Dear Sir/Madam,
You have contacted us to receive our communications regarding products and events related to our Society. As required by European personal data protection legislation (EU Regulation 679/2016), we are providing you with the following information.
1. The Data Controller, i.e., the party responsible for decisions regarding the purposes, methods and security of personal data, is the company Pisa 1940 S.r.l. with headquarters in Milan, postcode 20121, via Montenapoleone no. 9, tel. 02762081, e-mail compliance@pisa1940.com.
The Data Protection Officer, also known by the acronym DPO, oversees compliance with personal data protection regulations and cooperates with the supervisory authority (the Data Protection Authority).
The Data Protection Officer can be reached:
- by e-mail to dpo@pisa1940.com;
- by traditional mail at the headquarters address;
- by visiting the headquarters in person, by appointment.
2. Purpose and legal basis of processing.
The personal data you provide will be processed for the purposes set out below, according to the following legal bases:
|
Purpose
(Why we process your data)
|
Legal basis
(The legal provision under which the data are processed)
|
Consequences of refusing to provide consent to processing
(What happens if you refuse to provide personal data and/or give consent to processing)
|
|
To respond to your requests for information.
|
Art. 6, Par. 1, Letter b) GDPR - processing is necessary in order to take steps at your request prior to entering into a contract.
|
Your consent is not required.
|
|
To send you our newsletter and communications pertaining to industry news, events, and initiatives that appear to be of interest to you.
|
Art. 6, Par. 1, Letter f) GDPR - processing is necessary for the purposes of the legitimate interests pursued by the controller consisting in promoting its own initiatives.
|
Your consent is not required as you have expressed interest in previous contacts with us. You may exercise your right to object at any time by giving notice of such to the data controller’s contact points. In such an eventuality we will cease sending you the newsletter.
|
|
To send you our Company’s commercial communications of interest.
|
Art. 6, Par. 1, Letter a) GDPR - your consent given in writing, that is, by conscious action such as ticking box in dialogue windows, submitting forms, etc.
|
You are free to express your consent. You may freely revoke it at any time where expressed. If you do not consent or if you revoke your consent, we will not send you our commercial communications except for the communications referred to in the purposes above.
|
3. Recipients and categories of data processed.
The personal data you provide consisting of the identifiers, e-mail address and postal address will be processed only by personnel authorized for this purpose or by specifically designated data processors. Other than those expressly entitled by law, your data will not be disclosed to other parties.
4. Transfer abroad
Your personal data are not transferred outside the European Union.
5. Personal data retention period and criteria used
Personal data processed for these purposes will be retained for three years from your last interaction with us, unless you exercise your right to object free of charge, that is, by freely withdrawing your consent at no cost.
6. Rights of the data subject
In the cases provided for, you have the right to obtain from the company Pisa 1940 S.r.l. access to your personal data and the rectification or erasure thereof or the restriction of processing concerning them or to object to processing (Arts. 15 et seq. of the Regulation). The appropriate application is submitted by contacting the Data Protection Officer (DPO) at the contact details above.
7. Right to lodge a complaint
Data subjects who believe that the processing of personal data relating to them carried out is in violation of the provisions of the Regulation have the right to lodge a complaint with the Supervisory Authority, as provided for in Art. 77 of the Regulation, or the right to an effective judicial remedy (Art. 79 of the Regulation).
8. Collaboration
The protection of your data and compliance with the principles laid down in the regulations, with particular reference to the principle of transparency, are of utmost importance to us. We would be grateful if you would help us by pointing out any misunderstandings of this document or suggesting improvements using the contact details of the Data Controller indicated above.