Privacy
Fundamentals
The protection of your personal data is an important part of our daily work. This is based on the General Data Protection Regulation (GDPR), the provisions of the Data Protection Act of the Evangelical Church in Germany (DSG-EKD), the Federal Data Protection Act (BDSG), and other data protection regulations. Our employees are bound to secrecy and confidentiality and to compliance with data protection regulations. The information on this website has been compiled with great care. Nevertheless, no guarantee can be given for its accuracy and completeness. For this reason, any liability for possible damages in connection with the use of this website is excluded. The use of our website does not constitute a contractual relationship between the user and us.
Whistleblower protection
Compliance with laws and regulations is in the interests of both employees and the company. We have therefore created a way for employees and certain third parties to report identified legal violations easily and discreetly via an online portal. To ensure the highest possible independence and confidentiality of your report, we work together with the law firm Siebel. The Siebel law firm will gladly receive your report and process it independently and on its own responsibility. The entire procedure is subject to the strict legal requirements of the Whistleblower Protection Act (HinSchG). As an alternative to this internal reporting, you can also use an external reporting office. For more information and the option to submit a report, please visit:
EVIM Evangelischer Verein für Innere Mission in Nassau, Wiesbaden
EVIM gGmbH, Wiesbaden
Reporting office: https://evim.ks-hinweise.de
Use, purpose, and duration of data collection
In principle, the provision of personal data is not required to use our website. If you use the contact form or the application form, we will ask you for your name and other personal information. It is your decision whether you enter this data. EVIM uses your personal data exclusively to process your specific inquiry or application. It will not be processed for any other purposes. In particular, your personal data will not be passed on to third parties. Please note that data security cannot be guaranteed when communicating by email and we recommend sending confidential information by post. We only store this transaction-related data for as long as it is necessary to process your request and, if necessary, to contact you.
When you use our website, we store data such as operating system, browser, device type and display size, IP address, and time for statistical purposes. This data is not personally identifiable and is collected exclusively for statistical purposes in order to further optimize our website. An optimized website helps us to work cost-effectively and thus also ensures that donations are used in the best possible way. You can find out more in the following section "Analysis services".
Security measures
We have taken extensive technical and operational security measures to protect your personal data stored with us from unauthorized access and misuse. Our security procedures for protection against damage, destruction, or unauthorized access are regularly reviewed and adapted to technological progress. Our websites are equipped with a security certificate that guarantees encrypted data transmission (SSL encryption). You can recognize this by the lock symbol in the address bar of your browser.
Data transfer to third parties
Data is not passed on to third parties unless this is necessary for the provision of our services or the functioning of the website. Information on data that is transferred to third parties for this purpose can be found in the section on the integration of third-party services and content.
Links
This website contains links to external sites. If you click on these links, you should be aware that in most cases your IP address will also appear in the log of these websites and will be stored by them. We accept no liability for the content of external sites to which we link. This privacy policy applies only to this website and not to third-party websites.
Cookies
This website uses cookies. Cookies are small text files that are collected by your browser and temporarily stored on your computer. They do not reveal any personal information and cannot access or damage the data on your hard drive. Cookies allow us, for example, to tailor a website to your interests or to store your password so that you do not have to re-enter it each time. Of course, you can also view our website without cookies. If you do not want us to recognize your computer, you can prevent cookies from being stored on your hard drive by selecting "do not accept cookies" in your browser settings. You can also adjust the cookie settings for our websites via the Usercentrics consent management service we use. For more information, see the section on individual privacy settings in the following chapter.
If you do not accept cookies, this may lead to functional restrictions of our content.
Handling of applicant data
We offer you the opportunity to apply for a job with us (e.g., by email, post, or via our online application form). We assure you that your data will be collected, processed, and used in accordance with applicable data protection law and all other legal provisions, and that your data will be treated as strictly confidential.
Scope and purpose of data collection
When you send us an application, we process your associated personal data (e.g., contact and communication data, application documents, notes taken during interviews, etc.) to the extent necessary to decide whether to establish an employment relationship. The legal basis for this is § 26 BDSG / § 49 (1) DSG (initiation of an employment relationship). Consent can be revoked at any time. Your personal data will only be passed on within our company to persons who are involved in processing your application. If your application is successful, the data you have submitted will be stored in our data processing systems on the basis of § 26 BDSG / § 49 (1) DSG-EKD for the purpose of implementing the employment relationship.
Data retention period
If we are unable to offer you a position, you decline a job offer, or you withdraw your application, we reserve the right to store the data you have provided for up to 6 months from the end of the application process (rejection or withdrawal of the application) on the basis of our legitimate interests. The data will then be deleted and the physical application documents destroyed. The storage serves in particular for verification purposes in the event of a legal dispute. If it is apparent that the data will be required after the 6-month period has expired (e.g., due to an impending or pending legal dispute), deletion will only take place when the purpose for further storage no longer applies. Longer storage may also take place if you have given your consent (Art. 6 (1) (a) GDPR) or if statutory retention obligations prevent deletion.
Inclusion in the applicant pool
If we do not make you a job offer, we may include you in our applicant pool. If you are included in the applicant pool, all documents and information from your application will be transferred to the applicant pool so that we can contact you if suitable vacancies arise. Inclusion in the applicant pool is based solely on your express consent. Giving your consent is voluntary and is not related to the current application process. You can revoke your consent at any time. In this case, the data will be irrevocably deleted from the applicant pool, provided there are no legal reasons for retention. The data from the applicant pool will be irrevocably deleted no later than two years after consent is given.
Applications via the Softgarden online application form/tool
For online applications, we work with the external service provider softgarden e-recruiting GmbH (https://app.softgarden.io/just-hire/data-privacy). The Softgarden software used is hosted on servers in Germany. Data transfer is encrypted. Compliance with data protection requirements is ensured by a data processing agreement.
By submitting your application documents, you give your consent for your information to be stored, processed, and used to contact you during the application process. Without this consent, you cannot submit your online application. Mandatory information required to use the online application form is marked as such, as is voluntary information.
Donors and handling of donor data
Personal data
One of EVIM's tasks is to acquire donations so that we can fully fulfill our diaconal mission. As part of our fundraising and donor management activities, we process the following personal data about you: title, first name, last name, contact details, telephone number, email address, donation amount, donation purpose, and log data generated when using IT systems.
Purposes and legal basis of data processing
Data processing is used to process your donation and to contact you. This includes sending donation receipts and information about our current donation projects. Processing is carried out in our donation accounting program OpenHearts.
By submitting your donor data, you consent to the processing of your personal data. Consent is voluntary and can be revoked at any time by contacting the fundraising department.
If we intend to process your personal data for any other purpose, we will obtain your consent in advance.
Data processing
Within EVIM, only those persons and departments (e.g., financial accounting, fundraising) who need your personal data to fulfill our contractual and legal obligations in the area of donation management will receive it.
We work with external service providers to fulfill our contractual and legal obligations. We receive your personal data via the SozialBank online form integrated into our homepage. The SozialBank's data protection information applies to this:
Data processing by SozialBank:
On our website, we offer users the option of making donations online. If a user takes advantage of this option, the data entered in the corresponding form is transmitted to us and stored. The form is provided by SozialBank. The data entered is therefore immediately forwarded to SozialBank and the technical service providers used by SozialBank to provide the form via an encrypted SSL connection in order to execute the donation order. The data is not passed on to other third parties. The following data is collected with the form:
- Full name (last name, first name) with title (optional title and company name)
- Address (street, house number, city, postal code, country)
- Bank details (IBAN)
- Donation data (donation recipient, amount, donation/purpose, donation receipt requested)
- Additionally for donations via credit card: card type, card number, CVV/CVC verification number, credit card expiration date
If a donation receipt is requested, we process the data in order to issue and send a corresponding donation receipt.
The data collected is necessary for the execution and implementation of the donation order. The user's email address is required to confirm receipt of the donation order. The data will not be used for any other purposes. The legal basis for the processing of the data is Art. 6 (1) lit. b GDPR.
When the form is submitted, the user's IP address is also stored. We use the IP address to prevent misuse of the donation form. The IP address is used for the purpose of fraud prevention and to prevent unauthorized transactions that could harm third parties. The legal basis for processing the IP address is Art. 6 (1) lit. f GDPR.
The data will be deleted as soon as it is no longer required for the purpose for which it was collected. In the case of bank details, this is immediately after the donation amount has been collected. After a donation receipt has been created and sent, if requested, the address data is stored, like all other data entered, in accordance with tax law retention requirements, but is blocked for any other use. The IP address additionally collected during the sending process is deleted after a period of seven days at the latest.
The user has the option to object to the processing of their data at any time. However, it should be noted that if an objection is raised, the donation order can no longer be executed as requested.
Responsible for data processing via the donation form:
SozialBank AG
Konrad-Adenauer-Ufer 85
50668 Cologne
Duration of storage of personal data
We process your donor data for the purpose of contacting you until you revoke your consent. Once you revoke your consent, your data will be stored until the end of the statutory retention period for donations received.
Integration of third-party services and content
Within our websites, we use content or service offerings from third-party providers in order to integrate their content and services, such as videos and maps (hereinafter referred to as "content"). This content includes the integration of videos from our video channel on YouTube and maps showing the location of our facilities from Google Maps. We use this content on the basis of our legitimate interests, i.e. in the interest of analyzing the optimization and economic operation of our online offering within the meaning of Art. 6 (1) lit. f of the GDPR and to improve user-friendliness. The integration of this content requires that the third-party providers of this content read your IP address as a user, as the content cannot be transmitted to your browser without the IP address. The IP address is therefore necessary for the display of this content. We endeavor to use only content whose providers use the IP address solely for the delivery of the content. Third-party providers may also use so-called pixel tags (invisible graphics, also known as "web beacons") for statistical or marketing purposes. Pixel tags can be used to evaluate information such as visitor traffic on our websites. This pseudonymous information, which does not allow any conclusions to be drawn about your identity, can be stored in cookies on the device you use to access our website and may include technical information about your browser and operating system, referring websites, visit time, and other information about your use of our website, and may also be linked to such information from other sources.
Individual privacy settings
You can accept, reject, or individually control your consent to data processing for all of the services listed below. To do this, you will see the Usercentrics dialog box as a consent management service when you first visit the page.
You can change your settings at any time by opening the Usercentrics dialog window via the fingerprint icon displayed at the bottom left of the browser on each page.
All details about the providers, as well as the purpose, storage period, legal basis, technologies used, and more, can also be accessed via the Usercentrics dialog box.
Usercentrics
We use Usercentrics from Usercentrics GmbH, Sendlinger Str. 7, 80331 Munich, Germany, as a service that allows you to manage your privacy settings for the third-party services listed below. The Usercentrics function is essential for meeting the increasing legal requirements for data protection.
Analysis services
To determine this statistical data, we use so-called tracking pixels, which collect and store data in anonymized form for optimization and study purposes. This measurement was developed with data protection in mind. Your identity always remains protected. You will not receive any advertising via the system. Our website uses Matomo (formerly Piwik), which is a so-called web analysis service. Matomo/Piwik uses so-called "cookies," which are text files that are stored on your computer and enable us to analyze the use of the website. For this purpose, the usage information generated by the cookie (including your truncated IP address) is transmitted to our server and stored for usage analysis purposes, which serves to optimize our website. Your IP address is immediately anonymized during this process, so that you remain anonymous to us as a user. The information generated by the cookie about your use of this website will not be disclosed to third parties. You can prevent the use of cookies by selecting the appropriate settings in your browser, but please note that if you do this, you may not be able to use the full functionality of this website.
Social networks
EVIM uses the social media platforms Facebook, YouTube, Instagram, LinkedIn, kununu, and Xing. However, we do not use so-called social media plugins on our website that display content from social networks on the page or enable login. We only link to our presence on the aforementioned social networks. As with any external link, only your IP address is transmitted (see section "Links"), but no personal data.
WhatsApp applicant counseling
If you contact us via WhatsApp, you consent to the processing of your telephone number and the personal data you provide to us by the EVIM Evangelischer Verein für Innere Mission in Nassau for the purpose of career counseling and, if applicable, initiating an employment contract.
YouTube
We embed videos via the "YouTube" platform provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
On some pages, we embed digital road maps from the "Google Maps" service provided by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. This also includes the location and radius search function on our pages, which you can use to search for and locate our facilities or job locations.
The data processed may include, in particular, your IP addresses and your location data as a user, but this will not be collected without your consent. This is usually done within the settings of your mobile device. The data collected by Google may be processed in the USA.
When you visit our website, your browser loads the necessary code from Google. For this purpose, the browser you are using must connect to Google's servers. This allows Google to know that our website has been accessed via your IP address. At the same time, Google may store cookies on your device, unless you have disabled the use of cookies in your browser, or read cookies. Location data may also be collected if you allow this in your browser. Google Maps is used to make our website appealing and convenient, and to make it easier to find the locations specified on our website. This constitutes a church interest within the meaning of § 6 (4) DSG-EKD. Google stores the transmitted usage data and may use it for evaluation purposes. If you are logged in with a Google account, the usage data will be assigned to your personal profile. Data processing for advertising and market research purposes is based on Google's legitimate interest. Rights to object to data processing can only be asserted against Google. Enforcing these rights may be difficult. EVIM has no influence on data transmission. We collect your IP address to enable transmission to Google. You are not obliged to provide this personal data, but without it, you will not be able to use the relevant parts of our website.
Google reCaptcha
We integrate the "reCaptcha" function for detecting bots when entering data in online forms from the provider Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. ReCaptcha enables us to prevent online forms from being spammed en masse by automated routines (so-called "bots"). If you use an online form on our websites, you must actively check the "I am not a robot" box. With the "reCaptcha" function, Google analyzes the input behavior in the data fields of the form and can thus recognize whether entries were made by a human or a machine.
Data protection, restriction of use, and revocation of Google services
You can view the scope of data collected by Google in Google's privacy policy and restrict or revoke the use of your data via the opt-out function:
Google's privacy policy: https://www.google.com/policies/privacy/
Opt-out: adssettings.google.com/authenticated.
Information and revocation, data protection officer
You can obtain information about your data stored by us at any time, free of charge and without giving reasons. You can have your data collected by us blocked, corrected, or deleted at any time and object to the collection and storage of data for the purpose of optimizing our website. You can also revoke your consent to data collection and use at any time without giving reasons. To do so, please contact the address given in the imprint. We are always happy to answer any further questions you may have about our privacy policy and the processing of your personal data. You can contact our data protection officer at
datenschutzbeauftragter@evim.de
Right to complain
You have the right to lodge an informal complaint with the competent data protection supervisory authority about our processing of your personal data. The competent supervisory authority is:
The Data Protection Officer of the EKD
Friedhof 4, 44135 Dortmund
Phone: (0231) 533827-0
Fax
This privacy policy is based on a template provided by Schutzwerk GmbH and datenschutzbeauftragter-info.de, which we are grateful to be able to use and which we have adapted to our requirements.