MorphoSys AG Privacy Principles
1. Protection of Personal Data
MorphoSys is in compliance with the statutory provisions for the protection of person-al data. Personal data is data such as the name, birthdate, email and postal address or telephone number that serves to identify a person (§ 3 Para 1 of the German Data Protection Act [Bundesdatenschutzgesetzes]). The collection, processing, and use of personal data is always conducted according to the current provisions of German and European law.
2. Collection of Personal Data
Generally, you can visit our website without disclosing your personal data and use the information and internet services provided without personal registration and disclo-sure of your identity. However, for certain services, such as inquiries by email or by completing forms, ordering documents, or subscriptions to press releases, we ask that you provide your name, address and/or other personal information. If we intend to use your personal data for a purpose that requires your approval, we will always explicitly ask for this approval. If you do not agree to this use of your personal data, we ask for your understanding that, in certain circumstances, you will not be permitted to use the respective service.
3. Use of Personal Data
The personal data you have provided us will only be used to furnish you with the in-formation and services requested or for other purposes for which you have given your consent or for purposes where such use is required by law (e.g., due to a court or administrative order).
4. Secrecy and Disclosure of Personal Data
MorphoSys will not share your information with third parties without your consent un-less this is required by a court or administrative order. Personal data may also be giv-en to external service providers acting on behalf of MorphoSys in order to further pro-cess the personal data in accordance with the purposes stated, such as, the provision of services, the evaluation of our website’s usability, data processing, or technical support. These service providers are contractually bound to MorphoSys to use per-sonal information for the agreed purpose only, not to disclose your personal data to other parties without consent, and to disclose your personal information only with our permission as long as legally permissible or if required by the law to other parties within the law.
5. Storage of Personal Data
MorphoSys observes the principles of data avoidance and data minimization. We store personal data only as long as necessary for the respective purposes and in ac-cordance with the statutory provisions.
6. Right of Access, Rectification, Deletion, and Revocation
You have the right to review all data relating to your person and stored with us and to correct this data if you believe it to be obsolete or incorrect. For this purpose, you need only to contact us or our Privacy Officer (see postal and email addresses be-low). We comply with requests to delete personal data in accordance with the legal retention and documentation requirements.
In addition, you are entitled to revoke your consent to use your personal data, with fu-ture effect, at any time. To do this, you need only to notify us or our Privacy Officer (see postal and email addresses below).
7. Security of Personal Data
MorphoSys uses a variety of security technologies and standardized protection mechanisms to ensure the security and confidentiality of the personal data it collects. For example, we store personal data on computer servers located in controlled facili-ties in Germany and allow only limited access. MorphoSys uses all commercially rea-sonable measures available to protect your personal data from loss, misuse, unau-thorized access, disclosure, alteration, or destruction, but cannot guarantee this due to the remaining security risks associated with the Internet.
If you send us personal data electronically by entering this information on our website, your data will be transmitted, stored, and secured on our web server using a state-of-the-art secure connection (SSL) in encrypted form.
Should you choose to correspond with us by email, you should be aware that emails are only conditionally secure and confidentiality can only be assured if appropriate encryption programs are used. Please note that when data is sent by email it is gen-erally not encrypted. By sending us emails, you confirm that you understand these risks.
Data security for the transmission of data across the Internet cannot be fully guaran-teed with the present state of technology. In some circumstances, other users may have the technical capabilities to gain unauthorized access to network security and be able to exert control over message traffic. Please take this into consideration when contacting us.
8. Use of Piwik
This website uses Piwik for the statistical analysis of visitor accesses. Piwik uses so-called "cookies", which are text files stored on your computer to help analyze how the website is used. The information generated by the cookie is stored on MorphoSys’s server in Germany. The IP address is truncated immediately after the collection and prior to its storage thus making it anonymous. The truncated IP address, time of visit, your operating system, browser version, and referrer are stored. The data collected is used solely for improving the MorphoSys web offer. You may refuse the use of cook-ies by selecting the appropriate settings on your browser software; however, we would like to point out that if you do so you may not be able to use all of the website’s features.
If you do not agree with the storage and analysis of data from your visit to the web-site, then you may object to the storage and use at any time.
Please note: If you delete your cookies, this will also delete the Piwik opt-out cookie and you may have to opt-out of the collection of anonymous statistical data again. Furthermore, the Piwik opt-out cookie is active only in the browser in which it was set.
9. Social Plugins from LinkedIn, Xing, Facebook, Google+ and Twitter
MorphoSys places so-called "social plug-ins" of the social networks LinkedIn, Xing, Facebook, Google+ and Twitter (hereinafter the "Service Providers") on its website. Plug-ins can be recognized from the fact that they are marked with the corresponding logo of each network.
In certain circumstances, personal data is sent to the service provider of the respec-tive social network and used by this service provider via plug-ins. We prevent the un-known and unintentional collection and transmission of data to the service provider through a so-called "two-click" solution: This means that in order to protect your per-sonal data, the plug-ins on our website are turned off by default. To activate a desired plug-in, you must first click on the appropriate button. The collection and transfer of information to a service provider can only be triggered through activation of the plug-in. A second click allows you to use the plug-in button e.g., in order to draw the atten-tion of social networks or other users to MorphoSys. MorphoSys does not collect any personal data by means of plug-ins or their use.
Plug-ins set up a direct connection to the respective service provider. The respective service provider becomes aware of the visit to the site. If you are simultaneously logged on to a social network, the service provider may identify you as a visitor to a specific page and assign it to your account on the social network.
If you do not agree to such a transfer, you must log out of your account on the re-spective service provider before visiting our website. Even if you are not a member of a social network, it is still possible that the service provider will learn of your IP ad-dress and store it after activation of the plug-ins.
We have no influence on the scope and content of the data collected by the providers through their services. For more information, please refer to the privacy policies of LinkedIn Inc., Xing AG, Facebook Inc., Google Inc. and Twitter Inc. which are availa-ble on their websites. There you may find other options for protecting your privacy within the respective social network.
10. Links to Other Websites
11. Contact Information
If you have any questions or grievances regarding compliance with these privacy principles or if you have any comments or suggestions for their improvement, please contact us directly at the address below and provide us with sufficient information for your identification.
Telephone: +49 (89) 899 27-0
Fax: +49 (89) 899 27-222