Privacy Policy
- Data protection – Overview
Fundamentals
Below you will find a concise summary of what personal data is processed when you visit our website and what it is used for. Personal data is any information that can be attributed to a specific person. Detailed information can be found below in our comprehensive privacy policy.
The protection of your data is very important to us. We process personal information exclusively within the framework of the applicable legal basis (GDPR, TKG 2003). Below, we provide you with information about the essential aspects of data processing in connection with our website.
Data collection on this website
Responsible body: The data on this website is processed by the website operator. The contact details can be found in the legal notice.
How is data collected? Some of the data is automatically stored by our IT systems when you visit the website. This mainly includes technical information (e.g., browser used, operating system, or time of page view). This data is collected automatically as soon as you visit our website.
Purpose of data use: Some of this information is necessary to ensure the error-free operation of the website.
Your rights
You have the right to obtain information free of charge at any time about what personal data we store about you, where it comes from, to whom it is passed on, and for what purpose it is processed. You can also request the correction, restriction, deletion, or blocking of this data. For such requests, please use the contact details provided in the legal notice. You also have the right to complain to the competent supervisory authority.
General notes and mandatory information
Data protection: We take the protection of your personal data very seriously. Your information will be treated confidentially and processed in accordance with data protection regulations and this privacy policy. When you use our website, we collect various types of personal information. This policy explains what data is collected, for what purpose it is used, and on what basis we process it. Please note: The transmission of data over the Internet (e.g., by email) may involve security risks. It is not technically possible to completely protect data from access by third parties.
Note on the responsible body for data processing on this website
Associate Professor Priv. Doz. Dr. Klaus M. Friedrich
Erzherzog Wilhelm-Ring 1-3,
2500 Baden, Austria
Telephone: +436644776868
E-Mail: mrt@talk2friedrich.com
The responsible body is the natural person who decides on the purposes and means of processing personal data on this website.
Rights related to data processing
Withdrawal of consent: Certain data processing operations can only be carried out if you have given your express prior consent. You can withdraw your consent at any time with future effect. To do so, simply send us an informal email. The lawfulness of the processing up to the point of withdrawal remains unaffected.
Right to lodge a complaint with the supervisory authority: As a data subject, you have comprehensive rights, including the right to information, correction, deletion, restriction of processing, data portability, revocation of consent, and objection. If you believe that your data is not being processed in accordance with data protection regulations or that your rights have been violated in any other way, you have the option of lodging a complaint with the competent supervisory authority. In Austria, the data protection authority is responsible for this.
Right to data portability: You may request that data which we process automatically on the basis of consent or for the performance of a contract be released to you or to a third party designated by you in a commonly used, machine-readable format. Direct transfer to another controller will only take place if this is technically feasible.
Information, correction, deletion, and blocking: Within the framework of the applicable legal provisions, you have the right to receive information about the personal data we have stored free of charge at any time. This includes information about its origin, recipients, and the purpose of processing. You can also request the correction of inaccurate data and the restriction, blocking, or deletion of this data. For such requests, please contact the address given in the legal notice.
3. Data collection on our website
Cookies
Our website uses cookies. These do not cause any damage to your device and do not contain viruses. Rather, they help to make our website more user-friendly, efficient, and secure. Cookies are small text files that are stored on your device and managed by your browser. Most of the cookies we use are session cookies, which are automatically deleted at the end of your visit. However, some cookies remain stored on your device until you manually remove them. This allows us to recognize your browser the next time you visit. You can configure your browser so that you are informed about the setting of cookies, only allow cookies in individual cases, exclude them in certain cases or in general, and activate automatic deletion when you close your browser. Please note that deactivating cookies may limit the functionality of our website. Cookies that are necessary for the execution of electronic communication processes or the provision of certain functions requested by you (e.g., shopping cart function) are stored on the basis of Art. 6 (1) lit. f GDPR. The website operator has a legitimate interest in the technically error-free and optimized provision of its services. Cookies that go beyond this (e.g., for analyzing surfing behavior) are explained separately in this privacy policy.
Server log files
The provider of our website automatically collects and stores information in so-called server log files, which your browser automatically transmits. This includes: browser type and version, operating system used, referrer URL, host name of the accessing computer, time of the server request, IP address. This data is not merged with other data sources. The legal basis for processing is Art. 6 (1) lit. f GDPR, as it is necessary for the technical provision and security of our website.
4. Plugins and Tools
Google Web Fonts
Our website uses Google Web Fonts to ensure uniform font display. When you visit a page, your browser loads the required fonts into the browser cache so that texts are displayed correctly. To do this, your browser establishes a direct connection to Google’s servers, which means that Google is aware that your IP address has visited our website. The use of Google web fonts is in the interest of a consistent and appealing presentation of our online content and thus constitutes a legitimate interest pursuant to Art. 6 (1) lit. f GDPR.
If your browser does not support web fonts, a standard font from your device will be used. Further information:
* FAQ: https://developers.google.com/fonts/faq
*Privacy policy: https://www.google.com/policies/privacy/
* Opt-Out: https://www.google.com/settings/ads/
Calendly
We use Calendly to book appointments. Personal data such as name and email address are processed in order to display and select appointments. Legal basis: Necessity for the performance of a contract or for the implementation of pre-contractual measures in accordance with Art. 6 (1) lit. b GDPR. Data recipient: Calendly, Inc., 115 E Main St., Set. A1B, Buford, GA 30518, USA, represented by DPO Centre Europe, Friedrichstraße 88, 10117 Berlin, Germany (eurep@calendly.com). This may also include the transfer of personal data to the USA. This is based on Art. 45 GDPR in conjunction with the European Commission’s Adequacy Decision C (2023) 4745, as Calendly has committed to comply with the principles of the Data Privacy Framework (DPF). In addition, Calendly uses standard contractual clauses approved by the EU Commission (Art. 46 (2) and (3) GDPR) to ensure an adequate level of data protection even outside the EU. Details can be found here: https://eur-lex.europa.eu/eli/dec_impl/2021/914/oj?locale=de. Further information on the data processed by Calendly: https://calendly.com/de/privacy. If you do not agree to data being stored during the appointment scheduling process via Calendly, you must refrain from scheduling an appointment.
Zoom
To conduct online meetings, we use the video conferencing solution “Zoom” from Zoom Video Communications Inc., headquartered in San Jose, California, 55 Almaden Boulevard, 6th Floor, CA 95113, USA. The service allows us to easily get in touch with you without having to install any additional software—either via your web browser or the Zoom app. Features such as video conferencing and screen sharing support our meetings.
We chose Zoom because it allows for quick and easy communication. However, personal data must be processed in order to use it. Some of this data is entered directly by you (e.g., name, phone number, email address), while some is transmitted automatically when the connection is established (e.g., IP address, device information, browser data, location data). Metadata such as the duration, time, and type of participation in a conference is also recorded. Content such as uploaded files or chat logs can also be stored—however, this is not necessary for our appointments, and we therefore recommend that you refrain from doing so.
Zoom itself points out that no advertising cookies are used within the actual video conferencing services. Tracking technologies are only used on the company’s marketing pages. Furthermore, Zoom does not sell personal data for advertising purposes.
Data is generally stored on servers in the US, and in some cases worldwide. Zoom undertakes to comply with European data protection standards. To this end, EU standard contractual clauses are concluded (Art. 46 (2) and (3) GDPR). In addition, Zoom participates in the EU-US Data Privacy Framework, which provides a legally secure basis for data transfers between the EU and the US.
Depending on the situation, the legal basis for processing may be your consent (Art. 6 (1) (a) GDPR), the performance of a contract (Art. 6 (1) (b) GDPR), or our legitimate interest in efficient communication (Art. 6 (1) (f) GDPR). Data is only stored for as long as is necessary for the provision of services or as required by law.
Please note that when using Zoom, your data may also be processed outside the EU. Third countries such as the USA are not considered secure under data protection law, which is why appropriate protective measures—such as the contractual clauses mentioned above—are necessary.
If you do not want personal data to be processed during a Zoom meeting, you can refuse to participate. You also have the right to request the deletion of your data at any time. If you have your own Zoom account, you can delete it yourself—Zoom provides instructions here:
https://support.zoom.us/hc/en-us/articles/201363243-How-Do-I-Delete-Terminate-My-Account
For the latest information, we also recommend that you read Zoom’s official privacy policy:
https://explore.zoom.us/de/privacy/
as well as the supplementary information under
