This privacy notice is provided in compliance with Art. 13 of Regulation 2016/679 (GDPR) and pursuant to Art. 13 of Legislative Decree no. 196/2003 (Personal Data Protection Code) and concerns all personal data processed in the manner specified below.
Data Controller The Data Controller for the Personal Data collected is: Mosca Francesco
Operational Office: Via di Carcheri, 23 – 50025 – Lastra a Signa (FI)
Email address of the Data Controller: info@moscafrancesco.it
Types of Data Collected
Complete details on each type of data collected are provided in the relevant sections of this privacy policy. Personal Data may be freely provided by the User, or, in the case of Usage Data, collected automatically during the use of the website. Unless otherwise specified, all Data requested is mandatory. If the User refuses to provide it, it may be impossible to provide the Service. In cases where some Data is optional, Users are free to refrain from communicating such Data without affecting the availability or operation of the Service. Users with questions about which Data is mandatory are encouraged to contact the Data Controller. Any use of Cookies, or other tracking tools, by the website or by the owners of third-party services used by the website, unless otherwise specified, serves to provide the Service requested by the User. The User assumes responsibility for the Personal Data of third parties obtained, published, or shared through the website and guarantees the right to communicate or disclose them, freeing the Data Controller from any responsibility toward third parties.
METHODS AND LOCATION OF DATA PROCESSING
Purposes of Processing Collected Data
The user’s data is collected to allow the Data Controller to provide its Services, as well as for the following purposes: Statistics, Newsletter, Personalized Advertising, Accounting, Performance Testing of content and features, Interaction with social networks and external platforms, Viewing content from external platforms, and interaction with data collection platforms and other third parties. For more detailed information on the purposes of the processing and on the Personal Data concretely relevant for each purpose, the User can refer to the relevant sections of this document.
Processing Methods
The Data Controller adopts appropriate security measures to prevent unauthorized access, disclosure, modification, or destruction of Personal Data. Processing is carried out using IT and/or telematic tools, with organizational methods and logic strictly related to the purposes indicated. In addition to the Data Controller, other parties involved in the organization of the website (administrative, commercial, marketing, legal, system administrators) or external parties (such as third-party technical service providers, mail carriers, hosting providers, IT companies, communication agencies) may have access to the Data, as necessary and may also be appointed as Data Processors by the Data Controller. The updated list of Data Processors may always be requested from the Data Controller.
Legal Basis for Processing
The Data Controller processes Personal Data relating to the User if one of the following conditions applies:
In any case, it is always possible to request the Data Controller to clarify the concrete legal basis of each processing operation and, in particular, to specify whether the processing is based on law, is provided for by a contract, or is necessary to conclude a contract.
Location
Data is processed at the operational offices of the Data Controller and in any other place where the parties involved in the processing are located. For further information, contact the Data Controller. The User’s Personal Data may be transferred to a country other than the one in which the User is located. For further information on the processing location, the User may refer to the section detailing Personal Data processing. The User has the right to obtain information regarding the legal basis for the transfer of Data outside the European Union or to an international organization under public international law or consisting of two or more countries, such as the UN, as well as regarding the security measures taken by the Data Controller to protect the Data. Should any of the transfers described above occur, the User may refer to the respective sections of this document or request information from the Data Controller by contacting them at the details provided at the beginning.
Retention Period
Data is processed and stored for the time required by the purposes for which it was collected:
When processing is based on the User’s consent, the Data Controller may retain Personal Data for a longer period until such consent is revoked. Furthermore, the Data Controller may be obliged to retain Personal Data for a longer period whenever required to do so for compliance with a legal obligation or by order of an authority. Once the retention period expires, Personal Data will be deleted. Therefore, the right to access, delete, rectify, and the right to Data portability cannot be enforced after expiration of the retention period.
Details on Personal Data Processing
Personal Data is collected for the following purposes and using the following services:
Additional Information on Personal Data
Privacy Policy
By filling in the contact form with their Data, the User authorizes the use of these details to respond to requests for information, quotes, or any other type indicated by the form’s header.
User Rights
In accordance with Articles 15 – 21 of Regulation (EU) 2016/679, each data subject is granted a series of rights.
The data subject also has the right to lodge a complaint with the competent supervisory authority, the Privacy Guarantor. Requests for the above rights must be made in writing to the Data Controller. The Data Controller will respond within the time limits provided by current legislation to requests to exercise the rights of data subjects.