Privacy Policy
Controller and Contact
- Controller: Restaurant Zum Weißen Rauchfangkehrer Gastronomie GmbH
- Address: Weihburggasse 4 A-1010 Wien
- Email:
This email address is being protected from spambots. You need JavaScript enabled to view it. - Phone: +43/1/512 34 71
- Authorized representative: Alexander Stauder
- Privacy contact:
This email address is being protected from spambots. You need JavaScript enabled to view it.
Data Protection Officer
Alexander Stauder
Restaurant Zum Weissen Rauchfangkehrer Gastronomie GmbH
Weihburggasse 4
A-1010 Wien
Phone: 0043 1 512 34 71
Email:
General Information
This privacy policy explains the processing of personal data when visiting this website and using its services. The following sections describe purposes, legal bases, recipients, retention and your rights.
Legal bases for processing
The purposes and legal bases of individual processing activities are described in the relevant sections. Storing information on your device or accessing it is also subject to Section 165 of the Austrian Telecommunications Act 2021.
Retention
Retention periods or the criteria used to determine them are described for each processing activity. Personal data are deleted when their purpose no longer applies, unless statutory retention obligations or other lawful grounds require continued storage.
Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.
Recipients and Processors
Recipients or recipient categories are described for the respective processing activities. Service providers processing personal data on our behalf and under our instructions are processors. These are distinct from recipients processing data as controllers in their own right.
Security and TLS Encryption
For an HTTPS connection, TLS encrypts transmission between your browser and the web server. You can identify this connection by the HTTPS protocol in the address bar and your browser's connection information. Transmission encryption does not automatically protect subsequent storage or further processing.
Hosting provider
This website is hosted by:
World4You Internet Services GmbH
Hafenstraße 35
4020 Linz
Austria
Server Log Files
When this website is accessed, technically required access data is processed so that the website can be delivered, operated reliably and protected. This may include IP address, date and time of access, requested pages or files, transferred data volume, referrer URL, browser type, operating system and server status codes.
The legal basis is our legitimate interest in the technical provision, stability, security and error analysis of the website under Art. 6(1)(f) GDPR.
Server log files are stored only for as long as necessary for these purposes, unless longer statutory retention obligations or security reasons apply. The hosting provider may have access to this data as a processor in the course of technical operation.
Cookies and Local Storage
Cookies and browser storage can store settings or approvals. Technically necessary storage is distinct from optional functions such as analytics, marketing and external media.
Where consent is required, Art. 6(1)(a) GDPR and applicable ePrivacy rules apply. Consent may be withdrawn with effect for the future.
Contact and forms
When you contact us by email, telephone or contact form, we process the contact details and enquiry you provide to handle and respond to your request.
Where an enquiry concerns steps towards a contract or its performance, the legal basis is Art. 6(1)(b) GDPR. We handle other general enquiries based on our legitimate interest in responding to contact enquiries under Art. 6(1)(f) GDPR.
Retention depends on handling the request and any subsequent retention obligations.
Table reservations with aleno
We use aleno, provided by aleno AG, Switzerland, to receive and manage table reservations. We process the contact and reservation details you enter, including your name, email address or phone number, date, time, party size and any requests you submit. Loading the reservation service also transmits technical connection data, such as your IP address and browser information, to its technical infrastructure.
We process your reservation and related communications to take steps towards or perform a contract under Article 6(1)(b) GDPR. aleno processes reservation data on our behalf. Transfers to Switzerland are covered by an adequacy decision of the European Commission.
Retention depends on handling the reservation and any subsequent statutory retention obligations or necessary resolution of claims. Once these grounds no longer apply, the data stored for these purposes is deleted. To request access to, correction or deletion of reservation data held by us, please use the contact details above.
Guest profiles
We maintain guest profiles in aleno to associate repeat reservations and tailor our service to known preferences. These profiles store contact details, reservation and visit history, and preferences you provide. The legal basis is our legitimate interest in serving returning guests under Article 6(1)(f) GDPR. You may object to this processing on grounds relating to your particular situation.
Guest profiles are not deleted solely because an individual reservation has been completed. We delete or anonymise them once no longer needed for guest service, unless other lawful retention grounds apply. Newsletter use is separate. Health information, such as allergies, requires a separate legal basis and is not covered by this general profiling purpose.
Card guarantee for reservations
For reservations identified accordingly, we require a card guarantee to secure agreed cancellation or no-show fees. Card, reservation and transaction data necessary for the guarantee and any agreed charge is processed through the payment providers identified during the reservation process. The legal basis for our processing is Article 6(1)(b) GDPR.
The terms and payment provider privacy information displayed during the reservation apply. We retain payment records for statutory retention periods; other retention depends on handling the guarantee and any claims.
Website analytics with JRealtime Analytics
We use JRealtime Analytics to statistically evaluate use of this website. The analysis helps improve content and functionality and identify technical problems. Page views, usage events and technical information about the browser and device may be processed.
Where consent is required, processing is based on Art. 6(1)(a) GDPR; storage of information on your device or access to it is additionally subject to Section 165 TKG 2021. Consent may be withdrawn with effect for the future. Where processing without consent is permitted, it is based on our legitimate interest in statistical analysis and website improvement under Art. 6(1)(f) GDPR.
Retention depends on the analysis purpose. Personal analytics data is deleted once no longer needed for that purpose, unless statutory retention obligations apply.
To protect your IP address, we have enabled IP anonymisation in JRealtime Analytics. Other usage data may still be linked to an individual.
Locally hosted fonts
The fonts used are hosted locally. Loading these fonts does not establish a connection to Google.
Your Rights
Subject to the GDPR, you have in particular the right of access to personal data processed about you, rectification of inaccurate data, erasure, restriction of processing, data portability and objection to certain processing activities.
Where processing is based on consent, you may withdraw that consent at any time with effect for the future. The lawfulness of processing before withdrawal remains unaffected.
You also have the right to lodge a complaint with a data protection supervisory authority. In Austria, this is the Austrian Data Protection Authority.
Austrian Data Protection Authority, Barichgasse 40-42, 1030 Vienna, Austria, phone: +43 1 52 152-0, email:
To exercise your rights, you can use the contact options listed in the "Controller and Contact" section.