INFORMATION ON THE PROCESSING OF PERSONAL DATA PURSUANT TO ARTICLES 13 AND 14 OF REGULATION (EU) 679/2016 (GDPR)

 

BACKGROUND AND GENERAL INFORMATION

 

Our company, EDILACILIA S.R.L., Via F.G. Bressani, 3 - 00125 Rome, believes that the protection of personal data and the privacy of our users are of the utmost importance. This privacy policy provides all the information necessary to help you understand what data we collect, why we collect it, and how we use it, in compliance with applicable law.

If you have any further questions, please contact us through the "Contact" section (menu at the top of the page) or by email at info@edilaciliacrea.com.

DEFINITIONS

  • "User" is the actual or potential purchaser of the Products who holds the status of a consumer, meaning natural or legal persons who make the purchase and act for purposes unrelated to any business or professional activity they may carry out;
  • "Site" is the set of web pages relating to EDILACILIACREA;

1. DATA CONTROLLER

The data controller of the personal data collected through the use of the online sales service (hereinafter, the "Service") and the website www.edilaciliacrea.com (hereinafter, the "Site") for Italian users is: EDILACILIA S.R.L. with registered office at Via F.G. Bressani, 3 00125 - Rome, VAT No. IT05253151004, reachable through the "Contact" section (top menu) or by email at info@edilaciliacrea.com (hereinafter the "Company")

 

2. DATA PROCESSED

 

2.1  DATA COLLECTED VIA THE SITE

To consult the "public" part of the Site (i.e., the area freely accessible to all users), no personal data is required. As a result of browsing the publicly accessible pages of the Site, some browsing data may be automatically collected, including the following information, which is stored in the site's server (hosting) log files:

  • Internet Protocol (IP) address;
  • Browser type;
  • Parameters of the device used to connect to the site;
  • Name of the Internet Service Provider (ISP);
  • URI (Uniform Resource Identifier) ​​of the requested resources
  • Date and time of visit;
  • The visitor's originating web page (referral) and exit page;
  • possibly the number of clicks;

 

Browsing data relates to the user's operating system and IT environment, the transmission of which is implicit in the use of Internet communication protocols.

The Company uses a third-party tool (Google Analytics) for exclusively statistical and marketing purposes. However, the data is managed in a completely anonymous form. Although this information is not collected to be associated with identified data subjects, by its nature it could, through processing and association with data held by third parties, allow users to be identified. This data is used solely to obtain anonymous statistical information on the use of the Site and to verify its correct functioning, and is deleted immediately after processing.

This data is used for statistical and analytical purposes, exclusively in aggregate form. The IP address is used exclusively for security purposes and is not cross-referenced with any other data.

This site also includes plugins and/or buttons to allow easier registration on the site and/or sharing of content on your favorite social networks. When you visit a page on our website that contains a plugin, your browser connects directly to the servers of the social network from which the plugin is loaded. This server can track your visit to our website and, if applicable, associate it with your social media account, particularly if you are logged in at the time of your visit or if you have recently browsed one of the websites containing social media plugins. If you do not want the social media network to record data relating to your visit to our website, you must log out of your social media account and, likely, delete the cookies installed by the social media network in your browser.

This site includes plugins with advanced privacy protection features. These plugins do not send cookies or access the cookies present in the user's browser when the page is opened, but only after clicking on the plugin.

The collection and use of information by these third parties are governed by their respective privacy policies, to which we encourage you to refer.

Facebook (cookie policy link)

Google+ (cookie policy link)

Paypal (cookie policy link)

Pinterest (cookie policy link)

Youtube (cookie policy link)

For more information regarding the use of cookies through the Site, please read the Company's Cookie Policy at the following link.

For access to the restricted content of the Site, or for any contact with the Company by the user, for example, by sending emails to the Company's contact details indicated on the Site, the user's data shall be considered acquired and, therefore, processed in full compliance with applicable law. Such data may include that provided during registration on the Site and use of restricted areas, such as (in addition to the personal data already indicated), username, password, security questions and their answers, any uploaded documents, etc.

The optional, explicit, and voluntary sending of emails to the addresses indicated on the Site entails the subsequent acquisition of the personal data included in the message, which is necessary to respond to requests. Therefore, failure to provide such data will make it impossible to respond to requests.

The data collected may be processed for activities strictly related to fulfilling requests addressed to the Company.

2.2  DATA COLLECTED THROUGH THE SERVICE

The Company collects only the personal data that the user voluntarily provides by registering for or using the Service. Among the data voluntarily provided by the user through the use of the Service, personal data may be acquired, such as:

The site may collect other data when users voluntarily use services, such as commenting and communication services (contact forms, comment boxes, newsletters), and these data will be used exclusively to provide the requested service:

  • First name;
  • Last name;
  • Tax code and/or VAT number;
  • Residence and/or domicile address;
  • Date of birth;
  • Email address;
  • Telephone numbers;
  • Recipient code;
  • Certified email (PEC);

3. PURPOSE OF PROCESSING

The Company processes the personal data that the user has provided through the Service or the Site exclusively in connection with the use of the Service or the Site itself. Specifically, the user's personal data may be used for the following purposes:

a) provision of the online sales service and Site features, such as registration, access to restricted areas, communication with the Company, communication with other users, etc. offered by the Site;

b) processing of payment and invoicing data: the Company will process the user's personal data only to facilitate purchases related to the Service and to process payments made, including through the Site. The Company will not acquire the user's bank details, as all payments will be processed via PayPal or other third-party payment platforms;

c) sending information about the Service, such as payment status, shipping tracking code, etc., and updates on Site features, or informative newsletters via email if the user has given their explicit consent;

4. PERSONAL DATA STORAGE

The data collected by the site during its operation is retained for the time strictly necessary to carry out the specified activities. Upon expiration or when the user requests the deletion of their personal data, the data will be deleted or anonymized, unless there are further purposes for retaining it (for example, if it must be retained to comply with a legal obligation or to establish, exercise, or defend legitimate claims).

 

5. SECURITY AND TRANSFER OF PERSONAL DATA

We process visitor/user data lawfully and correctly, adopting appropriate security measures to prevent unauthorized access, disclosure, modification, or destruction of the data. We are committed to protecting the security of your personal data during transmission, using Secure Sockets Layer (SSL), which encrypts information in transit. Processing is carried out using computerized and/or electronic tools, with organizational methods and logic strictly related to the purposes indicated. In addition to the Data Controller, in some cases, categories of persons involved in the organization of the site or external parties (such as third-party technical service providers, hosting providers) may have access to the data.

 

5.1  PLACE OF PROCESSING

The data collected by the site is processed at the Data Controller's headquarters and hosted at the web hosting data center (A2 Hosting Inc., Ann Arbor, Michigan, 48106 PO BOX 2889). A2 Hosting complies with the EU-U.S. Privacy Shield Framework and the Swiss-U.S. Privacy Shield Framework as set forth by the U.S. Department of Commerce regarding the collection, use, and retention of personal information from European Union member countries and Switzerland.

5.2  TRANSFER OF COLLECTED DATA TO THIRD PARTIES

The data collected by the site is generally not provided to third parties, except in specific cases: legitimate request by judicial authorities and only in cases required by law; when necessary to provide a specific service requested by the User; or to perform security checks or optimize the site.

5.3  TRANSFER OF DATA TO NON-EU COUNTRIES

This site may share some of the data collected with services located outside the European Union, specifically with Google, Facebook (Facebook, Instagram), and Microsoft (LinkedIn, Bing) via social plugins and the Google Analytics service. This transfer is authorized based on specific decisions of the European Union and the Italian Data Protection Authority (here is the Italian Data Protection Authority's information page), for which no further consent is required. The companies mentioned above guarantee their adherence to the Privacy Shield.

6. USER RIGHTS

Pursuant to European Regulation (EU) 679/2016, the User may exercise at any time the rights provided for in Articles 15 to 22 and Article 34 of Regulation (EU) 679/2016. In particular, the User has the right to:

object, in whole or in part, for legitimate reasons, to the processing of personal data concerning him or her, for the purpose of sending advertising materials or direct selling or for conducting market research or commercial communications;

access to personal data (Article 15 of the Regulation).

rectification of inaccurate personal data (Article 16 of the Regulation).

erasure of data under the conditions set out in Article 17 of the Regulation.

restriction of processing under the conditions set out in Article 18 of the Regulation.

portability of data concerning him or her (Article 20 of the Regulation).

object to automated processing, including profiling (Article 21 of the Regulation).

Revoke consent for one or more purposes without affecting the lawfulness of processing based on consent before its withdrawal.

Filing a complaint with the national supervisory authority, the Italian Data Protection Authority (Garante per la protezione dei dati personali), located at Piazza di Montecitorio 121, 00186 Rome (Privacy Authority – link to the Authority's page);

Requests should be addressed to the Data Controller;

Registered Users can independently modify, download, and/or delete their data using the appropriate buttons on their personal profile page (account):

MY PERSONAL DATA

DOWNLOAD MY DATA

DELETE MY DATA

 

7. COOKIES

This site uses cookies, which are text files that are stored on the user's terminal or that allow access to information on the user's terminal. Cookies allow us to store information about visitor preferences. They are used to verify the correct functioning of the site and improve its functionality by customizing page content based on the browser used, or to simplify navigation by automating procedures (e.g., login, site language), and finally to analyze visitor use of the site.

For information regarding the use of cookies through the Site, please read the Company's Cookie Policy at the following link.

8. DATA SUBJECTS

The data controller pursuant to applicable law is EDILACILIA, Via F.G. Bressani, 3, VAT no. IT05253151004, as the site administrator (Webmaster). The data controller can be contacted through the "Contact" section (top menu) or by email: info@edilaciliacrea.com.

The web hosting provider (A2 Hosting Inc., Ann Arbor, Michigan, 48106 PO BOX 2889) is responsible for allocating data on behalf of the data controller, as also highlighted in the GDPR Data Processing Addendum. A2 Hosting, as a company operating in the European Economic Area, is required to comply with the GDPR and acts in accordance with European regulations (Hosting privacy policy).

Google is appointed as the data processor, processing data on behalf of the data controller (Google Analytics).