Privacy Notice

Privacy Notice Last Update 16.08.2018


2B Advice is an established group of companies that deals with all questions relating to data protection. We offer legal and technical competence in data protection consulting, data protection training, data protection software and data protection certification.

Data protection is our company philosophy and our core competence. Therefore, we commit ourselves to protect the personal data of our employees and customers in the best possible way and to comply with the applicable data protection laws. Furthermore, we continuously strive to strengthen the protection of personal data. This data protection statement explains how we process personal data.

 

Who we are?

The 2B Advice Group consists of the following companies:

 

2B Advice GmbH

Joseph-Schumpeter-Allee 25
53227 Bonn, Germany
Managing Directors: Marcus Belke und Hans-Joachim Bickenbach
Phone: +49 228 926165-100
Fax: +49 228 926165-109
E-Mail: info@2b-advice.com

 

2B Advice LLC

7220 Avenida Encinas, STE 208
Carlsbad, CA 92011, USA
CEO: Marcus Belke

 

2B Advice s.r.o.

ČSA 4 SK-977 01
Brezno Slowakei
Managing Director: Patrik Madliak

 

We operate in a number of locations, including Bonn, Munich, New York, San Diego, Brezno, Verona. A detailed list of our subsidiaries can be found here: Locations

In this privacy statement we refer to ourselves simply as 2B Advice.

 

Who is responsible within the meaning of the GDPR

2B Advice and its companies are jointly responsible for the provision of the website at 2b-advice.com (Articles 4 No. 7 and 26 GDPR).


Which terms are important?

'Personal data' means any information relating to a known or identifiable natural person ('data subject'). A person is identifiable if he can be identified, directly or indirectly, in particular by reference to an identification number or to one or more factors corresponding to his physical, physiological, mental, economic, cultural or social identity. This therefore includes IP addresses or unique identifiers stored in cookies.

'Controller' means the natural or legal person, public authority, agency or other body which alone or jointly with others determines the purposes and means of the processing of personal data.

'Processor' means a natural or legal person, public authority, agency or other body which processes personal data on behalf of the controller.

'Processing' means any operation or set of operations which is carried out with or without the aid of automated processes and which is related to personal data, such as collection, recording, organisation, sorting, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or integration, qualification, erasure or destruction.

'Third country' means any country outside the European Union or outside the European Economic Area (EU/EEA).

 

To which processing does this data protection declaration apply?

This data protection declaration applies to all processing operations that are directly connected with the use of our website at the address www.2b-advice.com. This includes all pages of our website.

This Privacy Policy also applies to the use of 2B Advice PrIME, which may be used as a SaaS solution, and to the processing of personal data by 2B Advice for the conduct of Web-Based Training (WBT) training courses and to support cases involving the use of 2B Advice PrIME.

 

What personal data do we collect?

Data you provide us with

On our website www.2b-advice.comyou can provide us with the following information:

  • name;
  • company;
  • title;
  • address;
  • e-mail;
  • phone number

Data that we collect automatically during usage

While you are using the Site, we may also collect the following information, which under certain circumstances may be personal information:

  • name of the file accessed and the URL
  • The http response code
  • Date and time of access
  • Transferred amount of data
  • message whether the data access was successful, and
  • IP address
  • information about the date on which you first visited our website
  • The date on which you last visited our website.
  • The region derived from your IP address

Note: The region derived from your IP address is not an accurate location, but allows us to determine the geographic region from which you accessed our Web site to provide language sensitive information.

The above personal information may include information that is necessary for you to use our site, information that is necessary to understand your preferences, such as your preferred language.

Data collected when using 2B Advice PrIME SaaS

  • E-mail address for registration
  • Secondary email address or answer to one of 4 security questions:
    • What is the name of your primary school teacher?
    • What was your favourite place to visit as a child?
    • Who was the hero of your childhood?
    • When you were a child, what did you want to be?
  • IIS logs (#Fields: date time s-ip cs-method cs-uri-stem cs-uri-query s-port cs-username c-ip cs(User-Agent) cs(Referer) sc-status sc-substatus sc-win32-status time-taken):
    • Who (user) ◦When (time)
    • How (browser used)

Data collected when using 2B Advice PrIME for training purposes

  • training number: pseudonym for your identity
  • the business e-mail address
  • first name, last name

Data collected for support requests

  • e-mail address and/or telephone number
  • Customer name and/or customer number
  • Screenshots of the error messages
  • PrIME application logs if applicable + features (Reporting Service, WBT, CMS), Web Server log data (IIS), SQL Server logs, and Windows logs (Event Viewer)

The data collected when using 2B Advice Secure File Exchange (SecFEx)

  • E-mail address of the customer
  • Log data from Web Server (IIS)

 

Do we collect special types of personal data?

No, we do not collect any special types of personal data in connection with the website.

 

What do we use your data for?

We will use your personal data for other purposes:

  • to answer your inquiries - e.g. via the contact form (processing according to Art. 6 Para. 1 Letter a GDPR)
  • to enable you to access special information or offers (processing pursuant to Art. 6 para. 1 letter a GDPR)
  • to process your order, e.g. ordering a single-user licence or another software licence (processing pursuant to Article 6(1)(b) of the GDPR) - to enable you to use the 2B Advice PrIME software as a SaaS solution (processing pursuant to Article 6(1)(b) of the GDPR) - to be able to provide you with the necessary assistance in support cases (processing pursuant to Art. 6 para. 1 letter b GDPR)
  • to design and further develop our website in a user-friendly manner and to recognize and avoid disturbances or other impairments (processing in accordance with Art. 6 para. 1 letter f GDPR)

Of course, we respect your choice if you do not wish to provide us with your personal data. In this case, functions may not be available or may only be available to a limited extent. Your data will be deleted after fulfilment of the purpose of the data processing in compliance with statutory storage regulations.

 

Do we transfer your data to third countries?

In principle, we do not transfer your personal data to third countries unless otherwise stated in this data protection declaration. A transfer to a third country may be possible if

  • You are using the US solution from 2B Advice PrIME SaaS. In this case, personal data will be stored on the US servers.
  • Employees in third countries or about the 2B Advice PrIME SaaS US solution.
  • You yourself access the website from a third country.

If we ourselves are responsible for these transfers and not you as a user of our products, we ensure an appropriate level of data protection by concluding standard contractual clauses of the EU.

 

To whom do we pass on your data?

Your personal data will be passed on in anonymous form to service providers who compile statistics for us on the use of our website. You will find more detailed information on this below, in the description of the concrete web analysis services.

In the case of a support request, it is possible that the data within the 2B Advice Group, in particular to 2B Advice S.R.O. will be forwarded to solve the reported problem.

When using the SaaS solution, data is stored on Microsoft's servers. 2B Advice PrIME SaaS uses the "Azure" cloud solution offered by Microsoft. If you use the EU solution, use servers located in the EU only; if you use the US solution, the servers are located in the United States of America. Between 2B Advice and Microsoft have been concluded the legally required contracts for order processing under Article 28 GDPR.

In the cases prescribed by law, we pass on data to public authorities such as tax offices, investigating authorities, courts or similar institutions if we are obliged to do so. We also pass on data to these institutions as well as to lawyers, insolvency administrators or tax consultants if the passing on is absolutely necessary for the assertion or defence of legal claims.

 

How do we use cookies and Google Analytics?

Below you will find information on how your personal data is collected and processed on this website and for what purposes. We will inform you about "cookies" and the options for accepting or rejecting them. A detailed section informs you about the Google Analytics used on this website, which we use to continuously improve our website. The section on Google Analytics also contains information on how you can object to data collection via Google Analytics.

 

What are "cookies"?

Cookies are files that are placed on your computer by a web page while you are viewing the page. These files store information to help you make better use of the site.

 

What do we use cookies for?

Our content management system partly uses cookies so that it can send you all the information relevant to you without errors.

We also use cookies when you send us a message via one of the forms. The "Captcha" function, which prompts you to enter numbers from a graphic to protect communications from spam, uses cookies. Otherwise, cookies are only stored if you log in to our system, which requires that you apply for access authorisation from 2B Advice GmbH. The cookies then used by our content management system store the user name and the websites you have visited. This information is not evaluated by us at any time or for any purpose and only serves to optimise the system. Cookies allow us, for example, to adapt our websites to your interests.

Note: If you do not want us to recognize your computer, please set your Internet browser so that it deletes cookies from your computer hard drive or warns you before a cookie is stored.

 

How do we use Google Analytics?

This website uses Google Analytics, a web analytics service provided by Google LLC, 1600 Amphitheatre Parkway Mountain View, CA 94043 USA ("Google"). Google is EU-US-Privacy Shield certified and you can find out more here:

https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active

The information generated by the Google cookie about your use of this website will generally be transmitted to and stored by Google on servers in the United States. If IP anonymization is activated on this website, your IP address will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. On behalf of the operator of this website, Google will use this information to evaluate your use of the website, compile reports on website activity and provide other services to the website operator relating to website activity and internet usage. The IP address transmitted by your browser as part of Google Analytics is not combined with other data from Google. You may refuse the use of cookies by selecting the appropriate settings on your browser, however please note that if you do this you may not be able to use the full functionality of this website. You can also prevent Google from collecting the data generated by the cookie and related to your use of the website (including your IP address) and Google from processing this data by downloading and installing the browser plug-in available under the following link http://tools.google.com/dlpage/gaoptout?hl=de

We use the option anonymizeIP() or anonymizeIp and make sure that your IP address is shortened before the evaluation by Google to prevent a conclusion about your person.

The use of Google Analytics is based on Art. 6 para. 1 lit. a. GDPR.

Cookie overview Cookie-Name

Cookie-Name

Type

Intended Use/
Description

Compulsory for the service

 

 

 

 

Captcha

Session

Security cookie to avoid automatically generated requests

No

_RequestVerificationToken

Session

Security cookie to avoid crosstracking, etc..

Yes

_ga

Drittanbieter/
temporär

Google Analytics Tracking Cookie to differentiate between visitors

No

_gat

Drittan/
temporär

Google Analytics Tracking Cookie for identification if you use no Google Account

No

_gid

Drittan/
temporär

Google Analytics Tracking Cookie to differentiate between visitors

No

idsrv.xsrf

Session

Sicherheitscookie zur Vermeidung von Crosstracking etc.

Yes

ASP.NET_Sessionid

Session

Security cookie to avoid crosstracking etc.

Yes

OpenIdConnect.nonce.Openconnect

Session

Security cookie to log in to 2B Advice applications

Yes

SignInMessage

Session

Security cookie to log in to 2B Advice applications

Yes

Session cookies are deleted as soon as you leave our website, or at the latest when you close your browser. Third party cookies are stored longer, the longest storage period is two years, unless you delete the cookies yourself.

 

What options do you have with our newsletter?

You have the possibility to register for the newsletter of 2B Advice GmbH via our website. We need your name, first name and e-mail address to send it to you. Only after successful completion of a two-stage approval procedure will you receive our newsletter on a regular basis.

You can view your declaration of consent or unsubscribe from the newsletter at any time. You will find corresponding links in every e-mail accompanying our newsletter. If you unsubscribe, we will immediately delete your contact details from our newsletter recipient list. The legislator places certain requirements on the effectiveness of an electronic consent, as it is used to register for the newsletter. This also includes the logging of your declaration of consent. We therefore record the date and time of your consent, the text of the declaration of consent, the fact whether the checkbox was selected, your e-mail address, your surname and first name. We also log the date and time of the click on the confirmation link and the link in the confirmation e-mail. We collect and store this information solely in order to comply with the legal requirements for electronic consent (Art. 7 in conjunction with Art. 6 para. 1 lit. c GDPR).

 

What is to be considered with links to other websites?

If we offer links to other websites outside the 2B Advice website, we only try to refer to sites that represent the same values as us. However, please check the privacy policy of the site to which the link refers each time to learn about the practices for collecting information, such as the use of cookies. We are not responsible for the content or policies of other companies regarding information retrieval. If you visit another site, you should read its privacy policy and other guidelines carefully.

 

How do we protect personal information?

We protect your data through regular internal controls and a modern IT infrastructure. If we work with contract processors to process orders and inquiries, we achieve an equivalent level of data protection through binding agreements, prior verification of the respective contract processor and controls.

 

What rights do I have as a data subject (user of our website)?

If you as a data subject do not agree with how 2B Advice or persons at 2B Advice process your personal data, you have the following rights under the GDPR:

  • You have the right to know which data we have stored about you and for what purpose (information pursuant to Art. 15 GDPR).
  • You have the right for us to correct any incorrect data about you (correction in accordance with Art. 16 GDPR).
  • You have the right to demand that the data be deleted if, for example, the data are not required for the purposes for which they were stored or if we are not permitted to store the data for other reasons (deletion in accordance with Art. 17 GDPR). However, if a law allows us to store data or even requires us to do so, we cannot comply with the request for deletion.
  • You have the right to object to the processing (objection pursuant to Art. 21 para. 1 GDPR). This objection must contain an explanation of the particular situation which makes further processing unacceptable to you. The objection is carefully examined and the data is blocked for the duration of the examination.
  • You have the right to object to the use of your personal data for advertising purposes at any time with effect for the future without incurring any costs other than the transmission costs according to the basic tariffs (the normal costs of your Internet or telephone connection) (advertising objection pursuant to Art. 21 para. 2 GDPR).
  • You have the right to have data blocked if, for example, the correctness of the data has not been established or you have lodged an objection and the examination has not yet been completed (restriction of processing in accordance with Art. 18 GDPR).
  • You have the right to request data which you have made available to us and which are automatically processed by us in a common, machine-readable format (data transferability in accordance with Art. 20 GDPR).
  • If we process your data following your consent, you have the right to withdraw your consent at any time, which prevents future processing of your data based on your consent. However, this will not effect the legality of any processing done before your withdrawal.

If you wish to exercise one or more of these rights, please contact our data protection officer.

Corporate Data Protection Officer

Marco Schroeder
2B Beratung GmbH Joseph-Schumpeter-Allee 25
53227 Bonn
Deutschland

E-Mail: DSB@2b-advice.com
Telefon: +49 228 92 61 65 120

The data protection officer is obliged to keep your identity secret if you wish to complain about the processing of your data by us. If he comes to the conclusion that your identity could be deduced in the course of clarifying a complaint, the data protection officer will inform you in advance and, if necessary, ask you to release him from his duty of confidentiality.

Should you assert your right to information, correction, blocking, deletion, data transferability or objection, the confidentiality obligation does not apply insofar as the transfer of the data is necessary to fulfil the request - for example to the database administration.

In addition, you have the right to lodge a complaint with the responsible data protection supervisory authority.

 

What is the data protection supervisory authority responsible for us?

The data protection authority responsible for us is:

State Commissioner for Data Protection and Freedom of Information North Rhine-Westphalia Postfach 20 04 44

40102 Düsseldorf
Telefon: 0211/38424-0
Fax: 0211/38424-10
E-Mail: poststelle@ldi.nrw.de

 

You can also address questions and complaints to them at any time  

 

 

 

© 2012 - 2018 |  2B Advice LLC - the privacy benchmark
65 Broadway, 7th Floor | New York | NY | 10006 | Phone: +1 (800) 717-1278 | Fax: +1 (212) 898 1248 | Email: newyork@2b-advice.com
The pages do not contain any legal advice | No responsibility for the accuracy of the information. Please also notice: Privacy Notice | Legals
2B Advice GmbH Germany | 2B Advice s.r.o. Slovakia | United States of America | Slovakia | Germany | New York | San Diego | Bonn | Berlin | Munich | Brezno | Verona