We appreciate your interest in our company. In this Privacy Policy, we explain how we collect, process, and use personal data when you visit our website, use our services, or contact us. This policy is based on the General Data Protection Regulation (GDPR) and the German Federal Data Protection Act (BDSG).
This Privacy Policy also applies to our social media profiles.
For definitions of key terms such as “personal data” and “processing,” please refer to Article 4 GDPR.
1. Controller
Multiple Solution Services
P.O. Box 120420
27518 Bremerhaven, Germany
Managing Director: Alexander Sascha Walter Jakusin
E-Mail: info@mss-services.com
The above party is the “Controller” as defined in Art. 4(7) GDPR.
2. Types of Data We Process
Depending on how you use our website and services, we may process the following categories of personal data:
- Usage data (e.g., access times, visited pages)
- Basic data (e.g., name, address)
- Contact data (e.g., phone number, email address)
- Contract data (e.g., contract subject, duration)
- Content data (e.g., text entries, uploaded files, photos, videos)
- Communication data (e.g., IP address)
- Other data you voluntarily provide
3. Purposes of Processing
We process personal data for the following purposes, in accordance with Article 13 GDPR:
- Fulfilling and managing contracts
- Ensuring proof and documentation
- Technical and economic optimization of our website
- Making our website easy to access
- Fulfilling contractual and legal obligations
- Responding to legal complaints
- Meeting statutory retention requirements
- Statistical analysis and continuous improvement of our services
- Supporting commercial use of the website
- Improving user experience
- Providing user-friendly website features
- Operating the website securely and efficiently
- Marketing, sales, and advertising activities
- Preventing spam and misuse
- Managing application processes
- Customer service and customer care
- Responding to inquiries
- Implementing security measures
- Ensuring uninterrupted and safe website operation
4. Categories of Affected Individuals
We process the personal data of the following individuals:
- Website visitors and users
- Customers
- Prospective customers
- Job applicants
- Employees
- Employees of customers or suppliers
All of the above are collectively referred to as users.
5. Legal Bases for Processing
We process personal data on the following legal bases:
- Consent (Art. 6(1)(a) GDPR)
- Performance of a contract or pre-contractual measures (Art. 6(1)(b) GDPR)
- Compliance with legal obligations (Art. 6(1)(c) GDPR)
- Protection of vital interests (Art. 6(1)(d) GDPR)
- Legitimate interests, provided your rights do not override them (Art. 6(1)(f) GDPR)
6. Disclosure of Personal Data to Third Parties
We do not share your data with third parties unless:
- You have given consent
- It is necessary for contract performance (e.g., payment providers)
- A legal obligation or court order requires it
- It is necessary for law enforcement, security, or the protection of intellectual property
We also work with data processors (e.g., hosting providers).
These processors are carefully selected and bound by contracts according to Art. 28 GDPR.
7. Data Transfers to Non-EU Countries
As a rule, your data is processed within the EU/EEA.
If data is transferred outside the EU/EEA, the recipients must meet the requirements of Art. 44 ff. GDPR, such as:
- EU adequacy decision
- Standard Contractual Clauses (SCCs)
If data is transferred to the United States based on your explicit consent, we must inform you of the potential risk of secret access by U.S. authorities and limited legal remedies.
8. Data Deletion and Storage Duration
We delete or block personal data when:
- The purpose for processing no longer applies
- You withdraw your consent
- Storage is no longer necessary
Exceptions apply if statutory retention periods require longer storage, e.g.:
- Commercial records: 6 years (§ 257 HGB)
- Tax records: 10 years (§ 147 AO)
After retention periods expire, data is deleted unless it is still needed for contract performance.
9. Automated Decision-Making
We do not use automated decision-making or profiling.
10. Provision of Website & Server Logfiles
When you visit our website, we automatically collect:
- IP address
- Internet service provider
- Date and time of access
- Browser type, version, and language
- Accessed content
- Time zone
- HTTP status code
- Referrer URL
- Operating system
This data ensures a secure and reliable website experience.
Legal basis: Art. 6(1)(f) GDPR
Storage duration: 7 days (unless needed for security or evidence)
11. Cookies
We use cookies to improve website functionality and user experience.
Types of cookies used:
- Essential cookies (for basic functionality)
- Session cookies (deleted when browser closes)
- Persistent cookies (for login status, analytics, marketing)
- Third-party cookies (e.g., advertising providers)
You can manage or delete cookies at any time in your browser settings. You can also control non-essential cookies via our cookie consent banner.
12. Blog Comments
If you comment on our blog:
- You may use a pseudonym
- Your email is required
- We store your IP address for 7 days for security
- Legal basis: Art. 6(1)(b) and (f) GDPR
We may remove unlawful or disputed comments.
13. Contact via Form, E-Mail, Fax, or Post
When you contact us, we process your data to respond to your inquiry.
Legal bases:
- Consent (Art. 6(1)(a) GDPR)
- Legitimate interest (Art. 6(1)(f) GDPR)
- Contract initiation (Art. 6(1)(b) GDPR)
Data is deleted once no longer needed.
14. Contact via Telephone
If you call us:
- Your phone number may be temporarily stored
- Purpose: processing your request, safety, documentation
- Legal basis: Art. 6(1)(f) GDPR
15. Google reCAPTCHA
We use Google reCAPTCHA to prevent spam and abuse.
Data may be transferred to the USA.
Legal basis:
- Consent (Art. 6(1)(a) GDPR)
- Legitimate interest (Art. 6(1)(f) GDPR)
For more information:
https://policies.google.com/privacy
16. Social Media Profiles
We operate profiles on social networks.
When you visit these profiles, the respective platform’s privacy policies apply.
Data may be used for:
- Communication
- Advertising
- Market research
- Usage analytics
We recommend asserting data protection rights directly with the respective provider.
17. Applicant Data
Applicant data is processed for the application process.
Legal bases:
- Art. 6(1)(b) GDPR
- § 26 BDSG
We request that you do not submit special categories of data (Art. 9 GDPR), except for voluntary disclosure of a disability.
Rejected applications are deleted after 6 months.
18. Your Rights as a Data Subject
You have the right to:
- Withdraw consent at any time
- Object to processing
- Access your stored data (Art. 15 GDPR)
- Rectification (Art. 16 GDPR)
- Deletion (Art. 17 GDPR)
- Restriction of processing (Art. 18 GDPR)
- Data portability (Art. 20 GDPR)
- Lodge a complaint with a data protection authority
To exercise your rights, contact:
Multiple Solution Services
P.O. Box 120420
27518 Bremerhaven, Germany
E-Mail: privacy@mss-services.com
19. Data Security
We use technical and organizational measures to secure your data.
All data transmitted between your browser and our server uses SSL encryption.
