Privacy Policy
1. Foreword
Information provided pursuant to Art. 13 of European Regulation No. 679/2016 (GDPR)
When you browse our website or use our services, we collect information and personal data about you. For this reason, in accordance with the provisions of Regulation EU No. 679/2016 (hereinafter, “GDPR”) and any implementing legislation, this document (hereinafter, “Privacy Policy”) has been published for the purpose of describing the personal data we collect, the purposes and methods used to process them, as well as the safety measures we adopt to protect them.
This Privacy Policy constitutes a notice provided to data subjects issued pursuant to the applicable data protection legislation.
We inform you that this Privacy Policy applies to the website consulted, to services, apps and social media accounts (hereinafter, the “Services”) and does not apply to any third-party websites possibly referred to via links or banners within the Website.
2. Purpose of Data Processing
The data processing related to the web services of these Sites is carried out only by technical personnel or by authorized individuals for occasional maintenance operations. No personal data is required from users as the site does not require subscription to services.
3. Source of Data and Purpose of Data Processing
3.1. Browsing Data
The computer systems responsible for the functioning of the Services acquire, during their normal operation, some of your personal data, the transmission of which is implicit in the use of Internet communication protocols. This information is not collected with the intent to identify you, but it could lead to your identification if, for example, it were combined with data held by third parties. This category of data includes the IP address and domain name of your computer, the addresses in URI (Uniform Resource Identifier) notation of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response given by the server, and other parameters related to your operating system. We use this data solely to obtain anonymous statistical information on the use of the Services and to check their correct operation. We delete the data collected in this way immediately after processing. The data could be used to ascertain responsibility in the event of computer crimes committed against the Services.
3.2. Information for Specific Services
The creation of a personal account is not necessary to browse our Websites.
The site does not provide for the completion of contact forms to request or provide information.
3.3. Nature of Provision
Providing us with the information pursuant to 4.1 is mandatory in order to browse our Websites.
4. Methods of Data Processing and Data Retention
We process your personal data with the aid of electronic means and always in compliance with the security requirements set out in the applicable legislation. Our security measures include contractual means with any contractor (e.g. service providers) or agent, in order to ensure that the security and confidentiality of your personal data is protected in compliance with the provisions of the applicable personal data protection legislation.
We store your personal data for the time necessary to fulfil the purposes for which it was collected.
4.1. Internal and External Communication of Personal Data
Your personal data will only be processed by persons authorised to process them, that is, Processors.
Any third party who receives your personal data within the context of this procedure may use them within the limits set out in this Privacy Policy.
4.2. Transfer of Data Abroad
Personal data collected through the website shall not be transferred outside of Italy to third-party recipients established within the European Union, nor to third-party non-EU countries.
5. Rights of the Data Subject
You may exercise your rights under the GDPR at any time, as follows:
Request for access to your personal data: you have the right to obtain from the data controller confirmation as to whether or not personal data concerning you is being processed and, if so, access to the personal data. Access includes knowledge of certain information, including the purposes of the processing, the categories of personal data processed, and the recipients to whom the data is communicated. However, there is no absolute right of access, and the interests of other individuals may limit your right of access. You also have the right to obtain a copy of the personal data undergoing processing. A fee may be applied for additional copies.
Rectification of your personal data: you have the right to obtain the rectification of inaccurate personal data concerning you, as well as to have incomplete personal data completed, including by providing a supplementary statement.
Erasure of your personal data: you have the right to obtain from the data controller the erasure of personal data concerning you without undue delay, and the data controller is obliged to erase personal data without undue delay under certain circumstances, including when the data is no longer necessary for the purposes for which it was collected or if you withdraw your consent.
Restriction of the processing of your personal data: in limited circumstances – including when you contest the accuracy of the data – you have the right to request the restriction of the processing of personal data concerning you.
Data portability: you have the right to receive the personal data concerning you, which you have provided to a data controller, in a structured, commonly used, and machine-readable format, and you have the right to transmit those data to another data controller without hindrance from the data controller to which the data was provided, where the processing is based on consent and is carried out by automated means.
Objection to processing: you have the right to object to the processing of personal data concerning you at any time, for reasons related to your particular situation.
The right to lodge a complaint with a competent supervisory authority (Data Protection Authority) remains unaffected.
To exercise these rights, please contact us using the contact details below.
6. Data Controller
Following consultation of this website, data relating to identified or identifiable persons may be processed.
The Data controller is the reference company of the website you consulted while reading this Privacy Policy.
Data Protection Officer
The Data Controller is responsible for data protection. You can contact the Data Controller to exercise all the rights provided for by Articles 15 to 21 of the GDPR: right of access, rectification, erasure, restriction, portability, objection, as well as the right to withdraw previously given consent. If there is no response to your requests, you can lodge a complaint with the Supervisory Authority for Personal Data Protection (pursuant to Article 13, paragraph 2, letter d of the GDPR).
You can contact the Data Controller by writing to info@metmed.it