Datenschutz

Overview

The protection of personal data and the responsible handling of information that you entrust to us is an important and special concern for us. LECARE Gesellschaft für Softwareentwicklung mbH (“LECARE”, “we” or “us”) processes personal data only in accordance with the statutory provisions, in particular the EU General Data Protection Regulation (GDPR) and the German Federal Data Protection Act (BDSG).

This privacy policy informs you about the processing of personal data at

  • Use of our website https://www.lecare.com and https://helpdesk.lecare.com (sections 3 and 4);
  • the registration and use of our LECARE Community & Helpdesk (section 11);
  • contacting us by e-mail or contact form (section 12);
  • registration for the newsletter (section 13);
  • conclusion of a contract with us (Section 14);
  • the visit to our Facebook page (section 15);
  • the application for a position with us (point 16).

This Privacy Policy also contains information on recipients of personal data within the EEA and in third countries (see section 17), the deletion of your personal data and retention periods (see section 19), your rights as a data subject (see section 20) and automated decision-making (see section 21).

1. person responsible for data processing

Responsible according to. Art. 4 para. 7 EU General Data Protection Regulation (GDPR):

LECARE Gesellschaft für Softwareentwicklung mbH,

Goernestraße 27, 20249 Hamburg-Eppendorf,

Telephone: 040 48 00 17 – 0 (head office),

E-Mail: contact@lecare.com (see our imprint).

2. contact possibility of the data protection officer

You can reach our data protection officer at datenschutz@lecare.com or our postal address with the addition of “the data protection officer”.

3. collection of personal data to enable the use of the website

In the case of merely informative use of the website, i.e. if you do not register or otherwise transmit information to us, we only collect the personal data that your browser transmits to our server. If you wish to view our website, we collect the following data, which is technically necessary for us to display our website to you and to ensure stability and security: IP address, content of the request (specific page), access status/HTTP status code, amount of data transferred in each case, websites visited on our site, browser, operating system and its interface, language and version of the browser software. The legal basis for this is Art. 6 para. 1 f GDPR, our legitimate interest in the provision and needs-based design of our website.

4. cookies and web analysis

When you use our website, cookies are stored on your computer. Cookies are small text files that are assigned to the browser you are using and stored on your hard disk and through which certain information flows to the place that sets the cookie. Cookies cannot execute programs or transmit viruses to your computer. They serve to make the Internet offer more user-friendly and effective overall. We also use cookies to identify you for subsequent visits if you have account access (i.e. for the LECARE customer area and the DEBICARE premium area) with us. Otherwise you would have to log in again for each visit. Other cookies can be used in the context of web analysis.

This website uses the following types of cookies, the scope and functionality of which are explained below:

We use technically necessary cookies, which are absolutely necessary to ensure the technical functionality of the website. The legal basis for their use is our legitimate interest in the provision of our website in accordance with Art. 6 para. 1 lit. f GDPR.

Other cookies are used in the context of web analysis. The legal basis for their use and web analytics is your consent in accordance with Art. 6 para. 1 lit. a GDPR. We display a corresponding banner in which we point out the cookies. Only if you agree to the setting of all cookies used by us will we set other, non-essential cookies. Before you give your consent, only technically necessary cookies are set. With regard to the USA, we mainly use US providers that are certified in accordance with the EU-US Data Privacy Framework (for more details, see section 17). If a provider is not certified, we ensure that the standard contractual clauses of the EU Commission have been concluded with them. If a provider is not (yet) certified in accordance with the EU-US Data Privacy Framework, your consent via the cookie banner also includes data transfers to the USA in accordance with Art. 49 para. 1 lit. a GDPR.

In addition to our cookie tool, you can restrict your consent to the setting of cookies in whole or in part by configuring your browser settings accordingly and deactivating the setting of cookies in whole or in part. You can also install a plugin in your browser to protect your privacy, which offers the option of preventing web analyses – e.g. AdBlock, Ghostery or NoScript (please refer to the data protection information of the respective plugin provider). Furthermore, some web analysis providers are members of industry associations whose websites allow you to centrally prevent usage-based online advertising and web analysis by the respective members. Below you will find the websites of these associations for convenient cross-provider prevention of web analytics. In this way, you can also prevent the creation of pseudonymous user profiles.

If you do not give your consent to the use of cookies or delete cookies from your end device, this may affect your ability to use our website or individual functionalities.

Detailed information on the web analysis services used on our websites https://www.lecare.com and https://www.helpdesk.lecare.comverwendetenand the associated providers can be found in the following tables. In addition, the respective table contains links to the privacy policy of the respective provider and a description of how you can prevent web analyses. In such cases, an “anti-tracking cookie” is usually stored on your end device, which prevents the provider from collecting usage data from your end device. Please note: If you delete cookies from your device, you may have to set the “anti-tracking cookie” again.

Web analysis services on the website https://www.lecare.com

Tool/provider Purpose Duration Link to the provider’s privacy policy / Prevent processing
Facebook:

Meta Platforms, Inc, 1601 Willow Rd Menlo Park, 94025 CA, USA

Web analysis,

Interest

oriented

Advertising

https://www.facebook.com/privacy/explanation

Further information on data protection

 

Prevent processing: Via anti-tracking cookie (see privacy policy)

Google Analytics:

Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA

Web analysis, interest-based advertising 14 months https://www.google.de/intl/de/policies/

 

Preventing processing: Via browser plug-in (see add-on) and further information under section 4.1.

HubSpot:

HubSpot, Inc, 25 First Street, Cambridge, MA 02141 USA

Web analysis https://legal.hubspot.com/de/privacy-policy

 

See further information under point 5

Instragram:

Meta Platforms, Inc, 1601 Willow Rd, Menlo Park CA 94025, USA

Web analysis https://help.instagram.com/155833707900388
Twitter:

X Corp. (formerly Twitter, Inc.) 1355 Market St, Suite 900, San Francisco, California 94103, USA

Web analysis https://twitter.com/privacy/
YouTube:

YouTube LLC, 901 Cherry Ave, San Bruno, CA 94066, USA

Web analysis https://policies.google.com/privacy?hl=de&gl=de

 

Web analysis services on the website https://www.helpdesk.lecare.com

 

Zendesk Web analysis https://www.zendesk.de/company/agreements-and-terms/privacy-policy//

 

 

See further information under point 11

Google Analytics:

Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA

Web analysis, interest-based advertising 14 months https://www.google.de/intl/de/policies/

 

Preventing processing: Via browser plug-in (see add-on) and further information under section 4.1.

Crazy Egg, Inc, 16220 E- Ridgeview Lane, La Mirada, CA 90638, USA Web analysis https://www.crazyegg.com/privacy

 

4.1 Google Analytics

This website uses Google Analytics, a web analytics service provided by Google LLC, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA (“Google”), after you have accepted “other cookies” via the cookie banner. The use includes the Universal Analytics mode of operation. This makes it possible to assign data, sessions and interactions across multiple devices to a pseudonymous user ID and thus analyze a user’s activities across devices. Google Analytics uses cookies that enable an analysis of your use of the website. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there. In the event that IP anonymisation is activated on this website, however, your IP address will be truncated beforehand by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there. According to Google, the IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data. On behalf of the operator of this website, Google will use this information for the purpose of evaluating your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator. For further information, in particular on the prevention of web analysis, please refer to the information in the table in section 4. Alternatively, you can revoke your consent by clicking on the “Cookie settings” button. Select the “Analytics” settings here and set the switch to off.

In this case, we set a technically necessary cookie that recognizes your withdrawal of consent when you visit our website.

Edit website cookies:

Cookie settings

Edit helpdesk cookies:

Please log in to the helpdesk for this. Then click on “Cookie settings” to adjust them.

 

4.2 Google Tag Manager

This website uses Google Tag Manager to manage website tags. A tag is a JavaScript snippet that is used to send information from a website to recipients, especially in the context of web tracking. The Google Tag Manager tool itself does not collect any personal data. The tool triggers other tags, which in turn may collect data (e.g. the Google Analytics tag). Google Tag Manager does not access this data. If a deactivation has been made at domain or cookie level, this remains in place for all tracking tags that are implemented with Google Tag Manager. This makes it easier to effectively implement your need against tracking procedures.

5. HubSpot

We use HubSpot, an integrated software solution from HubSpot, Inc, 25 First Street, Cambridge, MA 02141 USA (“HubSpot”) for our marketing activities and support. We use HubSpot for our own marketing, lead generation, qualification and management process. These include social media publishing and reporting, contact management such as user segmentation and CRM, landing pages and contact forms as well as forms for registering in the LECARE community. Our contact forms allow you as a visitor to our website to find out more about our company, download content, become a member of the LECARE community and provide us with your contact information. We use HubSpot as a ticket tool for support. We use this information to get in touch with you. Before we process your data for the purposes stated in this section, we will obtain your consent, unless another legal basis justifies the processing of your personal data. You can revoke this consent at any time for the future in accordance with Art. 7 para. 3 GDPR revoked. If we do not obtain your consent, we have a legitimate interest pursuant to Art. 6 para. 1 lit f. GDPR to provide a contact form on our website (see also section 12) or to use a ticket tool in support for the efficient processing of support cases.

HubSpot uses cookies. HubSpot collects and stores usage data in pseudonymous profiles to enable interest-based advertising. HubSpot also analyzes information collected on our behalf so that we can generate reports about the visit and the pages visited. You can deactivate the storage of data by HubSpot in cookies and the associated recording of your user behavior by preventing the storage of cookies at any time through your browser settings and/or deleting existing cookies.

We also use HubSpot’s meetings function to effectively and easily arrange appointments with you. You will also be shown the free times of our sales and support staff. You can select your preferred date and arrange it with an employee by clicking on “Confirm meeting”. For this purpose, we process your first and last name and your business e-mail address. [As soon as you click on the “Continue” button under “Confirm meeting”, you will receive a corresponding confirmation email from us]. The legal basis is the implementation of pre-contractual measures in accordance with Art. 6 para. 1 b) and our legitimate interest pursuant to Art. 6 para. 1 lit. f GDPR on efficient scheduling.

Your data is stored by HubSpot in the USA. HubSpot is certified under the Data Privacy Framework (see section 17.) We process your contact data that you have provided to us via a lead-gen form, contact form on our website or a special landing page until you revoke your consent, unless there is another legal basis for storage after your revocation.

Further information on data processing by HubSpot can be found on the HubSpot website.

6. crazy egg

We use the website analysis tool “Crazy Egg” on our website, an offer from Crazy Egg, Inc, 16220 E- Ridgeview Lane, La Mirada CA 90638, USA. By using Crazy Egg, we can track the use and your interactions on our website. In particular, it enables us to determine how you move around our website, what content you have viewed and clicked on and how other functions, e.g. forms, are used. We use this information to check and improve the functionalities and presentations on our website, thereby enabling optimal use of our website. Crazy Egg uses the information to carry out analyses and create reports (e.g. visual heat maps). The users whose behavior is subject to analysis are selected at random.
The tracked usage behavior is subject to a systemic and anonymous evaluation, i.e. the user affected by the evaluation is not identifiable. When using Crazy Egg, your IP address in anonymized form, websites viewed and movement patterns on the site, number and position of clicks on links, but also data entered in forms, device information (browser type and version, screen size of the end device) and referral information may be transmitted to Crazy Egg, Inc. are transmitted to the USA. The Crazy Egg, Inc. is not certified under the Data Privacy Framework (see section 17).
We use Crazy Egg on the basis of your consent given to us via our cookie banner (Art. 6 para. 1 lit. a GDPR). With the Crazy Egg, Inc. we have concluded an order processing contract in accordance with Art. 28 GDPR, which includes the EU standard contractual clauses. The consent you give via the cookie banner also relates to data transfers to the USA. You can withdraw your consent at any time (see section 4).
Further information on data processing by Crazy Egg can be found on the Crazy Egg website.

7. zapier

We use Zapier, a service provided by Zapier Inc, Market St. #62411, San Francisco, CA 94104-5401, USA (“Zapier”), to integrate various tools. Zapier makes it possible to link different web applications with each other, transfer data and thus realize process automation. If personal data is processed in the tools that are linked by Zapier, this personal data is also processed by Zapier when workflows are automated. Zapier is used for process automation in order to optimize workflows and minimize errors. The legal basis for the use of Zapier is our legitimate interest pursuant to Art. 6 para. 1 f. GDPR in the structuring, automation and optimization of our processes.

Zapier is based in the USA. Zapier is certified under the Data Privacy Framework (see section 17).

Further information on data processing by Zapier can be found at https://zapier.com/help/account/data-management.

8. click-tip

We use the marketing services of KLICK-TIPP LIMITED, 15 Cambridge Court, 210 Shepherd’s Bush Road, London W6 7NJ, UK (“Klick-Tipp”). We use Klick-Tipp to manage the communication (in particular by e-mail) with you required for the establishment, execution and/or termination of the contract and the delivery of our products and/or services. As a rule, we process the following data from you: (1) all contact and order data entered by you, (2) payment data if applicable, (3) data on delivery and (4) data on the assertion of rights by you and our response. The legal basis is the initiation and execution of the contract pursuant to Art. 6 para. 1 lit b) GDPR. We also use Klick-Tipp to deliver our newsletter. The legal basis is their consent to receive the newsletter in accordance with Art. 6 para. 1 lit. a) GDPR (see section 13 for details on the newsletter).

We use Klicktipp to optimize our advertising and customer approach. Only if you have given us your consent to do so can we also merge the pseudonymous data with personal data from your CRM profile in order to address you in the best possible way and provide you with support in line with your interests.

KlickTipp stores the data in European data centers. Data transfers to the United Kingdom take place on the basis of the European Union adequacy decision for the UK(https://ec.europa.eu/commission/presscorner/detail/de/ip_21_3183).

You can find more information on data processing by Klick-Tipp at https://www.klick-tipp.com/datenschutzerklärung.

9. social networks and embedded videos/podcasts

Our website contains links to social networks (including LinkedIn and Instagram) and to our YouTube channel. The website also contains embedded videos from the video hosting platform YouTube and embedded podcasts. Training videos are integrated on the “LECARE Helpdesk & Community” subpage using the Vimeo video hosting platform. These services are operated exclusively by third-party providers. When you visit our website or follow the links, information, in particular your IP address and other device information, may be transmitted to these providers. Some of these providers use cookies. The legal basis is your consent pursuant to Art. 6 para. 1 lit a GDPR, which you have given us via the cookie banner. The purpose and scope of the data collection and the further processing and use of the data by the provider as well as your rights in this regard and setting options to protect your privacy can be found in the data protection information of the respective provider. You can find them here:

Meta Platforms, Inc, 1601 Willow Rd, Menlo Park CA 94025, USA

https://help.instagram.com/155833707900388

 

LinkedIn Corporation, 2029 Stierlin Court, Mountain View, California 94043, USA

http://www.linkedin.com/legal/privacy-policy/

 

Spotify AB, Regeringsgatan 19, 111 53 Stockholm, Sweden https://www.spotify.com/de/legal/privacy-policy/

 

X. Corp. (formerly Twitter, Inc.), 1355 Market St, Suite 900, San Francisco, California 94103, USA

https://twitter.com/de/privacy

YouTube LLC, 901 Cherry Ave, San Bruno, CA 94066, USA

https://policies.google.com/privacy?hl=de&gl=de

Vimeo.com Inc. 555 West 18th Street, New York, New York 10011, USA

https://vimeo.com/privacy

10. links to third party websites

Our website includes links to third-party websites. When you access the website links, you leave our website and the browser on your device establishes a direct connection with the servers of the respective website. The respective data protection guidelines of this website then apply.

11 LECARE Helpdesk & Community

As an employee of a LECARE customer, you have the opportunity to register online for our LECARE Helpdesk and Community free of charge. The LECARE Helpdesk & Community allows you to exchange best practices with other users of the LECARE software, express feature requests or read articles on the use of the LECARE software, new functions and processes in our Helpdesk area. Further details on our offer in connection with the LECARE Community can be found in our Terms of Use. To register, we need your first and last name, an e-mail address and a password that you choose yourself, and you can create a profile in which you can optionally add an alias, a profile photo or your telephone number. You can manage this data yourself at any time in your profile and change it via “Edit my profile”.

If you register as an employee of a customer, we store your data necessary for the fulfillment of our services for the duration of your use of the LECARE Community. Using and actively participating in the LECARE Community by publishing posts, for example with feature requests or best practice examples, is voluntary. You are not obliged to provide personal data. If you do not provide any personal data, individual functions may not work or may only work to a limited extent. Otherwise there are no consequences. If you no longer wish to be a member of our LECARE Community, please send a corresponding deletion request for your data to one of the contact details listed in section 1.

The justification for the processing of your personal data by LECARE is based on your consent in accordance with. Art. 6 para. 1 p. 1 lit. a GDPR.

We use Zendesk from Zendesk Inc, 989 Market Street #300, San Francisco, CA 94102, USA (“Zendesk”) to provide the LECARE community. E-mails are sent to you via these services when you register or change your password. For this purpose, Zendesk processes the e-mail address you have provided. The LECARE Community is also provided and hosted via Zendesk. If you actively participate in the community, publish posts, communicate change requests or share best practices in the community, Zendesk processes your user name and the content you have published. Zendesk uses cookies on the Community website. Further information on data protection at Zendesk and the cookies that Zendesk uses can be found at https://www.zendesk.com/company/privacy-and-data-protection/ and https://www.zendesk.com/company/agreements-and -terms/cookie-policy/

We use the third-party provider Vimeo.com Inc. for our training videos. (555 West 18th Street, New York, New York 10011, USA). (see point 9 above). When the training videos are accessed, the third-party provider processes data as described in section 9.

We also use HubSpot forms to register with the LECARE Community (see section 5 above for details).

12. contact by e-mail or contact form

When you contact us by e-mail or via a contact form, the data you provide (your e-mail address, name and telephone number, if applicable) will be stored by us in order to answer your questions. Insofar as we request information via our contact form that is not required for making contact, we have always marked this as optional. This information is used to specify your request and to improve the processing of your request. This information is provided expressly on a voluntary basis. The legal basis is either the fulfillment of a contractual obligation, measures to initiate a contract or our legitimate interest in providing a contact form (Art. 6 para. 1 lit. b GDPR or Art. 6 para. 1 lit. f GDPR). You are not obliged to contact us via the contact form or by e-mail, nor are you obliged to provide personal data. If you do not provide your personal data, we may not be able to process your request. Otherwise there will be no consequences for you. We use HubSpot to provide contact forms (see the detailed information above in section 5).

13. newsletters and e-mail advertising

With your consent according to Art. 6 para. 1 a GDPR, you can subscribe to our newsletter, which we use to inform you about our current offers for similar products or services. For the registration to our newsletter we use the so-called double-opt-in procedure. This means that after your registration we will send you an e-mail to the e-mail address you have given us, in which we ask you to confirm that you wish to receive the newsletter. In addition, we store your IP addresses and the time of registration and confirmation. The purpose of this procedure is to be able to prove your registration and, if necessary, to clarify a possible misuse of your personal data. The only mandatory information for sending the newsletter is your e-mail address. The provision of further, separately marked data is voluntary and will be used to address you personally. After your confirmation, we store your e-mail address for the purpose of sending you the newsletter. We will also add you to our mailing list in order to send you e-mail advertising for our own similar goods or services if you purchase goods or services from us and you have not previously objected to this processing of your e-mail address. The legal basis is Art. 6 para. 1 a GDPR. You can revoke your consent to the sending of the newsletter at any time and you can object to the receipt of e-mail advertising and unsubscribe from the newsletter at any time. You can declare your revocation or objection by clicking on the link provided in every newsletter e-mail or by contacting the data protection officer specified above.

We use the service provider KLICK-TIPP LIMITED (KlickTipp) as a processor for the delivery of the newsletter (see more information on KlickTipp in section 8). We have concluded an order processing contract with KLICK-TIPP LIMITED in accordance with Art. 28 GDPR.

We measure the success of email content that we send to you via KlickTipp in order to recognize your reading habits based on the open rate of emails, opening times and links clicked on. In this way, we can create and send you interest-based and useful content. Your consent to data processing includes performance measurement. The legal basis for data processing is Art. 6 para. 1 lit. a GDPR. You can revoke your consent at any time with effect for the future. You can use the unsubscribe link in every email, for example, or contact us using the contact details provided in sections 1 and 2. A separate revocation of the performance measurement is unfortunately not possible. In this case, the consent to receive the newsletter must be revoked altogether.

14. conclusion and execution of contracts, contract initiation

We process personal data relating to you in order to conclude or execute contracts with you, in particular license and support contracts for our LECARE software. If you arrange a demo appointment via our contact form, we process your first and last name, your title, your e-mail address and your telephone number as well as other information that you provide to us voluntarily and optionally via the contact form in order to arrange a demo appointment with you. The legal basis for the processing of your personal data is Art. 6 para. 1 lit. b GDPR. The purpose of the processing is to establish and implement the contractual relationship with you, including pre-contractual measures to initiate a contract. This requires the provision of your personal data. You are not obliged to provide your personal data, but if you do not provide it, it will not be possible to establish and execute the contractual relationship. Otherwise there will be no consequences for you.

In addition, insofar as this is necessary for the initiation or execution of contractual relationships, we also process data of persons with whom no (direct) contractual relationship exists. For example, we may process your data if you are a representative, contact person or employee of a company that is our contractual partner. In this case, the legal basis is our legitimate interest in the initiation or execution of the respective contractual relationship (Art. 6 (1) (f) GDPR). If you would like detailed information on the balancing of interests, please contact one of the addresses listed under point 1 or point 2.

15. visit our Facebook page

If you visit or interact with our Facebook page (formerly Facebook fan page) or our Instagram profile, your personal data (e.g. “Like” information) will be processed as described in this section.

 

15.1 Shared responsibility

Meta Platforms Ireland Ltd, 4 Grand Canal Square, Grand Canal Harbour, D2 Dublin, Ireland, (“Meta”) as the operator of Facebook and Instagram provides us with statistics and insights that help us to understand the use of our fan page and Instagram profile (“Page Insights”). In this case, Facebook and LECARE are jointly responsible for data processing (“joint controllers”). Instagram is a Facebook service. The following information applies to both our Facebook page and our Instagram profile.

15.2 Legal basis, purpose and necessity of processing your personal data

The legal basis for the processing of your personal data is Art. 6 para. 1 lit. f GDPR. We use information that you provide to us via your Facebook profile or by visiting our Facebook page via your browser in order to provide the functionalities of our Facebook page. This may include reviewing the reach of our posts, defining our audience more precisely, customizing ads to our audience, and tailoring our Facebook Page to the actual interests of our visitors. These include: Age, gender and location.

We process this data in our legitimate interest in order to maintain the functions of our Facebook Page, to check our reach and to design and display our Facebook Page according to your interests. If you would like detailed information on the balancing of interests, please contact one of the addresses listed under point 1.

15.3 Further information on our joint responsibility with Facebook

In order to transparently and explicitly define the responsibilities for compliance with the obligations under the GDPR between LECARE and Meta, we have entered into an agreement with Meta, which states that Meta is primarily responsible for data processing when visiting our Facebook page. In particular, Meta is responsible if you exercise your rights under Art. 12 and 13 GDPR, Art. 15 to 22 GDPR, and for compliance with the obligations in Art. 32 to 34 GDPR.

You can also address your request regarding data processing in connection with our Facebook page to us at any time or exercise your rights by contacting the address stated in section 1 (further information on your rights can be found in section 20). To the extent necessary for the execution of your request or the exercise of your rights, we will forward your matter to Meta.

For more information about Page Insight data and how to exercise your rights, please refer to Meta’s information: https://www.facebook.com/legal/terms/information_about_page_insights_data.

For more information on the definition of responsibilities within the joint controllership within the meaning of Art. 26 GDPR, see agreement with Meta: https://www.facebook.com/legal/terms/page_controller_addendum

You can find more information about the setting of cookies when visiting our Facebook page at Facebook’s Cookie Policy: https://www.facebook.com/policies/cookies/

For more information on protecting your privacy on Facebook, please refer to Meta’s privacy policy: https://www.facebook.com/privacy/explanation.

You can find more information on data protection at Instagram here: https://help.instagram.com/519522125107875/?helpref=hc_fnav&bc[0]=Instagram help section&bc[1]%20und%

16. applications

You can apply to our company electronically, in particular via e-mail or our form for applicants. We will of course only use your details to process your application and will not pass them on to third parties. The legal basis for the processing of your personal data is § 26 para. 1, para. 8 sentence 2 BDSG or § 26 para. 2, para. 8 sentence 2 BDSG. The processing is carried out for the purpose of contacting you and assessing your suitability for the position for which you are applying. Please note that unencrypted e-mails are not transmitted with access protection. If you have applied for a specific position and it has already been filled or we consider you to be equally or even more suitable for another position, we would like to keep your applicant data for longer or forward your application within the company. Please let us know if you do not agree to further storage or forwarding. If you have agreed to a longer storage of your data for the purpose of contacting you for another vacancy, the legal basis for the continued storage of your data is your consent in accordance with Art. 6 para. 1 lit. a GDPR. You can withdraw your consent at any time with effect for the future.

Your personal data will be deleted 6 months after completion of the application process, unless you have expressly given us your consent to store your data for a longer period or a contract has been concluded.

As part of the application process, we use the Join recruiting software from JOIN Solutions AG, Landsgemeindeplatz 6, 9043 Trogen, Switzerland. We have concluded an order processing contract with JOIN Solutions AG in accordance with Art. 28 GDPR. There is also an adequacy decision by the EU Commission for Switzerland(https://datenschutz.hessen.de/sites/datenschutz.hessen.de/files/Schweiz_DE.pdf.) Further information on data protection at JOIN Solutions AG can be found at https://join.com/de/datenschutz/.

17. data transfer to third parties and to countries outside the European Economic Area (EEA)

Your data will not be transferred to third parties unless we are legally obliged to do so, the transfer of data is necessary for the execution of the contractual relationship or you have previously expressly consented to the transfer of your data.
Insofar as our service providers come into contact with your personal data, we shall ensure that this is done within the framework of commissioned processing in accordance with the German Data Protection Act. Art. 28 DSGVO ensure that they comply with the provisions of data protection laws in the same way. Please also note the respective data protection information of the providers.

We attach great importance to processing your data within the European Union (EU)/the European Economic Area (EEA). With the exception of the processing described in sections 4 – 8, we do not pass on your data to recipients based outside the EU or the EEA. Google LLC, HubSpot, Inc. and Zapier, Inc. are certified in accordance with the EU-US Data Privacy Framework, which enables secure data transmission to US providers. Crazy Egg, Inc. is currently not certified. A complete list of companies certified under the EU-US Data Privacy Framework can be found at the following link: https://www.dataprivacyframework.gov/s/participant-search.

If a provider is not certified according to the EU-US Data Privacy Framework, we ensure that so-called standard contractual clauses of the EU Commission have been concluded with these US providers, which oblige them to process data in compliance with data protection regulations. Data transfers from the EU and the EEA to US providers are also subject to stricter US regulations for government surveillance programs vis-à-vis non-certified US companies due to Executive Order 14086, which was issued as a prerequisite for the European Commission’s adequacy decision on the EU-US Data Privacy Framework. If you have any questions in this regard, please contact our data protection officer (contact details can be found in section 2).

18. data security

We have taken extensive technical and operational precautions to protect your data from accidental or intentional manipulation, loss, destruction or access by unauthorized persons. Our security procedures are regularly reviewed and adapted to technological progress. To protect the personal data of our users, we use a secure online transmission method, the so-called “Secure Socket Layer” (SSL) transmission. You can recognize this by the fact that an “s” is appended to the address component http:// (“https://”) or a green, closed lock symbol is displayed in the browser. Click on the symbol to obtain information about the SSL certificate used. SSL encryption guarantees the secure and complete transmission of your data.

19. deletion

We delete your personal data as soon as it is no longer required for the aforementioned purposes of processing, in the event of an objection there are no compelling legitimate grounds on the part of LECARE to the contrary or in the event of revocation there is no other legal basis for the processing. In certain cases, e.g. if there is a statutory retention obligation, your personal data will initially be blocked and deleted upon expiry of the retention period. For more information on the storage of cookie data, please refer to the table in section 4 and the information in sections 4.1-7.

20 Your rights

You have the following rights in relation to us in respect of personal data relating to you:

You have the right of access (Art. 15 GDPR), rectification (Art. 16 GDPR), erasure (Art. 17 GDPR), restriction of processing (Art. 18 GDPR) and data portability (Art. 20 GDPR). If processing is based on your consent, you have the right to revoke this consent with effect for the future. Whether and in which case these rights exist depends on legally defined requirements.

You have according to. Art. 21 par. 1 DSGVO the right to object at any time, on grounds relating to their particular situation, to the processing of personal data concerning them which is carried out on the basis of Article 6(1) DSGVO. 1 e DSGVO (data processing in the public interest) or on the basis of Art. 6 para. 1 f DSGVO (data processing for the protection of a legitimate interest), this also applies to profiling based on this provision. In the event of your objection, we will no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves to assert, exercise or defend legal claims.

If we process your personal data for the purpose of direct marketing, you have the right to withdraw your consent in accordance with Art. Art. 21 para. 2 DSGVO, you have the right to object at any time to the processing of personal data concerning you for the purposes of such marketing, including profiling, insofar as it is related to such direct marketing. In the event of your objection to processing for the purpose of direct marketing, we will no longer process your personal data for these purposes.

You also have the right to complain to a competent data protection supervisory authority about the processing of your personal data by us. If you have any questions or complaints about data protection at LECARE, we recommend that you first contact our data protection officer (see the contact details in section 1).

21. no automated decision in individual cases

We do not use your personal data for automated individual case decisions within the meaning of Art. 22 para. 1 GDPR.

22. amendment of the privacy policy

New legal requirements, business decisions or technical developments may require changes to our privacy policy. The privacy policy will then be adapted accordingly. You will always find the latest version on our website.

Status: October 2023