Privacy policy
Information on the processing of personal data on the Smarfie websites.
1. Controller
Controller under the GDPR:
Handelskontor Fieberg GmbH
Dornenbusch 21
32805 Horn-Bad Meinberg
Brand: Smarfie (smarfie.com / smarfie.de)
Contact: via our contact form
Further details: Legal notice
2. Contact / contact form
If you contact us via the contact form on this website, we process the data you enter in order to handle and reply to your request.
Data processed (depending on your input):
- Name
- Email address (for replies only; not published)
- Subject and message content
- technical metadata for spam protection (e.g. time of use, IP address, security checks)
Purposes: communication, handling your request, abuse and spam protection.
Legal bases:
Art. 6(1)(b) GDPR (pre-contractual/contractual communication where applicable)
and Art. 6(1)(f) GDPR (legitimate interest in being reachable, documentation and spam protection).
Where you confirm before sending that you have read and understood this privacy policy,
this supports transparency and documentation; processing of the request itself relies on the legal bases above.
Recipients: The message is delivered to an internally configured recipient address (not published on the website). Processors used where applicable (e.g. hosting/mail providers) process data only on instruction.
Retention: Requests and related metadata are stored only as long as needed to handle the enquiry and any follow-up, and otherwise within statutory retention or limitation periods. Suspected spam access may be stored briefly for defence purposes.
Mandatory fields: Fields marked * are required to process your request. Without them we cannot reply.
3. Shop, account and orders
For registration, login, cart, checkout and withdrawal we process the order, address and contact data required for that purpose, as well as payment data via the relevant payment provider (e.g. PayPal). Legal bases are in particular Art. 6(1)(b) and (c) GDPR.
4. Server log files and security
When you access the website, technically necessary server log data (e.g. IP address, time, requested URL, user agent) may be processed to ensure operation, stability and security (Art. 6(1)(f) GDPR).
5. Cookies and local storage
Where technically necessary features (e.g. session, cart, theme/guide settings in the browser) use local storage, this is done to provide the function you requested (Art. 6(1)(b) or (f) GDPR). We do not currently use non-essential tracking cookies.
6. Your rights
Under the GDPR you have rights of access, rectification, erasure, restriction of processing, data portability and objection to processing based on Art. 6(1)(f) GDPR, as applicable. You may also lodge a complaint with a supervisory authority.
To exercise your rights, please use the contact form.