Data Protection

The security of your personal data, such as your name, address, telephone number or email address, is of great importance to us. We therefore conduct our online activities in accordance with data protection and data security legislation. Below, you can find out what information we may collect and how we handle it.

Data Controller

The organisation named in the legal notice is responsible for the data processing described below.

Personal Data

As a general principle, Musiktheater im Revier GmbH attaches the utmost importance to the protection of your personal data. We therefore do not collect any personal data via our websites without your consent. It is entirely up to you to decide whether or not you wish to provide us with this data, for example as part of a registration, survey or similar. If you have provided us with data for the purposes mentioned above, you may withdraw your consent to the use of that data at any time.

We generally use your personal data to respond to your enquiry, process your order or provide you with access to specific information or offers. To maintain customer relationships, it may also be necessary for us to store and process your personal data so that we can better respond to your requirements. Data that is no longer required will be deleted immediately. We will neither sell your personal data to third parties nor market it in any other way.

No personal data

When you access our websites, information that is not linked to a specific individual (e.g. the internet browser and operating system used; the domain name of the website you came from; number of visits, average time spent on the site, pages viewed). We use this information to assess the appeal of our websites and to improve their content.

Data security

We take technical and organisational measures to protect your data as comprehensively as possible against unauthorised access. We use an encryption method on our websites. Your data is transmitted from your computer to our server and vice versa via the internet using TLS encryption. You can usually recognise this by the fact that the padlock icon in your browser’s status bar is closed and the address bar begins with https://.

Consent banner

On our websites, we use a consent management platform (consent or cookie banner). The processing carried out in connection with the use of the consent management platform and the logging of the settings you have made is based on Article 6(1)(f) of the GDPR, in our legitimate interest to display our content in accordance with your preferences and to be able to provide evidence of theconsent(s) you have given. The settings you have selected, the consents thereby granted and parts of your usage data are stored in a cookie. This ensures that the cookie remains in place for subsequent page requests and that your consents can continue to be tracked. Further information on this can be found under the heading ‘Essential cookies’.

The provider of the consent management platform acts on our behalf as a service provider strictly bound by our instructions (data processor). A data processing agreement in accordance with Article 28 of the GDPR has been concluded.

Cookies

We use so-called cookies on some parts of our website. Cookies serve to make our website more user-friendly, effective and secure. Cookies are small text files that are stored on your computer or device and saved by your browser. Most of the cookies we use are so-called ‘session cookies’. These are automatically deleted at the end of your visit. Other cookies remain stored on your device until you delete them. These cookies enable us to recognise your browser the next time you visit. You can configure your browser so that you are notified when cookies are set and can choose to allow cookies only on a case-by-case basis, block the acceptance of cookies in specific cases or generally, and enable the automatic deletion of cookies when you close your browser. If you disable cookies, the functionality of this website may be restricted.

Essential cookies

We use cookies on our websites that are technically necessary for the use of our websites. We do not use these essential cookies for analysis, tracking or advertising purposes. In some cases, these cookies merely contain information on specific settings and are not personally identifiable. They may also be necessary to enable user navigation, security and the functioning of the website. We use these cookies on the basis of our legitimate interest pursuant to Article 6(1)(f) of the GDPR.

You can view the names and functions of all cookies via the privacy settings of our consent provider.

Data protection information for applicants

Before we accept your application, we would like to point out that, in order to carry out the recruitment process, we require personal data from you, which we will collect, process and use for this purpose as the process progresses.

We, Musiktheater im Revier GmbH, are the data controller for this data processing under data protection law. Our authorisation to process your personal data for the purposes of the application process is based on Section 26 of the Federal Data Protection Act (BDSG).

We assure you that your personal data will not be passed on to third parties. Within our organisation, your personal data will be processed exclusively by the head of human resources, the HR department responsible for recruitment, the heads of the relevant departments and the staff representatives.

Your personal data will only be stored by us for as long as is necessary to carry out the recruitment process and for any subsequent employment relationship. In the event of your application being unsuccessful, we will delete your data within six months.

We would like to draw your attention to the fact that, in accordance with Articles 15 to 18, 20 and 21 of the General Data Protection Regulation, you may have certain rights (in particular the right to access, rectification, erasure, restriction of processing and data portability) regarding the processing of your personal data.

We use the softgarden system for application management. In this context, softgarden acts as a service provider bound by our instructions.

You can find detailed privacy information regarding our application management system here.

 

Newsletter subscription and distribution

If you would like to subscribe to the newsletter offered on the website, we will need certain details from you (at least your email address).

The newsletter will only be sent if you have given us your explicit consent. Once you have subscribed, you will receive a confirmation email at the email address you provided (known as ‘double opt-in’). You may withdraw your consent at any time. An easy way to do so is, for example, via the unsubscribe link included in every newsletter.

As part of the newsletter subscription process, we store additional data beyond that already mentioned, insofar as this is necessary to enable us to prove that you have subscribed to our newsletter. This may include storing the full IP address at the time of subscription or confirmation of the newsletter, as well as a copy of the confirmation email we sent. The relevant data processing is carried out on the basis of Article 6(1), first sentence, point (f) of the GDPR and in our legitimate interest in being able to account for the lawfulness of the newsletter distribution.

If you subscribe to our newsletter, we will ask you during the subscription process to consent to further newsletter tracking.

If you give us your consent, we will embed individual tracking pixels in our newsletters, which enable us to recognise when the newsletter sent to you has been accessed or opened, and we will personalise the links contained in the newsletter so that we can analyse when you have clicked on which link.

Should you wish to withdraw your consent, please use the link provided in every newsletter to unsubscribe or amend your consent

We use newsletter service providers, as described below, to manage the newsletters:

Brevo

This website also uses Brevo to send newsletters. The provider is Sendinblue GmbH, Köpenicker Straße 126, 10179 Berlin, Germany.

Brevo is a service that can be used, amongst other things, to organise and analyse the sending of newsletters. The data you provide for the purpose of subscribing to the newsletter is stored on the servers of Sendinblue GmbH in Germany.

Data analysis by Brevo

With the help of Brevo, we are able to analyse our newsletter campaigns. This allows us, for example, to see whether a newsletter message has been opened and which links, if any, have been clicked. In this way, we can determine, amongst other things, which links have been clicked particularly often.

We can also identify whether certain predefined actions were carried out after the newsletter was opened or a link was clicked (conversion rate). For example, we can see whether you made a purchase after clicking a link in the newsletter.

Brevo also enables us to group newsletter recipients into different categories (‘clustering’). Newsletter recipients can, for example, be grouped by age, gender or place of residence. This allows us to better tailor the newsletters to the respective target groups.

If you do not wish to be analysed by Brevo, you must unsubscribe from the newsletter. We provide a link for this purpose in every newsletter message.

For detailed information on Brevo’s features, please visit the following link: https://www.brevo.com/de/newsletter-software/.

Retention period

The data you have provided to us for the purpose of subscribing to the newsletter will be stored by us or the newsletter service provider until you unsubscribe from the newsletter, and will be deleted from the newsletter distribution list once you have unsubscribed. Data stored by us for other purposes remains unaffected by this.

After you unsubscribe from the newsletter mailing list, your email address may be stored on a blacklist by us or the newsletter service provider, if this is necessary to prevent future mailings. The data from the blacklist is used solely for this purpose and is not combined with any other data. This serves both your interests and our interest in complying with legal requirements when sending newsletters (legitimate interest within the meaning of Article 6(1)(f) of the GDPR). There is no time limit on storage on the blacklist. You may object to this storage provided that your interests outweigh our legitimate interest.

For further details, please refer to Brevo’s privacy policy at: https://www.brevo.com/de/datenschutz-uebersicht/ and https://www.brevo.com/de/legal/privacypolicy/.

Your rights as a data subject

When your personal data is processed, the GDPR grants you, as a data subject, certain rights:

Right of access (Art. 15 GDPR)
You have the right to request confirmation as to whether personal data concerning you is being processed; if this is the case, you have the right to access this personal data and to the information specified in detail in Article 15 of the GDPR.

Right to rectification (Art. 16 GDPR)
You have the right to request the rectification without delay of any inaccurate personal data concerning you and, where applicable, the completion of any incomplete data.

Right to erasure (Article 17 of the GDPR)
You have the right to request that personal data concerning you be erased without undue delay, provided that one of the grounds set out in detail in Article 17 of the GDPR applies.

Right to restriction of processing (Article 18 of the GDPR)
You have the right to request the restriction of processing if one of the conditions set out in Article 18 of the GDPR applies, for example if you have objected to the processing, for the duration of the review by the controller.

Right to data portability (Article 20 of the GDPR)
In certain cases, as set out in detail in Article 20 of the GDPR, you have the right to receive the personal data concerning you in a structured, commonly used and machine-readable format, or to request that this data be transferred to a third party.

Right to withdraw consent (Article 7 of the GDPR)
Where data processing is based on your consent, you are entitled, in accordance with Article 7(3) of the GDPR, to withdraw your consent to the use of your personal data at any time. Please note that the withdrawal only takes effect for the future. Processing carried out prior to the withdrawal is not affected.

Right to object (Art. 21 GDPR)
Where data is processed on the basis of Article 6(1), first sentence, point (f) of the GDPR (data processing to safeguard legitimate interests) or on the basis of Article 6(1), first sentence, point (e) of the GDPR (data processing for the purposes of the public interest or in the exercise of official authority), you have the right to object to the processing at any time on grounds relating to your particular situation. We will then no longer process the personal data unless there are demonstrable compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves to establish, exercise or defend legal claims.

Right to lodge a complaint with a supervisory authority (Art. 77 GDPR)
In accordance with Article 77 of the GDPR, you have the right to lodge a complaint with a supervisory authority if you consider that the processing of data relating to you infringes data protection regulations. In particular, you may exercise this right to lodge a complaint with a supervisory authority in the Member State of your habitual residence, your place of work or the place where the alleged infringement occurred.

Exercising your rights
Unless otherwise stated above, please contact the body named in the legal notice to exercise your rights as a data subject.

Data Protection Officer

If you have any questions regarding the processing of your personal data, you can contact our Data Protection Officer directly, who is also available to assist with requests for information, applications or complaints.

datenschutz süd GmbH
Wörthstraße 15
97082 Würzburg

Website: https://www.dsn-group.de
Email: office@datenschutz-sued.de

If you contact the Data Protection Officer, please also state the data controller, namely ‘Musiktheater im Revier GmbH’.

If you wish to exercise your data subject rights, please contact us via the following email address: datenschutz@mirgelsenkirchen.de.