Privacy
policy
1. Data Controller
The Data Controllers responsible for the processing of personal data collected through this website are:
Geom. Giangreco Fabrizio
Via Francesco Cirio 5, s.c. Res. Pichin 14049 Nizza Monferrato (AT)
Tel/Fax 0141 701310 – Cell. 333-5974194
E-mail: fabrizio.giangreco@alice.it
VAT 01454440056
Geom. Lanza Pier Giorgio
Via Francesco Cirio 5 – 14049 NIZZA MONFERRATO (AT)
Tel/Fax 0141 701310
E-mail: lanzapiergiorgio@gmail.com
VAT 01576510059
Geom. Samanta Ranzato
Via F. Cirio, 5, 14049 Nizza Monferrato (AT)
E-mail: studiosam_1979@libero.it
PEC: samanta.ranzato1@geopec.it
VAT IT01734180050
2. Categories of Data Processed
Depending on how the user interacts with the website, the Data Controller may process the following data:
a) Data voluntarily provided by the user
First and last name
Email address
Phone number
Any additional information voluntarily provided via contact forms or email communications.
b) Technical navigation data
Automatically collected by the site’s systems and software, including:
IP address
Browser type and operating system
Date and time of access
Pages visited
Technical logs and security-related data
This information is collected in aggregate form or, when necessary, to ensure the site’s security and correct functioning.
c) Cookies and tracking technologies
The website may use technical, functional, analytical cookies and—where applicable—profiling or third-party cookies.
For more details, please refer to the Cookie Policy.
3. Purposes and Legal Basis for Processing
| Purpose | Legal Basis |
|---|---|
| Responding to information or quote requests submitted via forms or email | Art. 6(1)(b) GDPR – Performance of a contract or pre-contractual measures |
| Technical management and security of the website | Art. 6(1)(f) GDPR – Legitimate interest |
| Statistical analysis (in anonymized form) to improve the website | Art. 6(1)(f) GDPR – Legitimate interest |
| Sending marketing communications (if applicable) | Art. 6(1)(a) GDPR – Consent |
| Use of non-essential cookies (profiling, marketing, third-party analytics) | Art. 6(1)(a) GDPR – Consent |
4. Methods of Processing and Security
Data is processed using manual and electronic tools, in compliance with the principles of lawfulness, fairness, transparency, minimization, accuracy, integrity, and confidentiality required under the GDPR.
The Data Controller adopts appropriate technical and organizational measures to protect personal data from loss, alteration, unauthorized access, or disclosure.
5. Data Retention
Personal data will be retained for the following periods:
Data collected via form or email: for the time required to fulfil the request, and no longer than 24 months, unless legal obligations apply.
Technical and navigation data: according to server log policies (typically 30–180 days).
Cookies: as indicated in the Cookie Policy.
Data processed based on consent: until consent is withdrawn.
6. Data Disclosure
Data may be shared with:
Technical service providers (hosting, IT maintenance, email provider)
Consultants (legal, accounting), when necessary
Public authorities or law enforcement agencies, where legally required
Third-party data processors appointed under Article 28 GDPR
No personal data will be publicly disclosed.
7. International Data Transfers (Non-EU Countries)
If the website uses third-party tools that transfer data outside the European Union (e.g., Google, Meta, cloud services), such transfers will comply with Articles 44–49 GDPR through:
Adequacy decisions
Standard Contractual Clauses (SCCs)
Additional safeguards, where required
Explicit user consent, if applicable
Details are provided in the Cookie Policy or within third-party service documentation.
8. User Rights
Users (data subjects) may exercise the following rights at any time under Articles 15–22 GDPR:
Right of access
Right to rectification
Right to erasure (“right to be forgotten”)
Right to restriction of processing
Right to object
Right to data portability (where applicable)
Right to withdraw consent at any time
Right to lodge a complaint with the competent Data Protection Authority (in Italy: Garante per la Protezione dei Dati Personali)
Requests can be submitted to:
→ [insert Data Controller’s contact email]
9. Mandatory or Optional Nature of Data Provision
Providing personal data is:
Mandatory for technical data necessary to browse the website.
Optional for data submitted via contact forms, although failure to provide certain data may prevent the Data Controller from responding.
Optional and based on consent for non-essential cookies and marketing activities.
10. Cookies
For detailed information on cookies used by this website and how to manage preferences, please refer to the dedicated Cookie Policy.
11. Automated Decision-Making and Profiling
The website does not perform automated decision-making or profiling, unless third-party cookies for marketing or remarketing are used—activities that occur only with prior consent.
12. External Links
This website may contain links to third-party sites. The Data Controller is not responsible for how such third parties process personal data. Users are encouraged to review their respective privacy policies.
13. Changes to This Privacy Policy
The Data Controller reserves the right to update this Privacy Policy at any time. Changes will be published on this page, indicating the date of the latest revision.
14. Contact Information
For questions regarding this Privacy Policy or to exercise your data protection rights:
Data Controller:
[Name / Company Name]
Email: [contact email]
PEC: [PEC, if applicable]
Phone: [number]
