Imprint

Contact address
Gisler Sport GmbH
Poststrasse 178
7050 Arosa
Switzerland

Email:
Phone: +41 81 378 77 87

Authorised representatives
Max Gisler-Gamma
Annamarie Gisler-Gamma
Mirjam Gisler
Marco Gisler

Commercial Register entry
Registered company name: Gisler Sport GmbH
Commercial Register number: CH-350.4.004.921-7

VAT number
CHE-147.814.217

Disclaimer

The author gives no warranty as to the correctness, accuracy, timeliness, reliability or completeness of the information provided.

Liability claims against the author for material or non-material damage resulting from access to, use or non-use of the published information, misuse of the connection or technical faults are excluded.

All offers are non-binding. The author expressly reserves the right to amend, supplement or delete parts of the website or the entire offering, or to discontinue publication temporarily or permanently, without prior notice.

Disclaimer for links

References and links to third-party websites are outside our area of responsibility. We accept no responsibility for such websites. Access to and use of these websites are at the user’s own risk.

Copyright

Copyright and all other rights relating to content, images, photographs and other files on this website belong exclusively to Gisler Sport GmbH or to the rights holders expressly named. The prior written consent of the respective rights holder must be obtained before any element is reproduced.

Privacy Policy

As at 19 August 2026

1. Data Controller

The controller responsible for processing personal data in connection with this website is:

Gisler Sport GmbH
Poststrasse 178
7050 Arosa
Switzerland

Phone: +41 81 378 77 87
Email:
Website: https://www.gislersport.ch/

2. Scope and Legal Bases

This Privacy Policy explains how Gisler Sport GmbH processes personal data when you visit our website, contact us or use our online services.

The Swiss Federal Act on Data Protection applies in particular. To the extent that the European Union General Data Protection Regulation applies, we base processing—depending on its specific purpose—in particular on:

  • your consent;
  • taking steps prior to entering into a contract or performing a contract;
  • legal obligations;
  • legitimate interests, including the secure and efficient operation of our website, communication with customers and the prevention of misuse.

Personal data means any information relating to an identified or identifiable natural person.

3. General Purposes of Processing

We process personal data in particular to:

  • provide this website securely and reliably;
  • respond to enquiries;
  • process reservations, rental agreements, sales and services;
  • analyse the use of our website statistically;
  • improve our services and communications;
  • prevent misuse, spam and technical attacks;
  • comply with legal obligations;
  • establish, exercise or defend legal claims.

We process only the personal data required for the relevant purpose.

4. Hosting and Server Logs

Our website is hosted by NovaTrend Services GmbH, Bahnhofstrasse 18, 6340 Baar, Switzerland. NovaTrend operates its hosting infrastructure in Swiss data centres.

When our website is accessed, technically necessary connection data is processed. This may include in particular:

  • IP address;
  • date and time of access;
  • page or file accessed;
  • amount of data transferred;
  • access status;
  • previously visited page;
  • browser type and browser version;
  • operating system;
  • hostname of the accessing device.

This data is required to deliver the website, ensure technical security, identify faults and prevent misuse.

Server logs are retained only for as long as they are required for these purposes, for security investigations or to comply with legal obligations.

Further information: NovaTrend Services GmbH

5. Encrypted Transmission

Our website uses an encrypted HTTPS connection. This protects data transmitted between your browser and our website against interception by third parties.

Nevertheless, completely risk-free data transmission over the internet cannot be guaranteed.

6. Cookies and Consent Management with Complianz

We use Complianz as our consent management system. Complianz allows you to accept or reject certain types of data processing.

The consent system distinguishes between:

  • Necessary functions: for operating the website, ensuring security and storing your selection;
  • Statistics: in particular Google Analytics 4;
  • Marketing: in particular the Meta Browser Pixel.

You can:

  • accept all optional categories;
  • reject all optional categories;
  • make an individual selection;
  • change or withdraw your selection later.

Your selection is stored using technically necessary cookies or browser storage technologies so that it can be taken into account during subsequent visits.

You can reopen your selection at any time using the “Privacy settings” function. A withdrawal applies for the future. It does not retroactively affect processing that has already taken place.

Google Maps, Google reCAPTCHA, Trustindex and Yumpu are currently not linked to your Complianz selection. These services are loaded directly on the pages or within the areas described below.

7. Contact Form and Email Communication

If you use our contact form or contact us by email, we process in particular:

  • first and last name;
  • email address;
  • telephone number, if provided;
  • the content of your message;
  • other information you provide voluntarily;
  • technical information required for transmission and protection against misuse.

We use this data to process your enquiry, communicate with you and, where applicable, take steps prior to entering into or performing a contract.

The forms are processed using Contact Form 7. Contact-form messages are sent via Post SMTP directly through our Microsoft 365 / Exchange Online infrastructure. Microsoft processes the data required for email transmission, including sender and recipient details, transmission metadata and the complete message content. Messages are received in our Microsoft 365 mailbox and processed there as part of our business communications.

New form messages are not additionally stored by Flamingo in the WordPress database. Post SMTP email logging is also disabled. New complete email content and SMTP transcripts are therefore not stored in WordPress as Post SMTP logs.

Historical form and email-log data from earlier periods of operation may still exist. This data is no longer supplemented and is retained only for as long as required for its original purpose, the traceability of communications, legal obligations or the establishment, exercise or defence of legal claims.

We use Microsoft 365 for email services. The Microsoft entity generally responsible for users in Switzerland is:

Microsoft Ireland Operations Limited
One Microsoft Place
South County Business Park
Leopardstown
Dublin 18
Ireland

Further information: Microsoft Privacy Statement

8. Google reCAPTCHA v3

We use Google reCAPTCHA v3 to protect our website and forms against spam, automated submissions and abusive access.

reCAPTCHA v3 analyses technical and behavioural signals and uses them to produce a risk assessment. In particular, IP addresses, browser and device information, pages accessed, referrer data, cookies and information about interactions with the website may be transferred to Google.

reCAPTCHA is technically loaded when our website is accessed. The service is currently not linked to Complianz consent.

The provider generally responsible for users in Switzerland is:

Google Ireland Limited
Gordon House
Barrow Street
Dublin 4
Ireland

Processing by other Google entities, particularly in the United States, cannot be ruled out.

The service is used to protect our website, communications and systems against spam, bots and misuse.

Further information:

9. Google Analytics 4

We use Google Analytics 4 to understand how our website is used and to improve its content and user experience.

Measurement ID:

G-X8VGP1P277

Google Analytics is loaded only after you have consented to the Statistics category in the consent banner. Without this consent, normal GA4 tracking does not take place. After consent has been withdrawn, no new Analytics events are transmitted.

Following your consent, Google Analytics may process in particular:

  • pages visited and page titles;
  • time and duration of visits;
  • interactions and events;
  • approximate geographical location;
  • browser, device and operating-system information;
  • referrer and campaign information;
  • randomly generated identifiers used to distinguish users and sessions.

Google uses first-party cookies such as _ga, among other technologies, to distinguish users and sessions. Google states that IP addresses are used during collection to determine approximate location information and are discarded before being permanently stored in Analytics systems.

The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Processing by Google LLC or other Google entities in the United States and other countries may take place.

Processed data is retained in accordance with the settings configured in Google Analytics and Google’s applicable policies. We delete or anonymise data once it is no longer required for our analytical purposes, unless legal obligations require otherwise.

You can change or withdraw your consent at any time through the privacy settings.

Further information:

10. Meta Browser Pixel

After you have consented to the Marketing category, we use the Meta Browser Pixel with the following Pixel ID:

1104066960739135

The pixel helps us analyse visits and certain interactions on our website and measure the effectiveness of our communications and advertising.

Following your consent, the following data may in particular be transferred to Meta:

  • pages accessed;
  • time and type of interactions;
  • browser and device information;
  • IP address;
  • referrer and URL information;
  • cookie and device identifiers;
  • event data triggered through the browser.

Without marketing consent, the browser pixel and the associated noscript element are blocked. After consent has been withdrawn, no new browser marketing events are transmitted.

The Meta Conversions API is disabled. There is therefore no additional server-side transmission of website or form events through the Meta Conversions API.

The recipient is generally:

Meta Platforms Ireland Limited
ATTN: Privacy Operations
Merrion Road
Dublin 4
D04 X2K5
Ireland

Meta may also process data in the United States and other countries and combine it with information already held. We have only limited influence over Meta’s subsequent processing.

Further information:

11. Google Maps

We use Google Maps on location, contact and other pages to display maps, locations and directions. The Rental Widget also contains maps provided by Google.

Maps are loaded directly from Google when the relevant area is accessed. Google Maps is currently not linked to Complianz consent.

When a map is loaded, the following data may in particular be transferred to Google:

  • IP address;
  • browser and device information;
  • page accessed;
  • referrer data;
  • location and interaction data;
  • existing Google cookies or account information, if you are signed in to Google.

The provider is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Processing by other Google entities, particularly in the United States, may take place.

Further information: Google Privacy Policy

12. Trustindex and External Reviews

We display customer reviews on selected service pages using Trustindex.

The Trustindex loader is loaded directly when the relevant page is accessed and is currently not linked to Complianz consent. This may create connections to Trustindex and to the platforms from which reviews, profile information or profile images are obtained.

The following data may in particular be transferred:

  • IP address;
  • browser and device information;
  • page accessed;
  • time of access;
  • referrer data;
  • technical usage data.

The provider is:

Trustindex Ltd
Nyari Pal utca 15
2724 Ujlengyel
Hungary

Further information: Trustindex Privacy Policy

13. Yumpu

A digital magazine provided by Yumpu is embedded on our publicly accessible anniversary page.

The magazine is loaded directly from Yumpu when the relevant area of the page is accessed. Yumpu is currently not linked to Complianz consent.

The following data may in particular be transferred to Yumpu:

  • IP address;
  • browser and device information;
  • page accessed;
  • referrer data;
  • time and duration of use;
  • interactions with the embedded magazine;
  • cookies or comparable identifiers used by Yumpu.

The provider is:

i-Magazine AG
Gewerbestrasse 3
9444 Diepoldsau
Switzerland

Further information: Yumpu Privacy Policy

14. Online Reservations and EasyRent

For online reservations of rental equipment, we use EasyRent / EasyRes, an external booking system provided by WINTERSTEIGER.

EasyRent is opened or incorporated into the booking process following a corresponding action by the user. The personal, contact, reservation, rental and, where applicable, payment data that you enter during the booking process, or that is technically required to process it, is processed.

The data is used in particular to:

  • record the requested equipment and rental period;
  • specify the collection location;
  • display availability and prices;
  • process the reservation and, where applicable, payment;
  • prepare the equipment;
  • enable enquiries and the administration of the contractual relationship.

WINTERSTEIGER provides documentation governing the processing of personal data for EasyRent. The publicly available EasyRent data processing agreement identifies WINTERSTEIGER Sports GmbH as the processor. The documentation provides for processing within the European Union or European Economic Area and identifies MICROLAB GmbH in Austria as the hosting sub-processor.

The consent selection made through Complianz on our WordPress website is not transferred to EasyRent. The external EasyRent system may use its own Google and Meta technologies and other technical services. The information and settings provided within the EasyRent system apply to that processing.

TWINT, PayPal, Mastercard and Visa are currently displayed as payment methods during the booking process. Depending on the payment method selected, the data required to process the payment is transferred to the payment service provider used in the relevant payment process. The information provided during that payment process also applies to the processing of payment data.

Further information: WINTERSTEIGER Privacy Policy

15. External Links and Social Networks

Our website may contain links to external websites and social networks. A link alone does not constitute the embedding of an external service.

You leave our website only when you open such a link. From that point onwards, the relevant provider processes data under its own responsibility and its privacy policy applies.

16. Recipients and Processors

We may disclose personal data to service providers where this is required to operate the website, communicate with you, perform contracts or fulfil other purposes described in this Privacy Policy.

These recipients include in particular:

  • hosting and IT service providers;
  • email and communication service providers;
  • web analytics and marketing providers;
  • security and spam-protection services;
  • map, review and media platforms;
  • booking and payment service providers;
  • external specialists such as fiduciaries, legal advisers or IT support providers;
  • public authorities, courts or other bodies where disclosure is legally required.

Service providers receive only the data required to perform their respective tasks. Where they process data on our behalf, they are contractually required to process it securely and only for the specified purposes.

We do not sell personal data.

17. International Disclosure and Transfer of Personal Data

Some of the service providers we use are located in Switzerland or the European Economic Area. In the case of globally active providers such as Google, Meta and Microsoft, processing may also take place in the United States or other countries.

Personal data is disclosed or transferred abroad only where the applicable legal requirements are met. This may be the case in particular where:

  • the recipient country is recognised as providing an adequate level of data protection;
  • appropriate contractual safeguards, in particular recognised standard data protection clauses, are in place;
  • a statutory exception applies;
  • the disclosure or transfer is required to perform a contract;
  • explicit consent has been given.

Despite contractual and technical safeguards, where data is processed in certain countries it cannot be completely ruled out that foreign authorities may access the data within the scope of their legal powers.

18. Retention and Deletion

We retain personal data only for as long as it is:

  • required for the relevant processing purpose;
  • required to perform a contract;
  • prescribed by statutory retention obligations;
  • necessary to establish, exercise or defend legal claims;
  • required for security or evidentiary purposes.

The data is subsequently deleted or anonymised unless legal or technical reasons prevent this.

Data contained in backup copies may remain available until the relevant backup is overwritten as part of the regular backup cycle. Such data is used only for restoration following technical or security-related incidents.

Historical form and email-log data is no longer supplemented and will be deleted once its purpose no longer applies or the applicable retention obligations have expired.

19. Data Security

We implement appropriate technical and organisational measures to protect personal data against loss, misuse, unauthorised access, alteration or disclosure.

These measures include in particular:

  • encrypted data transmission;
  • access restrictions;
  • user and authorisation concepts;
  • security updates;
  • data backups;
  • logging of security-relevant events;
  • appropriate organisational policies.

Despite these measures, absolute security cannot be guaranteed.

20. Rights of Data Subjects

Under applicable data protection law, you have in particular the right to:

  • request confirmation as to whether we process personal data relating to you and obtain information about that data;
  • have inaccurate personal data corrected;
  • request the deletion of personal data, unless legal obligations or overriding reasons require otherwise;
  • withdraw consent with effect for the future;
  • object to processing in certain circumstances;
  • request that certain data be provided or transferred, where provided for by law;
  • exercise any other statutory rights to restriction or lodge a complaint.

To process a request, we may require appropriate proof of identity. We will request only the information necessary to verify your identity securely.

Please send enquiries to:

Gisler Sport GmbH
Poststrasse 178
7050 Arosa
Switzerland
Email:

You may also contact the Swiss Federal Data Protection and Information Commissioner:

Swiss Federal Data Protection and Information Commissioner – FDPIC

21. Automated Individual Decision-Making

In connection with this website, we do not make decisions based solely on automated processing that produce legal effects concerning data subjects or affect them in a similarly significant manner.

Third-party providers such as Google or Meta may use data for analysis, personalisation or profiling in accordance with their own policies.

22. Changes to This Privacy Policy

We may update this Privacy Policy if our processing activities, the services used or legal requirements change.

The version published on this website at the relevant time is authoritative.