Data protection

Privacy policy mtaudio.eu

1) Responsible person

MT Audio Shop, Owner: Mario Leißner, Amberger Strasse 17, 91224 Pommelsbrunn, Phone: +49 160 7603014, E-Mail: info@mtaudio.eu.
This declaration provides information on the type, scope and purposes of the processing of personal data on mtaudio.eu in accordance with the GDPR and BDSG.

2) Platform and hosting (Shopify)

The store is operated on the Shopify e-commerce platform. Recipient: Shopify International Ltd (Ireland) and affiliated companies including Shopify Inc (Canada/USA). There is a contract for order processing; international data transfers may be based on EU standard contractual clauses. Data processed during store operation: Inventory, contract, order, communication, usage and metadata (e.g. IP address, browser/device, cookie IDs). Purpose: Provision of the store, security, delivery of functions.

3) Processed data categories

  • Inventory/contract data: Name, billing/delivery address, contact details, products ordered.
  • Payment/transaction data: selected payment method, transaction IDs, status.
  • Communication data: Content from contact forms/emails.
  • Usage/metadata: IP address, cookie IDs, device/browser information, access times, server log files.

4) Purposes and legal bases

  • Purchase processing, delivery, customer service: Art. 6 para. 1 lit. b GDPR.
  • Legal obligations (commercial/tax law): Art. 6 para. 1 lit. c GDPR.
  • Legitimate interests (security, prevention of misuse, web operation): Art. 6 para. 1 lit. f GDPR.
  • Measures requiring consent (marketing/tracking such as Google Ads, TikTok): Art. 6 para. 1 lit. a GDPR; revocation at any time.

5) Cookies and consent management

Cookies and similar technologies are used for basic functions, statistics and marketing. Technologies that are not technically necessary are only loaded after consent has been given via the consent banner; consent can be revoked there at any time. The banner shows providers, purposes, runtimes and cookies per service.

6) Customer account and orders

A customer account can be created; data stored there (master data, order history) can be managed or deleted; statutory retention periods remain unaffected. Orders without an account are processed to fulfill the contract.

7) Payment service provider

Payments are processed via external payment services; these are independent controllers whose data protection notices apply. The processing serves to process payments, including identity/credit checks where applicable. Legal basis: Art. 6 para. 1 lit. b GDPR; in the case of credit checks, Art. 6 para. 1 lit. f GDPR or lit. a GDPR, depending on the configuration. Services used: PayPal, Klarna, Amazon Pay, credit card (e.g. VISA, possibly other cards), prepayment/bank transfer.

8) Shipping service provider

For delivery, the name, delivery address and - if necessary for delivery/shipment tracking - e-mail/telephone are transmitted to the carriers used. Legal basis: Art. 6 para. 1 lit. b GDPR. Used: DHL, GLS, UPS, freight forwarder.

9) Analysis, marketing and sales channels

  • Google & YouTube / Google Ads (conversion/remarketing): Use only after consent via the consent banner. Processed data: Cookie IDs/online identifiers, IP address, event data (e.g. conversions), product feed data if applicable. Recipient: Google Ireland Limited; if necessary, transmission to Google LLC (USA) on the basis of suitable guarantees. Legal basis: Art. 6 para. 1 lit. a GDPR.
  • TikTok (pixel/events): Use only with consent, recipient: TikTok Technology Limited, possibly third countries.

10) Google Ads Customer Match

We use the "Google Ads Customer Match" function for online marketing. For this purpose, lists with encrypted (hashed) user data (e.g. email addresses) are only transmitted to Google after express consent has been given in the consent banner. Google compares this encrypted data in order to display personalized advertising via linked Google accounts. The data is deleted by Google after the comparison. The transfer takes place in accordance with Art. 45 para. 1 GDPR on the basis of the EU-U.S. Data Privacy Framework or EU standard contractual clauses. Consent can be revoked at any time. More on data processing: Google Privacy Policy.

11) Consent management

We use Consentmo GDPR Compliance for consent management (cookie banner). Processed: Consent status, device/browser information, pseudonymous IDs if applicable. Legal basis: Art. 6 para. 1 lit. c GDPR and lit. f GDPR.

12) Newsletter dispatch with Klaviyo

  • Registration/double opt-in; revocation at any time via unsubscribe link. Legal basis: Art. 6 para. 1 lit. a GDPR; logging in accordance with Art. 6 para. 1 lit. f GDPR.
  • Service provider: Klaviyo, Inc, Boston, MA, USA (EU support). Data: Email, name, opt-in time/IP, interactions, segments, store events for campaigns. Third country transfer: EU standard contractual clauses. Storage period: until revocation, then blacklist.

13) Evaluation and trust services

  • Trusted Shops: Integration of the seal of approval, buyer protection, evaluation functions, invitations. Legal basis: legitimate interest or consent.
  • Judge.me Reviews: Product reviews and invitations, verification with order/contact data. Legal basis: legitimate interest or consent.

14) Shop functions and apps

  • XCloud Search & Filter; Search & Discovery: Search, filtering, recommendations.
  • EB Easy Bundle Builder, Bundles, qikify BOGO FreeGift, PreOrder Globo, Hextom Bulk Product Edit: Product and order data for store functions.
  • Orderly Emails, Order Printer Pro: Transactional emails and documents.
  • Inbox, Email, Powerful Form Builder: Communication, customized and automated forms.
  • Translate & Adapt; langify: Translations of store content.
  • Progus Store Locator, POWR Map Store Locator, S: Store Locator: Location displays, IP/map data if applicable.
  • Channable: Product/data feeds, eBay integration DPL: Interfaces to marketplaces. Sitemap NoIndex Pro SEO: Sitemap management.
  • GPSR Compliance Manager: Product compliance data. Essential Announcer, Instafeed, Flair Product Badges & Labels, Delivery Timer: Marketing/shop features.
  • Lexware Office, OneMobile, Theme Access, BAIS Bulk Account Invites Send, FAQ Page & Help Center Pro: technical/organizational store functions.

15) Social Media

  • Facebook & Instagram, Google & YouTube: Marketing channels, tracking only after consent.

16) Transfer to processors and third parties

Data is transferred to processors and controllers in accordance with legal requirements; international transfers are made on the basis of suitable guarantees (EU standard contractual clauses).

17) Storage period

Contract/tax-relevant data in accordance with the law, otherwise deletion after the purpose has ceased to apply. Details for each service can be found in the consent banner.

18) Security

Technical/organizational measures in accordance with Art. 32 GDPR (TLS/SSL, access and authorization concepts).

19) Rights of data subjects

Rights to information, rectification, erasure, restriction, data portability, objection. Consent can be revoked at any time. Right to lodge a complaint with a supervisory authority. Contact via the address given in the legal notice.

20) Mandatory information and voluntariness

Mandatory information is required for the conclusion of the contract. Voluntary information and consent can be revoked at any time.

21) Updates

This privacy policy is updated on an ongoing basis to reflect current processes, apps and legal situations. The version published on this page is valid.


Sources / Sources / Fonti

  • German: Data privacy template generators, Shopify Datenschutz, Consentmo GDPR, eRecht24, Trusted Shops, Klaviyo, Google Policies
  • English: Data privacy template generators, Shopify Privacy Policy, Consentmo GDPR, Trusted Shops, Klaviyo, Google Policies
  • Français : Générateurs de politique de confidentialité, Politique de confidentialité Shopify, Consentmo GDPR, Trusted Shops, Klaviyo, Google Policies
  • Italiano : Generatori di privacy policy, Informativa Shopify, Consentmo GDPR, Trusted Shops, Klaviyo, Google Policies