Privacy Policy

Introduction

As Roberta Gandolfi srl (hereinafter "Data Controller") we are committed to protecting the privacy of all those who relate in various capacities to our company. This means that we will protect the personal information of all visitors who access our website (which we will call, the “ Services ”).

This Privacy Policy (“ Privacy Policy ”) explains how the Data Controller collects, shares and uses your personal information. You will also find information on how you can exercise your privacy rights. By using our Services you accept that the Data Controller uses your personal information as described in this Privacy Policy. The terms “we”, “us” or “our” refer to the Data Controller and any terms not defined in this Privacy Policy are defined in our Terms and Conditions.

Purpose of the processing
and legal basis

The personal information we may collect about you serves three purposes:

Execution of pre-contractual measures requested by you and execution of a contract;

Marketing activities aimed at sending newsletters to present news on products and services;

Profiling activities.

Execution of pre-contractual measures
and contractual

You can provide us with your personal data to purchase one of our products through the site and manage the order.

For example:

Registration Information: When you create an account on this site, register or fill out forms with respect to the Services, we collect information about you, including your name, address, telephone number, email address, and the password you create.
This information will be used to:

Transaction Information: We collect information relating to your Orders. Payment transactions are outsourced to our payment processors and we do not store your credit card information in our systems. We also collect delivery details (for example your physical address) to complete each Order.
This information will be used to:

Requests for information and comments : on the "Contact us" page the owner collects your e-mail address, in addition to the content of the message, to respond to any requests for information or comments or resolve a problem.

This information will be used to:

respond to your requests for information;

publish reviews that you send us about our services anonymously;

conduct analysis and research to improve and develop our Services.

For the processing of data for the purposes referred to in letter A points 1, 2 and 3, your consent is not required since the processing is necessary for the execution of a contract of which you are a party or for the execution of pre-contractual measures adopted on your behalf. request (art. 6 paragraph 1 letter b) of the GDPR) as well as responding to the fulfillment of legal obligations (art. 6 paragraph 1 letter c) of the GDPR). The provision of data by users for these purposes is mandatory and any refusal to provide the data will make it impossible to create the account and therefore make the related online purchases.

Marketing activities

You can sign up to receive our newsletter and so we can use your e-mail address to send you commercial information and news on products and initiatives organized by the owner.

If you do not want us to use your data in this way or if you generally change your mind about receiving marketing communications, you can unsubscribe at any time by using the unsubscribe functionality in the communications you receive or by editing your profile. If you choose to opt-out of receiving marketing communications, we will keep a record of your preferences, so that we do not bother you with unwanted marketing activities in the future.

For the processing of data for marketing purposes, by sending commercial communications by e-mail from the owner and/or third-party companies, the owner will request your consent as the legal basis for the processing (art. 6 paragraph 1 letter a) of the GDPR). The provision of your data for this purpose is optional and the only consequence of failure to provide it is not receiving the newsletter.

C. Profiling activities

Profiling means any automated processing of personal data consisting of the use of such data to evaluate certain personal aspects relating to a natural person, in particular to analyze or predict aspects concerning professional performance, economic situation, health, personal preferences , the interests, reliability, behaviour, location or movements of that natural person (art. 4 point 4) of the GDPR).

When you access our Services, we may collect some information from your browsing and directly from your device to create profiles in order to offer you targeted offers that may be of interest to you.

What data do we collect and through which tools?

Information on activities: We collect information about your use of the Services and information about you from the content you create and notifications or messages you post or send or that emerge from your searches that you view or interact with.
This information will be used to:

Cookies and similar technologies : We use cookies and similar tracking technology to collect and use personal information about you (such as your Internet Protocol (IP) address, your device ID, your browser type when, with which frequency and for how long you interact with the Services), also for the purpose of facilitating advertising in relation to your respective interests.
This information will be used to:

Like many websites and online services, we use cookies and other technologies to record your interaction with our Services. Cookies also help us manage a range of features and content, as well as remember searches and re-present your information when you place your Order. For further information on the types of cookies and similar technologies we use, the reasons, and respective control methods, see our Cookie Policy .

The profiling data will be processed not only by the owner but also by third-party companies such as Rigel srl as Data Processing Manager to provide us with support and advice for the development of the turnover of our e-commerce site.

Information we obtain
from third party sources.

From time to time, we may receive personal information from third party sources, including advertising networks, but only if we have verified that the third party has received your consent to process the information or otherwise has legal authorization or is legally required to share your personal information with we. This information may include your likely demographic.

For example:

Analytical reports and market research surveys: We collect information from affiliated third parties about how you respond to and interact with our marketing campaigns in order to personalize our marketing and the Services.

We may also receive aggregate information in the form of audience segments from third-party sources to display targeted advertising on sites operated by companies such as Facebook and Google.

The processing of your personal data for profiling activities must be based on your explicit consent (art. 22 paragraph 2 letter c) of the GDPR) as well as the communication of such data to third parties.

The e-commerce service is organized in such a way as to automatically provide profiling of the user who registers his account to optimize the service based on declared or inferred tastes and preferences; therefore failure to provide data for profiling purposes makes it impossible to interact with the site's services and in particular purchase the owner's products.

You will be able to obtain details of all the data used for profiling at any time (art. 15 of the GDPR) in addition to your right to object at any time to profiling carried out for direct marketing purposes by writing directly to the owner at the email address info@ robertagandolfi.com or using the appropriate tools that you can find in your Personal Area on the site.

Who we share with
personal information?

In delivering the Services, depending on the circumstances, we may share your personal information with the following entities:

Couriers for the processing and delivery of your Order;

Third parties who perform various activities to promote and support our Services. These include customer support agents, website support and hosting providers, marketing service providers, partners who manage our email marketing and push notifications such as Nosto, companies such as Sendinblue who send you messages when your Order is arriving , delivery companies who deliver the Order to you, market research companies and payment processing providers who process payment card transactions; the aforementioned third parties may be located inside or outside your country of residence.

With respect to any assets of our company, if we enter into a joint venture, purchase another company, or if we sell or merge with another business entity, your information may be disclosed or transferred to the target company, or to new business partners or shareholders or their agents and advisors. In these circumstances, we will always inform the relevant entities that they must process your personal information only for the purposes disclosed in this Privacy Policy.

Any law enforcement or regulatory body, government agency, judicial authority or other third party, if we believe that disclosure is necessary (i) under applicable laws or regulations, (ii) to exercise, establish or defend our legal rights, or (iii ) to protect your vital interests or those of other people.

Any other person, provided that they have given your consent to the disclosure. We will not sell or distribute your personal information in any capacity, except with your prior consent or where required by law.

International data transfers

We may transfer your personal information to countries other than the country in which you are resident, but never outside the EU. The servers of this website operate in Germany.

Minors

No information may be provided to the Owner by persons under the age of 16 without the prior consent of a parent.

Safety

We place great importance on keeping your personal information secure. We therefore take appropriate technical and organizational measures / industry standard technology to protect data from unauthorized access and unlawful processing, accidental loss, destruction and damage.

The security measures we use are designed to provide a level of security protection appropriate to the risk in processing your personal information. If you have chosen a password that allows you to access certain parts of the Services, you are responsible for keeping it confidential. We recommend that you do not share your password with anyone and that you use a unique password for our Services. We will not be liable for unauthorized transactions made using your name and password.

Data retention

The data is kept for the time strictly necessary to provide the service requested or required by law and subsequently eliminated, except for further conservation obligations required by law.

The data collected for marketing purposes will be retained until we receive your opposition to the processing or revocation of consent.

The data collected for profiling purposes will be retained until the contractual relationship between the parties is maintained.

Your data protection rights

The Data Controller respects data privacy and protection rights. The following is a summary of your rights with respect to your personal information held by the Data Controller:

o The Data Controller provides you with the tools to access, analyze or update your personal information at any time through your account. If you wish to request deletion of your personal information, you can do so by contacting us using the contact details provided in the “Contact Us” section.

o You can object to the processing of your personal information, ask us to restrict the processing of your personal information, or request that it be transferred to a third party. Again, you can exercise the above rights by contacting us and using the contact details provided under the heading “Contact us”.

o You have the right to opt out of receiving marketing communications from us at any time. You can exercise this right by using the unsubscribe functionality for receiving communications or by editing your profile.

o Similarly, if we collect and process your personal information based on your consent, you can withdraw your consent at any time. Revoking your consent does not affect the lawfulness of the processing we conducted before your revocation, nor does it affect the processing of your personal information conducted in relation to other lawful processing bases other than consent.

o You have the right to complain to a data protection supervisory authority about the collection and use of your personal information.

We respond to all requests we receive from individuals wishing to exercise their data rights in accordance with applicable data protection laws.

Links to third party sites

Our website may, from time to time, contain links to and from the websites of our partners, advertisers and affiliates or any number of websites that may offer useful information to our visitors. We are providing these links to you only as a convenience and the inclusion of any link does not imply endorsement of the relevant website by the Data Controller. If you access the link or one or more websites, please note that the relevant companies have their own privacy policies and that we will not be responsible for their policies or the linked websites. Please check these policies before submitting personal information to these websites.

Updates
to this Privacy Policy

We may update this Privacy Policy from time to time in response to ongoing legal, technical or business developments. When we update our Privacy Policy, we take appropriate measures to inform you, consistent with the significance of the changes we have made. We will obtain your consent to any material changes to the Privacy Policy if required by applicable data protection laws.

We encourage you to periodically review this page to stay up to date on the latest information regarding our privacy practices.

How to contact us

If you have any questions or concerns about this Privacy Policy, please contact us:


By email to: info@robertagandolfi.com

By writing to us at:

Roberta Gandolfi srl

Via Angelelli, 16 - 40013 Castel Maggiore (BO)

The data controller of your personal information is the entity Roberta Gandolfi srl