Back

Preamble

Welcome to the health platform “machtfit.” The machtfit platform enables you to use health services offered by Bayer (hereinafter also referred to as “Your Employer“) or by third-party health services that are sponsored by Bayer. In addition, you also have the opportunity - independently of Bayer - to make use of other services via the machtfit platform. The platform is operated by the machtfit GmbH.

Bayer and its affiliates who have commissioned this service are the Data Controllers under the applicable data protection legislation and are responsible for the processing of health offers from Bayer or health offers sponsored by Bayer via the platform. Data controller under data protection legislation with regard to other services and data processing in connection with the platform, is the machtfit GmbH (hereinafter „machtfit“).

In the following, Bayer AG and machtfit GmbH would like to provide you with information about the processing of your personal data in connection with the machtfit platform.

Privacy Statement of the machtfit Platform

We are delighted about your visit and the use of our platform machtfit. We, the machtfit GmbH as operator of the platform, understand the protection and security of your data as a very important part of our service. Therefore, we have designed our service in such a way that only necessary personal data is collected or processed, the purpose of which is clearly defined in each case. Our activities are strictly limited to providing you with the best user experience and its continuous enhancement.

We use the personal data provided by you for the purpose of providing our services, processing your bookings and, if applicable, for service and support requested by you as well as for the purpose of the platform’s technical administration. We store your data exclusively for legitimate reasons, for example, in the case of a booking, which is subsidized by your employer in a tax-privileged manner or for recommending offers in your geographic proximity with suitable content. Under no circumstances will your personal data be used for any other purposes or passed on to third parties. Your data will be stored exclusively in Germany, Austria or Switzerland in compliance with the strictest data protection regulations. Safety and legal conformity are regularly reviewed by us.

The following privacy statement explains what information we collect during your visit to our platform and how we process it. Please read this privacy policy carefully. By clicking on the corresponding checkbox during registration you confirm that you have read the privacy statement. We will of course use your personal data only to the extent described in this privacy statement.

Registration data

In order to be able to use our platform and obtain services, you provide us with personal data, such as name, address, e-mail in the context of a registration. Data that isabsolutely necessary in the respective process are indicated as mandatory fields. In order to identify you as a Bayer employee, information about your work location and the company is transmitted to machtfit via an interface to the Bayer HR system. Your email address serves as your username. We need the registration data so that we can identify you as our contracting partner, to create and administer your registration, to provide the contractual services and, if necessary, to contact you (Art. 6(1)(b) General Data Protection Regulation, GDPR). You can access your registration data, or have it rectified or deleted at any time. However, if the registration data is deleted, the machtfit platform can no longer be used, as such data is absolutely necessary for the provision of our services as described above.

Data for the Optimization of our Offer

For the purpose of providing our services, we collect additional data from you, which helps us to create the best possible offer for you. This information is voluntary, but we use it only for the purpose stated or permitted by law. As a general rule, you may delete personal data at any time or instruct us to do so.

Data Purpose Storage period
Type of professional activity (e.g.,, physical/non- physical/shift work) This information helps us to optimize and expand our services and to improve the user- friendliness of the platform. In particular, our professional activity provides us with information as to which offers might be of interest to you, e.g., shift workers tend to benefit from offers that do not take place on fixed dates. Until you unsubscribe from our platform.
Age This information helps us to optimize and expand our services and to improve the user- friendliness of the platform. For example, we can direct your attention to offers that are typically taken up by members of your age group, based on their age. Until you unsubscribe from our platform.
Interests (e.g., training goals, offer preferences, interest in health topics) This information helps us to optimize and expand our services and to improve the user- friendliness of the platform. Based on your information, we can optimize and expand our offer according to your interests and needs. Until you unsubscribe from our platform.
Health perception (e.g., fitness level, stress perception, sleep quality) This information helps us to optimize and expand our offer. Based on your information we can, for example, direct your attention to offers that correspond to your fitness level. Until you unsubscribe from our platform.
Time of registration This information helps us to optimize and expand our services and to improve the user- friendliness of the platform. This information helps us specifically to assess how familiar you already are with the platform and to provide you with information about, for example, new offers or to direct your attention to new features. Until you unsubscribe from our platform.

Platform Optimization Data

The following data is collected by us to improve the usability of the platform, and to optimize the offering on the platform. You will have the option to allow or prohibit the use.

Data Purpose Storage period
Read articles from our health magazine This information helps us to optimize our health magazine. This allows us to determine which articles are especially popular, adapt our content accordingly and show you topic-related articles. Until you unsubscribe from our platform.
Searched offers This information helps us to optimize and expand our offer and to improve the user- friendliness of the platform. This allows us to determine which offers are particularly frequently requested, to adapt our offer accordingly and to show you similar offers. Until you unsubscribe from our platform.
Offers used In the case of a booking that is subsidized by your employer in a tax-privileged way, a legal retention period of 10 years applies. For this purpose, we archive the corresponding certificate of the provider as well as the amount of the subsidy granted. Until you unsubscribe from our platform, at least 10 years for tax-privileged prophylactic offers.
Time and duration of use This enables us to determine at which times our services are in particularly high demand in order to optimize our technical equipment. Until you unsubscribe from our platform.
IP address We collect and store this data for security reasons in order to prevent the misuse of our services and to be able to retrace such misuse, if necessary. The last three digits of the IP address are anonymized and cannot be recognized by machtfit. Until you unsubscribe from our platform, but not exceeding 1 year.
Name and version of your browser, browser plugin and operating system In case of errors, e.g.,related to the display of the website or loading time, this will allow us to better determine causes and implement improvements. It also tells us which browsers and systems we need to support. Until you unsubscribe from our platform, but not exceeding 1 year.

Recording of Data for Improving Usage

The recording of data for the purpose of improving usage serves to optimize and expand our range of services and to improve the user friendliness of the platform. You can of course object to the use at any time; in this case, we will discontinue the collection of this data. If you do not consent to the storage and use of your data, you may deactivate the storage and use here. In this case, a so-called „cookie“ is stored in your browser, which prevents usage data from being stored. „Cookies“ are text files that are stored on your computer.

The machtfit web analysis is deactivated.

Please note that we respect the deactivation cookie as long as it is stored in your browser. When using another browser or after deleting the stored cookies, we ask you to generate the deactivation cookie again.

Data Transfer in Case of Employer Contribution

If your employer has agreed to subsidize the services you have used, we will transmit the necessary information for the employer to provide proof to the tax authorities and for other accounting purposes. Only the necessary data will be transmitted:

  • Certificate of the offer taken up
  • Offer category (for example, movement)
  • Amount of subsidy granted

Your employer has been advised of this earmarking and to use the data only for this defined purpose in accordance with statutory regulations.

machtfit offers the option, in addition to the offers of the machtfit health partners, to make available intra-company health offers as well as health offers from third parties (e.g., organizers of company runs). If your employer makes such offers available to you on the platform, your employer or third party provider will have access to the booking data for organizational reasons. For example, this is necessary in the case of appointment or room changes so that you can be informed accordingly. This information will only be made available to the persons responsible for the respective offer.

Furthermore, your employer does not receive any additional information about your personal use of our services.

Infomail

You will receive regular information from us by e-mail about the promotion of your health. You may cancel or change the frequency of this service at any time by clicking on the link contained in each e-mail or by accessing the relevant function in your user account. Under no circumstances will your data be passed on to third parties. We use a service provider for the technical processing of the e-mail transmission, whom we use in accordance with the data protection regulations and the applicable laws and whom we have contractually obligated to protect your data. We can also enforce your rights with these service providers at any time.

Your Rights regarding Access, Erasure, Restriction of Processing, Objection, Complaint, Data Portability

You have the right at any time, free of charge, to access your stored personal data, origin, recipient, storage period and the purpose of the data processing, etc. as well as a right to correction, restriction of processing, right of objection or erasure of this data. You may contact us at any time for more information on this subject or for further questions regarding personal data using the contact details provided by our data controller or by our data protection officer. Please submit these inquiries directly to machtfit, as your employer has no detailed knowledge of the data processed on the platform as mentioned above.

As a precaution, in the event of a complaint, we would like to direct your attention to your right to lodge a complaint under Article 77 GDPR with the supervisory authority.

Any data subject concerned by the processing of personal data shall have the right to obtain, in a structured, common and machine-readable format, personal data concerning him or her which have been provided by the data subject to a data controller. Furthermore, when exercising his or her right to data portability pursuant to Art. 20 (1) GDPR, the data subject shall have the right to procure that the direct transfer of personal data from one data controller to another data controller, provided that this is technically feasible and does not infringe the rights and freedoms of other persons.

In order to assert the right to data portability, the data subject may at any time contact the data protection officer or another employee appointed for this purpose.

Technical and Organizational Security Measures

We have taken comprehensive security measures to adequately protect your personal information. We regularly revise our safety concept and adapt the measures to the technical development. All of our employees are regularly trained in data protection and the security measures taken and are obliged to keep your data confidential.

Service providers

Within the framework of the provision of services, we cooperate with service providers, some of whom also process personal data on our behalf. Contracts have been entered into with these service providers based on applicable law to ensure that the data protection requirements are also met by the service provider.

Cookies

Some of these Internet pages use so-called cookies. Cookies do not damage your computer and do not contain any viruses. Cookies serve to make our offer more user- friendly, more effective and safer. Cookies are small text files which are stored on your computer by your browser.

We use cookies to identify you for subsequent visits if you have an account with us. Otherwise, you would have to log in again for each visit. This website uses cookies to the following extent:

  • Transient cookies (temporary use)
  • Persistent cookies (temporary use)
  • Third-Party Cookies (from third parties)

Transient cookies are automatically deleted when you close your browser. This particularly includes session cookies. They store a so-called session ID, which can be used to assign various requests from your browser to the shared session. This allows your computer to be recognized when you return to the website. Session cookies are deleted when you log out or close your browser.

Persistent cookies are automatically deleted after a specified period, which may vary depending on the cookie. You can delete the cookies in the security settings of your browser at any time.

You can configure your browser settings according to your preferences and, for example, refuse to accept third-party cookies or all cookies. However, if you do so, you may not be able to use the full functionality of this website.

Name and contact details of the data controller

Data controller for the machtfit platform and associated offers within the meaning of the General Data Protection Regulation, other data protection laws applicable in the member states of the European Union and other provisions in the nature of data protection:

machtfit GmbH
Monbijouplatz 5
10178 Berlin
phone: 030/34655060
e-mail: datenschutz@machtfit.de

Contract details of the data protection officer

You can reach machtfit’s data protection officer at the e-mail address datenschutz@machtfit.de.

T-Systems Multimedia Solutions GmbH
Digital Integrity Solutions
Consultant Data Privacy
Postal address: Postfach 10 02 24, 01072 Dresden

All data subjects may contact our data protection officer directly at any time with any questions or suggestions regarding data protection.

Bayer and its affiliates who have commissioned this service are the Data Controllers under the applicable data protection legislation and are responsible for the processing of health offers from Bayer or health offers sponsored by Bayer via the platform. You can reach the data protection officer of your employer at:

Konzerndatenschutzbeauftragter der Bayer AG
51368 Leverkusen
data.privacy@bayer.com

Changes to the Privacy Statement

We reserve the right to change the privacy statement in order to adapt it to changed legal situations or in the event of changes to the service or data processing.

Users are therefore requested to keep themselves regularly informed about their content.

Effective date: October 2019