Privacy Policy According to Article 13 of the General Data Protection Regulation (GDPR)
The Privacy Policy is to provide information on the processing of your personal data in connection with this website and on your rights according to data protection legislation. According to Article 4, No. 1 of the EU General Data Protection Regulation (GDPR), personal data are all data that can be related to an identified or identifiable natural person.
Overview
- Controller and Data Protection Commissioner
- Accessing the Website and Server Log Files
- Cookies
- Contact (Email, Phone, Form)
- Newsletter
- Links to Other Websites
- Encrypted Transmission (TLS Encryption)
- Your Rights
Information
- Controller and Data Protection Commissioner
According to the GDPR (Art. 4, No. 7) and other data protection regulations, the controller is:
Karlsruhe Institute of Technology (KIT)
Kaiserstraße 12
76131 Karlsruhe
Germany
Phone: +49 721 608-0
Fax: +49 721 608-44290
Email: info@kit.eduKarlsruhe Institute of Technology is a corporation governed by public law. It is represented by its President.
Our Data Protection Commissioner may be contacted at datenschutzbeauftragte@kit.edu or by ordinary mail with “Die Datenschutzbeauftragte“ (the Data Protection Commissioner) being indicated on the envelope.
- Accessing the Website and Server Log Files
Scope and purpose: When using the website for information only, i.e. when you neither register nor transmit information to us in any other way, we will only collect your personal data that are transmitted by your browser to our server after the settings you have made. These are:
- The IP address of the user
- Date and time of access
- Accessed website or URL
- Access data / HTTP status code
- Data volume transmitted
- Websites from which the user’s system accesses our Internet site, if the user’s browser transmits these data actively
- Information on the browser type and the version used
- Operation system of the user
- Information on the encryption protocol and the used encryption algorithm
These data serve to technically optimize the website and to ensure security of our IT systems. The IP address is required for the operation and delivery of the website, it is written into the log files in abbreviated form, and is no longer available in its entirety after the request. From these data, we cannot draw any direct conclusions with respect to individual persons. In anonymized form, the data are processed for statistical purposes. The data are not compared with other data sets.
If we have concrete evidence of illegal use, we reserve the right to collect and store full IP addresses.
Recipients: Data will not be forwarded to third parties.
Legal basis: The legal basis for processing these data is Art. 6, par. 1, lit. e and Art. 3 lit. b GDPR in conjunction with Article 4 LDSG (State Data Protection Act) and Article 20, par. 1 KITG (Act on KIT) in conjunction with Article 12, par. 1 LHG (Act of Baden-Württemberg on Universities and Colleges).
Storage period: The personal data are stored as long as they are needed for reaching the purpose of their collection. After seven days at the latest will the data be deleted.
- Cookies
Scope and purpose: In addition to the data listed above, cookies are stored on your computer when using our website. Cookies are small text files stored by your browser on your PC, via which certain information is transmitted to us (the server of our website). We use so-called session cookies (transient cookies) that are technically required to make the website functional. In the cookies used by us, the following data are stored and transmitted.
- Session-ID („PHPSESSID“)
Recipient: The data are not transmitted to third parties.
Legal basis: The legal basis for processing personal data using technically required cookies in the sense of Art. 25, par. 2 TDDDG (Act on Data Protection and the Protection of Privacy in Telecommunications and Digital Services) is Art. 6, par. 1, lit. e and par. 3, lit. b GDPR in conjunction with Art. 4 LDSG and Art. 20, par. 1 KITG in conjunction with Art. 12, par. 1 LHG.
Storage period: The session cookies will be deleted at the latest when you close your browser.
Tip: You can set your browser such that you are informed about the setting of cookies and you can allow cookies in the individual case only, exclude the acceptance of cookies in certain cases or in general, and activate the automatic deletion of cookies when closing your browser. If you deactivate cookies, functionality of this website may be limited.
- Contact (Email, Phone, Form)
Scope and purpose: When contacting us by email, phone, or by sending a form, your contact data transmitted to us, such as email address, phone number, and name, are stored for the purpose of processing and answering your inquiry.
Please note that data transmission (e.g. when communicating by email) may be subject to security deficiencies. It is not possible to completely protect the data from access by third parties.
Recipient: If needed for responding to your inquiry, personal data may be forwarded to competent offices of KIT. The responsible KIT employees will use your personal data for processing your inquiry exclusively. The data will not be transmitted to third parties.
Legal basis: The legal basis for processing these data is Art. 6, par. 1, lit. e and par. 3, lit b GDPR in conjunction with Art. 4 LDSG and Art. 20, par. 1 KITG in conjunction with Art. 12, par. 1 LHG as well as other pertinent legal provisions.
Storage period: The personal data will be stored as long as they are needed for fulfilling the above purpose. This means that the data will be deleted when it must be assumed that an exchange is no longer desired.
- Newsletter
Scope and purpose: We process your personal data from the corresponding form / registration mask for the purpose of sending you the newsletter and the associated administration work. For registration, we use the double opt-in procedure, i.e., your registration will only be completed after you have confirmed your registration by clicking the link contained in a confirmation email sent to you for this purpose. If you do not confirm within 48 hours, your registration will be deleted automatically from our database.
Recipient: The data will not be transmitted to third parties.
Legal basis: The legal basis for processing these data is Art. 6, par. 1, lit. a GDPR (consent).
Consent is given voluntarily. Consent may be revoked anytime with effect for the future. Effect for the future means that revocation of your consent will not affect the lawfulness of processing that was based on the consent until revocation. Your refusal or revocation of the consent will not result in any disadvantages. However, without your giving your personal data, it will no longer be possible to send the newsletter to you.
Storage period: The personal data will be stored as long as they are needed for the above purposes. This means that we will store the data as long as you have given your consent.
- Links to Other Websites
When we link to websites outside of KIT, the privacy policies and information provided there apply.
- Encrypted Transmission (TLS Encryption)
This site uses TLS encryption to protect the transmission of all contents as well as of the inquiries you sent to us as the site operator.
With TLS encryption, the data you transmit to us cannot be read by third parties as a rule. Please note, however, that when transmitting data via the Internet, complete protection against access by third parties can never by guaranteed.
- Your Rights
As regards your personal data, you have the following rights:
- Right to withdrawal of your consent with effect for the future, if processing is based on a consent according to Art. 6, par. 1, sub-par. 1, lit. a GDPR (Art. 7, par. 3 GDPR),
- right to confirmation as to whether data about you are processed and right to information about the data processed and to further information about data processing as well as right to obtain copies of the data (Art. 15 GDPR),
- right to rectification or completion of incorrect or incomplete data (Art. 16 GDPR),
- right to immediate erasure of your personal data (Art. 17 GDPR),
- right to restriction of processing (Art. 18 GDPR),
- right to portability of the data in a structured, common, and machine-readable format, provided that processing is based on a consent according to Art. 6, par. 1, sub-par. 1, lit. a or Art. 9, par. 2, lit. a GDPR or on an agreement according to Art. 6, par. 1, sub-par. 1, lit. b GDPR (Art. 20 GDPR),
- right to object to the future processing of your personal data, if the data are processed according to Art. 6, par. 1, lit. e or f GDPR (Art. 21 GDPR).
In addition, you have the right to complain about the processing of your personal data by KIT with its supervisory authority (Art. 77 GDPR). According to Art. 25, par. 1 LDSG, the supervisory authority of KIT according to Art. 51, par. 1 GDPR is:
Der Landesbeauftragte für den Datenschutz und die Informationsfreiheit Baden-Württemberg (Baden-Württemberg State Commissioner for Data Protection and Freedom of Information) (https://www.baden-wuerttemberg.datenschutz.de/, in German).
Use of the Matomo/Piwik Analysis Tool
(1) This website uses the web analysis service Matomo (formerly Piwik) to analyze the use of our website and to constantly improve it. Through the statistics obtained, we can improve our offers and make them more interesting for you as a user. The legal basis for the use of Matomo is Article 6, par. 1, clause 1 (f) GDPR.
(2) For this evaluation, cookies (more details, see Section 3) will be stored on your computer. The information collected is stored by the controller on his server in Germany exclusively. You can change the evaluation settings by deleting existing cookies and preventing the storage of cookies. Prevention of the storage of cookies may result in a limited use of the website. Storage of cookies can be prevented by setting your browser accordingly. Prevention of the use of Matomo is possible by deleting the following check mark and, thus, activating the opt-out plug-in:
.
(3) This website uses Matomo with the setting “Anonymize IP.” As a result, IP addresses will only be processed in shortened form in order to prevent direct personal references. The IP address transmitted by your browser via Matomo will not be combined with other data collected by us.
(4) The Matomo program is an open-source project. For information of the provider on data protection according to GDPR, click e.g. https://matomo.org/gdpr-roadmap/.