INFORMATION ACT
(June 2018)
GOVERNING THE PROTECTION OF PERSONAL DATA
IN ACCORDANCE WITH EU REGULATION 2016/679 OF THE EUROPEAN PARLIAMENT AND COUNCIL

Given the following, for the purposes of these regulations:

Data Controller

This is the natural person or legal entity, public authority, service or any other type of body which, whether individually or with other parties, determines the purposes and means of the handling of personal data. When the purposes and means of the handling are determined by the law governing the European Union or the Member States, the Data Controller or specific criteria which apply to its assignment may be established by the law governing the European Union or the Member States.

Data Supervisor

This is the natural person or legal entity, public authority, service or any other type of body which handles the personal data on behalf of the Data Controller.

Data Protection Officer

This is the new figure appointed by the Data Controller. He/she checks to ensure European Regulations and data security are implemented and applied. He/she also checks to ensure the requests of interested parties to exercise rights recognised by the Regulations are dealt with, and ensures that the Data Controller or Supervisor conduct impact assessments on data protection, and that they request prior authorisation or prior consultation where required.

Third party (Person processing the data)

This is the natural person or legal entity, public authority, service or any other type of body which is not the individual concerned, the data controller, the data supervisor and the persons authorised to handle the data, under the direct authority of the controller or supervisor.

Personal data (interested party)

Any information concerning an identified or identifiable natural person ("interested party"); any person who can be identified, whether directly or indirectly, with particular reference to an identifying element such as a name, identification number, data pertaining to location, an online identification or one or more elements which are characteristic of his or her physical, physiological, genetic, psychological, economic, cultural or social identity, can be considered identifiable.

Handling

This is any operation or set of operations, conducted with or without the assistance of automatised processes and applied to personal data or sets of personal data, such as:

gathering;
registration;
organisation;
structuring;
conservation;
adaptation or alteration;
extraction;
consultation;
use;
communication by transmission;
diffusion or any other form whereby it is made available;
comparison or interconnection;
limitation;
cancellation or destruction
 
Given all the above, the company hereby states that:
THE DATA CONTROLLER IS:
Rifinizione Alan Spa
Headquarters: Via Toscana, 14 - 59100 Prato Italy
THE DATA SUPERVISOR IS:
Luca Querci

PURPOSE OF THE HANDLING
The personal data involved in the handling, and in particular identifying, administrative, accounting and fiscal, commercial, any of a computerised nature, directly linked to the client or, for data of a purely identifying and computerised nature, to other interested parties (such as staff, employees, referees etc.) communicated by them in executing and fulfilling relationships with the controller, and in observing and respecting provisions governing the handling and protection of personal data, is used for pursuing goals which are instrumental and/or complementary to the activities as set out in the articles of association and which are required to fulfil the contractual/pre-contractual relationship held with the interested party in relation to the services requested by it. In the case of purchases made by the interested party via the Controller's website, we would hereby inform you that the data supplied via the relevant form on the page for entering data shall be handled to fulfil the order, and for purposes linked and instrumental to managing the order and after-sales activities, including any complaints. If consent is given, the data shall also be handled for sending information, commercial and promotional messages concerning activities and services offered by the Controller. This shall be done using automatic means such as e-mail and SMS, as well as traditional means such as telephone contact with an operator, in full compliance with the principles of lawfulness and fairness, and legal provisions.

HANDLING METHODS
The data is handled using computerised and telecommunication means and is conducted by internal parties appointed for the purpose. The data is stored in electronic archives with full assurance of the suitable safety measures as stipulated by the New European Regulation 2016/679.

COMMUNICATION AND DISTRIBUTION
The data gathered shall not be divulged or distributed. Any communication to third parties other than the Controller and officers, both internal and external to the company, and the persons appointed to handle the data as identified and appointed, is provided to public bodies as legally required, to the Companies of the Group to which the Controller belongs for administrative and accounting purposes, and where necessary for pursuing the purposes indicated, and in any case within the limits of the same, to third-parties and third-party companies, such as legal and sector consultants, debt collection companies and contractual consultants, dispatchers, third-party companies supplying technical and IT assistance who work to ensure the purposes described are pursued in a fair and proper manner. In any case, the handling by third parties must be carried out in a professional manner and in compliance with the legal provisions in force.

STORAGE TIMES
The data shall be stored for the time deemed necessary to fulfil the administrative, accounting and fiscal requirements linked to the established relationship, as well as those resulting from obligations stipulated by law, and in any case within the time limits established for the rights and obligations involved in handling. With reference to handling for purposes of sending commercial and promotional communications of the Controller's services and for sending information messages concerning its activities, the data shall be stored until the interested party exercises the right of opposition adopting the methods made available on a periodic basis for these purposes. Opposition to handling can be submitted by the interested party independently by either means of sending.

PROVISION OF PERSONAL DATA
The provision of data is obligatory to fulfil the requirements stipulated and sanctioned by law. For the remainder, provision is optional but necessary, and any refusal by the interested party shall render it impossible for the Controller to fulfil the relationship being established and implement it properly. Consent for handling the aforementioned data is not necessary in that the data is gathered for fulfilling legal obligations and/or for implementing obligations resulting from the contract in place or from so-called pre-contractual obligations.

RIGHTS OF THE INTERESTED PARTY
Rights of the interested party
The identity of the person responsible for data protection

The contact details for the data protection officer (DPO)

The purpose of the handling which the personal data is destined for and the legal basis of the handling

If the handling should be based on a legitimate interest, the legitimate interests pursued by the data controller or by third parties

The recipients or categories of recipients of the personal data

The intention of a third party is to be found in the United States of America. said date or place in which they were made available

The period of time for which the personal data will be stored or, if not, the criteria used to determine this period

To the personal data, or to rectify or cancel the data, or limit the handling of the personal data to him / her or to oppose their handling, in addition to the right to data transfer

Allow in the event of the handling, including the right to revoke, allow for any time, without compromising the lawfulness of the handling based on allow prior to revocation

The right to submit a complaint to a control authority

If the communication of a personal data is a statutory or contractual obligation or a requisite needed to conclude a contract, and if the party has been

The existence of a decision-making process of an automatic nature, including profiling and at least in such cases, of significant information concerning the logic and the importance involved in said handling for the interested party

The interested party is in the form of an automatic device, the personal data is related to the data controller, and has the right to transmit the data to another data controller without impediments. by the Data Controller they were supplied to.

The party has the right to obtain the cancellation of the personal data. The Data Controller has the obligation to cancel the personal data of the interested party without undue delay.
WHAT ARE COOKIES
Cookies are a sort of "memory aid", short "lines of text" containing information which can be saved on a user's computer when the browser (e.g. Chrome or InternetExplorer) calls up a given website. Thanks to the cookies, the server sends information which is re-read and updated each time the user returns to that website. In this way, the website can automatically adapt itself to the user, improving his or her navigation experience.
WHAT COOKIES ARE FOR
Cookies are mainly used for:
  • Improving the navigation experience of the user on the website.
  • Giving the site's manager information about how users navigate, also as a means of obtaining statistics on how the site is used and improving navigation.
  • Cookies can also carry advertising messages.
WHAT COOKIES DOES RIFINIZIONEALAN.COM USE?
These are the types of cookies used by RIFINIZIONEALAN.COM:
STRICTLY NECESSARY COOKIES
Also known as "technical" cookies, they are vital for navigating in the website and using all its functions, such as accessing the reserved areas (Client Area). Without these cookies, it would not be possible to provide the services requested.hese cookies do not gather information to be used for commercial purposes.
This category includes cookies devised by platforms to support the website's security infrastructure.

FUNCTIONALITY COOKIES
These allow the site to "remember" the choices made by the user, and to customise the website, improving its contents. The information gathered by this type of cookies is in anonymous form. This category includes cookies designed to ensure the website is navigable.

PERFORMANCE COOKIES
These cookies collect and analyse information about how the website is used by visitors (pages visited, number of accesses, time spent on the website etc.) to provide the user a better navigation experience. These cookies do not gather information which can in some way identify the user, and are managed directly by third parties. This category includes cookies set up by the following technological solutions
Company Google Service Google Analytics Link Click here

MANAGING COOKIES THROUGH THE BROWSER
Amongst other options, it is possible to remove existing cookies and block the installation of new cookies through the browser settings. If users/visitors wish to decide on a case-by-case basis whether to accept cookies or not, they can also configure their browsers to generate a notification each time a cookie is saved. The most commonly used browsers make it possible to only block third party cookies and only accept those belonging to the site concerned. The procedure for managing cookies differs from one browser to another. To follow are instructions for the most commonly-used browsers.

Google Chrome
To find out how to manage cookies using this browser's settings: Click here
To find out how to activate “hidden” navigation: Click here
To find out how to delete cookies, as well as how to block them on a selective basis, receive alerts on your cookie settings:  Click here

Internet Explorer
To find out how to manage cookies, delete them, block them and select them through this browser's settings: Click here

Firefox
To find out how to manage cookies using this browser's settings: Click here
To find out how to manage the privacy settings panel and prevent your online activities from being tracked: Click here
To find out how to activate and deactivate cookies: Click here
To find out how to delete cookies: Click here
To find out how to block cookies: Click here
To find out how to deactivate only third-party cookies: Click here

Safari
To find out how to manage cookies using this browser's settings: Click here

Opera
To find out how to manage cookies using this browser's settings: Click here

The website of RIFINIZIONEALAN.COM runs at an optimal level if cookies are enabled.
Cookies are a sort of "memory aid", short "lines of text" containing information which can be saved on a user's computer when the browser (e.g. Chrome or InternetExplorer) calls up a given website. Thanks to the cookies, the server sends information which is re-read and updated each time the user returns to that website. In this way, the website can automatically adapt itself to the user, improving his or her navigation experience.