This data protection declaration applies to the collection, processing and use of your personal data ("data processing") when using our websites including
The responsible body for data collection, data processing and data use within the meaning of the General Data Protection Regulation (GDPR) is SerNet Service Network GmbH, Bahnhofsallee 1b, 37081 Göttingen (hereinafter referred to as "SerNet").
SerNet Service Network GmbH, Bahnhofsallee 1b in 37081 Göttingen, Germany, is also responsible for the processing of your personal data in connection with the use of our online shops at https://shop.samba.plus and https://shop.verinice.com.
Data protection is a matter of trust and your trust is important to us. We respect your privacy and personal sphere. The protection and the lawful collection, processing and use of your personal data is therefore an important concern for us. When processing your personal data, we strictly observe the legal provisions of the GDPR and the Telemedia Act.
This data protection declaration is intended to give you an overview of the way in which SerNet collects and uses personal data when using this website and the services and offers accessible via it.
Collection, processing and use of personal data
We only collect, store and process your personal data if you provide it to us voluntarily during the ordering process. We use the collected data exclusively for the execution of the contract, including possibly later guarantees.
After complete contract processing your data will be blocked and deleted after expiry of the tax and commercial law regulations, unless you have expressly agreed to a further use of data.
In the form fields, the information that we require for the services you require is marked as mandatory; other information is optional. For the conclusion and processing of contracts, depending on the individual case, we require your correct contact details such as name, delivery and billing address as well as information on the type of payment method you have chosen with the corresponding payment information such as your credit card data.
We need your mail address so that we can confirm receipt of your order and communicate with you. We also use these for your identification (customer login).
Passing on of personal data
Your personal data will not be passed on, sold or otherwise transmitted to third parties - neither for marketing nor for advertising purposes.
Personal data will only be passed on or otherwise transmitted to third parties if this is necessary for the purpose of contract processing. In this context, order data may be passed on to suppliers if necessary for the delivery of the goods.
For the processing of payments we pass on your payment data to the credit institution/payment provider commissioned with the processing of payments.
Any further transmission or passing on of personal data to third parties will take place, provided you have given us your prior consent, within the framework of mandatory national legislation or if such transmission is necessary for legal or criminal prosecution in the event of attacks on our network infrastructure.
Setting up a customer account
You have the possibility to set up a customer account with us so that you can order from us in the future. Registered users receive password-protected direct access to their stored inventory data (customer account).
The creation of a customer account is a prerequisite for placing a purchase order. The data arising in connection with your order activities are automatically stored to your customer account and linked to this and the data stored there. It may also be linked to data that arises in connection with the purchase of subscriptions. Subscription customers can manage their subscription account via another password-protected portal (OPOSSO), e.g. perform data and software downloads.
The establishment of a customer account requires your consent that the master data (e.g. name, contact data, access data, etc.), details of orders placed and other customer account data provided by you during further use of our site are stored. You give us your consent within the registration process.
If you have consented to this use of your data, you can revoke your consent at any time with effect for the future by e-mail or in writing. See the address information at the end of this statement.
Data that is necessary for billing and accounting, i.e. for legal or tax reasons, remain excluded from the revocation.
You undertake to treat your access data confidentially and not to make them accessible to any unauthorised third parties.
Use of contact forms
You can contact us directly via the contact forms provided on our website or request current information from us. We collect, process and use the information provided by you via a contact form exclusively for the processing of your request.
In order for you to subscribe to a SerNet newsletter service, we require at least your mail address. Additional information is voluntary and will be used to contact you personally.
If you register, your mail address will be used with your consent for the purposes of the newsletter until you unsubscribe yourself from the newsletter. You can do this at any time on the newsletter pages under the menu item "Unsubscribe newsletter". A unsubscribe link should also appear at the end of each newsletter article.
Storage of access data
When you access our website, data such as the IP address, date and duration of the visit, the identification data of the browser and operating system type used or the name of the internet service provider and the referer page are temporarily stored as standard on our web servers.
As a rule, we cannot and do not intend to refer to individuals.
This data is only collected for data security purposes and to optimise our website. Any other evaluation of the data with the exception of for statistical purposes and then generally in anonymous form does not take place.
We protect our website and other systems by technical and organizational measures against loss, destruction, access, modification or distribution of your data by unauthorized persons.
All our employees who collect, process or use personal data are obliged to maintain data secrecy in accordance with the GDPR and to handle data processing systems properly.
Your personal data will be transmitted encrypted. This applies to your order and other inquiries as well as to the customer login.
Credit card data and data about your bank details are not stored by us, but are collected and processed directly by our payment service provider.
Access to your customer account is only possible after entering your personal password. You should always keep your access information confidential and always log out of your personal account after use, especially if you share your computer with others.
Cookies are small text files that are transferred from the Internet to the computer together with the data actually requested. This data is stored there and kept ready for later retrieval.
Most of the cookies we use are so-called "session cookies". These are automatically deleted from your hard drive at the end of your visit. Other cookies remain on your computer system and enable us to recognize your computer system on your next visit (so-called permanent cookies). Cookies do not cause any damage to your computer and do not contain any viruses.
Most browsers are set to automatically accept cookies. Of course, you can also view our websites without cookies. If you do not want us to recognize your computer, you can prevent cookies from being stored on your hard drive by selecting "do not accept cookies" in your browser settings. Please refer to your browser manufacturer's instructions to find out how this works in detail.
If you disable cookies, certain features on our site may not be available to you and some websites may not display correctly.
Your visit to our website is currently recorded by Matomo (aka Piwik), a web analysis tool. With the help of this tool, data for the statistical evaluation of visitor accesses are recorded in real time. These data can be used to create user profiles under a pseudonym. For this purpose, a pseudonymous feature is stored on your terminal device within a so-called cookie.
The information generated by the cookie in the pseudonymous user profile will not be used to personally identify the visitor to this website without the separately shared consent of the person concerned and will never be combined with personal data about the bearer of the pseudonym.
You can object to this creation of user profiles at any time with effect for the future by making an appropriate setting in your browser. You also have the option of preventing any form of user analysis by subsequently being able to object at any time by clicking on it. In this case, an opt-out cookie is stored in your browser, which means that Matomo (aka Piwik) does not collect any session data. Please note that the complete deletion of your cookies means that the opt-out cookie will also be deleted and may have to be activated again by you.
Of course, you are free to exercise your right of objection by post or by email.
Your declarations of consent
You may have expressly given us the following consent(s) and we have recorded your consent. According to the German Telemedia Act, we are obliged to keep the content of consents available for retrieval at all times. You can revoke your consent(s) at any time with effect for the future.
Subscribe to the newsletter
By subscribing to the newsletter, you agree to the following: "I would like to be regularly informed by email about current developments and innovations concerning verinice, Samba or other SerNet products. I can unsubscribe from this service at any time by clicking on the link at the end of the newsletter."
Setting up a customer account
By opening a customer account you give the following consent: "I agree to the creation of a customer account. I can revoke my consent at any time."
Liability for contents
As a service provider, we are responsible for our own content on these pages in accordance with § 7 I TMG and the general laws. The content generated by users is third-party content, the accuracy and legal admissibility of which we are not responsible for. According to §§ 8 - 10 TMG we are not obliged as a service provider to monitor transmitted or stored external information or to investigate circumstances that indicate illegal activity. The obligation to remove the information or block access remains unaffected. However, any liability in this respect will only be established from the time of knowledge of a concrete violation of the law. On becoming aware of such violations of the law, we will remove the affected contents immediately.
If you use external links that are offered within the scope of our Internet pages, this data protection declaration does not extend to these links. We accept no responsibility for external content provided for use via links and do not adopt their content as our own.
If we offer links, we assure that at the time the links were set, no violations of applicable law were discernible on the linked Internet pages. However, we have no influence on compliance with data protection and security regulations by other providers. Therefore, please also inform yourself about the data protection declarations provided on the websites of other providers.
Right to information and correction
We would like to point out that you can revoke your data protection consent given to us at any time with effect for the future.
According to the GDPR, you also have a right to free information about your stored data and, if necessary, a right to correction, blocking or deletion of this data.
Upon written request, we will provide information free of charge about your personal data stored by us.
Please address your request for information, correction, blocking or deletion as well as the revocation of given consents by email or mail with clear identification of your person:
Data Protection Officer
37081 Goettingen, Germany
We would like to point out that your right to the deletion of data may be restricted by legal storage obligations, which we have to comply.
Changes to our data protection declaration
We reserve the right to change the data protection declaration at any time in compliance with the applicable legal data protection regulations.
If you have any questions or comments on this data protection declaration or in general on the subject of data protection, please contact our data protection officer: