Loading...

Privacy

Dear User,

We wish to inform you that "European Regulation 2016/679 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data" (hereinafter the "GDPR") establishes the protection of natural persons with regard to the processing of personal data as a fundamental right. Pursuant to Article 13 of the aforementioned Regulation, we hereby inform you that:


DATA CONTROLLER AND DPO: The Data Controller for your personal data is Studio Notarile Ciro de Vivo, with registered office at Via Sant'Andrea, 19, 20121, Milan (MI), responsible for the lawful and correct use of your personal data, and which you may contact for any information or request at info@notaiodevivo.net. The Data Controller's organisation is also equipped with a Data Protection Officer ("DPO"), who is available for any information relating to the processing of personal data carried out by the Data Controller. You may contact the DPO by writing to: dpo@notaiodevivo.net.


CATEGORIES OF DATA: The Data Controller will process your personal data, including:

  • Automatically collected data. The IT systems and applications dedicated to the operation of this website collect, in the course of their normal operation, certain data (the transmission of which is implicit in the use of Internet communication protocols) potentially associated with identifiable users. The data collected includes IP addresses and domain names of the computers used by users connecting to the site, URI (Uniform Resource Identifier) addresses of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the server's response, and other parameters relating to the operating system, browser, and IT environment used by the user. These data are processed, for the strictly necessary time, solely for the purpose of obtaining statistical information on the use of the website and monitoring its regular operation. The provision of such data is mandatory as it is directly linked to the web browsing experience.
  • Data voluntarily provided by the user. The voluntary and explicit sending of emails to the addresses indicated through the various access channels of this website does not require consent, and the optional completion of specifically designed forms results in the subsequent acquisition of the sender's/user's address and data, which are necessary to respond to submitted requests and/or provide the requested service. The voluntary sending of emails to our email addresses by users does not require further notices or requests for consent. The user must therefore explicitly consent to the use of the data entered in these forms in order to submit the request.
  • The website uses technical cookies necessary for the correct functioning of the site. The website also uses third-party cookies. For further information, please refer to the cookie policy.

SOURCE OF PERSONAL DATA: The personal data held by the Data Controller is collected directly from the data subject.


PURPOSES OF PROCESSING AND LEGAL BASIS: The processing of your data is based on your consent and is carried out for the following purposes:

  • To manage any requests submitted by the user;
  • To monitor the correct functioning of the portal.

In addition, data will be processed in anonymised and/or aggregated form to improve the web browsing experience and to monitor and protect the correct functioning of the portal. Finally, your data will be processed for the fulfilment of obligations imposed by laws, regulations, and/or EU legislation, or ordered by supervisory and control authorities; in this case, the legal basis for processing is compliance with the legal obligations to which the Data Controller is subject. This website processes your data lawfully and correctly, adopting appropriate security measures to prevent unauthorised access, disclosure, unauthorised modification, or destruction of your data.


RECIPIENTS OF DATA: To the extent relevant to the processing purposes indicated above, your data may be shared with partners, consulting firms, and private companies appointed as Data Processors by the Data Controller, whether pursuant to legal obligations or to fulfil your specific requests. The Data Processors and authorised persons currently in place are specifically identified in the Privacy Document, which is updated on a periodic basis.


TRANSFER OF DATA ABROAD: The data collected is not transferred abroad.


RETENTION PERIOD: The data collected will be retained for no longer than is necessary to fulfil the purposes for which it is processed (the "storage limitation principle", Art. 5 GDPR), or in accordance with the deadlines established by applicable law. A periodic review is carried out to assess whether the data retained remains relevant in relation to the purposes for which it was collected.


RIGHTS OF THE DATA SUBJECT: The data subject always has the right to request from the Data Controller access to their data, rectification or erasure thereof, restriction of processing, the right to object to processing, the right to data portability, and the right to withdraw consent to processing — exercising these and any other rights provided for under the GDPR by means of a simple communication to the Data Controller. The data subject also has the right to lodge a complaint with the data protection supervisory authority if they believe that an unlawful act has occurred in connection with the processing of their data.


METHODS OF DATA PROCESSING: The personal data you provide will be subject to processing operations in compliance with the aforementioned legislation and with the confidentiality obligations that underpin the Data Controller's activities. Data will be processed using IT tools, on paper, and on any other appropriate medium, in accordance with adequate security measures pursuant to Art. 5(1)(f) of the GDPR.


This notice does not apply to other websites that may be accessed via links present on websites under the Data Controller's domain, for which the Data Controller shall not be considered in any way responsible.