ROCKETHOME GmbH places great value on the protection of your personal data. We therefore wish to inform you as to which personal data we collect during your visit to our websites (www.rockethome.de and www.rockethome-smarthome.de) and when you use our products (Connect Portal and Smart Home App) based on my.rockethome.de, as well as how we use this data and what configuration options you have in this regard. We never collect personal data via our websites without your permission. You alone decide whether you wish to provide us with this data, for example within the framework of visiting the website, registering, purchasing, submitting a support query or similar.
With our data protection declaration, we wish to provide you with answers to the most important questions.
1. What data is collected and how is it used?
1.1 Websites (www.rockethome.de, www.rockethome-smarthome.de)
The use of our websites is usually possible without providing personal data.
1.1.1 Personal data
You may provide us with your personal data on a voluntary basis within the framework of registration, a contact inquiry (by email or contact form), when requesting a quotation or similar. We generally use your personal data to respond to your inquiry, process your order or provide you with access to specific information or offers.
1.1.2 Non-personal data
When you access our websites, information that cannot be attributed to a specific person is automatically collected in a protocol file, for example:
• Abbreviated user IP
• A login name if used
• Time of access
• URL accessed
• Status of the delivery
• Size of the delivery
• The user agent utilised by the user
We use this information to determine the appeal of our websites and to improve their contents. We store IP addresses for a maximum period of 52 weeks. Storage takes place for reasons of data security, to guarantee the stability and reliability of our system. (The legal basis is article 6, section 1, letter f of the GDPR)
We reserve the right to statistically evaluate anonymised data records.
The data entered by you when you place an order in the webshop is acquired, processed and used by ROCKETHOME or by its contracted service providers for registration on and use of the webshop, and for processing your orders, in accordance with the provisions of the EU General Data Protection Regulation (in particular article 6, section 1, letter b of the GDPR). ROCKETHOME and its contracted service providers are entitled to get in contact with you for these purposes (contact may take place via post, email or telephone depending on the contact details you provide).
Registration and use refers to ROCKETHOME acquiring, processing and using the data provided by you to create and set up your webshop user account.
Ordering products and services refers to the acquisition, processing and use of the data provided by you to process your order. This includes using and passing on the data to contracted service providers, e.g. for billing and shipping the goods.
Your data is transmitted to a credit agency, companies who process your selected form of payment and if necessary to a collection agency, if this transmission is necessary and if ROCKETHOME is entitled to disclose your data in accordance with the legal regulations.
The service providers referred to in this data protection declaration (logistics companies, service providers for on-site installation, service providers who supply billing and payment services, telephone-based customer support and IT services, distribution partners, etc.) have been commissioned by ROCKETHOME in accordance with the data protection regulations and are obligated to observe the data protection and data security standards of ROCKETHOME. Within the framework of this obligation, we have stipulated that service providers shall only receive the data they actually require to fulfil their respective tasks. You can be confident that ROCKETHOME and the respective contracted service providers acquire, process and use your personal data on a strictly confidential basis, and that they do not disclose your data to unauthorised third parties.
If payment takes place via PayPal, the data required for your existing PayPal account or the data necessary in order to set up a PayPal account is acquired by PayPal directly. ROCKETHOME only transmits the data actually necessary for the payment to PayPal in this case.
ROCKETHOME reserves the right to transmit your data to a collection agency, if invoices issued for services and/or products that have been delivered as agreed are not settled, also after reminders have been served.
1.3 ROCKETHOME SMART HOME Portal and App (my.rockethome.de)
This pertains to protected applications that are available to you after you have registered in the portal. In order to use the personalised and secure area, we require various data from you within the framework of your registration, which is collected and stored, and is necessary for you to use the ROCKETHOME products. (The legal basis is article 6, section 1, letter b of the GDPR.)
This customer data encompasses all information that is necessary in order to identify the respective customer account, independent of the respective user behaviour.
Your customer data includes your email address, password, forename and surname including your title, your gender, a postal address, the MAC address of your Smart Home Hub and your user name. It is not essential to provide further information, although this does help us with verification and identification if you have any questions and you wish to avail of our customer service for example.
The provision of this data is a precondition when using ROCKETHOME SMART HOME. We require your user name and MAC address in order to uniquely identify you as a user. At the same time, your valid email address is required in case you need to reset your password.
If you delete the user account you have created, your personal data will also be deleted. Your data will be blocked rather than deleted, if ROCKETHOME is obligated to store your personal data in accordance with the applicable commercial storage periods or due to any other overriding statutory regulations. If you wish to delete your user account, please send an email with the key phrase “delete user account” to firstname.lastname@example.org, stating your user name, forename and surname. It is important that you provide the details precisely as you entered them when you registered with us.
If you use ROCKETHOME Smart Home, we will collect all data necessary to ensure the seamless operation of your Smart Home.
• MAC address of the Smart Home Hub
• User agent
• IP address
• The authentication information
• Assignment of the MAC address to you as a customer
• The various software licences, activation codes and their terms
• Access data for the Smart Home account
• Date of account creation
• Mobile phone numbers and email addresses for the purpose of notifications via email and SMS if these have been voluntarily set up*
• Devices and device configurations used
• Activities of connected devices (e.g. sensor data such as motion or temperature, and camera images)
• User-defined rules
If you should need to avail of our customer support at any time, we will create a so-called ticket with your customer data and your inquiry, in order that your inquiry remains comprehensible and traceable for you and the customer support employees. If necessary or expedient for the more efficient processing of your inquiry, the employee will be able to view device-specific data on your Smart Home System, such as the programs installed, firmware, MAC address and the connected devices, as well as their firmware. Additionally and only after receiving your consent, technical customer support employees may gain access to the stored information (rules, user profiles and protocol files), if previous analyses and trouble-shooting have been unsuccessful.
• Access to error messages and warnings that arise
• Access to information regarding the connection with the ROCKETHOME platform
• Access to information regarding changes to device statuses (e.g. change from status “switched on” to “switched off” at a sensor)
• Access to protocol files of the applications
• Access to information on currently controlled processes (e.g. time point of the activation of a sensor)
• At no time is an employee able to view your personal passwords
“Cookies”: In order to improve your user experience, we use so-called “cookies”. Cookies allow us to align a website with your interests for example, or store your user name so that you are not required to re-enter it every time you visit the site. If you do not wish us to recognise your computer, please adjust the settings in your browser so that it deletes cookies from your computer’s hard drive, blocks all cookies or warns you before a cookie is stored, or do not use the “stay logged in” function. If you wish us to deactivate these functions for you, please send us an email to: email@example.com.
2. Where is my data processed?
Your data is processed in Germany. Data processing also takes place abroad, inside and outside of Europe within the legally permissible framework.
3. How secure is my data?
In order to protect your data against unauthorised access and misuse, we have implemented comprehensive technical and operational security precautions in accordance with German and European law.
4. Is my data shared with third parties?
The use of our websites is fundamentally possible without providing personal data. However, in some cases it may be necessary to pass data on to external companies.
Under certain preconditions and exclusively within the framework of the data protection provisions, your data is passed on to the following third parties:
- Service providers: We commission service provides with performing certain activities on our behalf, for example processing purchases, hosting and securing our applications, shipping products, processing credit card payments, sending emails, sending SMS messages, managing support inquiries, providing advertising, analysing the use of our websites and apps, tracking the effectiveness of our marketing campaigns, and enabling users to establish a connection with their social networks. We may share data about you personally with these service providers exclusively to the extent necessary for them to perform these services on our behalf, and only to the degree that is legally permissible.
In certain cases we are legally obligated to transmit data to official authorities upon request. Aside from the above, we do not pass on any data to third parties without your express permission.
5. Is my user behaviour evaluated, e.g. to improve the products of ROCKETHOME?
We create user profiles under a pseudonym within the framework of the legal regulations. We are able to evaluate these for advertising and market research, in particular for the improvement of our products. It is not possible to associate a user profile with you directly. The profile data is not connected with further information about you personally. In the following, we inform you of the processes used on our websites and how you can disallow these at any time.
5.1 Google Analytics
This website uses Google Analytics, a web analysis service from Google Inc, (1600 Amphitheatre Parkway Mountain View, CA 94043, USA; “Google”;). This use encompasses the solution “Universal Analytics”. With this, it is possible to assign a pseudonym user ID to data, sessions and interactions across multiple devices, and to analyse the activities of a user on an intra-device manner in this way. This data protection information is made available by www.intersoft-consulting.de. Google Analytics uses so-called “cookies”, text files that are saved on your computer and that facilitate the analysis of the use of the website by you. The information regarding your use of this website generated by the respective cookie is generally transmitted to a Google server in the USA and saved there. However, in the event of IP anonymising being activated on this website, your IP address will be shortened by Google beforehand within the member states of the European Union or in other countries that are contracting parties to the agreement on the European Economic Area. Only in exceptional cases will the full IP address be transferred to a Google server in the USA and shortened there. The IP address that is transmitted by your browser for the purpose of Google Analytics is not associated with other data by Google. Google uses this information, on behalf of the operator of this website, in order to evaluate your use of the website, collate reports on website activities and provide further services associated with website use and use of the internet for the website operator. These purposes constitute our justified interest in the data processing. The legal basis for the use of Google Analytics is § 15, section 3 of the German Telemedia Act, or art. 6, section 1, lit. f of the GDPR. The data sent by us and linked with cookies, user identifiers (e.g. user ID) or ad IDs is automatically deleted after 14 months. The deletion of data that has reached the end of its storage period takes place automatically, once a month. You can find more detailed information on usage conditions and data protection at www.google.com/analytics/terms/de.html
You can prevent the cookies being saved by adjusting the requisite settings in your browser software. However, we do point out that this may prevent you from being able to fully use all of the functions of this website. Furthermore, you can prevent the acquisition of the data created by the cookie and related to your use of the website (including your IP address) by Google, as well as the processing of this data by Google, by downloading and installing this browser add-on: (https://tools.google.com/dlpage/gaoptout?hl=de). Opt-out cookies will prevent the collection of your data if you visit this website in the future. In order to prevent the data acquisition by Universal Analytics on all of your devices, you must perform the opt-out on all systems used. If you click here, the opt-out cookie will be set:
5.2 Google AdWords
The following Google AdWords functions are used on this website.
• Interest categories
• Similar target groups
• Other forms of interest-related advertising
We use these Google Adwords functions to appeal to visitors to this website also on other websites of third party providers, or to internet users with specific interest profiles that are based on their internet use. We do not gather any personal data with our cookies, re-marketing lists and other anonymous IDs.
Data is collected and stored in some of our products through the use of the web analysis software Matomo (www.matomo.org), a service of the provider InnoCraft Ltd., 150 Willis St, 6011 Wellington, New Zealand, (“Matomo”), on the basis of our justified interest in the statistical analysis of the user behaviour for optimisation and marketing purposes, in accordance with art. 6, section 1, lit. f of the GDPR. It is possible to generate and evaluate pseudonymised usage profiles for the same purpose with this data. Cookies may be used for this purpose. Cookies are small text files that are saved in locally in the cache memory of the internet browser of the website visitor. The cookies allow recognition of the internet browser for example. Data acquired with the Matomo technology (including your pseudonymised IP address) is processed on our servers.
The information generated by the cookie in the pseudonymised user profile is not used to identify the visitor to this website personally, and it is not combined with personal data about the bearer of the pseudonym.
If you do not wish us to store and evaluate this data regarding your visit to our website, you can prevent this storage and use at any time with a mouse click. In this case, a so-called opt-out cookie will be saved in your browser, which prevents Matomo from collecting any session data. Please note that deleting all of your cookies will also delete the opt-out cookie, in which case you will need to reactivate it if necessary.
FullStory logs the user behaviour in our online shop. By logging user sessions, we are able to analyse these and subsequently improve the website experience for visitors. FullStory stores and collects data in anonymised form with the help of cookies. This tracking (i.e. the acquisition of the data created by the cookie and related to the use of the website) can be deactivated at any time. To do so, please follow the instructions provided here: https://www.fullstory.com/optout.
6. How long is my data stored for?
We store your personal data for the period necessary for the purposes for which it has specifically been acquired as set out in this data protection declaration, unless a longer storage period is either required or permissible according to the legal regulations.
7. What rights do I have in relation to the handling of my data?
8. Who is my point of contact at ROCKETHOME, if I have questions concerning data protection?
If you have any questions or comments, please contact us by email at firstname.lastname@example.org.
9. Responsible party
Dipl.-Kfm. Yüksel Sirmasac, Managing Director (CEO)
Dipl.-Inf. Sven Paeslack, Managing Director (COO)
Telephone: +49 (221) / 88 89 55 – 0
Fax: +49 (221) / 88 89 55 – 99