Privacy Disclaimer
The Privacy Policy was updated on May 25, 2018.
1. Introduction
Regulation (EU) 2016/679 on the protection of natural persons with regard to the processing of personal data establishes, in particular, that the interested party must be informed in advance about the use of the data concerning him. To this end and in accordance with the legislation on the protection of personal data, SODINI BIJOUX SRLU as "Data Controller", is required to provide you (aiming to respect both fundamental rights and to comply with the principles recognized by the Charter of Fundamental Rights of the European Union) information about the use of your personal data.
2. Source of personal data
The personal data in our possession are processed in compliance with the law and confidentiality obligations. They are also provided through remote communication techniques that the company can use, directly from the subject to whom the personal data refers ("Interested Party"). Personal data may also be acquired in the exercise of its business or from third parties. In the latter case, we will take care to provide the Interested Parties with the information referred to in the introduction at the time of registration of the data concerning them or, in any case, no later than the first possible communication.
3. Purpose of the processing
The personal data provided by you or acquired in the context of our activity will be processed in accordance with the principles of correctness, lawfulness, transparency and protection of your privacy and your rights, for the following purposes:
a) execution of obligations arising from contracts stipulated with the Data Controller and/or fulfillment, prior to the conclusion of the contract, of specific requests from the Interested Party;
b) fulfillment of obligations established by law, regulations or community legislation, or by provisions issued by Authorities authorized to do so by law and by supervisory and control bodies.
4. Data processing methods
In relation to the purposes described in the previous paragraph, the processing of personal data occurs through manual, computerised and telematic tools with logics strictly related to the purposes highlighted above and, in any case, in a way that guarantees the security and confidentiality of the data itself (with particular regard to the case of use of remote communication techniques).
5. Categories of data subject to processing
In relation to the purposes described in the previous paragraph 3, the Data Controller processes personal data other than "special" data. In particular, the processing carried out refers to personal data relating to customers and potential customers such as name, address, personal identification data, tax code, etc. For these reasons, we invite you not to communicate "sensitive" and/or "judicial" personal data to the same. However, if the Data Controller, for its operations, needs to process data of a "special" nature (i.e. data suitable for revealing racial and ethnic origin, religious, philosophical or other beliefs in general, political opinions, membership of parties, trade unions, associations or organizations of a religious, philosophical, political or trade union nature, as well as personal data suitable for revealing the state of health and sexual life), the same will take care to send you an integration to this Information and the related request for consent to the processing, subject to authorization (where applicable) of the Guarantor for the protection of personal data, according to the methods and for the purposes indicated above.
6. Categories of subjects to whom the data may be communicated
In order to pursue the purposes described in paragraph 3, the Data Controller may communicate your personal data to third parties belonging to the following categories:
1. entities providing banking, financial and insurance services;
2. subjects who perform data acquisition, processing and elaboration services necessary for the execution of the instructions received from the customers;
3. subjects who carry out activities of transmission, packaging, transport and sorting of communications with the interested party;
4. subjects who carry out documentation archiving and data entry activities;
5. subjects who carry out customer assistance activities (e.g. call centers, help desks, etc.);
6. subjects carrying out transport activities;
7. subjects who carry out assistance and consultancy activities (e.g. Legal, Fiscal, etc.);
The subjects belonging to the categories listed above operate in complete autonomy as distinct data controllers, whose constantly updated list is available from the Data Controller himself.
The complete list can be requested by writing directly to the Person in charge of responding to interested parties.
Your personal data may also be disclosed to the Data Controller's employees, who have been specifically appointed as Data Processors and/or Persons in Charge of the processing.
IN NO EVENT WILL THE PROCESSED DATA BE DISSEMINATED
7. Mandatory data
The provision of data is mandatory. Any refusal to provide us, in whole or in part, with your personal data or to authorize the processing could result in the failure or partial execution of the contract or the failure to execute the assignment.
8. Duration of treatment
Personal data are retained for the entire duration of the contractual relationship and, in the event of revocation and/or other type of termination of the aforementioned relationship, within the terms established by law for the fulfillment of, for example, tax obligations.
For marketing purposes, data will be retained until consent is revoked or for the period established by law or by Provisions issued by the Supervisory Authority.
9. Rights of the interested party
Finally, we inform you that the legislation on the protection of personal data gives the interested parties the possibility of exercising specific rights. You may, at any time, exercise the rights as expressed in articles 15, 16, 17, 18, 19, 20, 21, 22 of EU Regulation 2016/679, and in particular:
- access to personal data;
- to obtain the rectification or cancellation of the same or the limitation of the processing that concerns him;
- to oppose the processing; to the portability of data;
- to withdraw consent: the withdrawal of consent does not affect the lawfulness of the processing based on the consent given before the withdrawal;
- to lodge a complaint with the Supervisory Authority (Privacy Guarantor)
The Data Controller has appointed Mr. Federico Sodini, domiciled for his functions at the headquarters, as the person responsible for responding to the interested party in the event of exercising the rights referred to in paragraph 8.
The requests referred to in the previous paragraph 8 may be submitted to the aforementioned Data Controller in writing or by email to the address privacy@sodinibijoux.it.
The requests referred to in the previous paragraph 8, letters a), b) and c) may also be made orally.