Sign Up

Privacy Policy

We, the Jimdo GmbH (hereinafter referred to as “Jimdo” or “we”) via this Privacy Policy wish to hereby inform Jimdo users and visitors of our websites as to the purpose, type and extent of the processing of personal information. The responsible body for this data processing within the meaning of the European General Data Protection Regulation 2016/679 (GDPR) is the Jimdo GmbH, Stresemannstrasse 375, 22761 Hamburg, Germany (privacy@jimdo.com).

Our websites and services are constantly being revised and improved. Corresponding thereto, this Privacy Policy shall regularly be revised and updated. This applies in particular to those procedures used by us to carry out usage analysis, as well as those used to measure the effectiveness of advertising methods and comparable services, in particular those belonging to third parties. The current status of each of these services can be found in the tabulation located at the end of this Privacy Policy statement.

We would also like to note the following as regards to the usage of service providers located outside of the European Union: Jimdo is a service that is offered internationally. Thus, it extends not only beyond the federal republic of Germany, but also beyond the European Union. We operate worldwide and our users are scattered across this planet. Generally we give priority to European service providers when selecting particular services and service offerings, especially where such providers can deliver the required services at a comparable and competitive price and service level. However, we also wish to be completely transparent. For many of the services that we use there is simply no comparable, acceptable alternative. As a result we therefore employ the use of a range of service providers outside the European Union, in particular from the USA. We take steps to ensure that measures according to European Data Protection law are taken and applied so as to guarantee an adequate level of data protection.

Usage of Personal Data

We collect, process and use personal data (in accordance with the definitions of the German Federal Data Processing Law) and the European General Data Protection Regulation (GDPR) in order to provide our services. The promotion of our products and provision of information as regards product functions etc. to Jimdo Users as well as other interested parties is a natural component thereof. The scope of the processing of the personal data concerned depends on whether our websites are merely being visited or alternatively being used by a Jimdo User or more specifically if a registration as a user takes place.

Children’s Privacy

Our websites are generally accessible websites and not intended for children. We do not knowingly collect personal information from users who are considered to be children under their respective national laws.

The processing of personal data

The Purposes of Processing by Jimdo

Jimdo uses the personal data of the Jimdo user to fulfill the contract with the Jimdo user, as well as to provide our services (Article 6 (1) (b) GDPR), to comply with our legal obligations (Article 6 (1) (c) GDPR) and/or to protect the vital interests of the Jimdo user (Article 6 (1) (d) GDPR).

This includes the following cases:

  • to ensure access to and use of our Services (including billing), in particular to post advertisements and other User Content, and to measure and improve the quality and success of our Services, to keep our Services secure and operational and to adapt the content of the website and services to what Jimdo users might like based on the actions taken by the Jimdo user;

  • to contact the Jimdo user regarding their account by email, fax or live chat, troubleshoot account issues, resolve disputes, enforce fee claims, or provide other necessary customer services;

  • to detect, prevent and investigate fraud, security breaches or other potentially prohibited or unlawful activities;

  • to enforce our Terms of Service, this Privacy Policy or other policies.

Jimdo uses the personal data of the Jimdo user in order to pursue its legitimate interests, provided the interests or fundamental rights and freedoms of the Jimdo user do not predominate (Article 6 (1) (f) GDPR). We have introduced appropriate controls, in order to reconcile our interests with the rights of the Jimdo user. On this basis, we use the data as follows:

  • to improve our services, e.g. by reviewing information related to blocked or crashed pages, so we can identify and fix issues and provide a better user experience;

  • to personalize, measure and improve our advertising based on what the Jimdo user might like;

  • to contact the Jimdo user by e-mail or mail under applicable law, to offer coupons, discounts and promotions, to collect their opinion through surveys or questionnaires, and to inform the Jimdo user about the Jimdo services;

  • to provide Jimdo users with targeted marketing, service updates and promotional offers that they may enjoy;

  • to verify the quality and success of our email marketing campaigns (for example, by analyzing opening and click rates);

  • to monitor and improve the information security of our services.

With the consent of the Jimdo user (Article 6 (1) (a) GDPR) we may use their personal data:

  • to provide advertising via email;

  • to provide advertising from third parties;

We limit the amount of personal information we share and process to what is directly relevant and necessary to achieve the stated purpose.

What Information do we Save?

Information provided by the Jimdo user when creating an account and entering into a contract with Jimdo:

When registering for a Jimdo website, it is necessary to provide an email address and password and to create a user account. The username can be published as part of the system-generated subdomain or web address. The email address is used, among other things, to send notifications about the Jimdo website to the Jimdo user. These include e.g. credentials, announcements, information, etc. For certain fee-based packages and / or certain functions, e.g. the shop, the input of further contact information and payment information is necessary. The exact data that is collected in each specific case can be reviewed via the respective input forms. A deletion of the user account is possible at any time and can be carried out by the user directly in their user account or via sending a message to Jimdo (privacy@jimdo.com).

Legal basis: Article 6 (1) (b) GDPR

Sign-in with Facebook and Google+

Facebook Connect

If a Jimdo user has a Facebook profile, they can visit our website to create a user account or to register using the social plugin "Facebook Connect" of the social network Facebook, published by Facebook Inc., 1 Hacker Way, Menlo Park, CA 94025, USA ("Facebook"), under the so-called single sign-on technique.

Google+

Any Jimdo user that has a Google+ account may create a customer account or register using the social plug-in "Google+ Sign-In" of the social network Google+, published by Google LLC, 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (" Google+ "), as part of the so-called single sign-on technology.

The Data Processing via Single Sign-On

When the page visitor visits a page of our website that contains such a plugin, his browser establishes a direct connection to the Facebook or the Google+ servers. The content of the plugin is transmitted by Facebook or Google+ directly to the browser and integrated into the page. Through this integration, Facebook or Google+ receives the information that the browser has accessed the corresponding page of our website, even if the visitor / user does not have a Facebook or Google+ profile or is currently not logged in to those profiles. This information (including the IP address) is transmitted by the browser directly to a Facebook or Google+ server in the USA and stored there.

*Legal Basis: *
These data processing operations are carried out in accordance with Article 6(1)(f) GDPR based on the legitimate interest of Facebook or Google+ in the display of personalized advertising based on the surfing behavior.

Jimdo shall receive access to the general and public accessible information stored in the respective Facebook/Google+ profile(depending on the personal data settings of the user’s Facebook/Google+ profile), if the user, prior to the registration process provides their express consent to Facebook/Google+, in accordance with Article 6(1) (a) GDPR. This information can include the user ID, name, profile picture and age.

The data provided by Facebook/Google+ are stored and processed by us to create a user account for the Jimdo user. We only use the data that are necessary to create a user account and only if they have been released by the user via Facebook/Google+. This can include a salutation, first name, last name, address data, country, email address. Conversely, based on the user’s Facebook/Google+ profile, consent, data (such as information about browsing or buying behavior) may be transmitted by us to Facebook/Google+. Where the user deletes this data or removes permission for Jimdo to receive this data via Facebook or Google+, Jimdo shall immediately block the webpage that has been created with the data and in accordance with the deletion note below, delete the data where no statutory obligations prevent the deletion.

Facebook Inc. and Google LLC participate in and have both certified their compliance with the EU-U.S. Privacy Shield Framework. The purpose and scope of the data collection and the further processing and use of the data by Facebook/Google+ as well as the related rights and setting options for the protection of privacy can be found in Facebook's Privacy Policy / or in the Google+ Privacy Policy.

If the user does not want Facebook/Google+ to directly associate the data collected via our website with their Facebook/Google+ profile, they must first log out of Facebook/Google+ before visiting our website. The visitor can completely prevent the loading of the Facebook/Google+ plugins with add-ons for the browser, e.g. with "Adblock Plus".

Use of Payment Service Providers

Jimdo processes payments made by the Jimdo user via the following payment service providers:

  • Paypal, PayPal (Europe) S.a.r.l. et Cie, S.C.A., 22-24 Boulevard Royal, L-2449 Luxembourg.

  • Stripe, Stripe Payments Europe Ltd, Block 4, Harcourt Centre, Harcourt Road, Dublin 2, Ireland.

  • Global Collect, Global Collect Service B.V., Planetenweg 43 - 59, 2132 HM Hoofddorp, The Netherlands.

In order to process payments certain data from your order has to be transmitted to the payment processor/provider and the exact details shall depend on the payment method chosen by the Jimdo user. The transmitted data is limited to what is strictly necessary in order for the payment to be carried out and can include the user’s name, address, bank account number, bank identification code, credit card number, invoice amount, currency and the transaction number. The legal basis for this processing is: Article 6 (1) (b) GDPR. The relevant privacy policies of the various payment processors as well as further information to your rights in relation to the processing can be found in the table at the end of this Privacy Policy.

Information (Log-Information) regarding the Use of a Jimdo Website

When users are logged into their Jimdo website, the Jimdo server automatically collects and composes an activity log which logs the general way in which Jimdo is used. This log includes information regarding the activity (including used storage space, number of logins, etc.), statistical data (such as e.g. browser type, date and time of access, cookies id and referrer URL) as well as the IP address of the Jimdo-user. However, it does not track what changes have been made to a Jimdo page. For example, when and where content has been created, modified or deleted on the website.

When you visit a Jimdo website (jimdo.com, your own Jimdo site, or websites of Jimdo users), the Jimdo server automatically saves the information that your browser sends whenever you visit that site. This information includes your request, IP address, browser type and language, and the date and time of your request.

All of the above information is used for analyzing and maintaining the technical operation of the servers and network as well as assisting our anti-abuse measures as a whole, pursuant to Article 6 (1) (f) GDPR and our legitimate interest in improving the stability and functionality of our websites. Log-Information is automatically deleted after 7 days.

Third-Party Services and Tools

Cookies

Cookies are tiny text files stored on your computer. Generally, cookies are stored for the duration of the current session, i.e. until you close your browser, but in some cases they are stored longer than this. A more comprehensive overview of the cookies we use, especially the third-party cookies of the services listed in this Privacy Policy, their purpose and our legal basis for their use, as well as the possibility to object to the processing and collecting of data via cookies (i.e. to opt out) can be found in the Jimdo Cookie policy.

The Jimdo user may refuse the use of third-party cookies via the Jimdo Cookie policy or alternatively via the. Digital Advertising Alliance website: http://www.aboutads.info/choices

The deactivation of some cookies can impact the delivery and quality of our webpages.

A more comprehensive overview, as well contact details and the privacy policies of the third-party services we use can be found in the tabular list at the end of this Privacy Policy.

We would like to inform you separately about the following services:

A note on all Google services used by Jimdo:

The website, www.jimdo.com uses diverse services from the American company, Google LLC. These services include Google Analytics, Google Adwords, Google Tag Manager, Google Search Console, Google reCaptcha, Google Fonts and Google Maps.

Google LLC (hereinafter referred to as Google) is certified under both the EU-U.S. and Swiss-U.S. Privacy Shield frameworks and their certifications can be viewed on the Privacy Shield list. Jimdo has of course signed a data processing agreement with Google for the utilization of the various Google tools and services listed above.

Website Analysis Services

Based on our legitimate interests in the analysis, optimization, and economic operation of our online offer we use the following website analytics services:

Google Universal Analytics:

Jimdo uses Google Analytics a web analytics service provided by Google for www.jimdo.com websites as well as where activated for the websites of our Jimdo users.

Google Analytics stores cookies on your computer which allow you to analyze the surfing patterns of visitors to your website. We only use Google Analytics with activated IP anonymization. This means that the IP address of the users will be shortened by Google within member states of the European Union or in other contracting states of the Agreement on the European Economic Area. Only in exceptional cases will the full IP address be sent to a Google server in the US and shortened there.

Google will use this information to evaluate your use of the website, to compile reports on website activity for website operators and to report other website activity and internet-related services. If required by law, Google will pass along this information to third parties. Google will also pass along data to third parties for processing, provided this processing is done on behalf of Google. Under no circumstances shall Google connect your IP address with any other data held by Google. If you wish, you can adjust your browser settings so as to refuse cookies. Please bear in mind, however, that if you refuse all cookies, you will not necessarily have access to all functions of this website. By using this site, you consent to the processing of your data by Google as described above, for the aforementioned purpose.

You can prevent data collection via Google Analytics by clicking this link: Opt-Out-Link

An "Opt-out Cookie" shall then be applied to your website which shall prevent any future collection of your data when visiting this website.

Additional information on how Google handles personal data in its advertising network can be found here: Advertising and Privacy.

Google Tag Manager

Jimdo also uses Google Tag Manager, a solution operated by Google LLC (Google), that allows Jimdo to manage so-called website tags(including, for example, Google Analytics and other Google marketing services in our online offering) using an interface. The tag manager itself (which implements the tags) does not process users' personal data. With regard to the processing of users' personal data, reference is made to the following information about Google's services.

Usage Policy: https://www.google.com/analytics/tag-manager/use-policy/.

Bunchbox

Jimdo uses the web analysis service Bunchbox, from Peaks & Pies, to carry out A / B and multivariate tests. This service uses cookies to identify a visitor's browser and to analyze the use of this website. The cookies do not collect personal information. More information on how Peaks & Pies processes this data can be found in the Peaks & Pies Privacy Policy. The Bunchbox Tracking or Tracking Cookie can be set at any time via the Jimdo cookie settings.

Hotjar

Jimdo uses the web analysis service Hotjar on www.jimdo.com websites.

With this tool, movements on the websites (so-called heat maps) can be understood and thereby, feedback to be obtained directly from the users of the website. Hotjar allows Jimdo to gain valuable information regarding the use of our websites so that we can make our websites faster and more customer-friendly. The portions of our websites where personally identifiable information is displayed/entered by the Jimdo user or third parties, are automatically hidden from Hotjar and are therefore not traceable.

By visiting Hotjar's opt-out page and clicking on the option “Deactivate Hotjar” you can prevent Hotjar from collecting your data on Jimdo websites. This deactivation is possible at any time. For details about data processing by Hotjar, please refer to https://www.hotjar.com/privacy.

Retargeting / Remarketing / Referral Advertising / Conversion Tracking / Online Marketing

Based on the legitimate interest in the analysis, optimization and economic operation of our online offer, as well as in analyzing user behavior in order to optimize both the Jimdo website and the Jimdo advertising, as well as where necessary, based on explicit consent Jimdo uses the following online marketing services.

Jimdo uses the following online marketing services.

Facebook Custom Audience via Facebook Pixel

Jimdo uses the so-called "Facebook Pixel" on www.jimdo.com websites. “Facebook Pixel” is a product of the social network Facebook.

In the case of explicit consent (via Facebook settings), this may track the behavior of users after they have seen or clicked on a Facebook ad. This process is designed to evaluate the effectiveness of Facebook advertisements for statistical and market research purposes and may help to optimize future advertising efforts.

The data collected is anonymous to Jimdo, and Jimdo cannot determine the identity of the users. The data is however stored and processed by Facebook, so that a connection to the respective user profile is possible and Facebook can use the data for its own advertising purposes, according to the Facebook privacy policy and the Facebook user’s profile settings (). To disable the third-party cookie set by Facebook pixel visit the Digital Advertising Alliance website: http://www.aboutads.info/choices

Google AdWords and Google AdWords Remarketing

Jimdo uses Google AdWords, an analytics service provided by Google, and Google AdWords, conversion tracking, as well as Google AdWords Remarketing on our www.jimdo.com website.

Google AdWords stores a cookie for conversion tracking on the computer's hard drive (so-called "conversion cookie") when the site visitor clicks on a Google-served ad. These cookies lose their validity after 30 days and are not used for personal identification. When certain pages are visited on our website, Google and Jimdo may recognize that the page visitor has clicked on the ad and has been redirected to this page.

The information obtained through the conversion cookies is used to generate statistics for AdWords customers who use conversion tracking. These statistics tell us the total number of users who clicked on the ad served by Google and viewed a page with a conversion tracking tag. More information about Google AdWords Terms of Service and Privacy can be found here.

With Google AdWords Remarketing, Google sets a cookie in the terminal's browser, which automatically enables interest-based advertising by means of a pseudonymous cookie ID and based on the pages visited by the Jimdo user / page visitor. If the user has consented to sharing his web history with Google, then Google can use the history of the visit to the Jimdo website, along with the Google analytics data and the Google AdWords data in order to create targeted audiences for cross device remarketing. The user can permanently disable the setting of such cookies by installing the browser plug-in available at the following link: https://www.google.com/settings/ads/onweb/

Google AdWords and Google DoubleClick

Jimdo also uses the cross-device capabilities of Google AdWords and Google DoubleClick from the provider Google Inc., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA.

This feature allows the Google Analytics remarketing ad groups described above, to be linked to the cross-device features of Google AdWords and Google DoubleClick. In this way, interest-based, personalized advertising messages that have been adapted to the particular user based on their previous usage and browsing behavior on one terminal (e.g., cell phone) may also be displayed on another user's terminal (e.g., tablet or PC).

Once the user has given their consent, Google links the web and app browsing history to the corresponding Google account for this purpose. In this way, the same personalized advertising messages can be displayed on each device on which the user logs on with his Google Account. To support this feature, Google Analytics collects Google-authenticated IDs of users who are temporarily linked to our Google Analytics data to define and create audiences for cross-device ad promotion. The site visitor can permanently object to cross-device remarketing / targeting by disabling personalized ads in their Google Account: https://www.google.com/settings/ads/onweb/. If the site visitor wishes to object to Google's general tracking process, the conversion tracking cookies can be disabled by setting the browser to block cookies from the domain www.googleadservices.com: https://www.google.de/settings/ads.

The aggregation of the collected data in the Google account of the site visitor takes place exclusively on the basis of his consent, which he can give or revoke on Google (Article 6 (1) (a) GDPR). For data collection operations that are not merged into the user’s Google Account (for example, because they do not have a Google Account or have objected to the merge), the collection of data is based on Art. 6 (1) (f) GDPR. The legitimate interest arises from the fact that Jimdo has an interest in the anonymous analysis of the website visitors for advertising purposes.

For more information and privacy policy, see the Google Privacy Policy at: https://www.google.com/policies/technologies/ads.

Bing Universal Event Tracking (UET)

The Jimdo website uses Bing Ads technology to collect and store data that is used to create usage profiles using pseudonyms. This service enables us to track user activity on our website when it has reached our website via advertisements from Bing Ads. If the page visitor reaches our website via such an ad, a cookie is set on their computer. On our website a Bing UET tag is integrated. This is a code used to store some non-personally identifiable information about the use of the website in connection with the cookie. This includes, among other things, the length of time spent on the website, which areas of the website were accessed, and which advertisements have reached the website. Information on the identity of the respective site visitor, as well as forms for entering personal data are not recorded.

The collected information is transmitted to Microsoft servers in the USA and stored there for a maximum of 180 days. The collection of the data generated by the cookie and related to the use of the website as well as the processing of this data can be prevented by deactivating the setting of cookies by the site visitor in their browser.

In addition, based on the user’s preferences Microsoft may be able to track usage behavior across multiple electronic devices through cross-device tracking, enabling it to display personalized advertising on or in Microsoft websites and apps. This behavior can be disabled by the site visitor at http://choice.microsoft.com/en-us/opt-out.

For more information on Bing analytics services, visit the Bing Ads Web site. For more information about privacy at Microsoft and Bing, see the Microsoft Privacy Policy.

LinkedIn Conversion Tracking

On www.jimdo.com websites Jimdo uses the analysis and conversion tracking technology of the LinkedIn platform. LinkedIn's technology can show you more relevant, interest-based advertising.

We also receive aggregated and anonymous reports from LinkedIn on ad activities and information about how site visitors interact with our website. For more information on LinkedIn privacy, please visit: https://www.linkedin.com/legal/privacy-policy.

All site visitors and Jimdo users object ("opt-out") to the analysis of their usage behavior by LinkedIn and the display of interest-based recommendations; click on "Decline on LinkedIn" (for LinkedIn members) or "Decline" (for other users) under the following link:

Quantcast

On our website we use the cookie technology of Quantcast Investment ltd., in oder to carry out web analysis, retargeting and internet based advertising. Quantcast is a service of Quantcast International Limited, Glandore Business Centres, Fitzwilliam Hall, Fitzwilliam Place, Dublin 2, Ireland ("Quantcast"). In using Quantcast, Cookies are set, which forward data to Quantcast. The information that Quantcast collects via the Jimdo Site may be stored on a server in the United States. The IP address is however anonymized before it is saved. If the affected party do not want to receive interest-based advertising, this can be prevented by clicking on the following opt-out link: https://www.quantcast.com/opt-out/.

Because the opt-out feature is also cookie-based, the browser must be set to accept third-party cookies. If multiple devices or browsers are used, this process must be done on each one individually. You can find additional information about data processing by Quantcast here: https://www.quantcast.com/privacy/

Personalised Advertising from Jimdo

We use your personal data, i.e. pseudonymised Jimdo usage data, to pursue our legitimate interests in providing you with targeted marketing, service updates, and promotional offers that you might like, including Personalized advertisements and usage analysis, provided your interests or fundamental rights and freedoms do not predominate. We have introduced control mechanisms to reconcile our interests with your rights.

If you do not wish to receive personalized advertisements or if you do not want us to collect pseudonymised data regarding your visit to our website and the use of our services, applications and tools, you may object or revoke your consent by following the instructions in the advertising or the Jimdo Cookie Policy.

Information on the display of usage-based online advertising on our and other websites and on how you can deactivate it, can also be found directly on the corresponding Privacy Pages linked in the table at the bottom of this Privacy Policy. An objection or deactivation means that you will no longer receive personalized advertising, but otherwise personal data may be collected as described in this Privacy Policy. Without your consent, we do not allow third parties to track or collect your personal information on our websites for their own advertising purposes.

Social Media

Facebook, AddThis

Our www.jimdo.com websites use social plugins ("plugins") of both the social network facebook.com, which is operated by Facebook Inc. ("Facebook"), as well as the AddThis bookmarking service provided by AddThis LLC, Inc. 8000 West Park Drive, Suite 625, McLean, VA 2210, USA ("AddThis").

When the page visitor calls up a page of our website that contains such a plugin, their browser connects directly to the AddThis/ Facebook servers. The content of the plugin is transmitted by AddThis or Facebook directly to their browser and integrated into the page. The integration of AddThis or Facebook stores a cookie on the device and thus collects the IP address and the information that the browser has accessed the corresponding page of our website. This information (including the IP address) is transmitted by the browser directly to a server of AddThis and/or Facebook in the USA and stored there. If the site visitor interacts with the plugins, the corresponding information is also transmitted directly to a server of the provider and stored there.

According to Article 6 (1) (f) GDPR, the described data processing operations are based on the legitimate interests of AddThis and Facebook respectively, in the display of personalized advertising in order to inform other users of the social network about relevant activities on our website and to structure the service as required.

If the site visitor wishes to object to either the AddThis or Facebook data collection for the future, a so-called opt-out cookie may be set: http://www.addthis.com/privacy/opt-out

The Oracle Corporation, which is the US-based AddThis umbrella organization, has privacy shield certification, which ensures compliance with the same level of data protection as in the EU.

The purpose and scope of the data collection and the further processing and use of the data by AddThis and Facebook respectively, as well as the related rights and setting options for the protection of privacy can be found in the respective privacy policies located in the table below.

Youtube-Videos

The www.jimdo.com websites also use the Youtube Embedding feature to display and play videos from "Youtube", which is owned by Google.

When the playback of embedded Youtube videos starts, the provider "Youtube" uses cookies to collect information about user behavior. According to "Youtube", these are used, among other things, to capture video statistics, improve user-friendliness and prevent abusive practices.

If you're logged in to Google, your data will be assigned directly to your account when you click on a video. If you do not wish to associate with your profile on YouTube, you must log out before activating the button.

Google stores your data (even for non-logged-in users) as usage profiles and evaluates them. According to Article 6 (1) (f) of the GDPR, such an evaluation is based on the legitimate interests of Google in the display of personalized advertising, market research and / or tailor-made design of its website. You have a right to object to the creation of these User Profiles, and you must be directed to YouTube to use them.

For more information on data protection at "YouTube", please see the provider's Privacy Policy at: https://policies.google.com/privacy

Tools

Google reCAPTCHA

Based on our legitimate interest in the prevention of spam and abuse, we also use the reCAPTCHA feature of Google on Jimdo websites. This function is primarily used to distinguish whether an input is made by a natural person or abusive by automated processing. The service includes the sending of the IP address and possibly other data required by Google for the reCAPTCHA service to Google. Additional information about Google reCAPTCHA and Google's privacy policy can be found at: https://policies.google.com/privacy.

Fraud Detection and Prevention

Based on our legitimate interest in the user-friendly design of our offer, as well as in the prevention of fraud to the detriment of Jimdo and his customers, www.jimdo.com websites collect, use and store certain information about visitors in order to detect, prevent and analyze fraudulent transactions. We share this information with a third party, Sift Science, Inc., 23 Mission Street, 20th Floor, San Francisco, CA 94105. Sift Science provides Jimdo with analysis, monitoring, and reporting to help us prevent and detect fraudulent transactions.

Sift Science is certified for the EU-US Privacy Agreement, "Privacy Shield". Further information on the processing of data by Sift Science can be found in the Sift Science Privacy Policy. The possibility of objecting to data processing by Sift Science or Sift Science Cookies ("opt-out") can be found in the tabular list of the Jimdo Cookie Policy.

Error detection & Prevention

Bugsnag

Based on our legitimate interests in quickly identifying errors that have led to a disruption or crash and thereby improving our website, Jimdo reloads JavaScript code from the company Bugsnag Inc., 939 Harrison St, San Francisco, CA 94107, USA (hereinafter: Bugsnag) on Jimdo websites. If an error occurs, the calling IP address (in an anonymous form), data on your settings and details of the page on which the error occurred and the data installed there, are transmitted to Bugsnag in order to evaluate the error.

More information can be found in the Bugsnag Privacy Policy: https://docs.bugsnag.com/legal/privacy-policy/. To prevent the execution of Bugsnag's Java script code as a whole, the Jimdo user may install a Java Script Blocker (e.g., www.noscript.net or www.ghostery.com).

Communication with Jimdo

Customer Support

A site visitor or Jimdo user can contact Jimdo at any time with their queries via email, via a private message on social media platforms or via the instructions on the following help page. We store the request in a ticket system (Zendesk) in order to process the request and to improve our services. Personal information will only be used to process the request.

In addition, the site visitor / Jimdo user has the opportunity to evaluate their experience with the Jimdo customer support, after the conclusion of their support-request via the ticket system, Zendesk. The evaluation request appears directly in the ticket dialog and is optional. Feedback is only used internally, serves to improve the Jimdo customer support and will not be shared with third parties. Should the Jimdo user not wish to receive such requests, then they can send an email to that effect, to the Jimdo support team(privacy@jimdo.com) and the opt out shall be implemented.

The legal basis for the processing of the data is our legitimate interest in answering the (customer) inquiries and improving our customer support service in accordance with Article 6 (1) (f) GDPR If the contact is aimed at the conclusion of a contract, then additional legal basis for the processing Article 6 (1) (b) GDPR.

The privacy policy of this our ticket system provider, Zendesk can be found here: https://www.zendesk.com/company/customers-partners/privacy-policy/

The data will be deleted as soon as they are no longer necessary for the achievement of the respective purpose, i.e. where there is no legitimate interest and, moreover, we are no longer obliged to keep records in which personal data may be contained.

Chat-Support System

In the administrative areas of Jimdo Websites (CMS), collected chat content is collected and stored for the purpose of providing customer support. To provide the chat system we use Twyla AI from Twyla GmbH. The chat function provided in the CMS allows the Jimdo user to connect with Jimdo. We collect, process and use the information communicated by the Jimdo user via the chat function solely for the processing of the specific request. The information provided by the Jimdo user is transmitted to and stored on a Twyla server within the EU.

Cookies are used to operate the chat feature. The cookies make it possible to recognize the site visitor's Internet browser in order to distinguish the individual users from the chat function of our website. If the information collected in this way has a personal reference, the processing will be carried out in accordance with Article 6 (1) (f) GDPR based on our legitimate interest in effective customer care and the statistical analysis of user behavior for optimization purposes.

We have an agreement to process the data on our behalf with Twyla. Further information on the handling of user data by Twyla can be found in the privacy policy of Twyla GmbH: https://www.twylahelps.com/privacy-policy

Customer Feedback and Reviews

For the purpose of evaluation by the customer and quality assurance, if the Jimdo user gives us his express consent in accordance with Article 6 (1) (a) GDPR Jimdo shall provide the email address and first and last name of the Jimdo user to Trustpilot in order to enable the consenting Jimdo user to provide a review of Jimdo on the Trustpilot platform. Customer reviews are particularly productive for transparency and optimization. Therefore, we offer the Jimdo user the opportunity, via a Trustpilot evaluation service www.trustpilot.de to give appropriate reviews about our service. By participating in this feedback system the rating may be published by Jimdo on the Jimdo website, as well as on the website of Trustpilot. The conditions and data protection provisions of Trustpilot apply, and can be found under https://legal.trustpilot.com/end-user-privacy-terms and https://legal.trustpilot.com/end-user-terms-and-conditions. Jimdo has entered into a data processing agreement with Trustpilot.

The legal basis for data processing is Article 6 (1) (a) GDPR ("Consent"). All Jimdo users have the right to object to the distribution and forwarding of their details to Trustpilot at any time, via sending Jimdo an email to that effect (Datenschutz@jimdo.com) or via not consenting to the customer evaluation. The Jimdo User may revoke his previously given consent at any time by sending a message to Jimdo (privacy@jimdo.com) or to the rating platform itself (privacy@trustpilot.com).

Newsletter Performance

Our newsletters contain so-called "web-beacons", i.e. pixel-sized files that are retrieved from the server when opening the newsletter from our server or from the shipping service provider, Mailchimp. As part of this call, technical information, such as information about the browser and the system, as well as the IP address and time of the retrieval are collected.

This information is used to improve the technical performance of the services based on the technical data or the target groups and the reading behavior based on their call sites (which can be determined with the help of the IP address) or the access times. Statistical surveys also include determining if the newsletters will be opened, when they will be opened and which links will be clicked. For technical reasons, this information can be assigned to the individual newsletter recipients. However, it is neither our goal nor, if used, that of the newsletter service provider to observe individual users. The evaluations serve us much more to recognize the reading habits of our users and to adapt our content to them or to send different content according to the interests of our users.

The processing of the data entered into the newsletter application form is based solely on consent (Article 6 (1) (a) GDPR). The given consent to the storage of the data, the e-mail address and their use for sending the newsletter can be revoked at any time by the Jimdo newsletter subscriber, for example via the "unsubscribe" link in each newsletter. The legality of the data processing that has already taken place shall remain unaffected by the revocation.

The data provided to Jimdo by the Jimdo User for the purposes of sending the newsletter will be stored by us until the Jimdo User is removed from the newsletter and deleted after the newsletter has been unsubscribed. Data that has been stored for other purposes with us (such as e-mail addresses for the members area) shall remain unaffected by this deletion.

Jimdo Blog 8 Days

Statistics

The Jimdo 8 Days blog site uses the web analytics service Jetpack (formerly WordPress.com Stats) operated by Automattic Inc., 60 29th Street # 343, San Francisco, CA 94110-4929, USA, using Quantcast Inc.'s tracking technology. 201 3rd St, Floor 2, San Francisco, CA 94103-3153, USA. With the help of Jetpack, based on our legitimate interest in the statistical analysis of user behavior for optimization and marketing purposes pursuant to Article 6 (1) (f) GDPR pseudonymised visitor data is collected, evaluated and stored. From this data, pseudonymised usage profiles can be created and evaluated for the same purpose. Jetpack uses so-called cookies.

The information generated by the cookie about the use of this website (including the pseudonymous IP address) are transmitted to a server in the United States and stored there to safeguard the above interests. US-based Automattic Inc. is certified under the EU-US Privacy Shield. In order to counter data collection and storage of visitor data for the future, an opt-out cookie can be obtained from Quantcast under the following link, which will prevent future visitor data from the Jimdo user’s browser from being collected and stored at Jetpack: https://www.quantcast.com/opt-out/ The opt-out cookie is set by Quantcast.

Hosting of the Jimdo Blog Page

Jimdo (or more specifically the web space provider for the Jimdo Blog website, WP Engine) collects data about every access to the blog pages (so-called server log files). Access data includes:

Name of the retrieved web page, file, date and time of retrieval, amount of data transferred, notification of successful retrieval, browser type and version, the user's operating system, referrer URL (the previously visited page), IP address and the requesting provider.

The provider uses the log data for statistical evaluations only with the purpose being the operation, security and optimization of the Blog page. However, the provider reserves the right to subsequently review the log data if, on the basis of concrete evidence, the legitimate suspicion of unlawful use exists. The privacy policy of WP-Engine can be viewed here.

Blog Comments

DISQUS comment management

Based on our legitimate interests in an efficient, secure and user-friendly commentary system for our blog pages we use the comment management service DISQUS.

In order to use the DISQUS features, users can log in using their own DISQUS user account or existing social media accounts (e.g., OpenID, Facebook, Twitter, or Google). Here, the user credentials are obtained from the platforms through DISQUS. It is also possible to use the DISQUS comment feature as a guest without creating or using user accounts with DISQUS or any of the social media providers listed.

Jimdo embeds DISQUS with its features on our Jimdo Blog, “8 days”. However, users enter into a direct contractual relationship with DISQUS, in which DISQUS processes users' comments and acts as point of contact for any deletion of users' data. Please refer to the DISQUS privacy policy: https://help.disqus.com/terms-and-policies/disqus-privacy-policy in which DISQUS informs users that they save the comment content, as well as store the IP address of the commenter and the timestamp of submission. Disqus also saves cookies on users' computers and may use them to display advertising. However, users may object to the processing of their data to display ads:

Jimdo reserves the right to delete comments if their content violates the Jimdo Terms of Service. In addition, we reserve the right to stop or remove the comment function and the associated comments on any article, at any time.

Access and Publicly Available Information

The Jimdo Website:

All information posted on the Jimdo website of a Jimdo user may, in principle, be accessed by other Internet users e.g. when it is published by the Jimdo user on the Jimdo user’s website. Therefore, the publication of personal information (eg addresses, telephone numbers) and sensitive data (e.g. passwords, access data) should be handled carefully and prudently. Hidden subpages and password-protected areas do not provide absolute protection against unauthorized access; The same applies to uploaded files, as these may be accessible via direct links.

Administrative Access to your Jimdo Website:

As part of our customer service and error tracing, our employees also have access to the administrative area of Jimdo Websites (CMS) on an ad hoc basis. Administrative access is to be understood as insight into all areas of the corresponding Jimdo website, including the password-protected areas. All our employees are regularly schooled in data protection and are bound to maintain confidentiality and the secrecy of data (§5 of the German Federal Data Protection Act (BDSG) or from 25.05.2018 § 53 BDSG (new)).

Encryption

For the encryption (HTTPS over TLS) of Jimdo websites of the Jimdo user we use the free service "Let's Encrypt". Through the certificates, we can offer a so-called transport encryption, which protects the communication to a Jimdo website from access by unauthorized third parties.

Rights of the Data Subjects

(i.e. Jimdo user or Jimdo Site Visitor, hereinafter referred to collectively as “Jimdo user”)

According to the relevant legislation, including the GDPR, the Jimdo user and site visitors have certain rights in relation to their personal data that is processed by Jimdo. In particular, they have a right to information, correction, transferability or deletion of their data. The Jimdo user also has the right to object to certain processing of their data.

In some cases, it will not be possible to change or remove content after it has been published on the Jimdo website. Upon receipt of such request, Jimdo may close the corresponding Jimdo Account and remove the offending personal information from public areas as soon as possible based on account activity and applicable law. The legal right to information, correction or deletion of personal data remains unaffected.

Information and Access

The Jimdo user can usually access, verify and edit their personal information in their Jimdo account by logging in and directly updating or deleting the appropriate information.

We are happy to inform you, which personal data we have stored on you, as well as any fees incurred under applicable law. The information will be processed by us immediately and is usually sent via email. In order to receive detailed information, please inform us as far as possible as to the type of personal data requested. To be sure that the requesting person is also the person whom they claim to be, we require proof of identity. This can be a copy of an official identity document. Please ensure that serial numbers, passport numbers or similar are blackened out or removed. We use this copy solely for identification and processing of the request and delete it as soon as it has served its purpose.

Right to Object

Insofar as the Jimdo user’s or site visitor’s data is collected on the basis of Jimdo’s legitimate interests (Article 6(1) (f) GDPR, the Jimdo user/site visitor may object to the future processing of their data in accordance with Article 21 GDPR at any time, for the future. The objection may in particular be expressed against processing for direct marketing purposes(via sending an email to privacy@jimdo.com or unsubscribing directly from such communications via the unsubscribe link in every mail). A corresponding note as regards the Jimdo Newsletter unsubscription process can be found in every newsletter email.

If the Jimdo user makes use of his right to object, Jimdo will stop the processing of the data concerned. However, further processing is reserved if we can demonstrate compelling legitimate reasons for the processing that outweighs the interests of the Jimdo user, their fundamental rights and freedoms, or if the processing serves the purpose of asserting, exercising or defending legal claims. If Jimdo is asked to cease all or any part of the processing of the personal information, or if the Jimdo user revokes his consent (if any) to the use or disclosure of their personal information for purposes outlined in this Privacy Policy, Jimdo may cease to be able to provide all Jimdo services to the Jimdo user.

The Jimdo user also has the right to object to the processing personal data that is used for statistical purposes in accordance with Article 89 (1) GDPR for reasons that arise from their particular situation via a simple email to that effect sent to privacy@jimdo.com.

Right to Data Portability

In certain cases, which are listed in detail in Art. 20 GDPR, the site visitor or the Jimdo user has the right to receive personal data concerning him or her, in a structured, common and machine-readable format or to have this data transferred to a third party upon demand.

Exercising your Rights

In order to exercise these and other data subject right,, an affected party may, at any time, contact Jimdo via the following contact address Privacy@jimdo.com.

Where the Jimdo User exercises his or her legal right to access, correction or deletion of their personal information, Jimdo may, under certain circumstances in particular where legally obliged to so, refuse to provide such information or refuse to correct or delete your personal information. However, Jimdo will give the reasons in these cases.

Right to Lodge a Complaint

Without prejudice to any other administrative or judicial remedy, the Jimdo user has the right to lodge a complaint with a relevant supervisory authority in accordance with Article 77 GDPR, in particular in the Member State of the user’s place of residence, place of work or place of alleged infringement, if the Jimdo user is of the opinion that the processing of his personal data has not occurred in accordance with the provisions of the GDPR.

Data Security

The Jimdo User's information is protected by the Jimdo technical and organizational security measures to minimize risks associated with their loss, misuse, unauthorized access, unauthorized disclosure and alteration of their and all users data. For example, we use firewalls and data encryption, as well as physical access restrictions for our data centers and data access authorization controls.

Changes to this Privacy Policy

Jimdo reserves the right to change this privacy policy should this be necessary due to a change in legislation or as a result of further or changed services used or offered by Jimdo. The current version can always be located on this page. If Jimdo intends to process the data of the Jimdo user for purposes other than those for which they were collected, we will inform the Jimdo user in advance, in accordance with the law.

In the event of any deviations resulting from the translation, the formulation set forth in the German version shall prevail.

Contact

If any questions or concerns regarding this privacy policy arise, we can be contacted via this form, via email or via a letter to:

Jimdo GmbH
Data Protection
Stresemannstraße 375
22761 Hamburg
Germany
privacy@jimdo.com

Contact Details of the Jimdo Data Protection Officer:

B³ | Informationstechnologie
Dipl. Inf. Andreas Bethke
Papenbergallee 34
25548 Kellinghusen
Germany
privacy@jimdo.com

Duration of the Storage of Personal Data

The data processed by us are deleted or limited in their processing in accordance with Article 17 and Article 18 GDPR. Unless explicitly stated in this privacy policy, the data stored by us are deleted as soon as they are no longer required for their intended purpose and the deletion does not conflict with any statutory storage requirements and / or there is no legitimate interest in the re-storage on our part. Where the data cannot be deleted because it is required for another, legitimate purposes, its processing shall be restricted accordingly. The data shall be blocked and not processed for any other purposes. This applies, for example to data that must be kept for commercial or tax reasons.

According to legal requirements in Germany, the storage takes place in particular for 6 years pursuant to § 257 Para. 1 of the Handelsgesetzbuch (German Commercial Code) (pertaining to trading books, inventories, opening balance sheets, annual accounts, trade letters, accounting documents, etc.) and for 10 years in accordance with § 147 Para. 1 Abgabenordnung (The Fiscal Code of Germany) (pertaining to books, records, Management reports, accounting documents, trade and business letters, documents relevant to taxation, etc.).

Sharing of Personal Data and the List of Subprocessors and Services used by Jimdo

The data of Jimdo Users shall not be sold to third parties. We shall not share or pass on any personal information without your explicit consent, unless:

  • We are legally obligated to do so;

  • In order to fulfill contractual services for the Jimdo user and/or in order to enforce rights and obligations of these terms of use and the corresponding contractual relationship between the Jimdo user and Jimdo;

  • In order to perform the Jimdo service it may be necessary for Jimdo to employ the use of third-party services. In that case, data may be shared, e.g.:

    • Domain Registration:
      Domain hosting is carried out for us by the companies, InternetX GmbH and Name.com Inc. The InternetX Privacy Policy can be found here: https://www.internetx.com/en/legal/privacy-policy/. In order to become the owner of the domain, Jimdo is required to transfer your registration data to the relevant domain registrar. For more information on the nature and extent of data transferred, please consult the authority responsible for your domain. Depending on the registrar, this transferred registration data may be made publicly visible online. In particular, personal registration information for .com, .net, .org, .info, and .biz domains will be made public on the WHOIS.com website. You should keep this in mind if registering one of these TLDs.

    • Email Addresses:
      When you set up an email account or forwarding address for your Jimdo website, we create an account for you with Rackspace Limited. Rackspace Limited assumes responsibility for the technical delivery and management of your emails. You can read Rackspace’s privacy policy here. Informationen about Rackspace and the GDPR can be found here.

    • In order to send system emails and newsletters we use the mail services provided by Mandrill. Their Privacy Policy can be found under: https://mailchimp.com/legal/privacy/

    • In order to send order confirmations we use the service provider Sendgrid and their privacy policy can be found here: https://sendgrid.com/policies/privacy/

    • G suite Email provider and G Suite Domain Verification:
      Jimdo users who hold a fee based Jimdo package and who also have a Google G Suite account, can set up Gmail as their email provider for their email server. To set up the connection, the Jimdo user logs into his Google G Suite account and grants Jimdo permission to automatically adjust their settings to set up the email service. The permission given grants Jimdo the right to provide and manage or delete the Jimdo user's reserved domains, as well as the authority to verify the user's new domains with Google, i.e. to send the appropriate ownership confirmation URLs to Google. This permission can be revoked at any time, for the future by the Jimdo user in their G-Suite account (under -> "Settings" -> "Apps with Account Access"). In addition, the Jimdo user has the option to change his chosen email provider at any time in their Jimdo account (under Domains & Emails → Edit email Server). G Suite is a product of Google LLC., 1600 Amphitheater Parkway, Mountain View, CA 94043, USA. The legal basis for obtaining consent is Article 6 (1)( a) and Art. 7 GDPR. The legal basis for the processing for the performance of our services and the execution of contractual measures as well as the response to inquiries is Art. 6 (1)( b) GDPR. The purpose and scope of the data collection and the further processing and use of the data by Google as well as the related rights and privacy settings can be found in the Google privacy policy: https://policies.google.com/privacy and https://gsuite.google.com/intl/de/faq/security/.

    • User Content:
      When images or files are uploaded to the Jimdo website, they are uploaded to Amazon S3 cloud services (the location of the data center in Ireland). The privacy policy of Amazon can be found here: Privacy Policy

    • Statistics:
      For Jimdo users who have booked a fee-based package, Jimdo uses Google Analytics to generate statistics for your website. The data collected is processed in a non-personally-identifying form (“anonymizeIp”). The relevant Google Analytics’ Privacy Policy can be found here.

    • Content Delivery:
      We use Fastly, Inc. to deliver the content of your Jimdo website, as well as the Google Fonts for your website. Fastly, Inc. ensures that your website and your website content can be quickly accessed from all over the world. The Fastly, Inc. Privacy Policy can be found here: https://www.fastly.com/privacy We have entered into both EU standard contractual clauses and a so-called "data processing agreement" with Fastly Inc. in which we commit Fastly to protect our customers' data and not to disclose them to third parties. Where third parties are concerned Jimdo always enters into a data processing agreement with the third-party and ensures the protection of the Jimdo user’s data in accordance with Article 44 ff GDPR.

If Jimdo is acquired by another company, information including personal data could be transferred to the acquiring party within the framework of the relevant data protection provisions.

In order to provide our respective services, we may pass on personal data of the Jimdo user or the site visitor to the following third parties for the following purposes:

Mailchimp/Mandrill

Purpose:
The sending of Newsletters, Notifications

Data Category:
Inventory data, Newsletter subscriber

Data Subjects:
Jimdo Users, Subscribers to the Jimdo Newsletter

Legal Basis:
Consent, Article 6 (1) (a) GDPR, Legitimate interest Art. 6 (1) (f) GDPR

Provider:
Mailchimp by The Rocket Science Group, LLC 675 Ponce de Leon Ave NE, Suite 5000, Atlanta, GA 30308, USA

Privacy policy:
https://mailchimp.com/legal/privacy/

SendGrid

Purpose:
The sending of order confirmations,renewal notifications, billing information as well as Notifications & Newsletters

Data Category:
Inventory data, Contract data

Data Subjects:
Customer i.e. Jimdo User, Newsletter Subscriber

Legal Basis:
Contract performance, Article 6(1) (b) GDPR & Article 6 (1) (f) GDPR

Provider:
SendGrid Inc. 1801 California St #500 Denver, CO 80202, USA

Privacy policy:
https://sendgrid.com/policies/privacy/

Google Tag Manager

Purpose:
The Tag Manager tool is a cookieless domain and does not collect personally identifiable information. The tool triggers other tags, which may collect personal data.

Data Subjects:

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
Google LLC, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA

Privacy policy:
https://www.google.com/analytics/tag-manager/use-policy

Google Analytics

Purpose:
User Statistics on www.jimdo.com websites, as well as where activated by the jimdo user ,on Jimdo user websites.

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, visitors to the Jimdo website, visitors to the website of the Jimdo User

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR & Article 6 (1) (f) GDPR

Provider:
Google LLC, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA

Privacy policy:
Browser Plugin, Opt-Out https://tools.google.com/dlpage/gaoptout?hl=en/

Adobe Image Editor

Purpose:
Image editing via the user menu

Data Category:
Usage data

Data Subjects:
Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
Adobe Systems Incorporated 345 Park Avenue, San Jose, CA 95110-2704, USA

Privacy policy:
http://www.adobe.com/privacy.html

Sipgate

Purpose:
Fax service for the sending and receipt of faxes. from Jimdo users as well as local and international authorities etc.

Data Category:
Usage data, Inventory data, Contract data, Communication data

Data Subjects:
Jimdo user, employees of the Jimdo user, Customers or interested parties of the Jimdo user’s website.

Legal Basis:
(Determined by sender)Legal Obligation, Art. 6 (1) (C) GDPR/ Contract performance, Article 6 (1) (b) GDPR / Legitimate interest Article 6 (1) (f) GDPR

Provider:
sipgate GmbH, Gladbacher Straße 74 40219 Düsseldorf Germany

Privacy policy:
https://www.sipgate.de/datenschutz.html

Rackspace

Purpose:
A web based application for the technical delivery and management of emails or email accounts

Data Category:
Usage data, Communications data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
Rackspace US Inc., Rackspace, 1 Fanatical Place, City of Windcrest San Antonio, TX 78218, USA

Privacy policy:
https://www.rackspace.com/de-de/information/legal/privacystatement

StiftScience

Purpose:
Fraud detection tool

Data Category:
Usage data, inventory data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
Sift Science, Inc. 123 Mission Street, 20th Floor, San Francisco, CA 94105, USA

Privacy policy:
https://siftscience.com/service-privacy

Stripe

Purpose:
Payment processor, chosen by the Jimdo user

Data Category:
Contract data, payment data, inventory data

Data Subjects:
Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (f) GDPR

Provider:
Stripe Inc., 185 Berry Street, Suite 550, San Francisco, CA 94107, USA

Privacy policy:
https://stripe.com/de/privacy

Ingenico ePayments Group S.A.(Global Collect)

Purpose:
Payment processor, chosen by the Jimdo user

Data Category:
Contract data, payment data, inventory data

Data Subjects:
Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (f) GDPR

Provider:
SGlobal Collect Service B.V. Planetenweg 43 - 59 2132 HM Hoofddorp, Netherlands

Privacy policy:
http://www.globalcollect.com/Privacy

Zuora

Purpose:
Subscription Management, to manage the packages purchased by the Jimdo users

Data Category:
Inventory data, contract data

Data Subjects:
Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
Zuora, Inc. 3050 S. Delaware Street, Suite 301 San Mateo, CA 94403, USA (650) 779-4993 support@zuora.com

Privacy policy:
https://www.zuora.com/privacy-statement/

Add This

Purpose:
A bookmarking service that simplifies the bookmarking of websites. Usage is determined by the Site visitor.

Data Category:
Inventory data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR (see note above)

Provider:
AddThis, Inc., Oracle America, Inc., 1595 Spring Hill Rd, Suite 300, Vienna, VA 22182, USA (703) 677-3999

Privacy policy:
http://www.addthis.com/privacy https://www.oracle.com/legal/privacy/index.html

InternetX

Purpose:
Domain administration

Data Category:
Domain registration data, inventory data

Data Subjects:
Jimdo user (who has purchased a domain or a package with a domain)

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
InterNetX GmbH Maximilianstr. 6 93047 Regensburg, Germany

Privacy policy:
https://www.internetx.com/en/legal/privacy-policy/

RankingCoach

Purpose:
Search engine result optimization tool

Data Category:
inventory data

Data Subjects:
Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
rankingCoach GmbH Brügelmannstrasse 3 50679 Köln, Germany

Privacy policy:
https://www.rankingcoach.com/en-us/privacy-policy

status.io

Purpose:
Status page with up-to-date information on the accessibility and functionality of our system.

Data Category:
Inventory data (email address)

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
T3CH.com LLC, 19 N. County Line Road, Jackson, NJ 08527, USA

Privacy policy:
https://status.io/privacy

Paypal

Purpose:
Payment Controller(Service Provider) chosen by the Jimdo user

Data Category:
Contract data, payment data, inventory data

Data Subjects:
Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
PayPal (Europe) S.à r.l. et Cie S.C.A., 22-24 Boulevard Royal 2449 Luxembourg

Privacy policy:
https://www.paypal.com/de/webapps/mpp/ua/privacy-full?locale.x=de_DE

WPEngine

Purpose:
Webspace for the Jimdo Blog

Data Category:
Inventory data, usage data(statistics)

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo Blog and Blog website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
WP Engine Irongate House, 22-30 Duke's Place London, EC3A 7LP, United Kingdom

Privacy policy:
https://wpengine.com/legal/privacy/

Fastly Inc.

Purpose:
Content Delivery including the delivery of Google Fonts for Jimdo websites

Data Category:
Inventory data, Content data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo user’s website

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
Fastly, Inc. General Counsel, 475 Brannan St, Suite 300 San Francisco, CA 94107, USA

Privacy policy:
https://www.fastly.com/privacy

DISQUS

Purpose:
Comments system for the Jimdo Blogs/Blog Pages created with Jimdo

Data Category:
Inventory data, Content data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo Blog and Blog website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR Contract performance, Article 6 (1) (b) GDPR

Provider:
DISQUS, Inc., 301 Howard St, Floor 3 San Francisco, CA 94105, USA

Privacy policy:
https://help.disqus.com/terms-and-policies/disqus-privacy-policy

Twyla

Purpose:
Chat Support System for Customer support

Data Category:
Inventory data, content data, usage data(determined by the user)

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website and services

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR, Legitimate interest Article 6 (1) (f) GDPR

Provider:
Twyla GmbH Winterfeldtstraße 21 10781 Berlin Germany

Privacy policy:
https://policies.google.com/privacy?hl=de

Zendesk

Purpose:
Ticket System for support requests

Data Category:
Inventory data, content data, usage data(determined by the user)

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website and services

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR, Legitimate interest Article 6 (1) (f) GDPR

Provider:
Zendesk, Inc. Attn: Privacy Officer 1019 Market Street San Francisco, CA 94103, United States

Privacy policy:
https://www.zendesk.de/company/customers-partners/#privacy-policy

Launchdarkly

Purpose:
Crash/Problem Reporting

Data Category:
Usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website / visitors to the website of the Jimdo user

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
Catamorphic, Co. (LaunchDarkly) 405 14th Street Oakland, CA 94612, USA

Privacy policy:
https://launchdarkly.com/policies/privacy/

Facebook Login

Purpose:
Single-Sign-On technology

Data Category:
Inventory data(login credentials, email)

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website and services

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR / Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR, as well as Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
Facebook Inc 1 Hacker Way Menlo Park, CA 94025, USA

Privacy policy:
https://www.facebook.com/about/privacy/

Google Plus Login

Purpose:
Single-Sign-On technology

Data Category:
Inventory data(login credentials, email)

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website and services

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR / Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR, as well as Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
Google LLC 1600 Amphitheatre Parkway Mountain View, CA 94043, USA

Privacy policy:
https://www.google.de/intl/de/policies/privacy/

Youtube

Purpose:
Youtube embedding function for displaying and playing videos of the provider Youtube using the extended data protection mode.

Data Category:
Inventory data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website and services

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR / Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR, as well as Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
Google LLC 1600 Amphitheatre Parkway Mountain View, CA 94043, USA

Privacy policy:
https://www.google.de/intl/de/policies/privacy

Prefinery

Purpose:
Tool for customer acquisition and product publications

Data Category:
usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website and services

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
Prefinery 1108 Lavaca Street, Suite 110-318 Austin, TX 78701, USA

Privacy policy:
https://www.prefinery.com/privacy

Redis

Purpose:
Data bank provider

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo user’s website

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR, Legitimate interest Article 6 (1) (f) GDPR

Provider:
Redislabs 700 E El Camino Real Suite 250 Mountain View, CA 94040, USA

Privacy policy:
https://redislabs.com/privacy/

Name.com

Purpose:
Domain administration

Data Category:
Domain registration data, inventory data

Data Subjects:
Jimdo user (who has purchased a domain or a package with a domain)

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
Name.com Inc. 414 14th Street #200 Denver, Colorado 80202, USA

Privacy policy:
http://www.name.com/media/policies/privacy-policy.pdf

Amazon Web Service

Purpose:
Storage of user content DNS, Javascript Code, Stylesheet Files, storage of www.jimdo.com content

Data Category:
Content data, inventory data, usage data

Data Subjects:
Jimdo user

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
Amazon Web Services Germany GmbH Krausenstr. 38 10117 Berlin Germany

Privacy policy:
https://aws.amazon.com/de/privacy/?nc1=f_pr

Tableau

Purpose:
Tool for the analysis of data and data logs

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Contract performance, Article 6 (1) (b) GDPR

Provider:
Tableau Germany GmbH An der Welle 4 60322 Frankfurt am Main Germany

Privacy policy:
https://www.tableau.com/de-de/privacy

Hootsuite

Purpose:
Social Media Tool that enables the collection of mentions and messages sent to or regarding Jimdo on social media platforms

Data Category:
Inventory data, social media data(determined by data subject)

Data Subjects:
Jimdo user

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
Hootsuite Media Inc. 5 East 8th Avenue Vancouver BC, V5T 1R6, Canada

Privacy policy:
https://hootsuite.com/de/legal/privacy

Facebook Pixel and Custom Audiences

Purpose:
In the case of explicit consent, this may track the behavior of users after they have seen or clicked on a Facebook ad. This process is designed to evaluate the effectiveness of Facebook advertisements for statistical and market research purposes and may help to optimize future advertising efforts.

Data Category:
determined by the user

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Consent as provided by the Jimdo user Article 6 (1) (a) GDPR, Legitimate interest Article 6 (1) (f) GDPR

Provider:
Facebook Inc 1 Hacker Way Menlo Park, CA 94025, USA

Privacy policy:
Browser Plugin, Opt-Out Link siehe oben https://www.facebook.com/about/privacy/

Hotjar

Purpose:
Conversion optimisation

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
Hotjar Ltd., Malta Hotjar Ltd, Level 2 St Julians Business Centre, 3, Elia Zammit Street, St Julians, STJ 1000, Malta

Privacy policy:
https://www.hotjar.com/opt-out

Taboola

Purpose:
Content recommendation platform

Data Category:
Inventory data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
Taboola, Inc., 28 West 23rd Street, 5th Floor, New York, NY 10010, USA

Privacy policy:
https://www.taboola.com/privacy-policy

TV-Squared

Purpose:
This website uses TVSquared for statistical analysis of visitors traffic in connection with TV advertising

Data Category:
Jimdo user’s data,Persons interested in the Jimdo offering. i.e. visitors of www.jimdo.com websites

Data Subjects:
Jimdo user, Persons interested in the Jimdo offering. i.e. visitors of www.jimdo.com websites

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
TV Squared Limited, Codebase, Argyle House, 3 Lady Lawson St, Edinburgh, EH3 9DR

Privacy policy:
http://tvsquared.com/privacy-policy/

bunchbox

Purpose:
Site Optimization tool for the implementation of A / B tests and multivariate analysis

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
app.bunchbox.co, Peaks & Pies GmbH, Raboisen 30, 20095 Hamburg Germany

Privacy policy:
http://peaksandpies.com https://peaksandpies.com/datenschutz

smartly.io

Purpose:
Tool for advertising campaigns for Facebook and Instagram

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
SMARTLY.IO SOLUTIONS OY Elielinaukio 2 G 00100 Helsinki, Finland

Privacy policy:
https://cdn2.hubspot.net/hubfs/1570479/Privacy%20Policy/Smartly.io%20Privacy%20Policy.pdf

Zoho

Purpose:
Jimdo Pages Promotions Database

Data Category:
Inventory data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR, as well as Legitimate interest Article 6 (1) (f) GDPR

Provider:
Zoho Corporation 4141 Hacienda Drive Pleasanton, CA 94588, USA

Privacy policy:
https://www.zoho.eu/privacy.html

Fullstory

Purpose:
Fullstory records user behavior on our website. Visitor recordings allow Jimdo to analyze them and then improve the visitors website experience. Fullstory stores and collects data in an anonymous form using cookies.Tracking (that is, the collection of data generated by the cookie and related to the use of the website) can be deactivated at any time. Please follow the instructions on https://www.fullstory.com/optout.

Data Category:
Usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR, see further details above

Provider:
Fullstory Inc., 120 Ottley Drive NE, Suite 100, Atlanta, GA 30324, USA

Privacy policy:
Opt out: https://www.fullstory.com/legal/privacy/

Surveymoney

Purpose:
For surveys we use the services of SurveyMonkey.

Data Category:
Inventory data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR, as well as Legitimate interest Article 6 (1) (f) GDPR

Provider:
SurveyMonkey Europe UC 2nd Floor, 2 Shelbourne Buildings, Shelbourne Road, Dublin, Ireland

Privacy policy:
https://www.surveymonkey.de/mp/policy/privacy-policy/

Trustpilot

Purpose:
Customer Reviews

Data Category:
Inventory data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR

Provider:
Trustpilot A/S Pilestræde 58, 5 1112 Kopenhagen, Denmark

Privacy policy:
http://legal.trustpilot.de/end-user-privacy-terms

Bing

Purpose:
Online Ad Marketing

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR / Legitimate interest Article 6 (1) (f) GDPR

Provider:
Microsoft Corporation One Microsoft Way Redmond, WA 98052-6399, USA

Privacy policy:
http://choice.microsoft.com/de-de/opt-out

LinkedIn

Purpose:
Online Ad Marketing

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR / Legitimate interest Article 6 (1) (f) GDPR

Provider:
LinkedIn Ireland Unlimited Company Wilton Place Dublin 2, Ireland

Privacy policy:
https://www.linkedin.com/psettings/guest-controls/retargeting-opt-out

Snapchat Pixel

Purpose:
Conversion Tracking to measure the cross-device impact of campaigns. In the case of explicit consent, this may track the behavior of Snapchat users after they have seen or clicked on a snapchat ad and merge this information with the snapchat profile of the user. jimdo uses the Snapchat pixel to evaluate the effectiveness of Snapchat advertisements for statistical and market research purposes and collects data in pseudonymized form unless the user has provided their explicit consent.

Data Category:
Inventory data, usage data

Data Subjects:
Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR and for non pseudonymized data : Consent as provided by the Jimdo/snapchat user, Article 6 (1) (a) GDPR

Provider:
Snapchat ℅ Fieldfisher (Germany) LLP Am Sandtorkai 68 20457 Hamburg Germany

Privacy policy:
https://www.snap.com/en-US/privacy/privacy-center/

Quantcast

Purpose:
Online Ad Marketing, Retargeting, Web-analysis

Data Category:
Inventory data, usage data

Data Subject: Jimdo user, customers/interested parties of the Jimdo website

Legal Basis:
Consent as provided by the Jimdo user, Article 6 (1) (a) GDPR and/or Legitimate interest Article 6 (1) (f) GDPR

Provider:
Quantcast International Limited, Glandore Business Centres, Fitzwilliam Hall, Fitzwilliam Place, Dublin 2, Ireland

Privacy policy/ Opt Out: https://www.quantcast.com/opt-out/

Falcon.io

Purpose:
Social Media Tool:It allows us to publish content across networks, platforms and channels, edit and answer to user responses, search social media and platforms for mentions, and analyze all interactions with us and our actions. Whenever a user interacts with our online presence within social networks and platforms, their personal data as a Jimdo prospect or user, is processed by Jimdo, via Falcon, and this includes the data of the social media profile being used at the time. This data can include for example: name, gender, profile picture, profile URL, handle / username. In addition, the timestamp of the interaction with our online presence is recorded.

Data Category:
Inventory data, social media (profile-) data(determined by data subject)

Data Subject:
Jimdo user

Legal Basis:
Legitimate interest Article 6 (1) (f) GDPR

Provider:
Falcon.io ApS,
H.C. Andersens boulevard 27,
1st floor,
1553 Copenhagen V, Denmark

Privacy:
https://www.falcon.io/privacy-policy/

Last Reviewed:

May 2017

Note:

The previously valid Jimdo privacy statements have been archived and are available under the following link: https://www.jimdo.com/info/privacy-policy-10-2011/