Privacy Policy
This privacy policy describes how this website manages the personal data of its users, in accordance with Regulation (EU) 2016/679 (GDPR) and applicable data protection legislation.
1. Data Controller
The Data Controller is the owner of this website. For any enquiries regarding the processing of personal data, users may contact the Data Controller using the details provided on the contact page.
2. Types of Data Collected
Personal data collected by this website includes:
- Browsing data: IP address, browser type, operating system, pages visited, access times and other information automatically transmitted by the HTTP protocol.
- Voluntarily provided data: name, surname, email address and other information submitted by the user through contact forms, registration or newsletter subscription.
- Cookies and tracking technologies: as described in our Cookie Policy.
3. Purposes of Processing
Personal data is processed for the following purposes:
- Provision of the service and management of user requests.
- Compliance with legal and regulatory obligations.
- Anonymous statistical analysis to improve the service.
- Sending commercial and promotional communications, subject to the user's explicit consent.
4. Legal Basis for Processing
Data processing is based on:
- Consent of the data subject (Art. 6(1)(a) GDPR).
- Performance of a contract to which the data subject is party (Art. 6(1)(b)).
- Legitimate interest of the Data Controller (Art. 6(1)(f)).
- Legal obligation (Art. 6(1)(c)).
5. Methods of Processing
Personal data is processed using electronic and/or paper-based tools, with procedures strictly related to the stated purposes and in a manner that ensures data security and confidentiality, in compliance with the appropriate technical and organisational measures required by the GDPR.
6. Data Retention
Personal data is retained for the time strictly necessary to fulfil the purposes for which it was collected, in compliance with applicable legal requirements. At the end of the retention period, the data will be deleted or anonymised.
7. Data Disclosure and Communication
Personal data is not publicly disclosed. It may be communicated to:
- Entities that require access to the data for purposes related to their relationship with the Data Controller (technical service providers, hosting, email services).
- Competent authorities, where required by law.
8. International Data Transfers
Personal data may be transferred to countries outside the European Union only where adequate safeguards are in place in accordance with Articles 44-49 of the GDPR.
9. Data Subject Rights
Under Articles 15-22 of the GDPR, users have the right to:
- Access their personal data.
- Request rectification or erasure of data.
- Restrict or object to processing.
- Request data portability.
- Withdraw consent at any time.
- Lodge a complaint with the relevant data protection authority.
To exercise these rights, users may contact the Data Controller using the details provided on the contact page.
10. Changes to This Policy
The Data Controller reserves the right to amend this privacy policy at any time. Changes will be published on this page with the date of the latest update.