Privacy Policy

PRIVACY POLICY PURSUANT TO GDPR EU 2016/679

Welcome to our website. Please read our Privacy Policy carefully, as it applies whether you are simply browsing the website or using its advanced services. This notice is issued pursuant to the European General Data Protection Regulation (GDPR) 2016/679, which provides for the protection of individuals with regard to the processing of personal data. According to the regulation, such processing will be carried out based on principles of fairness, legality, transparency, and protection of your privacy and rights.

Data Controller

Manelli Impresa S.p.A.
VAT/Tax Code: IT06746680724
Via Clemente Cancelli, 11 – 70043 Monopoli (BA)
Tel. +39 080 747 826 – email: frontoffice@manelli.eu

Types of Data Collected
Among the Personal Data collected, either independently or through third parties, are: Cookies, Usage Data, email, various types of Data, phone number, country, city, province. Full details on each type of collected data are provided in the dedicated sections of this privacy policy or through specific information texts displayed prior to data collection.

Personal Data may be freely provided by the User or, in the case of Usage Data, collected automatically during the use of the website.

Unless otherwise specified, all Data requested is mandatory. If the User refuses to provide the data, it may be impossible to provide the Service. Where the website indicates some Data as optional, Users are free not to provide such Data without consequences for the availability or functioning of the Service.

Users who have doubts about which Data is mandatory are encouraged to contact the Data Controller.

The possible use of Cookies – or other tracking tools – by the website or by the third-party service owners used by the website, unless otherwise specified, aims to provide the Service requested by the User, in addition to the other purposes described in this document and in the Cookie Policy, if available.
The User assumes responsibility for the Personal Data of third parties obtained, published, or shared through the website and guarantees to have the right to communicate or disseminate them, releasing the Data Controller from any liability towards third parties.

Methods and Place of Data Processing

Processing Methods
The Data Controller adopts appropriate security measures to prevent unauthorized access, disclosure, modification, or destruction of Personal Data.
Data processing is carried out using IT and/or telematic tools, with organizational methods and logic strictly related to the purposes indicated.
In addition to the Data Controller, in some cases, other parties involved in the website’s operation (administrative, sales, marketing, legal, system administrators) or external parties (such as third-party technical service providers, mail carriers, hosting providers, IT companies, communication agencies, consultancy firms) may have access to the Data. These external parties may also be appointed, if necessary, as Data Processors by the Data Controller. The updated list of Data Processors can be requested from the Data Controller at any time.

Legal Basis of Processing

The Data Controller processes Personal Data relating to the User if one of the following conditions is met:

– The User has given consent for one or more specific purposes; Note: in some jurisdictions, the Data Controller may be allowed to process Personal Data without the User’s consent or another of the legal bases specified below, until the User objects (“opts out”) to such processing. However, this does not apply where the processing of Personal Data is governed by European data protection legislation.

  • The processing is necessary for the performance of a contract with the User and/or for pre-contractual measures;
  • The processing is necessary to comply with a legal obligation to which the Data Controller is subject;
  • The processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the Data Controller;
  • The processing is necessary for the purposes of the legitimate interests pursued by the Data Controller or by a third party.

It is always possible to request clarification from the Data Controller about the legal basis of each processing operation and, in particular, to specify whether the processing is based on the law, provided for by a contract, or necessary to conclude a contract.

Place

The Data is processed at the Data Controller’s operational offices and in any other location where the parties involved in the processing are located. For more information, contact the Data Controller.

The User’s Personal Data may be transferred to a country other than the one in which the User is located. To obtain further information about the location of the processing, the User may refer to the section detailing the processing of Personal Data.
The User has the right to obtain information regarding the legal basis for the transfer of Data outside the European Union or to an international organization governed by public international law or formed by two or more countries, such as the UN, as well as regarding the security measures adopted by the Data Controller to protect the Data.
Should any such transfer take place, the User can refer to the relevant sections of this document or inquire with the Data Controller using the contact details provided.

Retention Period

The Data is processed and stored for the time required for the purposes for which it has been collected.
Therefore:

– Personal Data collected for purposes related to the performance of a contract between the Data Controller and the User will be retained until such contract has been fully performed.

– Personal Data collected for the purposes of the legitimate interests of the Data Controller will be retained for as long as such interests are pursued. The User can obtain further information regarding the legitimate interests pursued by the Data Controller in the relevant sections of this document or by contacting the Data Controller.

When the processing is based on the User’s consent, the Data Controller may retain the Personal Data for longer until such consent is revoked. Furthermore, the Data Controller may be obliged to retain Personal Data for a longer period to comply with a legal obligation or by order of an authority.
At the end of the retention period, Personal Data will be deleted.

Consequently, at the end of this period, the right to access, deletion, correction, and the right to data portability can no longer be exercised.

Purposes of Processing Collected Data

The Data concerning the User is collected to allow the Data Controller to provide its Services, as well as for the following purposes: Statistics, Remarketing and behavioral targeting, Managing support and contact requests, A/B testing, Contacting the User, Social features, Managing contacts and sending messages, Tag management, Heat mapping and session recording, Hosting and backend infrastructure, Interaction with online survey platforms, Interaction with data collection platforms and other third parties, Infrastructure monitoring, and Managing contacts and sending messages.
For further detailed information on the purposes of the processing and on the Personal Data specifically relevant for each purpose, the User may refer to the relevant sections of this document.

Details on the Processing of Personal Data

Personal Data is collected for the following purposes using the following services:

  • Contacting the User
  • Social features
  • Managing contacts and sending messages

These types of services allow the management of a database of email contacts, phone contacts, or other types of contacts, used to communicate with the User.
These services may also collect data concerning the date and time the User views the messages, as well as the User’s interaction with them, such as information on clicks on links within the messages.

Managing Support and Contact Requests

These types of services allow the website to manage support and contact requests received via email or other tools, such as the contact form.
The Personal Data processed depends on the information provided by the User in the messages and the tool used for communication (e.g., the email address).

Hosting and Backend Infrastructure

These types of services host Data and files that enable the website to function, allowing its distribution and providing a ready-to-use infrastructure for specific features of the website.
Some of these services operate through geographically distributed servers, making it difficult to determine the exact location where the Personal Data is stored.

Interaction with Data Collection Platforms and Other Third Parties

These types of services allow Users to interact with data collection platforms or other services directly from the website’s pages in order to save and reuse data.
If one of these services is installed, it may collect Usage Data related to the pages on which it is installed, even if Users do not actively use the service.

Infrastructure Monitoring

These types of services allow the website to monitor the use and behavior of its various components, to improve performance, functionality, maintenance, or troubleshooting.

The Personal Data processed depends on the characteristics and mode of implementation of these services, which by their nature filter the website’s activity.

Statistics

The services contained in this section allow the Data Controller to monitor and analyze traffic data and track User behavior.

Google Analytics (Google Ireland Limited)

Google Analytics is a web analysis service provided by Google Ireland Limited. Google uses the collected Personal Data to track and examine the use of the website, compile reports, and share them with other services developed by Google.
Google may use the collected Personal Data to contextualize and personalize the ads of its own advertising network.

Facebook Analytics for Apps (Facebook, Inc.)

Facebook Analytics for Apps is a statistics service provided by Facebook, Inc.
Collected Personal Data: Usage Data and various types of Data as specified in the privacy policy of the service.

Unique Device Identification

The website may track Users through the saving of a unique identification code of their device, for statistical purposes or to store User preferences.

User Rights

Users may exercise certain rights regarding their Data processed by

the Data Controller.

In particular, Users have the right to:

  • Withdraw their consent at any time;
  • Object to the processing of their Data;
  • Access their Data;
  • Verify and request rectification;
  • Obtain the deletion of their Data;
  • Receive their Data and have it transferred to another controller;
  • Lodge a complaint before their competent data protection authority.

Definitions and Legal References

For more information, you can refer to the European General Data Protection Regulation (GDPR) 2016/679.