Information regarding privacy for the web site museolaboratorio.it
In pursuance of Section 13 of Legislative Decree no. 196/2003 Personal Data (hereinafter the “Privacy Code”), we inform you that the treatment of Personal Data (name, surname, email address and any further Personal Data indicated in the message) (the “Data”) by you spontaneously provided on the website museolaboratorio.it (the “Site”) will respect the principles of fairness, legality and transparency and protection of your privacy and your rights.
Please note that this Policy also contains the information required by art. 13 of Regulation (EU) 679/2016, concerning the protection of natural persons with regard to the processing of Personal Data (hereinafter “GDPR”), applicable in all the Member States of the European Union and belonging to the European Economic Area from May 25, 2018.
For purposes of this statement, Data means information that identifies a particular individual, such as name, postal address, email address or phone number. When other information, such as email newsletter choices, product purchases or consumer product preferences, is associated with personal information, this other information also becomes personal information.
Table of contents
- Data Controller
- Our collection of information
- The purposes of Personal Data Processing
- Data Processing Arrangements – Time-limits for storing the Data
- Mandatory or optional nature of providing Data – Consequences of the possible refusal
- Disclosure of your personal information
- Consent to international transfers of personal information
- Do-Not-Track Signals and similar mechanisms
- Embedded content and links to other websites
- Children’s information
- Data Subjects’ Rights and enforcement of this privacy statement
- Contact Us
- Changes to this privacy statement
The Data Controller of Personal Data is the Cultural Association Museo Laboratorio della Civiltà Contadina ONLUS, with registered offices at Via San Giovanni Vecchio 60, 75100 Matera, Italy and tax code 93022450774 (hereafter the “Association” or “We”). The Association is responsible for the legitimate and correct processing of your Data.
Our collection of information
The personal information we collect or receive may include the data described as follows.
When you purchase from us, we’ll ask you to provide information including your name, billing address, shipping address, email address, phone number.
When visitors leave comments or reviews on the Site or use the contact form, we collect the data shown in the relevant form, and also the visitor’s IP address and browser user agent string to help spam detection.
We automatically collect certain standard information that your browser sends to every website you visit, such as your Internet Protocol (IP) address, your browser type and capabilities and language, your operating system, the date and time you access the site and the website from which you linked to one of our Site.
We do not combine this standard information with other personal information.
The Site only make use of technical cookies.
The purposes of Personal Data Processing
The Data provided will be processed by the Data Controller in pursuance of the Privacy Code and according to the GDRP for the following purposes:
- deliver services or carry out transactions you have requested, including, but not limited to, providing information on products or services, processing product orders, handling warranty claims, publication of user’s comments and reviews on the Site, answering users and customers requests and facilitating the use of the Site;
- comply with any legal obligations we have;
- detect, prevent and respond to fraud, intellectual property infringement, violations of our Terms & Conditions, violations of law or another misuse of the Site.
Data Processing Arrangements – Time-limits for storing the Data.
Data will be processed using both paper and electronic means.
We generally store information about you for as long as we need the information for the purposes for which we collect and use it, and we are not legally required to continue to keep it. For example, we will store order information as long as required by law for tax and accounting purposes, while Data relevant to information and / or contact request will be stored for the period of time strictly necessary to execute the request itself;
If you leave a comment or a review, the comment or the review and its metadata are retained indefinitely.
Mandatory or optional nature of providing Data – Consequences of the possible refusal
Generally, you can visit the Site without entering any personal information. On certain pages, we may ask you for personal information to provide a service or carry out a transaction that you have requested. You may also provide some personal information to us when you contact us (e.g., with a comment, inquiry or support request). The personal information we collect or receive may include:
You are not required to provide any of this information, but if you do not, we may not be able to provide you the requested service or complete your transaction.
Disclosure of your personal information
We share information with third parties who help us provide our orders and store services to you; for example with companies that delivers our products from the Shop. In those cases, we provide these companies with only those elements of your personal information they need to realize the delivery, and these companies and their employees are prohibited from using that personal information for any other purpose.
We may disclose personal information if required or authorized to do so by law or in the good-faith belief that such action is necessary to comply with legal requirements or with legal process served on us, to protect and defend our rights or property or, in urgent circumstances, to protect the personal safety of any individual.
We accept payments through PayPal. When processing payments, some of your data will be passed to PayPal, including information required to process or support the payment, such as the purchase total and billing information.
Except as described below, personal information that we collect about you through our Site or that you provide to us when you contact us will not be shared outside of the Association without your permission.
Consent to international transfers of personal information
The personal information we collect on our Site or that you provide to us when you contact us are stored and processed in Italy.
No Data is normally transfered outside this country, exception made for data published by the user through comments and reviews on the Site, for which globally delocalized “cache” copies may exist due to the use of Cloudflare Content Delivery Network. See Cloudflare privacy poilcy for more details.
The Association is committed to protecting the security of your personal information. We use a variety of security technologies and procedures to help protect your personal information from unauthorized access, use or disclosure. For example, we store the personal information you provide on computer systems with limited access that are located in facilities to which access is limited.
We use HTTPS protocol for the entire Site.
Do-Not-Track Signals and similar mechanisms
Some web browsers may transmit “do-not-track” signals to the sites with which the user communicates. Because of differences in how web browsers incorporate and activate this feature, it is not always clear whether users intend for these signals to be transmitted, or whether they even are aware of them. There currently is disagreement, including among participants in the leading internet standards-setting organization, concerning what, if anything, websites should do when they receive such signals.
The Association currently does not take action in response to these signals. If and when a final standard is established and accepted, the Association will reassess how to respond to these signals.
Embedded content and links to other websites
The site may include links to other websites and embedded content (e.g. no-cookie embedded version of Youtube videos, “social” buttons, etc.).
Following links or activating embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.
With no such user actions, the Site is designed not to transfer any personal information to external websites.
Although we try to link only to websites that share our high standards and respect for privacy, we are not responsible for the content, security, or privacy practices employed by other websites.
The Association does not knowingly collect information from children and does not specifically target or direct its Site to children.
Data Subjects’ Rights and enforcement of this privacy statement
According to article 7 of the Privacy Code and according to articles 13, paragraph 2, letters b) and d), 15, 16, 17, 18, 19, 20 and 21 of the GDPR, we inform you that:
- You have the right to ask the Data Controller to access your Personal Data, correct or delete them or limit the processing of your Data or to oppose the processing of your Data, in addition to the right to Data portability;
- You have the right to lodge a complaint with the Data Protection Authority, following the procedures and instructions published on the official website of the Authority;
- any corrections or cancellations or limitations on the processing carried out upon your request – unless this proves impossible or involves a disproportionate effort – will be communicated by us to each of the recipients to whom your Data may have been sent in accordance with this information.
The exercise of the preceding rights is not subject to any form constraint and is free. To this end, you can use the page “Data Access Request” available on the Site through the following button.
During the procedure an email address will be requested. Access to all Data linked to the said email address will be then authorized with a confirmation mail.
If you have questions regarding this statement or our handling of your personal information, please contact us using the contact information listed below. We will promptly address your concern and strive to reach a satisfactory resolution.
Museo Laboratorio della Civiltà Contadina
Via San Giovanni Vecchio, 60
75100 – Matera
Changes to this privacy statement
The Association may occasionally update this privacy statement. When we do, we will revise the “last updated” date at bottom of the privacy statement. If we make any material changes in the way we collect, use and/or share personal information that we collect about you through the Site, we will notify you by sending you an email at the last email address that you provided us and/or by prominently posting notice of the changes on the Site.
Last updated: 11 August 2018