Privacy Policy
Last updated: 29 April 2026
English translation of the Italian original, provided so that English-speaking visitors can read this notice in their own language. Where the two versions differ, the Italian text is the reference version.
This notice describes how the personal data of Users visiting this website (the Website) is processed, pursuant to Article 13 of Regulation (EU) 2016/679 (GDPR). The Website is purely informational and offers no contact form, registration or e-commerce service.
Data Controller
The Controller of the data collected through this Website is Pelliconi Miriam, with registered office at Via Della Fontana, Ravenna, RA, Italian tax code PLLMRM71E70D558R, VAT no. 02593950393. To exercise your rights, or for any request concerning the processing of your data, you may write to filippogardini.12@gmail.com.
The Website is technically managed, on behalf of the Controller, by www.progettonebula.com (info@progettonebula.com), acting as Processor pursuant to Article 28 GDPR for hosting, domain registration, maintenance and updating of the Website.
An up-to-date list of Processors and their contact details is held at the Controller's offices and may be requested by writing to filippogardini.12@gmail.com.
Categories of data processed
The Website processes only the following categories of data:
- Browsing data (system logs): IP address, user agent, requested URL, date and time of the request, response code. This data is collected automatically by the computer systems and communication protocols of the Internet, for technical, security and service-delivery purposes.
- Technical Tracking Tools: cookies and browser local storage entries strictly necessary for the Website to function. For details, see the Cookie Policy.
- Data provided voluntarily by the User: if the User chooses to contact the Controller using the telephone numbers, email address or social profiles shown on the Website, the data provided is processed in order to respond to the request.
The Website does not use analytics, profiling or marketing tools, nor any data collection forms.
Purposes and legal basis of the processing
- Delivery, security and operation of the Website — legal basis: the Controller's legitimate interest (Art. 6(1)(f) GDPR) in ensuring content is served correctly and in preventing abuse.
- Compliance with legal obligations — legal basis: Art. 6(1)(c) GDPR.
- Responding to User requests — legal basis: steps taken prior to entering into a contract, or legitimate interest in replying to the request (Art. 6(1)(b) or 6(1)(f) GDPR).
- Loading the Google Maps map — legal basis: the User's consent (Art. 6(1)(a) GDPR and Art. 122 of Italian Legislative Decree 196/2003), given by clicking the dedicated button in the contact section.
Methods and place of processing
Data is processed using electronic tools, with appropriate security measures in place to prevent unauthorised access, disclosure, alteration or destruction.
Browsing data and technical cookies pass through the infrastructure of Cloudflare, Inc., the hosting and CDN provider, whose servers are also located outside the European Union (United States). The transfer outside the EU takes place on the basis of the Standard Contractual Clauses approved by the European Commission (Decision 2021/914).
When the User chooses to load the Google Maps map, browsing data (including the IP address) is transferred to Google Ireland Limited (Ireland) and, potentially, to Google LLC (United States) on the basis of the Standard Contractual Clauses. See the Cookie Policy for details.
Retention period
System logs are kept for no longer than is strictly necessary for the technical and security purposes described, and in any case no longer than the periods laid down by applicable law. Data provided voluntarily by the User (for example by email) is kept for as long as is needed to deal with the request and to comply with any legal obligations.
Rights of the data subject (GDPR)
Within the limits set by law, the User has the right to:
- access their data and obtain a copy of it (Art. 15);
- request its rectification (Art. 16) or erasure (Art. 17);
- request restriction of the processing (Art. 18);
- object to processing based on legitimate interest (Art. 21);
- obtain data portability (Art. 20);
- withdraw consent at any time, without affecting the lawfulness of processing carried out beforehand (Art. 7(3));
- lodge a complaint with the Italian Data Protection Authority, the Garante per la protezione dei dati personali (www.garanteprivacy.it).
Requests may be sent to the Controller using the contact details given above. Replying is free of charge and will be done as quickly as possible, and in any case within one month of receipt.
Legal defence
The User's Personal Data may be used by the Controller in legal proceedings, or in the stages leading up to them, to defend against misuse of the Website or of related services by the User. The User acknowledges that the Controller may be required to disclose the data by order of the public authorities.
Changes to this notice
The Controller reserves the right to amend this notice at any time, giving notice of any change on this page. Users are invited to consult it regularly, referring to the last-updated date shown at the top.
Definitions
- Personal Data (or Data) — any information that, directly or indirectly, including in connection with any other information (such as a personal identification number), makes a natural person identified or identifiable.
- Usage Data — information collected automatically through the Website (including by third-party applications integrated into the Website), such as: IP addresses or domain names of the devices used by the User, URI addresses, the time of the request, the method used to submit the request to the server, the size of the file received in response, the numerical code indicating the status of the response, details of the browser and operating system, the timing of the visit (for example how long is spent on each page) and details of the path followed within the Website.
- User — the individual using the Website who, unless otherwise stated, is also the data subject.
- Data subject — the natural person to whom the Personal Data relates.
- Processor — the natural or legal person, public authority or any other body that processes personal data on behalf of the Controller pursuant to Article 28 GDPR.
- Controller — the natural or legal person, public authority, agency or other body which, alone or jointly with others, determines the purposes and means of the processing of personal data.
- Website — the hardware or software through which the Personal Data of Users is collected and processed.
- European Union (or EU) — unless stated otherwise, every reference to the European Union in this notice is to be read as extending to all member states of the European Union and of the European Economic Area.
- Cookie — a Tracking Tool consisting of a small piece of data stored within the User's browser.
- Tracking Tool — any technology (for example Cookies, unique identifiers, web beacons, embedded scripts, e-tags, fingerprinting, browser local storage entries) that makes it possible to track Users by collecting or storing information on their device.