve the right to check the creditworthiness of customers when they place their first order and for larger subsequent orders by obtaining credit reports. The customer’s full company name and address are transmitted to the following companies with which we work: Creditreform Karlsruhe Bliss & Hagemann GmbH & Co. KG, Kriegsstr. 236 – 240, 76135 Karlsruhe.

The data will only be used for the purpose of credit checks, including address verification. The data will be deleted after the legal, statutory or contractual retention periods have expired. Otherwise, data will be deleted if the underlying purposes of data collection, processing and storage no longer apply.

Transfer to third countries / intention to transfer to third countries
Data will only be transferred to third countries (outside the European Union or the European Economic Area) if this is necessary for the performance of the contractual relationship, is required by law or if you have given us your consent to do so.
We do not (currently) transfer your personal data to any service providers or group companies outside the European Economic Area.

Storage period of the data
We store your data for as long as it is required for the respective processing purpose. Please note that numerous retention periods require that data (must) continue to be stored. This applies in particular to retention obligations under commercial or tax law (e.g. German Commercial Code, German Fiscal Code, etc.). If there are no further retention obligations, the data is routinely deleted once the purpose has been achieved.

In addition, we may retain data if you have given us your permission to do so or if legal disputes arise and we use evidence within the scope of statutory limitation periods, which can be up to thirty years; the regular limitation period is three years.

Secure transmission of your data
We use appropriate technical and organizational security measures to protect the data stored by us against accidental or intentional manipulation, loss, destruction or access by unauthorized persons. The security levels are continuously reviewed in cooperation with security experts and adapted to new security standards.

The exchange of data to and from our website is always encrypted. We offer HTTPS as the transmission protocol for our website, always using the latest encryption protocols. It is also possible to use alternative communication channels (e.g. by post).

Obligation to provide the data
Various personal data are necessary for the establishment, execution and termination of the contractual relationship and the fulfillment of the associated contractual and legal obligations. The same applies to the use of our website and the various functions it provides.

We have summarized the details for you in the point above. In certain cases, data must also be collected or made available due to legal provisions. Please note that it is not possible to process your request or perform the underlying contractual relationship without providing this data.

Categories, sources and origin of the data
Which data we process is determined by the respective context: this depends on whether, for example, you place an order online or enter an inquiry in our contact form, whether you take part in a survey or a competition or submit a complaint.

Please note that we may also provide information for special processing situations separately in a suitable place, e.g. when uploading ticket orders or when making a contact request.

We collect and process the following data when you visit our website:

Name of the internet service provider
Information about the website from which you are visiting us
Web browser and operating system used
The IP address assigned by your internet service provider
Requested files, transferred data volume, downloads/file export
Information about the websites you visit, including date and time
For reasons of technical security (in particular to defend against attempted attacks on our web server), this data is stored in accordance with Art. 6 para. 1 lit. F EU-GDPR. After 7 days at the latest, anonymization takes place by shortening the IP address so that no reference to the user is established.

We collect and process the following data as part of a contact request:
Salutation
Surname, first name
Contact details such as address, telephone number and e-mail address
Information on wishes and interests

We process the following data as part of the ordering process:
Salutation
Surname, first name
Date of birth
Delivery address
Billing address
E-mail address
Field of specialization
Payment method

You can revoke your consent at any time without giving reasons by e-mail datenschutz@8< SPAM-Schutz, bitte entfernen >8cosmetica.de or by post to KOSMETIK international Messe GmbH, Medienplatz 1, 76571 Gaggenau.

We collect and process the following data for newsletters:
Salutation
Surname, first name
e-mail address
Analysis data from newsletter evaluation

We collect and process the following data for competitions:
Surname, first name
Address or postal address
E-mail address (depending on the notification channel)

Contact form / contact by e-mail (Art. 6 para. 1 lit. a, b EU-GDPR)
There is a contact form on our website that can be used to contact us electronically. If you write to us via the contact form, we will process the data you provide in the contact form to contact you and respond to your questions and requests.

The principle of data minimisation and data avoidance is observed in that you only have to provide the data that we absolutely need to contact you. This is your e-mail address and the message field itself. Your IP address is also processed for technical reasons and for legal protection. All other data are voluntary fields and can be provided optionally (e.g. for a more personalised response to your questions).

If you contact us by e-mail, we will process the personal data provided in the e-mail solely for the purpose of processing your enquiry. If you do not use the forms provided to contact us, no further data will be collected.

Newsletter (Art. 6 para. 1 lit. a EU-GDPR)
You can subscribe to a free newsletter on our website. The email address provided when registering for the newsletter as well as your title and name will be used to send you the personalised newsletter.

The principle of data minimisation and data avoidance is observed here, as only the email address is marked as a mandatory field. For technical reasons and for legal protection, your IP address is also processed when you order the newsletter.

You can of course unsubscribe at any time using the unsubscribe option provided in the newsletter and thus revoke your consent. It is also possible to unsubscribe from the newsletter at any time by sending an e-mail to datenschutz@8< SPAM-Schutz, bitte entfernen >8cosmetica.de.

Competition / advertising consent (Art. 6 para. 1 lit. a, b EU-GDPR)
You have the opportunity to take part in our competition on our website. If you fill out the competition form, we will process the data provided there exclusively for the purpose of organising the competition.

The principle of data minimisation and data avoidance is observed in that you only have to provide the data that we absolutely need from you to carry out the competition and to notify you of the prize. This is, for example, your name, your e-mail address and, in the event of a win, your postal address.

Optional fields are marked. Your IP address will also be processed for technical reasons and for legal protection. The other fields are mandatory and must be completed. Unfortunately, we cannot carry out the competition without these mandatory fields. Participation is then not possible.

You also have the option of giving us your consent to advertising in the competition form. Of course, it is also possible to take part in the competition without giving your advertising consent.

If you give us your consent by ticking the relevant checkbox, we will also process your data in order to send you information and offers about our products, services and promotions by telephone, e-mail or post.

You can revoke your consent at any time without giving reasons by e-mail to datenschutz@cosmetica.de or by post to KOSMETIK international Messe GmbH, Medienplatz 1, 76571 Gaggenau.

Webshop (Art. 6 para. 1 lit. b EU-GDPR)
We only process the data you provide in the order form to fulfil or process the contractual relationship, unless you consent to further use.

The principle of data economy and data avoidance is observed in that you only have to provide us with the data that we absolutely need to execute the contract or to fulfil our contractual obligations (i.e. your name, address, e-mail address, area of expertise and the selected payment method) or that we are legally obliged to collect.

In addition, your IP address is processed for technical reasons and for legal protection. Without this data, we will unfortunately have to refuse to conclude the contract, as we will then be unable to fulfil it or may have to terminate an existing contract. Of course, you can also provide more data if you wish.

Registration / customer account (Art. 6 para. 1 lit. a, b EU GDPR)
On our website, we offer users the opportunity to register by providing personal data. The advantage is that the data you provide will be saved for the order form. We will send you a personal access code. If you use this, you have the advantage that you do not have to re-enter your data for the order form when you place another order.

Registration is therefore necessary for the fulfilment of a contract (via our online shop) with you or for the implementation of pre-contractual measures.

The principle of data minimisation and data avoidance is observed here, as the data not required for registration is marked as (optional).

For orders in our online shop, we also require details of the billing address (title, first name, surname, address) for delivery.

For your order without an access code, we also require proof from the beauty industry.

By registering on our website, the user’s IP address, the date and time of registration are also stored (technical background data). By clicking the “Book now” button, you consent to the processing of your data.

On completion of the registration process, your data is stored by us for use in the protected customer area. As soon as you log in to our website with your personal access code, this data will be made available for actions you carry out on our website (e.g. for orders in our online shop).

Payment systems (Art. 6 para. 1 lit. a, b EU-GDPR), credit check (Art. 6 para. 1 lit. f EU-GDPR)
In our online shop, you can pay by invoice, credit card or PayPal. For this purpose, the respective payment-related data is collected in order to be able to fulfil your order and process your payment. Your IP address is also processed for technical reasons and for legal protection.

The principle of data minimisation and data avoidance is observed in that you only have to provide us with the data that we absolutely need to process the payment and thus process the contract or that we are legally obliged to collect (if necessary, specify).

Without this data, we will unfortunately have to refuse to conclude the contract, as we will then be unable to fulfil it.

The payment system we use utilises SSL encryption to protect the transmission of your data.

Note on credit card payments: As is usual with credit card payments, the credit card details are checked and a credit check is carried out.

Note on PayPal: PayPal is a company of PayPal (Europe) S.à r.l. et Cie, S.C.A. 22-24 Boulevard Royal, L-2449 Luxembourg. If the data subject selects “PayPal” as the payment option during the ordering process in our online shop, the data of the data subject is automatically transmitted to PayPal.

By selecting this payment option, the data subject consents to the transfer of personal data required for payment processing. The personal data transmitted to PayPal is usually first name, surname, address, email address, IP address, telephone number, mobile phone number or other data required for payment processing.

Personal data relating to the respective order is also required to process the purchase contract. Details on data protection at PayPal can be found at: https://www.paypal.com/de/webapps/mpp/ua/privacy-prev (for the legal situation as of 25 May 2018).

Advertising purposes for existing customers (Art. 6 para. 1 lit. f EU-GDPR)
KOSMETIK international Messe GmbH is interested in maintaining the customer relationship with you and sending you information and offers about our trade fairs. We therefore process your data in order to send you relevant information and offers by e-mail.

If you do not wish this, you can object to the use of your personal data for the purpose of direct advertising at any time; this also applies to profiling insofar as it is associated with direct advertising. If you object, we will no longer process your data for this purpose.

The objection can be made free of charge and without giving reasons and should preferably be sent by e-mail to datenschutz@8< SPAM-Schutz, bitte entfernen >8cosmetica.de or by post to KOSMETIK international Messe GmbH, Medienplatz 1, 76571 Gaggenau.

Automated decisions in individual cases
We do not use any purely automated processing procedures to reach a decision.

Cookies (Art. 6 para. 1 lit. f EU-GDPR / Art. 6 para. 1 lit. a EU-GDPR with consent)
Our website uses cookies in several places. They serve to make our website more user-friendly, effective and secure. Cookies are small text files that are placed and stored on your end device.

These cookies enable us to analyse how users use our websites. This allows us to customise the website content according to visitor needs. Cookies also enable us to measure the effectiveness of a particular advert and to place it according to the thematic interests of the user, for example. The legal basis for this is Art. 6 para. 1 lit. f or, if consent has been given, Art. 6 para. 1 lit. a EU GDPR.

We use the following cookies:
Own cookies:

This type of cookie is controlled directly by KOSMETIK international Messe GmbH. Depending on their purpose, they remain stored permanently – even after the session has ended (so-called persistent cookies, e.g.: implementation of opt-out) or are deleted when the browser is closed (so-called session cookies; they are only valid for one browser session).

Third-party cookies:
This type of cookie is controlled by third-party providers. Third-party providers are providers that display advertising banners on other websites, in particular for KOSMETIK international GmbH. They use cookies, for example, to transmit the information that an advertising banner displayed by you has led to a purchase. (e.g. conversion tracking).

So-called temporary/permanent cookies are used here, which are automatically deleted after the specified time (usually 6 months). These temporary or permanent cookies are stored on your end device and delete themselves after the specified time. The cookies of our partner companies also only contain pseudonymous, usually even anonymous data. They enable our partners to track which products you have viewed, whether something has been purchased, which products have been searched for, etc. Some of our advertising partners also collect information beyond the websites about which pages you have previously visited or which products you were interested in, for example. This makes it possible to display personalised advertising. This pseudonymised data is never merged with your personal data.

Most web browsers accept cookies automatically. Of course, you can also deactivate, restrict or delete cookies on your end device manually via your browser settings or with the help of software.

Please note: If you deactivate the setting of cookies, you may not be able to use all the functions of our website to their full extent.

User profiles / web tracking procedure
We use Piwik PRO on our website. The legal basis for this is Art. 6 para. 1 lit. a EU-GDPR, § 25 para. 1 TTDSG.
Piwik Pro is used to analyse website usage by visitors. For this purpose, Piwik PRO Analytics Suite uses page views, events or comparable actions to collect customer data relating to the technical characteristics or activities of website visitors. This data is analysed by Piwik PRO in order to create reports over different time intervals, which include statements about geographical origin, length of stay, interaction with the website or origin. No personal purposes are pursued.

The collection and storage of personal data takes place exclusively in member states of the European Union or in other contracting states of the Agreement on the European Economic Area.

You can prevent the use of cookies by selecting the appropriate settings in your browser software or in the consent banner data protection settings; however, in this case you may not be able to use all functions of this website to their full extent.

The data will be deleted after 6 months.

Further information and the applicable data protection regulations can be found at https://piwikpro.de/datenschutz/.

Data protection settings
Here you can manage your privacy and consent settings for this website. We ask for certain data in order to constantly improve your experience on our website. We will only collect and use data for the specified purposes to which you have consented. You can find more information on the privacy settings page.

Data protection settings
Here you can manage your privacy and consent settings for this website. We ask for certain data to constantly improve your experience on our website. We collect and use the data only for the specified purposes to which you have consented. You can find more information on the privacy settings page.

You can revoke your consent at any time with effect for the future. To do so, simply call up our consent banner and deselect the relevant consent. Please note that the change in the consent banner settings must be made individually for each end device.

Cookie consent tool
We host our solution on Microsoft Azure in Germany and the Netherlands, and store the data for 6 months.
Piwik PRO does not share the data about you with other sub-processors or third parties and does not use it for its own purposes. Further information can be found in Piwik PRO’s privacy policy.

Google Web Fonts
This site uses so-called web fonts provided by Google for the standardised display of fonts. When you call up a page, your browser loads the required web fonts into your browser cache in order to display texts and fonts correctly.

For this purpose, the browser you are using must connect to Google’s servers. This informs Google that our website has been accessed via your IP address. The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online offers. This constitutes a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR.

If your browser does not support web fonts, a standard font will be used by your computer. Further information on Google Web Fonts can be found at developers.google.com/fonts/faq and in Google’s privacy policy: https://www.google.com/policies/privacy/.

Social media links
On our website you will find links to the social media services of Facebook, YouTube and Instagram. You can recognise links to the websites of social media services by the respective company logo. If you follow these links, you will reach the company website of Cosmetica Messen on the respective social media service. When you click on a link to a social media service, a connection is established to the servers of the social media service. This informs the social media service’s servers that you have visited our website. In addition, further data is transmitted to the provider of the social media service.

These are, for example:
Address of the website on which the activated link is located
Date and time the website was accessed or the link was activated
Information about the browser and operating system used
IP address
If you are already logged in to the corresponding social media service at the time the link is activated, the provider of the social media service may be able to determine your user name and possibly even your real name from the transmitted data and assign this information to your personal user account with the social media service. You can exclude this possibility of assignment to your personal user account if you log out of your user account beforehand.

The servers of the social media services are located in the USA and other countries outside the European Union. The data may therefore also be processed by the provider of the social media service in countries outside the European Union. Please note that companies in these countries are subject to data protection laws that do not generally protect personal data to the same extent as is the case in the member states of the European Union.

Please note that we have no influence on the scope, type and purpose of data processing by the provider of the social media service. For more information on the use of your data by the social media services integrated on our website, please refer to the privacy policy of the respective social media service.

Use of Facebook social plugins
Our website uses social plugins (“plugins”) from the social network facebook.com, which is operated by Facebook Inc, 1601 S. California Ave, Palo Alto, CA 94304, USA (“Facebook”). The plugins are labelled with a Facebook logo or the addition “Facebook Social Plugin”.

When you access a web page on our website that contains such a plugin, your browser can establish a direct connection with the Facebook servers if the button is activated. The content of the plugin is then transmitted by Facebook directly to your browser, which integrates it into the website.

Two clicks for more data protection. Only when you click on the button does it become active and your browser establishes the described connection with the Facebook servers. The first click on the button therefore means that you give your consent to the transfer of data to Facebook.

By activating the plugin, Facebook receives the information that you have accessed the corresponding page of our website. If you are logged in to Facebook, Facebook can assign the visit to your Facebook account from this moment on, even if you do not confirm the Facebook button a second time. If you interact with the plugins, for example by clicking the “Like” button a second time or leaving a comment, the corresponding information is transmitted directly from your browser to Facebook and stored there.

Even if you do not have a Facebook account, Facebook can collect data about you, such as your IP address. The purpose and scope of the data collection and the further processing and use of the data by Facebook as well as your rights in this regard and setting options to protect your privacy can be found in Facebook’s data protection information.

If you do not want Facebook to collect data about you via our website, you must log out of Facebook before visiting our website. You can also install appropriate blockers for your browser using add-ons.

Use of YouTube plugins (videos)
We integrate videos from the internet video portal youtube.com of YouTube, LLC, 901 Cherry Ave, San Bruno, CA 94066, USA (“YouTube”), represented by Google Inc. on this website via YouTube plugins.

Each time you access a page on this website that offers one or more YouTube video clips, a direct connection is established between your browser and a YouTube server in the USA. The information that you have visited this page with your IP address is transmitted directly from your browser to the YouTube server and stored there. By interacting with the YouTube plugins (e.g. starting the video), the information generated by the interaction is transmitted to YouTube and stored there.

If you have a YouTube user account and do not want YouTube to collect data about you via this website and link it to your membership data stored on YouTube, you must log out of YouTube before visiting this website.

The data protection declaration for YouTube with further information on the collection and use of your data by YouTube, your rights in this regard and the setting options to protect your privacy can be found at http://www.google.com/intl/de/policies/privacy/.

Advertisements
This website uses a Revive ad server to integrate advertisements. Revive uses so-called “cookies”, text files that are stored on your computer and that enable the use of the website to be analyzed. Revive also uses web beacons. This records and analyzes information about visitor traffic.

The data generated by cookies and web beacons about the use of this website and the delivery of advertising formats are transferred to our own server and stored there anonymously. This information can be passed on to contractual partners, but will not be combined with your IP address. You can prevent the storage of cookies by setting your browser software accordingly.

However, we have no influence on the use of so-called “AdServer” cookies through the broadcast of advertising banners via third parties. Please see our partners’ privacy policies regarding the use of such cookies and the information stored on them.

Online offers for children
Persons under the age of 16 are not permitted to transmit any personal data to us or submit a declaration of consent without the consent of their legal guardian. We encourage parents and guardians to actively participate in their children’s online activities and interests.

Links to other providers
Our website also contains – clearly visible – links to the websites of other companies. If there are links to websites of other providers, we have no influence on their content. Therefore, no guarantee or liability can be assumed for this content. The respective provider or operator of the pages is always responsible for the content of these pages.

The linked pages were checked for possible legal violations and recognizable legal violations at the time of linking. Illegal content was not apparent at the time of linking. However, permanent control of the content of the linked pages is unreasonable without concrete evidence of a legal violation. Upon notification of rights violations, such links will be removed promptly.

KOSMETIK international Messe GmbH

Anschrift siehe Impressum

Gaggenau, Mai 2018