Datenschutzerklärung

Privacy Policy

Last updated: 30 July 2026

1. Controller

The controller within the meaning of the General Data Protection Regulation (GDPR) is:
MeinAboWein – from the winemaker
Jürgen Klaus
Sole proprietorship
Stürzelbach 5
77770 Durbach
Germany
E-mail: info@meinabowein.de

2. Hosting by IONOS and server log files

This website is hosted by IONOS SE, Elgendorfer Straße 57, 56410 Montabaur, Germany. When the website is accessed, IONOS and we may process technical connection data, in particular IP address, date and time, requested page or file, transferred data volume, referrer URL, browser, operating system, device information, access status and error information.

The processing is necessary to make the website available, ensure stability and security and investigate misuse. The legal basis is Article 6(1)(f) GDPR. Where data is processed on our behalf, this is based on a data processing agreement pursuant to Article 28 GDPR. Log data is deleted when it is no longer required for security and operational purposes, unless an incident requires longer storage.

IONOS privacy information: IONOS Privacy Policy.

3. Cookies, local storage and consent management

We use cookies and comparable storage technologies. Technically necessary technologies are used to provide the website, shopping cart, checkout, login, payment and consent management. Access to or storage of information on your device is based on the applicable telecommunications data protection rules; the subsequent processing of personal data is based, depending on the purpose, on Article 6(1)(b), (c) or (f) GDPR. Optional services are only activated after consent pursuant to Article 6(1)(a) GDPR. Consent can be withdrawn at any time via the cookie settings.

We use Real Cookie Banner to collect, store and document consent decisions. This may process a consent identifier, time of consent, selected services, browser and device information and the consent settings. Consent records are generally kept for the configured documentation period, currently up to 365 days, and longer where required to establish or defend legal claims.

4. WordPress, WooCommerce and essential cookies

The website is operated with WordPress and WooCommerce. Essential cookies may include wordpress_test_cookie, wordpress_logged_in_*, wordpress_sec_*, wp-settings-*, wp-settings-time-*, woocommerce_cart_hash, woocommerce_items_in_cart and wp_woocommerce_session_*. They are used for login security, customer accounts, user settings, shopping cart and checkout. The legal bases are Article 6(1)(b) and (f) GDPR.

5. Customer account and registration

When you create a customer account, we process in particular your name, address, e-mail address, password hash, account settings, order history, subscription settings and technical security data. Processing is carried out to provide and secure the account and to fulfil contracts pursuant to Article 6(1)(b) GDPR. Mandatory information is required for account creation or contract performance; without it, the respective service cannot be provided.

6. Orders, invoices and legal retention obligations

For orders we process customer and contact data, billing and delivery address, telephone number where provided, order items, quantities, prices, discounts, credits, shipping details, payment method, payment status, delivery information, messages and order history. Processing is necessary for pre-contractual measures and contract performance pursuant to Article 6(1)(b) GDPR and for tax and commercial-law obligations pursuant to Article 6(1)(c) GDPR.

Contract and accounting documents are stored in accordance with the applicable statutory periods. Depending on the document category, this may generally be six, eight or ten years. Customer account data may be deleted after termination of the account, provided that no statutory retention duties or unresolved contractual claims require further storage.

7. Subscriptions and delivery planning

For wine subscriptions we additionally process the selected subscription type, package size, delivery interval, preferred wines, taste preferences, planned and completed deliveries, change deadline, fixing date, payment status, pauses, cancellation data, failed payments, subsequent payments and delivery history. This data is used to plan and execute recurring deliveries, create follow-up orders, initiate agreed payments and send transactional notices. The legal basis is Article 6(1)(b) GDPR.

Product recommendations and planned wine selections may be generated using the information you provide. They do not constitute automated decision-making producing legal or similarly significant effects within the meaning of Article 22 GDPR.

8. Taste questionnaire and personalised recommendations

When you use the taste questionnaire, we may process wine type, sweetness preference, alcohol range, price range, package size and the resulting selection. The data is used to recommend suitable wines and, where chosen by you, to transfer the selection to the shopping cart, customer account or subscription. The legal basis is Article 6(1)(b) GDPR; voluntary additional information may also be processed on the basis of Article 6(1)(a) GDPR.

9. Payment processing via Stripe

For credit/debit card and SEPA direct debit payments we use Stripe. Depending on the payment method, data such as name, e-mail address, billing address, order amount, currency, payment method, bank or card-related information, payment token, transaction identifier, IP address, device and activity signals and fraud-prevention information may be transmitted to Stripe. Full card details are not stored by us; Stripe tokenises payment methods so that agreed recurring subscription payments and later payments can be processed.

Stripe cookies and connections may include __stripe_mid, __stripe_sid, m and resources from js.stripe.com. Processing is required for payment performance, authentication, fraud prevention and regulatory obligations. The legal bases are Article 6(1)(b), (c) and (f) GDPR.

Depending on the service and processing operation, recipients may include Stripe Payments Europe, Limited and companies of the Stripe group. Stripe may process data in the United States, India and other countries. Transfers to the United States may be based on the EU-US Data Privacy Framework where the relevant recipient is certified; in addition, Stripe provides contractual transfer safeguards, including the EU Standard Contractual Clauses, through its Data Processing Agreement and Data Transfers Addendum. For other third countries without an adequacy decision, Stripe relies in particular on contractual safeguards such as Standard Contractual Clauses, where applicable.

Further information: Stripe Privacy Policy, Stripe Data Processing Agreement and Stripe Data Transfers Addendum.

10. Logistical processing by Durbacher Winzer eG

For storage, picking, packaging and shipping, the data required for fulfilment may be shared with Durbacher Winzer eG. This may include name, delivery address, contact details where necessary, order number, ordered wines, quantities, delivery date, packing and shipping notes. Payment card or bank details are not provided to the logistics partner. The legal basis is Article 6(1)(b) GDPR. The contracting party and invoice issuer remains Jürgen Klaus trading as MeinAboWein – from the winemaker.

11. Shipping service providers

Where a parcel service or carrier is used, we transmit the delivery data required for transport, in particular name, delivery address and, where needed for delivery notifications, e-mail address or telephone number. The legal basis is Article 6(1)(b) GDPR. Contact details are only transmitted for delivery announcements where this is necessary or separately authorised.

12. Contact form, e-mail and transactional messages

When you contact us, we process the information you provide, such as name, e-mail address, subject, order number and message. Depending on the matter, the legal basis is Article 6(1)(b) GDPR or our legitimate interest in processing enquiries under Article 6(1)(f) GDPR. Messages are deleted after final processing unless contractual or statutory retention duties apply.

We send contract-related e-mails, including order confirmations, payment notices, failed-payment information, delivery announcements, change reminders, fixing notices and cancellation confirmations. These messages are necessary for the performance and administration of the contract and are not advertising newsletters.

13. Invoices, PDFs and packing lists

We generate invoices, order documents, internal accounting reports and packing lists. These may contain customer, order, payment and delivery data. Documents are stored only as long as operational or statutory retention requirements apply and are protected against unauthorised access. Packing-list links may contain a long, non-guessable security token so that authorised logistics staff can access the relevant document without a WordPress login. Such links must not be forwarded to unauthorised persons.

14. Referral and credit programme

If you participate in the referral programme, we process referral codes, referrer and referred customer relationships, credit amounts, booking history, related orders and information needed to prevent misuse. The legal basis is Article 6(1)(b) GDPR and our legitimate interest in preventing fraudulent use pursuant to Article 6(1)(f) GDPR.

15. Recipients and processors

Data may be received, to the extent necessary, by hosting and IT providers, payment providers, logistics and shipping providers, tax advisers, accounting services, public authorities and other recipients where required by law or contract. Processors are engaged on the basis of Article 28 GDPR where applicable.

16. Your rights

Subject to the statutory requirements, you have the rights of access, rectification, erasure, restriction, data portability and objection. You may withdraw consent at any time with effect for the future. You also have the right to lodge a complaint with a supervisory authority.

The competent supervisory authority at our place of business is the State Commissioner for Data Protection and Freedom of Information Baden-Württemberg, Heilbronner Straße 35, 70191 Stuttgart, Germany, www.baden-wuerttemberg.datenschutz.de.

17. Security and updates

We use appropriate technical and organisational measures, including encrypted transmission via HTTPS. We update this privacy policy when services, processing operations or legal requirements change.

Nach oben scrollen