
Privacy Policy
Lista AG Privacy Policy
Data protection is a matter of trust, and your trust is important to us. We respect your individuality and privacy. We are also committed to ensuring the protection and lawful processing of your personal data. For this reason, we treat your personal data as confidential at all times in accordance with applicable data protection regulations.
Should any conflicts arise between this Privacy Policy and the otherwise applicable terms and conditions of Lista AG, the provisions of this Privacy Policy shall take precedence.
What is this privacy policy about?
It is important to us that you consent to the processing of your personal data. This Privacy Policy provides you with comprehensive information about our data processing methods, and you can decide whether you wish to consent to the processing of your personal data. This Privacy Policy covers both historical and future personal data. If you consent to the processing of your personal data, we will process not only the personal data collected from you in the future in accordance with this Privacy Policy, but also the personal data we have already stored. When we refer to the processing of your personal data in this Privacy Policy, we mean any handling of your personal data. This includes, for example:
– Collection
– Storage
– Management
– Use
– Transfer
– Disclosure or deletion of your personal data
We collect personal data to provide better services to our customers. We are convinced that our activities are tailored to the wishes and needs of our customers and make their daily tasks easier. Better services may include:
– Optimizing targeted ad delivery based on your interests and needs
– Personalizing customer communications so that you find offers that match your preferences and receive fewer ads overall
– Tailoring products/services to customer needs
– Simplifying processes so that you can reach your goal faster
Who processes my personal data?
We are legally required to inform you of the controller of the data collection containing your personal data. The controller of the data collection is Lista AG, Fabrikstrasse 1, CH-8586 Erlen. If you wish to exercise your rights regarding your personal data or have any questions or concerns regarding the processing of your personal data, you can contact us as follows:
Lista AG
Data Protection Officer
Fabrikstrasse 1
CH-8586 Erlen
Phone: +41 71 649 21 11
You can also write to us at info(at)lista.com or directly at dataprotection(at)lista.com.
We will endeavor to respond to your questions or concerns promptly upon receipt.
When does LISTA collect my personal data, and what kind of data does it collect?
We collect your personal data whenever we interact with you. There are many different situations in which we interact with you. For example, we collect your personal data in the following circumstances:
– You purchase our products or services through our website
– You participate in our training sessions
– You subscribe to a newsletter or receive other promotional materials about our products/services
– You participate in a contest or sweepstakes
– You participate in one of our market research campaigns or opinion surveys
– You use or communicate with us or third parties via our websites, mobile apps, or offerings on internet platforms, multimedia portals, or social networks
– You communicate with us via phone, email, voice messages, text messages (SMS), picture messages (MMS), video messages, or instant messaging
The personal data we collect is equally diverse. On the one hand, we collect personal data that you provide to us. On the other hand, we collect personal data that is automatically or manually recorded when you contact us, such as:
Personal data
– Last name and first name
– Date of birth and age
– Gender
– Residential address
– Household size
– Shopping habits
– Information on purchasing power
– Shipping address
– Billing address
– Language preferences
– Phone number(s)
– Email address(es)
– Identification numbers of your technical devices
– Information on subscribed newsletters or other advertising
– Consent to receive marketing communications
– Online customer account information (including account creation date, usernames, profile pictures)
– Interests, behavior, needs, and all related activities
– Meta/communication data (e.g., device information, IP addresses, browser data, and cookies)
Data regarding customer activities
– Contract data (including contract date, type, content, partner, term, value, and any claims asserted under the contract)
– Session data relating to visits to our websites, apps for mobile devices, or offerings on internet platforms, multimedia portals, or social networks (including duration and frequency of visits, language and country settings, information about browsers and computer operating systems, IP addresses, search terms and search results, ratings submitted)
– Location-based data when using mobile devices
– Communication via telephone, email, voice messages, text messages (SMS), picture messages (MMS), video messages, or instant messaging
Why and for what purpose does LISTA process my personal data?
We process your personal data for various purposes. These purposes can be grouped into different categories. Specifically, we may process your personal data, in whole or in part, for one or more of the following purposes:
Processing purposes related to our product/service offerings
– Provision and sale of our products/services
– Processing of orders and contracts, including sending order and shipping confirmations, delivery confirmations, delivery, and invoicing
– Organization and conduct of training sessions
– Organization and conduct of market research and opinion polls
– Verification of customer creditworthiness
Processing purposes related to customer communication
– Provision, administration, and execution of customer communication via mail and electronic means of communication
– Business communication via mail and by telephone, email, voice messages, text messages (SMS), picture messages (MMS), video messages, or instant messaging
– Analysis of the use of our services via telephone, email, voice messages, text messages (SMS), picture messages (MMS), or instant messaging, such as: type of use, frequency and duration of use, exact location of use
Processing purposes in connection with special activities and events
– Organization and conduct of contests or sweepstakes, including notification and publication of winners via our websites, mobile apps, or our offerings on internet platforms, multimedia portals, or social networks
– Organization and execution of special events such as promotional events, sponsored events, and cultural and sporting events
Processing purposes related to the analysis of customer behavior
– Optimization of locations and product offerings. This is achieved through individualized and personal, as well as anonymous and group-based, recording and evaluation of historical and current customer and purchasing behavior.
– Individualized and personal or anonymous and group-based recording and evaluation of historical and current customer and purchasing behavior when using the offerings on our websites, apps for mobile devices, or on internet platforms, multimedia portals, or social networks
– Individualized and personal or anonymous and group-based identification, classification, and analysis of current and potential customer needs and interests
– Individualized and personal or anonymous and group-based classification and analysis of customer behavior and customer potential
– Statistical analysis of customer behavior based on anonymized customer data
– Linking the personal data newly collected about you with personal data we have already collected in the past
– Linking the personal data we have collected about you with publicly available data or data acquired from third parties to improve our database and the analysis of customer behavior. The enrichment of profiles with third-party data includes, for example: data from the Federal Statistical Office, calendar data, or geodata.
Processing purposes related to direct marketing
– Simplifying processes—such as purchases or bookings—and using insights from the analysis of customer behavior to continuously improve all product and service offerings
– Avoiding unnecessary advertising by using insights from the analysis of customer behavior to enable individualized and personalized direct marketing
How and on what legal basis does LISTA process my personal data?
The protection of your personal data is very important to us. We take data protection seriously and ensure the security of your data. To this end, we comply with all applicable legal regulations, in particular the Swiss Data Protection Act (DSG) and the Ordinance to this Act (VDSG), as well as the provisions of the Telecommunications Act (FMG). Where applicable, we also comply with the provisions of the European Union’s General Data Protection Regulation (GDPR).
How is my personal data protected?
We have technical and organizational security measures in place to safeguard the security of your personal data and to protect your session data and personal data against unauthorized or unlawful processing and/or against accidental loss, alteration, disclosure, or access. However, you should always be aware that the transmission of information via the Internet and other electronic means involves certain security risks, and we cannot guarantee the security of information transmitted in this manner.
How long will my personal data be stored?
We retain your personal data for as long as we deem necessary or appropriate to comply with applicable laws, or for as long as it is necessary for the purposes for which it was collected. We will delete your personal data as soon as it is no longer needed, and in any case after the expiration of the maximum retention period required by law, as well as at your request.
What rights do I have as a data subject with regard to my personal data?
You have the right at any time to exercise your data protection rights and to obtain information about your stored personal data, to correct or supplement your personal data, to object to the processing of your personal data, or to request the deletion of your personal data. You can find our contact information in Chapter 2. We reserve the right to correspond with you electronically (in particular via email) in this regard.
Does LISTA share my personal data with third parties?
We may share your personal data for the purposes set forth in this Privacy Policy. We may process your personal data in our own interest, in particular for individualized and personalized analyses of customer behavior as well as for direct marketing activities. Within our company, employees are granted access to your personal data only to the extent necessary for the performance of their duties.
We may also share your personal data with third parties to utilize technical or organizational services that we require to fulfill the aforementioned purposes or our other business activities. If the service providers are located in countries where applicable laws do not provide a level of personal data protection comparable to Swiss law, we will ensure through contractual agreements that the relevant service providers comply with Swiss data protection standards. We may also disclose your personal data if we deem it necessary to comply with applicable laws and regulations, in connection with legal proceedings, at the request of competent courts and authorities, or due to other legal obligations, in order to protect and defend our rights or property.
Cookies, log files, tracking tools, Google Analytics
How do we use cookies?
We also use cookies on our website. These are small files that are stored on your computer or mobile device when you visit our website. We would like to provide you with comprehensive information about our use of cookies.
Why do we use cookies?
The cookies we use primarily serve to ensure the functionality of our websites—such as the shopping cart and contact features. We also use cookies to tailor our website to your preferences and make your browsing experience as convenient as possible. We also use cookies to optimize our advertising. Cookies allow us to present you with advertisements and/or specific products and services that may be of particular interest to you based on your use of our website. Our goal is to make our website as attractive as possible for you and to present you with advertisements that align with your interests.
What cookies do we use?
Most of the cookies we use are automatically deleted from your computer or mobile device at the end of the browser session (so-called session cookies). For example, we use session cookies to save your country and language preferences and your shopping cart across different pages during an internet session.
In addition, we also use temporary or permanent cookies. These remain stored on your computer or mobile device after the browser session ends. When you visit one of our web pages again, the system automatically recognizes your preferred settings and preferences. Depending on the type of cookie, these temporary or permanent cookies remain stored on your computer or mobile device for between one month and ten years and are automatically deactivated once the programmed time has elapsed. They serve to make our websites more user-friendly, effective, and secure. Thanks to these cookies, for example, you are shown information on the site that is specifically tailored to your interests. The cookies stored on your computer or mobile device may also originate from partner companies. These cookies enable our partner companies to target you with advertising that might actually interest you. Cookies from partner companies remain stored on your computer or mobile device for between one month and ten years and are automatically deactivated after the programmed time has elapsed.
What data is stored in the cookies?
No personal data is stored in the cookies we use. The cookies we use cannot be assigned to a specific individual. When a cookie is activated, it is assigned an identification number.
How can you prevent cookies from being stored?
Most web browsers automatically accept cookies. However, you can instruct your browser not to accept cookies or to ask you each time before accepting a cookie from a website you visit. You can also delete cookies from your computer or mobile device by using the corresponding function in your browser. If you decide not to accept our cookies or the cookies of our partner companies, you will not see certain information on our websites and will not be able to use some features designed to enhance your visit.
How do we use log files?
Every time you access our website, your web browser transmits certain usage data to us for technical reasons, and this data is stored in log files. This usage data includes: the date and time you accessed our website; the name of the webpage you visited; the IP address of your computer or mobile device; the address of the website from which you came to our website; the amount of data transferred; and the name and version of your browser.
Analyzing the log files helps us further improve our website offerings and make them more user-friendly, identify and resolve errors more quickly, and manage server capacities. Using the log files, we can determine, for example, at what times our website offerings are particularly popular and provide the necessary data capacity to ensure you have the best possible experience.
SSL or TLS Encryption
For security reasons and to protect the transmission of confidential content, such as orders or inquiries that you send to us as the site operator, this site uses SSL or
TLS encryption. You can recognize an encrypted connection by the fact that the address bar of the browser changes from “http://” to “https://” and by the lock icon in your browser bar. When SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.
How do we use web analytics tools?
To continuously improve and optimize our website, we use so-called tracking technologies. Web analytics tools provide us with statistics and graphs that give us insight into the use of our website. In this process, data regarding the use of a website is transmitted to the server used for this purpose. Depending on the provider of a web analytics tool, these servers may be located abroad.
Google Analytics
Based on our legitimate interests (i.e., interest in the analysis, optimization, and economic operation of our online offering within the meaning of Art. 6(1)(f) GDPR), we use Google Analytics, a web analytics service provided by Google LLC (hereinafter referred to as “Google”). Google uses cookies. The information generated by the cookie regarding users’ use of the online service is generally transmitted to a Google server in the United States and stored there. Google is certified under the Privacy Shield Agreement and thereby guarantees compliance with European data protection law.
Google will use this information on our behalf to evaluate users’ use of our online service, to compile reports on activities within this online service, and to provide us with other services related to the use of this online service and internet usage. In doing so, pseudonymous user profiles may be created from the processed data.
We use Google Analytics only with IP anonymization enabled. This means that the user’s IP address is truncated by Google within member states of the European Union or in other signatory states to the Agreement on the European Economic Area. Only in exceptional cases is the full IP address transmitted to a Google server in the United States and truncated there.
The IP address transmitted by the user’s browser is not merged with other data held by Google. Users can prevent the storage of cookies by adjusting their browser software settings; users can also prevent the collection of data generated by the cookie and related to their use of the online service by Google, as well as the processing of this data by Google, by downloading and installing the browser plugin available at the following link.
For more information on Google’s use of data, as well as options for settings and opting out, please refer to the Google Privacy Policy and the settings for the display of Google ads. Users’ personal data is deleted or anonymized after 14 months.
Google Universal Analytics
We use Google Analytics in its “Universal Analytics” configuration. “Universal Analytics” refers to a Google Analytics method in which user analysis is based on a pseudonymous user ID, thereby creating a pseudonymous user profile with information from the use of various devices (so-called “cross-device tracking”).
Target audience segmentation with Google Analytics
We use Google Analytics to display ads placed within Google’s advertising services and those of its partners only to users who have shown an interest in our online offering or who exhibit certain characteristics (e.g., interests in specific topics or products, determined based on the websites visited) that we transmit to Google (so-called “Remarketing” or “Google Analytics Audiences”). With the help of Remarketing Audiences, we also aim to ensure that our ads align with users’ potential interests.
Google Tag Manager
Google Tag Manager is a solution that allows us to manage so-called website tags via a single interface (and thus, for example, integrate Google Analytics and other Google marketing services into our online offering). Tag Manager itself (which implements the tags) does not process any personal data of users. With regard to the processing of users’ personal data, please refer to the following information regarding Google services: Terms of Service.
Google Ads and Conversion Tracking
Based on our legitimate interests (i.e., interest in the analysis, optimization, and economic operation of our online offering within the meaning of Art. 6(1)(f) GDPR), we use the services of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Google is certified under the Privacy Shield Agreement and thereby guarantees compliance with European data protection law.
We use the online marketing service Google Ads to place ads on the Google advertising network (such as in search results, in videos, on websites, etc.) so that they are displayed to users who are likely to be interested in the ads. This allows us to display ads for and within our online offering in a more targeted manner, so that users are presented only with ads that potentially match their interests. For example, if a user is shown ads for products they have shown interest in on other online platforms, this is referred to as “remarketing.” For these purposes, when our website or other websites where the Google advertising network is active are accessed, a code is executed directly by Google, and so-called (re)marketing tags (invisible graphics or codes, also known as “web beacons”) are embedded into the website. With their help, an individual cookie—that is, a small file—is stored on the user’s device (comparable technologies may also be used instead of cookies). This file records which websites the user visits, what content they are interested in, and which offers the user has clicked on, as well as technical information about the browser and operating system, referring websites, visit duration, and other details regarding the use of the online service.
In addition, we receive a unique “conversion cookie.” The information collected via this cookie helps Google generate conversion statistics for us. However, we only receive the anonymous total number of users who clicked on our ad and were redirected to a page tagged with a conversion tracking tag. We do not receive any information that could be used to personally identify users.
User data is processed pseudonymously within the Google advertising network. This means that Google does not, for example, store or process the user’s name or email address, but instead processes the relevant cookie-related data within pseudonymous user profiles. This means that, from Google’s perspective, the ads are not managed and displayed for a specifically identified person, but for the cookie holder, regardless of who that cookie holder is. This does not apply if a user has expressly permitted Google to process the data without this pseudonymization. The information collected about users is transmitted to Google and stored on Google’s servers in the United States.
For more information on Google’s use of data, as well as options for settings and opting out, please refer to Google’s Privacy Policy Google Privacy Policy and the settings for the display of Google ads.
Google DoubleClick
Based on our legitimate interests (i.e., interest in the analysis, optimization, and economic operation of our online offering within the meaning of Art. 6(1)(f) GDPR), we use the services of Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Google is certified under the Privacy Shield Agreement and thereby guarantees compliance with European data protection law. We use the online marketing service Google DoubleClick to place ads on the Google advertising network (for example, in search results, in videos, on websites, etc.). DoubleClick is characterized by the fact that ads are displayed in real time based on users’ presumed interests. This allows us to display ads for and within our online offering in a more targeted manner, so that users are presented only with ads that potentially match their interests. For example, if a user is shown ads for products they have shown interest in on other online platforms, this is referred to as remarketing. For these purposes, when our website or other websites where the Google advertising network is active are accessed, a code is executed directly by Google, and so-called (re)marketing tags (invisible graphics or code, also known as “web beacons”) are embedded into the website. With their help, an individual cookie is stored on the user’s device (comparable technologies may also be used instead of cookies). This file records which websites the user has visited, what content they are interested in, and which offers the user has clicked on, as well as technical information about the browser and operating system, referring websites, time of visit, and other details regarding the use of the online service.
The user’s IP address is also collected; however, within member states of the European Union or in other signatory states to the Agreement on the European Economic Area, it is truncated and only in exceptional cases transmitted in full to a Google server in the United States, where it is truncated. Google may also combine the aforementioned information with such information from other sources. When the user subsequently visits other websites, ads tailored to them may be displayed based on their presumed interests, using their user profile.
User data is processed pseudonymously within the Google advertising network. This means that Google does not, for example, store or process the user’s name or email address, but rather the relevant cookie-related data within pseudonymous user profiles. This means that, from Google’s perspective, the ads are not managed and displayed for a specifically identified individual, but for the cookie holder, regardless of who that cookie holder is. This does not apply if a user has expressly permitted Google to process the data without this pseudonymization. The information collected by Google Marketing Services about users is transmitted to Google and stored on Google’s servers in the United States.
For more information on Google’s use of data, as well as options for settings and opting out, please refer to the Google Privacy Policy and the settings for the display of Google ads.







