Privacy policy
On this page, ITELYUM REGENERATION S.p.A. describes how this website (“www.itelyum.com”) is managed with regard to the processing of personal data of users who browse it or send emails to the addresses available on the site.
If you have any questions, you can contact us at privacy@itelyum.com.
WHY THIS PRIVACY POLICY?
As of May 25, 2018, new privacy rules apply across all EU Member States, as required by EU Regulation No. 2016/679 (General Data Protection Regulation, hereafter “GDPR”), as well as by national laws such as Legislative Decree 101/2018.
The GDPR provides greater protection for users and imposes new obligations and responsibilities on those who process personal data, including through websites.
For more information on the GDPR, you can consult the section published by the Italian Data Protection Authority (Garante per la Protezione dei Dati Personali), which provides useful explanations to help you better understand the new rules and your rights.
A key principle of the GDPR is transparency: users must know in advance, clearly and completely, which personal information will be collected, who will process it, for what reasons and for how long, whether it will be used for commercial or profiling purposes, and whether it will be shared with third parties — and must be able to effectively control the management of their data.
This notice is provided in accordance with Article 13 of the GDPR, Legislative Decree 101/2018, and inspired by the Article 29 Working Party Guidelines on Transparency.
This privacy notice applies to all those who interact with the ITELYUM REGENERATION S.p.A. website accessible online at https://www.itelyum.com. By browsing or sending communications to the contacts listed on the site, users may provide data that can directly or indirectly identify them.
TO WHICH WEBSITES THIS PRIVACY POLICY APPLIES
This policy applies only to the ITELYUM REGENERATION S.p.A. website and not to any other websites that users may access through links on this site.
The presence of one or more links to a site not belonging to ITELYUM does not imply approval or acceptance of responsibility by ITELYUM REGENERATION S.p.A. regarding the content or use of such third-party sites.
Users who wish to send data to or through third-party websites are encouraged to read the respective privacy statements carefully before providing personal data.
DATA CONTROLLER AND CONTACTS
The Data Controller of your personal data is ITELYUM REGENERATION S.p.A., represented by its legal representative pro tempore, headquartered in Pieve Fissiraga (LO), Via Tavernelle 19, tax and VAT code 00818740151.
You can contact the company for any information or requests regarding your data at privacy@itelyum.com, pursuant to Article 24 of EU Regulation 2016/679 and Legislative Decree 101/2018.
TYPES OF DATA PROCESSED
Browsing data
Accessing and browsing the website www.itelyum.com does not require users to provide personal data. However, the system may automatically store certain browsing data necessary for the website’s operation, related to the use of Internet communication protocols (e.g., IP addresses, domain names, URI addresses, time of requests, response codes, etc.).
These data are not collected to identify users, but could indirectly allow identification through association with third-party data.
Cookies
The website www.itelyum.com uses technical and analytical first-party cookies only.
No personal information is transmitted, and no persistent cookies or tracking systems are used.
No profiling cookies are used.
Session cookies are used exclusively to ensure safe and efficient navigation.
For more details, please see the Cookie Policy.
Data provided voluntarily by users
The voluntary, explicit sending of emails to the addresses indicated on the site entails the acquisition of the sender’s email address and any other data contained in the message, solely for the purpose of responding to the request.
Specific privacy notices are available on all pages where users can voluntarily provide data through forms or dedicated features.
If users voluntarily provide special categories of personal data (Article 9 GDPR), ITELYUM REGENERATION S.p.A. will process them with the utmost confidentiality, in compliance with applicable laws and for the purposes specified in each specific notice.
PURPOSES AND LEGAL BASIS OF DATA PROCESSING
Browsing data are used to:
- Allow the user to access and use website functionalities.
- Obtain anonymous statistical information on site usage and verify correct operation (deleted immediately after processing).
- Identify possible responsibility in case of cybercrimes against the site.
Data provided voluntarily are used:
- To respond to user requests sent via email or contact forms.
- To evaluate applications and CVs for potential employment or collaboration.
The legal basis for processing is the user’s explicit consent, obtained in accordance with the GDPR.
RECIPIENTS OF PERSONAL DATA
Recipients of personal data may include:
- ITELYUM REGENERATION S.p.A. employees and collaborators.
- Providers of website management, hosting, email, connectivity, cloud, and communication services.
- Technical maintenance and support providers.
- Social networks, if interactions occur through such platforms.
Data will not be shared with other categories of recipients, nor will they be disseminated or made public, except where required by law.
DATA TRANSFER OUTSIDE THE EU
Data may be stored or processed on servers located outside the EU if ITELYUM’s service providers use cloud technologies that cannot ensure precise data location.
Transfers will occur only when adequate safeguards or EU adequacy decisions apply.
DATA RETENTION PERIOD
- Browsing data: deleted immediately after processing, except where needed to investigate possible cybercrimes.
- Cookies: stored for 12 months in aggregate, non-identifiable form.
- Contact requests: kept only for the time needed to respond, then deleted.
- Job applications: stored for up to one year.
YOUR RIGHTS AS A DATA SUBJECT
Under the GDPR, you have the following rights:
- Access (Art. 15)
- Rectification (Art. 16)
- Erasure / Right to be forgotten (Art. 17)
- Restriction of processing (Art. 18)
- Notification of rectification or erasure (Art. 19)
- Data portability (Art. 20)
- Objection (Art. 21)
You may withdraw consent at any time by contacting privacy@itelyum.com.
Withdrawal does not affect the lawfulness of prior processing.
You also have the right to lodge a complaint with the Italian Data Protection Authority (Garante per la Protezione dei Dati Personali):
www.garanteprivacy.it.
DATA PROTECTION OFFICER (DPO)
The appointed Data Protection Officer (DPO) is Axitea S.p.A., based in Milan, Via Gallarate 136.
The designated contact person is Avv. Laura Lecchi, reachable at dpo@itelyum.com or privacy@itelyum.com.
SECURITY MEASURES
The Data Controller applies appropriate technical and organizational security measures to minimize the risk of data loss, unauthorized access, or processing not in accordance with the purposes stated in this policy.
CHANGES TO THIS PRIVACY POLICY
This Privacy Policy may be updated following the addition of new website features or based on user feedback.
The updated version will be published on the website and will take effect upon publication.