Privacy Policy
We are pleased about your interest in our online shop. Protecting your personal data is of particular importance to us. We therefore process your data exclusively on the basis of legal regulations (GDPR, Austrian Telecommunications Act 2003). In this privacy policy, we provide you with detailed information about all aspects of data processing within the scope of our website and our handling of your data.
The following principles apply to our processing of personal data:
- Lawfulness, fairness (“good faith”), and transparency;
- Purpose limitation: We only use data for specified, explicit, and legitimate purposes;
- Data minimization: We do not process more data than necessary to fulfill the purposes required for our contractual relationship;
- Accuracy: We strive to keep your stored data as factually correct and up to date as possible. If you notice that data we process about you is incorrect or outdated, please inform us. We will correct it immediately and confirm this upon request;
- Storage limitation: We aim to pseudonymize and/or delete your data where possible once legal or contractual retention obligations no longer apply;
- Integrity and confidentiality: We comply with all organizational and technical security measures required under GDPR;
- Accountability toward both you and the competent supervisory authorities regarding the use and processing of your personal data.
1. We process your data for the following purposes:
1.1 Contacting Us
If you contact us via website form or email, the data you provide will be stored for six months for the purpose of processing your inquiry and in case of follow-up questions. We do not share this data without your explicit consent.
1.2 Access Data and Hosting
You may visit our website without providing personal information. Each time a webpage is accessed, the web server automatically stores a so-called server log file containing, for example, the name of the requested file, your IP address, date and time of access, transmitted data volume, and the requesting provider.
This access data is used solely to ensure smooth website operation and improve our services. According to Art. 6 Para. 1 S. 1 lit. f GDPR, this serves our legitimate interest in correctly presenting our offer. All access data is deleted no later than seven days after your website visit.
1.3 Data Storage
The data you provide is necessary for contract fulfillment or pre-contractual measures. Without this data, we cannot conclude a contract with you. Data is not transferred to third parties except for payment processors, banks, shipping providers, and partially to our tax advisor for legal tax obligations.
We collect personal data when you voluntarily provide it during an order, customer account registration, or when contacting us. Mandatory fields are marked accordingly because this information is required to process your order or request.
Your data is processed under Art. 6 Para. 1 S. 1 lit. b GDPR for contract processing and customer service.
If you explicitly consent to opening a customer account under Art. 6 Para. 1 S. 1 lit. a GDPR, your data will be used for this purpose. A customer account is not required if you use PayPal Express.
Your customer account can be deleted at any time via account settings or by contacting us directly. Following deletion, your data will be restricted and deleted after legal retention periods unless further consent has been given.
If the purchasing process is abandoned, stored data will be deleted. In the event of a completed contract, all contract-related data will be stored for the legally required retention period (7 years for tax purposes).
Name, address, purchased goods, and purchase date are additionally stored for up to 10 years due to product liability requirements.
1.4 Data Transfer
To fulfill contracts, we share necessary data with shipping providers and payment service providers depending on your selected payment method.
External inventory management systems may also process your data as part of order fulfillment.
The same applies to wholesalers if they handle shipping directly on our behalf.
2. Technical and Organizational Aspects of Data Use
2.1 Cookies
Our website uses cookies where you have given consent under Art. 6 Para. 1 S. 1 lit. a GDPR. Cookies are small text files stored on your device by your browser.
Cookies help make our website more user-friendly, support specific features, display relevant products, and improve market research.
Some cookies are deleted after the browser session ends (session cookies), while others remain on your device to recognize your browser during future visits (persistent cookies).
You can configure your browser to notify you when cookies are set and decide individually whether to accept them or disable them entirely. Please note that disabling cookies may limit website functionality.
2.2 Google Analytics
Our website uses Google Analytics through the Shopware Google Services plugin for website analysis.
This service is provided by Google Ireland Limited, Dublin, Ireland.
Google Analytics uses cookies to analyze website usage. Information generated is typically transferred to Google servers in the USA and stored there.
IP anonymization is enabled, which shortens your IP address within EU/EEA member states before transfer.
Our legitimate interest under GDPR is improving our website and services.
You may revoke consent at any time by installing the Google Analytics opt-out browser plugin.
3. Newsletter and Your Right to Object
You have the option to subscribe to our newsletter via our website. For this purpose, we require your email address and your confirmation that you agree to receive the newsletter. Based on your consent under Art. 6 Para. 1 S. 1 lit. a GDPR, we will send our newsletter to your email address.
You may cancel your newsletter subscription at any time. Please send your cancellation request to: shop@phoenix-der-lebenskraft.at.
You may also unsubscribe automatically via the newsletter page itself.
Revoking your newsletter subscription does not affect the lawfulness of data processing carried out prior to your withdrawal.
Following cancellation, we will promptly delete your newsletter-related data unless you have explicitly consented to further use or unless legal regulations permit additional retention.
4. Postal Advertising and Your Right to Object
We reserve the right to use your first and last name as well as your postal address for our own advertising purposes, such as sending you information about products and offers via postal mail.
This serves our legitimate interest in customer communication pursuant to Art. 6 Para. 1 S. 1 lit. f GDPR.
Postal advertising may be carried out by external service providers acting on our behalf.
You may object to the use of your data for these purposes at any time by contacting us.
5. Your General Data Protection Rights
As a data subject, you have the following rights:
- Under Art. 15 GDPR: The right to request information about your processed personal data;
- Under Art. 16 GDPR: The right to request immediate correction of inaccurate or incomplete data;
- Under Art. 17 GDPR: The right to request deletion of your stored data, unless processing is required for:
- Freedom of expression and information;
- Compliance with legal obligations;
- Public interest reasons;
- Legal claims defense or enforcement;
- Under Art. 18 GDPR: The right to restrict processing where:
- You dispute data accuracy;
- Processing is unlawful but you oppose deletion;
- We no longer need the data but you require it for legal purposes;
- You have objected under Art. 21 GDPR;
- Under Art. 20 GDPR: The right to receive your data in a structured, machine-readable format or request transfer to another controller;
- Under Art. 77 GDPR: The right to lodge a complaint with a supervisory authority.
5.1 Right to Object (Withdrawal)
If we process your personal data based on legitimate interests, you may object to this processing with future effect.
If processing is carried out for direct marketing purposes, you may exercise this right at any time.
If processing is carried out for other purposes, you may only object where reasons arise from your specific situation.
After exercising your right to object, we will cease processing your data unless compelling legitimate grounds override your interests or processing is necessary for legal claims.
This does not apply to direct marketing, where your data will no longer be processed for such purposes after objection.
For questions regarding data collection, processing, correction, deletion, or withdrawal of consent, please contact us directly:
Controller responsible for data processing:
Ing. Andreas Staudinger
Managing Director
Phoenix der Lebenskraft e.U.
Quellengasse 28
A-2435 Wienerherberg, Austria
Phone: +43 660 3002341
Email: shop@phoenix-der-lebenskraft.at
6. Updates to This Privacy Policy
We reserve the right to update this privacy policy when necessary due to technical developments, legal changes, or new products and services.
Any updates will be indicated by a revised effective date.
Status: valid from 01.06.2020
7. Appendix: Competent Supervisory Authorities for Germany and Austria
You have the right to lodge complaints with the competent supervisory authority responsible for your place of residence, workplace, delivery address, or alternatively our company headquarters.
7.1 For Customers Residing in Germany:
Germany – Federal Commissioner for Data Protection and Freedom of Information
Address: Husarenstraße 30, D-53117 Bonn
Phone: 0228 997799 - 0
Fax: 0228 997799 - 550
Email: poststelle@bfdi.bund.de
Website: http://www.datenschutz.bund.de
Additional state-specific supervisory authorities may apply depending on your location.
7.2 For Customers Residing in Austria:
Austr Austrian Data Protection Authority
Address: Barichgasse 40-42, 1030 Vienna
Phone: +43 1 521 52-25 69
Email: dsb@dsb.gv.at
Website: https://www.dsb.gv.at/
Direct complaint form download:
https://www.dsb.gv.at/documents/22758/844171/Beschwerde_an_die_Datenschutzbeh%C3%B6rde_PJ_%C2%A7_44_45_DSG.pdf/d426ca8e-3c2a-4d46-9a44-c108ea80c037
(All supervisory authority contact details are subject to change.)
Privacy policy created with support from Trusted Shops legal text services in cooperation with FÖHLISCH Rechtsanwälte.
7.1 Additional Supervisory Authorities for German Federal States
Baden-Württemberg:
The State Commissioner for Data Protection Baden-Württemberg
Address: Königstraße 10a, 70182 Stuttgart
Phone: 0711 615541 - 0
Email: poststelle@lfd.bwl.de
Website: http://www.baden-wuerttemberg.datenschutz.de
Bavaria:
Bavarian State Office for Data Protection Supervision
Address: Promenade 27, 91522 Ansbach
Phone: 0981 53 - 1300
Email: poststelle@lda.bayern.de
Website: http://www.lda.bayern.de
Berlin:
Berlin Commissioner for Data Protection and Freedom of Information
Address: Friedrichstr. 219, 10969 Berlin
Phone: 030 13889 - 0
Email: mailbox@datenschutz-berlin.de
Website: http://www.datenschutz-berlin.de
Brandenburg:
State Commissioner for Data Protection Brandenburg
Address: Stahnsdorfer Damm 77, 14532 Kleinmachnow
Phone: 033203 356 - 0
Email: Poststelle@LDA.Brandenburg.de
Website: http://www.lda.brandenburg.de
Bremen:
State Commissioner for Data Protection Bremen
Address: Arndtstr. 1, 27570 Bremerhaven
Phone: 0421 361 - 2010
Email: office@datenschutz.bremen.de
Website: http://www.datenschutz-bremen.de
Hamburg:
Hamburg Commissioner for Data Protection and Freedom of Information
Address: Kurt-Schumacher-Allee 4, 20097 Hamburg
Phone: 040 42854 - 4040
Email: mailbox@datenschutz.hamburg.de
Website: http://www.datenschutz.hamburg.de
Hesse:
Hessian Data Protection Commissioner
Address: Gustav-Stresemann-Ring 1, 65189 Wiesbaden
Phone: 0611 14080
Email: poststelle@datenschutz.hessen.de
Website: http://www.datenschutz.hessen.de
Mecklenburg-Western Pomerania:
State Commissioner for Data Protection Mecklenburg-Western Pomerania
Address: Lennéstr. 1, 19053 Schwerin
Phone: 0385 59494 - 0
Email: datenschutz@mvnet.de
Website: http://www.lfd.m-v.de
Lower Saxony:
State Commissioner for Data Protection Lower Saxony
Address: Prinzenstraße 5, 30159 Hanover
Phone: 0511 120 - 4500
Email: poststelle@lfd.niedersachsen.de
Website: http://www.lfd.niedersachsen.de
North Rhine-Westphalia:
State Commissioner for Data Protection NRW
Address: Kavalleriestraße 2-4, 40213 Düsseldorf
Phone: 0211 38424 - 0
Email: poststelle@ldi.nrw.de
Website: http://www.ldi.nrw.de
Rhineland-Palatinate:
State Commissioner for Data Protection Rhineland-Palatinate
Address: Hintere Bleiche 34, 55116 Mainz
Phone: 06131 208 - 2449
Email: poststelle@datenschutz.rlp.de
Website: http://www.datenschutz.rlp.de
Saarland:
Independent Data Protection Center Saarland
Address: Fritz-Dobisch-Straße 12, 66111 Saarbrücken
Phone: 0681 94781 - 0
Email: poststelle@datenschutz.saarland.de
Website: http://www.datenschutz.saarland.de
Saxony:
Saxon Data Protection Commissioner
Address: Devrientstr. 1, 01067 Dresden
Phone: 0351 493 - 5401
Email: saechsdsb@slt.sachsen.de
Website: http://www.datenschutz.sachsen.de
Saxony-Anhalt:
State Commissioner for Data Protection Saxony-Anhalt
Address: Leiterstraße 9, 39104 Magdeburg
Phone: 0391 81803 - 0
Email: poststelle@lfd.sachsen-anhalt.de
Website: http://www.datenschutz.sachsen-anhalt.de
Schleswig-Holstein:
Independent State Center for Data Protection Schleswig-Holstein
Address: Holstenstraße 98, 24103 Kiel
Phone: 0431 988 - 1200
Email: mail@datenschutzzentrum.de
Website: http://www.datenschutzzentrum.de
Thuringia:
Thuringian State Commissioner for Data Protection
Address: Häßlerstr. 8, 99096 Erfurt
Phone: 0361 3771 - 900
Email: poststelle@datenschutz.thueringen.de
Website: http://www.thueringen.de/datenschutz
Final Notes
The contact details of all supervisory authorities are subject to change by the respective institutions.
This privacy policy was created with the support of Trusted Shops legal text services in cooperation with FÖHLISCH Rechtsanwälte.