Privacy policy

Privacy Policy

1. Data Controller

The data controller for this website is:

Bineki GmbH
Erich-Rittinghaus-Straße 2/13
89250 Senden
Phone: +49 7305 2091091
Email: info@bineki.de

(hereinafter referred to as "we" or "us").

A legally required data protection officer has not been appointed.

2. General Information on Data Processing

We process personal data only to the extent necessary for providing a functional website, for fulfilling our contractual obligations (in particular, the sale of digital products/downloads), and for responding to inquiries, or if you have consented to the processing.

Personal data is any information relating to an identified or identifiable natural person (e.g., name, address, email address, IP address).

The legal basis for processing is found in particular in Article 6(1)(a)–(f) of the GDPR.

3. Categories of Processed Data

We process, in particular:

Inventory data (e.g., name, address)

Contact data (e.g., email address, telephone number if applicable)

Contract and order data (e.g., products ordered, date, order number, download status)

Payment data (depending on the payment method; primarily processed by payment service providers)

Usage and metadata (e.g., IP address, browser information, access times, pages visited)

4. Purposes and Legal Bases

We process data for the following purposes:

Provision of the website and online shop
– Legal basis: Art. 6 para. 1 lit. f GDPR (legitimate interest in a secure, functional online service).

Contract initiation and execution (ordering, payment, provision of downloads)
– Legal basis: Art. 6 para. 1 lit. b GDPR.

Fulfillment of legal obligations (e.g., tax and commercial law retention requirements)

– Legal basis: Art. 6 para. 1 lit. c GDPR.

Communication with users (e.g., via email/contact form)

– Legal basis: Art. 6 para. 1 lit. b and lit. f GDPR.

Newsletter/Marketing (if subscribed)

– Legal basis: Art. 6 para. 1 lit. a GDPR (consent), possibly Art. 6 para. 1 lit. f GDPR in conjunction with Section 7 of the German Act Against Unfair Competition (UWG).

Reach measurement and statistics (Google Analytics) as well as advertising measures (meta pixels)

– Legal basis: Art. 6 para. 1 lit. a GDPR in conjunction with Section 25 para. 1 of the German Telecommunications and Telemedia Data Protection Act (TTDSG) (consent via cookie/consent banner).

5. Hosting and shop system (Shopify)

Our website and online shop are operated via the Shopify service. The service provider for customers in Europe is generally:

Shopify International Ltd.

2nd Floor, 1-2 Victoria Buildings
Haddington Road
Dublin 4, D04 XN32
Ireland

Shopify processes personal data (e.g., inventory data, order data, IP addresses, log data) on our behalf on its servers. This may include server locations in Canada and the USA. The transfer is based on Article 6(1)(b) GDPR (performance of a contract) and Article 6(1)(f) GDPR (legitimate interest in an efficient and secure shop system), as well as suitable safeguards for data transfers to third countries (e.g., standard contractual clauses/data privacy framework, where applicable).

We have a data processing agreement with Shopify in accordance with Article 28 GDPR.


6. Server Log Files

When you access our website, your browser automatically transmits information to our server or the server used by Shopify, which is then stored in log files. This information includes:

Page/file accessed

Date and time

Amount of data transferred

Confirmation of successful retrieval

Browser type and version

Operating system

Referrer URL

IP address

Provider

Legal basis: Art. 6 para. 1 lit. f GDPR (legitimate interest in stability, security, and error analysis).

Log files are generally deleted after 7–30 days at the latest, unless longer retention is required for security reasons.

7. Order Processing and Digital Downloads

7.1 Order Processing

When you place an order, we process the data you enter:

Name, address

Email address

Ordered products, time, order status

Selected payment method

This processing is necessary for the performance of the contract (Art. 6 para. 1 lit. b GDPR).

7.2 Digital Downloads

After successful order placement, we will provide you with the purchased digital content (PDF files) via download links, which will be sent to you by email or made available in your customer area. In addition, we process technical data related to the download (e.g., time of access, IP address) to the extent necessary for providing the content and for protection against misuse.

Legal basis: Art. 6 para. 1 lit. b GDPR and Art. 6 para. 1 lit. f GDPR (legitimate interest in protecting our systems and providing proof of delivery).

Note: Download links may be limited in time or number of downloads for technical and organizational reasons. We recommend saving the files locally immediately upon receipt.

8. Payment Methods and Payment Service Providers

We use the payment methods provided by Shopify to process payments. Depending on the chosen method, personal data will be transmitted to the respective payment service provider. These include, in particular:

Shop Pay

Credit cards (Visa, Mastercard, American Express, Maestro, UnionPay)

Wallets (Apple Pay, Google Pay)

Crypto payment (USDC)

Local payment methods: Bancontact, EPS (Austria), iDEAL (Netherlands), Klarna, MobilePay

The data processed during payment may include:

Name, billing address

Email address

Payment information (e.g., card number, IBAN – usually stored only by the payment service provider)

Transaction amount, date, time

Legal basis:

Art. 6 para. 1 lit. b GDPR (performance of the purchase contract),

Art. 6 para. 1 lit. f GDPR (legitimate interest in secure, efficient payment processing).

We ourselves generally do not receive complete payment data (e.g., complete card numbers) from payment service providers, but only confirmation of the success or failure of a payment.

Data processing by the respective payment service providers is governed by their own privacy policies, which we refer to during the payment process.

9. Newsletter

When you subscribe to our newsletter, we use your email address (and, if applicable, your name) to regularly send you information about our products and promotions.

Registration uses a double opt-in process:

After entering your email address, you will receive an email with a confirmation link. Your registration is only complete after clicking this link.

Legal basis: Art. 6 para. 1 lit. a GDPR (consent).

You can withdraw your consent at any time with effect for the future, e.g., via the unsubscribe link in the newsletter or by contacting us. The lawfulness of the processing carried out before the withdrawal remains unaffected.

We may store unsubscribed email addresses in a blocklist for a limited period to prevent unwanted re-registration (Art. 6 para. 1 lit. f GDPR – proof of consent and its revocation).

10. Use of Cookies and Similar Technologies

Our website uses cookies and similar technologies.

Cookies are small text files that are stored on your device. A distinction is made between:

technically necessary cookies (e.g., shopping cart, login, language settings),

non-essential cookies (e.g., for statistics, marketing, tracking).

We use technically necessary cookies based on Article 6(1)(f) GDPR in conjunction with Section 25(2) TTDSG (legitimate interest in a functional website).

We only use non-essential cookies (e.g., for Google Analytics or Meta Pixel) if you have given your prior consent (cookie banner/consent tool). The legal basis for this is Article 6(1)(a) GDPR in conjunction with Section 25(1) TTDSG.

You can adjust your cookie settings at any time in your browser or via the consent tool and revoke any consent you have already given.

11. Google Analytics

We use Google Analytics, a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland (“Google”), provided you have consented to this via our consent tool.

Google Analytics uses cookies and similar technologies to analyze the use of our website. The information generated (e.g., IP address, pages visited, time spent on the site) is generally transmitted to and stored on a Google server in the USA.

We use Google Analytics with IP anonymization enabled, so your IP address is shortened by Google within the EU/EEA.

Legal basis: Art. 6 para. 1 lit. a GDPR in conjunction with Section 25 para. 1 TTDSG (consent).

You can withdraw your consent at any time via our cookie/consent tool. You can also prevent the collection of data generated by the cookie by installing a browser plugin or disabling cookies in your browser.


Further information on Google's data usage can be found in Google's privacy policy.

12. Meta Pixel (Facebook Pixel)

We use the "Meta Pixel" from Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbour, Dublin 2, Ireland ("Meta") for advertising and analytics purposes, provided you have consented via our consent tool.

With the help of the pixel, Meta can assign visitors to our website to specific target groups (e.g., for Facebook/Instagram ads). We only receive statistical analyses from Meta; Meta itself can link the data to your Meta profile if you are logged in.

Legal basis: Art. 6 para. 1 lit. a GDPR in conjunction with Section 25 para. 1 TTDSG (consent).

You can withdraw your consent at any time via our cookie/consent tool. Further information on data processing by Meta and on setting options can be found in Meta's privacy policy and in the advertising settings of your account.

13. Contacting Us

When you contact us (e.g., by email or contact form), we process the data you provide (e.g., name, email address, message content) in order to process your request.

Legal basis:

Art. 6 para. 1 lit. b GDPR (contract-related inquiries),

Art. 6 para. 1 lit. f GDPR (other inquiries; legitimate interest in communication).

The data will be deleted as soon as your request has been fully answered and no statutory retention periods apply.

14. Data Retention Period

We store personal data only as long as is necessary for the aforementioned purposes or as required by statutory retention obligations.

Contract and payment data: i.e. 6–10 years (for tax and commercial law obligations)

Log files: typically 7–30 days

Newsletter data: until consent is withdrawn, after which limited storage may be required for documentation purposes.

The data is then deleted or anonymized.


15. Your Rights

Under the GDPR, you have the following rights:

Right of access to your personal data (Art. 15 GDPR)

Right to rectification of inaccurate or incomplete data (Art. 16 GDPR)

Right to erasure (“right to be forgotten”, Art. 17 GDPR)

Right to restriction of processing (Art. 18 GDPR)

Right to data portability (Art. 20 GDPR)

Right to object to certain processing (Art. 21 GDPR)

Right to withdraw consent at any time with effect for the future (Art. 7 para. 3 GDPR)

Right to lodge a complaint with a data protection supervisory authority (Art. 77 GDPR)

To exercise your rights, you can contact us at any time using the contact details provided above.

16. Right to object pursuant to Article 21 GDPR

You have the right to object, on grounds relating to your particular situation, at any time to the processing of personal data concerning you which is based on point (f) of Article 6(1) GDPR.

If we process your personal data for direct marketing purposes, you can object to this processing at any time; this also applies to profiling insofar as it is related to such direct marketing.

17. Withdrawal of consent

Where we process data based on your consent, you can withdraw this consent at any time with effect for the future. The lawfulness of the processing carried out before the withdrawal remains unaffected.

18. Changes to this Privacy Policy

We reserve the right to amend this Privacy Policy if the legal situation, our data processing practices, or the services we use change. The current version published on this website applies in each case.

BACK TO TOP

Submit Withdrawal Request

Please fill out the following form to submit your withdrawal request.