Privacy policy

The following AUMA designations
 “AUMA CDT”
 “AUMA Assistant App iOS”
 “AUMA Assistant App Android”
 “AUMA Cloud“
are grouped in this document under the designation “AUMA SOFTWARE”.


Within the framework of the present privacy policy statement, we inform what data will be gathered for
the purpose of using our AUMA SOFTWARE as well as the pertaining services, and for what purpose
this data will be used and how they are used to optimise our services.


1. Controller
AUMA Riester GmbH & Co. KG
Aumastr. 1 , Muellheim, Germany
hereinafter referred to "AUMA" or "we".


2. What is personal data?
Personal data means information which is or can be assigned to you as living individual or user of the
AUMA SOFTWARE. This includes your name, address, phone number and e-mail address.


3. Collection and processing of user data
AUMA commits itself to the principles of data economy. Personal data will only be collected and
stored, if provided at your own discretion, i.e. within the framework of registration, a survey or a
contract. On registration, we verify your data against the data stored in our master database. This
includes company details and order related data, i.e. recorded customer orders, including actuator
type and serial number. Furthermore, we collect geolocation data for location tracking as described
below.


4. Purpose and legal basis of processing
AUMA uses your personal data to the extent necessary for technical administration, customer
management, technical support, marketing purposes as well as for customer management as
described below in section "Permissions of AUMA SOFTWARE".
To the extent we are processing your personal data, we will perform the processing within the
framework of registration and creation of a user account as well as the provision of order-related
documentation on the legal basis of Art. 6(1) point b GDPR (processing for performance of a contract).
In addition, we will process personal data necessary for the purposes of our legitimate interests on the
basis of Art. 6(1) point f GDPR. Within this context, legitimate interests include customer support
tailored to specific needs and in particular predictive maintenance and actuator system management
as well as continual improvement and development of the AUMA SOFTWARE.
This data shall only be processed or used for additional purposes (for instance providing additional
information on our company and our products or important technical notes, such as direct contact)
following your explicit prior consent.
For privacy compliant documentation of your registration, we use a so-called double opt in system.
After initial registration, we will send a confirmation e-mail including your login information. Use these
credentials to access our website. Your registration will be activated once you have logged on with
your user name and password. This is to ensure that the registration was made with your explicit
consent.


5. Recipients of data and transmission to third countries
AUMA and the affiliated companies of the AUMA Group exclusively use and process your personal
data to provide you with services worldwide as required.
Should AUMA order third parties to process personal data, for example providers of external storage
solutions or Cloud service providers, we ensure that such an order processing will be performed in
compliance with data protection based on the applicable national laws and regulations adopted at
European level. Order processing service providers are selected with utmost care by us and
compliance with technical and organisational measures taken by the contractor will be checked and
recorded by AUMA. When transferring personal data to a member of the AUMA Group outside of the
EU or the EEA (so called third countries), we shall provide an adequate level of data protection by
means of contractual agreements using standard contractual clauses in compliance with Art. 46(2)
point c GDPR.


6. Collection and processing of actuator information
On user request, AUMA SOFTWARE reads device information from a supported AUMA actuator.
Actuator information, such as parameters, run time, output speed or used firmware version are
included in this information. By indicating the status information, the actuator status can be checked.
Actuator information is not personal data as it does not allow a statement on personal or material
circumstances and cannot be used to identify an individual. Actuator information are stored in the
device. It will be collected, stored and processed via AUMA SOFTWARE, on request only. For this, the
user must be connected with the device and the device data must be actively be loaded. AUMA
SOFTWARE can be used to evaluate device data, to control the actuator, to change parameters, and
to write the data to the actuator. Further actuator information can be read out via AUMA SOFTWARE
which is then usually forwarded to AUMA technical support (2nd level support) for analysis and problem
solution. Furthermore, AUMA uses the actuator information for general continuous improvement of
AUMA products.
When using AUMA Cloud services, the actuator information submitted to AUMA will be used to
provide various services such as uptime calculations, KPI measurement and supplement further
information and data on the AUMA actuator to support preventive maintenance based on actual load
and demands in particular. As a option, data on valves deployed by the user may be entered or
automatically read (if technically supported) using the AUMA Cloud services.


7. Usage statistics
For quality improvement, AUMA will continuously gather information on user behaviour such as
navigation behaviour or frequency of usage of certain functions while you use the AUMA software.
If you wish certain data such as the GeoCode Location not to be processed, you can deactivate
this function.


8. Permissions of AUMA SOFTWARE
Before downloading the AUMA SOFTWARE in the Google Play store or the App Store (Apple), you
may need to give the AUMA SOFTWARE permission to access specific capabilities or information
(known as permission groups) on your device. Permissions are organized into permissions groups,
easily identified by icons. The data and functions that the AUMA SOFTWARE can access, on your
device, can be viewed within Google Play. Once you have allowed the AUMA SOFTWARE to access
a permission group, the AUMA SOFTWARE may use any of the individual permissions that are part of
that group. You will not need to manually approve individual permission updates that belong to a
permission group you have already accepted.
The AUMA SOFTWARE exclusively uses the following permission for the purposes described
hereinafter. With the installation and use of the AUMA SOFTWARE, you authorise this use.
Overview of selected functions and permission groups
App permissions Phone calls
Short designation
Phone status and identity
Function
Enables the AUMA SOFTWARE to access the phone functions of the device. The permission enables
the AUMA SOFTWARE to record phone number and device ID, to identify a call as currently made
and to read the phone number of connected callers.
Use within the AUMA SOFTWARE
Allows making calls by clicking the phone number in the imprint.
App permissions Camera
Short designation
Take pictures and videos
Function
Enables AUMA SOFTWARE to take pictures and videos with the camera at any time.
Use within the AUMA SOFTWARE
Enables scanning of Data Matrix codes on name plates.
App permissions Your Location
Short designation
Approximate location (network-based)
Function
Enables AUMA SOFTWARE to determine your approximate location. This location information is
issued by location services using network location sources such as radio masts or WLAN. These
location services must be available and activated on your device so that the AUMA SOFTWARE may
use the same. AUMA SOFTWARE can determine your approximate location using this data.
Use within the AUMA SOFTWARE
To determine the current geolocation after successful scanning of the Data Matrix code or after
establishing a Bluetooth connection with actuator controls.
Allows location of an AUMA actuator.
App permissions Your Location
Short designation
Exact location (GPS or network-based)
Function
Enables the AUMA SOFTWARE to determine your precise location using GPS data (Global
Positioning System) or via network location sources such as radio masts or WLAN. These location
services must be available and activated on your device so that the AUMA SOFTWARE may use the
same. By using this data, AUMA SOFTWARE can determine your location which might possibly drain
additional battery capacity.
Use within the AUMA SOFTWARE
To determine the current geolocation after successful scanning of the Data Matrix code or after
establishing a Bluetooth connection with actuator controls.
Allows location of an AUMA actuator.
App permissions Storage
Short designation
Change or delete SD card contents.
Function
Enables AUMA SOFTWARE to write on the SD card.
Use within the AUMA SOFTWARE
Access to the device storage (write and read files and directories): Save and read files (documents,
serial number lists, etc.)
App permissions Storage
Short designation
Read access to SD card contents
Function
Enables AUMA SOFTWARE to read the contents of the SD card.
Use within the AUMA SOFTWARE
Access to the device storage (write and read files and directories): Save and read files (documents,
serial number lists, etc.)
App permissions Network communication
Short designation
Show network status
Function
Enables AUMA SOFTWARE to show the status of all networks.
Use within the AUMA SOFTWARE
Selection of used network connection for internet access.
App permissions Network communication
Short designation
Show WLAN status
Function
Enables AUMA SOFTWARE to show information on WLAN status.
Use within the AUMA SOFTWARE
Selection of used network connection for internet access.
App permissions Network communication
Full internet access
Function
Enables AUMA SOFTWARE to issue network sockets and the use of user defined network protocol.
The browser and other AUMA SOFTWARE offer the possibility to use data via the internet. Therefore,
this permission is not required to send this data via the Internet.
Use within the AUMA SOFTWARE
Grants permission to web based AUMA services and contents of the AUMA SOFTWARE
App permissions Vibrate
Short designation
Manage vibration settings
Function
Enables the AUMA SOFTWARE to control the vibration function.
Use within the AUMA SOFTWARE
Successful scanning of a Data Matrix code briefly triggers vibration function.
App permissions System tools
Short designation
Change global system settings
Function
Enables the AUMA SOFTWARE to change system settings. In this case, malware can damage the
system configuration.
Use within the AUMA SOFTWARE
Read system settings; required for proper function of the AUMA SOFTWARE (for example to
determine the availability of services such as GPS for example.)
App permissions Bluetooth
Short designation
Data exchange
Function
The Bluetooth interface enables the AUMA SOFTWARE to establish a connection to the AUMA
actuator and to exchange data.
Use within the AUMA SOFTWARE
Search of actuators and data exchange.


9. Data protection and data security
AUMA deploys technical and organisational security measures within the AUMA SOFTWARE to
protect the data gathered from you against manipulation, loss, destruction as well as against
unauthorised access. All data between the AUMA SOFTWARE and AUMA web services is transmitted
in encrypted form. With regard to order related data, only the data for which the user has read
permission will be transmitted. Access rights are checked against the user profile and the master data
stored within our system. Our security measures are continuously improved in compliance with the
latest technical developments.
Our employees are obliged to maintain confidentiality. The obligation to maintain confidentiality
persists even once the employees have terminated their contracts.


10. Links to other websites
AUMA SOFTWARE contains among others links to the AUMA website or other AUMA maintained
content on external platforms. Links to external websites are checked prior to initial integration. AUMA
does not assume any liability for such external content as AUMA has no control on this content.
Providers of information accessible via these external links are responsible for the content and
correctness of the information. At the time of link integration, no violations of right were apparent to
AUMA. Once AUMA has gained knowledge of potentially illegal content, AUMA will immediately
remove them from the AUMA websites. AUMA shall only be liable from the time it became aware of
the illegality.


11. Storage period
We will process your data as long as the user account is active, unless you have objected to the
processing of your personal data on the basis of Art. 6(1) point f) GDPR and unless there are no
prevailing interests on our part. In this case, we reserve the right to anonymise your data and
exclusively process them in aggregated form without personal references for the purposes of support
and maintenance of AUMA SOFTWARE and AUMA actuator systems. Once you delete your user
account, the data will be stored for a period of one year for purposes of documentation and proof
(purpose limitation) and will then automatically be deleted or anonymised. We reserve to save data for
the time they should be required for enforcing or defending rights. Statutory retention obligations will
not be affected.


12. Your rights
Under specific conditions, you may exercise your privacy rights towards us. Your applications on
exercising your rights should be sent in writing or via e-mail to the address above or directly addressed
in writing or via e-mail to our data protection officer.
- You have to the right to obtain information on your data stored with us in compliance with the
rules of Art. 15 GDPR (if applicable with restrictions in compliance with § 34 BDSG-Neu).
- On your application, we will rectify the personal data stored about you in compliance with Art.
16 GDPR, should the data be inapplicable or inaccurate.
- If you wish, we will erase your data in accordance with the principles of Art. 17 GDPR unless
this should not be excluded by other legal regulations (e.g. statutory retention obligations or
the restrictions in compliance with § 35 BDSG-Neu) or a prevailing interest on our side (e.g.
for defence of our rights and claims).
- Considering the conditions of Art. 18 GDPR, you have the right to obtain the restriction of
processing of your data from us.
- Should personal data be processed on the basis of legitimate interests in compliance with Art.
6(1) clause 1 point f) GDPR or the processing be necessary for the performance of a task
carried out in the public interest or in the exercise of official authority, you shall have the right
to object in compliance with Art. 21 GDPR, on grounds relating to your particular situation, at
any time to processing of personal data concerning you or if the objectiob is against direct
marketing. With regard to the latter, you have a general right of objection which will be
implemented by us without having to state a particular situation .
- You also have the right to receive your personal data in a structured, commonly used and
machine-readable format and have the right to transmit those data to third parties on the
grounds of Art. 20 GDPR.
- Furthermore, you have the right to withdraw consent to the processing of personal data at
any time from us with future effect.
- In addition, you have the right to lodge a complaint with a supervisory authority (Art. 77
GDPR). However, we recommend directing a complaint to our data protection officer first.


13. Data protection officer
We have designated a data protection officer for our company. Please address further questions to the
following address:
E-mail: dsb@auma.com
US customers may contact the address below:
E-mail: privacy@auma-usa.com


14. Right to lodge a complaint
You shall have the right to lodge a complaint with a supervisory authority for data protection relating to
our processing of personal data.
You may contact the competent supervisory authority for AUMA at:
Information commissioner's office for the Federal State of Baden-Wuerttemberg
Königstrasse 10 a
70173 Stuttgart, Germany
Phone: +49-711/615541-0
Fax: +49-711/615541-15
E-mail: poststelle@lfdi.bwl.de