InsightRP2
Privacy Policy
1. Scope
Georg- August University Göttingen
Public law foundation
University Medical Center Göttingen
Robert-Koch-Str. 42
37077 Göttingen
represented by the Executive Board
Phone: +49 (0)551 39-0
Email: poststelle@med.uni-goettingen.de
(hereinafter “UMG”)
in connection with the website made available at https://www.insight-rp2.org (hereinafter the “Website”).
The legal basis for data protection is set forth in the General Data Protection Regulation (GDPR), the Federal Data Protection Act (BDSG), the Lower Saxony Data Protection Act (NdsDSG), and the Telemedia Act (TMG). UMG declares that it will comply with the applicable laws, particularly when processing personal data.
You can contact the UMG Data Protection Officer at:
Universitätsmedizin Göttingen
-Data Protection Officer-
37099 Göttingen
Phone: +49 (0)551 39-62760
Email: datenschutz@med.uni-goettingen.de
The data protection supervisory authority responsible for UMG under data protection laws is:
Die Landesbeauftragte für den Datenschutz Niedersachsen
Prinzenstraße 5
30159 Hannover
Phone: +49 (0511) 120 45 00
Telefax: +49 (0511) 120 45 99
Email: poststelle@lfd.niedersachsen.de
2. Handling of Personal Data
Personal Data means any information relating to an identified or identifiable natural person; A natural person is considered identifiable if they can be identified, directly or indirectly, in particular by association with an identifier such as a name, an identification number, location data, an online identifier, or one or more factors specific to the physical, physiological, genetic, mental, economic, cultural, or social identity of that natural person (Art. 4(1) GDPR).
The law applies to the processing of personal data:
Processing means any operation or set of operations performed on personal data, whether or not by automated means, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, distribution, or any other form of disclosure, the comparison or linking, the restriction, erasure, or destruction (Art. 4(2) GDPR).
UMG processes personal data only when permitted by law or when users consent to such processing (see Art. 6 of the GDPR).
2.1 Data Processing When Visiting the Website
We use cookies to enable the website operator to collect and analyze various statistical data, for example, to improve the quality of the website’s structure and content, and to provide a user-friendly and seamless browsing experience. Cookies are small text files that are stored on your hard drive and associated with the browser you are using, and through which certain information is transmitted to the entity that sets the cookie (in this case, us). On the one hand, they serve to enhance the user-friendliness of websites and thus benefit users (for example, by storing login information). On the other hand, they help collect statistical data on website usage and analyze it to improve our offerings.
We use so-called session cookies, which are limited to the duration of your visit and allow us, for example, to store specific, device-related information on the user’s device (PC, smartphone, etc.). This enables us to recognize your device when you return to our website. Session cookies, also known as transient cookies, are automatically deleted when you close your browser or log out. In addition, persistent cookies are automatically deleted after a specified period of time, which may vary depending on the cookie.
Cookies cannot cause any damage to your computer. They do not pose a security risk, such as viruses or spying on your computer.
Users can control the use of cookies. Most modern browsers have an option that allows you to restrict or completely prevent the storage of cookies.
Many online advertising cookies from companies can be accessed via
the U.S. website http://www.aboutads.info/choices/ or
the EU website http://www.youronlinechoices.com/uk/your-ad-choices/ be blocked.
When you use the website for informational purposes only—that is, if you do not register or otherwise provide us with information—we collect only the personal data that your browser transmits to our server. When you view our website, we collect the following data, which is technically necessary for us to display our website to you and to ensure its stability and security (the legal basis is Article 6(1)(f) of the GDPR):
- IP-Adress;
- Date and time of the request;
- Page title of the page being viewed;
- URL (address) of the page being viewed;
Previous URL (address) of the page being viewed;
The log file is processed and cookies are used solely for statistical purposes, in particular to improve our website.
2.2 Data Processing When Contacting Us via Email
To the extent that personal data (e.g., name, address, and email addresses) is collected via email inquiries, this is always done on a voluntary basis. Please note that personal data provided to us in initial email inquiries is processed for storage purposes. The same applies to attachments that you include with your email. However, this process is used exclusively for the purpose of handling the inquiries.
Please note that communication by email may involve security vulnerabilities. In particular, it cannot be entirely ruled out that third parties may manipulate electronic documents. In addition, individuals with relevant technical expertise may be able to view or modify emails while they are being transmitted to us. If you do not wish to accept the risks associated with using email, you should choose another method of communication.
Additional personal data are processed only if you have provided them in the email itself or have submitted them to us using the upload function in the contact form, for example where this serves the purpose of concluding non-disclosure agreements or other contracts.
Your data will be disclosed to third parties only where this is necessary to fulfil the purpose of your enquiry, for example where personal data are processed to perform a contract (see Article 6(1)(b) GDPR), to comply with legal obligations (see Article 6(1)(c) GDPR), or where this is necessary to protect the vital interests of the data subject (see Article 6(1)(d) GDPR).
3. Right to information; erasure and restriction
Upon request, you are entitled to the statutory rights of access under the GDPR and the BDSG from the person responsible for content named in the legal notice.
In particular, you have the following rights in relation to your personal data:Right of Access (Art. 15 of the GDPR)
- Right of access (Art. 15 GDPR)
- Right to Rectification (Art. 16 of the GDPR)
- Right to Erasure (Art. 17 of the GDPR)
- Right to Restriction of Processing (Art. 18 GDPR)
- Right to Data Portability (Art. 20 of the GDPR)
- Right to Object to Processing (Art. 21 of the GDPR)
Your stored personal data will be erased or restricted in accordance with legal requirements.
In addition, pursuant to Article 77 GDPR, you have the right to lodge a complaint with a data protection supervisory authority, for example with the data protection supervisory authority responsible for UMG as indicated above in Section 1.
Last updated: August 2026