DE

Privacy Policy

Privacy Policy

This is the Website Privacy Policy and, at the same time, information about the data subjects according to Article 13 and Article 14 EU General Data Protection Regulation.

Veracode Privacy Policy

Crashtest Security Privacy Policy

Below is the Privacy Policy for https://www.crashtest-security.com and https://crashtest.cloud/ domains.

General information

Details of the responsible entity:

Company

Crashtest Security GmbH

Legal representatives

Felix Brombacher, René Milzarek

Address

Leopoldstr. 21
80802 Munich
Germany

Privacy policy contact

datenschutz@crashtest-security.com

Data protection officer contact 

Dr. Sebastian Kraska
IITR Datenschutz GmbH
Marienplatz 2
80331 Munich
Germany

General Data Processing Information

Data concerned

Personal data is only collected if you provide it to us of your own accord. No personal information is collected beyond this. Any processing of your personal data beyond the scope of the legal permissions will only be carried out based on your express consent.

Processing purpose

Contract execution

Categories of recipients

  • Public bodies in the case of overriding legal provisions.
  • External service providers or other contractors.
  • Other external bodies insofar as the data subject have given his/her consent, or a transfer is permissible for overriding interest.

Third country transfers

Within the contract’s execution framework, processors outside the European Union may also be used.

Data storage duration

The duration of the data storage depends on the legal storage obligations and is usually 10 years.

Specific information about the website

Use of a newsletter

When registering for our newsletter, you provide us with your email address and, optionally other data. We use this information exclusively to send you the newsletter. When registering for the newsletter, the data you enter will remain stored by us until you unsubscribe from our newsletter. You can unsubscribe using the link provided for this purpose in the newsletter or by sending us a corresponding message. By unsubscribing, you object to the use of your email address.

Also, we use your email address, which we receive in connection with the sale of a good or service, exclusively for direct advertising in the form of our newsletter for our similar goods or services, such as those ordered by you, provided that you have not objected to this use. You can object to the use of your email address at any time without incurring any costs other than the transmission costs according to the prime rates. Your objection (and thus the cancellation of our newsletter) can be exercised by sending a message to our email address (see imprint).

Use of Google Analytics

This website uses Google Analytics, a web analytics service provided by Google, Inc. (“Google”). Google Analytics uses “cookies,” which are text files placed on your computer, to help the website analyze how users use it. The information generated by the cookie about your use of this website is usually transmitted to a Google server in the USA and stored there. If IP anonymization is activated on this website, however, your IP address will be truncated beforehand by Google within member states of the European Union or in other contracting states to the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. On behalf of this website’s operator, Google will use this information to evaluate your use of the website, compiling reports on website activity and providing other services relating to website activity and internet usage to the website operator. The IP address transmitted by your browser as part of Google Analytics will not be merged with other data from Google. You may refuse the use of cookies by selecting the appropriate settings on your browser; however, please note that you may not be able to use this website’s full functionality if you do this. You can also prevent the collection of data generated by the cookie and related to your use of the website (including your IP address) to Google and the processing of this data by Google by downloading and installing the browser plugin available under the following link. Given the discussion about using analytics tools with full IP addresses, we would like to point out that this website uses Google Analytics with the extension “_anonymizeIp()” and therefore, IP addresses are only processed in abbreviated form to exclude a direct personal reference. Especially for browsers on mobile devices, please click this link to prevent the anonymized collection by Google Analytics on this website for your browser in the future using a so-called “opt-out cookie.”

Google Ads Conversion Tracker

This website uses Google AdWords Conversion Tracking, a web analytics service provided by Google, Inc. (“Google”). Google AdWords Conversion Tracking also uses “cookies” stored on your computer and analyzes your website’s use. The information generated by the cookie about your use of this website will be transmitted to and stored by Google on servers in the United States. Google will use this information to evaluate your website’s use, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. Google may also transfer this information to third parties required to do so by law or where such third parties process the information on Google’s behalf. Google will not associate the data with any other data held by Google. You can generally prevent the use of cookies if you prohibit the storage of cookies in your browser.

Use of Google Remarketing

This website uses Google Remarketing, a web analytics service provided by Google, Inc. (“Google”). This enables us to play personalized advertising on suitable advertising spaces on other websites based on what interests you have shown on our website. Google Remarketing also uses “cookies,” which are stored on your computer and allow an analysis of your use of the website. The information generated by the cookie about your use of this website will be transmitted to and stored by Google on servers in the United States. Google will use this information to evaluate your website’s use, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. Google may also transfer this information to third parties required to do so by law or where such third parties process the information on Google’s behalf. Google will not associate the data with any other data held by Google. You can generally prevent the use of cookies if you prohibit the storage of cookies in your browser.

Use of HubSpot

This website uses HubSpot, a software of HubSpot Inc, USA. This software is used in so-called inbound marketing. It helps us, among other things, employ statistical analysis and evaluation of logged user behavior to better coordinate and optimize our marketing strategy. Cookies are used. You can prevent the storage of cookies at any time by setting your browser software accordingly or deleting the cookies already stored. Please note that if cookies are blocked, you may not be able to make full use of the services provided on our website. For more information, please refer to the Terms of Use and Privacy Policy of HubSpot Inc. accordingly at http://www.hubspot.com/terms-of-service and http://www.hubspot.com/privacy-policy. You can generally prevent the use of cookies if you prohibit the storage of cookies in your browser.

Use of Hotjar

This website uses Hotjar to understand our users’ needs better and optimize the experience on this website. Using Hotjar’s technology, we get a better understanding of our users’ experiences (e.g., how much time users spend on which pages, which links they click, what they like and don’t like, etc.), and this helps us tailor our offerings to our users’ feedback. Hotjar works with cookies and other technologies to collect information about our users’ behavior and about their devices (in particular, the IP address of the device (collected and stored only in anonymized form), screen size, device type (unique device identifiers), information about the browser used, location (country only), language preferred to view our website). Hotjar stores this information in a pseudonymized user profile. The information is not used by Hotjar or us to identify individual users or merged with other data about individual users. For more information, please see Hotjar’s privacy policy here.

You can object to the storage of a user profile and information about your visit to our website by Hotjar and the setting of Hotjar tracking cookies on other websites by clicking on this https://www.hotjar.com/legal/compliance/opt-out.

Use of the Facebook Pixel

This website uses the “Facebook Pixel”, a web analytics service provided by Facebook Inc. (“Facebook”). This allows us to play personalized advertising (“Facebook Ads”) to you on suitable advertising spaces on other websites based on what interests you have shown on our website. Facebook also uses “cookies”,, which are stored on your computer and allow an analysis of your use of the website. The information generated by the cookie about your use of this website will be transmitted to and stored by Facebook on servers in the United States. Facebook will use this information to evaluate your website’s use, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. For more information, please see Facebook’s privacy policy here.

You can configure the storage of a user profile and information about your visit to our website via Facebook and the setting of cookies on other websites can be configured via the following link https://www.facebook.com/settings?tab=ads.

Use of Twitter conversion tracking

This website uses “Twitter Conversion Tracking”, a web analytics service provided by Twitter Inc. (“Twitter”). This allows us to serve you personalized advertising on suitable advertising spaces on other websites based on what interests you have shown on our website. Twitter also uses “cookies”, which are stored on your computer and allow an analysis of your website’s use. The information generated by the cookie about your use of this website will be transmitted to and stored by Twitter on servers in the United States. Twitter will use this information to evaluate your website’s use, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. For more information, please see Twitter’s privacy policy here.

You can consent to the storage of a user profile and information about your visit to our Twitter website. The setting of cookies on other websites can be configured via the following links Digital Advertising Alliance, Network Advertising Initiative, or in Europe via Your Online Choices.

Use of LinkedIn conversion tracking

This website uses “LinkedIn Conversion Tracking”, a web analytics service provided by LinkedIn Corporation (“LinkedIn”). This allows us to play personalized advertising on suitable advertising spaces on other websites based on what interests you have shown on our website. LinkedIn also uses “cookies”, which are stored on your computer and enable an analysis of your website’s use. The information generated by the cookie about your use of this website will be transmitted to and stored by LinkedIn on servers in the United States. LinkedIn will use this information to evaluate your website’s use, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. For more information, please see LinkedIn’s privacy policy here.

You can configure the storage of a user profile and information about your visit to our website via LinkedIn, as well as the setting of cookies on other websites can be configured via the following link https://privacy.linkedin.com/en-e/einstellungenn.

Use of the Reddit conversion pixel

This website uses the “Reddit Conversion Pixel”, a web analytics service provided by Reddit Inc. (Reddit). This allows us to play personalized advertising on suitable advertising spaces on other websites based on what interests you have shown on our website. Reddit also uses “cookies”, which are stored on your computer and enable an analysis of your website’s use. The information generated by the cookie about your use of this website will be transmitted to and stored by Reddit on servers in the United States. Reddit will use this information to evaluate your website’s use, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. For more information, please see Reddit’s privacy policy here.

You can consent to the storage of a user profile and information about your visit to our website on Reddit. The setting of cookies on other websites can be configured via the following links Digital Advertising Alliance, Network Advertising Initiative, or in Europe via Your Online Choices.

Microsoft Advertising universal event tracking

This website uses Microsoft Advertising Universal Event Tracking, a web analytics service provided by Microsoft, Inc. (“Microsoft”). Microsoft Advertising Universal Event Tracking also uses “cookies”, which are stored on your computer and analyze your use of the website. The information generated by the cookie about your use of this website will be transmitted to and stored by Microsoft on servers in the United States. Microsoft will use this information to evaluate your use of the website, compiling reports on website activity for website operators and providing other services relating to website activity and internet usage. Microsoft may also transfer this information to third parties required to do so by law or where such third parties process the information on Microsoft’s behalf. Microsoft will not associate the data with any other data held by Microsoft. You can generally prevent the use of cookies if you prohibit the storage of cookies in your browser. For more information, please see Microsoft’s privacy policy here.

You can consent to the storage of a user profile and information about your visit to our website by Microsoft. The setting of cookies on other websites can be configured via the following links Digital Advertising Alliance, Network Advertising Initiative, or in Europe via Your Online Choices.

Use of own “cookies”

This website uses its own “cookies” to increase user-friendliness (“cookies” are data records that are sent from the webserver to the user’s browser and stored there for later retrieval). No personal data is stored in our own “cookies”. You can generally prohibit the use of “cookies” if you deny the storage of “cookies” in your browser.

Information on other data processing procedures

Specific information on the application procedure

Data concerned

Application details

Processing purpose

Implementation application procedure

Categories of recipients

Public bodies in the case of overriding legal provisions.
External service providers or other contractors, including data processing and hosting.
Other external bodies insofar as the data subject have given his/her consent, or a transfer is permissible for overriding interest.

Third country transfers

In the context of the contract’s execution, processors outside the European Union may also be used, including email providers.

Data storage duration

Application data will generally be deleted within four months of notification of the decision unless consent has been given for data to be stored for a longer period in the context of inclusion in the applicant pool.

Specific information on the processing of customer/prospect data

Data concerned

Data provided for the contract’s performance; if necessary, data beyond this for processing based on your express consent.

Processing purpose

Contract execution, including quotations, orders, sales and invoicing, quality assurance

Categories of recipients

  • Public bodies in the case of overriding legal provisions.
  • External service providers or other contractors, including data processing and hosting, for shipping, transport, and logistics, and service providers to print and shipping information and call centers.
  • Other external bodies insofar as the data subject has given his/her consent or transmission are permissible for overriding interest, including credit rating information for purchase on account, for electronic dispatch of data, and for quality assurance purposes.

Third country transfers

In the context of the contract’s execution, processors outside the European Union may also be used, including email providers.

Data storage duration

The duration of the data storage depends on the legal storage obligations and is usually 10 years.

Specific information on the processing of employment data

Data concerned

Data provided for the contract’s performance; if necessary, data beyond this for processing based on your express consent.

Processing purpose

Contract implementation within the framework of the employment relationship

Categories of recipients

Public authorities in the case of overriding legal requirements, including the tax office, social security institutions, and employers’ liability insurance association.
External service providers or other contractors, including data processing and hosting, payroll accounting, travel expense accounting, insurance benefits, and vehicle use.
Other external bodies insofar as the data subject have given his or her consent or transmission is permissible for reasons of overriding interest, e.g. for order acquisition, or insurance services.

Third country transfers

In the context of the contract’s execution, processors outside the European Union may also be used, including email providers.

Data storage duration

The duration of the data storage depends on the legal storage obligations and is usually 10 years.

Specific information on the processing of supplier data

Data concerned

Data provided for the contract’s performance; if necessary, data beyond this for processing based on your express consent.

Processing purpose

Contract execution, including inquiries, purchasing, quality assurance

Category of recipients

Public authorities in case of overriding legal provisions, e.g. tax office, customs.
External service providers or other contractors, e.g. for data processing and hosting, accounting, payment processing.
Other external bodies insofar as the data subject have given his/her consent, or a transfer is permissible for overriding interest.

Third country transfers

In the context of the contract’s execution, processors outside the European Union may also be used, including email providers.

Data storage duration

The duration of the data storage depends on the legal storage obligations and is usually 10 years.

Further information and contacts

Also, you may at any time exercise your rights of access, rectification, or erasure, or to restrict processing or exercise your right to object to processing, as well as the right to data portability. Here you will find the possibility to contact us by email or letter. You also have the right to contact the data protection supervisory authority in the event of complaints.