In compliance with the obligations deriving from the European regulation for the protection of personal data n. 679/2016, GDPR, the Bandieraok.it website respects and protects the privacy of visitors and users.
Users may be subject to different levels of protection. Some Users therefore enjoy superior protection. More information about the security policies can be found in the applicability section.
DECISO.IT di D'Angelo Maurizio - via I maggio, 58 - 33074 Monfalcone (GO) Italia
Owner's email address: firstname.lastname@example.org
Among the Personal Data collected by this site, independently or through third parties, depending on the enabled modules (see section "Details on the processing of Personal Data"): email, name, surname, telephone number, zip code, city, Cookie , usage data, date of birth, address, province and tax code.
Personal Data may be freely provided by the User or, in the case of Usage Data, collected automatically when using this site.
Unless otherwise specified, all Data requested by this site are mandatory. If the User refuses to communicate them, it may be impossible for this Site to provide the Service. In cases where this Site indicates some Data as optional, Users are free to refrain from communicating such Data, without this having any consequence on the availability of the Service or on its operation.
Users who have doubts about which Data are mandatory are encouraged to contact the Owner.
The User assumes responsibility for the Personal Data of third parties obtained, published or shared through this Site and guarantees that he has the right to communicate or disseminate them, freeing the Owner from any liability towards third parties.
Modalità di trattamento
Il Titolare adotta le opportune misure di sicurezza volte ad impedire l’accesso, la divulgazione, la modifica o la distruzione non autorizzate dei Dati Personali.
Il trattamento viene effettuato mediante strumenti informatici e/o telematici, con modalità organizzative e con logiche strettamente correlate alle finalità indicate. Oltre al Titolare, in alcuni casi, potrebbero avere accesso ai Dati altri soggetti coinvolti nell’organizzazione di questa Applicazione (personale amministrativo, commerciale, marketing, legali, amministratori di sistema) ovvero soggetti esterni (come fornitori di servizi tecnici terzi, corrieri postali, hosting provider, società informatiche, agenzie di comunicazione) nominati anche, se necessario, Responsabili del Trattamento da parte del Titolare. L’elenco aggiornato dei Responsabili potrà sempre essere richiesto al Titolare del Trattamento.
Methods of treatment
The Data Controller adopts the appropriate security measures to prevent unauthorized access, disclosure, modification or destruction of Personal Data.
The processing is carried out using IT and/or telematic tools, with organizational methods and with logic strictly related to the purposes indicated. In addition to the Data Controller, in some cases, other subjects involved in the organization of this Application (administrative, commercial, marketing, legal, system administrators) or external subjects (such as third party technical service providers, postal couriers, hosting providers, IT companies, communication agencies) also appointed, if necessary, as Data Processors by the Data Controller. The updated list of Managers can always be requested from the Data Controller.
Legal basis of the treatment
The Data Controller processes Personal Data relating to the User in the event that one of the following conditions exists:
the User has given consent for one or more specific purposes; Note: in some jurisdictions, the Data Controller may be authorized to process Personal Data without the User's consent or another of the legal bases specified below, as long as the User does not object ("opt-out") to such treatment. However, this is not applicable if the processing of Personal Data is governed by European legislation on the protection of Personal Data;
the processing is necessary for the execution of a contract with the User and/or for the execution of pre-contractual measures;
the processing is necessary to fulfill a legal obligation to which the Data Controller is subject;
the treatment is necessary for the execution of a task of public interest or for the exercise of public powers with which the Data Controller is invested;
the processing is necessary for the pursuit of the legitimate interest of the Data Controller or of third parties.
However, it is always possible to ask the Data Controller to clarify the concrete legal basis of each treatment and in particular to specify whether the treatment is based on the law, provided for by a contract or necessary to conclude a contract.
The Data is processed at the Data Controller's operating offices and in any other place where the parties involved in the processing are located. For more information, contact the Owner.
The User's Personal Data may be transferred to a country other than the one in which the User is located. To obtain further information on the place of processing, the User can refer to the section relating to the details on the processing of Personal Data.
The Data are processed and stored for the time required by the purposes for which they were collected.
Personal Data collected for purposes related to the execution of a contract between the Owner and the User will be retained until the execution of this contract is completed.
Personal Data collected for purposes attributable to the legitimate interest of the Data Controller will be retained until such interest is satisfied. The User can obtain further information regarding the legitimate interest pursued by the Data Controller in the relevant sections of this document or by contacting the Data Controller.
When the treatment is based on the User's consent, the Owner can keep the Personal Data for longer until said consent is revoked. Furthermore, the Data Controller may be obliged to keep Personal Data for a longer period in compliance with a legal obligation or by order of an authority.
At the end of the retention period, the Personal Data will be deleted. Therefore, upon expiry of this term, the right of access, cancellation, rectification and the right to data portability can no longer be exercised.
Purpose of the processing of the collected data
The User Data is collected to allow the Owner to provide its Services, as well as for the following purposes:
To obtain further detailed information on the purposes of the processing and on the Personal Data concretely relevant for each purpose, the User can refer to the relevant sections of this document.
Facebook permissions requested by this Application
This Site may ask for some Facebook permissions which allow it to perform actions with the User's Facebook account and to collect information, including Personal Data, from it. This service can allow this Site to connect with the User's account on the Facebook social network, provided by Facebook Inc.
The permissions required are as follows:
The basic information of the User registered on Facebook which normally includes the following Data: id, name, image, gender and localization language and, in some cases, the "Friends" of Facebook. If the User has made additional Data publicly available, the same will be available.
Access to private data
Allows access to private data of the User and friends.
Access to posts contained in the User's timeline
Provides access to posts on a User's timeline.
Users can exercise certain rights with reference to the Data processed by the Owner.
In case of superior protection, the User can exercise all the rights listed below. In any other case, the User can contact the owner to find out which rights are applicable in his case and how to exercise them.
In particular, the User has the right to:
Details on the right to object
When Personal Data is processed in the public interest, in the exercise of public powers vested in the Data Controller or to pursue a legitimate interest of the Data Controller, Users have the right to object to the processing for reasons connected with their particular situation.
Users are reminded that, should their Data be processed for direct marketing purposes, they may object to the processing without providing any reason. To find out if the Data Controller processes data for direct marketing purposes, Users can refer to the respective sections of this document.
How to exercise your rights
To exercise the User's rights, Users can direct a request to the contact details of the Owner indicated in this document. Requests are filed free of charge and processed by the Data Controller as soon as possible, in any case within 30 days.
In case of violation of personal data, the provisions of article 33 apply. The data controller will provide within: 24 hours in the case of biometric data 48 hours in the case of data relating to the state of health 72 hours all other types of data Send to the Guarantor communication of a data breach Art. 34 provides that, if the violated data are likely to present a high risk for the rights and freedom of natural persons, there is a need to communicate it also to the interested party.
Defense in court
The User's Personal Data may be used by the Owner in court or in the preparatory stages for its eventual establishment for the defense against abuse in the use of this Application or related Services by the User.
The User declares to be aware that the Owner may be obliged to disclose the Data by order of the public authorities.
System and maintenance logs
For needs related to operation and maintenance, this Application and any third party services used by it may collect System Logs, which are files that record the interactions and which may also contain Personal Data, such as the User IP address.
Information not contained in this policy
Further information in relation to the processing of Personal Data may be requested at any time from the Data Controller using the contact details.
If the changes concern treatments whose legal basis is consent, the Data Controller will collect the User's consent again, if necessary.
Request for an insurance policy quote during the order entry phase
If the Customer, once logged in to his private area, places an order and selects to receive an insurance quote (RC and/or body policy) he authorizes BandieraOK powered by DECISO.IT to forward the documents to the partner Insurance Agencies/Brokers relating to the boat and the owner/s to allow the latter to be able to formulate a personalized quote.