Select Page

Privacy Police /
Datenschutzerklärung

Liza Leiss Coaching

RESPECTING YOUR PRIVACY
IS MY PRIORITY!

It is Liza Leiss’s policy to respect your privacy regarding any information we may collect while operating our website. This Privacy Policy applies to https://lizaleiss.com (hereinafter, “us”, “we”, or “https://lizaleiss”). We respect your privacy and are committed to protecting personally identifiable information you may provide us through the Website. We have adopted this privacy policy (“Privacy Policy”) to explain what information may be collected on our Website, how we use this information, and under what circumstances we may disclose the information to third parties. This Privacy Policy applies only to information we collect through the Website and does not apply to our collection of information from other sources.

This Privacy Policy, together with the terms and conditions posted on our Website, set forth the general rules and policies governing your use of our Website. Depending on your activities when visiting our Website, you may be required to agree to additional terms and conditions.

 

DATENSCHUTZERKLÄRUNG:

Die Betreiberin dieses Blogs nimmt den Schutz persönlicher Daten der Blogleser sehr ernst. Personenbezogene Daten werden vertraulich und entsprechend der gesetzlichen Datenschutzvorschriften sowie dieser Datenschutzerklärung behandelt.

Die Nutzung meiner Webseite ist in der Regel ohne Angabe personenbezogener Daten möglich. Soweit auf meinen Seiten personenbezogene Daten erhoben werden, erfolgt dies, soweit möglich, stets auf freiwilliger Basis.

Diese Daten werden nicht an Dritte weitergegeben.

Ich weise darauf hin, dass die Datenübertragung im Internet (z.B. bei der Kommunikation per E-Mail) Sicherheitslücken aufweisen kann. Ein lückenloser Schutz der Daten vor dem Zugriff durch Dritte ist nicht möglich. 

Diese Datenschutzerklärung klärt Sie über die Art, den Umfang und Zweck der Verarbeitung von personenbezogenen Daten (nachfolgend kurz „Daten“) innerhalb unseres Onlineangebotes und der mit ihm verbundenen Webseiten, Funktionen und Inhalte sowie externen Onlinepräsenzen, wie z.B. unser Social Media Profile auf. (nachfolgend gemeinsam bezeichnet als „Onlineangebot“). Im Hinblick auf die verwendeten Begrifflichkeiten, wie z.B. „Verarbeitung“ oder „Verantwortlicher“ verweisen wir auf die Definitionen im Art. 4 der Datenschutzgrundverordnung (DSGVO).

 

VERANTWORTLICHER

Liza Marie Leiß | Pöntertalstraße 2 | 56626 Andernach

E-Mail: leiss.liza@gmail.com

Impressum: https://lizaleiss.com/impressum/

  

ARTEN DER VERARBEITETEN DATEN:

– Bestandsdaten (z.B., Namen, Adressen). – Kontaktdaten (z.B., E-Mail, Telefonnummern). – Inhaltsdaten (z.B., Texteingaben, Fotografien, Videos). – Nutzungsdaten (z.B., besuchte Webseiten, Interesse an Inhalten, Zugriffszeiten). – Meta-/Kommunikationsdaten (z.B., Geräte-Informationen, IP-Adressen).

 

KATEGORIEN BETROFFENER PERSONEN

Besucher und Nutzer des Onlineangebotes (Nachfolgend bezeichnen wir die betroffenen Personen zusammenfassend auch als „Nutzer“).

 

ZWECK DER VERARBEITUNG

– Zur Verfügungsstellung des Onlineangebotes, seiner Funktionen und Inhalte. – Beantwortung von Kontaktanfragen und Kommunikation mit Nutzern. – Sicherheitsmaßnahmen. – Reichweitenmessung/Marketing

 

VERWENDETE BEGRIFFLICHKEITEN 

„Personenbezogene Daten“ sind alle Informationen, die sich auf eine identifizierte oder identifizierbare natürliche Person (im Folgenden „betroffene Person“) beziehen; als identifizierbar wird eine natürliche Person angesehen, die direkt oder indirekt, insbesondere mittels Zuordnung zu einer Kennung wie einem Namen, zu einer Kennnummer, zu Standortdaten, zu einer Online-Kennung (z.B. Cookie) oder zu einem oder mehreren besonderen Merkmalen identifiziert werden kann, die Ausdruck der physischen, physiologischen, genetischen, psychischen, wirtschaftlichen, kulturellen oder sozialen Identität dieser natürlichen Person sind.

„Verarbeitung“ ist jeder mit oder ohne Hilfe automatisierter Verfahren ausgeführten Vorgang oder jede solche Vorgangsreihe im Zusammenhang mit personenbezogenen Daten. Der Begriff reicht weit und umfasst praktisch jeden Umgang mit Daten.

Als „Verantwortlicher“ wird die natürliche oder juristische Person, Behörde, Einrichtung oder andere Stelle, die allein oder gemeinsam mit anderen über die Zwecke und Mittel der Verarbeitung von personenbezogenen Daten entscheidet, bezeichnet.

 

MASSGEBLICHE RECHTSGRUNDLAGE

Nach Maßgabe des Art. 13 DSGVO teilen wir Ihnen die Rechtsgrundlagen unserer Datenverarbeitungen mit. Sofern die Rechtsgrundlage in der Datenschutzerklärung nicht genannt wird, gilt Folgendes: Die Rechtsgrundlage für die Einholung von Einwilligungen ist Art. 6 Abs. 1 lit. a und Art. 7 DSGVO, die Rechtsgrundlage für die Verarbeitung zur Erfüllung unserer Leistungen und Durchführung vertraglicher Maßnahmen sowie Beantwortung von Anfragen ist Art. 6 Abs. 1 lit. b DSGVO, die Rechtsgrundlage für die Verarbeitung zur Erfüllung unserer rechtlichen Verpflichtungen ist Art. 6 Abs. 1 lit. c DSGVO, und die Rechtsgrundlage für die Verarbeitung zur Wahrung unserer berechtigten Interessen ist Art. 6 Abs. 1 lit. f DSGVO. Für den Fall, dass lebenswichtige Interessen der betroffenen Person oder einer anderen natürlichen Person eine Verarbeitung personenbezogener Daten erforderlich machen, dient Art. 6 Abs. 1 lit. d DSGVO als Rechtsgrundlage.

 

ZUSAMMENARBEIT MIT AUFTRAGSVERARBEITERN UND DRITTEN

Sofern wir im Rahmen unserer Verarbeitung Daten gegenüber anderen Personen und Unternehmen (Auftragsverarbeitern oder Dritten) offenbaren, sie an diese übermitteln oder ihnen sonst Zugriff auf die Daten gewähren, erfolgt dies nur auf Grundlage einer gesetzlichen Erlaubnis (z.B. wenn eine Übermittlung der Daten an Dritte, wie an Zahlungsdienstleister, gem. Art. 6 Abs. 1 lit. b DSGVO zur Vertragserfüllung erforderlich ist), Sie eingewilligt haben, eine rechtliche Verpflichtung dies vorsieht oder auf Grundlage unserer berechtigten Interessen (z.B. beim Einsatz von Beauftragten, Webhostern, etc.).

 Sofern wir Dritte mit der Verarbeitung von Daten auf Grundlage eines sog. „Auftragsverarbeitungsvertrages“ beauftragen, geschieht dies auf Grundlage des Art. 28 DSGVO.

 

ÜBERMITTLUNGEN IN DRITTLÄNDER

Sofern wir Daten in einem Drittland (d.h. außerhalb der Europäischen Union (EU) oder des Europäischen Wirtschaftsraums (EWR)) verarbeiten oder dies im Rahmen der Inanspruchnahme von Diensten Dritter oder Offenlegung, bzw. Übermittlung von Daten an Dritte geschieht, erfolgt dies nur, wenn es zur Erfüllung unserer (vor)vertraglichen Pflichten, auf Grundlage Ihrer Einwilligung, aufgrund einer rechtlichen Verpflichtung oder auf Grundlage unserer berechtigten Interessen geschieht. Vorbehaltlich gesetzlicher oder vertraglicher Erlaubnisse, verarbeiten oder lassen wir die Daten in einem Drittland nur beim Vorliegen der besonderen Voraussetzungen der Art. 44 ff. DSGVO verarbeiten. D.h. die Verarbeitung erfolgt z.B. auf Grundlage besonderer Garantien, wie der offiziell anerkannten Feststellung eines der EU entsprechenden Datenschutzniveaus (z.B. für die USA durch das „Privacy Shield“) oder Beachtung offiziell anerkannter spezieller vertraglicher Verpflichtungen (so genannte „Standardvertragsklauseln“).

 

RECHTE DER BETROFFENEN PERSONEN

Sie haben das Recht, eine Bestätigung darüber zu verlangen, ob betreffende Daten verarbeitet werden und auf Auskunft über diese Daten sowie auf weitere Informationen und Kopie der Daten entsprechend Art. 15 DSGVO.

Sie haben entsprechend. Art. 16 DSGVO das Recht, die Vervollständigung der Sie betreffenden Daten oder die Berichtigung der Sie betreffenden unrichtigen Daten zu verlangen.

Sie haben nach Maßgabe des Art. 17 DSGVO das Recht zu verlangen, dass betreffende Daten unverzüglich gelöscht werden, bzw. alternativ nach Maßgabe des Art. 18 DSGVO eine Einschränkung der Verarbeitung der Daten zu verlangen.

Sie haben das Recht zu verlangen, dass die Sie betreffenden Daten, die Sie uns bereitgestellt haben nach Maßgabe des Art. 20 DSGVO zu erhalten und deren Übermittlung an andere Verantwortliche zu fordern.

Sie haben ferner gem. Art. 77 DSGVO das Recht, eine Beschwerde bei der zuständigen Aufsichtsbehörde einzureichen.

 

WIDERRUFSRECHT

Sie haben das Recht, erteilte Einwilligungen gem. Art. 7 Abs. 3 DSGVO mit Wirkung für die Zukunft zu widerrufen

 

WIDERSPRUCHSRECHT

Sie können der künftigen Verarbeitung der Sie betreffenden Daten nach Maßgabe des Art. 21 DSGVO jederzeit widersprechen. Der Widerspruch kann insbesondere gegen die Verarbeitung für Zwecke der Direktwerbung erfolgen.

 

COOKIES UND WIDERSPRUCHSRECHT BEI DIREKTWERBUNG

Als „Cookies“ werden kleine Dateien bezeichnet, die auf Rechnern der Nutzer gespeichert werden. Innerhalb der Cookies können unterschiedliche Angaben gespeichert werden. Ein Cookie dient primär dazu, die Angaben zu einem Nutzer (bzw. dem Gerät auf dem das Cookie gespeichert ist) während oder auch nach seinem Besuch innerhalb eines Onlineangebotes zu speichern. Als temporäre Cookies, bzw. „Session-Cookies“ oder „transiente Cookies“, werden Cookies bezeichnet, die gelöscht werden, nachdem ein Nutzer ein Onlineangebot verlässt und seinen Browser schließt. In einem solchen Cookie kann z.B. der Inhalt eines Warenkorbs in einem Onlineshop oder ein Login-Staus gespeichert werden. Als „permanent“ oder „persistent“ werden Cookies bezeichnet, die auch nach dem Schließen des Browsers gespeichert bleiben. So kann z.B. der Login-Status gespeichert werden, wenn die Nutzer diese nach mehreren Tagen aufsuchen. Ebenso können in einem solchen Cookie die Interessen der Nutzer gespeichert werden, die für Reichweitenmessung oder Marketingzwecke verwendet werden. Als „Third-Party-Cookie“ werden Cookies bezeichnet, die von anderen Anbietern als dem Verantwortlichen, der das Onlineangebot betreibt, angeboten werden (andernfalls, wenn es nur dessen Cookies sind spricht man von „First-Party Cookies“).

Wir können temporäre und permanente Cookies einsetzen und klären hierüber im Rahmen unserer Datenschutzerklärung auf.

Falls die Nutzer nicht möchten, dass Cookies auf ihrem Rechner gespeichert werden, werden sie gebeten die entsprechende Option in den Systemeinstellungen ihres Browsers zu deaktivieren. Gespeicherte Cookies können in den Systemeinstellungen des Browsers gelöscht werden. Der Ausschluss von Cookies kann zu Funktionseinschränkungen dieses Onlineangebotes führen.

Ein genereller Widerspruch gegen den Einsatz der zu Zwecken des Onlinemarketing eingesetzten Cookies kann bei einer Vielzahl der Dienste, vor allem im Fall des Trackings, über die US-amerikanische Seite http://www.aboutads.info/choices/ oder die EU-Seite http://www.youronlinechoices.com/ erklärt werden. Des Weiteren kann die Speicherung von Cookies mittels deren Abschaltung in den Einstellungen des Browsers erreicht werden. Bitte beachten Sie, dass dann gegebenenfalls nicht alle Funktionen dieses Onlineangebotes genutzt werden können.

 

LÖSCHUNG VON DATEN

Die von uns verarbeiteten Daten werden nach Maßgabe der Art. 17 und 18 DSGVO gelöscht oder in ihrer Verarbeitung eingeschränkt. Sofern nicht im Rahmen dieser Datenschutzerklärung ausdrücklich angegeben, werden die bei uns gespeicherten Daten gelöscht, sobald sie für ihre Zweckbestimmung nicht mehr erforderlich sind und der Löschung keine gesetzlichen Aufbewahrungspflichten entgegenstehen. Sofern die Daten nicht gelöscht werden, weil sie für andere und gesetzlich zulässige Zwecke erforderlich sind, wird deren Verarbeitung eingeschränkt. D.h. die Daten werden gesperrt und nicht für andere Zwecke verarbeitet. Das gilt z.B. für Daten, die aus handels- oder steuerrechtlichen Gründen aufbewahrt werden müssen.

Nach gesetzlichen Vorgaben in Deutschland erfolgt die Aufbewahrung insbesondere für 6 Jahre gemäß § 257 Abs. 1 HGB (Handelsbücher, Inventare, Eröffnungsbilanzen, Jahresabschlüsse, Handelsbriefe, Buchungsbelege, etc.) sowie für 10 Jahre gemäß § 147 Abs. 1 AO (Bücher, Aufzeichnungen, Lageberichte, Buchungsbelege, Handels- und Geschäftsbriefe, Für Besteuerung relevante Unterlagen, etc.).

Nach gesetzlichen Vorgaben in Österreich erfolgt die Aufbewahrung insbesondere für 7 J gemäß § 132 Abs. 1 BAO (Buchhaltungsunterlagen, Belege/Rechnungen, Konten, Belege, Geschäftspapiere, Aufstellung der Einnahmen und Ausgaben, etc.), für 22 Jahre im Zusammenhang mit Grundstücken und für 10 Jahre bei Unterlagen im Zusammenhang mit elektronisch erbrachten Leistungen, Telekommunikations-, Rundfunk- und Fernsehleistungen, die an Nichtunternehmer in EU-Mitgliedstaaten erbracht werden und für die der Mini-One-Stop-Shop (MOSS) in Anspruch genommen wird.

 

HOSTING

Die von uns in Anspruch genommenen Hosting-Leistungen dienen der Zurverfügungstellung der folgenden Leistungen: Infrastruktur- und Plattformdienstleistungen, Rechenkapazität, Speicherplatz und Datenbankdienste, Sicherheitsleistungen sowie technische Wartungsleistungen, die wir zum Zwecke des Betriebs dieses Onlineangebotes einsetzen.

Hierbei verarbeiten wir, bzw. unser Hostinganbieter Bestandsdaten, Kontaktdaten, Inhaltsdaten, Vertragsdaten, Nutzungsdaten, Meta- und Kommunikationsdaten von Kunden, Interessenten und Besuchern dieses Onlineangebotes auf Grundlage unserer berechtigten Interessen an einer effizienten und sicheren Zurverfügungstellung dieses Onlineangebotes gem. Art. 6 Abs. 1 lit. f DSGVO i.V.m. Art. 28 DSGVO (Abschluss Auftragsverarbeitungsvertrag).

 

ERHEBUNG VON ZUGRIFFSDATEN UND LOGFILES

Wir, bzw. unser Hostinganbieter, erhebt auf Grundlage unserer berechtigten Interessen im Sinne des Art. 6 Abs. 1 lit. f. DSGVO Daten über jeden Zugriff auf den Server, auf dem sich dieser Dienst befindet (sogenannte Serverlogfiles). Zu den Zugriffsdaten gehören Name der abgerufenen Webseite, Datei, Datum und Uhrzeit des Abrufs, übertragene Datenmenge, Meldung über erfolgreichen Abruf, Browsertyp nebst Version, das Betriebssystem des Nutzers, Referrer URL (die zuvor besuchte Seite), IP-Adresse und der anfragende Provider.

Logfile-Informationen werden aus Sicherheitsgründen (z.B. zur Aufklärung von Missbrauchs- oder Betrugshandlungen) für die Dauer von maximal 7 Tagen gespeichert und danach gelöscht. Daten, deren weitere Aufbewahrung zu Beweiszwecken erforderlich ist, sind bis zur endgültigen Klärung des jeweiligen Vorfalls von der Löschung ausgenommen.

 

KONTAKTAUFNAHME

Bei der Kontaktaufnahme mit uns (z.B. per Kontaktformular, E-Mail, Telefon oder via sozialer Medien) werden die Angaben des Nutzers zur Bearbeitung der Kontaktanfrage und deren Abwicklung gem. Art. 6 Abs. 1 lit. b) DSGVO verarbeitet. Die Angaben der Nutzer können in einem Customer-Relationship-Management System (“CRM System”) oder vergleichbarer Anfragenorganisation gespeichert werden.

Wir löschen die Anfragen, sofern diese nicht mehr erforderlich sind. Wir überprüfen die Erforderlichkeit alle zwei Jahre; Ferner gelten die gesetzlichen Archivierungspflichten.

 

KOMMENTARE UND BEITRÄGE

Wenn Nutzer Kommentare oder sonstige Beiträge hinterlassen, werden ihre IP-Adressen auf Grundlage unserer berechtigten Interessen im Sinne des Art. 6 Abs. 1 lit. f. DSGVO für 7 Tage gespeichert. Das erfolgt zu unserer Sicherheit, falls jemand in Kommentaren und Beiträgen widerrechtliche Inhalte hinterlässt (Beleidigungen, verbotene politische Propaganda, etc.). In diesem Fall können wir selbst für den Kommentar oder Beitrag belangt werden und sind daher an der Identität des Verfassers interessiert.

 

JETPACK (WORDPRESS STATS)

Wir nutzen auf Grundlage unserer berechtigten Interessen (d.h. Interesse an der Analyse, Optimierung und wirtschaftlichem Betrieb unseres Onlineangebotes im Sinne des Art. 6 Abs. 1 lit. f. DSGVO) das Plugin Jetpack (hier die Unterfunktion „Wordpress Stats“), welches ein Tool zur statistischen Auswertung der Besucherzugriffe einbindet und von Automattic, Inc. 132 Hawthorne Street San Francisco, CA 94107, USA. Jetpack verwendet sog. „Cookies“, Textdateien, die auf Ihrem Computer gespeichert werden und die eine Analyse der Benutzung der Website durch Sie ermöglichen.

 Automattic ist unter dem Privacy-Shield-Abkommen zertifiziert und bietet hierdurch eine Garantie, das europäische Datenschutzrecht einzuhalten (https://www.privacyshield.gov/participant?id=a2zt0000000CbqcAAC&status=Active).

 

Die durch das Cookie erzeugten Informationen über Ihre Benutzung dieses Onlineangebotes werden auf einem Server in den USA gespeichert. Dabei können aus den verarbeiteten Daten Nutzungsprofile der Nutzer erstellt werden, wobei diese nur zu Analyse- und nicht zu Werbezwecken eingesetzt werden. Weitere Informationen erhalten Sie in den Datenschutzerklärungen von Automattic: https://automattic.com/privacy/ und Hinweisen zu Jetpack-Cookies: https://jetpack.com/support/cookies/.

 

ONLINEPRÄSENZEN IN SOZIALEN MEDIEN

Wir unterhalten Onlinepräsenzen innerhalb sozialer Netzwerke und Plattformen, um mit den dort aktiven Kunden, Interessenten und Nutzern kommunizieren und sie dort über unsere Leistungen informieren zu können. Beim Aufruf der jeweiligen Netzwerke und Plattformen gelten die Geschäftsbedingungen und die Datenverarbeitungsrichtlinien deren jeweiligen Betreiber.

Soweit nicht anders im Rahmen unserer Datenschutzerklärung angegeben, verarbeiten wir die Daten der Nutzer sofern diese mit uns innerhalb der sozialen Netzwerke und Plattformen kommunizieren, z.B. Beiträge auf unseren Onlinepräsenzen verfassen oder uns Nachrichten zusenden.

 

EINBINDUNG VON DIENSTEN UND INHALTEN DRITTER

Wir setzen innerhalb unseres Onlineangebotes auf Grundlage unserer berechtigten Interessen (d.h. Interesse an der Analyse, Optimierung und wirtschaftlichem Betrieb unseres Onlineangebotes im Sinne des Art. 6 Abs. 1 lit. f. DSGVO) Inhalts- oder Serviceangebote von Drittanbietern ein, um deren Inhalte und Services, wie z.B. Videos oder Schriftarten einzubinden (nachfolgend einheitlich bezeichnet als “Inhalte”).

Dies setzt immer voraus, dass die Drittanbieter dieser Inhalte, die IP-Adresse der Nutzer wahrnehmen, da sie ohne die IP-Adresse die Inhalte nicht an deren Browser senden könnten. Die IP-Adresse ist damit für die Darstellung dieser Inhalte erforderlich. Wir bemühen uns nur solche Inhalte zu verwenden, deren jeweilige Anbieter die IP-Adresse lediglich zur Auslieferung der Inhalte verwenden. Drittanbieter können ferner so genannte Pixel-Tags (unsichtbare Grafiken, auch als “Web Beacons” bezeichnet) für statistische oder Marketingzwecke verwenden. Durch die “Pixel-Tags” können Informationen, wie der Besucherverkehr auf den Seiten dieser Website ausgewertet werden. Die pseudonymen Informationen können ferner in Cookies auf dem Gerät der Nutzer gespeichert werden und unter anderem technische Informationen zum Browser und Betriebssystem, verweisende Webseiten, Besuchszeit sowie weitere Angaben zur Nutzung unseres Onlineangebotes enthalten, als auch mit solchen Informationen aus anderen Quellen verbunden werden.

 

GOOGLE FONTS

Wir binden die Schriftarten (“Google Fonts”) des Anbieters Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, ein. Datenschutzerklärung: https://www.google.com/policies/privacy/, Opt-Out: https://adssettings.google.com/authenticated.

 

INSTAGRAM

Innerhalb unseres Onlineangebotes können Funktionen und Inhalte des Dienstes Instagram eingebunden, angeboten durch die Instagram Inc., 1601 Willow Road, Menlo Park, CA, 94025, USA. Hierzu können z.B. Inhalte wie Bilder, Videos oder Texte und Schaltflächen gehören, mit denen Nutzer ihr Gefallen betreffend die Inhalte kundtun, den Verfassern der Inhalte oder unsere Beiträge abonnieren können. Sofern die Nutzer Mitglieder der Plattform Instagram sind, kann Instagram den Aufruf der o.g. Inhalte und Funktionen den dortigen Profilen der Nutzer zuordnen. Datenschutzerklärung von Instagram: http://instagram.com/about/legal/privacy/.

 

Erstellt mit Datenschutz-Generator.de von RA Dr. Thomas Schwenke

 

WELCOME TO OUR PRIVACY POLICY

— Your privacy is critically important to us.

Liza Leiss Coaching is located at:

Liza Leiss Coaching
Pöntertalstrasse 2 | 56626 Andernach | Germany

 

This privacy statement clarifies the nature, scope and purpose of the processing of personal data (hereinafter “data”) within our online offer and the associated websites, functions and contents as well as external online presences, such as our social media profile. (hereinafter collectively referred to as “online offer”). With regard to the terminology used, such as “processing” or “responsible person”, we refer to the definitions in article 4 of the General Data Protection Regulation (GDPR).

 

RESPONSIBLE

Liza Marie Leiss | Pöntertalstrasse 2 | 56626 Andernach | Germany

E-Mail: leiss.liza@gmail.com

Impressum: https://lizaleiss.com/impressum/

 

TYPES OF DATA PROCESSED:

– Inventory data (e.g., names, addresses). – Contact information (e.g., e-mail, telephone numbers). – Content data (e.g., text entries, photographs, videos). – Usage data (e.g., visited websites, interest in content, access times). – Meta-/Kommunikationsdaten (e.g., device information, IP addresses).

 

CATEGORIES OF PERSONS AFFECTED

Visitors and users of the online offer (hereinafter we refer to the persons concerned as “users”).

 

PURPOSE OF PROCESSING

– Provision of the online offer, its functions and contents. – Answering contact inquiries and communicating with users. – Security measures. – Range Measurement/Marketing

 

TERMINOLOGY USED

“Personal data” shall be any information relating to an identified or identifiable natural person (hereinafter referred to as “the person concerned”); A natural person is considered to be identifiable, either directly or indirectly, in particular by assigning to an identifier such as a name, to an identification number, to location data, to an online identifier (e.g. cookie) or to one or more special characteristics Can be identified that are the expression of the physical, physiological, genetic, psychological, economic, cultural or social identity of this natural person.

 “Processing” means any operation performed with or without the help of automated procedures, or any such series of operations in connection with personal data. The term extends far and covers virtually every use of data.

The “person responsible” shall mean the natural or legal entity, authority, institution or other body which, alone or jointly with others, decides on the purposes and means of processing personal data.

 

RELEVANT LEGAL BASES

In accordance with article 13 of the GDPR, we will inform you of the legal basis of our data processing. If the legal basis is not mentioned in the data Protection declaration, the following applies: the legal basis for obtaining consent is Article 6 (1) lit. A and article 7 GDPR, the legal basis for processing in order to fulfil our services and to carry out contractual measures and to answer inquiries is Article 6 (1) lit. b GDPR, the legal basis for processing in order to comply with our legal obligations is article 6 (1) lit. (c) GDPR, and the legal basis for processing to protect our legitimate interests is Article 6 (1) lit. F GDPR. In the event that vital interests of the person concerned or of another natural person require the processing of personal data, article 6 (1) shall be used. (d) GDPR as a legal basis.

 

COOPERATION WITH PROCESSORS AND THIRD PARTIES

If we disclose data to other persons and companies (processors or third parties) as part of our processing, transmit them to them or otherwise grant them access to the data, this is only done on the basis of a legal permission ( For example, if a transfer of the data to third parties, as to payment service providers, according to article 6 para. 1 lit. b GDPR is required for the performance of the contract), you have agreed to a legal obligation to do so or on the basis of our legitimate interests (e.g. in the case of the use of agents, web hosts, etc.).

 

If we entrust third parties with the processing of data on the basis of a so-called “contract processing contract”, this is done on the basis of article 28 GDPR.

 

TRANSFERS TO THIRD COUNTRIES

If we process data in a third country (i.e. outside the European Union (EU) or the European Economic Area (EEA)) or if this happens in the context of the use of third party services or disclosure, or transmission of data to third parties, This only occurs when it is done to fulfil our (pre) contractual obligations, on the basis of your consent, due to a legal obligation or on the basis of our legitimate interests. Subject to legal or contractual permits, we process or leave the data in a third country only in the presence of the special conditions of art. 44 ff. GDPR process. i.e. processing takes place, for example, on the basis of special guarantees, such as the officially recognised determination of a data protection level corresponding to the EU (e.g. for the USA by the “Privacy shield”) or observance of officially recognised special contractual Obligations (so-called “standard contractual clauses”).

 

RIGHTS OF THE PERSONS CONCERNED

You have the right to request confirmation as to whether relevant data will be processed and for information on this data as well as for further details and copy of the data in accordance with article 15 GDPR.

They have accordingly. Article 16 GDPR the right to request the completion of the data relating to it or the correction of the incorrect data concerning it.

They shall, in accordance with article 17 GDPR, require the right to be deleted immediately or, alternatively, to require a restriction on the processing of the data in accordance with article 18 GDPR.

You have the right to demand that the data relating to you which you have provided to us be obtained in accordance with article 20 of the GDPR and to request their transmission to other persons responsible.

They shall also have the right, pursuant to article 77 GDPR, to submit a complaint to the competent supervisory authority.

 

WITHDRAWAL

You have the right to revoke your consent pursuant to article 7 (3) of the GDPR with effect for the future

 

RIGHT TO OBJECT

You may at any time object to the future processing of the data relating to you in accordance with article 21 GDPR. The opposition may in particular be against processing for direct marketing purposes.

 

COOKIES AND RIGHT OF OBJECTION IN DIRECT ADVERTISING

“Cookies” are small files that are stored on users ‘ computers. Within the cookies, different data can be stored. A cookie serves primarily to store the information about a user (or the device on which the cookie is stored) during or after his visit within an online offer. As temporary cookies, or “Session cookies” or “transient cookies”, cookies are called, which are deleted after a user leaves an online offer and closes his browser. In such a cookie, for example, the contents of a shopping cart can be stored in an online shop or a login jam. “Permanent” or “persistent” are cookies that remain stored even after the browser is closed. For example, the login status can be saved if the users visit them after several days. Similarly, in such a cookie, the interests of users who are used for range measurement or marketing purposes can be stored. “Third-party-cookie” means cookies that are offered by other providers than the person in charge of the online offer (otherwise, if it is only their cookies, it is called “first-party Cookies”).

We may use temporary and permanent cookies and clarify this in the context of our privacy policy.

If users do not want cookies to be stored on their computer, they will be asked to disable the corresponding option in their browser’s system preferences. Stored cookies can be deleted in the system settings of the browser. The exclusion of cookies can lead to functional limitations of this online offer.

A general contradiction against the use of cookies used for the purposes of online marketing can be used for a variety of services, especially in the case of tracking, via the US side http://www.aboutads.info/choices/ or the EU site http://www.youronlinechoices.com/be explained. Furthermore, the storage of cookies can be achieved by means of their shutdown in the settings of the browser. Please note that you may not be able to use all the functions of this online offer.

 

DELETION OF DATA

The data processed by us will be deleted or restricted in its processing in accordance with articles 17 and 18 GDPR. Unless expressly stated in the scope of this data protection declaration, the data stored with us will be deleted as soon as they are no longer necessary for their intended purpose and the deletion does not conflict with statutory retention obligations. If the data is not deleted because it is necessary for other and legally permissible purposes, its processing will be restricted. i.e. the data is locked and not processed for other purposes. This applies, for example, to data that must be kept for commercial or tax reasons.

According to legal requirements in Germany, the storage is carried out in particular for 6 years pursuant to § 257 para. 1 hgb (Trading books, inventories, opening balance sheets, annual accounts, trade letters, accounting documents, etc.) and for 10 years pursuant to § 147 para 1 ao (books, Records, management reports, booking documents, trade and business letters, documents relevant for taxation, etc.).

According to legal requirements in Austria, the storage is in particular for 7 J according to § 132 para 1 bao (accounting documents, documents/invoices, accounts, documents, business documents, statement of revenue and expenses, etc.), for 22 years in connection with Land and for 10 years for documents relating to electronically supplied services, telecommunications, radio and television services provided to non-entrepreneurs in EU member States and for which the mini-one Stop Shop (MOSS) is taken.

 

HOSTING

The hosting services we use are designed to provide the following services: infrastructure and Platform services, computing capacity, storage space and database services, security services, and technical Maintenance services that we use for the purpose of operating this online offer.

We process, or our hosting provider, stock data, contact data, content data, contract data, usage data, meta-and communication data of customers, interested parties and visitors of this online offer based on our legitimate interests An efficient and secure provision of this online offer according to article 6 para 1 lit. (f) GDPR in conjunction with article 28 GDPR (Final Order Processing contract).

 

COLLECTION OF ACCESS DATA AND LOGFILES

We, resp. Our hosting provider, collects on the basis of our legitimate interests within the meaning of article 6 (1) lit. F. GDPR data about each access to the server on which this service resides (so-called server log files). The access data includes the name of the retrieved Web page, file, date and time of retrieval, transferred data quantity, message about successful retrieval, browser type and version, the operating system of the user, referrer URL (the previously visited page), IP address and the Requesting providers.

LogFile information is stored for a maximum of 7 days for security reasons (e.g. for the investigation of abuse or fraud actions) and then deleted. Data for which further storage is required for evidence is excluded from the deletion until the final clarification of the respective incident.

 

CONTACT

When contacting us (e.g. via contact form, e-mail, telephone or via social media), the information of the user for the processing of the contact request and its processing is according to article 6 para 1 lit. b) GDPR processed. Users ‘ information can be stored in a Customer relationship management system (“CRM system”) or similar request organization.

We will delete the requests if they are no longer required. We review the requirement every two years; The statutory archiving obligations also apply.

 

COMMENTS AND CONTRIBUTIONS

If users leave comments or other contributions, their IP addresses will be based on our legitimate interests within the meaning of article 6 (1). F. GDPR saved for 7 days. This is for our safety if someone leaves unlawful content in comments and contributions (insults, forbidden political propaganda, etc.). In this case we can be prosecuted for the comment or contribution and are therefore interested in the identity of the author.

 

RETRIEVAL OF PROFILE IMAGES AT GRAVATAR

We use the Gravatar service, the Autolanguic, Inc. 132 Hawthorne Street San Francisco, CA 94107, USA, within our online offer and especially in the blog.

Gravatar is a service where users can log in and store profile images and their e-mail addresses. If users with the respective e-mail address on other online presences (especially in blogs) leave contributions or comments, thus their profile pictures can be displayed next to the posts or comments. For this purpose, the e-mail address provided by the users is sent to Gravatar in order to check whether a profile is stored to it. This is the only purpose of transmitting the email address and it is not used for other purposes, but deleted thereafter.

The use of Gravatar is based on our legitimate interests within the meaning of article 6 (1) lit. f) GDPR, since with the help of Gravatar we offer the contribution and comment writers the possibility to personalize their contributions with a profile picture.

AUTOLANGUIC is certified under the Privacy Shield Agreement and provides a guarantee to comply with European Data protection Law (https://www.privacyshield.gov/participant?id=a2zt0000000CbqcAAC&status=Active).

By displaying the images Gravatar brings the IP address of the users in experience, as this is necessary for a communication between a browser and an online service. Further information on the collection and use of the data by Gravatar can be found in the privacy policy of Autolanguic: https://automattic.com/privacy/.

If users do not want a user image linked to their Gravatar email address to appear in the comments, they should use an email address that is not stored at Gravatar. We further point out that it is also possible to use an anonymous or no e-mail address if the users do not wish that their own e-mail address is sent to Gravatar. Users can completely prevent the transfer of data by not using our comment system.

 

JETPACK (WORDPRESS STATS)

On the basis of our legitimate interests (i.e. interest in the analysis, optimization and economic operation of our online offer in the sense of art. 6 para. 1 lit. f. GDPR), we use the Jetpack plugin (here the subfunction “WordPress stats”), which is a tool for Statistical analysis of visitor accesses and by Autolanguic, Inc. 132 Hawthorne Street San Francisco, CA 94107, USA. Jetpack uses so-called “cookies”, text files which are stored on your computer and which allow an analysis of the use of the website by you.

AUTOLANGUIC is certified under the Privacy Shield Agreement and provides a guarantee to comply with European Data protection Law (https://www.privacyshield.gov/participant?id=a2zt0000000CbqcAAC&status=Active).

The information generated by the cookie about your use of this online offer is stored on a server in the USA. This allows users to create user profiles from the processed data, which are only used for analysis and not for advertising purposes. For more information, please see the privacy Statement of Autolanguic: https://automattic.com/privacy/and notes about jetpack cookies: https://jetpack.com/support/cookies/.

 

ONLINE PRESENCE IN SOCIAL MEDIA

We maintain online presences within social networks and platforms in order to communicate with the active customers, interested parties and users and to inform them about our services there. When calling up the respective networks and platforms, the terms and conditions and the data processing guidelines apply to their respective operators.

Unless otherwise stated in the context of our data protection declaration, we process the data of the users if they communicate with us within the social networks and platforms, e.g. write articles on our online presences or send us messages.

 

INTEGRATION OF THIRD PARTY SERVICES AND CONTENT

We place within our online offer on the basis of our legitimate interests (i.e. interest in the analysis, optimization and economic operation of our online offer within the meaning of art. 6 para. 1 lit. f. GDPR) content or service offers from Third-party providers to incorporate their content and services, such as videos or fonts (hereinafter referred to as “content”).

This always assumes that the third-party providers of this content perceive the IP address of the users, since they could not send the contents to their browsers without the IP address. The IP address is therefore required to display this content. We only endeavour to use such content, whose provider uses the IP address only to deliver the content. Third parties can also use so-called pixel tags (invisible graphics, also known as “Web beacons”) for statistical or marketing purposes. The “pixel tags” can be used to evaluate the visitor traffic on the pages of this website. The pseudonymous information may also be stored in cookies on the user’s device, including technical information on the browser and operating system, referring Web pages, visiting time and other information on the use of our online offer. Be linked to such information from other sources.

 

GOOGLE FONTS

We include the Google Fonts provider of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. Privacy Policy: https://www.google.com/policies/privacy/, opt-out: https://adssettings.google.com/authenticated.

 

INSTAGRAM

Within our online offer, features and content of the Instagram service can be integrated, offered by Instagram Inc., 1601 Willow Road, Menlo Park, CA, 94025, USA. This may include, for example, content such as images, videos or texts and buttons, with which users can announce their liking regarding the contents, subscribe to the authors of the content or our contributions. If the users are members of the Instagram platform, Instagram can assign the aforementioned contents and functions to the profiles of the users. Instagram privacy policy: http://instagram.com/about/legal/privacy/.

 

Created with Datenschutz-Generator.de by RA Dr. Thomas Schwenke

 

//

 

WEBSITE VISITORS

Like most website operators, Liza Leiss Coaching collects non-personally-identifying information of the sort that web browsers and servers typically make available, such as the browser type, language preference, referring site, and the date and time of each visitor request. Liza Leiss Coaching’s purpose in collecting non-personally identifying information is to better understand how Liza Leiss Coaching’s visitors use its website. From time to time, Liza Leiss Coaching may release non-personally-identifying information in the aggregate, e.g., by publishing a report on trends in the usage of its website.

Liza Leiss Coaching also collects potentially personally-identifying information like Internet Protocol (IP) addresses for logged in users and for users leaving comments on https://lizaleiss.com blog posts. Liza Leiss Coaching only discloses logged in user and commenter IP addresses under the same circumstances that it uses and discloses personally-identifying information as described below.

 

GATHERING OF PERSONALLY-IDENTIFYING INFORMATION

Certain visitors to Liza Leiss Coaching’s websites choose to interact with Liza Leiss Coaching in ways that require Liza Leiss Coaching to gather personally-identifying information. The amount and type of information that Liza Leiss Coaching gathers depends on the nature of the interaction. For example, we ask visitors who sign up for a blog at https://lizaleiss.com to provide a username and email address.

 

SECURITY

The security of your Personal Information is important to us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Information, we cannot guarantee its absolute security.

 

ADVERTISEMENTS

Ads appearing on our website may be delivered to users by advertising partners, who may set cookies. These cookies allow the ad server to recognize your computer each time they send you an online advertisement to compile information about you or others who use your computer. This information allows ad networks to, among other things, deliver targeted advertisements that they believe will be of most interest to you. This Privacy Policy covers the use of cookies by Liza Leiss Coaching and does not cover the use of cookies by any advertisers.

 

LINKS TO EXTERNAL SITES

Our Service may contain links to external sites that are not operated by us. If you click on a third party link, you will be directed to that third party’s site. We strongly advise you to review the Privacy Policy and terms and conditions of every site you visit.

We have no control over, and assume no responsibility for the content, privacy policies or practices of any third party sites, products or services.

 

– Https://lizaleiss.com uses Google AdWords for remarketing

 

Https://lizaleiss.com uses the remarketing services to advertise on third party websites (including Google) to previous visitors to our site. It could mean that we advertise to previous visitors who haven’t completed a task on our site, for example using the contact form to make an enquiry. This could be in the form of an advertisement on the Google search results page, or a site in the Google Display Network. Third-party vendors, including Google, use cookies to serve ads based on someone’s past visits. Of course, any data collected will be used in accordance with our own privacy policy and Google’s privacy policy.

You can set preferences for how Google advertises to you using the Google Ad Preferences page, and if you want to you can opt out of interest-based advertising entirely by cookie settings or permanently using a browser plugin.

 

AGGREGATED STATISTICS

Liza Leiss Coaching may collect statistics about the behavior of visitors to its website. Liza Leiss Coaching may display this information publicly or provide it to others. However, Liza Leiss Coaching does not disclose your personally-identifying information.

 

AFFILIATE DISCLOSURE

This site uses affiliate links and does earn a commission from certain links. This does not affect your purchases or the price you may pay.

 

COOKIES

To enrich and perfect your online experience, Liza Leiss Coaching uses “Cookies”, similar technologies and services provided by others to display personalized content, appropriate advertising and store your preferences on your computer.

A cookie is a string of information that a website stores on a visitor’s computer, and that the visitor’s browser provides to the website each time the visitor returns. Liza Leiss Coaching uses cookies to help Liza Leiss Coaching identify and track visitors, their usage of https://lizaleiss.com, and their website access preferences. Liza Leiss Coaching visitors who do not wish to have cookies placed on their computers should set their browsers to refuse cookies before using Liza Leiss Coaching’s websites, with the drawback that certain features of Liza Leiss Coaching’s websites may not function properly without the aid of cookies.

By continuing to navigate our website without changing your cookie settings, you hereby acknowledge and agree to Liza Leiss Coaching‘s use of cookies.

We collect information about visitors who comment on Sites that use our Akismet anti-spam service. The information we collect depends on how the User sets up Akismet for the Site, but typically includes the commenter’s IP address, user agent, referrer, and Site URL (along with other information directly provided by the commenter such as their name, username, email address, and the comment itself).

 

PRIVACY POLICY CHANGES

Although most changes are likely to be minor, Liza Leiss Coaching may change its Privacy Policy from time to time, and in Liza Leiss Coaching’s sole discretion. Liza Leiss Coaching encourages visitors to frequently check this page for any changes to its Privacy Policy. Your continued use of this site after any change in this Privacy Policy will constitute your acceptance of such change.

 

CONTACT INFORMATION

If you have any questions about this Privacy Policy, please contact us via email.

Activity Log This feature only records activities of a site’s registered users, and the retention duration of activity data will depend on the site’s plan and activity type.

Data Used: To deliver this functionality and record activities around site management, the following information is captured: user email address, user role, user login, user display name, WordPress.com and local user IDs, the activity to be recorded, the WordPress.com-connected site ID of the site on which the activity takes place, the site’s Jetpack version, and the timestamp of the activity. Some activities may also include the actor’s IP address (login attempts, for example) and user agent.

Activity Tracked: Login attempts/actions, post and page update and publish actions, comment/pingback submission and management actions, plugin and theme management actions, widget updates, user management actions, and the modification of other various site settings and options. Retention duration of activity data depends on the site’s plan and activity type. See the complete list of currently-recorded activities (along with retention information).

Data Synced (?): Successful and failed login attempts, which will include the actor’s IP address and user agent.

Ads This feature is only available to sites on the Premium and Professional plans.

Data Used: The following information (made available from the visitor’s browser) is collected and sent to Automattic’s Demand Partners: IP address, geographical data (derived from the IP address), user agent, operating system, device type, unique user ID (randomly generated identifier), current URL, and IAB (Interactive Advertising Bureau) interest category. Log data (IP address, geographical data, user agent, operating system, device type) is stored for 30 days. The unique user ID is stored in cookies and is retained for 1 year.

Activity Tracked: Ad impressions, video-related events (i.e. pause, mute, 100% plays, etc.) or errors, and ad click events. Various cookies are used for the following purposes: delivering targeted advertisements to specific visitors, storing user identifiers, and collecting anonymous ad platform stats.

Carousel Image views are only recorded if the site owner, has explicitly enabled image view stats tracking for this feature via the jetpack_enable_carousel_stats filter.

Data Used: If image view tracking is enabled, the following information is used: IP address, WordPress.com user ID (if logged in), WordPress.com username (if logged in), user agent, visiting URL, referring URL, timestamp of event, browser language, country code.

 

Activity Tracked: Image views.

Comment Likes This feature is only accessible to users logged in to WordPress.com.

Data Used: In order to process a comment like, the following information is used: WordPress.com user ID/username (you must be logged in to use this feature), the local site-specific user ID (if the user is signed in to the site on which the like occurred), and a true/false data point that tells us if the user liked a specific comment. If you perform a like action from one of our mobile apps, some additional information is used to track the activity: IP address, user agent, timestamp of event, blog ID, browser language, country code, and device info.

 

Activity Tracked: Comment likes.

Contact Form Data Used: If Akismet is enabled on the site, the contact form submission data — IP address, user agent, name, email address, website, and message — is submitted to the Akismet service (also owned by Automattic) for the sole purpose of spam checking. The actual submission data is stored in the database of the site on which it was submitted and is emailed directly to the owner of the form (i.e. the site author who published the page on which the contact form resides). This email will include the submitter’s IP address, timestamp, name, email address, website, and message.

Data Synced (?): Post and post meta data associated with a user’s contact form submission. If Akismet is enabled on the site, the IP address and user agent originally submitted with the comment are synced, as well, as they are stored in post meta.

Google Analytics This feature is only available to sites on the Premium and Professional plans.

Data Used: Please refer to the appropriate Google Analytics documentation for the specific type of data it collects. For sites running WooCommerce (also owned by Automattic) and this feature simultaneously and having all purchase tracking explicitly enabled, purchase events will send Google Analytics the following information: order number, product id and name, product category, total cost, and quantity of items purchased. Google Analytics does offer IP anonymization, which can be enabled by the site owner.

Activity Tracked: This feature sends page view events (and potentially video play events) over to Google Analytics for consumption. For sites running WooCommerce-powered stores, some additional events are also sent to Google Analytics: shopping cart additions and removals, product listing views and clicks, product detail views, and purchases. Tracking for each specific WooCommerce event needs to be enabled by the site owner.

Gravatar Hovercards Data Used: This feature will send a hash of the user’s email address (if logged in to the site or WordPress.com — or if they submitted a comment on the site using their email address that is attached to an active Gravatar profile) to the Gravatar service (also owned by Automattic) in order to retrieve their profile image.

Infinite Scroll Data Used: In order to record page views via WordPress.com Stats (which must be enabled for page view tracking here to work) with additional loads, the following information is used: IP address, WordPress.com user ID (if logged in), WordPress.com username (if logged in), user agent, visiting URL, referring URL, timestamp of event, browser language, country code.

Activity Tracked: Page views will be tracked with each additional load (i.e. when you scroll down to the bottom of the page and a new set of posts loads automatically). If the site owner has enabled Google Analytics to work with this feature, a page view event will also be sent to the appropriate Google Analytics account with each additional load.

Jetpack Comments Data Used: Commenter’s name, email address, and site URL (if provided via the comment form), timestamp, and IP address. Additionally, a jetpack.wordpress.com IFrame receives the following data: WordPress.com blog ID attached to the site, ID of the post on which the comment is being submitted, commenter’s local user ID (if available), commenter’s local username (if available), commenter’s site URL (if available), MD5 hash of the commenter’s email address (if available), and the comment content. If Akismet (also owned by Automattic) is enabled on the site, the following information is sent to the service for the sole purpose of spam checking: commenter’s name, email address, site URL, IP address, and user agent.

Activity Tracked: The comment author’s name, email address, and site URL (if provided during the comment submission) are stored in cookies. Learn more about these cookies.

Data Synced (?): All data and metadata (see above) associated with comments. This includes the status of the comment and, if Akismet is enabled on the site, whether or not it was classified as spam by Akismet.

Likes This feature is only accessible to users logged in to WordPress.com.

Data Used: In order to process a post like action, the following information is used: IP address, WordPress.com user ID, WordPress.com username, WordPress.com-connected site ID (on which the post was liked), post ID (of the post that was liked), user agent, timestamp of event, browser language, country code.

Activity Tracked: Post likes.

Mobile Theme Data Used: A visitor’s preference on viewing the mobile version of a site.

Activity Tracked: A cookie (akm_mobile) is stored for 3.5 days to remember whether or not a visitor of the site wishes to view its mobile version. Learn more about this cookie.

Notifications This feature is only accessible to registered users of the site who are logged in to WordPress.com.

Data Used: IP address, WordPress.com user ID, WordPress.com username, WordPress.com-connected site ID and URL, Jetpack version, user agent, visiting URL, referring URL, timestamp of event, browser language, country code. Some visitor-related information or activity may be sent to the site owner via this feature. This may include: email address, WordPress.com username, site URL, email address, comment content, follow actions, etc.

Activity Tracked: Sending notifications (i.e. when we send a notification to a particular user), opening notifications (i.e. when a user opens a notification that they receive), performing an action from within the notification panel (e.g. liking a comment or marking a comment as spam), and clicking on any link from within the notification panel/interface.

Protect Data Used: In order to check login activity and potentially block fraudulent attempts, the following information is used: attempting user’s IP address, attempting user’s email address/username (i.e. according to the value they were attempting to use during the login process), and all IP-related HTTP headers attached to the attempting user.

Activity Tracked: Failed login attempts (these include IP address and user agent). We also set a cookie (jpp_math_pass) for 1 day to remember if/when a user has successfully completed a math captcha to prove that they’re a real human. Learn more about this cookie.

Data Synced (?): Failed login attempts, which contain the user’s IP address, attempted username or email address, and user agent information.

Search This feature is only available to sites on the Professional plan.

Data Used: Any of the visitor-chosen search filters and query data in order to process a search request on the WordPress.com servers.

Sharing Data Used: When sharing content via email (this option is only available if Akismet is active on the site), the following information is used: sharing party’s name and email address (if the user is logged in, this information will be pulled directly from their account), IP address (for spam checking), user agent (for spam checking), and email body/content. This content will be sent to Akismet (also owned by Automattic) so that a spam check can be performed. Additionally, if reCAPTCHA (by Google) is enabled by the site owner, the sharing party’s IP address will be shared with that service. You can find Google’s privacy policy here.

Simple Payments This feature is only available to sites on the Premium and Professional plans, and the actual payment processing is handled by PayPal.

Data Used: Transaction amount, transaction currency code, product title, product price, product ID, order quantity, PayPal payer ID, and PayPal transaction ID.

Activity Tracked: The PayPal payer ID, transaction ID, and HTTP referrer are sent with a payment completion tracking event that is attached to the site owner.

Data Synced (?): PayPal transaction ID, PayPal transaction status, PayPal product ID, quantity, price, customer email address, currency, and payment button CTA text.

Because payments are processed by PayPal, we recommend reviewing its privacy policy.

Subscriptions Data Used: To initiate and process subscriptions, the following information is used: subscriber’s email address and the ID of the post or comment (depending on the specific subscription being processed). In the event of a new subscription being initiated, we also collect some basic server data, including all of the subscribing user’s HTTP request headers, the IP address from which the subscribing user is viewing the page, and the URI which was given in order to access the page (REQUEST_URI and DOCUMENT_URI). This server data used for the exclusive purpose of monitoring and preventing abuse and spam.

Activity Tracked: Functionality cookies are set for a duration of 347 days to remember a visitor’s blog and post subscription choices if, in fact, they have an active subscription.

Data Used: For video play tracking via WordPress.com Stats, the following information is used: viewer’s IP address, WordPress.com user ID (if logged in), WordPress.com username (if logged in), user agent, visiting URL, referring URL, timestamp of event, browser language, country code. If Google Analytics is enabled, video play events will be sent there, as well.

Activity Tracked: Video plays.

WooCommerce Services Data Used: For payments with PayPal or Stripe: purchase total, currency, billing information. For taxes: the value of goods in the cart, value of shipping, destination address. For checkout rates: destination address, purchased product IDs, dimensions, weight, and quantities. For shipping labels: customer’s name, address as well as the dimensions, weight, and quantities of purchased products.

Data Synced (?): For payments, we send the purchase total, currency and customer’s billing information to the respective payment processor. Please see the respective third party’s privacy policy (Stripe’s Privacy Policy and PayPal’s Privacy Policy) for more details. For automated taxes we send the value of goods in the cart, the value of shipping, and the destination address to TaxJar. Please see TaxJar’s Privacy Policy for details about how they handle this information. For checkout rates we send the destination ZIP/postal code and purchased product dimensions, weight and quantities to USPS or Canada Post, depending on the service used. For shipping labels we send the customer’s name, address as well as the dimensions, weight, and quantities of purchased products to EasyPost. We also store the purchased shipping labels on our server to make it easy to reprint them and handle support requests.

WordPress.com Secure Sign On This feature is only accessible to registered users of the site with WordPress.com accounts.

Data Used: User ID (local site and WordPress.com), role (e.g. administrator), email address, username and display name. Additionally, for activity tracking (see below): IP address, WordPress.com user ID, WordPress.com username, WordPress.com-connected site ID and URL, Jetpack version, user agent, visiting URL, referring URL, timestamp of event, browser language, country code.

Activity Tracked: The following usage events are recorded: starting the login process, completing the login process, failing the login process, successfully being redirected after login, and failing to be redirected after login. Several functionality cookies are also set, and these are detailed explicitly in our Cookie documentation.

Data Synced (?): The user ID and role of any user who successfully signed in via this feature.

WordPress.com Stats Data Used: IP address, WordPress.com user ID (if logged in), WordPress.com username (if logged in), user agent, visiting URL, referring URL, timestamp of event, browser language, country code. Important: The site owner does not have access to any of this information via this feature. For example, a site owner can see that a specific post has 285 views, but he/she cannot see which specific users/accounts viewed that post. Stats logs — containing visitor IP addresses and WordPress.com usernames (if available) — are retained by Automattic for 28 days and are used for the sole purpose of powering this feature.

Activity Tracked: Post and page views, outbound link clicks, referring URLs and search engine terms, and country. When this module is enabled, Jetpack also tracks performance on each page load that includes the Javascript file used for tracking stats. This is exclusively for aggregate performance tracking across Jetpack sites in order to make sure that our plugin and code is not causing performance issues. This includes the tracking of page load times and resource loading duration (image files, Javascript files, CSS files, etc.). The site owner has the ability to force this feature to honor DNT settings of visitors. By default, DNT is currently not honored.