This Privacy Policy explains how UFIT GmbH (hereinafter "UFIT", "we", "us") processes personal data when you visit our website and use our online offers.
The controller within the meaning of the General Data Protection Regulation (GDPR) is:
UFIT GmbH
Firtz-Karl-Henkel-Str. 12-16, Halle 12
67454 Haßloch
Germany
Phone: +49 155 69 47 57 25
Email: sales@ufit.de
Website: https://www.ufit.de
If you have questions about this Privacy Policy or about data protection at UFIT, you can contact us at any time using the details above.
Further mandatory information about the provider can be found in the Imprint page of this website.
We process personal data only to the extent necessary to provide a functional website, our contents and services, and to handle inquiries and orders. In particular, the following data are processed when you use this website:
Server log files
When you access our website, technical information is automatically transmitted by your browser and temporarily stored in server log files. This includes in particular:
- IP address of the requesting device
- Date and time of access
- Requested URL and file name
- Referrer URL (previously visited page)
- Browser type and version
- Operating system used
These data are processed for technical reasons to ensure a stable and secure operation of the website. A direct identification of individual users is not intended.
Contact via email or contact form
If you contact us by email or via the contact form on the Contact page, we process the information you provide (e.g. name, company, email address, phone number, content of the message, technical details about your application) in order to handle your inquiry.
Orders and customer account (online shop)
When you place an order in our online shop or, where available, create a customer account, we process identification, address and communication data (such as name, billing and shipping address, email address, phone number), order data (products ordered, prices, payment status, delivery details) and, where applicable, payment and tax-related information required for order processing.
Optional data
In some places you can voluntarily provide additional information (e.g. project details, preferred contact times). This information is clearly marked as optional and is used only for the stated purpose.
We process personal data in accordance with the GDPR and the applicable national data protection laws. Depending on the situation in which you provide data, the processing is based on the following legal grounds and purposes:
- Provision of the website and IT security (Art. 6(1)(f) GDPR)
Processing of server log files and technical data is necessary to ensure the functionality of the website, to optimize the content and to safeguard the security of our IT systems. Our legitimate interest follows from these purposes. - Communication and handling of inquiries (Art. 6(1)(b) and (f) GDPR)
When you contact us, we process your data to respond to your request and, where applicable, to prepare and perform a contract. If no contractual relationship exists, the legal basis is our legitimate interest in efficient and professional communication with interested parties and customers. - Order processing and contract performance (Art. 6(1)(b) GDPR)
For orders in our online shop, we process your data to perform the contract, including order management, delivery of products, customer service and, where necessary, returns and warranty cases. - Compliance with legal obligations (Art. 6(1)(c) GDPR)
We process certain data to comply with legal obligations, for example under commercial and tax law (e.g. retention obligations for business and transaction documents). - Consent (Art. 6(1)(a) GDPR)
If and to the extent that we ask you for your consent (e.g. for the use of non-essential cookies or certain marketing measures), the processing takes place exclusively on the basis of your consent. You can withdraw your consent at any time with effect for the future. - Legitimate interests in optimization and marketing (Art. 6(1)(f) GDPR)
Where legally permissible, we may process data to improve our website, products and services, to analyze usage and to present content that is relevant for our visitors. Our interests are balanced with your rights and freedoms.
Cookies
Our website uses cookies and similar technologies in order to make our offer more user-friendly, effective and secure. Cookies are small text files that are stored on your device and that your browser saves. We differentiate between:
- Technically necessary cookies that are required to operate the website or certain functions (e.g. language settings, shopping cart functionality in the online shop).
- Optional cookies (e.g. for statistics or marketing), which are used only with your prior consent where legally required.
In your browser settings you can delete cookies at any time and configure whether cookies may be stored or under which conditions they are stored.
Cookie banner and settings
Where implemented, a cookie banner informs you when you first visit the site about the categories of cookies used and allows you to select which optional cookies you consent to. You can change your selection later via the cookie settings linked in the footer, if available.
Web analytics and tracking
To better understand how our website is used and to continuously improve it, we may use web analytics tools. Typical data processed include, for example, browser type and version, operating system, referrer URL, pages visited, duration of visit and pseudonymized identifiers. If such tools are used, the processing is based either on your consent or on our legitimate interest in optimizing our website, depending on the legal requirements in your jurisdiction.
Specific information about the analytics or marketing tools used (if any), the scope of data processing and the storage periods is provided in the cookie notices or additional tool-specific information, where available.
We only disclose your personal data to third parties if this is necessary for the provision of our website and services, if we are legally obliged to do so, if you have given your consent or if we have a legitimate interest in the disclosure.
Categories of recipients may include in particular:
- IT service providers (e.g. hosting providers, support and maintenance partners)
- Payment service providers and banks (for processing payments in the online shop)
- Logistics and shipping companies (for the delivery of goods)
- Tax advisors, auditors and legal advisors
- Authorities and public bodies where we are legally obliged to provide information
These recipients process data either as independent controllers or on our behalf as processors in accordance with Art. 28 GDPR. In the latter case, we conclude appropriate data processing agreements and ensure that personal data are processed only in accordance with our instructions and with adequate technical and organizational measures.
Transfers to third countries
If, in exceptional cases, personal data are transferred to recipients in countries outside the European Union (EU) or the European Economic Area (EEA), this is done only where the special requirements of Art. 44 et seq. GDPR are fulfilled, for example on the basis of an adequacy decision of the European Commission or standard contractual clauses. Where such transfers cannot be ruled out due to the use of certain service providers (e.g. specific cloud, hosting or analytics services), we take additional measures where necessary to protect your data.
As a data subject, you have the following rights with regard to your personal data processed by us, subject to the respective legal requirements:
- Right of access (Art. 15 GDPR)
You have the right to obtain confirmation as to whether we process personal data about you and, if so, to receive information about these data and certain related details. - Right to rectification (Art. 16 GDPR)
You may request the rectification of inaccurate personal data concerning you and the completion of incomplete data. - Right to erasure (Art. 17 GDPR)
You may request the erasure of your personal data where, for example, they are no longer necessary for the purposes for which they were collected or processed, or where you have withdrawn your consent and there is no other legal basis for processing. - Right to restriction of processing (Art. 18 GDPR)
Under certain conditions you can request the restriction of processing, so that your data may only be stored and no longer processed in any other way. - Right to data portability (Art. 20 GDPR)
Where processing is based on consent or on a contract and is carried out by automated means, you have the right to receive the personal data concerning you in a structured, commonly used and machine-readable format and, where technically feasible, to have those data transmitted to another controller. - Right to object (Art. 21 GDPR)
You have the right to object, on grounds relating to your particular situation, at any time to the processing of personal data concerning you which is based on Art. 6(1)(e) or (f) GDPR. We will then no longer process your personal data unless we can demonstrate compelling legitimate grounds for the processing. Where data are processed for direct marketing purposes, you can object at any time with effect for the future. - Right to withdraw consent (Art. 7(3) GDPR)
If you have given us consent to process personal data, you may withdraw this consent at any time with effect for the future. The withdrawal does not affect the lawfulness of processing based on consent before its withdrawal. - Right to lodge a complaint with a supervisory authority (Art. 77 GDPR)
You also have the right to lodge a complaint with a data protection supervisory authority if you consider that the processing of personal data relating to you infringes data protection regulations.
If you wish to exercise your rights, please contact us using the contact details provided in this Privacy Policy or on the Contact page.
We store personal data only for as long as necessary to fulfill the respective purposes or as required by statutory retention obligations.
- Technical data and server logs are typically stored for a short period to ensure the operation and security of the website and are then deleted or anonymized.
- Contact inquiries are stored for the duration of processing and, where applicable, beyond this period where necessary for documentation purposes or to establish, exercise or defend legal claims.
- Order and contract data are stored for the duration of the contractual relationship and, in addition, in accordance with statutory retention periods, in particular under commercial and tax law (usually 6 to 10 years).
- Data processed on the basis of consent are stored until you withdraw your consent, unless a longer storage period is required or permitted by law.
If the purpose of processing ceases to apply or if a prescribed retention period expires, the personal data are routinely deleted or anonymized in accordance with the legal provisions.
We take appropriate technical and organizational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorized disclosure or access.
These measures include, in particular, the use of secure server systems, encryption where appropriate, access controls and access restrictions, procedures for regularly reviewing, assessing and evaluating the effectiveness of the measures, and the continuous improvement of our IT security in line with technical progress.
Please note that data transmission over the internet (e.g. when communicating by email) may be subject to security gaps. Complete protection of data against access by third parties cannot be guaranteed. For confidential information, please contact us by phone or ask us for a secure communication channel.
We may update this Privacy Policy from time to time to reflect changes in legal requirements, our processing activities or technical developments. The currently valid version is always available on this website under the "Privacy Policy" page.
If necessary, we will inform you separately about significant changes to this Privacy Policy (for example by means of a notice on our website).
Effective date: 1 March 2025
If you have questions about this Privacy Policy, about the processing of your personal data or if you wish to exercise your data subject rights, you can contact us at any time:
UFIT GmbH – Data protection
Firtz-Karl-Henkel-Str. 12-16, Halle 12
67454 Haßloch
Germany
Phone: +49 155 69 47 57 25
Email: netzwerk@ufit.de
You can also use the contact options provided on the Contact page of this website. Please clearly state that your request concerns data protection so that we can process it accordingly.

