We manage our web sites in accordance with the principles set out below:
We undertake to comply with statutory data protection regulations and endeavor always to consider the principles of data avoidance and data minimization.
a) The Controller
The controller, within the meaning of the General Data Protection Regulation (GDPR) and other national data protection laws of the Member States, as well as other statutory data protection regulations, is:
VERINOS PHARMACEUTICALS GMBH
97076 Wuerzburg / Germany
Phone: + 49 (0)931 35 90 99-0
Fax: + 49 (0)931 35 90 99-12
We have designed our Privacy Statement in accordance with the principles of clarity and transparency. However, should there be any ambiguity regarding the use of various terms, the corresponding definitions can be found here.3. Legal basis for processing personal data
a) Processing of personal data according to the GDPR
We process your personal data - such as your first and last names, your e-mail address, IP address, etc. - only if there is a legal basis for doing so. The following rules, in particular, come into consideration here, in accordance with the General Data Protection Regulation (GDPR)
However, we will always inform you at the appropriate points in this Privacy Statement of the legal basis on which your personal data are being processed.b) Consent of the custodian according to Art. 8 (1) GDPR
A custodian must consent to all data processing within the scope of this website for which the consent of a minor who has not yet reached the age of 16 is required.
Information on the individual data processing operations, their purposes and the categories of data concerned, for which the consent of the person concerned is required, can be found in the data protection declaration.
You may withdraw your consent at any time by sending the withdrawal notice in text form to the contact details of the controller. The processing until the revocation remains lawful.c) Processing of information according to § 25 (1) TTDSG
We also process information pursuant to Section 25 (1) TTDSG by storing information on your terminal equipment or accessing information that is already stored on your terminal equipment. This can be both personal information and non-personal data, e.g. cookies, browser fingerprints, advertising IDs, MAC addresses and IMEI numbers. Terminal equipment in this context is any device connected directly or indirectly to the interface of a public telecommunications network for the purpose of sending, processing or receiving messages, § 2 para.2 no.6 TTDSG.
As a rule, we process this information on the basis of your consent, Section 25 (1) TTDSG.
As far as an exception according to § 25 Abs.2 Nr.1 und Nr.2 TTDSG is given, we do not need your consent. Such an exception is given if we exclusively access or store the information in order to transmit a message via a public telecommunication network or if this is absolutely necessary so that we can provide a telemedia service expressly requested by you.
You may withdraw your consent at any time. We inform you that the withdrawal of consent does not affect the lawfulness of the processing carried out on the basis of the consent up to the withdrawal.4. Disclosure of personal data
Where personal data are disclosed, processing is also carried out within the meaning of section 3, above. At this point, however, we would like to inform you separately about disclosure of data to third parties. The protection of your personal data is particularly important to us. For this reason, we are especially careful when disclosing your data to third parties.
Data is only disclosed to third parties if there is a legal basis for the processing. For example, we disclose personal data to persons or companies acting as processors on our behalf, pursuant to Art. 28 GDPR. A processor is anyone who processes personal data on our behalf, in particular under our instruction and control.
In accordance with the requirements of the GDPR, we conclude a contract with each of our processors in order to ensure that they comply with data protection regulations, thus providing comprehensive protection for your data.5. Storage period and erasure
We will erase your personal data once those data are no longer necessary for the purposes for which they were collected or otherwise processed, and where the processing is not necessary for exercising the right of freedom of expression and information, for compliance with a legal obligation, for reasons of public interest, or for the establishment, exercise or defense of legal claims.6. SSL encryption
This site uses SSL encryption for security reasons and to safeguard the transfer of confidential content, such as any requests you send to us as the operators of the site. An encrypted connection can be identified by the change in the address from "http://" to "https://" and by the padlock symbol in your browser's address bar.
With SSL encryption activated, the data which you transfer to us cannot be read by third parties.7. Collection and storage of personal data, their type and intended purpose
a) External hosting
Our website is hosted at ispOne business GmbH, Weißdornweg 3, 77955 Ettenheim. For this reason, all personal data collected on our website is stored on the servers of our hoster, unless an external service of a third party is integrated. This may be the IP address, your e-mail address, communication data or the like. You can find out what specific personal data is involved in the individual functions and services explained by us below. If we use an external service of a third party, this will be made clear in the description of the respective service or tool.
The hoster processes your data only on our instructions and to the extent necessary to fulfill the services on the website. The hoster does not process the data for its own purposes. We have concluded a data processing agreement with the hoster.b) When visiting the website
We process the above-mentioned data for the following purposes:
Data which permit you to be identified as an individual, such as the IP address, will be erased after 7 days at the latest. Any data we store beyond this period will be pseudonymized, so that they can no longer be associated with you.
The legal basis for the data processing is Art. 6(1)(1)(f) GDPR. Our legitimate interest derives from the data collection purposes listed above. Under no circumstances do we use the data collected for the purpose of identifying you as an individual.8. Rights of the Data Subject
You shall have the following rights:a) Right of access
Pursuant to Art. 15 GDPR, you shall have the right to request information about your personal data being processed by us. This right of access includes the following information:
In accordance with Art. 16 GDPR, you shall have the right to obtain from us without undue delay the rectification of inaccurate or incomplete personal data stored by us.c) Erasure
In accordance with Art. 17 GDPR, you shall have the right to obtain from us without undue delay the erasure of your personal data stored by us, unless further processing is required for one of the following reasons:
Pursuant to Art. 18 GDPR, you may request the restriction of processing of your personal data, for one of the following reasons:
If you have requested rectification or erasure of your personal data or restriction of processing in accordance with Art.16, Art.17(1) and Art.18, we shall notify all recipients to whom your personal data have been disclosed, unless this proves impossible or involves disproportionate effort. You may request that we inform you about those recipients.f) Right to data portability
You shall have the right to obtain the personal data which you have provided to us in a structured, commonly used and machine-readable format.
You shall also have the right to request the transfer of these data to a third party, provided that processing was carried out by automated means and based on your consent pursuant to Art. 6(1)(1)(a) or Art. 9(2)(a) or for the performance of a contract pursuant to Art. 6(1)(1)(b) GDPR.g) Withdrawal of consent
Pursuant to Art. 7(3) GDPR, you shall have the right at any time to withdraw consent you have previously granted to us. The withdrawal of consent shall not affect the lawfulness of processing carried out based on consent before its withdrawal. We may not carry out any further processing based on your consent, once you have withdrawn it.h) Right to lodge a complaint
Pursuant to Art. 77 GDPR, you shall have the right to lodge a complaint with a supervisory authority if you believe that the processing of your personal data is contrary to the GDPR.i) Right to object
Where your personal data are processed based on legitimate interests pursuant to Art. 6(1)(1)(f) GDPR, you shall have the right pursuant to Art. 21 GDPR to object to the processing of your personal data on grounds relating to your particular situation, or if you object to processing for direct marketing purposes. In the latter case, you shall have a general right to object which we shall implement without the need for your particular situation to be specified. You may exercise your right to object or to withdraw consent simply by sending an e-mail to firstname.lastname@example.org
Automated individual decision-making, including profiling
You shall have the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you. This right shall not apply if the decision:
However, such decisions shall not be based on special categories of personal data referred to in Art. 9(1) GDPR, unless Art. 9(2)(a) or (g) GDPR applies and suitable measures to safeguard your rights and freedoms and legitimate interests are in place.
In the cases referred to in a) and c), we shall implement suitable measures to safeguard your rights and freedoms and legitimate interests, including at least the right to obtain human intervention on our part, to express your point of view, and to contest the decision.9. Amendment of the Privacy Statement
If we amend the Privacy Statement, this will be indicated on the homepage.
Version of March 16, 2023