Information on data processing
We process your personal data (hereinafter referred to as ‘data’) exclusively on the basis of the statutory provisions. With this privacy policy, we want to provide you with comprehensive information about the processing of your data in our company and your data protection claims and rights in accordance with Articles 13 and 14 of the General Data Protection Regulation (GDPR).
Please refer to the privacy policy for information on the responsible body and the data protection officer:
https://www.mittelstandsschutz.de/en/legal-information/data-protection
Processing purposes and where the data comes from
DMS Deutsche Mittelstandsschutz GmbH operates in the field of operational security for:
- Occupational medicine
- Occupational safety
- Fire safety
- Electrical safety
- Data protection
and process personal data for this purpose.
We obtain the personal data of interested parties, customers, business partners and suppliers from them themselves, through recommendations or research in publicly accessible data sources, e.g. the Internet.
On what legal basis is the data processed?
We process your data
- to fulfil (pre-)contractual obligations (Article 6 (1) b GDPR). We require this data from you, otherwise cooperation is not possible.
- to fulfil legal obligations (Art. 6 (1) c GDPR): e.g. from the Commercial Code or the Tax Code. You must provide us with this data, otherwise cooperation is not possible.
- to safeguard legitimate interests (Article 6 (1) f GDPR): Based on a balancing of interests, data processing may take place beyond the actual fulfilment of the contract to safeguard legitimate interests of us or third parties.
Data processing to safeguard legitimate interests takes place in the following cases, for example:
- Advertising or marketing
- Measures for business management and further development of services
- Data that we have received from you in the course of our business relationship (e.g. in customer meetings)
- Maintaining a customer database
- In the context of legal proceedings
- Use of web applications
- Within the scope of your consent (Art. 6 (1) a GDPR): e.g. for your customer reviews.
Processing of personal data for advertising purposes
You may object to the use of your personal data for advertising purposes at any time. To do so, please use the following email address:
We are entitled under the legal requirements of Section 7 (3) of the German Unfair Competition Act (UWG) to use customers' email addresses for direct advertising of our own similar services.
If you do not wish to receive advertising emails from us, you can object to the use of your data for this purpose at any time. Please send a written notification to
is sufficient for this purpose.
Who receives your data?
If we use a service provider for order processing (e.g. training portals), we remain responsible for the protection of your data. All processors are contractually obliged to treat your data confidentially and to process it only within the scope of the service provision. The processors commissioned by us receive your data if they need it to perform their respective services. These include, for example, IT service providers that we need for the operation and security of our IT system, as well as software providers for the execution of our business processes.
Within the framework of contractual cooperation or projects, data from interested parties, customers, business partners and suppliers is passed on to our service partners and training partners for implementation. This is done in the legitimate interest of all parties involved.
In addition, we transfer your personal data to other recipients outside the company if this is necessary to fulfil our contractual and legal obligations (e.g. tax advisors, authorities).
Data transfer to third countries
As a matter of principle, we do not transfer any data to third countries.
How long will your data be stored?
Data relating to interested parties, customers, business partners and suppliers will be retained by DMS Deutsche Mittelstandsschutz GmbH for four years after the end of the working relationship (due to any outstanding warranty claims). Individual data may also be subject to longer retention periods for legal, tax or commercial reasons and may only be deleted once these legal obligations have expired.
In the event of legal disputes in which the data is required as evidence, the data will only be deleted once the legal disputes have been resolved.
What are your data protection rights?
Data subjects have the right to access, rectify, block, erase or restrict the processing of their data at any time. You may withdraw your consent with future effect; data processing remains lawful until your withdrawal takes effect. You may receive your stored personal data in electronic form or as a copy for data transfer.
Right of objection
If we process your data on the basis of legitimate interest, you may object to this data processing at any time.
We will then no longer process your data unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights and freedoms, or the processing serves to assert, exercise or defend legal claims. You can object to the processing of your data for direct marketing purposes at any time without giving reasons.
DMS Deutsche Mittelstandsschutz GmbH does not use automated decision-making (profiling).
Right of appeal
If you believe that we are violating German or European data protection law when processing your data, please contact us so that we can clarify any questions. Please contact us either by post (see address above) or by email:
In case of doubt, we may request additional information to confirm your identity.
In addition, the supervisory authority of the federal state of North Rhine-Westphalia is available to you as a point of contact.