PRIVACY POLICY

CONTENT: Privacy & Cookies POLICY – Shop POLICY


1. Introduction to the website of ROBERTA PINNA.

Introduction to the website of Roberta Pinna (hereinafter, “RP”).
This Privacy Policy (hereinafter, the “Privacy Policy”) applies to data of each user (hereinafter, the “User”) which RP processes after a User logs in to access the various sections of this website (hereinafter, the “Website”).
The privacy notice is provided exclusively for the Website and is not applicable to any different sites to which the User may be redirected by links inside the Website, which redirect to portals and computer systems managed by third parties whose ownership, methods and purposes RPis not party to.
The Privacy Policy is regulated by Italian law and by EU Regulation 2016/679 (GDPR) which regulates the processing of personal data (hereinafter, the “Data”) by any person resident or based in the European Union, and guarantees that the relevant data processing operations are conducted in observance of the fundamental rights and freedoms and dignity of the Data Subject, particularly in relation to the rights of confidentiality, personal identity and data protection.
The Privacy Policy may be modified or simply updated, in whole or in part, to bring it into line with any legislative changes; amendments and updates to the Privacy Policy will be binding once they have been published on the Website.

2. Data Controller, External Data Processors and Data Processors
The Data Controller is RP, Tax Code and VAT No. 07818320967.
RP independently determines the purposes and methods of the data processing operations, and also the data security procedures to be applied in order to guarantee the confidentiality, integrity and availability of Data.
The complete and updated list of Data Processors may be consulted by contacting RP.
The following email address is available for any further information roberta@robertapinna.com

3. Persons/entities that can process the User’s Data
To process the User’s Data, RP avails of third parties who are carefully selected, are trustworthy and reliable and have adequate experience and expertise for the assignment, and they are able to guarantee full compliance with applicable regulatory provisions on the processing of personal data, including provisions on personal data security. These third parties have been carefully selected and appointed based on the nature of the tasks that RP assigns to them, and they act under the control of RP and in accordance with the latter’s instructions.

4. Purposes of the data processing
Navigation inside the Website is free and requires no special access or authentication credentials.
RP may request the User to insert his/her Data (for purposes of illustration: personal particulars and e-mail address) in the special registration field, to facilitate the provision of specific services (hereinafter, the “Services”), such as:
­- the purchase of products for sale in the Website’s “Shop” section;
­- the periodic transmission of newsletters containing news about RP’s activities, such as e.g. scheduled events at RP spaces, cultural and artistic events, RP’s participation at trade fairs, special initiatives for customers, promotion of products and services related to the Shop (hereinafter, “Newsletter”).
RP provides a full privacy notice at the registration stage, which the User must accept in order to be able to access the aforementioned Services.

5. Data processing methods and duration of the Data Processing
Data will not be communicated to third parties unless such communication is required by law, or is necessary in order to achieve legally sanctioned purposes for which the Data Subject’s consent is not required.
The duration of the data processing is indicated in the privacy notice for the processing of Data, in each individual section thereof.

6. Data security
RP puts in place adequate data security measures pursuant to EU Regulation 2016/679 in order to prevent the loss or unlawful or incorrect use of Data, as well as unauthorised access thereto.
RP reserves the right to delete any accounts and all associated Data if they are found to contain material that is unlawful, detrimental to the image of RP and/or of its products/services or of third parties, or that is considered offensive or promotes illegal or defamatory activities, or that has pornographic content, incites violence or promotes discrimination on grounds of race, gender, religion and sexual orientation.

7. The User’s rights
The User will, at any time and without charge, be entitled to access his/her own Data, to receive his/her own electronic Data and transmit such Data to another data controller (“data portability”), and also to have Data corrected, updated, modified or erased (subject to any legally applicable exemptions). The User will be entitled to update data which he/she supplies to RP by contacting the latter at the address provided below. Requests for the erasure of data are regulated by applicable legal obligations including data/document retention obligations to which RP is subject.
The User will be entitled to contact the Italian Data Protection Authority if he/she considers that the procedures for managing his/her Data are problematic or questionable.
In order to exercise these rights, the User may send a request to RP by email to roberta@robertapinna.com .

When contacting RP, the User should include his/her name, e-mail address, postal address and/or telephone number(s) in order to facilitate RP in properly managing your request.
The User is invited to regularly verify and update his/her Data in order to assist RP in offering the Services to the User. The User may access and amend his/her Data by contacting RP at the addresses indicated above, in order to receive support in such updating operations.
If a User, who has previously authorised the processing of his/her Data in order to make purchases in the Shop section of the Website and/or to facilitate the transmission of Newsletters, wishes to revoke his/her consent or to manage his/her preferences, he/she can transmit a simple request to RP to this effect, as indicated above.

8. Cookie Policy
In compliance with the Official Provision of the Italian Data Protection Authority (“Identification of simplified procedures for the privacy notice and for the obtaining of consent to the use of cookies” of 8 May 2014, published in Official Gazette No. 126 of 3 June 2014), the Website’s home page banner refers to this document, which provides information on the procedures by which cookies may be used by RP or by any third-party and managed by the User.
RP does not use marketing or profiling cookies on the Website. However, RP may receive “technical” cookies while the User is browsing the website, such as:
­- “Navigation or session” cookies i.e. text files of a technical nature which facilitate correct site functionality and enable User recognition (if the User so desires, by activating the relative functionality) when he/she next accesses the website;
­- “Analytical” cookies, used to collect information in anonymous and aggregate form for statistical purposes;
­- “Functionality” cookies, which can facilitate e.g. the use of the Services (such as language settings).

RP uses the following cookies in particular:

cookie_privacy: first-party, technical cookies aimed to display the information banner. Duration: for the current browsing session.
MDC[cart]: first-party, technical cookies used to access the website’s features. Duration: for the current browsing session.
PHPSESSID: first-party, technical cookies used to access the website’s features. Duration: for the current browsing session.
_ga: third-party, analytical cookies used by Google Analytics for analysis of visits. Duration: 2 years.
_gat: third-party, analytical cookies used by Google Tag Manager for analysis of visits. Duration: 10 minutes.
_gid: third-party, analytical cookies used by Google Analytics for analysis of visits. Duration: 1 day.

Cookies may also be installed inside the Website by third parties or social networks: the parties understand that RP, by law, has no control over these cookies and has no privacy notice obligations or consent obligations; the updated links to the privacy notices and the consent forms of said third parties are provided below:

­Twitter (link)
­Instagram (link)
­Linkedin (link)
­Facebook (link)
­Google Analytics (link)

Cookies may be enabled and disabled using one’s own browser settings. However, disabling functional cookies could cause malfunctions or Website and/or services restrictions. The procedures offered by the main browsers can be accessed below:

­Internet Explorer (link)
­Chrome (link)
­Firefox (link)
­Opera (link)
­Safari (link)

It is also possible to disable the use of cookies on one’s computer or to refer to individual providers using the Your Online Choices platform http://www.youronlinechoices.eu/.
By continuing to browse the Website or by selecting an item (e.g. an image or a link) on that website, cookies will thereby be enabled and such continuation will be tantamount to consent to the use of cookies. Note, finally, that RP will retain and store cookies only for as long as required in order to provide the Service and, in any case, for no longer than seven days.

PRIVACY SHOP – Policy

Pursuant to art. 13 of EU Regulation 2016/679 (“GDPR”), we issue the present statement in relation to the processing of the personal data entered in the above form (hereinafter, the “Data”).

1. Data Controller
The Data Controller is Roberta Pinna email roberta@robertapinna.com  (hereinafter “RP ”).

2. Scope of communication and dissemination of personal data
The Data may come to the knowledge of the Controller’s employees and/or contractors appointed to process the Data. Such persons, who have been instructed to this effect by the Controller pursuant to art. 29 of the GDPR, will process the Data exclusively for the purposes indicated in the present statement and in compliance with the provisions of the applicable legislation.
The Data may also come to the knowledge of possible third parties who will process the Data on behalf of the Controller in the capacity of external persons responsible for the processing, such, by way of example, as suppliers of goods and/or services, professionals and consultants, and in any case appropriately selected third parties equipped with experience, skills and reliability, guaranteeing compliance with the provisions in force on matters of processing of personal data. The complete and updated list of data processors appointed by the Controller can be requested by sending an e-mail to the following address: roberta@robertapinna.com

3. Subject matter and purposes of the processing
The processing aims at the correct and complete setting up, management, execution and conclusion of the sale agreement signed with RP in relation to the purchasing online of the products marketed in the “Shop” page https://www.robertapinna.com/shop/  (hereinafter, the “Agreement”) and the fulfilment of any other obligation arising from national and EU legislation applicable to the contractual relationship.
Processing by the Controller does not envisage automated decision-making processes and the Data will not be subject to dissemination.
The processing of the Data will guarantee the principles of correctness, lawfulness and transparency and compliance with the rules of confidentiality and security.

4. Data retention
The Data will be retained for the time necessary for the execution of the Agreement and in any case for a maximum of 10 years in compliance with the administrative and book-keeping obligations pursuant to the law.

5. Submission of the Data
Submission of your Data is not obligatory, but failure to provide them will make it impossible to sign the Agreement.

6. Legal basis of the processing
The legal basis of the processing of your data lies in the execution of the contractual obligations and in the fulfilment of all the legal obligations arising from your consent.

7. Security of the Data
Adequate security measures are observed pursuant to the Privacy Code and the GDPR to prevent, in addition to unauthorised access, also the loss of the Data and their illicit or incorrect use.

8. Rights of the person concerned
Without prejudice to the content of the preceding paragraphs, you have the right to:
a) require the Data Controller to give access to the Data to rectify or cancel them or to limit their processing concerning you or object to their processing;
b) in relation to the processing founded on the legal basis of consent, revoke your consent at any time, without prejudice to the lawfulness of the processing based on the consent given before revocation;
c) lodge a complaint with the national supervisory body;
d) receive in a structured format, in common use and legible by an automatic device, the data provided by you for the purposes of portability;
e) if you agree to the processing of your Data for promotional purposes, to object to such processing at any moment and free of charge, whether regarding the initial or subsequent processing.
In order to exercise the rights listed above, as also for any request regarding the processing of the Data and the security measures adopted, you may contact the following e-mail address: roberta@robertapinna.com