1. Responsible party
The controller responsible for the processing of personal data by the KLAFS Sauna App is
Klafs GmbH
Erich-Klafs-Straße 1-3
74523 Schwäbisch Hall
E-Mail: info@klafs.de
Fax: +49(0)791 501-248
2. Data protection officer
You can contact our data protection officer by e-mail at datenschutz@klafs.de
3. Processed data
-
Registration data and settings
When you register, set up the app and connect the controller to the app, we process the following data
- Username
- e-mail address
- your password
- Serial number
- Software version incl. update information
- Name of the control unit (self-selected maximum number of characters)
- Language settings
- Standby settings
- Control unit operating times (see usage data)
To ensure that you have actually registered and that your e-mail address has not been entered by a third party, we use the so-called double opt-in procedure. Once you have registered, we will therefore send you an e-mail asking you to confirm your registration.
You are free to choose registration data that does not allow any conclusions to be drawn about your person.
-
Usage data
If you assign your sauna to your user account in the connection settings of the sauna control unit, you can control the sauna via the KLAFS Sauna App.
We collect the following data when you control the sauna via the KLAFS Sauna App:
General usage data:- Error and maintenance information
- Usage data on operating mode and duration
- Number of commands given when using Alexa
Specific usage data:- Specific settings during use such as temperature, humidity, preset mode, etc. (incl. time and date of setting)
4. Purposes of data processing
The data is processed for the purpose of providing and enabling the use of the KLAFS Sauna App. The legal basis is Art. 6 para. 1 lit. b GDPR (contract).
In individual cases, the data may be processed in pseudonymized form for product development purposes. The legal basis is our legitimate interest pursuant to Art. 6 para. 1 lit. f GDPR in the improvement and further development of our services and products.
Upon request by you, the data may be viewed by a technician during a service and used for fault diagnosis and maintenance. Please note that this may also involve affiliated companies of the controller. The legal basis for the processing of your data for service purposes is your consent in accordance with Art. 6 para. 1 lit. a GDPR.
5. Recipients of the data
The recipients of the data are service providers that we use for hosting, programming, and maintaining the app. Both service providers are based in Germany.
As part of maintenance and fault diagnosis, your data will be passed on to the respective provider of the service of your sauna.
6. Erasure
We delete specific usage data after six months.
We retain registration data and general usage data for the duration of the existence of a user account. The legal basis for the storage of general usage data beyond the duration of the storage of specific usage data is our legitimate interest in accordance with Art. 6 para. 1 lit. f GDPR to be able to carry out an fault analysis if necessary and after consent has been given.
7. Rights of data subjects
You have the following rights:
- Right of access to information about the personal data processed
- Right to rectification of the personal data
- Right to erasure of the personal data
- Right to restriction of the processing
- Right to data portability
- Right to lodge a complaint with a supervisory authority
You also have the right to object, on grounds relating to your particular situation, at any time to processing of personal data concerning you which is based on Article 6 para. 1 lit. f GDPR (legitimate interest). We will then no longer process the personal data unless we can demonstrate compelling legitimate grounds for the processing which override the interests, rights and freedoms of the data subject or for the establishment, exercise or defense of legal claims.