Data protection
General Information

Data protection and data security are of great importance to PROTECT.Ing and our organization. Transparency regarding the processing of your personal data, as well as the protection of your data, are therefore particularly important to us.

With this statement, we provide you with an overview of how personal data is collected and processed when you use our website, and what you can do to better protect your data.

Responsible for Data Processing

Heidelberg University Hospital
Im Neuenheimer Feld 672, 69120 Heidelberg, Germany
A public-law institution represented by the Board of Heidelberg University Hospital
Phone: +49 6221 56-0, Fax: +49 6221 56-5999, Email:

Data Protection Officer

Heidelberg University Hospital
Data Protection Officer
Im Neuenheimer Feld 672, 69120 Heidelberg, Germany
Phone: +49 6221 56-7036, Email:

Data Protection on This Website
What Are Personal Data?

Personal data refers to any information relating to an identified or identifiable natural person. The decisive factor is whether the data collected can be linked to an individual. This includes information such as your name, address, telephone number, or email address.
Information that cannot be directly associated with your real identity—such as preferred websites or the number of users visiting a page—is not considered personal data.

How Do We Collect and Process Your Personal Data?

When you visit our websites, our web servers automatically and temporarily store connection data of the requesting computer for system security purposes. This includes the web pages you access on our site, the date and duration of your visit, identification data of the browser and operating system used, as well as the website from which you accessed our site.

Additional personal information such as your name, address, telephone number, or email address is not collected unless you provide this data voluntarily—for example, as part of a registration, a survey, or an information request.

How Do We Use Your Personal Data and Share It With Others?

If the website offers the option to enter personal or business data (such as email addresses, names, addresses), the disclosure of such data by the user is expressly voluntary. Emails are sent via a contact form. When you send us such a message, your personal data will only be collected to the extent necessary to respond. The email is transmitted unencrypted.

The personal data you provide is used exclusively for the technical administration of the website and to fulfill your requests and requirements, typically to respond to your inquiry.

Your personal data will not be passed on, sold, or otherwise transmitted to third parties unless this is necessary for contract processing or you have given your explicit consent.

Any consent given can be revoked at any time with effect for the future.

How Long Is Your Data Stored?

As a general rule, we store all information you provide to us until the respective purpose, such as contractual obligations, has been fulfilled. For example, in the case of inquiries, we keep the data until the matter is resolved; for newsletters, until you unsubscribe. If longer storage is required by law, the data will be retained within that legal framework.

If you no longer wish for us to use your data, we will of course comply with your request immediately (please contact us at the address provided under “Contact”).

When Will Your Data Be Deleted?

The deletion of stored personal data takes place when you revoke your consent to storage, when the knowledge of the data is no longer necessary to fulfill the purpose for which it was stored, or when storage is otherwise prohibited by law. Data required for billing and accounting purposes is not affected by a deletion request.

Use of Cookies

This website does not use user-related cookies.

Web Analytics with Matomo (Without Cookies)

This website uses Matomo, an open-source web analytics software, for statistical analysis of visitor traffic. The analysis is performed entirely without the use of cookies. IP addresses are anonymized before storage, so that no conclusions can be drawn about individual persons. The data processing is based on our legitimate interest in optimizing our website in accordance with Article 6(1)(f) of the GDPR. Since all data is processed exclusively on our own servers and is not shared with third parties, the highest level of protection for your personal data is ensured.

What Measures Do We Take to Ensure the Security of Data Processing?

Our company implements all necessary technical and organizational security measures to protect your personal data against loss and misuse. Your data is stored in a secure operating environment that is not accessible to the public. In certain cases, your personal data is encrypted during transmission using Secure Socket Layer (SSL) technology. This means that communication between your computer and our company’s servers takes place using a recognized encryption method, provided your browser supports SSL.

Legal Basis for Data Processing

Where we obtain consent from the data subject for processing personal data, Article 6(1)(a) of the EU General Data Protection Regulation (GDPR) serves as the legal basis.

For the processing of personal data that is necessary to fulfill a contract to which the data subject is a party, Article 6(1)(b) GDPR serves as the legal basis. This also applies to processing operations required to take pre-contractual measures.

Where processing of personal data is necessary to comply with a legal obligation to which our company is subject, Article 6(1)(c) GDPR serves as the legal basis.

In cases where processing of personal data is necessary to protect the vital interests of the data subject or another natural person, Article 6(1)(d) GDPR serves as the legal basis.

If processing is necessary to protect the legitimate interests of our company or a third party, and the interests, fundamental rights, and freedoms of the data subject do not override the former, Article 6(1)(f) GDPR serves as the legal basis for processing. Legitimate interests include, in particular, ensuring the operation and security of the website, analyzing how visitors use the website, and facilitating the use of the website.

Your Data Protection Rights

Under the applicable legal provisions, you have the right at any time to receive free information about your stored personal data, its origin, possible recipients, and the purpose of the data processing (Art. 15 GDPR), as well as, if applicable, the right to rectification of inaccurate data (Art. 16 GDPR), deletion of this data (Art. 17 GDPR), restriction of processing (Art. 18 GDPR), objection (Art. 21 GDPR), and the right to data portability of data you have provided (Art. 20 GDPR). Restrictions apply to the right of access and the right to deletion according to §§ 34 and 35 of the German Federal Data Protection Act (BDSG).

Furthermore, in the event of data protection violations, you have the right to lodge a complaint with the competent supervisory authority (Art. 77 GDPR in conjunction with §19 BDSG). The competent supervisory authority for data protection matters is the State Data Protection Officer of the federal state in which our company is based. A list of data protection authorities and their contact details can be found at the following link:
https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html.

How to Withdraw Your Consent to Data Processing

Many data processing operations are only possible with your explicit consent. You can revoke any consent you have previously given at any time. A simple informal notification by email to us is sufficient for this. The lawfulness of the data processing carried out up to the point of revocation remains unaffected by the withdrawal.

Changes to This Privacy Policy

Changes may be made to this privacy notice, which will be announced on this page in a timely manner.

Last updated: May 18, 2018

Lorem Ipsum.
de