🎉 New tool: Simple language. Click the button and try it out live

Data protection - Eye-Able Assist

The use of Eye-Able® assistance software is generally possible without providing any personal data. However, if a data subject wishes to make use of special services of our company via our website, it may be necessary to process personal data. If the processing of personal data is necessary and there is no legal basis for such processing, we generally obtain the consent of the data subject. The processing of personal data is always carried out in accordance with the General Data Protection Regulation (GDPR) and in accordance with the country-specific data protection regulations applicable to Eye-Able®. As the controller, Eye-Able has implemented numerous technical and organizational measures to ensure the most complete protection of personal data processed through this website. With our data protection declaration, we inform you about the type, scope and purpose of the personal data collected, processed and used by us, as well as your rights in connection with the processing of your personal data by us.

1. name and contact details of the person responsible

The assistance software Eye-Able Assist is operated by the

Web Inclusion GmbH Gartenstraße 12c 97276 Margetshöchheim info@eye-able.com Managing Director: Oliver Greiner

We are responsible for the collection, processing and use of your personal data that may be collected from you when you use our software. If you have any questions about this, please contact us using the contact details provided.

2. your rights

If we process your personal data, you have the right to information, rectification, erasure, restriction of processing and data portability. You also have the right to object and the right to lodge a complaint. To assert your rights, please contact us or our data protection officer using the contact details above. You have the following individual rights:

2.1 The right to confirmation and information, Article 15 GDPR

You can request confirmation as to whether we process your personal data. If we process your personal data, you are entitled to information on the following points:

  • the purposes of processing
  • the categories of personal data that are processed,
  • the recipients or categories of recipients to whom the personal data are disclosed, in particular recipients in third countries or international organizations,
  • where possible, the envisaged period for which the personal data will be stored, or, if not possible, the criteria used to determine that period,
  • the existence of a right to rectification or erasure of personal data concerning you or to restriction of processing by the controller or a right to object to such processing,
  • the existence of a right of appeal to a supervisory authority,
  • if the personal data are not collected from the data subject, all available information about the origin of the data,
  • the existence of automated decision-making, including profiling, referred to in Article 22(1) and (4) GDPR and, at least in those cases, meaningful information about the logic involved, as well as the significance and the envisaged consequences of such processing for the data subject.

2.2 The right to rectification, Article 16 GDPR

You have the right to obtain from us without undue delay the rectification of inaccurate personal data concerning you. Furthermore, taking into account the purposes of the processing, you have the right to request the completion of incomplete personal data - also by means of a supplementary declaration.

2.3 The right to erasure, Article 17 GDPR

You can demand that we delete personal data concerning you immediately. In this case, we are obliged to delete personal data immediately if one of the following reasons applies:

  • the personal data are no longer necessary for the purposes for which they were collected or otherwise processed;
  • You withdraw your consent on which the processing was based and there is no other legal basis for the processing;
  • You object to the processing and there are no overriding legitimate grounds for the processing, or you object to the processing;
  • the personal data has been processed unlawfully;
  • the deletion of personal data is necessary to fulfill a legal obligation under Union law or the law of the Member States to which we are subject;
  • the personal data have been collected in relation to the offer of information society services referred to in Article 8(1) GDPR

By way of exception, the right to erasure does not exist if the processing

  • to exercise the right to freedom of expression and information;
  • for compliance with a legal obligation which requires processing by Union or Member State law to which we are subject or for the performance of a task carried out in the public interest or in the exercise of official authority vested in us;
  • for reasons of public interest in the area of public health;
  • for archiving purposes in the public interest, scientific or historical research purposes or statistical purposes in accordance with Article 89(1) GDPR, insofar as the right to erasure is likely to render impossible or seriously impair the achievement of the objectives of that processing,
    or
  • for the assertion, exercise or defense of legal claims.

If we are obliged to delete your personal data in accordance with the aforementioned principles and if we have made your personal data public, we will take appropriate measures, including technical measures, taking into account the available technology and the implementation costs, to inform other data controllers who process the personal data that you have requested them to delete all links to this personal data or copies or replications of this personal data.

2.4 The right to restriction of processing, Article 18 GDPR

Under the following conditions, you have the right to demand that we restrict the processing of your personal data, namely if:

  • the accuracy of the personal data is contested by you, for a period enabling us to verify the accuracy of the personal data;
  • the processing is unlawful and you oppose the erasure of the personal data and request the restriction of their use instead;
  • we no longer need the personal data for the purposes of the processing, but they are required by you for the establishment, exercise or defense of legal claims, or
  • you have objected to processing pending the verification whether our legitimate grounds override yours.

2.5 The right to data portability, Article 20 GDPR

You have the right to receive the personal data concerning you, which you have provided to us, in a structured, commonly used and machine-readable format. In addition, you have the right to transmit this data to another controller without hindrance from the controller to which the personal data has been provided, where

  • the processing is based on consent or on a contract and
  • the processing is carried out using automated procedures.

In exercising your right to data portability, you have the right to have your personal data transmitted directly from one controller to another, where technically feasible.

2.6 Right to object to data processing, Article 21 GDPR

You have the right to object, on grounds relating to your particular situation, at any time to processing of personal data concerning you which is based on your consent or on our legitimate interest; this also applies to profiling. Following your objection, we will no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves the establishment, exercise or defense of legal claims.

Direct advertising:

Where personal data are processed for direct marketing purposes, you have the right to object at any time to processing of personal data concerning you for such marketing, which includes profiling to the extent that it is related to such direct marketing. If you object to processing for direct marketing purposes, the personal data will no longer be processed for these purposes. You have the right to object, on grounds relating to your particular situation, to processing of personal data concerning you for scientific or historical research purposes or statistical purposes, unless the processing is necessary for the performance of a task carried out for reasons of public interest.

2.7 Right to withdraw consent

If you have given us your consent to process your personal data (e.g. for sending newsletters), you also have the right to withdraw this consent at any time with effect for the future. The revocation does not affect the legality of the processing carried out on the basis of the consent until the revocation. >The revocation can be made informally.

2.8 Right to lodge a complaint with a supervisory authority, Article 77 GDPR

In addition, you have the right to lodge a complaint against us with a data protection supervisory authority, in particular in the member state of your habitual residence, place of work or place of the alleged infringement, if you consider that our processing of your personal data infringes applicable data protection law. The supervisory authority responsible for us is the Bavarian State Office for Data Protection Supervision, Promenade 27 (Schloss), 91522 Ansbach, telephone: +49 (0) 981 53 1300, fax: +49 (0) 981 53 98 1300, e-mail: poststelle@lda.bayern.de

3. data processing when using Eye-Able Assist

If Eye-Able Assist is integrated locally on the page of a website or via the browser, no data is collected by Web Inclusion GmbH.

The use of Eye-Able Assist via servers of Web Inclusion GmbH is generally possible without actively providing personal data. The server infrastructure used is individual for each customer. Options include purely German servers, a European CDN, a global CDN or servers in individual countries such as Australia. However, every time Assist is called up, i.e. even if it is used purely for information purposes, various data and information is collected by us for technical reasons and stored in so-called log files or server log files (log files) of our server. These are only the personal or personally identifiable data that your browser transmits to our server.

Recorded and stored:

  • the IP address (Internet Protocol address),
  • the date and time of access to our website,
  • the browser software/browser types (computer programs for displaying websites) used to access our website as well as their versions and language,
  • the operating system and version used by the person accessing our system,
  • the Internet service provider of the accessing system,
  • Content of the request (content of the specific pages accessed),
  • Access status/HTTP status code (response provided by the server to each HTTP request, representing the status of the request),
  • the website from which our website is accessed,
  • Time zone difference to Greenwich Mean Time (GMT)

The storage of the IP address - even if only for a short time - is technically necessary due to the way the Internet works. However, before we process and store your IP address, it is shortened and only used in this unrecognizable (anonymous) form. The full IP address is not stored. It is no longer possible to identify you after it has been shortened. We also do not use the other information and data mentioned above to draw conclusions about you and/or to identify you. Data that makes it possible to identify you will be anonymized as soon as possible. The data and information listed above are collected by us exclusively to display Eye-Able Assist to you and to ensure its stability and security and to optimize our websites in this respect. The collection of the aforementioned data therefore serves the purpose of improving the data security of the programs and systems we use. In addition, we use the data for the anonymous, statistical evaluation of your movements on our websites. The log files are stored separately from your other personal data, which you may have provided to us yourself when visiting our website, and are not merged with this data. The log files are deleted after 3 days. The legal basis for the collection of the aforementioned data is our legitimate interest (Article 6(1)(f) GDPR) in the functionality and security of our websites. 

4. cookies and local storage

We do not use server-side cookies on our websites. Only anonymous entries are set in local storage and session storage to save user settings. 


5. data processing for inquiries by e-mail, telephone or fax

If you contact us by e-mail, telephone or fax, we will collect and process the personal data that you provide to us in this context (name, inquiry, telephone number, e-mail address, fax number, if applicable, e.g. e-mail signature, your address, if provided as part of the inquiry). We use your personal data exclusively to process your request. The data will not be passed on to third parties without your consent.

5.1 Data processing

The processing of your data that you provide in the context of your request via our contact form is based on the consent to processing (Article 6 (1) (a) GDPR), which you give by sending us your request, or on our legitimate interest (Article 6 (1) (f) GDPR) in the possibility of answering inquiries addressed to us. If you enter into a contractual relationship with us as a result of contacting us (membership), the data processing is carried out for the implementation of pre-contractual measures (Article 6 (1) (b) GDPR).

5.2 Storage period

We store the data we receive from you until your request has been fully processed. Subject to your consent to the storage of your data for further purposes, we will delete your data after the processing of your request has been completed, unless a contractual relationship has been established between us as a result of the contact. In this case, we store the data, if necessary, until the expiry of the retention periods under commercial and tax law

5.3 Right to withdraw consent

You can withdraw your consent to data processing at any time with effect for the future. Your revocation does not mean that the lawfulness of the processing of your personal data ceases to apply until your revocation. To exercise your right of revocation, simply write us a short e-mail or choose another form of contact. You will find the contact details in our legal notice or at the beginning of this declaration.

6. SSL or TLS encryption

We use TLS (Transport Layer Security) encryption technology on our websites where personal data can be entered (in particular the ordering process, logging into the customer account, subscribing to our newsletter). This is a protocol for encrypting data transmissions in order to prevent unauthorized access by third parties to your personal data, in particular your bank or financial data. You can recognize the encryption by the designation "https://".

7. explanation of terms

The basis for the following definitions is the General Data Protection Regulation (GDPR) of the European Union (Regulation EU 2016/679 of the European Parliament and of the Council).

7.1 "Responsible party"

Controller means the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data; where the purposes and means of such processing are determined by Union or Member State law, the controller or the specific criteria for its nomination may be provided for by Union or Member State law. >In principle, the controller is the natural person or the company which, alone or jointly with others, determines the purposes and means of the processing of personal data.

7.2 "Personal data"

Personal data means any information relating to an identified or identifiable natural person ("data subject"); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person. In addition to your first and last name, address, telephone number, email address, date of birth, etc., personal data also includes the IP address used, information about the devices you use, voice recordings, your customer card number, your account data, your credit card numbers and, for example, physical characteristics such as your gait or appearance.

7.3 "Processing"

Processing is any operation or set of operations which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction. Your data is also processed, for example, when you present your customer card at the checkout as part of the payment process or make a payment with your EC card.

7.4 "Third party"

Third party is a natural or legal person, public authority, agency or body other than the data subject, controller, processor and persons who, under the direct authority of the controller or processor, are authorized to process personal data.

7.5 "Restriction of processing"

Restriction of processing is the marking of stored personal data with the aim of restricting its future processing.

7.6 "Pseudonymization"

The processing of personal data in such a way that the personal data can no longer be attributed to a specific data subject without the use of additional information is called pseudonymization. This additional information. In addition, technical and organizational measures must be taken to ensure that the personal data is not assigned to an identified or identifiable natural person.

7.7 "Consent"

Consent means any freely given, specific, informed and unambiguous indication of the data subject's wishes by which he or she, by a statement or by a clear affirmative action, signifies agreement to the processing of personal data relating to him or her.