Data Controller
Marta Gattari C.da L’Immacolata, 30 – Sant’Angelo in Pontano (M) – Italy.
Owner’s email address: info@martagattari.it
For any clarification, information, exercise of the rights listed in this information, contact the owner at the following email: info@martagattari.it
DEFINITIONS AND LEGAL REFERENCES
Personal Data (or Data)
Personal data is any information that, directly or indirectly, also in connection with any other information, including a personal identification number, makes a natural person identified or identifiable.
Usage Data
This information is collected automatically through this Website (including third-party applications integrated into this Website), including: the IP addresses or domain names of the computers used by the User who connects to this Website, the URI (Uniform Resource Identifier) addresses, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response from the server (successful, error, etc.), the country of origin, the characteristics of the browser and operating system used by the visitor, the various temporal connotations of the visit (for example, the time spent on each page) and the details relating to the itinerary followed within the Application, with particular reference to the sequence of pages visited, the parameters relating to the operating system and the IT environment of the User.
User
The individual using this Website who, unless otherwise specified, coincides with the Data Subject.
Data Subject
The natural person to whom the Personal Data refers.
Data Processor (or Processor)
The natural person, legal person, public administration or any other body which processes Personal Data on behalf of the Data Controller, as set out in this privacy policy.
Data Controller (or Owner)
The natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of processing Personal Data and the tools used, including the security measures concerning the operation and use of this Website. The Data Controller, unless otherwise specified, is the Owner of this Website.
This Website (or this Application)
The hardware or software tool by which the Personal Data of Users is collected and processed.
Service
The Service provided by this Website as defined in the relevant terms (if any) on this site/application.
European Union (or EU)
Unless otherwise specified, any reference to the European Union contained in this document shall be deemed to extend to all current member states of the European Union and the European Economic Area.
Cookie
Small piece of data stored within the User’s device.
Legal references
This privacy policy is drafted using multiple legislative systems, including articles 13 and 14 of Regulation (EU) 2016/679.
Unless otherwise specified, this privacy policy concerns only this Website.
Types of Data collected
This website collects Personal Data, either independently or through third parties, including cookies, Usage Data, first name, last name, email, username, and website.
Complete details on each type of data collected are provided in the dedicated sections of this privacy policy or through specific information texts displayed before the data are collected.
Personal Data may be freely provided by the User, or, in the case of Usage Data, collected automatically when using this Website.
Unless otherwise specified, all Data requested by this Website is mandatory. Failure to provide this Data may make it impossible for this Website to provide its Service.
In cases where this Website indicates some Data as optional, Users are free not to communicate such Data, without this having any consequences on the availability of the Service or on its operation.
Users who have doubts about which Data are mandatory, are encouraged to contact the Owner.
Any use of Cookies – or other tracking tools – by this Website or by the owners of third-party services used by this Website, unless otherwise specified, is intended to provide the Service requested by the User, in addition to the other purposes described in this document and in the Cookie Policy, if available.
The User assumes responsibility for the Personal Data of third parties obtained, published or shared through this Website and guarantees that he or she has the right to communicate or disseminate them, freeing the Owner from any liability towards third parties.
METHOD AND PLACE OF PROCESSING OF THE DATA COLLECTED
Methods of processing
The Owner takes appropriate security measures to prevent unauthorised access, disclosure, modification or destruction of Personal Data.
The processing is carried out using computer and/or telematic tools, with organisational methods and with logic strictly related to the purposes indicated. In addition to the Owner, in some cases, other parties involved in the organisation of this Website (administrative, commercial, marketing, legal, system administration personnel) or external parties (such as third-party technical service providers, postal couriers, hosting providers, IT companies, communications agencies) may have access to the Data, also appointed, if necessary, as Data Processors by the Owner. The updated list of Data Processors may always be requested from the Data Controller.
Legal basis for processing
The Data Controller processes Personal Data relating to the User if one of the following conditions applies:
The User has given consent for one or more specific purposes. Note: under some jurisdictions, the Data Controller may be allowed to process Personal Data without the User’s consent or any other of the legal bases specified below until the User objects (“opts-out”) to such processing. However, this does not apply if the processing of Personal Data is regulated by European data protection law;
Processing is necessary for the performance of a contract with the User and/or for the execution of pre-contractual measures;
Processing is necessary for compliance with a legal obligation to which the Data Controller is subject;
Processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the Data Controller;
Processing is necessary for the pursuit of the legitimate interests pursued by the Data Controller or by a third party.
It is always possible to ask the Owner to clarify the specific legal basis of each treatment, particularly whether the treatment is based on the law, provided for by a contract, or necessary to conclude a contract.
Place
The Data is processed at the owner’s operational headquarters and in any other place where the parties involved in the processing are located. For further information, contact the Owner.
The User’s Personal Data may be transferred to a country other than the one in which the User is located. To obtain further information on the place of processing, the User can refer to the section relating to the details on the processing of Personal Data.
The User has the right to obtain information regarding the legal basis of Data transfers to a country outside the European Union or to an international organization governed by public international law or set up by two or more countries, such as the UN, as well as regarding the security measures taken by the Owner to protect the Data.
If one of the transfers described above occurs, the User can refer to the relevant sections of this document or contact the Owner at the contact details provided in the opening to inquire.
Retention period
The Data is processed and stored for the time required by the purposes for which it was collected.
Therefore:
Personal Data collected for purposes related to the performance of a contract between the Owner and the User will be retained until such contract has been fully performed.
Personal Data collected for purposes related to the Owner’s legitimate interest will be retained until such interest is fulfilled. The User can obtain further information regarding the Owner’s legitimate interest within the relevant sections of this document or by contacting the Owner.
When the processing is based on the User’s consent, the Owner may retain Personal Data for a longer period until such consent is revoked. Furthermore, the Owner may be obliged to retain Personal Data for a longer period in compliance with a legal obligation or by order of an authority.
Personal data will be deleted at the end of the retention period. Therefore, at the expiration of such a period, the rights of access, cancellation, rectification, and data portability can no longer be exercised.
Purposes of the Processing of Collected Data
The User’s Data is collected to allow the Owner to provide its Services, as well as for the following purposes: Statistics, Contacting the User, Commenting on contents, Displaying content from external platforms, Interaction with external social networks and platforms, SPAM protection, Management of User databases and Interaction with live chat platforms.
The User can refer to the relevant sections of this document to obtain further detailed information on the purposes of the processing and on the Personal Data specifically relevant for each purpose.
Details on the processing of Personal Data
Personal Data is collected for the following purposes and using the following services:
Commenting on contents
Comment services allow Users to formulate and make public their comments regarding the content of this Website.
Users can also leave comments anonymously, depending on the settings chosen by the Owner. If an email is included among the Personal Data released by the User, this could be used to send notifications of comments regarding the same content. Users are responsible for the content of their comments.
In the event that a commenting service provided by third parties is installed, it is possible that, even if the Users do not use the commenting service, it collects traffic data relating to the pages in which the commenting service is installed.
Comment system managed directly (This Website)
This Website has its own system for commenting on contents.
Personal Data collected: surname, email, name, website and username.
Contacting the User
Contact form (This Website)
By filling out the contact form with their Data, the User consents to their use to respond to requests for information, quotes or any other kind of request as indicated by the form header.
Personal Data collected: last name, email and first name.
Interaction with live chat platforms
This type of service allows interaction with live chat platforms, managed by third parties, directly from the pages of this Website. This allows the User to contact the support service of this Website or this Website to contact the User while browsing its pages.
If an interaction service with live chat platforms is installed, it is possible that, even if the Users do not use the service, the same collects Usage Data relating to the pages in which it is installed. Furthermore, live chat conversations may be recorded.
Interaction with social networks and external platforms
This type of service allows interaction with social networks, or other external platforms, directly from the pages of this Website.
The interactions and information acquired by this Website are in any case subject to the User’s privacy settings relating to each social network.
If an interaction service with social networks is installed, it is possible that, even if the Users do not use the service, it collects traffic data relating to the pages in which it is installed.
Like button and Facebook social widgets (Facebook, Inc.)
The “Like” button and Facebook social widgets are services of interaction with the social network Facebook, provided by Facebook, Inc.
Personal Data collected: Cookies and Usage data.
Place of processing: USA – Privacy Policy.
Google+ +1 button and social widgets (Google Inc.)
The +1 button and Google+ social widgets are services of interaction with the Google+ social network, provided by Google Inc.
Personal Data collected: Cookies and Usage data.
Place of processing: USA – Privacy Policy.
Linkedin button and social widgets (LinkedIn Corporation)
The LinkedIn button and social widgets are services of interaction with the social network Linkedin, provided by LinkedIn Corporation.
Personal Data collected: Cookies and Usage data.
Place of processing: USA – Privacy Policy.
Pin it button and Pinterest social widgets (Pinterest)
The “Pin it” button and Pinterest social widgets are services of interaction with the Pinterest platform, provided by Pinterest Inc.
Personal Data collected: Cookies and Usage data.
Place of processing: USA – Privacy Policy.
Tweet button and Twitter social widgets (Twitter, Inc.)
The Tweet button and Twitter social widgets are services of interaction with the social network Twitter, provided by Twitter, Inc.
Personal Data collected: Cookies and Usage data.
Place of processing: USA – Privacy Policy.
SPAM protection
This type of service analyses the traffic of this Website, potentially containing Personal Data of Users, in order to filter it from parts of traffic, messages and contents recognized as SPAM.
Akismet (Automattic Inc.)
Akismet is a SPAM protection service provided by Automattic Inc.
Personal Data collected: various types of Data as specified in the privacy policy of the service.
Place of processing: USA – Privacy Policy.
Statistics
The services contained in this section allow the Data Controller to monitor and analyze traffic data and are used to keep track of User behavior.
Google Analytics (Google Inc.)
Google Analytics is a web analysis service provided by Google Inc. (“Google”). Google uses Personal Data, collected anonymously on this site, for the purpose of tracking and examining the use of this Website, compiling reports and sharing them with other services developed by Google.
Google may use Personal Data, collected anonymously on this site, to contextualize and personalize the advertisements of its own advertising network.
Personal Data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy – Opt Out.
Displaying content from external platforms
This type of service allows you to view content hosted on external platforms directly from the pages of this Website and interact with them.
In the event that a service of this type is installed, it is possible that, even if the Users do not use the service, it collects traffic data relating to the pages in which it is installed.
Google Fonts (Google Inc.)
Google Fonts is a typeface visualization service provided by Google Inc. that allows this Website to integrate such content within its pages.
Personal Data collected: Usage data and various types of Data as specified in the privacy policy of the service.
Place of processing: USA – Privacy Policy.
Gravatar (Automattic Inc.)
Gravatar is an image visualization service provided by Automattic Inc. that allows this Website to integrate such content within its pages.
Please note that if Gravatar images are used for commenting systems, the commenter’s email address (or parts of it) may be sent to Gravatar, even if he or she is not registered for this service.
Personal Data collected: Usage data and email.
Place of processing: USA – Privacy Policy.
YouTube Video Widget (Google Inc.)
YouTube is a video content viewing service managed by Google Inc. that allows this Website to integrate such content within its pages.
Personal Data collected: Cookies and Usage data.
Place of processing: United States – Privacy Policy.
Newsletter
Within the site, there is a bimonthly Newsletter dedicated to all readers who spontaneously want to receive exclusive editorial content via email.
For the delivery and management of the Newsletter, the service offered by MailChimp (The Rocket Science Group, LLC, 512 Means St., Suite 404 – 30318—Atlanta, Georgia) is used, and the data collected is stored on the delivery service’s secure servers.
In accordance with MailChimp’s privacy policy, data will never be used directly by MailChimp or sold to third parties. MailChimp uses appropriately authorized operators to maintain the service, and in the exercise of this function, they may have access to your data.
In any case, the guarantees provided by the MailChimp privacy policy apply.
User Rights
Users may exercise certain rights with reference to the Data processed by the Owner.
In particular, the User has the right to:
• withdraw consent at any time. The User may withdraw consent to the processing of their Personal Data previously expressed.
• object to the processing of their Data. The User may object to the processing of their Data when it occurs on a legal basis other than consent. Further details on the right to object are provided in the section below.
• access their Data. The User has the right to obtain information on the Data processed by the Owner, on certain aspects of the processing and to receive a copy of the Data processed.
• verify and request rectification. The User can verify the accuracy of their Data and request its updating or correction.
• obtain the restriction of processing. When certain conditions apply, the User may request the restriction of the processing of their Data. In this case, the Owner will not process the Data for any purpose other than its conservation.
• obtain the deletion or removal of their Personal Data. When certain conditions apply, the User may request the Data Controller to delete their Data.
• receive their Data or have it transferred to another controller. The User has the right to receive their Data in a structured, commonly used and machine-readable format and, where technically feasible, to have it transferred to another controller without hindrance. This provision is applicable when the Data is processed by automated means and the processing is based on the User’s consent, on a contract to which the User is a party or on contractual measures connected to it.
• lodge a complaint. The User can lodge a complaint with the competent data protection supervisory authority or take legal action.
How to exercise your rights
To exercise the User’s rights, Users can request the Owner’s contact details provided in this document. The requests are filed free of charge and processed by the Owner as soon as possible, in any case within one month.
FURTHER INFORMATION ON THE PROCESSING
Defence in court
The Owner may use the User’s Personal Data in court or in the preparatory stages of its possible establishment to defend against abuse in the use of this Website or related Services by the User.
The User declares to be aware that the Owner may be required to reveal the Data by order of public authorities.
Specific information
Upon the User’s request, this Website may provide the User with additional and contextual information regarding specific Services or the collection and processing of Personal Data in addition to the information contained in this privacy policy.
System logs and maintenance
For needs related to operation and maintenance, this Website and any third-party services it uses may collect system logs, which are files that record interactions and may also contain Personal Data, such as the User’s IP address.
Information not contained in this policy
Further information in relation to the processing of Personal Data may be requested at any time from the Data Controller using the contact details.
Changes to this privacy policy
The Data Controller reserves the right to make changes to this privacy policy at any time by giving notice to Users on this page. Please consult this page regularly, referencing the last modification date indicated at the bottom. In case of non-acceptance of the changes made to this privacy policy, the User is required to cease using this Website and can request that the Data Controller remove their Personal Data. Unless otherwise specified, the previous privacy policy will continue to apply to Personal Data collected until then.
Last modified: May 25, 2024.