Privacy Policy

1. Data protection at a glance

General notes

The following notes provide a simple overview of what happens to your personal data when you visit this website. Personal data means any data that can be used to personally identify you. For detailed information on data protection, please refer to the privacy policy listed below.

Data collection on this website

Who is responsible for data collection on this website?
Data processing on this website is carried out by the website operator. Their contact details can be found in the section “Information on the responsible party” in this privacy policy.

How do we collect your data?
Some data is collected when you share it with us, for example, data you enter in a contact form.
Other data is collected automatically or based on your consent when visiting the website through our IT systems. This includes mainly technical data (e.g. internet browser, operating system, or time of page access). The collection of this data happens automatically as soon as you access the website.

What do we use your data for?
A portion of the data is used to ensure the website’s proper operation. Other data may be used to analyze your user behavior.

What rights do you have regarding your data?
You have the right to obtain free information at any time about the origin, recipients, and purpose of your stored personal data. You also have the right to request correction or deletion of these data. If you have given consent to data processing, you may withdraw it at any time for the future. Further, you have the right to request restriction of processing under certain conditions and the right to file a complaint with the competent supervisory authority.

For these or other matters related to data protection, you can contact us at any time.

2. Hosting

Our website is hosted by the following provider:

Strato
Provider: Strato AG, Otto-Ostrowski-Str. 7, 10249 Berlin, Germany.
When visiting our website, Strato collects various log files including IP addresses.
More details are available in Strato’s privacy policy: https://www.strato.de/datenschutz/.

Use of Strato is based on Art. 6(1)(f) GDPR. We have a legitimate interest in the reliable presentation of our website. If consent has been requested, processing is based exclusively on Art. 6(1)(a) GDPR and §25(1) TTDSG, provided the consent includes the storage of cookies or access to user device information (e.g. device fingerprinting). Consent may be withdrawn at any time.

Data Processing Agreement (DPA)
We have concluded a Data Processing Agreement (DPA) with Strato. This mandatory legal agreement ensures that Strato processes personal data of our website visitors only according to our instructions and in compliance with the GDPR.

3. General information and mandatory notes

Data protection

The operators of this website take the protection of your personal data very seriously. We treat your personal data confidentially and in accordance with applicable data protection regulations and this privacy policy.

When you use this website, various personal data are collected. This document explains what data we collect and what we use it for. It also explains how and for what purpose this happens.

Please note that internet-based data transmission (e.g. communication via email) may have security vulnerabilities. Complete protection of data from unauthorized access by third parties is not possible.

Information about the responsible entity

Responsible for data processing on this website:
Dr. med. Hein Reuter
General Practitioner
Höhestraße 19
61348 Bad Homburg v. d. Höhe

Phone: +49 6172 685280
Email: praxis@heinreuter.de

The responsible entity is the natural or legal person who decides, alone or jointly with others, on the purposes and means of processing personal data (e.g. names, email addresses, etc.).

Storage duration

Unless a more specific storage period has been set, your personal data remains with us until the purpose for data processing no longer applies. If you request deletion or withdraw consent, your data will be deleted except where legal obligations (e.g. tax or commercial recordkeeping) require otherwise.

Legal bases for processing

If you have consented, we process your data on the basis of Art. 6(1)(a) or Art. 9(2)(a) GDPR (for special categories of data). For international transfers based on consent, Art. 49(1)(a) GDPR applies. Consent-based device access is additionally subject to §25(1) TTDSG. Consent can be withdrawn at any time.
If data are necessary for contract fulfillment or pre-contractual measures, we process them according to Art. 6(1)(b) GDPR.
If legally required, processing occurs under Art. 6(1)(c); if based on legitimate interest, under Art. 6(1)(f) GDPR.

Recipients of personal data

We may share data with external service providers when necessary for contractual tasks, legal duties, or legitimate interests, always under valid processing agreements ensuring GDPR compliance.

Withdrawal of consent

You may withdraw consent at any time. The withdrawal does not affect past processing legally carried out based on consent.

Right to object under Art. 21 GDPR

You may object at any time to processing based on Art. 6(1)(e) or (f) GDPR for reasons arising from your particular situation. If you object, we will stop the processing unless compelling legitimate grounds override your interests or the processing serves legal claims.
If your data are processed for direct marketing, you may object anytime, including related profiling; processing for those purposes will then cease.

Right to complain

You have the right to lodge a complaint with the competent supervisory authority if GDPR violations occur, without prejudice to other remedies.

Data portability

You may request your data, processed via automated means based on consent or contract, in a common machine-readable format.

Access, correction, deletion, restriction

You have the right to access, correct, or delete your personal data, within legal limits, and to request restriction under certain circumstances (e.g. disputes about accuracy, pending legal claims).

SSL/TLS encryption

For security reasons and to protect transmission of confidential content (like inquiries), this site uses SSL/TLS encryption. You can recognize an encrypted connection by the “https://” and the padlock icon in your browser bar.

Objection to advertising emails

We expressly prohibit the use of contact data published under legal notice obligations for sending unsolicited advertising or materials. The website operators reserve the right to take legal action against unsolicited advertising (e.g. spam emails).

4. Data collection on this website

Cookies

Our website uses cookies. Cookies are small data packages stored either temporarily (session cookies) or permanently. They are harmless and help provide various website functions. Necessary cookies (e.g. shopping cart, analytics) are stored under Art. 6(1)(f) GDPR.

You can configure your browser to inform you when cookies are stored and to allow them only in specific cases. Disabling cookies may limit some website functions.

For details, see the cookie section of this privacy policy.

Cookie banner

We use the consent management tool “Real Cookie Banner.” For technical details visit: https://devowl.io/de/rcb/datenverarbeitung/.

Processing relies on Art. 6(1)(c) and (f) GDPR to manage cookie consents efficiently.

Server log files

The website provider automatically collects and stores information in server log files, transmitted automatically by your browser, such as browser type/version, operating system, referrer URL, host name, time of request, and IP address. These data are not merged with other sources and are collected under Art. 6(1)(f) GDPR to ensure technical performance.

Contact form

If you contact us via the form, your details are stored for handling your request and follow-up questions. These data are not shared without your consent. Processing occurs under Art. 6(1)(b) GDPR for contractual requests or under Art. 6(1)(f) GDPR for general inquiries based on legitimate interest. Data remain until deletion or withdrawal.

5. Newsletter

Newsletter data

To receive our newsletter, we need your email address and consent confirmation. Data are used solely for the newsletter and never shared. Processing is based on your consent (Art. 6(1)(a) GDPR), which you can revoke anytime. Upon unsubscribing, your email will be deleted or stored in a blacklist to prevent future emails per Art. 6(1)(f) GDPR.

6. Plugins and tools

YouTube (enhanced privacy mode)

This site embeds YouTube videos operated by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. When visiting a page with an embedded video, YouTube’s servers are connected and informed which pages you have visited.

We use YouTube’s enhanced privacy mode: no cookies are set, but local storage items may collect data. Read more at:
https://support.google.com/youtube/answer/171780.
YouTube operates under the EU-US Data Privacy Framework: View certification.

Google Fonts (local hosting)

This page uses Google Fonts, locally hosted to ensure consistent typographic design without connecting to Google’s servers.
More details: Google Fonts FAQ and Google Privacy Policy.