Privacy Policy for Users

UPDATED: October 1st, 2021 V.CTP202101

(previous version updated March 2021)

MainADV S.r.l with registered offices in Via Raiale 285 P.O.Box 12, 65128 – Pescara, Italy, Tax Code/VAT No. IT01856630684 (hereinafter the “Data Controller”), as the Controller of personal data of the users who browse and are registered on the Website (hereinafter the “Users”) provides the following privacy policy according to Article 13 of EU Regulation 2016/679 dated 27 April 2016 (hereinafter, “Regulation” or “Applicable Law”).

Any services offered by Data Controller are reserved for individuals who are 18 years and over. Therefore, the Data Controller does not collect personal data relating to individuals under 18 years of age. Upon request of the Users, the Data Controller will promptly delete all personal data that has been involuntarily collected and related to subjects under the age of 18.

The Data Controller takes the utmost account of its Users’ right to privacy and protection of personal data. For any information related to this privacy policy, Users may contact the Data Controller at any time, using the following methods:

  • By sending a registered letter with return receipt to the registered offices of the Data Controller (Privacy department – MainADV S.r.l.: Via Raiale 285 P.O.Box 12, 65128 Pescara, Italy);
  • By sending an e-mail to [email protected]

Users may also contact the Data Protection Officer (RPD or DPO) of the Data Controller at the following address: [email protected]

  1. Processing purposes

The personal data of the Users will be processed lawfully by the Data Controller pursuant to Article 6 of the Regulation for the following processing purposes:

Contractual obligations and provision of the service, personal data are processed by the Data Controller for the purpose of following up the User’s request relating to the receipt of the Data Controller’s insight report, as well as for evaluating customer satisfaction and fulfil the User’s specific requests. User data collected by the Data Controller for this purpose include: first name, last name, company name and e-mail address. Unless the User gives the Data Controller a specific and optional consent to the processing of their data for the further purposes set out in the following paragraphs, the User’s personal data will be used by the Data Controller for the sole purpose of ascertaining the identity of the User, thus avoiding possible scams or abuses, and contacting the User only for service reasons (e.g. sending of notifications regarding the services offered by the Data Controller). Notwithstanding the provisions contained elsewhere in this privacy policy, under no circumstances will the Data Controller make the personal data of the Users accessible to other Users and/or third parties.

Administrative and accounting purposes, or to perform organizational, administrative, financial and accounting activities, such as internal organizational activities and activities functional to the fulfilment of contractual and pre-contractual obligations;

Legal obligations, or to fulfil obligations provided by the law, an authority, a regulation or European legislation.

The provision of personal data for the purposes of processing indicated above is optional but necessary; failure to provide the data will make it impossible for the User to download the report and take advantage of the services offered by the Data Controller.

Personal data needed for processing purposes described in this paragraph 1 are indicated with an asterisk in the registration form.

2. Other processing purposes: marketing and newsletter

With the User’s free and optional consent, some of the User’s personal data (name and e-mail address) may also be processed by the Data Controller for marketing purposes (as for example, sending of advertising material, direct sales and commercial communication or sending newsletters containing news regarding the sector relative to the activities and the services offered by the Data Controller), or in order for the Data Controller to contact the User by e-mail, to propose to the User the purchase of products and/or services offered by the Data Controller and/or by third parties, to present offers, promotions and business opportunities by the Data Controller and/or by third parties.

In case of lack of consent, the possibility to download the report will not be in any way affected.

In case of consent, the User may at any time revoke the same, making a request to the Data Controller in the manner indicated in paragraph 5 below.

The User can also easily oppose further sending of promotional communications via e-mail by clicking on the appropriate link for the revocation of consent, which is present in each promotional email. Once the consent has been revoked, the Data Controller will send the User an e-mail message confirming the revocation of the consent.

The Data Controller informs that, following the exercise of the right of opposition to the sending of promotional communications via email, it is possible that the User continues to receive further promotional messages due to technical and operational reasons (e.g. formation of contact lists already completed shortly before the Data Controller’s receiving of the opposition request). Should the User continue to receive promotional messages after 24 hours from the exercise of the right of opposition, please report the problem to the Data Controller, using the contacts indicated in paragraph 5 below.

3. Processing methods and data retention times

The Data Controller will process the personal data of Users using manual and IT tools, with logic strictly related to the purposes themselves and, in any case, in order to guarantee the security and confidentiality of the data.

The personal data of Users will be retained for the time strictly necessary to carry out the main purposes explained in paragraph 1 above or, in any case, as necessary for the protection in civil law of the interests of both the Users and the Data Controller.

In the cases referred to in paragraphs 2  above, the personal data of Users will be retained for the time strictly necessary to carry out the purposes explained in the same and, in any case, as long as the law allows the retention for such scope, included the judicial protection against legal request.

4. Transmission and dissemination of data

The employees and/or collaborators of the Data Controller who are in charge of carrying out Website maintenance may become aware of the personal data of the Users. These subjects, who are formally appointed by the Data Controller as “in charge of processing”, will process the User’s data exclusively for the purposes indicated in this policy and in compliance with the provisions of the Applicable Law.

The personal data of the Users may also be disclosed to third parties who may process personal data on behalf of the Data Controller as “External Processors“, such as, for example, IT and logistic service providers, outsourcing or cloud computing service providers, professionals and consultants.

The Data Controller uses HubSpot CRM for online marketing activities and customer relationship management. HubSpot Inc. is a software company from USA, with a branch in Ireland. By clicking [download], the User agrees that his personal data will be processed by HubSpot. Lear more about HubSpot’s privacy practices here. Contact details: HubSpot, Ground Floor, Two Dockland Central, Guild St, North Dock, Dublin, D01, Ireland, Telephone: +353 1 5187500 – e-mail: [email protected].

Users have the right to obtain a list of any data processor appointed by the Data Controller, making a request to the Data Controller in the manner indicated in paragraph 5 below.

5. Rights of the Data subjects

Users may exercise their rights granted by the Applicable Law by contacting the Data Controller as follows:

  • By sending a registered letter with return receipt to the registered offices of the Data Controller (Privacy department – MainADV S.r.l.: Via Raiale 285 P.O.Box 12, 65128 Pescara, Italy);
  • By sending an e-mail to [email protected]

Pursuant to Applicable Regulations, the Data Controller informs that Users have the right to obtain indication (i) of the origin of personal data; (ii) the purposes and methods of the processing; (iii) the logic applied in the event of processing carried out with the aid of electronic instruments; (iv) of the identification details of the data controller and processors; (v) the subjects or categories of subjects to whom the personal data may be communicated or who may come to aware of them as processors or agents.

Furthermore, Users have the right to obtain:

  • a) Access, updating, rectification, or, when interested, integration of data;
  • b) The cancellation, transformation into anonymous form or the restriction of data processed in breach of the law, including data that does not need to be stored in relation to the purposes for which the data was collected or subsequently processed;
  • c) Certification to the effect that notification has been supplied of operations as per letters a) and b), as regards their content, to those to whom the data was communicated or disseminated, except for the case where notification proves impossible or requires the use of means clearly disproportionate to the right being protected.

Moreover, the Users have:

  • a) The right to revoke consent at any time, if the processing is based on their consent;
  • b) The right to data portability (the right to receive all personal data concerning them in a structured format, commonly used and readable by automatic device), the right to limit processing of personal data and right of deletion (“the right to be forgotten”);
  • c) The right to oppose to:
    • In whole or part, for legitimate reasons, the processing of personal data relating to you for legitimate reasons even pertinent to the purpose of collection;
    • In whole or part, the handling of personal data for the purpose of sending advertising or sales materials or for the carrying out of market research or for commercial communication purposes;
    • If personal data is processed for direct marketing purposes, at any time, to the processing of data for this purpose, including profiling in so far as it is related to such direct marketing.
  • d) If it is deemed that the processing concerning their personal data violates the Regulation, the right to lodge a complaint with a Supervisory authority (in the Member State in which they usually reside, in the one in which they work or in the one in which the alleged violation has occurred). The Italian Supervisory Authority is the Data Protection Authority, with registered offices in Piazza Venezia No. 11, 00187 – Rome (http://www.garanteprivacy.it/).

***

The Data Controller is not responsible for updating all links viewed in this Privacy Policy, therefore, whenever a link does not work and/or is not updated, the Users acknowledge and accept that they must always refer to the document and/or section of the websites referred to by this link.