Privacy Policy
In compliance with the obligations arising from national legislation (Italian Legislative Decree No. 196 of 30 June 2003, Personal Data Protection Code) and EU legislation (European Regulation on the protection of personal data No. 679/2016, GDPR) and subsequent amendments, this website respects and protects the privacy of its visitors and users, making every possible and proportionate effort not to infringe upon users’ rights.
This privacy policy applies exclusively to the online activities of this website and is valid for visitors/users of the site. It does not apply to information that may be collected through channels other than this website.
The purpose of this privacy notice is to provide maximum transparency regarding the information that the site collects and how it is used.
Legal Basis for Data Processing
This website processes data based on consent. By using or consulting this website, visitors and users explicitly approve this privacy notice and consent to the processing of their personal data in accordance with the methods and purposes described below, including any disclosure to third parties if necessary for the provision of a service.
The provision of data and therefore consent to its collection and processing is voluntary. Users may refuse consent and may revoke previously given consent at any time by sending an email to the following address: info@sicilyvibes.com.
However, refusing consent may result in the inability to provide certain services and the browsing experience on the website may be compromised. From 25 May 2018 (the date the GDPR came into force), this website will process some data based on the legitimate interests of the data controller.
Data Collected and Purposes
Like all websites, this site uses log files in which information collected automatically during user visits is stored. The information collected may include the following:
- Internet Protocol (IP) address
- Browser type and device parameters used to connect to the site
- Internet Service Provider (ISP) name
- Date and time of visit
- Referring and exit web page
- Country of origin
- Number of clicks, where applicable
The collection of data and information is carried out for the following purposes:
- In exclusively aggregate and anonymous form in order to verify the correct functioning of the site. None of this information is linked to the individual user of the site and does not allow their identification in any way (from 25 May 2018, such information will be processed based on the legitimate interests of the data controller).
- For security purposes (anti-spam filters, firewall, virus detection), automatically recorded data may also include personal data such as the IP address, which may be used, in accordance with applicable laws, to block attempts to damage the site itself or to harm other users, or otherwise harmful or criminal activities. Such data is never used for the identification or profiling of the user, nor cross-referenced with other data, nor provided to third parties, but used solely for the protection of the site and its users (from 25 May 2018, such information will be processed based on the legitimate interests of the data controller).
- To communicate data to third parties that perform functions necessary or instrumental to the operation of the service, such as the management of comments on the site.
If the site allows the posting of comments, or in the case of specific services requested by the user (through the Contact section), the site automatically detects and records certain personal identifying data of the user, including the email address and nickname. Such data is considered to be voluntarily provided by the user at the time of service delivery and is processed based on consent. By posting a comment or other information, the user expressly accepts the privacy notice and in particular consents to the content being freely viewable by other visitors.
The data received will be used exclusively for the provision of the requested service and only for the time necessary to provide the service.
Information that site users choose to make public through the services and tools made available to them is provided by the user knowingly and voluntarily, exempting this website from any liability regarding possible violations of the law. It is the user’s responsibility to verify that they have the necessary permissions to enter personal data of third parties or content protected by national and international regulations.
If comments are managed through an external service, please refer to the relevant service’s policies.
Data collected by the site during its operation is used exclusively for the purposes indicated above and stored for the time strictly necessary to carry out the specified activities. In any case, personal data collected by the site will never be provided to third parties, for any reason, unless it is a legitimate request from the judicial authority and only in the cases provided for by law. However, data may be provided to third parties where this is necessary for the provision of a specific service requested by the user (e.g. comment management), or for carrying out security checks or site optimisation.
Security Measures
This website processes user data in a lawful and proper manner, adopting appropriate security measures to prevent unauthorised access, disclosure, modification, or unauthorised destruction of data. Processing is carried out using IT and/or electronic tools, with organisational methods and logic strictly related to the stated purposes. In particular, the site’s management software is constantly updated and regularly scanned to check for the presence of viruses and harmful code.
In addition to the data controller, in some cases, categories of personnel involved in the organisation of the site (administrative, commercial, marketing, legal staff, system administrators) or external parties (such as third-party technical service providers, postal couriers, hosting providers, IT companies, communication agencies) may have access to the data.
User Rights
Pursuant to European Regulation 679/2016 (GDPR) and Article 7 of Italian Legislative Decree No. 196 of 30 June 2003, users may, in accordance with the methods and within the limits provided by current legislation, exercise the following rights:
- Object in whole or in part, on legitimate grounds, to the processing of personal data concerning them for the purposes of sending advertising material or direct sales or for carrying out market research or commercial communications.
- Request confirmation of the existence of personal data concerning them (right of access).
- Know the origin of such data.
- Receive intelligible communication thereof.
- Obtain information regarding the logic, methods, and purposes of the processing.
- Request the updating, rectification, integration, erasure, anonymisation, or blocking of data processed in violation of the law, including data no longer necessary for the purposes for which it was collected.
- In cases of consent-based processing, receive their data provided to the controller, at the sole cost of any medium, in a structured format readable by a data processor and in a format commonly used by an electronic device.
- The right to lodge a complaint with the supervisory authority (Italian Data Protection Authority — Garante Privacy).
- As well as, more generally, exercise all rights recognised under applicable legal provisions.
Where data is processed based on legitimate interests, the rights of data subjects are nevertheless guaranteed (except the right to data portability, which is not provided for under the regulations), in particular the right to object to the processing, which may be exercised by sending a request to the data controller.
Requests should be addressed to the data controller.
Data Controller
The data controller pursuant to applicable laws is the administrator of the Sicily Vibes website.
For any information: info@sicilyvibes.com