Privacy at Cannapot – Everything You Need to Know
Security – SSL (Secure Socket Layer)
The ordering process is transmitted via SSL (Secure Socket Layer). To ensure your data does not fall into the wrong hands, we encrypt it using SSL. Through the SSL procedure, data is transformed before transmission so that it cannot be reconstructed by a third party. This encryption process also ensures that your data is transmitted exclusively to the server from which it was requested.
Privacy Policy
The protection of your personal data is of particular concern to us. We therefore process your data solely based on the legal provisions (GDPR, TKG 2003). In this privacy statement, we inform you about the most important aspects of data processing within the scope of our website.
Information and Rights
Customers generally have the rights of access, rectification, erasure, restriction, data portability, withdrawal, and objection. Please use the contact form for such requests or send your request by post.
Disclosure to Third Parties
We do not disclose personal data, including home and email addresses, to third parties without your express and revocable consent. Exceptions apply to our service partners who require data transfer to process your order (e.g., the shipping company commissioned with the delivery and the credit institution responsible for payment processing). In these cases, the scope of data transmitted is limited to the necessary minimum.
Data Storage
Please note that, for the purpose of simplifying the purchase process and for subsequent contract execution, the webshop operator stores the connection owner's data within the framework of cookies, as well as the buyer’s name, address, and credit card number. Your IP address is not transmitted to our shop system during an order.
The data you provide is required for the performance of the contract or for pre-contractual measures. Without this data, we cannot conclude the contract with you. Data will not be transmitted to third parties, except for transferring credit card data to the processing banking institutions/payment service providers for the purpose of debiting the purchase price, to the shipping company commissioned to deliver the goods, and to our tax consultant to fulfill our tax obligations.
If the purchase process is cancelled, the stored data will be deleted. In the case of a contract conclusion, all data from the contractual relationship will be stored offline only until the expiration of the statutory tax retention period. Data processing is carried out based on the legal provisions of § 96 para. 3 TKG and Article 6 para. 1 lit. a (consent) and/or lit. b (necessary for contract performance) of the GDPR.
Cookies
Our website uses so-called cookies. These are small text files stored on your device with the help of your browser. They do not cause any damage. We use cookies to ensure the proper functionality of our website and to make our services more user-friendly. In addition, we use cookies for analytical purposes only with your explicit consent (see section “Google Analytics”). You can withdraw your consent at any time via the cookie banner or adjust your cookie settings.
If you disable cookies in your browser, the functionality of our website may be limited. In particular, technically necessary cookies are required to ensure basic shop functions such as the shopping cart, login, and checkout process.
Google Analytics
Our website uses Google Analytics 4, a web analytics service provided by Google Ireland Limited (“Google”), Gordon House, Barrow Street, Dublin 4, Ireland. Google Analytics uses cookies that enable an analysis of how you use our website. The use of Google Analytics is based exclusively on your explicit consent in accordance with Art. 6 (1) lit. a GDPR. Without your consent, no data will be transmitted to Google.
We have configured Google Analytics in such a way that:
- your IP address is anonymized
- no direct identification of your person takes place
- only minimal usage data (e.g., page views) is collected
Data processing is carried out solely for the purpose of improving and analyzing our website. You can withdraw your consent at any time via the cookie banner.
Further information can be found at:
https://policies.google.com/privacy
Newsletter
You have the option to subscribe to our newsletter through our website. For this, we require your email address and your consent to receive the newsletter.
Subscription is carried out using the double opt-in procedure. You can unsubscribe from the newsletter at any time using the unsubscribe link provided in each email.
Contact
If you contact us via the website form or by email, the data you provide will be stored for the purpose of processing your inquiry and for possible follow-up questions.
Data is stored for a maximum of six months, but usually for a significantly shorter period. We do not share this data without your consent.
ChatGPT Integration and Data Protection
In addition to our webshop, we offer the digital assistant CannapotGPT based on ChatGPT (OpenAI). This service is used exclusively to provide product information and answer questions about our product range.
When using this service, the data protection policies of the respective provider (OpenAI) also apply. We have no direct influence on the data processing carried out by this external provider.
We do not store any personal data when you use CannapotGPT. The assistant only accesses publicly available product information from our shop (e.g., name, category, description, and price) to respond to user inquiries.