Privacy Policy

Privacy Policy

  1. Information on the collection of personal data and contact details of the person responsible

1.1 We are delighted that you are visiting our website and thank you for your interest. Below, we inform you about the handling of your personal data when using our website. Personal data is all data with which you can be personally identified.

1.2 The person responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR) is HERMAN BUSINESS UG (limited liability), Thomashofstr. 27/29, 76228 Karlsruhe-Stupferich, Germany, Register number: HRB 227786 B, orders@lattafa.de. The person responsible for the processing of personal data is the natural or legal person who alone or jointly with others decides on the purposes and means of processing personal data.

1.3 For security reasons and to protect the transmission of personal data and other confidential content (e.g., orders or inquiries to the responsible person), this website uses SSL or TLS encryption. You can recognize an encrypted connection by the string "https://" and the lock icon in your browser line.

  1. Data collection when visiting our website

When using our website for information purposes only, i.e., if you do not register or otherwise provide us with information, we only collect data that your browser transmits to our server (so-called "server log files"). When you visit our website, we collect the following data, which is technically necessary for us to display the website to you:

  • Our visited website
  • Date and time at the time of access
  • Amount of data sent in bytes
  • Source/reference from which you came to the page
  • Browser used
  • Operating system used
  • IP address used (if necessary: in anonymized form)

The processing is carried out in accordance with Art. 6 Para. 1 lit. f GDPR based on our legitimate interest in improving the stability and functionality of our website. The data will not be passed on or used in any other way. However, we reserve the right to subsequently check the server log files if there are concrete indications of illegal use.

  1. Cookies

To make visiting our website attractive and to enable the use of certain functions, we use so-called cookies on various pages. These are small text files that are stored on your device. Some of the cookies we use are deleted after the end of the browser session, i.e., after closing your browser (so-called session cookies). Other cookies remain on your device and enable us to recognize your browser on your next visit (persistent cookies). If cookies are set, they collect and process certain user information such as browser and location data as well as IP address values to an individual extent. Persistent cookies are automatically deleted after a specified duration, which may differ depending on the cookie. You can find the duration of each cookie in the overview of the cookie settings of your web browser.

Partially, cookies serve to simplify the ordering process by storing settings (e.g., remembering the contents of a virtual shopping cart for a later visit to the website). If personal data are also processed by individual cookies implemented by us, the processing is carried out in accordance with Art. 6 Para. 1 lit. b GDPR either for the execution of the contract, according to Art. 6 Para. 1 lit. a GDPR in the case of a given consent, or according to Art. 6 Para. 1 lit. f GDPR to protect our legitimate interests in the best possible functionality of the website as well as a customer-friendly and effective design of the page visit.

Please note that you can set your browser in such a way that you are informed about the setting of cookies and individually decide on their acceptance or exclude the acceptance of cookies for certain cases or in general. Each browser differs in the way it manages the cookie settings. This is described in the help menu of each browser, which explains how you can change your cookie settings. Find this for the respective browser under the following links:

  • Internet Explorer: [Internet Explorer Support Link]
  • Firefox: [Firefox Support Link]
  • Chrome: [Chrome Support Link]
  • Safari: [Safari Support Link]
  • Opera: [Opera Support Link]

Please note that the functionality of our website may be limited if you do not accept cookies.

  1. Contacting us

When contacting us (e.g., via contact form or email), personal data is collected. Which data is collected in the case of a contact form can be seen from the respective contact form. This data is stored and used exclusively for the purpose of responding to your request or for contacting you and the associated technical administration. The legal basis for processing this data is our legitimate interest in answering your inquiry in accordance with Art. 6 Para. 1 lit. f GDPR. If your contact is aimed at concluding a contract, then additional legal basis for the processing is Art. 6 Para. 1 lit. b GDPR. Your data will be deleted after final processing of your inquiry; this

is the case if it can be inferred from the circumstances that the matter in question has been conclusively resolved and provided that there are no legal storage obligations to the contrary.

  1. Data processing for opening a customer account and for contract processing

According to Art. 6 Para. 1 lit. b GDPR, personal data will continue to be collected and processed if you provide it to us for the execution of a contract or when opening a customer account. Which data is collected can be seen from the respective input forms. Deleting your customer account is possible at any time and can be done by sending a message to the above address of the person responsible. We store and use the data you provide for contract processing. After complete processing of the contract or deletion of your customer account, your data will be blocked with respect to tax and commercial retention periods and deleted after these periods have expired, unless you have expressly consented to further use of your data or a legally permitted further data use was reserved by our site.

  1. Comment function

As part of the comment function on this website, in addition to your comment, information on the time of the creation of the comment and the commentator's name you selected will be stored and published on the website. Furthermore, your IP address will be logged and stored. This storage of the IP address is for security reasons and in case a person violates the rights of third parties or posts illegal content through a given comment. We need your email address to contact you if a third party should object to your published content as being unlawful. The legal bases for storing your data are Art. 6 Para. 1 lit. b and f GDPR. We reserve the right to delete comments if they are objected to as unlawful by third parties.

  1. Data processing for order handling

7.1 To process your order, we work with the following service provider(s) who support us wholly or partially in the execution of concluded contracts. Certain personal data is transmitted to these service providers in accordance with the following information.

The personal data collected by us will be passed on to the transport company commissioned with the delivery as part of contract processing, insofar as this is necessary for the delivery of the goods. We pass on your payment data to the commissioned credit institution as part of payment processing, if this is necessary for payment handling. If payment service providers are used, we explicitly inform you of this below. The legal basis for the transfer of data is Art. 6 Para. 1 lit. b GDPR.

7.2 Passing personal data to shipping service providers

  • DHL
  • DPD
  • Hermes

If you have given us your explicit consent during or after your order, we will pass on your email address and phone number to the selected shipping service provider based on this consent, so they can contact you to announce or coordinate the delivery.

7.3 Use of payment service providers (payment services)

  • giropay
  • Klarna
  • Mollie
  • PayPal
  • SOFORT

If you choose a payment method from the payment service provider, the payment processing is carried out by the payment service provider, and your information is passed on to them for the purpose of payment processing.

  1. Use of Social Media: Social Plugins

Pinterest as a standard plugin

Social plugins ("plugins") of the social network Pinterest, which is operated by Pinterest Europe Ltd., are used on the pages of the seller. When you interact with the plugins, e.g., pressing the "Pin it" button, the corresponding information is directly transmitted to Pinterest and stored there. If you do not want Pinterest to collect data via our website and possibly link it to your user data on Pinterest, you should log out of Pinterest before visiting our website.

  1. Tools and Miscellaneous

9.1 Google Customer Reviews (formerly Google Certified Merchant Program)

We work with Google as part of the "Google Customer Reviews" program. If you give your consent after making a purchase on our website, your email address will be transmitted to Google for the purpose of the survey. You can revoke your consent at any time by sending a message to the responsible person or to Google.

9.2 Google Maps

This website uses Google Maps API to visually display geographic information. When using Google Maps, Google also collects, processes, and uses data about the use of the map features by visitors. More detailed information about data processing by Google can be found in Google's privacy policy. There, you can also change your personal privacy settings in the privacy center.

  1. Rights of the data subject

The applicable data protection law grants you comprehensive rights (rights of information and intervention) with the person responsible regarding the processing of your personal data, about which we inform you below:

  • Right of access by the data subject according to Art. 15 GDPR
  • Right to rectification according to Art. 16 GDPR
  • Right to erasure according to Art. 17 GDPR
  • Right to restriction of processing according to Art. 18 GDPR
  • Right to data portability according to Art. 20 GDPR