Data Protection
The EU General Data Protection Regulation (GDPR) aims to protect personal data, ensure a uniform level of protection across Europe, and establish legal certainty. The Fritz Haber Institute and the Max Planck Society (MPG) are required to comply with these regulations.
What is it about?
A key component of the regulation is the strict documentation and accountability requirements. All employees processing personal data must comply with these principles. For instance, data subjects must be informed about the purpose of data processing and the retention periods at the time of data collection. All data processing activities must be documented in a central register.
What has been done so far?
PP&B and the administration are preparing the implementation at the FHI. The following procedures have already been updated to comply with the GDPR:
- Application process
- Access control
- Time tracking
- Guesthouse management
Additionally, the privacy policy on the central FHI website has been updated.
Important Notices
Please familiarize yourself with the GDPR requirements. If you receive any requests for information regarding personal data, immediately notify the IT management or the data protection coordinator. Do not disclose any information to third parties without prior consultation.
E-Mail Signature Templates
Basic Version:
Das FHI verarbeitet, speichert und löscht Daten im Rahmen seiner Geschäftstätigkeit gemäß der Datenschutz-Grundverordnung (DSGVO) / General Data Protection Regulation (GDPR) der Europäischen Union.
Extended Version:
This e-mail (including any attachments) may contain confidential and/or privileged information. It may be read, copied, and used only by its intended recipient. If you have received it in error, please contact the sender immediately and destroy this e-mail. Any unauthorised copying, disclosure, or distribution of this e-mail is strictly forbidden.
Privacy Policy for Websites
PP&B has created a central privacy policy for all services maintained by PP&B (such as the main website, wiki, email services, mailing lists, and Indico). Administrators of independent websites or services (e.g., decentralized WordPress instances operated by research groups) must link to a custom privacy policy. You can use an online generator to create one based on the plugins you have installed.