Back

Use GastroGuide Order System GDPR compliant. Follow these instructions:

Services & integrations

Back

First of all, we have to clarify whether consent is required in order to integrate GastroGuide Order System GDPR compliant.

A data processing agreement must be concluded with mesmo GmbH that meets the criteria of Art. 28 GDPR.
The documents must be archived so that they can be proven to the supervisory authority if necessary.

1. Mention GastroGuide Order System in the privacy policy completely, simply and transparently

The privacy policy on your website must be comprehensive, transparent and accurate. It should be readable and understandable by anyone, even without legal training. It is important to include a section on GastroGuide Order System that clearly describes what data is collected, for what purpose it is used and who is responsible for it, as well as whether data is shared and what legal basis applies.

Privacy Statement for the Service GastroGuide Order SystemFor processing and organizing orders Processed data categories: data about your inquiry or contactpayment information such as bank details or credit card details. Purpose of processing: fulfillment of agreements. The legal basis for processing: the need to fulfill an agreement or pre-contractual measures at your request (Article 6 (1) b GDPR). Data is transmitted: to the data processor mesmo GmbH, Herdweg 16, 73035 Göppingen, Germany. 

2. Additional Information for GastroGuide Order System and GDPR

In addition to the above information, the data protection information must also contain the mandatory information from Art. 13 or 14 GDPR: Name and contact details of the controller, if necessary the contact details of the data protection officer, the purposes for which the personal data are to be processed, the legitimate interests, if the processing is based on Article 6 (1) f GDPR, the duration of the processing, information on the rights of the data subjects including the right to lodge a complaint with a supervisory authority, the possibility of simply revoking consent given, and information as to whether the Provision of the data is required by law or contract or what the possible consequences of non-provision would be. In the event that the data is used for automated decision-making, including profiling, meaningful information about the logic involved and the scope and impact on the data subject must be provided. The processing of the data must also be documented in the list of processing activities in accordance with Art. 30 GDPR. The information required for this can already be found in the privacy statement, which can be created from the previous information.

3. Use a Consent Management Provider CMP (cookie banner/cookie popup/cookie bar)

Different names, but usually the same purpose. CMP supports you with consent (opt-in and opt-out, data protection declaration and other GDPR topics. Technical support is recommended with regard to the GDPR and consent management in order to avoid errors.

Preconfigured services & integrations

Individually expandable

Privacy
The controller (legal web GmbH, Austria) would like to use the following services in order to process your personal data. Technologies such as cookies, localStorage, etc. can be used for personalization. This is not necessary for the use of the website, but allows us to interact with you more closely. If you wish, you can adjust or revoke your consent at any time via our privacy policy.