Privacy Notice

Mimi Hearing Technologies Website Privacy Notice

Last updated: June 2024

This notice describes how we collect and process users’ data through https://mimi.io website. 

The terms “we”, “us”, “our”, “Mimi” or “MHT” refer to “Mimi Hearing Technologies GmbH”, a German company with limited liability. If you would like to access our Terms of Service, please visit the following link: https://www.mimi.io/en/terms

We are committed to safeguarding the privacy of our users. We will not misuse your data.

Who are we?

From the data protection perspective, we act as a data controller for the information collected through the website. You can contact us at:

Mimi Hearing Technologies GmbH
Registered address: Boxhagener Str. 82, 10245 Berlin, Germany
Contact email address: privacy@mimi.io

You may also contact our appointed Data Protection Officer:
Fresh Compliance GmbH
Philipp Heindorff
Fürbringerstr. 15
10961 Berlin
info@freshcompliance.de 

1. Acceptable Age

We do not intend to collect nor process the data of individuals under 18 years old. Minors require their parents’ or legal guardians’ approval when sharing their data on our website or via contact forms or email with us. If we become aware that someone under the age of 18 has provided or attempted to provide us their personal data, we will use our best efforts to remove the information permanently from our files and delete this data.

2. Data we collect from you

2.1. Website, sales and marketing activities

We can also use the content of your request to improve our products and services or analyze our marketing efficiency if it contains valuable information.

Processing activity

purpose

data points 

needed for that
purpose

Tracking website visitors

Allows MHT to provide
website updates and track
whether marketing campaigns and contact forms work. 

Country, Browser type, OS

Sending out newsletters to partners

Allows MHT to make
announcements to the
B2B community (news and product updates).

first name, last name, email address, company name 

*Optional: Job title, phone number, website URL 

Sending out newsletters to customers

Sending data subjects further material (if the data subject confirms their interest).

E-mail address, possibly name

Downloading whitepapers and other materials

Providing the option to data subjects to download whitepapers and other material they are interested in and allowing Mimi to have an overview of people interested in this material and sends them further material (if the data subject confirms their interest).

first name, last name, e-mail address, job title, company name (if applicable)

Requesting a demo for integration 

Allows sales to communicate to customers or potential partners that contact Mimi through the contact form. 

First name, last name, email, and company role 

Customer support portal 

Allows Mimi to support customers and leads in their product integration process.

Email address 

Receiving contact requests 

Addressing enquiries. 

First name, last name, Job title, Company, Email, Phone Number

Careers 

On the website open positions at Mimi Hearing Technologies are offered.

For EU citizens and citizens of the EEA:

first, last name and email, LinkedIn profile (optional), expected salary, available date, phone (optional), location (optional), resume, passport (optional)

 

For non-EU citizens:

first, last name and email, LinkedIn profile (optional), expected salary, available date, phone (optional), location (optional), and resume, passport, visa, and work permit

2.1.2 Legal basis for website processing activities

Processing activity

(adding reference to section 2.1)

Legal base
(GDPR art. reference)

Tracking website visitors

Consent

GDPR Art. 6.1.a

Sending out newsletters

Legitimate interest 

GDPR Art 6.1.f

Sending out newsletters to website visitors

Consent, GDPR Art.6.1.a

Downloading whitepapers and other materials

Consent, GDPR Art.6.1a

Request a demo for integration 

Performance of a contract

GDPR Art 6.1.b

Customer support portal 

Legitimate interest 

GDPR Art 6.1.f

Receiving contact requests 

Legitimate Interest

GDPR Art.6.1.f

Careers 

Legitimate interest 

GDPR Art 6.1.f

2.1.3. Storage periods and deletion

If not specified otherwise, we delete your data as soon as they are no longer required, e.g. your e-mail address after unsubscribing from our newsletter. Your personal data will be deleted as soon as the consent allowed us to process it is revoked or other permissions no longer apply (e.g. if the purpose of processing this data no longer applies or it is not required for the purpose). If the data is not deleted because it is required for other and legally permissible purposes, its processing is limited to these purposes. In other words, the data is blocked and not processed for other purposes. This applies, for example, to data that must be retained for reasons of commercial or tax law or whose storage is necessary for the assertion, exercise or defense of legal claims or to protect the rights of another natural or legal person.  

To ensure the implementation of legal requirements, we have developed internal deletion processes and a deletion concept, which guarantees that personal data, for which no legal retention period exists, are deleted according to the requirements of the storage limitation pursuant to Art. 5 1 e) GDPR. For example, applications are deleted after 6 months. If you would like more information about individual storage periods, you can request this at any time at the e-mail address mentioned above.

2.1.4 Cookies on https://www.mimi.io/

We use cookies (strictly necessary cookies) to collect and store information about how our website, https://mimi.io, by understanding how visitors interact with the website, ensuring the website is functioning properly by connecting our website to our necessary social media or other platforms, advertising our products on our page, and monitoring the performance of the website overall. 

We use cookies to enable the work of our website (strictly necessary cookies) and performance (analytics) cookies. Strictly necessary cookies do not require user consent as they are always placed on your device by default. It allows us to recognize your device and store some information about your preferences or past actions. There are two main kinds of cookies: session cookies and persistent cookies. Session cookies are erased when you close your browser. Persistent cookies remain on your device for a predefined period.

However, you may manage your cookie settings in your browser settings at any time. Before placing performance cookies on your device, we will ensure the collection of your consent first.  Please keep in mind that simply disabling all cookies or all of our cookies in your browser settings may lead to certain sections or features of our Website not working. 

Cookie and Purpose

Type

Duration

_gat_gtag_UA_*

Google Analytics sets this cookie to store a unique user ID.

Analytics

1 minute

_ga

 

Google Analytics sets this cookie to track visitors, sessions, user behaviors, traffic sources, and site usage for the site’s analytics report. The cookie stores information anonymously and assigns a randomly generated number to recognise unique visitors.

 

Analytics

1 year 1 month 4 days

_ga_<container_id>

 

Google Analytics sets this cookie to store and count page views.

Analytics

1 year 1 month 4 days

_gid

 

Google Analytics sets this cookie to store anonymous information on how visitors use a website while also creating an analytics report of the website’s performance. Some of the collected data includes the number of visitors, their source, and the pages they visit anonymously.

Analytics

1 day

Wp-wpml_current_language

 

WordPress multilingual plugin sets this cookie to store the current language/language settings.

Functional 

session

Elementor

 

The website’s WordPress theme uses this cookie. It allows the website owner to implement or change the website’s content in real-time.

Necessary

never

2.1.5 Legal basis for cookies 

Processing activity

Legal base

 

available rights

Setting analytical cookies

Consent

GDPR Art. 6.1.a)

Data subject/ user to the website can consent to and  revoke consent of the cookie settings.

Setting functional cookies

Consent

GDPR Art. 6.1.a)

Data subject/ user to the website can consent to and  revoke consent of the cookie settings.

2.1.6 Third-party services

Our Website may contain links to third-party services and platforms, including those posted by our partners and affiliate companies. Although we choose our partners thoroughly and diligently, we cannot be responsible for the content, terms and conditions or privacy policies of third-party services.

When showing a video on our website to you, our website uses plugins from YouTube Youtube is operated by Google. The operator of the pages is YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA. If you visit one of our pages equipped with a YouTube plug-in, a connection to the YouTube servers will be established. The YouTube server is informed which of our pages you have visited. If you are logged into your YouTube account, you enable YouTube to assign your surfing behavior directly to your personal profile. You can prevent this by logging out of your YouTube account.

You can find more information on handling user data in YouTube’s privacy notice: https://www.google.de/intl/de/policies/privacy.

Third-party websites may contain their own cookies. We are not responsible for their usage of cookies.

3. International data transfers

Our Website and Services are hosted in the United States of America.

If you are accessing the Website and/or Services from the European Union, with laws or regulations governing personal data that differ from United States laws, please note neither EU law nor GDPR requires hosting data in the EU. Instead, what is required is that Mimi Hearing Technologies must provide “appropriate safeguards” for data that it hosts and processes on its US servers (see Art 46 of the GDPR). Mimi offers a Data Processing Addendum (DPA) to provide such adequate safeguards, which includes, where applicable, Standard Contractual Clauses implemented by Commission Implementing Decision (EU) 2021/914 of 4 June 2021 as an annex. 

For all of our clients and partners, a Data Processing Agreement or a Joint Controllership Agreement is incorporated into our Master Service Agreement. 

4. Your Rights

To maintain control of your personal data, you may exercise certain rights regarding your information. In particular, you have the right to:

  • Object to the processing of your information. If we process your information in our legitimate interests, e.g., for our marketing purposes, you can object against it. We will consider your request and, if there are no compelling interests to refuse it, stop the processing for such purposes; 
  • Access your information. You have the right to know if we process your information; obtain disclosure regarding certain aspects of the processing; and obtain a copy of the information undergoing processing.
  • Verify your information and seek its rectification. If you find that we process inaccurate or out-of-date information, you can verify the accuracy of your information and/or ask for it to be updated or corrected;
  • Restrict the processing of your information. When you contest the accuracy of your information, believe we process it unlawfully or want to object against the processing, you have the right to temporarily stop the processing of your information to check if the processing was consistent. In this case, we will not process the information for any purpose other than storing it until the circumstances of restriction cease to exist; 
  • Ask us to delete/destroy/otherwise remove your information. If we are not obliged to keep the data for legal compliance, we will remove your information upon your request; 
  • Ask us to transfer your information to another organization if we process the information based on your consent or on the necessity to perform the contract.

 

You can complete the request to exercise your right by contacting us at privacy@mimi.io

  • Lodge a complaint with a supervisory authority:
    If you believe that our use of personal information violates your rights, or if you are dissatisfied with a response you received to a request you formulated to us, you have the right to lodge a complaint with the competent data protection authority of your choice. 
  • Available authorities in Europe can be found here: https://edpb.europa.eu/about-edpb/board/members_en. Mimi Hearing Technologies is registered with the Berliner Data Protection Authority, which can be contacted here:
    Berliner Beauftragte für Datenschutz und Informationsfreiheit
    Alt-Moabit 59-61, 10555 Berlin, Germany
    Phone: +4930138890
    Email: mailbox@datenschutz-berlin.de

5. Security of Information

We take necessary and sufficient measures to protect your information from unauthorized or accidental access, destruction, modification, blocking, copying, distribution, as well as from other illegal actions of third parties. 

Internally, immediate access to the data is only allowed to our authorized employees involved in maintaining Mimi SDK, and conducting other processing activities. Those employees include our backend software developer and research employees, as well as our safety officer. Such employees keep strict confidentiality and prevent unauthorized third-party access to personal information.

6. Changes to This Notice

We may update this privacy notice from time-to-time by posting a new version. We advise you to check this page occasionally to ensure you are happy with any changes. However, we will endeavor to provide you with an announcement about any significant changes.