Privacy Policy
Effective Date: June 7, 2025 (supersedes version from May 1, 2024)
1. Introduction
With this privacy policy, we would like to inform you about the type, scope, and purpose of the processing of your personal data (hereinafter referred to as "data"). This privacy policy applies to all processing of personal data conducted by us, both as part of the provision of our services and, in particular, on our websites, mobile applications, and external online presences (e.g., our social media profiles) (collectively referred to as "Online Services").
2. Data Controller
Robert Wegst Schmuckwaren GmbH & Co. KG
Friedrichstraße 33
25980 Sylt OT Westerland
Germany
Email: post@wegst-sylt.de
General Partner: Wegst Verwaltungsgesellschaft mbH
Registered at Amtsgericht Flensburg: HRB 558 NI
Managing Director: Carsten Wegst
Legal notice: https://www.wegst-sylt.de/l/contact
3. Overview of Data Processing
Types of Data Processed
Inventory data (e.g., names, addresses)
Content data (e.g., text entries, photographs, videos)
Contact data (e.g., email, phone numbers)
Meta/communication data (e.g., device information, IP addresses)
Usage data (e.g., visited websites, interest in content, access times)
Location data
Contract data (e.g., subject matter of contracts, contract terms, customer categories)
Payment data (e.g., bank details, invoices, payment history)
Categories of Data Subjects
Business and contractual partners
Prospective customers
Communication partners
Customers
Users (e.g., website visitors, online service users)
Contest and sweepstakes participants
Purposes of Processing
Provision of Online Services and user-friendliness
Analytics and performance evaluation
Office and organizational procedures
Content Delivery Networks (CDN)
Cross-device tracking
Direct marketing (via email, post, etc.)
Conducting sweepstakes and contests
Interest-based and behavioral marketing
Contact requests and communication
Conversion tracking (effectiveness measurement of marketing)
Profiling (creating user profiles)
Remarketing
Audience measurement
Security measures
Tracking
Contractual services and customer support
Handling inquiries
Target group segmentation
4. Legal Basis
We process personal data according to the GDPR and applicable national data protection regulations in Germany, including:
Consent (Art. 6(1)(a) GDPR): The data subject has given consent.
Performance of contract or pre-contractual measures (Art. 6(1)(b) GDPR): Necessary for contract fulfillment.
Legal obligation (Art. 6(1)(c) GDPR): Required by law.
Legitimate interests (Art. 6(1)(f) GDPR): For the protection of our legitimate interests, unless outweighed by interests or fundamental rights of the data subject.
In addition, national data protection laws such as the German Federal Data Protection Act (BDSG) apply.
5. Security Measures
We take appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
Physical and electronic access control
Data access control
Input, transfer, availability, and separation control
SSL encryption (https)
IP masking (shortening IP addresses where possible)
6. Data Transfers to Third Parties
Data may be disclosed to:
Payment service providers
IT service providers
External contractors (processors)
Authorities and legal entities (where required by law)
7. Data Processing in Third Countries
We transfer data to third countries (outside the EU/EEA) only under:
Adequacy decisions
Standard contractual clauses
Explicit consent
Legal obligations
See: EU Commission - International Data Transfers
8. Cookies & Tracking Technologies
We use cookies and similar technologies for:
Technical functionality
User preferences
Analytics
Marketing
Consent for non-essential cookies is requested via cookie banners (Art. 6(1)(a) GDPR). You can withdraw consent at any time or object to data processing by adjusting your browser settings or using opt-out mechanisms provided below.
For more information:
AboutAds.info (US)
YourOnlineChoices (EU)
9. Contractual and Business Services
We process customer and business partner data for:
Contract fulfillment
Communication and inquiries
Customer account management
Internal administration
Marketing analysis
Retention periods follow statutory obligations (e.g., 10 years for tax purposes).
10. Use of Online Marketplaces
We offer products via third-party platforms:
Amazon (Privacy Policy)
eBay (Privacy Policy)
11. Payment Service Providers
We cooperate with the following payment providers:
Amazon Payments: Privacy Policy
Apple Pay: Privacy Policy
Klarna / Sofortüberweisung: Privacy Policy
Mastercard: Privacy Policy
PayPal: Privacy Policy
Stripe: Privacy Policy
Visa: Privacy Policy
12. Contact and Communication
We process data provided via:
Contact forms
Phone
Social media
Legal basis: Contractual necessity (Art. 6(1)(b) GDPR) or legitimate interests (Art. 6(1)(f) GDPR).
13. Messenger Communication
We use messenger services such as:
WhatsApp: Privacy Policy
Facebook Messenger: Privacy Policy
Please note: Messages may be end-to-end encrypted, but metadata may still be processed by the providers.
14. Hosting & Content Delivery
We rely on web hosting providers for:
Server infrastructure
Email hosting
Content delivery networks (CDNs)
Security measures
Data processed may include IP addresses, device information, access logs, and content submitted via our services.
15. Newsletters and Marketing Communication
We send newsletters only based on consent or legal permission.
Double-opt-in registration is used.
Unsubscribing is possible at any time.
Service providers used:
Mailchimp: Privacy Policy
WhatsApp Broadcasts: see above
Facebook Messenger Broadcasts: see above
16. Promotional Communication by Post, Fax, or Phone
We process personal data for promotional purposes where legally permitted or based on consent.
You may withdraw consent or object to processing at any time.
17. Sweepstakes and Competitions
We process participant data for organizing sweepstakes and competitions. Data may be published if agreed by participants.
Retention: 6 months after completion; longer for prize administration as required.
18. Web Analytics and Optimization
We use the following analytics tools:
etracker: Privacy Policy
Google Analytics: Privacy Policy
Google Tag Manager: Privacy Policy
All data is pseudonymized and subject to IP masking.
19. Online Marketing & Remarketing
We use online marketing tools including:
Google Ads & Conversion Tracking
Facebook Pixel
Google Forms (surveys and forms)
More details and opt-out mechanisms:
YourOnlineChoices (EU)
AboutAds.info (US)
20. Social Media Presences
We maintain profiles on:
YouTube
Data processing on these platforms is governed by the providers' privacy policies.
21. Plugins & Embedded Content
We may embed content from:
Facebook Plugins
YouTube
Vimeo
Google Maps
Google Fonts
Data may include IP addresses, device information, browser details, and usage behavior. Processing occurs based on consent or legitimate interests.
22. Data Retention and Deletion
Data is deleted as soon as it is no longer necessary or permitted by law. If legal retention obligations exist, data will be blocked instead of deleted.
23. Changes to This Privacy Policy
We reserve the right to adapt this privacy policy as necessary to comply with legal changes or modifications to our services. Users will be informed if consent or further notifications are required.
24. Data Subject Rights
You have the following rights under the GDPR:
Right to object (Art. 21 GDPR)
Right to withdraw consent (Art. 7(3) GDPR)
Right of access (Art. 15 GDPR)
Right to rectification (Art. 16 GDPR)
Right to erasure (Art. 17 GDPR)
Right to restriction of processing (Art. 18 GDPR)
Right to data portability (Art. 20 GDPR)
Right to lodge a complaint with a supervisory authority (Art. 77 GDPR)
Supervisory Authority:
Independent Centre for Privacy Protection Schleswig-Holstein (ULD)
Holstenstraße 98
24103 Kiel, Germany
Email: mail@datenschutzzentrum.de
25. Definitions
Where legal terms such as "personal data," "processing," "controller," "profiling," "tracking," "remarketing," or "cookies" are used, they correspond to the definitions under Art. 4 GDPR.
.
