INFORMATION ON THE PROCESSING OF PERSONAL DATA pursuant to Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (GDPR)
Purchases on the Site
Upon your submission, your personal data will be processed to allow you to make purchases on the Site.
The information and data required in case of registration will be used to allow you both to access the reserved area of the Site and to use the online services offered by the Data Controller to registered users.
With your consent, the Data Controller may process the personal data you have provided in order to send you advertising material and / or newsletters relating to its own or third party products.
With your consent, the Data Controller may process your personal data for profiling purposes, i.e. for the analysis of your consumption choices by revealing the type and frequency of purchases made by you, in order to send you advertising material and / or newsletters relating to own or third party products of your specific interest.
The Data Controller may use, for the direct sale of the products offered for sale through the Site, the e-mail coordinates provided by you in the context of a purchase on the Site, even without your consent, as long as it is a product similar to that of the previous sale (so-called soft spamming). However, you can refuse this treatment at any time by communicating your opposition to the Data Controller.
In compliance with the GDPR, we hereby intend to inform you that the Data Controller will process your personal data under the following conditions.
Art. 1. Purpose and legal basis of the processing. Mandatory or optional conferment. Consequences of refusal to process.
The processing of personal data is aimed at achieving the following purposes:
a. to allow registration on the Site and access the services reserved for registered users as well as to allow compliance with the obligations deriving from the law or regulations in force, in particular, in the administrative, accounting and public security fields. The legal basis of the processing is the need of the Data Controller to carry out pre-contractual measures adopted at the request of the interested party or to fulfill a legal obligation;
b. in the case of placing an online purchase order, to allow the conclusion of the purchase contract and the correct execution of the operations connected to it (and, if necessary according to sector legislation, to fulfill tax obligations). The legal basis of the processing is the obligation of the Data Controller to execute the contract with the interested party or to fulfill legal obligations;
c. limited to the e-mail coordinates provided by you in the context of a purchase through the Site, to allow the direct offer by the Data Controller of similar products (so-called soft spamming), provided that you do not object to such processing in the manner provided for by this information. The legal basis of the processing is the legitimate interest of the Data Controller to send this type of communication. This legitimate interest can be considered equivalent to the interested party's interest in receiving "soft-spam" communications;
d. subject to your consent, for sending newsletters and for carrying out market surveys, also aimed at assessing the degree of user satisfaction, and sending advertising material relating to products of the Data Controller and / or third parties , by means of systems such as email, sms, traditional methods (paper mail and / or telephone) (marketing purposes); subject to your consent, for the processing of your commercial profile, through the detection and processing of your choices and purchasing habits, in order both to monitor the degree of customer satisfaction and to send you advertising material relating to the products of the Data Controller and / or third parties, of your specific interest, by means of systems such as email, sms, traditional methods (paper mail and / or telephone) (profiling purposes). The legal basis of the processing is the consent of the interested party;
e. to respond to your requests through the customer care service. The provision is optional, but your refusal will make it impossible for the Data Controller to answer your questions through this service. The legal basis of the processing is the legitimate interest of the Data Controller to follow up on the user's requests. This legitimate interest is equivalent to the user's interest in receiving a response to communications sent to the Data Controller;
f. to respond by email, telephone your requests. The provision is optional, but your refusal will make it impossible for the Data Controller to respond to your requests. The legal basis of the processing is the legitimate interest of the Data Controller to respond to user requests. This legitimate interest is equivalent to the user's interest in receiving responses to communications sent to the Data Controller.
The provision of data for the purposes referred to in points a) and b) is purely optional. However, since this processing is necessary to make a purchase on the Site, your refusal to provide the data in question will make it impossible to make such a purchase through the Site.
The consent to the processing of your data for marketing and profiling purposes is purely optional. Failure to consent will only imply the consequences described below.
Failure to consent to the processing of data for marketing purposes will make it impossible for you to receive advertising material relating to the products of the Data Controller and / or third parties as well as the impossibility for the Data Controller to carry out market surveys, including direct ones. to evaluate the degree of user satisfaction, as well as to send you newsletters.
Failure to consent to the processing of your personal data for profiling purposes will make it impossible for the Data Controller to process your commercial profile, by detecting your choices and purchasing habits as well as sending you advertising material relating to the Controller's products. of the Treatment and / or of third parties, of your specific interest.
Without prejudice to the foregoing, it is understood that the Data Controller may still use your personal data for the sole purpose of correctly fulfilling the obligations established by the laws in force and the obligations deriving from the contractual relationships in place between you and the Data Controller.
We remind you that you can oppose the processing of your personal data also through the appropriate link at the bottom of any email with promotional content sent by the Data Controller. The opposition expressed in these ways also extends to the sending of communications through the postal service.
Payment card data
To make a payment through one of the payment cards offered on the Site, the user must enter the confidential data of the payment card directly on a page that will communicate through a secure encryption protocol with the payment service provider (who will act as autonomous data controller), without passing through the server of the Data Controller who, therefore, will not process such data in any way. The data will be acquired in encrypted format.
In execution of the legal obligations provided for by Directive 2015/2366 / (EU) on payment services in the internal market (PSD2), you are informed that, with reference to purchases made on the Site by credit card, among the data necessary for the conclusion of the the purchase process may include the mobile number you have communicated, or other personal data necessary to complete the purchase process. In fact, to allow you to complete the purchase, the payment institution in charge of managing the operation will send you an authentication code, which must be reported by you as part of the purchase process to meet the authentication criteria provided for by the PSD2 (Strong Customer Authentication). The processing of your personal data for these purposes has as its legal basis the fulfillment of legal obligations and not requiring your consent.
With reference to the payment card data, it is specified that the processing of your personal data is necessary to allow the conclusion of the online purchase contract with the Data Controller. Failure to provide these data, therefore, will not allow you to complete the online purchase process.
On the Site it is also possible to purchase through the PayPal payment tool. In this case, you will be directed to a page outside the Site, in which you will have to indicate the personal data requested by PayPal - which will act as an independent data controller - to complete the purchase process. Personal data will not transit from the Site server which, therefore, will not process such data in any way. The processing of your personal data is necessary to allow the conclusion of the online purchase contract with the Data Controller. Failure to provide these data, therefore, will not allow you to complete the online purchase process.
Particular or judicial data
The Data Controller does not process particular or judicial data.
For sending promotional communications, with your explicit consent, your personal data may be transferred to companies operating in the marketing sector, group companies.
Art. 2. Processing methods
The processing of your personal data will mainly be carried out with the aid of electronic or automated means, in the manner and with the appropriate tools to ensure its security and confidentiality in accordance with the GDPR.
The information acquired and the methods of processing will be relevant and not excessive in relation to the type of services rendered. The data will also be managed and protected in environments whose access is under constant control.
Art. 3. Communication and dissemination of data
Your data may be disclosed:
- to all those subjects (including Public Authorities) who have access to personal data by virtue of regulatory or administrative provisions
- to companies or third parties in charge of printing, enveloping, shipping and / or delivery and / or collection of products purchased through the Site
- to post offices, couriers, suppliers (e.g. drop shipping sales) or freight forwarders in charge of delivering the products purchased through the Site
- to banking institutions and companies that manage the national or international payment circuits through which online payments are made for products purchased through the Site
- to companies, consultants or professionals who may be in charge of installation, maintenance, updating and, in general, the management of the hardware and software of the Data Controller or which the latter uses for the provision of its services
- to external companies in charge of sending advertising communications on behalf of the Data Controller
- to the employees and / or collaborators of the Data Controller
- to the company in charge of carrying out the customer care activity
- to subjects that manage online payment transactions
- to all those public and / or private subjects, natural and / or legal persons (legal, administrative and tax consultancy firms, Judicial Offices, Chambers of Commerce, Chambers and Labor Offices, etc.), if the communication is necessary or functional the correct fulfillment of the obligations deriving from the law.
The data concerning you will not be disclosed, except in anonymous and aggregate form, for statistical or research purposes.
Art. 4. Data Controller
The Data Controller of personal data can be contacted at the following addresses:
Robifil di Colombo Luca Via Verdi, 25 Casatenovo LC 23880 IT
Through the contact form on the Site.
Art. 5. Retention of personal data
Personal data will be stored and processed for marketing purposes for a period of 24 months and for profiling purposes for a period of 12 months. At the end of this period, the Data Controller may ask the user to renew the consent to the processing of his data for these purposes or to make them anonymous and keep them only for statistical or historical purposes.
In the event of closure of the Site account at the initiative of the user, the data contained therein will be kept for administrative purposes for a period not exceeding 90 days, without prejudice to any specific legal obligations on the conservation of accounting documentation or for public purposes. safety.
Art. 6. Transfer subject to adequate guarantees
Your personal data provided to the Data Controller through the Site may be transferred to one or more third countries as the Data Controller has provided adequate guarantees in this regard.
With regard to the transfer of your personal data to third countries, you have enforceable rights and effective remedies.
The adequate guarantees that have been given consist of a legally binding and enforceable instrument between public authorities or public bodies.
Or, subject to the authorization of the Guarantor for the protection of personal data, the adequate guarantee consists of:
- Provisions to be included in administrative arrangements between public authorities or public bodies which include effective and enforceable rights for data subjects.
You can obtain a copy of your personal data:
- by contacting the Data Controller and / or the Data Protection Officer (if appointed).
Art. 7. Rights of the interested party
Pursuant to art. 13 of the Privacy Regulation, the Data Controller informs you that you have the right to:
- ask the Data Controller to access personal data and to correct or delete them or limit their processing or to oppose their processing, in addition to the right to data portability
- revoke the consent at any time without prejudice to the lawfulness of the processing based on the consent given before the revocation
- propose a complaint to a supervisory authority (eg: the Guarantor for the protection of personal data).
The above rights may be exercised with a request addressed without formalities to the Data Controller at the contacts indicated above.
Art. 8. Changes
The Data Controller reserves the right to make changes to this information at any time, giving appropriate publicity to the users of the Site and guaranteeing in any case an adequate and similar protection of personal data. In order to view any changes, you are invited to regularly consult this information.
EXTENDED INFORMATION ON COOKIES
What are cookies and what are they used for
A cookie is a text file that a website visited by the user sends to his terminal (computer, mobile device such as smartphone or tablet), where it is stored before being re-transmitted to that site during a subsequent visit to the site.
Cookies are distinguished from each other:
- based on the person who installs them, depending on whether it is the same operator of the site visited (so-called "first-party cookies") or a different subject (so-called "third-party cookies");
- based on the purpose of each cookie: some cookies allow better navigation, memorizing some user choices, for example the language (so-called "technical cookies"), other cookies allow you to monitor the user's navigation also for the purpose of sending advertising and / or offer services in line with your preferences (so-called "profiling cookies").
Only profiling cookies require the user's prior consent to use them.
The Site uses technical and first-party profiling cookies as well as third-party profiling cookies.
The Data Controller is solely responsible for the first-party cookies installed by the same on the Site.
How to express consent to profiling cookies
On the occasion of the first visit to the Site, you can accept all cookies by carrying out one of the following actions:
- performing a scrolling action on the page (so-called scroll down)
- by clicking the Accept button in the banner itself or by closing it
- by accessing another area of the Site or by clicking on any element of the page (image or link) outside the banner.
In any case, it is possible to express consent to the release of cookies through the browser settings. The procedure to follow to configure the relevant settings is as follows:
Click the following link: http://windows.microsoft.com/it-it/internet-explorer/delete-manage-cookies#ie=ie-11.
Click the following link: https://support.google.com/accounts/answer/61416?hl=it.
Click the following link: https://support.mozilla.org/it/kb/Attivare%20e%20disattivare%20i%20cookie.
Click the following link: https://support.apple.com/kb/PH19214?viewlocale=it_IT&locale=en_US.
In the case of devices such as smartphones, tablets, etc., we ask you to verify that each browser on each device is adjusted to express your cookie preferences. For third-party cookies, you can also set your preferences through the website www.youronlinechoices.com (the system operates with reference to the companies adhering to this site).
Cookies installed through the Site
First-party technical cookies that do not require the user's prior consent
|Cookie name||Purpose of cookies||Expiration|
|N.D.||Navigation or session cookies that guarantee normal navigation and use of the Site (allowing, for example, to make a purchase or authenticate to access restricted areas).||Duration of the session|
Cookie di profilazione di prima parte che richiedono il consenso preventivo dell'utente
|Cookie name||Purpose of cookies||Expiration|
|N.D.||It allows the automatic saving of the products placed in the cart by the customer to propose them again at the next visit to the Site||24 months|
Third-party profiling cookies that require the user's prior consent
Statistical and analytical cookies
The Site uses third-party cookies, even in disaggregated form, for statistical and analytical purposes.
|Supplier||Purpose of cookies||Privacy disclaimer||Consent form|
|Facebook Inc.||Registration of preferences and information on user navigation||https://www.facebook.com/privacy/explanation||Consent form not available. Use your browser settings to exercise your options on this cookie.|
|Google, LLC.||Google installs the cookie to collect information on the total number of users who have clicked on an advertisement on Google.||https://policies.google.com/privacy?hl=it||Consent form not available. Use your browser settings to exercise your options on this cookie.|
|Google, LLC.||Measurement of visits to the Site for analytical and statistical purposes.||http://www.google.com/intl/it/policies/privacy/||https://tools.google.com/dlpage/gaoptout|
|Instagram (Facebook Inc.)||Analyzes user behavior for statistical purposes.||https://help.instagram.com/402411646841720||Consent form not available. Use your browser settings to exercise your options on this cookie.|
|Shopify, Inc.||Performs statistical analysis of user behavior.||https://it.shopify.com/legal/privacy||Consent form not available. Use your browser settings to exercise your options on this cookie.|
Advertising profiling and retargeting cookies
The Data Controller uses advertising profiling cookies to deliver advertising based on the interests expressed by browsing the internet.
|Supplier||Purpose of cookies||Privacy disclaimer||Consent form|
|Facebook, Inc.||Facebook installs cookies to study and improve advertising, also with remarketing actions, in order to send the user messages in line with their interests.||https://www.facebook.com/privacy/explanation||Consent form not available. Use your browser settings to exercise your options on this cookie.|
|Facebook, Inc.||Allows the operation of the service offered by Facebook Manager Ads.||https://www.facebook.com/policy.php||Consent form not available. Use your browser settings to exercise your options on this cookie.|
|Google LLC.||It publishes advertisements in line with the interests expressed by the user while browsing the internet.||https://policies.google.com/privacy||https://adssettings.google.com/authenticated?hl=en|
|Google LLC.||Google Ads installs cookies to study and improve advertising in order to send the user advertising messages in line with their interests.||https://policies.google.com/privacy?hl=it||https://adssettings.google.com/authenticated?hl=en|
|Shopify, Inc.||Collects data on user behavior to optimize the site and make the advertising shown more relevant.||https://it.shopify.com/legal/privacy||Consent form not available. Use your browser settings to exercise your options on this cookie.|
Social network cookies
Social network cookies allow interaction with social platforms, or other external platforms, directly from the pages of the Site.
The following table refers to the provider of social network cookies used through the Site.
|Supplier||Purpose of cookies||Privacy disclaimer||Consent form|
|Instagram, Inc.||Instagram is an image viewing service managed by Instagram, Inc. that allows this site to integrate such content within its pages.||https://www.instagram.com/about/legal/privacy/||Use your browser settings to express your options on this cookie.|
With reference to the cookies installed by the Site, we inform you that:
- the data are collected exclusively for the purposes indicated in this statement;
- technical cookies do not require the user's prior consent as they are necessary for the functioning of the Site. Removing these technical cookies could negatively affect the navigation of the Site;
With regard in particular to the "profiling" cookies of the Data Controller, it should be noted that their deactivation does not make it impossible to browse the Site.
With reference to third-party cookies, the purposes of these cookies, the logic underlying their processing and the management of user preferences are not determined and / or verified by the Data Controller but by the third party that provides them. However, regardless of the fact that the Data Controller considers that the user has validly expressed his consent to the installation of cookies, including those of third parties, the Data Controller provides support to users who request to know how to exercise their consent. / selective refusal or to delete cookies from your browser.