1.: Responsible enterprise and contact data
Lanserhof Managment GmbH
Gut Steinberg 1-4, 83666 Waakirchen, Deutschland
2.: Data Security Officer
Kochholzweg 153, 6072 Lans, Austria
Telephone: + 43 512 38 666 503
3.: Purpose and legal basis
The processing of the customer’s personal data is necessary for the performance of a contract to which the customer is a party, or for the implementation of pre-contractual measures that are taken at the customer’s request. The legal basis for such processing is Art. 6 para. 1 b) DSGVO. The newsletter will only be sent with the customer’s consent. The legal basis for such processing is the consent of the customer in accordance with Art. 6 para. 1 a) DSGVO. The processing of moving images of the video surveillance system is carried out in accordance with Art. 6 para. 1 f) DSGVO. For the protection of the property of the guests, as well as the protection of the guests and property of the enterprise the entrances and parking lots, as well as the property borders are partially video-monitored.
The customer’s personal data transmitted to the responsible person will be made available to the following recipients as follows:
- e-mail service providers
- telephone providers
- fax providers
- web hosting companies
- tax consultants
- payment service providers
- health care facilities
- consilliary doctors
- media agencies
- postal and shipping service providers
- In the event that the newsletter is used: mailing agents
- businesses belong to the Lanserhof Group:
Lanserhof GmbH, Austria
Lanserhof Tegernsee GmbH, Germany
Marienstein Privatklinik GmbH, Germany
LANS Medicum, Germany
Mayfair Medicum Ltd, United Kingdom
Without the written consent of the customer, the personal data will not be made available to other third parties, unless this is required by law.
4.1: Website analysis:
The customer can prevent the collection by Google Analytics by clicking on the following link. An Opt-Out-Cookie is set, which will prevent the future collection of his data when visiting this website. Website prevented:
Click here to disable Google Analytics
Further information can be found at https://tools.google.com/dlpage/gaoptout?hl=en
or at https://www.google.com/intl/de/analytics/privacyoverview.html (general information on Google Analytics and data protection). The responsible person points out to the customer that on the code "anonymizeIp" ("analytics.js") has been added to this web page Google Analytics in order to to ensure an anonymized collection of IP addresses (so-called IP masking). Without the written consent of the customer, the personal data will not be passed on to third parties, unless this is required by law.
4.2.: Google Fonts
For the integration of external fonts by Google Fonts, the personal data of the Customers who are transmitted to the responsible person are made accessible to the following recipient: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland
4.3.: Adobe Typekit
Adobe Typekit uses the personal data of the user to integrate external fonts.
Customers who are transmitted to the responsible person are made accessible to the following recipient:
- Adobe Systems Software Ireland Limited, 4-6 Riverwalk, Citywest Business Campus, Dublin 24, Republic of Ireland
This website uses Adobe Typekit to integrate external fonts. Adobe provides the Fonts that are available. If the customer calls up this website, the required fonts will be displayed in the customer's browser cache to correctly display the texts and fonts on the page to be displayed. For this purpose, the usual information when a website is called up, in particular the IP address of the customer and the referrer URL to an Adobe server. More Information is available to the customer at https://www.adobe.com/ch_en/privacy/policies/adobe-fonts.html Without the written consent of the customer, the personal data will not be passed on to third parties
unless this is required by law.
4.4.: Google Maps
This website uses Google Maps to display the location and to display the Directions to us. This is a service of the Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland ("Google").
This website uses the video portal YouTube to embed and retrieve videos. It is a service of YouTube LLC, 901 Cherry Ave, 94066 San Bruno, CA, USA. For this purpose, the usual information when calling up a website, in particular the IP address of the customer and the referrer URL to a YouTube server. If the customer is logged into his YouTube account during the retrieval process, more information will be transmitted.
The customer can obtain further information at https://policies.google.com/privacy?hl=en.
4.6.: Google AdWords
This website uses the marketing service Google AdWords of Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland ("Google"), for targeted online advertising and promote its services. When you access any website that participates in the Google AdWords advertising network, Google AdWords will not store an individual cookie on the customer's terminal device. This cookie contains certain information about the customer. This information is pseudonymised
The responsible person operates on Facebook.com under the address https://www.facebook.com/LanserhofDE or https://b-m.facebook.com/LanserhofDE a Facebook-Website. This Facebook website is maintained in conjunction with Facebook Ireland Ltd, 4 Grand Canal Square. Grand, Canal Harbour Dublin 2, Ireland (hereinafter referred to as "Facebook"). The operation of this Facebook website is based on the legitimate interest according to Art. 6. Paragraph 1 f) DSGVO.
4.8.: Facebook Plugin & Instagram Plugin
Within the framework of Facebook use, a transfer is also made to the parent company of Facebook, the Facebook Inc., Deborah Crawford 1601 Willow Road Menlo Park, California 94025, USA. A European Commission adequacy decision is missing. Facebook Inc. is, however Member of the EU-US Privacy Shield. Further information on the EU-US Privacy Shield can be found at the address: https://www.privacyshield.gov
This website uses the Twitter plugin to embed and retrieve certain content. It is a service provided by Twitter International Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07, Ireland (hereinafter referred to as "Twitter"). For this purpose, certain information will be sent to a server of Twitter.
4.10.: Lanserhof Online Shop
Registration on our website / Lanserhof Online Shop
When registering to use our personalised services, some personal data is collected, such as name, address, contact and communication data such as telephone number and e-mail address. If you are registered with us, you can access content and services that we only offer to registered users. Registered users also have the option of changing or deleting the data provided during registration at any time if required. Of course, we will also provide you with information about the personal data we have stored about you at any time. We will be happy to correct or delete them at your request, provided that there are no legal storage obligations to the contrary. To contact us in this context, please use the contact details given at the end of this data protection declaration.
Payment services Lanserhof Online Shop
Payment via credit card
On our website https://shop.lanserhof.com you can pay by credit card. Payment data is transferred to mPay24 in order to process the payment. The legal basis for the processing of your data is Art. 6 para. 1 lit. b DSGVO.
mPay24 collects information about the transaction, as well as other information in connection with the transaction such as information about goods/services, financial information, information about the interaction between you and mPay24, merchant information, including
Information on payment instruments, device-related information and location data.
mPay24 uses the data, among other things, for payment processing, for credit checks and for monitoring and improving its services.
Details on data processing and processing purposes can be found in the data protection conditions of mPay24
Payment via Paypal
On our website https://shop.lanserhof.com you can pay via the payment service Paypal. Payment data is transferred to Paypal in order to process the payment. The legal basis for the processing of your data is Art. 6 para. 1 lit. b DSGVO.
You have the following payment option: Payment via PayPal.
Paypal collects transaction information and other information related to the transaction, such as the amount sent or requested, the amount paid for products or services, merchant information, including information about payment instruments used for the transaction, device information, technical usage data and location data.
Paypal collects this data regardless of whether you have a Paypal account or not. If you have a Paypal account, the data will be linked to your account. Paypal uses the data for payment processing, credit checks and for monitoring and improving its services, among other things.
Details on data processing and processing purposes can be found in Paypal's data protection conditions: https://www.paypal.com/de/webapps/mpp/ua/privacy-prev#6
You can find a list of companies to which Paypal may send your data here:
More information about Paypal:
PayPal (Europe) S.à r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg
4.11.: Application procedure
As part of the application process, your correspondence data (postal address, e-mail address and telephone numbers) will be stored in the applicant database along with your title, surname and first name. In addition, your curriculum vitae and your application documents for professional, vocational and further training qualifications as well as your references are recorded. This data will only be stored, evaluated, processed and forwarded internally as part of your application. They are only accessible to employees of the Central Services / Personnel Department and the persons responsible for the selection of applicants in the specialist departments.
Your personal data will not be passed on to third parties unless you expressly consent to this being done at the specific request of the Central Services / Personnel Department. Due to legal or official orders, to enforce the provisions of this data protection declaration or to protect the rights of the Lanserhof Group or our employees and customers, the disclosure of personal data is also legally permissible in individual cases. Finally, applicant data can also be processed for statistical purposes, whereby the data is made anonymous so that no conclusions can be drawn about individual persons.
The Lanserhof Group includes the following companies:
Lanserhof GmbH, Kochholzweg 153, 6072 Lans, Austria
Lanserhof Tegernsee GmbH, Gut Steinberg 1-4, 83666 Waakirchen, Germany
Marienstein Privatklinik GmbH, Gut Steinberg 1-4, 83666 Waakirchen, Germany
LansMedicum, Stephansplatz 5, 20354 Hamburg, Germany
The visitor's hard drive deletes (so-called session cookies). Other cookies remain on the visitor's hard drive on the visitor's computer and enable the person in charge to use the visitor's computer at the time to recognize your next visit (so-called permanent cookies). Of course the customer can reject cookies at any time, provided that the browser used permits this.
6.: Transfer to third countries
Within the scope of using YouTube, personal data is transmitted to YouTube LLC., 901 Cherry Ave., 94066 San Bruno, CA, USA. A European Commission adequacy decision is missing. However, Google LLC is a member of the EU-US Privacy Shield. More information about EU-US Privacy Shield can be found at the URL: https://www.privacyshield.gov
Within the scope of using the website, personal data will be transmitted to Facebook Inc., Deborah Crawford 1601 Willow Road Menlo Park, California 94025, USA. An adequacy decision of the European Commission is missing. Facebook Inc. is a member, however in the EU-US Privacy Shield. More information about the EU-US Privacy Shield can be found at the URL: https://www.privacyshield.gov
7.: Storage period
With the final completion of the contract, the data of the customer, which must be kept for legal reasons, is blocked. This data is no longer available for further use. Once this legal basis has ceased to apply, the blocked dated will be deleted.
In the event that the customer contacts the responsible person or uses the contact form, the personal data will be stored in accordance with the statutory retention periods. The person responsible is subject to various storage and documentation obligations, including those arising from the German Commercial Code (HGB) and the Fiscal Code (AO). The periods for storage and documentation specified there are between two and ten years. Finally, the storage period is also assessed according to the statutory limitation periods, which, for example, according to the §§ 195 et seq. of the German Civil Code (BGB) can generally be three years, but in certain cases also up to thirty years.
The data collected via Google AdWords, Google Analytics, YouTube, Google Maps, various social media and
Plugins) will be stored indefinitely.
The data of the video surveillance system is regularly stored for 72 hours. If necessary, the data is transferred to the competent authority and stored for a longer period if necessary.
8.: Data protection rights
Every customer has the right to information, correction, deletion, restriction of processing, objection and data transfer. In addition, there is a right of appeal to a data protection supervisory authority. The customer will find the legal texts by linking to: https://dsgvo-gesetz.de/
Corresponding requests are to be addressed to the e-mail address: email@example.com
9.: Right of objection and other rights
If the customer has given his/her consent to the processing of his/her personal data for one or more specific purposes, the customer has the possibility of revoking the consent with future effect. Without prejudice to any other administrative or judicial remedy, any data subject shall have the right to complain to a supervisory authority, in particular in the member state where he/she is staying, at his/her place of work or at the place where the alleged infringement is suspected, if he/she considers that the processing of his/her personal data is contrary to this regulation.
10.: Automated decision making
An automated form of decision including profiling does not take place.