Aya Stern ("we", "us" and "our") respects your privacy and is committed to protecting it by complying with this privacy policy. This privacy policy describes how we collect and use your personal information when you visit our website at https://ayastern.com.
Please read this privacy policy to understand our policies regarding your personal information and how it is processed. If you do not agree with our policies, do not use the platform. By accessing or using the platform, you agree to and consent to this privacy policy.
Aya Stern may change this privacy policy at any time at its own discretion. Your continued use of the platform after changes have been made constitutes acceptance of and consent to those changes, so please check the privacy policy regularly for updates.
You have the following rights with respect to your personal data:
Right of access (Art. 15 GDPR)
Right to rectification (Art. 16 GDPR)
Right to erasure (Art. 17 GDPR)
Right to restriction of processing (Art. 18 GDPR)
Right to data portability (Art. 20 GDPR)
Right to object to processing (Art. 21 GDPR)
You may also lodge a complaint with a data protection supervisory authority pursuant to Art. 77 GDPR.
If you have given us your consent, you may withdraw it at any time without affecting the lawfulness of the processing carried out prior to the withdrawal.
Visiting our website
When you visit our website for purely informational purposes, i.e. if you do not otherwise provide us with information, we only collect the personal data that your browser transmits to us:
IP address of your system
Date and time (including time zone) of your request
Type, content and protocol version of your request (specific page visited)
Access status (HTTP status code) of our server
Size of our server response in bytes
Website from which the request originates (so-called "referrer")
Your user agent (type, version, operating system used)
Domain you accessed
We also store this data in log files. This data is technically required by us to display our website, ensure stability and security, and optimize our offering. The legal basis is Art. 6(1)(f) GDPR, whereby our legitimate interest arises from the purposes stated above. For information on how long this data is stored, please refer to the hoster's website: https://hitrost.com. Further storage only takes place if the personal data has been anonymized; for IP addresses this is done e.g. by privacy-compliant truncation.
Contact form
If you use our contact form, we use the data you submit to respond to your inquiry. Your details are stored in HighLevel Inc. https://www.gohighlevel.com/.
Data processing for the purpose of contacting us is based on Art. 6(1)(b) GDPR, insofar as your inquiry concerns the fulfillment of contractual obligations or the initiation of a contract. In other cases, the legal basis is Art. 6(1)(f) GDPR, whereby our legitimate interest arises from the purposes stated above. The personal data collected by us for use of the contact form will be automatically deleted after your inquiry has been fully processed, unless we are legally obliged to retain it or we need the data for contract fulfillment. In addition, you may object to the processing at any time if processing is based on a legitimate interest.
Cookies
We use cookies on our site. Cookies are small text files stored on your system through which certain information is transmitted to us. We use transient and persistent cookies on our website.
Here are the specific types of first- and third-party cookies that may be provided through our website and their respective purposes (if used):
Essential website cookies: These cookies are strictly necessary to provide you with services available through a website.
Performance and functionality cookies: These cookies are used to enhance the performance and functionality of a website but are not essential to its use. However, without these cookies, certain functionality may not be available.
Analytics and customization cookies: These cookies collect information that is used either in aggregate form to help a website operator understand how their website is being used or how effective their marketing campaigns are, or to personalize the website for you. Analytics providers may collect additional information beyond what is shared with us for their business purposes. Analytics providers may also use other technologies in addition to cookies to collect data about your use of our website.
Advertising cookies: These cookies are used to make advertising messages more relevant to you. They perform functions such as preventing the same ad from continuously reappearing, ensuring ads are properly displayed for advertisers, and in some cases selecting advertisements based on your interests.
Social networking cookies: These cookies enable you to share pages and content you find interesting on a website via third-party social networks and other websites. These cookies may also be used for advertising purposes.
Embedded content from other websites
Articles on this website may contain embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in exactly the same way as if the visitor had visited the other website.
These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.
For example, videos from the platform YouTube or similar providers. The provider is YouTube Inc., 555 West 18th Street, New York, New York 10011, USA. The data collected when you visit our website is transmitted to the provider. In particular, the transmission of the IP address is necessary so that the provider can deliver the content.
For more information on the purpose and scope of data collection and its processing by YouTube, please refer to the privacy policy: https://YouTube.com/privacy
The legal basis for embedding YouTube videos is Art. 6(1)(f) GDPR. Our legitimate interest arises from marketing purposes.
Google Services
This website uses the Google services described in more detail below, provided by Google Ireland Limited ("Google"), Gordon House, Barrow Street, Dublin 4, Ireland. Google's privacy policy, terms of use and information about the technologies used by Google can be found here: https://policies.google.com/privacy?hl=de
Information generated through the use of the services may be transferred to and stored on a Google server in the USA. For the exceptional cases in which personal data is transferred to the USA, Google has submitted to the EU-US Privacy Shield: https://www.privacyshield.gov/participant?id=a2zt000000001L5AAI&status=Active
Google Web Fonts
This site uses so-called web fonts provided by Google for the uniform display of fonts. When you access a page, your browser loads the required web fonts into its browser cache in order to display texts and fonts correctly. For this purpose, the browser you are using must connect to Google's servers. This gives Google knowledge that our website was accessed via your IP address. The use of Google Web Fonts is in the interest of a uniform and appealing presentation of our online offerings. This constitutes a legitimate interest within the meaning of the legal basis of Art. 6(1)(f) GDPR.
Email contact
If you contact us via the email addresses we provide, we store the personal data you submit in order to respond to your inquiries. Your details are stored in HighLevel Inc.: https://www.gohighlevel.com/privacy-policy
In the course of transporting or delivering your email, log data is also regularly generated, which includes e.g. the IP address of the email server you use. This log data is necessary to ensure the proper operation of the HighLevel email server and also serves as evidence in the event of server problems or security incidents. The legal basis is Art. 6(1)(f) GDPR, whereby our legitimate interest arises from the purposes stated above. If the contact is aimed at concluding a contract or takes place within the framework of an existing contractual relationship, the legal basis is Art. 6(1)(b) GDPR. The data will be deleted when the inquiry has been finally processed, unless we are legally obliged to retain it or we need the data for contract fulfillment. In addition, you may object to the processing at any time if processing is based on a legitimate interest. Log data on the HighLevel server will be deleted after seven days at the latest.
Who we share your data with
If you request a password reset, your IP address will be included in the reset email.
How long we retain your data
For users who register on our website (e.g. in our membership area), we also store in the HighLevel Inc. system https://www.gohighlevel.com/ the personal data they provide in their user profile. All users can view, edit or delete their personal data at any time (only their username cannot be changed). Website administrators can also view and edit this information.
What rights you have over your data
If you have an account on this website, you can request an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we delete any personal data we hold about you. This does not include data we are obliged to keep for administrative, legal or security purposes.
Where your data is sent
Visitor comments may be checked through an automated spam detection service.