Privacy Policy (Website)

Privacy Policy of calirevolution.com

This Application collects some Personal Data from its Users.

Data Controller

Cali(R)Evolution di Caruso Manuel Pietro Andrea & C. S.A.S.
Via Bernardino Zenale, 11
20123 Milan
VAT number: 12347900966

Email address of the Data Controller: assistenza@calirevolution.com

Types of Data collected

Among the Personal Data collected by this Application, either independently or through third parties, there are: Tracking Tools, Usage Data, name, surname, email, various types of Data.

Complete details on each type of Personal Data collected are provided in the dedicated sections of this privacy policy or by specific explanatory texts displayed prior to the Data collection.

Personal Data may be freely provided by the User or, in the case of Usage Data, collected automatically during the use of this Application. Unless specified otherwise, all Data requested by this Application is mandatory. If the User refuses to provide it, this Application may be unable to provide the Service. In cases where this Application specifically states that some Data is optional, Users are free not to communicate such Data without any consequences on the availability or the functioning of the Service.

Users who have any doubts about which Data is mandatory are encouraged to contact the Data Controller. Any use of Cookies – or other tracking tools – by this Application or by the owners of third-party services used by this Application, unless stated otherwise, serves to provide the Service requested by the User, in addition to the other purposes described in this document and in the Cookie Policy, if available.

The User assumes responsibility for the Personal Data of third parties obtained, published, or shared through this Application and declares that they have the right to communicate or disseminate such Data, thereby relieving the Data Controller of any liability to third parties.

Methods and place of processing the collected Data

Processing methods

The Data Controller takes appropriate security measures to prevent unauthorized access, disclosure, modification, or unauthorized destruction of Personal Data.

The processing is carried out using computers and/or IT-enabled tools, following organizational procedures and modes strictly related to the purposes indicated. In addition to the Data Controller, in some cases, the Data may be accessible to certain types of persons in charge, involved with the operation of this Application (administration, sales, marketing, legal, system administration) or external parties (such as third-party technical service providers, mail carriers, hosting providers, IT companies, communications agencies) appointed, if necessary, as Data Processors by the Owner. The updated list of these parties may be requested from the Data Controller at any time.

Legal basis of processing

The Data Controller processes Personal Data relating to the User if one of the following conditions exists:

  • The User has given consent for one or more specific purposes; Note: Under some legislations, the Data Controller may be authorized to process Personal Data without the User’s consent or any other legal basis specified below, until the User objects (“opt-out”) to such processing. However, this does not apply if the processing of Personal Data is governed by European data protection law;
  • the processing is necessary for the performance of a contract with the User and/or for the execution of pre-contractual measures;
  • the processing is necessary to comply with a legal obligation to which the Data Controller is subject;
  • the processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the Data Controller;
  • the processing is necessary for the pursuit of the legitimate interests of the Data Controller or third parties.

However, it is always possible to request the Data Controller to clarify the specific legal basis for each processing and, in particular, to specify whether the processing is based on the law, required by a contract, or necessary to conclude a contract.

Location

The Data is processed at the Data Controller’s operating offices and in any other place where the parties involved in the processing are located. For further information, please contact the Data Controller.

The User’s Personal Data may be transferred to a country other than the one in which the User is located. To obtain further information about the location of the processing, the User can refer to the section concerning the details of Personal Data processing.

The User has the right to obtain information regarding the legal basis for the transfer of Data outside the European Union or to an international organization governed by public international law or established by two or more countries, such as the UN, as well as regarding the security measures adopted by the Data Controller to protect the Data.

The User can check whether one of the transfers described above takes place by examining the section of this document relating to the details of Personal Data processing or by requesting information from the Data Controller using the contact details provided at the beginning.

Storage period

The Data is processed and stored for the time required for the purposes for which it was collected.

Therefore:

  • Personal Data collected for purposes related to the performance of a contract between the Data Controller and the User will be retained until the performance of such contract is completed.
  • Personal Data collected for purposes related to the legitimate interests of the Data Controller will be retained until such interests are satisfied. The User can obtain further information regarding the legitimate interest pursued by the Data Controller in the relevant sections of this document or by contacting the Data Controller.

When the processing is based on the User’s consent, the Data Controller may retain the Personal Data for a longer period until such consent is revoked. Furthermore, the Data Controller may be obliged to retain the Personal Data for a longer period in compliance with a legal obligation or an order from an authority.

At the end of the storage period, the Personal Data will be deleted. Therefore, upon expiration of this period, the right to access, delete, rectify, and the right to data portability cannot be exercised anymore.

Purposes of the collected Data processing

The User’s Data is collected to allow the Data Controller to provide the Service, fulfill legal obligations, respond to requests or enforcement actions, protect their rights and interests (or those of Users or third parties), detect any fraudulent or

malicious activities, as well as for the following purposes: Statistics and Contacting the User.

For detailed information on the purposes of processing and the Personal Data processed for each purpose, the User can refer to the “Details on Personal Data processing” section.

Details on Personal Data processing

Personal Data is collected for the following purposes and using the following services:

Contacting the User

Contact form (this Application)

By filling in the contact form with their Data, the User consents to their use for responding to requests for information, quotes, or any other kind of request as indicated by the form’s header.

Personal Data processed: last name, email, first name, various types of Data.

Statistics

The services contained in this section allow the Data Controller to monitor and analyze traffic data and are used to keep track of User behavior.

Google Analytics (Google Ireland Limited)

Google Analytics is a web analytics service provided by Google Ireland Limited (“Google”). Google uses the Personal Data collected for the purpose of tracking and examining the use of this Application, compiling reports, and sharing them with other services developed by Google. Google may use the Personal Data to contextualize and personalize the ads of its advertising network.

Personal Data processed: usage data; tracking tools.

Place of processing: Ireland – Privacy PolicyOpt Out.

User Rights

Users can exercise certain rights regarding their Data processed by the Data Controller.
In particular, within the limits provided by law, the User has the right to:

  • withdraw their consent at any time. The User can withdraw their previously given consent to the processing of their Personal Data.
  • object to the processing of their Data. The User can object to the processing of their Data when it occurs on a legal basis other than consent. Further details on the right to object are provided in the section below.
  • access their Data. The User has the right to obtain information about the Data processed by the Data Controller, certain aspects of the processing, and to receive a copy of the processed Data.
  • verify and seek rectification. The User can verify the correctness of their Data and request its update or correction.
  • obtain the restriction of processing. The User can request the restriction of the processing of their Data. In such cases, the Data Controller will not process the Data for any other purpose than its storage.
  • obtain the erasure or removal of their Personal Data. The User can request the erasure of their Data by the Data Controller.
  • receive their Data or have it transferred to another controller. The User has the right to receive their Data in a structured, commonly used, and machine-readable format, and, where technically feasible, to have it transferred to another controller without any hindrance.
  • lodge a complaint. The User can lodge a complaint with the competent data protection supervisory authority or take legal action.

Details on the right to object

When Personal Data is processed in the public interest, in the exercise of official authority vested in the Data Controller, or for the purposes of the legitimate interests pursued by the Data Controller, Users have the right to object to the processing on grounds relating to their particular situation.
Users are reminded that if their Data is processed for direct marketing purposes, they can object to the processing at any time without providing any justification. If Users object to the processing for direct marketing purposes, their Personal Data will no longer be processed for such purposes. To find out whether the Data Controller processes Data for direct marketing purposes, Users can refer to the respective sections of this document.

How to exercise rights

To exercise their rights, Users can make a request to the contact details of the Data Controller provided in this document. The request can be made free of charge, and the Data Controller will respond as soon as possible, in any case within one month, providing the User with all the information required by law. Any rectifications, erasures, or restrictions of processing will be communicated by the Data Controller to each recipient, if applicable, to whom the Personal Data has been disclosed, unless this proves impossible or involves a disproportionate effort. The Data Controller will inform the User about these recipients if requested.

Additional information about data processing

Legal defense

The User’s Personal Data may be used by the Data Controller in court or in the stages leading to possible legal action against misuse of this Application or related Services by the User.

The User declares to be aware that the Data Controller may be required to reveal Personal Data upon request of public authorities.

Specific information

Upon request of the User, in addition to the information contained in this privacy policy, this Application may provide the User with additional and contextual information regarding specific Services or the collection and processing of Personal Data.

System logs and maintenance

For operation and maintenance purposes, this Application and any third-party services it uses may collect system logs, which are files that record interactions and may contain Personal Data, such as the User’s IP address.

Information not contained in this policy

Further information concerning the processing of Personal Data may be requested at any time from the Data Controller using the contact information provided.

Response to “Do Not Track” requests

This Application does not support “Do Not Track” requests. To determine whether any third-party services used honor “Do Not Track” requests, the User is encouraged to consult the respective privacy policies.

Changes to this privacy policy

The Data Controller reserves the right to make changes to this privacy policy at any time by giving notice to Users on this page and, if possible, within this Application, as well as by notifying Users through any contact information available to the Data Controller. It is strongly recommended to check this page often, referring to the last modified date at the bottom.

If the changes affect processing activities based on consent, the Data Controller shall collect new consent from the User, if required.

Definitions and legal references

Personal Data (or Data)

Any information that directly, indirectly, or in connection with other information, including a personal identification number, allows for the identification or identifiability of a natural person.

Usage Data

Information collected automatically through this Application (or third-party services employed in this Application), which can include: the IP addresses or domain names of the computers utilized by the Users who use this Application, the URI addresses (Uniform Resource Identifier), the time of the request, the method utilized to submit the request to the server, the size of the file received in response, the numerical code indicating the status of the server’s response (successful outcome, error, etc.), the country of origin, the features of the browser and the operating system utilized by the User, the various time details per visit (e.g., the time spent on each page within the Application) and the details about the path followed within the Application with special reference to the sequence of pages visited, and other parameters about the device operating system and/or the User’s IT environment.

User

The individual using this Application, unless otherwise specified, coincides with the Data Subject.

Data Subject

The natural person to whom the Personal Data refers.

Data Controller (or Owner)

The natural or legal person, public authority, agency, or other body that, alone or jointly with others, determines the purposes and means of the processing of Personal Data, including the security measures concerning the operation and use of this Application. The Data Controller, unless otherwise specified, is the Owner of this Application.

This Application

The means by which the Personal Data of the User is collected and processed

.

Service

The service provided by this Application as described in the relative terms (if available) and on this site/application.

European Union (or EU)

Unless otherwise specified, all references made within this document to the European Union (EU) include all current member states of the European Union and the European Economic Area.

Cookie

Small sets of data stored in the User’s device.

Tracking Tool

Any technology – such as Cookies, unique identifiers, web beacons, embedded scripts, e-tags, and fingerprinting – that enables the tracking of Users, for example, by collecting or saving information on the User’s device.

Legal references

This privacy statement is based on provisions of multiple legislative systems, including Art. 13 and 14 of Regulation (EU) 2016/679.

Unless otherwise specified, this privacy policy applies exclusively to this Application.

Last updated: June 20, 2023.