Privacy Policy

Information in accordance with the provisions of EU Regulation 679/2016 (GDPR) – updated as of 25/05/2018.

Data Controller

Decatex Srl

Via P. Togliatti, 5 – 21050 Cairate (VA) – ITALY

Data Controller’s email address: f.dellacanonica@decatex.it

Type of data collected

Among the Personal Data collected by this Application, either independently or through third parties, there are: Cookies, Usage Data, first name, last name, email, and phone number.

Complete details on each type of data collected can be found in the dedicated sections of this privacy policy or through specific informational texts displayed before the data is collected. Personal Data may be freely provided by the User or, in the case of Usage Data, collected automatically during the use of this Application. Unless otherwise specified, all Data requested by this Application is mandatory. If the User refuses to provide it, this Application may be unable to provide the Service. In cases where this Application specifically indicates some Data as optional, Users are free to refrain from communicating such Data without affecting the availability or functioning of the Service. Users who have any doubts about which Data is mandatory are encouraged to contact the Data Controller.

The possible use of Cookies – or other tracking tools – by this Application or the third-party service providers used by this Application, unless otherwise specified, is for the purpose of providing the Service required by the User, as well as any other purposes described in this document and in the Cookie Policy, if available.

The User assumes responsibility for Personal Data of third parties obtained, published, or shared through this Application and guarantees that they have the right to communicate or disclose them, freeing the Owner from any liability to third parties.

Methods and place of data processing for the collected data

Processing methods

The Data Controller adopts the appropriate security measures to prevent unauthorized access, disclosure, alteration, or destruction of Personal Data. Data processing is carried out using computer and/or telematic tools, with organizational methods and logics strictly related to the purposes indicated. In addition to the Data Controller, in some cases, other parties involved in the organization of this Application (administrative, commercial, marketing, legal, system administrators) or external parties (such as third-party technical service providers, postal couriers, hosting providers, IT companies, communication agencies) may have access to the Data and may be appointed as Data Processors by the Data Controller, if necessary. An updated list of Data Processors can always be requested from the Data Controller.

Legal basis for the processing

The Data Controller processes Personal Data relating to the User if one of the following conditions exists:

  • The User has given consent for one or more specific purposes. Note: In some jurisdictions, the Data Controller may be allowed to process Personal Data without the User’s consent or another legal basis specified below until the User objects (“opts out”) to such processing. However, this is not applicable if the processing of Personal Data is regulated by European data protection law;
  • The processing is necessary for the performance of a contract with the User and/or for the execution of pre-contractual measures;
  • The processing is necessary to comply with a legal obligation to which the Data Controller is subject;
  • The processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the Data Controller;
  • The processing is necessary for the pursuit of the legitimate interests of the Data Controller or third parties.

It is always possible to request the Data Controller to provide clarification on the specific legal basis for each processing operation and in particular to specify whether the processing is based on the law, provided for by a contract, or necessary to conclude a contract.

Location

The Data is processed at the Data Controller’s operating locations and at any other place where the parties involved in the processing are located. For further information, please contact the Data Controller.

The User’s Personal Data may be transferred to a country other than the one in which the User is located. For more information on the location of the processing, the User can refer to the section concerning the details of the processing of Personal Data.

The User has the right to obtain information regarding the legal basis for the transfer of Data outside the European Union or to an international organization governed by public international law or consisting of two or more countries, such as the UN, as well as regarding the security measures taken by the Data Controller to protect the Data.

If one of the transfers described above takes place, the User can refer to the respective sections of this document or request information from the Data Controller by contacting them using the contact details provided at the beginning.

Retention period

The Data is processed and stored for the time necessary for the purposes for which it was collected.

Therefore:

  • Personal Data collected for purposes related to the performance of a contract between the Data Controller and the User will be retained until the execution of that contract is completed;
  • Personal Data collected for purposes related to the legitimate interests of the Data Controller will be retained until those interests are satisfied. The User can obtain further information about the legitimate interest pursued by the Data Controller in the relevant sections of this document or by contacting the Data Controller.

When processing is based on the User’s consent, the Data Controller may retain Personal Data for a longer period until such consent is revoked. Furthermore, the Data Controller may be obliged to retain Personal Data for a longer period in compliance with a legal obligation or at the request of an authority.

At the end of the retention period, Personal Data will be deleted. Therefore, upon expiration of this period, the right to access, delete, rectify, and the right to data portability cannot be exercised.

Purposes of processing the collected data

The User’s data is collected to allow the Data Controller to provide its services, as well as for the following purposes: Access to third-party services accounts, Statistics, and Contacting the User.

For more detailed information about the purposes of processing and the Personal Data specifically relevant to each purpose, the User can refer to the respective sections of this document.

Details about the processing of Personal Data

Personal Data is collected for the following purposes and using the following services:

– Contacting the User
Contact form

The User, by filling out the contact form with their Data, consents to their use for responding to requests for information, quotes, or any other kind of request as indicated by the form’s header.

Personal Data collected: first name, last name, email, phone number.

– Statistics

The services in this section allow the Data Controller to monitor and analyze traffic data and are used to track User behavior.

Google Analytics with anonymized IP (Google Inc.)

Google Analytics is a web analytics service provided by Google Inc. (“Google”). Google uses Personal Data collected for the purpose of tracking and examining the use of this Application, compiling reports, and sharing them with other Google services. Google may use Personal Data to contextualize and personalize the ads of its advertising network.

This integration of Google Analytics anonymizes your IP address. The anonymization works by shortening the IP address of Users located within the member states of the European Union or in other countries that are parties to the Agreement on the European Economic Area. Only in exceptional cases will the IP address be sent to Google’s servers and shortened within the United States.

Personal Data collected: Cookies and Usage Data.

Location of processing: United States – Privacy Policy – Opt Out. Participant in the Privacy Shield.

User rights

Users can exercise certain rights with respect to the Data processed by the Data Controller.

In particular, the User has the right to:

  • withdraw their consent at any time. The User can withdraw consent previously given for the processing of their Personal Data.
  • object to the processing of their Data. The User can object to the processing of their Data when it is done on a legal basis other than consent. Further details about the right to object are provided in the section below.
  • access their Data. The User has the right to obtain information about the Data processed by the Data Controller, certain aspects of the processing, and receive a copy of the Data processed.
  • verify and request rectification. The User can verify the accuracy of their Data and request its update or correction.
  • obtain the limitation of processing. When certain conditions are met, the User can request the limitation of the processing of their Data. In this case, the Data Controller will not process the Data for any other purpose than its storage.
  • obtain the erasure or removal of their Personal Data. When certain conditions are met, the User can request the deletion of their Data by the Data Controller.
  • receive their Data or have it transferred to another controller. The User has the right to receive their Data in a structured, commonly used, and machine-readable format and, where technically feasible, to have it transmitted to another controller without any hindrance. This provision is applicable when the Data is processed by automated means and the processing is based on the User’s consent, on a contract of which the User is a party, or on contractual measures connected to it.
  • lodge a complaint. The User can file a complaint with the competent data protection authority or take legal action.
Details about the right to object

When Personal Data is processed for public interest, in the exercise of official authority vested in the Data Controller, or for the legitimate interests pursued by the Data Controller, Users have the right to object to the processing on grounds relating to their particular situation.

Users are reminded that if their Personal Data is processed for direct marketing purposes, they can object to the processing without providing any reasons. To find out whether the Data Controller processes data for direct marketing purposes, Users can refer to the respective sections of this document.

How to exercise your rights

To exercise their rights, Users can make a request to the contact details of the Data Controller provided in this document. Requests are made free of charge and processed by the Data Controller as soon as possible, in any case within one month.

Further information about the processing

Legal defense

The User’s Personal Data may be used by the Data Controller in court or in the stages leading to possible legal action arising from improper use of this Application or the related Services by the User.

The User acknowledges that the Data Controller may be required to disclose the Data at the request of public authorities.

Specific information

Upon request of the User, in addition to the information contained in this privacy policy, this Application may provide the User with additional and contextual information regarding specific Services or the collection and processing of Personal Data.

System logs and maintenance

For operation and maintenance purposes, this Application and any third-party services it uses may collect system logs, which are files that record interactions and may also contain Personal Data, including the User’s IP address.

Information not contained in this policy

Additional information regarding the processing of Personal Data may be requested at any time from the Data Controller using the contact details.

Response to “Do Not Track” requests

This Application does not support “Do Not Track” requests.

To find out whether any third-party services used support them, Users are encouraged to consult their respective privacy policies.

Changes to this privacy policy

The Data Controller reserves the right to make changes to this privacy policy at any time by giving notice to Users on this page and, if possible, within this Application, and by notifying Users through the contact information available to the Data Controller. It is highly recommended to check this page often, referring to the date of the last modification listed at the bottom.

If the changes affect processing activities for which the User has given consent, the Data Controller shall collect new consent from the User, where required.

Definitions and legal references
Personal Data (or Data)

Personal Data means any information that, directly or indirectly, including in connection with any other information, including a personal identification number, makes an individual identified or identifiable.

Usage Data

Usage Data is the information collected automatically through this Application (or third-party applications that this Application integrates), including: the IP addresses or domain names of the computers used by the User who connects with this Application, the URI addresses (Uniform Resource Identifier), the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response from the server (successful, error, etc.), the country of origin, the features of the browser and the operating system used by the visitor, the various time details per visit (e.g., the time spent on each page), and the details about the path followed within the Application, with particular reference to the sequence of pages visited, parameters relating to the operating system and the User’s computer environment.

User

The individual who uses this Application, unless otherwise specified, corresponds to the Data Subject.

Data Subject

The natural person to whom the Personal Data refers.

Data Controller (or Manager)

The natural person, legal person, public administration and any other body that processes personal data on behalf of the Data Controller, as set out in this privacy policy.

Data Controller (or Data Controller)

The natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data and the tools adopted, including security measures relating to the operation and use of this Application. The Data Controller, unless otherwise specified, is the owner of this Application.

This Application

The hardware or software tool through which the Personal Data of Users is collected and processed.

Service

The Service provided by this Application as defined in the relative terms (if available) on this site/application.

European Union (or EU)

Unless otherwise specified, any reference to the European Union contained in this document is intended to include all current member states of the European Union and the European Economic Area.

Cookie

Small portion of data stored within the User’s device.

Legal references

This privacy information is drawn up on the basis of multiple legislative systems, including articles. 13 and 14 of Regulation (EU) 2016/679.

Unless otherwise specified, this privacy policy applies exclusively to this Application.