Privacy Policy

Last updated: July 9, 2026 Thank you very much for your interest in the information on our website! Through this Privacy Policy, we would like to inform all users of this website about the nature, scope, and purposes of the processing of personal data. Personal data in this context refers to any information that can be used to personally identify you as a user of our website (theoretically, possibly indirectly or by linking various data points), including, among other things, your IP address. Information stored in cookies is generally not personal data, or is so only in exceptional cases; however, this information is subject to a special provision that makes the permissibility of using cookies – depending on their purpose – largely contingent upon the user’s active consent. In a general section of this Privacy Policy, we provide you with information regarding data protection that generally applies to our processing of data, including data collection on our website. In particular, as a data subject, you will be informed of your rights. We strive to provide this information using gender-neutral language. If certain phrasing does not yet reflect this, please note that this information applies to all people, regardless of gender. The terms used in our Privacy Policy and our data protection practices are governed by the provisions of the EU General Data Protection Regulation (“GDPR”) and other applicable national laws.

Data Controller as defined by the GDPR

GÖWEIL Maschinenbau GmbH FN 198427f Davidschlag 11 4202 Kirchschlag near Linz Austria E:office@goeweil.comT: (0043) (0) 7215 2131-0 F: (0043) (0) 7215 2131-9

Data Collection on Our Website

We collect your personal data in two ways: first, when you expressly provide it to us; and second, when data – particularly technical data – is automatically collected when you visit our website. Some of this data is collected to ensure that our website functions properly. Other data may be used for analytical purposes. However, you can generally use our website without having to provide any personal information.

Technologies on our website

Microsoft Clarity

Provider: Microsoft Ireland Operations Limited, One Microsoft Place, South County Business Park, Leopardstown, Dublin 18, D18 P521, Ireland Parent company: Microsoft Corporation, One Microsoft Way, Redmond, Washington 98052, USA, E-Mail: privacy@microsoft.com Purpose: Analysis of user behavior on websites, improvement of user-friendliness Category: Statistics Receivers: U.S., EU Processed data: Usage behavior, clicks, scrolling movements, mouse movements, device information, IP address (truncated), browser information, screen captures Data subjects: Website Visitors: Technology: JavaScript, Cookies (see the cookie list for details), local storage Legal basis: Consent (Purpose) Certifications: EU-U.S. Data Privacy Framework, Swiss-U.S. Data Privacy Framework, UK Extension to the EU-U.S. Data Privacy Framework Website: https://clarity.microsoft.com Additional information: https://privacy.microsoft.com/privacystatement https://clarity.microsoft.com/terms https://learn.microsoft.com/compliance/regulatory/offering-eu-model-clauses https://www.microsoft.com/concern/privacy On our website, we use the Microsoft Clarity service to analyze user behavior in order to improve the user experience of our website. Microsoft Clarity is a free analytics tool that provides insights into how visitors interact with our website. The tool collects various types of data to provide a comprehensive picture of user behavior. These include clicks, scrolling, and mouse movements. This information is used to generate heat maps, which provide visual representations of the most frequently clicked and viewed areas of our website. Microsoft Clarity also records individual user sessions, automatically redacting personal information such as user input or sensitive data. These logs allow us to better understand user’s navigation and any issues they may encounter. The tool also collects technical information such as device type, browser version, and screen resolution. User’s IP addresses are stored in truncated form to preserve anonymity. To collect data, Microsoft Clarity uses JavaScript code that is embedded in our website. This code sets cookies and uses the browser’s local storage to store information and ensure the tool functions properly. All relevant information about cookies, including their names, purposes, and retention periods, is included in our detailed list of the cookies we use. The data collected by Microsoft Clarity is stored for up to one year. Upon expiration of this period or upon termination of use of the service, the data will be deleted, provided there are no statutory retention requirements. Additional details can be found in the linked supplementary information. We recommend checking these links regularly for updates, as Microsoft may update how Clarity works and how it processes data. Additional information regarding the rights of data subjects, as well as the corresponding contact information, is listed in the general section of this Privacy Policy.

Cloudflare

Provider: Cloudflare, Inc., 101 Townsend St., San Francisco, CA 94107, USA Representative in the EU: Cloudflare Portugal Unipessoal Lda, Praça Marquês de Pombal 14, 7th floor, 1250-162 Lisbon, Portugal, DSA-legal-representative@cloudflare.com Purpose: Measuring and Analyzing Website Performance from the User’s Perspective Category: Statistics Receivers: EU Processed data: Page load times, response times, Web Vitals metrics, URL, browser, operating system, country. Affected users: Website Visitors: Technology: JavaScript-, Cookies (see the cookie list for details) Legal basis: Consent (Purpose) Certifications: EU-U.S. Data Privacy Framework, Swiss-U.S. Data Privacy Framework, UK Extension to the EU-U.S. Data Privacy Framework For more information: https://www.cloudflare.com/de-de/privacypolicy/ https://www.cloudflare.com/de-de/website-terms/ On our website, we use the Cloudflare Web Analytics service to measure and analyze website performance from our users’ perspective. This tool allows us to track and understand key performance metrics such as load times, responsiveness, and visual stability of our website. Cloudflare Web Analytics works by inserting a JavaScript snippet into HTML pages. This beacon collects data about the user experience, including metrics such as page load time, time to first byte, and other Web Vitals. The tool also collects information about the browser, operating system, and country of the users. The collected data is updated in real time and is available shortly after a user request. This allows us to continuously monitor and improve the performance of our website. According to the manufacturer, Cloudflare Web Analytics does not use cookies for analytical purposes, but rather to recognize users (identification cookie). The data will be stored for the duration of the statutory retention periods and deleted immediately upon their expiration. Additional details can be found in the linked supplementary information. We recommend checking these links regularly for updates to stay informed about the latest practices for Cloudflare Web Analytics. Additional information regarding the rights of data subjects, as well as the corresponding contact information, is listed in the general section of this Privacy Policy.

Cookies and Local Storage

We use cookies on our website to make it more user-friendly and functional. Some cookies will remain stored on your device. Cookies are small data packets that are exchanged between your browser and our web server when you visit our website. These do not cause any harm and are used solely to recognize website visitors. Cookies can only store information provided by your browser – that is, information that you have entered into the browser yourself or that is available on the website. Cookies cannot execute code and cannot be used to access your device. The next time you visit our website using the same device, the information stored in cookies may subsequently be sent back either to us (“first-party cookie”) or to a third-party web application to which the cookie belongs (“third-party cookie”). Based on the information that is stored and sent back, the respective web application recognizes that you have already accessed and visited the website using your device’s browser. Cookies contain the following information:
  • Cookie Name
  • Name of the server from which the cookie originally originated
  • Cookie ID Number
  • A date on which the cookie is automatically deleted
Depending on their purpose and function, we classify cookies into the following categories:
  • Technically necessary cookies to ensure the technical operation and basic functionality of our website. These types of cookies are used, for example, to retain your settings while you navigate the website; or they can ensure that important information is retained throughout your session (e.g., login, shopping cart).
  • Statistics cookies, which help us understand how visitors interact with our website by collecting and analyzing information on an anonymous basis only. This provides us with valuable insights that help us optimize both our website and our products and services.
  • Marketing cookies used to deliver targeted advertising to users on our website.
  • Unclassified cookies are cookies that we are currently working with individual cookie providers to classify.
Depending on how long they are stored, we also classify cookies as session cookies and persistent cookies. Session cookies store information that is used during your current browser session. These cookies are automatically deleted when you close your browser. No information is stored on your device. Persistent cookies store information between visits to the website. Based on this information, you will be recognized as a returning visitor on your next visit, and the website will respond accordingly. The lifespan of a persistent cookie is determined by the cookie provider. The legal basis for the use of technically necessary cookies is our legitimate interest in the technically sound operation and seamless functionality of our website. Our website cannot function properly without these cookies. The use of statistics and marketing cookies requires your consent. You may withdraw your consent to the use of cookies at any time, effective for the future. Consent is voluntary. If it is not granted, there are no negative consequences. For more information about the cookies we actually use (particularly regarding their purpose and retention period), please see this Privacy Policy and the information about the cookies we use in our cookie banner. You can also set your Internet browser to prevent cookies from being stored on your device altogether, or to prompt you each time to confirm whether you consent to the use of cookies. Once cookies have been set, you can delete them at any time. You can find out exactly how all of this works in your browser’s Help section. Please note that disabling cookies entirely may result in limited functionality on our website. On our website, we also use what are known as local storage functions (also called “local storage”). In this process, data is stored locally in your browser’s cache, where it remains and can be accessed even after you close the browser – unless you clear the cache or the data is stored in session storage. Third parties cannot access the data stored in local storage. If specific plugins or tools use local storage functions, this is described in the documentation for the respective plugin or tool. If you do not want plugins or tools to use local storage features, you can control this in your browser’s settings. Please note that this may result in limited functionality.

External Hosting

Category: General Processing Activity Purpose: Technical provision, operation, and delivery of the website Data Categories: technical data and usage data Data Subjects: Visitors to the website Receivers: Hosting Providers and Technical Infrastructure Partners Technologies: Server and Network Infrastructure Legal Basis: Legitimate Interest (Provision & Operation) Our website is hosted by an external hosting provider. When you visit the website, various technical data required for its operation, security, and the delivery of content are processed. This typically includes information that the browser transmits automatically. The data processed may include:
  • IP address
  • Date and Time of Access
  • pages or files accessed
  • Amount of data transferred
  • Notifications of successful or failed retrievals
  • Browser Type and Browser Version
  • Operating system used
  • Referrer URL
  • Hostname of the accessing device
The hosting provider processes this data to ensure the technical operation of the website, detect attacks or misuse, resolve malfunctions, and provide a stable connection. The processing is carried out exclusively on our behalf. The legal basis for the processing is our legitimate interest in the secure, reliable, and efficient operation of our website.

Google Analytics

Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland, E-Mail: support-de@google.com Parent company: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA Purpose: Web analytics, performance measurement, conversion tracking, collection of statistical data Category: Statistics Receivers: EU, USA Processed data: Information about website visits (see detailed list below), user data. The IP address is used only briefly to determine a rough location and is not stored afterward (see below). Affected individuals: Website Visitors: Technology: JavaScript, Cookies (see the cookie list for details), local storage Legal basis: Legal Basis for Data Transfer: Consent: EU-U.S. Data Privacy Framework, Swiss-U.S. Data Privacy Framework, UK Extension to the EU-U.S. Data Privacy Framework For more information: https://policies.google.com/privacy https://safety.google/intl/de/principles/ https://business.safety.google/privacy/ https://business.safety.google/adsprocessorterms/ Here you can find out exactly where Google data centers are located: https://www.google.com/about/datacenters/locations/ Web and app activity collected through Google Analytics can be viewed and deleted by signed-in Google users under “My Activity” (myaccount.google.com/data-and-privacy). On our website, we use the features of the web analytics service Google Analytics 4 (GA4) to analyze user behavior and optimize our website. The reports provided by Google are used to analyze our website’s performance and measure the success of campaigns run through our website. Google Analytics uses cookies that enable us to analyze how our website is used. All details (name, purpose, retention period) regarding cookies can be found in our specific list of the cookies we use. As an alternative to cookies, GA4 can use local storage to store the client ID, allowing it to track user behavior even without a traditional cookie. Information about the use of the website – such as browser type and version, operating system used, the previously visited page, the time of the server request, and approximate location – is transmitted to Google and processed there. We have entered into a contract with Google for this purpose. With regard to IP addresses, there is no traditional “anonymization”; in the sense of truncation after transmission; rather, GA4 is designed from the ground up so that IP addresses are neither logged nor stored for visitors from the EU, Switzerland, and the UK. The IP address is used only briefly to determine a rough location (city, region, country) and is then permanently discarded before it is stored on Google’s servers. This is a feature that is built into GA4 and cannot be disabled; it is not an optional setting. On our behalf, Google will use this information to analyze the use of our website, compile reports on activity on our website, and provide us with other services related to the use of our website. During a visit to the website, user behavior is tracked in the form of so-called events. These can represent the following:
  • Page views, a user’s click path
  • First-time visit to our website
  • Websites Visited
  • Starting a Session
  • Interaction with Our Website
  • User behavior (such as clicks, scrolling, time spent on the site, bounce rates)
  • File Downloads
  • Displays viewed / clicked (only if Google Ads is linked to this property and Google Signals is enabled)
  • Interacting with Videos
  • internal search queries
The following information is also collected:
  • Approximate location (region, determined based on the IP address, without storing it)
  • Date and Time of the visit
  • Technical information about the browser or the devices used (e.g., language settings, screen resolution)
  • Internet service provider
  • Referrer URL (the website or advertising material through which a user arrived at our website)
This data is primarily processed by Google for its own purposes, such as profiling (over which we have no control). Data regarding the use of our website is deleted immediately after the retention period we have specified has ended. By default, Google Analytics specifies a retention period of 2 months for user and event data, with a maximum retention period of 14 months. This retention period also applies to conversion data. For all other event data, the following options are available: 2 months, 14 months, 26 months (Google Analytics 360 only), 38 months (Google Analytics 360 only), 50 months (Google Analytics 360 only). We select the shortest retention period that meets our intended purpose. You can contact us at any time to find out what our current retention period is. Data that has reached its retention period is automatically deleted once a month. Additional details can be found in the linked supplementary information. We recommend checking these links regularly for changes, as Google Analytics may update its features and privacy policies. Additional information regarding your rights and contact information can be found in the general section of this privacy policy.

Google Fonts

Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland, parent company Google LLC (USA), https://www.dataprivacyframework.gov/s/participant-search/participant-detail?id=a2zt000000001L5AAI&status=Active Purpose: Integration of fonts Statistics Receivers: EU, USA (possible) Processed data: IP address, language settings, screen resolution, browser version and name. Affected users: Website Visitors: Technology: Legal Basis for JavaScript Calls: Consent, Data Privacy Framework Website: www.google.com Additional information: https://developers.google.com/fonts/faq https://policies.google.com/privacy https://www.google.com/about/datacenters/inside/locations/ Our website uses so-called web fonts, provided by Google, to ensure consistent font display. To display Google Web Fonts, the browser you are using must connect to Google’s servers. This allows Google to determine that our website was accessed via your IP address. Google also stores the IP address of the browser on the visitor’s device when they visit our website. If your browser does not support web fonts, a default font will be used on your device. With every Google Font request, information such as language settings, screen resolution, and the browser version and name is automatically transmitted to Google’s servers along with the IP address. In any case, Google can determine the popularity of fonts based on the usage data it collects. Google publishes the results on internal analytics pages (e.g., Google Analytics). With Google Fonts, we can use fonts on our own website without having to upload them to our server. Google Fonts is an important component in maintaining the high quality of our website. All Google fonts are automatically optimized for the web, which saves data and is a major advantage, especially when using mobile devices. When you visit our site, the small file size ensures fast loading times. In addition, Google Fonts are secure web fonts and are supported by all major browsers. Google stores requests for CSS assets on its servers for one day. This allows us to use the fonts with the help of a Google stylesheet. Google stores the font files for one year. To delete data early, you must contact Google Support ( https://support.google.com ).

Google Ad Manager (formerly DoubleClick for Publishers and DoubleClick Ad Exchange)

Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland Parent Company: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA Purpose: Management, marketing, and display of advertising space on our website, including programmatic ad sales (real-time bidding) across multiple ad networks and exchanges. Receivers: The EU, the U.S., and, where applicable, other third-party providers participating in the bidding process (demand-side platforms, ad networks) Category: Marketing Data processed: IP address (used briefly to determine a rough location), cookie/device ID, information about page content and ad placements viewed, technical device information (browser, screen resolution) Data subjects: Website Visitors: Technology: JavaScript (Google Publisher Tag / gpt.js), cookies, and, if applicable, additional header bidding scripts from other providers participating in the bidding process. Legal basis: Legal Basis for Data Transfer: Consent: Data Privacy Framework (Google LLC); for participating third-party providers without their own DPF certification, Standard Contractual Clauses (SCCs) are applied. Website: https://www.google.com Further information: https://policies.google.com/privacy https://safety.google/intl/de/principles/ https://business.safety.google/privacy/ https://business.safety.google/adsprocessorterms/ Here you can find out exactly where Google’s data centers are located: https://www.google.com/about/datacenters/inside/locations/ This website uses the Google Ad Manager service to market and display our advertising spaces. When a page with ad space is loaded, the browser sends a request to the Google Ad Server, whereupon the gpt.js script creates an ad request and forwards it to the server. The ad server checks the submitted ad unit specifications (size, position, and, if applicable, targeting criteria) and delivers the appropriate display. When ad space is sold programmatically via real-time bidding, multiple ad exchanges and third-party providers may participate in the auction simultaneously and process data in the process. In this case, granular consent is required that covers each individual provider involved, not just a general entry for “Google”.

Google Tag Manager

Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland Parent Company: Google LLC (U.S.) Purpose: Managing Tools and Plugins Category: Technically Necessary Receivers: EU, USA Processed data: IP address of the affected individual: Users: Technology: Legal Basis for JavaScript Calls: Legitimate Interest, Data Privacy Framework, https://www.dataprivacyframework.gov/s/participant-search/participant-detail?id=a2zt000000001L5AAI&status=Active Website: https://www.google.com Additional information: https://policies.google.com/privacy https://safety.google/intl/de/principles/ https://business.safety.google/adsprocessorterms/ Here you can find out exactly where Google’s data centers are located: https://www.google.com/about/datacenters/locations/ Our website uses the Google Tag Manager service. Tag Manager is a service that allows us to manage website tags through a user interface. This allows us to embed code snippets – such as tracking codes or conversion pixels – on websites without having to modify the source code. In this process, the data is only forwarded by Tag Manager; it is neither collected nor stored. The Tag Manager itself is a cookie-free domain and is used solely to manage other services on our website. When Google Tag Manager starts, the browser connects to Google’s servers. These are mainly found in the United States. This allows Google to determine that our website was accessed via your IP address. The Tag Manager handles the resolution of other tags, which may themselves collect data. However, the Tag Manager does not access this data. If a setting has been disabled at the domain or cookie level, that setting remains in effect for all tracking tags implemented using Tag Manager.

jsDelivr

On our website, we use the open-source service jsDelivr to deliver our website’s content to user’s various devices as quickly as possible and with flawless technical performance. This service is provided by Prospect One sp. z o.o., Królewska 65A/1, PL-30-081 Kraków, Poland (“jsDelivr”). jsDelivr is a content delivery network (CDN) that mirrors the content on our website across various servers to ensure optimal accessibility worldwide. To make this possible, a CDN always uses servers that are geographically close to the respective user of our website. It can therefore be assumed that users within the EU are provided with content via servers located within the EU. To display content, jsDelivr uses user data such as the IP address. According to the provider, jsDelivr does not set cookies or use any other tracking mechanisms; its use is necessary solely for the technical reasons mentioned above. The legal basis for the transfer of personal data is therefore, pursuant to Article 6(1)(f) of the GDPR, our legitimate interest in processing your personal data. jsDelivr retains personal data for as long as necessary to provide the described service or to comply with legal obligations. To block this service, you can install a JavaScript blocker. However, this could cause the website to stop functioning as usual. For more information on how your data is used, please see the provider's privacy policy at https://www.jsdelivr.com/terms/privacy-policy-jsdelivr-net

Contact Us

Our website offers various ways to contact us, such as through contact forms or the E-Mail addresses provided. When you contact us, the personal data you provide will be processed solely for the purpose of handling and responding to your inquiry. Data is processed to the extent necessary to take steps prior to entering into a contract or to fulfill a contract, or based on legitimate interests, such as maintaining customer relationships or documenting processes. Providing certain information may be necessary to fully process a request. Without this information, we may not be able to process your request, or we may only be able to do so to a limited extent. Personal data from contact requests may also be stored in a customer or prospect database based on legitimate interests in order to optimize communication and customer service. Data will be used for marketing purposes only if separate consent has been obtained or if there is a legitimate interest, and provided that no overriding legitimate interests of the data subject preclude such use. Personal data from contact requests is stored only for as long as is necessary to process and handle the request or as required by statutory retention obligations. Once the inquiry has been fully processed and any applicable statutory deadlines have expired, the data will be deleted or anonymized. As a general rule, data is deleted no later than three years after the last contact, provided there are no longer statutory or contractual retention requirements. Further information on the handling of personal data can be found in the website’s privacy policy.

Meta Pixel

Provider: Meta Platforms Ireland Limited, 4 Grand Canal Square, Grand Canal Harbor, Dublin 2, Ireland, E-Mail: privacy@facebook.com Parent company: Meta Platforms, Inc., 1601 Willow Road, Menlo Park, CA 94025, USA Purpose: Web Analytics, Tracking (Conversion) Category: Marketing Receivers: EU, USA Processed data: Visitor data (e.g., IP address, location data), behavioral data (e.g., clicks, time spent on the site, conversion data), device data (e.g., browser type, operating system), e-commerce data (e.g., order ID, product information) Data subjects: Website Visitors: Technology: JavaScript, Cookies (see the cookie list for details),- Legal basis: Consent (Purpose) Certifications: EU-U.S. Data Privacy Framework, Swiss-U.S. Data Privacy Framework, UK Extension to the EU-U.S. Data Privacy Framework Website: https://www.facebook.com/business/tools/meta-pixel Further information: https://www.facebook.com/privacy/policy/ https://www.facebook.com/legal/terms Our website uses the Meta Pixel service provided by the social network Facebook for the analysis, optimization, and efficient operation of our online offerings. With the help of Meta-Pixel, Meta is able, first, to identify visitors to our website as a target audience for personalized displays. Accordingly, we use Meta pixels to display the ads we place only to users who have shown an interest in our online offerings or who exhibit certain characteristics (e.g., interests in specific topics or products, as determined by the websites they have visited), which we transmit to Meta (so-called “Custom Audiences”). With the help of Meta-Pixel, we also want to ensure that our Meta ads align with user’s potential interests and do not come across as intrusive. Furthermore, Meta-Pixel allows us to track the effectiveness of Meta ads for statistical and market research purposes by determining whether users were redirected to our website after clicking on a Meta ad (known as a “conversion”). User’s actions are stored in one or more cookies. These cookies allow Meta to match user data (such as IP address and user ID) with the data associated with a Facebook account. The data collected is anonymous to us; we cannot view it, and it is used solely for advertising purposes. Users can prevent their account from being linked to Facebook by logging out before taking any action. To control what types of ads are displayed on Facebook, users can visit the page set up by Meta and follow the instructions there regarding usage-based advertising settings: https://www.facebook.com/settings?tab=ads These settings apply across all platforms, meaning they are applied to all devices, such as desktop computers and mobile devices. Additional details can be found in the linked supplementary information. We recommend checking these links regularly for changes, as Google Analytics may update its features and privacy policies. Additional information regarding your rights and contact information can be found in the general section of this privacy policy.

Microsoft Advertising

Provider: Microsoft Corporation, One Microsoft Way, Redmond, Washington USA 98052-Mail 6399, USA Purpose: User Analysis, Conversion Tracking Category: Statistics Receivers: USA Processed data: IP address, information about the website visit Data subject: Users: Technology: JavaScript call, cookies Legal basis: Consent, EU-U.S. Data Privacy Framework, https://www.dataprivacyframework.gov/s/participant-search/participant-detail?id=a2zt0000000KzNaAAK&status=Active Website: Additional information: https://privacy.microsoft.com/de-de/privacystatement https://learn.microsoft.com/en-us/compliance/regulatory/offering-eu-model-clauses https://help.ads.microsoft.com/#apex/3/de/53056/2 Opt-out option: https://account.microsoft.com/privacy/ad-settings/signedout Our website uses the Microsoft Advertising service (formerly Bing Ads) to analyze and optimize our business operations. Microsoft Advertising sets cookies on user’s devices to analyze user behavior on our website. This assumes that the user arrived at our website via a display from Microsoft Advertising. This provides us with information about the total number of users who clicked on such a display, were redirected to our website, and had previously reached a specific landing page (known as conversion tracking). No IP addresses are stored, and no personal information regarding the identity of our users is disclosed. Microsoft operates its own servers worldwide. Most of them are located in the United States. Microsoft stores data for as long as necessary to provide its own services or products or for legal purposes.

Server Log Files

Category: General Processing Activities Purpose: technical security, stability, and error analysis Data types: technical connection data and access data Data subjects: Visitors to the website Receivers: Hosting providers or technical service providers Technologies: Server Logs Legal Basis: Legitimate Interest (Technical Operation & Security) When you visit our website, so-called server log files are automatically created. These log files contain the following data, which the browser transmits automatically:
  • IP address
  • Date and Time of Access
  • file or page accessed
  • Amount of data transferred
  • Notification of Successful Retrieval
  • Browser type and version used
  • Operating system used
  • Referrer URL (previously visited page)
  • Hostname of the accessing device
This data is processed to ensure the functionality, security, and stability of our website, in particular to defend against or track attacks (e.g., DDoS attacks), to analyze errors, and to provide the technical infrastructure for the website. The legal basis for this is a legitimate interest in ensuring the secure and error-free operation of the website. The log file data is automatically deleted after a period customary in the industry – no later than 12 weeks – as soon as it is no longer needed for the purposes stated. Data may be retained for a longer period in specific cases if it is needed for evidentiary purposes (e.g., to investigate security-related incidents). This data is not combined with data from other sources.

SSL Encryption

When you visit our website, we use the widely adopted SSL (Secure Socket Layer) protocol in conjunction with the highest level of encryption supported by your browser. You can tell whether a particular page on our website is being transmitted securely by the closed appearance of the key or lock icon in your browser’s status bar. The use of this method is based on our legitimate interest in employing appropriate encryption techniques. We also employ appropriate technical and organizational security measures to protect your data against accidental or intentional tampering, partial or complete loss, destruction, or unauthorized access by third parties. Our security measures are continuously improved in line with technological developments and kept up to date with the latest standards.

Webcare

Provider: DataReporter GmbH, Zeileisstraße 6, 4600 Wels, Austria Purpose: Consent Management Category: Technically Necessary Receiver: EU, AT Processed data: IP address, consent data of data subjects: Users: Technology: JavaScript call, cookies Legal basis: Legitimate interest, consent (Swarmcrawler for analyzing search results) Website: https://www.datareporter.eu/ Additional information: https://www.datareporter.eu/company/info We use the Webcare tool on our website for consent management. Webcare records and stores the choices made by individual users of our website. Our consent banner ensures that statistical and marketing technologies, such as cookies or external tools, are only set or activated once the user has given their explicit consent to their use. To this end, we store information regarding the extent to which the user has consented to the use of cookies. The user may revoke this decision at any time by accessing the cookie settings and managing their consent. Existing cookies will be deleted once consent is withdrawn. A cookie is also set to store information about the user’s consent status; this is noted in the cookie details. In addition, when this service is accessed, the IP address of the respective user is transmitted to DataReporters servers. The IP address is neither stored nor linked to any other data pertaining to the user; it is used solely to ensure the proper functioning of the service. With the help of Webcare, our website is regularly reviewed for technologies relevant to data protection laws. This analysis is conducted only for those users who have expressly given their consent (for statistical or marketing purposes). User’s; search results are analyzed by Webcare in anonymized form and solely in relation to technologies, and are used to fulfill our disclosure obligations. To launch the Swarmcrawler technology, a request is sent to our servers, and the user’s IP address is transmitted for the purpose of data transfer. Servers are selected based on their geographic proximity to the user’s location. It can be assumed that for users within the EU, a server located within the EU will also be selected. The user’s IP address is not stored and is removed immediately after the communication ends.

Webcare Proof of Consent

The Proof of Consent feature in WebCare allows us to both document the consent given by users of our website via our consent banner and to provide users with a transparent and traceable record of their own consent history. This feature generates a unique consent ID for each user and records every action related to granting or revoking consent via our consent banner in conjunction with the consent ID. The users decision history is stored in a secure storage area and can be viewed by the user at any time. For us, as the website operator, we can only link a history to a specific individual after we have obtained the relevant consent ID. Every action a user takes via the consent banner is retained for 60 days and then automatically deleted. The location where the proof of consent is stored is Frankfurt, Germany (EU). Only the consent ID, the IP address, and the data related to the actions are stored. We use this feature in accordance with our documentation and accountability obligations and our legitimate interest in this regard. For more information about this feature, see the provider's help section at: https://help.datareporter.eu/docs/webcare/webcare_consent_conserve/ For more information on data protection, visit: https://www.datareporter.eu/company/info

Webcare Statistics

The statistics feature in WebCare allows us to collect, in an anonymized manner, data on how users of our website interact with our consent banner. The statistics simply record whether the consent banner was opened and what actions were taken (purposes of consent, withdrawal of consent). Only statistical data is stored; no information relating to specific users is recorded. The visitor’s IP address is used solely for the purpose of establishing the connection and is completely deleted once the connection ends. We use the WebCare analytics feature based on our legitimate interest in monitoring the performance of our consent banner and the related accessibility of our online services. Statistical data is stored for 30 days; older data is automatically deleted. For more information about this feature, see the provider's help section at: https://help.datareporter.eu/docs/webcare/webcare_consent_statistic/ For more information on data protection, visit: https://www.datareporter.eu/company/info

YouTube

Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland Parent Company: Google LLC (U.S.) Purpose: Embedding video content, collecting statistical data Category: Statistics Receivers: EU, USA Processed data: IP address, information about the website visit Data subject: Users: Technology: JavaScript calls, cookies, device fingerprinting, local storage Legal basis: Consent, Data Privacy Framework, https://www.dataprivacyframework.gov/s/participant-search/participant-detail?id=a2zt000000001L5AAI&status=Active Website: https://www.youtube.com Further information: https://www.youtube.com/intl/ALL_at/howyoutubeworks/user-settings/privacy/ https://policies.google.com/privacy https://safety.google/intl/de/principles/ https://support.google.com/youtube/answer/10364219?hl=de We use the YouTube service on our website to embed external videos. We have enabled enhanced privacy mode on YouTube. According to YouTube, this mode ensures that YouTube does not store any information about visitors to this website before they watch a video. However, the extended privacy mode does not prevent data from being shared with YouTube partners. As soon as a YouTube video is played on our website, a connection is established with YouTube’s servers. This allows YouTube to track which of our pages you have visited. When you’re signed in to your YouTube account, you allow YouTube to link your browsing activity directly to your personal profile. You can prevent this by logging out of your account. In addition, after you start playing a video, YouTube may store various cookies on your device or use similar technologies (e.g., device fingerprinting). YouTube also uses local storage on your device. In this way, YouTube can obtain information about visitors to this website. This information is used, among other things, to track video statistics, improve the user experience, and prevent fraud.

General Information on Data Protection

The following provisions apply, in principle, not only to data collection on our website but also, more generally, to the processing of personal data in other contexts.

Personal Data

Personal data is information that can be associated with you individually. Examples of this include your address, your name, your mailing address, your email address, and your phone number. Information such as the number of users who visit a website does not constitute personal data because it cannot be linked to a specific individual.

Legal Basis for the Processing of Personal Data

Unless more specific information is provided in this Privacy Policy (e.g., regarding the technologies used), we may process your personal data based on the following legal grounds:
  • Consent pursuant to Article 6(1)(a) of the GDPR —the data subject has given consent to the processing of his or her personal data for one or more specific purposes.
  • Performance of a contract and precontractual measures pursuant to Article 6(1)(b) of the GDPR —Processing is necessary for the performance of a contract to which the data subject is a party or for the implementation of precontractual measures.
  • Legal obligation pursuant to Article 6(1)(c) of the GDPR —Processing is necessary for compliance with a legal obligation.
  • Protection of vital interests pursuant to Article 6(1)(d) of the GDPR – Processing is necessary to protect the vital interests of the data subject or another natural person.
  • Legitimate interests pursuant to Article 6(1)(f) of the GDPR —Processing is necessary to safeguard the legitimate interests of the controller or a third party, unless the interests or fundamental rights and freedoms of the data subject take precedence.
Please note that, in addition to the provisions of the GDPR, national data protection laws in your or our home country may apply.

Transfer of Personal Data

Your personal data will not be disclosed to third parties for any purposes other than those listed in this Privacy Policy.We will only share your personal information with third parties if:
  • You have given your explicit consent pursuant to Article 6(1)(a) of the GDPR to,
  • the disclosure is necessary pursuant to Article 6(1)(f) of the GDPR to protect legitimate interests and to assert, exercise, or defend legal claims, and there is no reason to believe that you have an overriding legitimate interest in preventing the disclosure of your data,
  • there is a legal obligation to disclose the data pursuant to Article 6(1)(c) of the GDPR, and this is permitted by law and/or
  • it is necessary for the performance of a contract with you, pursuant to Article 6(1)(b) of the GDPR. 

Collaboration with Data Processors

We carefully select the service providers who process personal data on our behalf. If we engage third parties to process personal data on the basis of a data processing agreement, this is done in accordance with Article 28 of the GDPR.

Transfer to Third Countries

If we process data in a third country, or if this occurs in connection with the use of third-party services or the disclosure or transfer of data to other individuals or companies, it is done solely on the basis of the legal grounds for data transfer set forth above. Subject to express consent or contractual necessity, we process or have the data processed in accordance with Art. 44–49 of the GDPR, only in third countries with a level of data protection recognized as adequate or on the basis of specific safeguards, such as a contractual obligation through the European Commission’s so-called Standard Contractual Clauses, the existence of certifications, or binding internal data protection policies.

Data Transfer to the United States

We would like to expressly point out that, as of July 10, 2023, the European Commission has adopted an adequacy decision regarding the EU-U.S. Data Privacy Framework pursuant to Article 45(1) of the GDPR. Consequently, organizations or companies (as data importers) in the United States that are registered on a public list as part of the Data Privacy Framework’s self-certification process provide an adequate level of protection for data transfers. You can find out whether a specific service provider is already certified here: https://www.dataprivacyframework.gov/s/participant-search The Data Privacy Framework provides a valid legal basis for the transfer of personal data to the United States. This will establish binding guarantees to ensure compliance with all of the ECJ’s requirements; for example, it provides that access by U.S. intelligence agencies to EU data will be limited to what is necessary and proportionate, and that a court will be established to review data protection matters, to which individuals in the EU will also have access. If we do transfer data to the United States, or if we use a service provider based in the United States, we explicitly state this in this Privacy Policy (see, in particular, the description of the technologies on our website). It should be noted that, aside from significant improvements, the Data Privacy Framework applies only partially and applies only to data transfers to those data importers in the United States that appear on the public list of certified organizations/companies. What does the transfer of personal data to the U.S. mean for you as a user, and what risks are involved? Risks for you as a user, insofar as data importers in the U.S. that are not covered by the Data Privacy Framework are concerned, include the powers of U.S. intelligence agencies and the legal situation in the U.S., which, in the view of the European Court of Justice, no longer ensure an adequate level of data protection. These include, among other things, the following points:
  • Section 702 of the Foreign Intelligence Surveillance Act (FISA) does not impose any restrictions on intelligence agencie’s; surveillance activities or provide any safeguards for non-U.S. citizens.
  • Presidential Policy Directive 28 (PPD-28) does not provide affected individuals with effective legal remedies against actions taken by U.S. authorities and does not establish safeguards to ensure that such actions are proportionate.
  • The ombudsman office provided for under the Privacy Shield does not have sufficient independence from the executive branch; it cannot issue binding orders to the intelligence agencies.
Is the transfer of data to the U.S. in compliance with the law based on the Standard Contractual Clauses for data importers who are not covered by the Data Privacy Framework? In June 2021, the European Commission adopted new Standard Contractual Clauses (SCCs) through Decision 2021/914/EU. These create a new legal basis for data transfers to countries that do not have the same level of data protection as the EU. Is the transfer of data to the U.S. based on consent legally compliant? If data is transferred to a service provider based in the United States that is not covered by the Data Privacy Framework, and if this data transfer is based on explicit consent, we will explicitly disclose this information in this Privacy Policy, particularly in the description of the technologies used on our website. What measures do we take to ensure that data transfers to the United States comply with the law? To the extent that U.S. providers offer this option, we choose to process data on EU servers. This should ensure, from a technical standpoint, that the data is stored within the European Union and that U.S. authorities cannot access it.

General Retention Periods

Unless an explicit retention period is specified when data is collected (e.g., as part of a consent form), we are required under Article 5(1)(e) of the GDPR to erase personal data as soon as the purpose for which it was processed no longer applies. In this context, we would like to point out that the statutory retention requirements to which we are subject constitute a legitimate purpose for the further processing of the personal data covered by them. As a general rule, we store and retain personal data until the end of a business relationship or until the expiration of applicable warranty, guarantee, or statute of limitations periods; beyond that, until the resolution of any legal disputes in which the data is required as evidence; or, in any case, until the end of the third year following the last contact with a business partner.

Retention Periods in Particular

The descriptions of individual technologies on our website include specific information regarding how long data is stored. Our cookie table provides information about how long individual cookies are stored. In addition, you always have the option of contacting us directly to inquire about the specific retention period for your data. To do so, please use the contact information provided in this Privacy Policy.

Rights of Data Subjects

Data subjects have the right to:
  • (i) pursuant to Article 15 of the GDPR, to requestinformation about your personal data that we process. In particular, you may request information regarding the purposes of processing, the category of personal data, the categories of receivers to whom your data has been or will be received, the planned retention period, the existence of a right to rectification, erasure, restriction of processing, or objection; the existence of a right to lodge a complaint; the origin of your data, if it was not collected by us; and the existence of automated decision-making, including profiling, and, where applicable, meaningful information regarding its details;
  • (ii) pursuant to Article 16 of the GDPR, to request, without delay, the rectification of inaccurate personal data or the completion of your personal data stored by us;
  • (iii) pursuant to Article 17 of the GDPR, to request, under certain circumstances, the erasure of your personal data stored by us, unless the processing is necessary for the exercise of the right to freedom of expression and information, to comply with a legal obligation, for reasons of public interest, or to establish, exercise, or defend legal claims;
  • (iv) pursuant to Article 18 of the GDPR, to request the (temporary) restriction of the processing of your personal data if you contest the accuracy of the data, if the processing is unlawful but you oppose its erasure, we no longer need the data, but you need it to assert, exercise, or defend legal claims, or you have objected to the processing pursuant to Article 21 of the GDPR;
  • (v) in accordance with Article 20 of the GDPR, to receive from us the personal data you have provided to us in a structured, commonly used, and machine-readable format, or to request that we transmit that data directly to another controller; however, this applies only to those of your personal data that we process using automated means based on your consent or a contract;
  • (vi) pursuant to Article 21 of the GDPR, if your personal data is processed on the basis of our legitimate interest, to object to the processing of your personal data, provided there are grounds for doing so arising from your particular situation or the objection is directed against direct marketing. In the latter case, you have a general right to object, which we will honor without requiring you to specify a particular situation;
  • (vii) to withdrawyour consent at any time, in accordance with Article 7(3) of the GDPR . As a result, we will no longer be permitted to continue processing data based on this consent in the future. Among other things, you have the option to revoke the consent you previously gave to the use of cookies on our website, effective for the future, by accessing our cookie settings ;
  • (viii) to file a complaintwith a supervisory authority pursuant to Article 77 of the GDPR regarding our unlawful processing of your data. As a general rule, you may contact the supervisory authority in your usual place of residence, your place of work, or where our company is headquartered.
The competent supervisory authority for GÖWEIL Maschinenbau GmbH is:Austrian Data Protection Authority , Barichgasse 40-42, 1030 Vienna, Austria Tel.: +43 1 52 152-0, dsb@dsb.gv.at

Exercising the Rights of Data Subjects

You decide how your personal data is used. Therefore, if you wish to exercise any of the rights listed above with respect to us, please feel free to contact us by E-Mail at office@goeweil.com , by mail, or by phone. Please help us clarify your request by answering the questions posed by our staff member regarding the specific processing of your personal data. If there are reasonable doubts about your identity, we may ask you to provide a copy of your ID. If you have any questions regarding data protection, you can reach us at office@goeweil.com or using the other contact information listed in this Privacy Policy. Kirchschlag near Linz, July 9, 2026 Download as a PDF

About Cookies

Cookies are small data packets that are exchanged between your browser and our web server when you visit our website. Cookies can only store information provided by your browser. Depending on their intended use, cookies are either technically necessary or are used for statistical or marketing purposes. The legal basis for the use of technically necessary cookies is our legitimate interest in the technically sound operation and seamless functionality of our website. The use of statistics and marketing cookies requires your consent. This is optional and can be revoked at any time for the future by accessing the cookie settings. You can also set your browser to prevent cookies from being stored altogether. Once cookies have been set, you can delete them at any time. You can find out exactly how all of this works in your browser’s Help section. Please note that disabling cookies entirely may result in limited functionality on our website. For more information about what data is stored in cookies, the purposes for which it is used, and how long the data is stored, please refer to our Privacy Policy and our cookie banner.

Required

Technically necessary cookies are used to enable the technical operation of a website and make it functional for you. The use is based on our legitimate interest to provide a technically flawless website. However, you can generally disable the use of cookies in your browser.

Statistics

Statistics cookies collect information about how websites are used to improve their attractiveness, content and functionality. A use takes place only with your consent and only as long as you have not deactivated the respective cookie.

Marketing

Marketing cookies come from external advertising companies and are used to collect information about the websites visited by the user. A use takes place only with your consent and only as long as you have not deactivated the respective cookie.

Welcome to GÖWEIL!

Please select your country and language: