Privacy Policy
This privacy policy has been drawn up in accordance with various legal provisions, including Articles 13 and 14 of Regulation (EU) 2016/679.
For detailed information on the purposes of the processing and the Personal Data processed for each purpose, and to view a detailed list of the platforms used for processing such data, the User may refer to the page COOKIE POLICY
Data Controller
METALCAM S.P.A.
VAT No. 00543470983
Tax No. 07290430151
The Data Controller’s email address: forging@metalcam.it
Types of data collected
The Personal Data collected by this App, either directly or through third parties, includes:
Tracking tools, usage data, email address, first name, surname, telephone number, device information, language.
Full details regarding each type of data collected are provided in the relevant sections of this privacy policy or via specific information notices displayed prior to the collection of the data.
Personal Data may be freely provided by the User or, in the case of Usage Data, collected automatically whilst using this Application.
Unless otherwise specified, all Data requested by this Application is mandatory. If the User refuses to provide such data, it may be impossible for this Application to provide the Service. In cases where this Application indicates certain Data as optional, Users are free to refrain from providing such Data, without this having any impact on the availability of the Service or its functionality.
Users who have any doubts as to which Data is mandatory are encouraged to contact the Data Controller.
Any use of Cookies – or other tracking tools – by this Application or by the providers of third-party services used by this Application, unless otherwise specified, is intended to provide the Service requested by the User, in addition to the further purposes described in this document and in the Cookie Policy, where available.
The User assumes responsibility for any third-party Personal Data obtained, published or shared via this Application and warrants that they have the right to disclose or disseminate such data, thereby releasing the Data Controller from any liability towards third parties.
Methods and location of data processing
Methods of processing
The Data Controller implements appropriate security measures to prevent unauthorised access, disclosure, alteration or destruction of Personal Data.
Processing is carried out using IT and/or telecommunications tools, in accordance with organisational procedures and logic strictly related to the purposes indicated. In addition to the Data Controller, in some cases, other parties involved in the organisation of this Application (administrative, sales, marketing and legal staff, system administrators) or external parties (such as third-party technical service providers, postal couriers, hosting providers, IT companies and communication agencies) may have access to the Data; these parties may also be appointed, where necessary, as Data Processors by the Data Controller. An up-to-date list of Data Processors may always be requested from the Data Controller.
Legal basis for processing
The Data Controller processes Personal Data relating to the User if any of the following conditions apply:
- the User has given consent for one or more specific purposes; Note: in some jurisdictions, the Data Controller may be authorised to process Personal Data without the User’s consent or any other of the legal bases specified below, provided that the User does not object (‘opt-out’) to such processing. This does not, however, apply where the processing of Personal Data is governed by European legislation on the protection of Personal Data;
- the processing is necessary for the performance of a contract with the User and/or for the implementation of pre-contractual measures;
- the processing is necessary for compliance with a legal obligation to which the Data Controller is subject;
- the processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the Data Controller;
- the processing is necessary for the purposes of the legitimate interests pursued by the data controller or by a third party.
You may, however, always ask the Data Controller to clarify the specific legal basis for each processing operation and, in particular, to specify whether the processing is based on law, required by a contract, or necessary for the conclusion of a contract.
Location
The Data is processed at the Data Controller’s operational premises and at any other location where the parties involved in the processing are situated. For further information, please contact the Data Controller.
The User’s Personal Data may be transferred to a country other than the one in which the User is located. For further information on the location of the processing, the User may refer to the section detailing the processing of Personal Data.
The User has the right to obtain information regarding the legal basis for the transfer of Data outside the European Union or to an international organisation governed by public international law or established by two or more countries, such as the UN, as well as regarding the security measures adopted by the Data Controller to protect the Data.
You can check whether any of the transfers described above are taking place by referring to the section of this document detailing the processing of personal data, or by contacting the Data Controller using the contact details provided at the beginning of this document.
Shelf life
Data is processed and stored for as long as is necessary for the purposes for which it was collected.
Therefore:
- Personal Data collected for purposes related to the performance of a contract between the Data Controller and the User will be retained until the performance of that contract has been completed.
- Personal Data collected for purposes relating to the Data Controller’s legitimate interests will be retained until such interests are satisfied. The User may obtain further information regarding the legitimate interests pursued by the Data Controller in the relevant sections of this document or by contacting the Data Controller.
Where processing is based on the User’s consent, the Data Controller may retain Personal Data for a longer period until such consent is withdrawn. Furthermore, the Data Controller may be required to retain Personal Data for a longer period in order to comply with a legal obligation or following an order from an authority.
At the end of the retention period, the personal data will be deleted. Consequently, once this period has expired, the rights of access, erasure, rectification and data portability can no longer be exercised.
Purpose of the processing of the data collected
User Data is collected to enable the Data Controller to provide the Service, comply with legal obligations, respond to requests or enforcement actions, protect its rights and interests (or those of Users or third parties), identify any malicious or fraudulent activity, and for the following purposes: statistics, platform services and hosting.
User Rights
Users may exercise certain rights in relation to the data processed by the Data Controller.
In particular, the User has the right to:
- withdraw your consent at any time. You may withdraw your previously given consent to the processing of your personal data.
- to object to the processing of their personal data. You may object to the processing of your data where it is carried out on a legal basis other than consent. Further details regarding the right to object are set out in the section below.
- access their data. You have the right to obtain information about the data processed by the Data Controller, about certain aspects of the processing, and to receive a copy of the data processed.
- check and request a correction. Users may check that their personal data is correct and request that it be updated or corrected.
- to have the processing restricted. Where certain conditions apply, the User may request that the processing of their Data be restricted. In such cases, the Data Controller will not process the Data for any purpose other than storage.
- to have their Personal Data erased or removed. Where certain conditions are met, the User may request that the Data Controller delete their Data.
- to receive their data or have it transferred to another data controller. The User has the right to receive their Data in a structured, commonly used and machine-readable format and, where technically feasible, to have it transferred without hindrance to another controller. This provision applies where the Data is processed by automated means and the processing is based on the User’s consent, on a contract to which the User is a party, or on contractual measures related thereto.
- make a complaint. You may lodge a complaint with the relevant data protection supervisory authority or take legal action.
Details regarding the right to object
Where Personal Data is processed in the public interest, in the exercise of official authority vested in the Data Controller, or to pursue a legitimate interest of the Data Controller, Users have the right to object to the processing on grounds relating to their particular situation.
Users are advised that, should their data be processed for direct marketing purposes, they may object to such processing without providing any reason. To find out whether the Data Controller processes data for direct marketing purposes, Users may refer to the relevant sections of this document.
How to exercise your rights
To exercise their rights, users may submit a request to the Data Controller’s contact details provided in this document. Requests are submitted free of charge and will be processed by the Data Controller as soon as possible, and in any event within one month.
Further information on the treatment
Legal defence
The User’s Personal Data may be used by the Data Controller in legal proceedings or during the preparatory stages leading up to such proceedings to defend against any misuse of this Application or the related Services by the User.
The User acknowledges that the Data Controller may be required to disclose the Data in response to a request from public authorities.
Specific information
At the User’s request, in addition to the information contained in this privacy policy, this Application may provide the User with further, context-specific information regarding specific Services, or the collection and processing of Personal Data.
System logs and maintenance
For operational and maintenance purposes, this Application and any third-party services it uses may collect system logs, i.e. files that record interactions and may also contain Personal Data, such as the User’s IP address.
Information not included in this policy
Further information regarding the processing of personal data may be requested at any time from the Data Controller using the contact details provided.
Response to “Do Not Track” requests
This app does not support “Do Not Track” requests.
To find out whether any third-party services used support this, the User is advised to consult the relevant privacy policies.
Changes to this privacy policy
The Data Controller reserves the right to amend this privacy policy at any time by notifying Users on this page and, where possible, within this Application; and, where technically and legally feasible, by sending a notification to Users via one of the contact details held by the Data Controller. Please therefore check this page regularly, referring to the date of the last update shown at the bottom.
Where the changes relate to processing operations for which the legal basis is consent, the Data Controller will seek the User’s consent again, if necessary.
Definitions and legal references
Personal Data (or Data)
Personal data means any information which, directly or indirectly, including in conjunction with any other information, such as a personal identification number, identifies or makes identifiable a natural person.
Usage Data
This refers to information collected automatically through this Application (including from third-party applications integrated into this Application), such as: the IP addresses or domain names of the computers used by the User connecting to this Application, the URI (Uniform Resource Identifier) addresses, the time of the request, the method used to submit the request to the server, the size of the file received in response, the numerical code indicating the status of the server’s response (successful, error, etc.), the country of origin, the characteristics of the browser and operating system used by the visitor, various time-related aspects of the visit (for example, the time spent on each page) and details regarding the path followed within the Application, with particular reference to the sequence of pages viewed, and parameters relating to the User’s operating system and IT environment.
User
The individual using this Application, who, unless otherwise specified, is the Data Subject.
Interested
The natural person to whom the personal data relates.
Data Controller (or Controller)
Any natural person, legal entity, public authority or any other body that processes personal data on behalf of the Data Controller, as set out in this privacy policy.
Data Controller (or Controller)
The natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data and the measures adopted, including security measures relating to the operation and use of this Application. Unless otherwise specified, the Data Controller is the owner of this Application.
This app
The hardware or software tool used to collect and process Users’ Personal Data.
Service
The Service provided by this Application, as defined in the relevant terms (if any) on this website/application.
European Union (or EU)
Unless otherwise specified, any reference to the European Union in this document is deemed to include all current member states of the European Union and the European Economic Area.
Cookies
Cookies are tracking tools consisting of small pieces of data stored within the user’s browser.
Tracking Tool
The term ‘Tracking Tool’ refers to any technology – e.g. cookies, unique identifiers, web beacons, embedded scripts, e-tags and fingerprinting – that enables the tracking of Users, for example by collecting or storing information on the User’s device.
Legal references
This privacy policy has been drawn up in accordance with various legal provisions, including Articles 13 and 14 of Regulation (EU) 2016/679.
Unless otherwise stated, this privacy policy applies solely to this App.