Privacy Policy
Privacy Notice Pursuant to Art. 13 GDPR
Controlling Entity
Junge Deutsche Philharmonie e.V.
Schwedlerstraße 2-4
60314 Frankfurt am Main
069 9434 3050
info@jdph.de
If you have any questions regarding data protection, please contact our Data Protection Officer, Patrick Itzel, at Vogelsbergstr. 8a, 63505 Langenselbold, via email at dsb@pic-systeme.de or at the mailing address listed above.
Data Processing on Our Website and Other Online Services
Web Analytics with Plausible
We use the web analytics service Plausible (Plausible Insights OÜ, Tartu, Estonia) to statistically analyze traffic to our website. Plausible does not set cookies and does not store IP addresses or any other data that can be linked to individual visitors; there is no cross-device or cross-page tracking. Plausible’s servers are located in the EU. Since no personal data within the meaning of the GDPR is processed, consent via a cookie banner is not required for the use of Plausible.
Content Management System
We use the content management system Sanity AS, Oslo, Norway, to manage the content on our website. When you visit our website, content (text, images) is delivered via Sanity; this may establish a connection to the provider’s servers, resulting in the processing of technical data (including the IP address).
Subscription to Our Newsletter
If you have subscribed to the newsletter on our website, we will use your email address to send you the newsletter on a regular basis and provide you with interesting information about the association. The legal basis for sending the newsletter is your consent (Article 6(1)(a) of the GDPR). You may revoke your consent at any time to stop receiving the newsletter. To do so, click “unsubscribe” at the bottom of the newsletter email. Alternatively, you can contact us at info@jdph.de or by mail. We use the service provided by Mailjet SAS to send the newsletter. The email address you provided for the newsletter will be deleted as soon as you withdraw your consent to receive the newsletter, unless that email address is also used for communication between the association and you other than for sending the newsletter.
Forms
The forms on our website are technically processed through the Formspark service, operated by Trampoline Software SRL, Belgium. The data you enter in the respective form is transmitted to us via this service for the purpose of processing your inquiry. Depending on the purpose of the form, the legal basis is either the performance or initiation of a contract (Art. 6(1)(b) GDPR) or our legitimate interest in processing your inquiry (Art. 6(1)(f) GDPR).
Data Processing in Connection with Our Association's Activities
Member/Participant Management
Personal member data and participant data (title, first name, last name, instrument, date of birth, mailing address, university email address, bank account information, and, if applicable, identification details) are processed by the respective officers of our association solely for the purpose of fulfilling the duties assigned to them. Specifically, this means: If the Board of Directors, committees, and the administrative office require member data to carry out their duties, they may access all member data necessary for this purpose. This includes, in particular, internal tasks: organizing and conducting events, auditions, meetings, and committee work (e.g., participant lists, contact information, application documents); concert planning and execution: Organizing travel and accommodations for orchestra members, including the disclosure of the necessary personal data (name, date of birth if applicable, ID details) to hotels, bus companies, and airlines for booking purposes; Collaboration with event organizers: Disclosure of performers’ names for publication in program booklets; Informing members: Sending internal communications, invitations, and other organizational information.
The purpose of processing member data is to pursue the association’s objectives and to manage the association. The legal basis is association membership (Article 6(1)(b) of the GDPR). The purpose of processing personal data of individuals who are not association members but participate in events as contributors (e.g., guest musicians, soloists, conductors) is to organize and carry out the respective event. The legal basis is the performance of the contract concluded with the participating individual, an agency, or an event organizer (Article 6(1)(b) of the GDPR). To the extent that no contractual basis exists, processing is carried out on the basis of the legitimate interest in conducting the event (Article 6(1)(f) of the GDPR).
Members’ personal data is stored for the duration of their membership. Upon termination of membership, general membership data is deleted, provided that no statutory retention requirement precludes this. Data contained in invoices, payment receipts, or other tax-related documents is stored separately for six or ten years after the end of the respective calendar year, in accordance with Section 147 of the German Fiscal Code, and is deleted only after that period has elapsed.
The first names, last names, instruments, and places of residence of former members are stored beyond the end of their membership for alumni relations, for the association’s archives, and for documentation in program booklets, based on the association’s legitimate interest in its historical documentation and in maintaining contact with former orchestra members (Art. 6(1)(f) GDPR). Data subjects may object to this processing at any time (Art. 21 GDPR); in this case, the relevant data will be deleted unless there are overriding legitimate grounds for retaining it.
Freunde der Jungen Deutschen Philharmonie e.V.
In addition, the following applies with regard to the independent association “Freunde der Jungen Deutschen Philharmonie e.V.”: The treasurer processes the membership data required for the collection of membership dues and the membership data relevant to the audit. This includes first name, last name, mailing address, and bank account Information with payment details, as well as, if applicable, access to the direct debit authorization including the signature, provided the member has granted the association a direct debit mandate.
Photos
Photos of our orchestra’s activities are published for promotional purposes on our website, on our social media profiles (Facebook, Instagram, LinkedIn, YouTube), and in printed materials such as flyers, season announcements, and our magazine “Taktgeber.”
The legal basis for publishing the following photos of adults is our association’s legitimate interest, as described below, pursuant to Article 6(1)(f) of the GDPR:
Group and individual photos based on our legitimate interest in providing information about the orchestra’s activities and its members,
Photos related to the performance or the event based on our legitimate interest in reporting on the event,
Photos of the audience that attended the event, or photos in which individuals appear only as background figures, based on our legitimate interest in reporting on the event and its success.
You have the right to object to the use of such a photo in which you appear, in accordance with Article 21(1) of the GDPR. The association will assess whether there are compelling legitimate grounds for the processing that override your interests, rights, and freedoms. If not, the photo will be removed from the website and our social media profiles. For materials that have already been printed (flyers, magazines, season announcements), an objection can only be taken into account for future publications; we will not recall copies that have already been distributed.
We publish other photos in which an adult is the focal point or in which only that person was specifically photographed—both online and in print—only with that person’s consent (Art. 6(1)(a) GDPR). This consent may be revoked at any time with future effect.
You have the right to object to the use of such a photo in which you appear, in accordance with Article 21(1) of the GDPR. The orchestra will assess whether there are compelling legitimate grounds for the processing that override your interests, rights, and freedoms. If not, the photo in question will be deleted.
We will publish other photos in which an adult (a member or a member of the audience) is the focal point or in which only that person was specifically photographed only with that person’s consent (Article 6(1)(a) of the GDPR). This consent may be revoked at any time with future effect.
Disclosure of Data to Recipients Outside the Association
Our association shares member data with the following recipients:
Service providers such as hotels, bus companies, and airlines for concert planning and execution; concert promoters for the organizational management of events and their promotion.
Links to our social media profiles
On our website, we provide hyperlinks to our profiles on Facebook, Instagram, LinkedIn, and YouTube. When you click on one of these links, you will leave our website; we do not transmit any personal data to the respective platform. The privacy policies of the respective providers apply to the use of the linked platforms.
Operation of Our Own Profiles on Facebook, Instagram, LinkedIn, and YouTube
We operate our own profiles on Facebook, Instagram, LinkedIn, and YouTube to provide information about our orchestra’s activities, concerts, and projects. When you visit one of these profiles, the respective platform operator processes personal data (e.g., usage and interaction data) under its own responsibility. We may share responsibility with the respective platform operator for the data processed as part of the statistical functions provided by the platform (e.g., Page Insights on Facebook/Instagram). The legal basis for our part in this processing is our legitimate interest in public relations and communication with our target audience (Art. 6(1)(f) GDPR).
For more information on the processing of your data by the respective platform and on your rights as a data subject, please refer to the providers’ privacy policies:
Meta Platforms Ireland Limited (Facebook, Instagram)
LinkedIn Ireland Unlimited Company
Google Ireland Limited (YouTube)
Embedded Videos
We embed YouTube videos on certain pages of our website. When you visit such a page, a connection may be established to servers operated by Google Ireland Limited, which may result in the transmission of technical data (including your IP address)—regardless of whether you actually play the video.
On certain pages of our website (e.g., the homepage), we embed videos using the Mux service, operated by Mux, Inc., San Francisco, USA. This enables, in particular, the automatic and repeated playback (loop) of videos, which would not be technically feasible with a standard YouTube embed. When you visit such a page, a connection may be established to servers operated by Mux, Inc. in the U.S., which may result in the transmission of technical data (including your IP address). Mux, Inc. Data is transferred based on the European Commission’s Standard Contractual Clauses to ensure an adequate level of data protection.
Rights of Affected Individuals
When we process your personal data, you have the following rights as a data subject:
- the right to access the data we process and to receive a copy of it,
- the right to rectification if we process incorrect data about you,
- the right to erasure, unless exceptions apply that allow us to continue storing the data—such as retention requirements or statutes of limitations
- the right to restrict processing,
- the right to withdraw your consent to data processing at any time,
- the right to object to processing based on public interest or legitimate interest,
- the right to data portability,
- the right to file a complaint with a data protection supervisory authority if you believe we are not processing your data properly. Our association falls under the jurisdiction of the Hessian Commissioner for Data Protection and Freedom of Information. However, if you are located in another federal state or outside of Germany, you may also contact the data protection authority in your respective location.
As of July 8, 2026 Maximilian v. Aulock
Reviewed by Data Protection Officer Patrick Itzel on July 6, 2026