Home » Privacy policy

Privacy policy

Privacy Policy of appenninoemilia.it
This Application collects certain Personal Data from its Users.

Data Controller
Emilia Tourist Destination – Public body instrumental to local authorities.
Registered office: Str. Martiri della libertà 15, 43023 Parma (Italy)
Data Controller’s email address: privacy@visitemilia.com, certified email protocollo.dtemilia@pec.it.

Types of Data Collected
Among the Personal Data collected by this Application, independently or through third parties, there are: Cookies; Usage data.
Full details on each type of data collected are provided in the dedicated sections of this privacy policy or through specific information texts displayed before the data is collected.
Personal Data may be freely provided by the User or, in the case of Usage Data, collected automatically during the use of this Application.
Unless otherwise specified, all Data required by this Application is mandatory. If the User refuses to communicate them, it may be impossible for this Application to provide the Service. In cases where this Application indicates some Data as optional, Users are free to refrain from communicating such Data, without this having any consequence on the availability of the Service or on its operation.
Users who have doubts about which Data are mandatory, are encouraged to contact the Owner.
Any use of Cookies – or of other tracking tools – by this Application or by the owners of third-party services used by this Application, unless otherwise specified, is intended to provide the Service requested by the User, in addition to the additional purposes described in the present document and in the Cookie Policy, if available.
The User assumes the responsibility of the Personal Data of third parties obtained, published or shared through this Application and guarantees to have the right to communicate or disseminate them, freeing the Owner from any liability to third parties.

Mode and place of processing of the collected data
Processing
methodsThe Data Controller adopts the appropriate security measures aimed at preventing unauthorized access, disclosure, modification or destruction of Personal Data.
The processing is carried out using IT and/or telematic tools, with organizational methods and logics strictly related to the purposes indicated. In addition to the Owner, in some cases, the Data may be accessible to certain types of persons in charge, involved with the operation of this Application (administration, sales, marketing, legal, system administration) or external parties (such as third-party technical service providers, mail carriers, hosting providers, IT companies, communications agencies) appointed, if necessary, as Data Processors by the Owner. The updated list of Data Processors can always be requested from the Data Controller.

Legal basis of the processing
The Data Controller processes Personal Data relating to the User in the event that one of the following conditions exists:
• the User has given consent for one or more specific purposes; Note: in some jurisdictions, the Data Controller may be authorized to process Personal Data without the User’s consent or another of the legal bases specified below, until the User objects (“opt-out”) to such processing. However, this is not applicable if the processing of Personal Data is governed by European legislation on the protection of Personal Data;
• the processing is necessary for the performance of a contract with the User and/or the execution of pre-contractual measures;
• the processing is necessary to comply with a legal obligation to which the Data Controller is subject;
• the processing is necessary for the performance of a task carried out in the public interest or for the exercise of official authority vested in the Data Controller;
• the processing is necessary for the pursuit of the legitimate interest of the Data Controller or third parties.
However, it is always possible to ask the Data Controller to clarify the concrete legal basis of each treatment and in particular to specify whether the treatment is based on the law, provided for by a contract or necessary to conclude a contract.

Location
The Data are processed at the Data Controller’s operational offices and in any other place where the parties involved in the processing are located. For more information, please contact the Data Controller.
Your Personal Data may be transferred to a country other than the country in which you are located. To obtain further information on the place of processing, the User may refer to the section relating to the details on the processing of Personal Data.
The User has the right to obtain information regarding the legal basis of the transfer of Data outside the European Union or to an international organization under public international law or constituted by two or more countries, such as the UN, as well as regarding the security measures adopted by the Data Controller to protect the Data.

The User can check if one of the transfers described above takes place by examining the section of this document relating to the details on the processing of Personal Data or request information from the Data Controller by contacting him at the details indicated at the beginning.

Retention
periodThe Data are processed and stored for the time required by the purposes for which they were collected.
Therefore:
• Personal Data collected for purposes related to the execution of a contract between the Data Controller and the User will be retained until the execution of such contract is completed.
• Personal Data collected for purposes related to the legitimate interest of the Data Controller will be retained until such interest is satisfied. The User can obtain further information regarding the legitimate interest pursued by the Owner in the relevant sections of this document or by contacting the Owner.
When the processing is based on the User’s consent, the Data Controller may retain the Personal Data for longer until such consent is withdrawn. Furthermore, the Data Controller may be obliged to keep Personal Data for a longer period in compliance with a legal obligation or by order of an authority.

At the end of the retention period, Personal Data will be deleted. Therefore, at the end of this term, the right of access, cancellation, rectification and the right to data portability can no longer be exercised.

Purposes of the Processing of the Data collected
The User’s Data are collected to allow the Data Controller to provide the Service, comply with legal obligations, respond to requests or executive actions, protect its rights and interests (or those of Users or third parties), identify any malicious or fraudulent activities, as well as for the following purposes: Statistics.
To obtain detailed information on the purposes of the processing and the Personal Data processed for each purpose, the User may refer to the section “Details on the processing of Personal Data”.

Details on the processing of Personal Data
Personal Data are collected for the following purposes and using the following services:

Statistics
The services contained in this section allow the Data Controller to monitor and analyze traffic data and are used to keep track of the User’s behavior.

Google Analytics (Google LLC)
Google Analytics is a web analytics service provided by Google LLC (“Google”). Google uses the Personal Data collected for the purpose of tracking and examining the use of this Application, compiling reports and sharing them with other services developed by Google.
Google may use Personal Data to contextualize and personalize ads from its advertising network.
Personal Data processed: Cookies; Usage data.
Place of processing: United States – Privacy PolicyOpt Out.

Your Rights
Users may exercise certain rights with reference to the Data processed by the Data Controller.
In particular, the User has the right to:
withdraw consent at any time. The User may revoke the consent to the processing of their Personal Data previously expressed.
object to the processing of their Data. The User may object to the processing of their Data when it takes place on a legal basis other than consent. Further details on the right to object can be found in the section below.
access your Data. The User has the right to obtain information on the Data processed by the Data Controller, on certain aspects of the processing and to receive a copy of the Data processed.
verify and request rectification. You can verify the accuracy of your Data and request that it be updated or corrected.
obtain the limitation of processing. When certain conditions are met, the User may request the limitation of the processing of their Data. In this case, the Data Controller will not process the Data for any other purpose than their storage.
obtain the deletion or removal of your Personal Data. When certain conditions are met, the User may request the deletion of their Data by the Data Controller.
receive their Data or have them transferred to another controller. The User has the right to receive their Data in a structured format, commonly used and readable by automatic device and, where technically feasible, to obtain its transfer without obstacles to another holder. This provision is applicable when the Data are processed with automated tools and the processing is based on the User’s consent, on a contract to which the User is a party or on contractual measures connected to it.
lodge a complaint. The User may lodge a complaint with the competent personal data protection supervisory authority or take legal action.

Details on the right to object
When Personal Data are processed in the public interest, in the exercise of official authority vested in the Data Controller or to pursue a legitimate interest of the Data Controller, Users have the right to object to the processing for reasons related to their particular situation.
Users are reminded that, if their Data are processed for direct marketing purposes, they can object to the processing without providing any reason. To find out if the Data Controller processes data for direct marketing purposes, Users can refer to the respective sections of this document.

How to exercise your rights
To exercise the User’s rights, Users may address a request to the contact details of the Owner indicated in this document. Requests are filed free of charge and processed by the Data Controller as soon as possible, in any case within one month.

Cookie Policy
This Application makes use of Trackers. To learn more, the User can consult the Cookie Policy.

Further information on treatment
Defense in court
The User’s Personal Data may be used by the Data Controller in court or in the preparatory stages of its possible establishment to defend against abuses in the use of this Application or related Services by the User.
The User declares to be aware that the Owner may be obliged to disclose the Data by order of public authorities.

Specific
informationAt the request of the User, in addition to the information contained in this privacy policy, this Application may provide the User with additional and contextual information regarding specific Services, or the collection and processing of Personal Data.

System logs and maintenance
For needs related to operation and maintenance, this Application and any third-party services used by it may collect system logs, i.e. files that record interactions and which may also contain Personal Data, such as the User’s IP address.

Information not contained in this policy
Further information in relation to the processing of Personal Data may be requested at any time from the Data Controller using the contact details.

Responding to “Do Not Track” requests

This Application does not support “Do Not Track” requests.
To find out if any third-party services used support them, the User is invited to consult the respective privacy policies.

Changes to this privacy policy
The Data Controller reserves the right to make changes to this privacy policy at any time by notifying Users on this page and, if possible, on this Application and, if technically and legally feasible, by sending a notification to Users through one of the contact details in its possession. Please therefore consult this page frequently, referring to the date of last modification indicated at the bottom.

If the changes concern processing whose legal basis is consent, the Data Controller will collect the User’s consent again, if necessary.
________________________________________
Definitions and legal references

Personal Data (or Data): personal data is any information that, directly or indirectly, also in connection with any other information, including a personal identification number, makes a natural person identified or identifiable.

Usage Data: information collected automatically through this Application (or third-party services employed in this Application), which can include: the IP addresses or domain names of the computers utilized by the Users who use this Application, the URI addresses (Uniform Resource Identifier), the time of the request, the method utilized to submit the request to the server, the method, the the size of the file obtained in response, the numerical code indicating the status of the response from the server (successful, error, etc.), the country of origin, the characteristics of the browser and the operating system used by the visitor, the various temporal connotations of the visit (for example the time spent on each page) and the details of the itinerary followed within the Application, with particular reference to the sequence of pages consulted, to the parameters relating to the operating system and the User’s IT environment.

User: the individual using this Application who, unless otherwise specified, coincides with the Data Subject.

Data subject: the natural person to whom the Personal Data refers.

Data Processor (or Manager): the natural person, legal person, public administration or any other body that processes personal data on behalf of the Data Controller, as set out in this privacy policy.

Data Controller (or Data Controller): the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data and the means adopted, including the security measures relating to the operation and use of this Application. The Data Controller, unless otherwise specified, is the owner of this Application.

This Application: the hardware or software tool through which the Personal Data of Users are collected and processed.

Service: the Service provided by this Application as described in the relative terms (if available) and on this site/application.

European Union (or EU): unless otherwise specified, any reference to the European Union contained in this document is intended to extend to all current member states of the European Union and the European Economic Area.

Cookies: Cookies are Tracking Tools that consist of small portions of data stored within the User’s browser.

Tracking Tool: Tracking Tool means any technology – e.g. Cookies, unique identifiers, web beacons, embedded scripts, e-tags, and fingerprinting – which allows Users to be tracked, for example by collecting or saving information on the User’s device.
________________________________________
Legal references
This privacy policy has been drawn up on the basis of multiple legislative systems, including Articles 13 and 14 of Regulation (EU) 2016/679.
Unless otherwise specified, this privacy policy applies exclusively to this Application.

© 2022 Appennino Emilia | Powered by Altrama Italia