PRIVACY NOTICE AND COOKIES

 

In compliance with the obligations arising from the national (Legislative Decree No. 196 of 30 June 2003, Code for the protection of personal data) and Community (European Regulation for the protection of personal data No. 679/2016, GDPR) legislation, as amended, this website respects and protects the privacy of visitors and users, using all possible and proportionate efforts not to infringe the rights of users.

This privacy policy only applies to the online activities of this website and is valid for visitors/users of this website. It does not apply to information gathered through channels other than this website. The purpose of the privacy notice is to ensure maximum transparency regarding the information collected by the website and how it is used.

Legal basis of the processing

This website processes data based on consent.

By using or consulting this website visitors and users explicitly approve this privacy notice and consent to the processing of their personal data in relation to the methods and purposes described below, including any disclosure to third parties, if necessary for the provision of a service.

Providing the data and, therefore, the consent to data collection and processing is optional. You can deny your consent, and you can revoke at any time a consent already provided; however, denying your consent may result in our inability to provide certain services and the browsing experience on the website could be compromised.

As of 25 May 2018 (date of entry into force of the GDPR), this website will process some of the data based on the legitimate interests of the data controller.

Data collected and purposes

The following information may be collected:

  • type of browser and parameters of the device used to connect to the website;
  • name of the Internet service provider (ISP);
  • date and time of visit;
  • visitor referral page (referral) and exit page;
  • number of clicks (if any).
  1. The above information is processed in an automated manner and collected in aggregated form only for the purpose of monitoring the proper functioning of the website, and for security reasons.
  2. For security purposes (spam filters, firewalls, virus detection), automatically recorded data may also include personal data such as IP address, which could be used, in compliance with the applicable laws, in order to block attempts to damage the website or other users, or otherwise harmful or criminal activities. These data are only used to protect the website and its users, and never to identify or profile users.
  3. The data received will be used for the sole purpose of, and for the time strictly necessary to providing the service.
  4. In any case, under no circumstances will the data collected from the website be disclosed to third parties unless it is a legitimate request by the judicial authority and only in the cases provided by law.

The data used for security purposes (blocking attempts to damage the website) are kept for 7 days.

Place of processing

The data collected by the website are processed at the registered office of the Data Controller, and at the Web Hosting data centre. The Web hosting (TERRALINK SRL, Via Cristoforo Colombo, 94 – 36061 Bassano del Grappa – Vicenza – IT), which is the Data Processor and processes data on behalf of the Data Controller, is located in the European Economic Area and acts in accordance with European regulations.

Cookies

As is customary on all websites, this website also uses cookies; these are small text files that enable the storing of information on visitor preferences, in order to improve the website functions, simplify navigation by automating procedures (e.g. Login, website language) and to analyse the use of the website.

Session cookies: They are essential to distinguish between connected users and are useful in preventing a requested feature from being provided to the wrong user, as well as for security purposes to prevent cyber-attacks on the website. Session cookies do not contain personal data and only last for the current session, i.e. until the browser is closed. No consent is needed for these cookies.

Functional cookies: Through these cookies the website stores the choices made by users (such as name, language or region of origin) and provides customized advanced features (e.g. Login) for which no consent is required.

Performance cookies: They collect information on how visitors use a website, for example, what are the most visited pages or if they receive any error messages from the web pages. These cookies do not collect information that can identify individual visitors. All the information collected through the cookies is aggregated and therefore anonymous. They are only used to improve the website operation.

By using the website, you expressly consent to the use of cookies

Disabling cookies

Cookies are linked to the browser used and CAN BE DISABLED DIRECTLY FROM THE BROWSER , thus refusing / withdrawing consent to the use of cookies.

Please note that disabling cookies may prevent the correct use of some of the website features.

Third Party Cookies

This website also acts as an intermediary for third-party cookies, which are used to provide additional services and features to visitors and to improve the use of the website. This website has no control over third-party cookies, which are entirely managed by third parties. This means that the information on the use and purposes of those cookies, as well as on how to disable them, are provided directly by the third parties on the pages specified below.

In particular, this website uses cookies from the following third parties:

  • Google Analytics: this is an analytical tool by Google which uses cookies (performance cookies), collects anonymous and aggregated browsing data (IP truncated to the last octet) for the purpose of analysing how the website is used by users, for compiling reports on activities on the website and for providing other information, including the number of visitors and pages visited. Google may also transfer this information to third parties, where this is required by law or where such third parties process the information on Google’s behalf. Google will not associate an IP address with any other data held by Google. The data sent to Google are stored on Google’s servers in the United States.

On the basis of a specific agreement with Google, which is designated as data processor, Google undertakes to process the data according to the Data Controller’s instructions (see at the end of the information notice), given through the software settings. Based on these settings, the advertising and data sharing options are disabled.

Further information on Google Analytics cookies can be found on the Google Analytics Cookie Usage on Websites page.

You can selectively disable the collection of data by Google Analytics by installing the appropriate component provided by Google (opt out) on your browser.

  • Youtube: this is a platform owned by Google, for sharing videos, which uses cookies to collect information on users and navigation devices. The videos on the website do not convey cookies when accessing the page, since the ” advanced privacy (no cookies) ” option has been set, according to which YouTube does not store visitor information unless they voluntarily reproduce the video.

cookie: test_cookie .doubleclick.net is not a permanent cookie but is used to check whether your browser supports cookies.

For more information on the use of data and their processing by Google, it is recommended viewing the information on the specific page provided by Google , and on the page on How Google uses your data when you use partner websites or apps  .

Transfer of data to non-EU countries

This site may share some of the data collected with services located outside the European Union area. In particular with Google through the Google Analytics service. The transfer is authorized on the basis of specific decisions of the European Union and the Authority for the protection of personal data, specifically Decision 1250/2016 ( Privacy Shield – here the information page of the Italian Data Protection Authority ), for which no further consent is required. The companies mentioned above guarantee their adherence to the Privacy Shield.

Security measures

This website processes the data of users in a lawful and correct manner, adopting appropriate security measures to prevent the unauthorized access, disclosure, modification or destruction of data. The processing is carried out using electronic and/or telecommunication tools, with organizational methods and logics that are strictly related to the specified purposes. In addition to the data controller, in some cases,  certain categories of employees involved in the website organization (administrative, commercial, marketing, legal staff, system administrators) or external parties (such as third-party technical service providers, carriers, hosting providers, IT companies, communication agencies) may have access to the data.

User’s rights

Pursuant to European Regulation 679/2016 (GDPR) and national regulations, you can exercise the following rights, in accordance with the procedures and within the limits established by the legislation in force:

  • request confirmation of the existence of personal data concerning you (right of access);
  • be informed about their origin;
  • receive the data in intelligible format;
  • obtain information about the logic, methods and purposes of the processing;
  • request the updating, rectification, integration, cancellation, transformation into anonymous form, blocking of data processed in violation of the law, including those no longer necessary to achieve the purposes for which they were collected;
  • in cases of consent-based processing, to receive, by only paying the cost of the medium used, your data provided to the data controller, in a structured and machine readable form and in a format commonly used by an electronic device;
  • the right to lodge a complaint with the Supervisory Authority (Privacy Authority – link to the Privacy Authority page );
  • as well as, more generally, exercise all rights that are recognized by the law in force.

Your requests should be addressed to the Data Controller.

If data are processed on the basis of legitimate interests, the rights of the data subjects are nevertheless guaranteed (except for the right to portability which is not envisaged by the regulations), in particular the right to object to the processing; this can be exercised by sending a request to the data controller.

Data controller, data processor and persons in charge of processing

The Data Controller under the applicable laws is SIDASTICO SPA – Via Astico 44-36030 – Fara Vicentino – Vicenza – IT – VAT 02931940247

Data processor

The Web hosting (TERRALINK SRL, Via Cristoforo Colombo, 94 – 36061 Bassano del Grappa – Vicenza – IT), which is the Data Processor and processes data on behalf of the Data Controller, is located in the European Economic Area and acts in accordance with European regulations.

The updated list of data processors and persons in charge of processing is kept at the registered office of the Data Controller.

Exercise of the rights pursuant to arts. 15-21 of Regulation 679

At any time, you can exercise the rights of the data subject as provided by the GDPR, by making a request to SIDASTICO SPA (at the address above) or by sending an e-mail to: privacy@sidastico.com

Updates

This privacy policy is updated as at 25 May 2018