WEBSITE USERS PRIVACY POLICY
pursuant to Article 13 of Regulation (EU) 2016/679

Pursuant to Regulation (EU) 2016/679 (hereinafter also “GDPR”), on the protection of individuals with regard to the processing of personal data and on the free movement of such data, (hereinafter “Regulation”), we provide information on how personal data are managed on the website that can be reached at the URL https://www.napoligrangourmet.it/

The information is provided exclusively for the aforementioned site and does not concern other websites that may be consulted by the user through links contained therein.

The purpose of this document is to provide information about the procedures, timing and nature of the information that the Data Controller is required to provide to users when they connect to the web pages of the site.

Data Controller

The Data Controller of personal data is PIZZA NAPOLI srl with head office in Via Via Monte Bianco 4/6  -Montecorvino Pugliano (SA) email info@napoligrangourmet.it

The data controller has appointed a Data Protection Officer who can be contacted at info@napoligrangourmet.it

Categories of personal data processed by the data controller

In order to offer the services and allow the use from its website the Data Controller, must necessarily process some personal data. Such data may be provided implicitly by the computer tools used to access the site or may be provided explicitly by the data subject.

The categories of data that may be processed by the Data Controller are:

– technical navigation data related to the IP address, identification codes of the devices used by the user to use the site or services, type of browser and parameters of the device used to connect to the site, name of the internet service provider (ISP), date and time of visit, web page of origin of the visitor (referral) and exit, possibly the number of clicks;

– common identifying data provided by the user (e.g., first name, last name, email, phone number, location, etc.) to follow up on your contact requests or to send you materials you have expressly requested.

Purposes and legal bases of processing

The processing of personal data through the site, has as its purpose the fulfillment of legal obligations, the execution of contractual and pre-contractual activities those administrative instrumental to them.
Also for the purposes of site security, automatically recorded data, such as IP address, could be used, in accordance with the relevant laws, in order to prevent illegal activities or attempts to damage the site or harm other users, or otherwise harmful activities or constituting a crime. The data processed will never be used for user profiling, but only for the purpose of protecting the site and its users.

The provision of the data requested for the above purposes is necessary for the proper use of the gustosorrento.it sitoweb. The processing, therefore, is not subject to consent.

Types of data processed

The use of the website involves the collection of user data in the following two ways:

Navigation data.

Computer systems and software procedures necessary for the operation of this website acquire, during their normal operation, some personal data whose transmission is implicit in the use of Internet communication protocols. This information is not collected to be associated with identified interested parties, but by its very nature could, through processing and association with data held by third parties, allow users to be identified. This category of data includes the IP addresses or domain names of the computers used by users who connect to the site, the addresses in URI (Uniform Resource Identifier) notation of the resources requested, the time of the request, the method used in submitting the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response given by the server (successful, error, etc.) and other parameters relating to the user’s operating system and computer environment.

These data are processed for the sole purpose of obtaining anonymous statistical information on the use of the site and to check its correct functioning.

However, such data could be used to ascertain responsibility in case of hypothetical computer crimes against the site.

Data provided voluntarily by the user

The optional, explicit and voluntary sending of electronic mail to the addresses indicated on this website entails the subsequent acquisition of the sender’s address, necessary to respond to requests, as well as any other personal data included in the message. Likewise, the data that users voluntarily enter in the forms on the website and intended for sending catalogs or informative material will be processed.

Place of data processing

The data are processed at the headquarters of the Data Controller, and at the datacenter of the web Hosting https://www.aruba.it The web hosting is responsible for the processing, processing the data on behalf of the Data Controller.

Period of data retention

Data collected by the site during its operation are kept for the time strictly necessary to carry out the specified activities. Upon expiration, the data will be deleted or anonymized, unless there is no further purpose for its retention.
Data voluntarily provided by users will be kept for as long as necessary to process the requests received.
IP address data used for site security purposes (blocking attempts to damage the site) are retained for 30 days.
Data for analytics (statistics) purposes are kept in aggregate form for 24 months.

Transfer of data to countries outside the EU

Processed data is not transferred outside the European Union area.

Security Measures

We process visitor/user data lawfully and fairly, taking appropriate security measures to prevent unauthorized access, disclosure, modification or destruction of data. We are committed to protecting the security of your personal information during its submission, using Secure Sockets Layer (SSL) software, which encrypts information in transit. The processing is carried out by means of computer and/or telematic tools, with organizational methods and logics strictly related to the stated purposes. In addition to the Data Controller, in some cases, categories of appointees involved in the organization of the site or external parties (such as third-party technical service providers, hosting providers) may have access to the data.

Cookies
The session cookies used on this site avoid the use of other computer techniques potentially prejudicial to the privacy of users’ browsing and do not allow the acquisition of personal data identifying the user.

Rights of the User

Pursuant to the Regulations, the User may, in the manner and within the limits provided by current legislation, exercise the following rights:

– object in whole or in part, for legitimate reasons to the processing of personal data concerning him/her for the purpose of sending advertising or direct sales material or for carrying out market research or commercial communication;
– request confirmation of the existence of personal data concerning him/her (right of access);

 – know its origin;

– receive intelligible communication of it;

– have information about the logic, methods and purposes of processing;

– request the updating, rectification, integration, cancellation, transformation into anonymous form, blocking of data processed in violation of the law, including those no longer necessary for the purposes for which they were collected;
– in cases of consent-based processing, to receive at the sole cost of any support, your data provided to the data controller, in structured, machine-readable form and in a format commonly used by an electronic device;
– the right to file a complaint with the Supervisory Authority https://www.garanteprivacy.it/;

– as well as, more generally, to exercise all the rights granted to him/her by the applicable legal provisions.

Requests should be addressed to the Data Controller.