enso is an app (hereinafter "enso" or also "service") for the Slack collaboration software produced and distributed by denkwerk GmbH.
denkwerk, the protection of privacy and also the correct handling of personal data is important. Therefore, the service is designed in such a way that enso only accesses such data that are necessary for the provision of the service. This also means that through your use of enso, no data is collected and processed which is used for other purposes of denkwerk GmbH, such as marketing.
With this data protection information, we would like to inform you about the type, scope and purpose of processing personal data when using enso.
For the first time with your call to enso on the Slack app installation page, Slack will transmit your workspace-specific User ID to the service. The knowledge of this User-ID is necessary to establish the Slack channel for the contact between enso and you as a user of the app. In such cases the processing is understood as the fulfillment of so-called contractual or pre-contractual relationships (Art. 6 para. (1) lit. b DSGVO) or serves the legitimate interest to answer your request (Art. 6 para. (1) lit. f DSGVO).
With your agreement to the terms of use and data protection conditions of enso, you then formally allow us to use your workspace-specific user ID to provide the service. This ID is the only information we need from Slack to make the service available to you. We do not collect any other personal information about you from Slack.
Furthermore, all other data resulting from your use of Slack is not visible to us, such as all your messages in your chats and channels outside of the channel for enso (see below about Dialogflow).
enso does not display advertising and does not pass on any data to advertisers or other providers with commercial interests. No data will be passed on to third parties for any other purpose than the functional provision of the service itself. For the functional provision of the service we work together with the service providers Heroku and Dialogflow.
Heroku
Heroku is our web hosting and server provider to provide the service. Besides the source code of the service, the database with the users is stored there. The amount of data stored there is limited to the minimum we consider necessary for the operation and maintenance of enso. This includes the following user-specific data: The workspace ID, the workspace-specific user ID, the time zone, the date of registration for the service and the date of the last scheduled message to the user. Further user-specific data is not stored there. For additional security, this data is also stored encrypted by Heroku.
Our contractual agreement with Heroku is based on the company's publicly available data protection conditions. Heroku is headquartered in the USA and is certified under the EU-USA privacy shield. If you would like more information about Heroku and its services and privacy policy, please visit https://www.heroku.com/.
Dialogue Flow
Dialogflow is our provider for speech recognition. Messages transmitted by you in chat with enso are encrypted by SSL and forwarded to Dialogflow. The message is not linked to you or your profile and is not saved at denkwerk. Dialogflow processes your message for the purpose of informing us of the intention behind your message, which is necessary for our reply to your message. Since you alone are responsible for the information you send to enso in your messages, we ask you to bear this data transfer in mind when entering it.
Our contractual agreement with Dialogflow is based on the publicly available data protection conditions of the company. Dialogflow is a company of the Google Group, has its headquarters in the USA and is certified under the EU-USA data protection shield. If you would like more detailed information about Dialogflow and its services as well as its privacy policy, you can find this information at: https://dialogflow.com/terms.
The terms used in this data protection notice, such as "processing" or "controller", correspond to the definitions in Article 4 of the basic data protection regulation ("DPA"), which you can read for example on the website of the European Commission.
The legal basis here is Article 6 paragraph (1) lit. b DSGVO, whereby we then expressly request your consent as a data subject.
Individual or cumulatively coinciding purposes of processing and the applicable legal bases
Provision of our online offers, maintenance and improvement of functions and content (cf. Art. 6 Para. (1) lit. b or lit. f DSGVO)
Provision of contractual or pre-contractual services, service and customer care (cf. Art. 6 para. (1) lit. b DSGVO)
Requested transmission of information and communications (cf. Art. 6 para. (1) DPA)
Your rights
Right to information Art. 15 DSGVO
Right of rectification Art. 16 DSGVO
Right of objection Art. 21 DSGVO
Right to erasure and restriction of data processing Art. 17 DSGVO
Right to be forgotten Art. 17 DSGVO
Right to data transferability Art. 20
Right of appeal to supervisory authorities Art. 77 DSGVO
Right to withdraw consent Art. 7 para. 3 DSGVO
Right of objection or revocation
You can object to future processing of data concerning him/her at any time in accordance with Art. 21 DSGVO. In addition, every data subject has the right to revoke a consent once granted in accordance with Art. 7 para. 3 DSGVO with effect for the future.
Deletion of the collected data
Data processed by us can be deleted at any time in accordance with article 17. enso offers in its service the immediate possibility to do so by entering the term "settings" in the chat history.
Update of the data protection information
If necessary due to legal changes or as soon as changes in the data processing carried out by us make this necessary, we will adapt these instructions. Therefore denkwerk asks you to inform yourself regularly about the content. As soon as the changes make it necessary for you to cooperate (e.g. consent) or any other individual notification, we will of course inform you immediately.
Contact
Of course, you are free to contact us via our data protection officer at datenschutzbeauftragter[at]denkwerk.com or otherwise to contact denkwerk at enso[at]denkwerk.com in order to find out details or to object to the data processing of your own data for the future. denkwerk will then comply with this without delay, whereby the objection or the request for deletion is comprehensibly limited by any statutory storage or other obligations.
Responsible (iSd Art. 4 Nr. 7 DSGVO)
denkwerk GmbH
Vogelsanger Str. 66
50823 Köln
E-Mail: enso[at]denkwerk.com
Imprint: https://www.denkwerk.com/de/impressum
Data Protection Officer (DSB)
Address: c/o denkwerk GmbH
E-Mail: datenschutzbeauftragter[at]denkwerk.com
(Status of this information: March 2020)