Imprint

Responsible Entity
Student Events e.V.

Registry Court
Local Court: Berlin(Charlottenburg)
Registration Number: VR37141

Contact
E-Mail: info@studentevents.org
Web: www.studentevents.org

Privacy Policy

This Privacy Policy informs you about the nature, scope, and purpose of the processing of personal data (hereinafter simply “data”) within our online offering and the associated websites, functions, and content as well as external online presences, such as our social media profiles (hereinafter collectively referred to as “online offering”). Regarding the terms used, such as “processing” or “controller,” we refer to the definitions in Art. 4 of the EU General Data Protection Regulation (GDPR).

1. Controller and Contact Data

Controller:
Student Events e.V.
E-Mail: info@studentevents.org

2. Types of Data Processed

  • Inventory Data: e.g. names, addresses

  • Contact Data: e.g. e-mail addresses, telephone numbers

  • Content Data: e.g. text entries, photographs, videos

  • Usage Data: e.g. visited web pages, interest in content, access times

  • Meta-/Communication Data: e.g. device information, IP addresses

3. Categories of Data Subjects

  • Visitors and users of the online offering (“Users”)

  • Guests, members, and other stakeholders who contact us

4. Purpose of Processing

  • Provision and operation of the online offering, its functions and content

  • Replying to contact inquiries and communicating with users

  • Ensuring IT security and stability

  • Measuring reach and marketing activities

5. Legal Basis for Processing

  • Consent (Art. 6 (1)(a) GDPR): For data processing with the user’s consent

  • Contractual Necessity (Art. 6 (1)(b) GDPR): For performance of a contract or pre-contractual measures

  • Legal Obligation (Art. 6 (1)(c) GDPR): To comply with legal duties

  • Legitimate Interests (Art. 6 (1)(f) GDPR): For purposes such as ensuring IT security and marketing, provided these do not override user rights

6. Data Security Measures

In accordance with Art. 32 GDPR, we implement technical and organizational measures to ensure a level of protection appropriate to the risk, including:

  • Access controls (physical and digital)

  • Encryption of data transmission where appropriate

  • Regular backup and disaster-recovery procedures

  • Pseudonymization and access management

  • Procedures to ensure data subject rights, data erasure, and breach notifications

7. Disclosure to Processors and Third Parties

Data will only be shared with:

  • Service providers (e.g. hosting, email dispatch) under Art. 28 GDPR

  • Payment service providers, where contract performance requires sharing data (Art. 6 (1)(b) GDPR)

  • Authorities or courts, if legally required (Art. 6 (1)(c) GDPR)

In each case, we ensure that either an adequacy decision exists, standard contractual clauses are in place, or another legal basis is met for transfers outside the EU/EEA.

8. Data Transfers to Third Countries

If we transfer data to countries outside the EU/EEA, we do so only

  • on the basis of an adequacy decision,

  • by way of EU standard contractual clauses, or

  • with explicit consent,in compliance with Arts. 44–49 GDPR.

9. User Rights

You have the right to:

  1. Request confirmation of processing and access to your personal data (Art. 15 GDPR).

  2. Request correction of inaccurate data (Art. 16 GDPR).

  3. Request deletion of data (“right to be forgotten”; Art. 17 GDPR).

  4. Request restriction of processing (Art. 18 GDPR).

  5. Request portability of your data to another controller (Art. 20 GDPR).

  6. Withdraw consent at any time for future processing (Art. 7 (3) GDPR).

  7. Lodge a complaint with a supervisory authority (Art. 77 GDPR).

10. Definitions

  • Personal Data: Any information relating to an identified or identifiable natural person.

  • Processing: Any operation on personal data, whether automated or not.

  • Controller: The entity determining the purposes and means of processing.

  • Processor: The entity processing personal data on behalf of the controller.

  • Profiling: Automated processing of personal data to evaluate certain personal aspects.

  • Pseudonymization: Processing personal data so it can no longer be attributed to a specific data subject without additional information.

11. Liability Notice

Despite careful content control, we assume no liability for the content of external links. The operators of linked pages are solely responsible.

Contact information:

If you would like to contact us to understand more about this Policy or wish to contact us concerning any matter relating to individual rights and your Personal Information, you may send an email to info@studentevents.org