INTRODUCTION
Welcome to our website www.medemagioielli.it.
MEDEMA pays particular attention to its customers’ rights regarding the protection of personal data and to the legal obligations it must comply with. Please read our Privacy Policy carefully. It applies whenever you access the website, browse its pages, or use its services, regardless of whether you purchase products.
This Privacy Notice explains how we process customers’ personal data collected through the Site and is provided, pursuant to Article 13 of EU Regulation 2016/679 (General Data Protection Regulation, hereinafter “EU Regulation” or “GDPR”) and Italian Legislative Decree 196/2003 and subsequent amendments and integrations, to anyone interacting with the services accessible online on the Site.
This notice applies solely to this Site and not to other websites that the user may consult via links, which are outside MEDEMA’s control.
THE PRINCIPLES ON WHICH OUR PRIVACY POLICY IS BASED
The processing of users’ personal data will be carried out in accordance with the principles of fairness, lawfulness, data minimization, transparency, storage limitation, integrity, and confidentiality, in compliance with EU Regulation 679/2016. In particular, we will process your personal data exclusively for the purposes and according to the methods described herein. We will also make data available to third-party companies only for purposes instrumental to providing the requested service and within the scope of a data processing agreement, as specified below. We will respond to users exercising the rights granted to them by personal data protection laws. We will apply appropriate security measures to protect the confidentiality, integrity, and availability of the data provided.
DATA CONTROLLER
The Data Controller is: MEDEMA di Pietro Melone, registered office in Vallo della Lucania (Salerno), Via Angelo Rubino, 153, VAT No. 05710200659, email info@medemagioielli.it,
TYPES OF PERSONAL DATA COLLECTED
Browsing data
The computer systems and software procedures used to operate this Site acquire, during their normal operation, certain personal data whose transmission is implicit in the use of Internet communication protocols.
We collect and analyze data such as, for example: the Internet Protocol (IP) address used to connect your computer to the Internet; login; email address; password; order history (which we may sometimes combine with similar information collected from other customers to create features such as “Best Sellers”); products you viewed or searched for; and any telephone number used to contact our customer service. We may also use browser data such as cookies, Flash cookies, or similar data collected through certain parts of our website to prevent fraud and for other purposes. We may also collect technical information to help us identify your device for fraud prevention and diagnostic purposes.
Data provided voluntarily by the user
The personal data about you that you have provided by accessing various sections of the Site include: your name; address and phone number; email; credit card information; names of order recipients (including addresses and phone numbers); names (with addresses and phone numbers) listed in 1-Click settings; email addresses of your friends and third parties to whom purchased products are to be sent; content of reviews and emails sent to us; the personal description and photograph contained in “My Profile”; and bank details.
MEDEMA may also process personal data of third parties, directly communicated by you via the Site. For example, when you purchase a product to be delivered to a friend, when you pay the price for a product intended for another person, or when you wish to recommend to a friend a product or offer for sale of a specific product by FRUITS&JEWELS.
In such cases, you undertake to have the third party read this privacy notice before communicating their personal data to this site.
The consent of the third party is not required when their data are communicated to MEDEMA for the purpose of concluding a sales contract with MEDEMA in favor of that third party. However, to use the third party’s personal data for marketing purposes, to send promotions, offers, newsletters, or for profiling activities, their express consent is required.
Mobile Devices
Most mobile devices allow users to disable location services. In most cases these controls are located within the device’s settings menu. If you have questions about how to disable your device’s location services, we recommend contacting your mobile operator or the device manufacturer.
PURPOSES OF PROCESSING
MEDEMA will process your personal data for the following purposes:
1• to respond to information requests submitted through the Site;
2• to process your purchases;
3• to manage your account;
4• to contact you to handle requests or complaints related to your purchase;
5• to carry out financial operations related to the payments you make;
6• to comply with obligations laid down by law, regulations or EU legislation;
7• to establish, exercise or defend a legal claim on behalf of MEDEMA;
8• to provide after-sales support services for product repairs/replacements, including following activation of the warranty;
9• to improve and personalize the Website and our products and services, by tracking preferences related to our products;
10• to conduct market research;
11• to analyze your preferences regarding our products, your purchase history and interactions with the Site to build your tastes and consumption habits, in order to send you commercial offers consistent with your profile;
12• to send offers to selected groups of customers to which you may belong on behalf of MEDEMA’s partner companies;
13• to send newsletters and other marketing communications concerning news, information and updates on our products and services, offers, promotions and special events, and other marketing communications that may be of interest to you (via SMS, email or telephone).
LEGAL BASIS FOR PROCESSING
Each processing of customers’ personal data is based on a legitimate ground. For the purposes described from point 1 to point 8 above, the processing and disclosure of your personal data by MEDEMA does not require your consent, since the processing is necessary for the performance of services you requested or for the fulfillment of the sales contract for our products, as well as to comply with legal obligations or for possible legal defense or to handle complaints and/or warranties. For the purposes described from point 9 to point 11, your express consent is required; if you decide not to provide it, this will not affect your ability to receive the services you requested or to purchase our products.
Failure to consent to the processing of data for marketing purposes will make it impossible for you to receive advertising material relating to MEDEMA GIOIELLI products and will prevent us from carrying out market research (including to assess user satisfaction) and from sending you newsletters.
Failure to consent to the processing of your personal data for profiling purposes will make it impossible for MEDEMA to build your commercial profile by detecting your choices and purchasing habits on the Site (including to better satisfy customer needs), as well as to send you advertising material relating to products that match your interests.
MANDATORY OR OPTIONAL NATURE OF PROVIDING DATA
Providing personal data for the purposes described from point 1 to point 8 above is optional; however, refusal to provide such data makes it impossible to deliver the requested services or to request information through the various sections of the Site.
METHODS OF DATA PROCESSING AND SECURITY MEASURES
Data processing will mainly be carried out using electronic or otherwise automated tools (manual, computerized, and telematic), according to methods and by means suitable to ensure the security and confidentiality of the data. In particular, all technical, IT, organizational and procedural security measures will be adopted so as to guarantee the appropriate level of data protection required by law, allowing access only to persons appointed by the Controller or by any appointed Processors.
The data processed will be relevant to the purposes for which they are collected or subsequently processed and will be stored in a form that permits identification of the Data Subject.
The Controller uses automated processes for profiling the data subject in order to reconstruct their tastes and consumption habits and to send them commercial offers consistent with the identified profile. In any case, the data subject is guaranteed the right to object to processing for profiling purposes at any time pursuant to Article 21 of EU Regulation 679/2016, by making a request to the Controller as indicated in the “Your rights” section.
WE GUARANTEE THE SECURITY OF YOUR PERSONAL DATA
We are committed to protecting the security of your personal data.
At the time of order confirmation we display only the last four digits of your credit card number. Naturally, during order processing we transmit the full credit card number to the financial institution that issued the card.
Our security procedures mean that you may occasionally be asked to provide proof of your identity before personal data are disclosed.
It is important that you adopt appropriate protections against unauthorized access to your password and to your computer.
Always make sure you log out when using a computer shared with other users.
RECIPIENTS OF PERSONAL DATA
Our customers’ personal data are an important component of our business, and selling them to others is not among our activities. Therefore, personal data will be disclosed within MEDEMA and may be brought to the attention of its employees and/or collaborators and also disclosed to the following parties:
1) third-party companies belonging to the same group as MEDEMA in order to respond to your requests submitted via the request form;
2) third-party companies in order to provide the requested technical support services;
3) all Authorities that have access to data under legislative or administrative provisions;
4) purchasers of MEDEMA’s stores, branches, or business units, in the event of their transfer;
5) parties providing services for managing the IT system and telecommunications networks (including email);
6) shippers and carriers for the delivery/collection of products;
7) issuing banks for credit cards;
8) parties processing credit card payments and providing customer services related to payments;
9) companies providing marketing support (including data analysis services, research and link results, email and newsletter sending, and profiling activities);
10) companies and organizations that provide fraud prevention or credit risk reduction.
These parties have access only to the personal data necessary to perform their services for MEDEMA. We guarantee that they may not use your personal data for other purposes and are required to process personal data in accordance with this Privacy Notice and with applicable law. Third parties performing these operations have been duly selected and are equipped with the necessary experience, capability, and reliability and offer appropriate guarantees of full compliance with current data processing provisions, including data security. They have also been appointed as “Data Processors” and act according to the instructions given and under our control. We periodically verify that the Data Processors have duly fulfilled their assigned tasks and continue to provide suitable guarantees of full compliance with personal data protection provisions. The complete list of appointed Data Processors is available upon request at Via Angelo Rubino 153, Vallo della Lucania (SA). In any case, data will not be disseminated.
DATA RETENTION PERIOD
The Controller informs you that personal data collected will be stored only for the time necessary to provide the services requested by the user, to perform the sales contract, to comply with legal obligations, and to exercise its rights in any legal proceedings. For marketing and profiling purposes, data will be stored for a period of 5 years. In this regard, to protect your personal data, MEDEMA has adopted several safeguards, specified in the relevant document.
Once the retention period has expired, the data will be destroyed or anonymized.
YOUR RIGHTS
Pursuant to Articles 15, 16, 17, 18, 19, 20 and 21 of EU Regulation 2016/679, you may exercise your rights at any time against the Controller, MEDEMA di PIETRO MELONE, as listed below:
Right of access
We will provide you with all information relating to your personal data in our possession upon your request.
Right to rectification and completion
We will rectify inaccurate information about you following your notification. We will complete incomplete data you indicate to us, provided such data are necessary for the processing purpose.
Right to erasure
We will delete the information we hold upon your request. However, deletion is not permitted for data that must be retained by the Controller by law or to perform the contract entered into with you.
Right to restriction of processing
In certain cases provided by law, we will block your data if you so wish.
Right to withdraw consent
You may withdraw, at any time, the consent you have given to the processing of your data with effect for the future. The lawfulness of the processing of your data remains unaffected until the time of consent withdrawal.
Right to object to data processing
You may object to the processing of your data with effect for the future at any time where our data processing is carried out on the basis of one of the legal grounds provided for in Article 6(1)(e) or 6(1)(f) of EU Regulation 2016/679. In the event of your objection, we will stop processing your data, provided there are no compelling legitimate grounds for further processing or for the establishment, exercise or defense of legal claims.
Right to data portability
Upon your request, we can make your personal data available to you in a structured, commonly used and machine-readable format for transmission to another controller.
Please send your requests by post to MEDEMA DI PIETRO MELONE, VIA Angelo Rubino 153, 84078 Vallo della Lucania (SA), or by email to amministrazione@medemagioielli.it
Please note that, where requests are submitted electronically, the information will be provided free of charge and in a commonly used electronic format.
RIGHT TO LODGE A COMPLAINT WITH THE SUPERVISORY AUTHORITY
If you believe that the processing of your personal data by MEDEMA infringes your privacy rights, you may lodge a complaint with the Italian Data Protection Authority (“Garante per la Protezione dei Dati Personali”), following the instructions available on the Authority’s website www.garanteprivacy.it.
MINORS
Protecting the security and confidentiality of minors is very important to us. We do not accept registrations or orders submitted by anyone under the age of 16 (sixteen), or under the age limit specified by the applicable law of the country of residence, and we will not knowingly collect or process their personal data.
DATA TRANSFER ABROAD
The Controller does not intend to transfer your personal data to countries outside the European Union.
CHANGES TO THIS PRIVACY NOTICE
This Privacy Notice may be updated by MEDEMA. The version published on the Site is the one currently in force.
COOKIE NOTICE
- Premise
- What cookies are
- Types of cookies
- How can I manage cookies in my browser?
- Sharing content on social networks
- Recipients of personal data
- Data retention period
- Your rights
PREMISE
This document forms an integral and substantial part of the Privacy Policy and of the notice contained therein issued pursuant to Article 13 of EU Regulation 2016/679 (General Data Protection Regulation) and Italian Legislative Decree 196/2003 and subsequent amendments and integrations. You are therefore invited to read the privacy notice available on this website.
WHAT COOKIES ARE
A cookie is a text file stored on computers, tablets, mobile phones and any device used to browse the Internet, which can store the user’s browsing information and preferences. As described below, some cookies can make browsing easier and can indicate which parts of our sites are visited. While browsing, we may collect information relating to traffic flow and page visits on our website. Any information obtained through cookies will be processed and stored securely.
TYPES OF COOKIES
Cookies can be classified as follows:
- Technical cookies
- these are divided into:
- Browsing or session cookies necessary for normal navigation and use of the website (such as making a purchase or authenticating to access reserved areas);
- Functionality cookies that allow the user to navigate according to selected criteria (e.g., language, products selected for purchase) in order to improve the browsing experience of our websites and are essentially persistent;
- Analytics cookies used to statistically analyze access to or visits of the site, exclusively for statistical purposes, collecting information in aggregate form without identifying the individual user.
- The cookies indicated above can be disabled and/or deleted through the browser settings at any time.
- Profiling cookies
- these include all cookies used for profiling and marketing purposes. These types of cookies can be grouped according to the functions they perform as follows:
- Analytics: this category includes cookies used to collect and analyze statistical information on website accesses/visits, associated with other information such as credentials entered to access reserved areas (email address and password), and may therefore be used for marketing and profiling purposes;
- Widgets: this category includes all those graphical components of a program’s user interface that facilitate user interaction with the program itself. By way of example, widget cookies include those from Facebook, Google+, and Twitter;
- Advertising and Targeting: this category includes cookies used to advertise within a site. In particular, they are used to display ads most suited to the user’s characteristics and interests. They are also used to limit the number of times an ad is shown and to help measure the effectiveness of advertising campaigns. They are generally placed by advertising networks with the website operator’s permission; they store website visits and share this information with other companies, such as advertisers;
- Web beacons: this category includes code fragments that allow a website to transfer or collect information through the request of a graphic image. Websites can use them for various purposes, such as analyzing website use, monitoring and reporting on advertising, and personalizing ads and content.
- Third-party cookies
- Third-party cookies are intended to create user profiles in order to send commercial messages that match the preferences expressed during the visit or to improve the browsing experience. These cookies make it possible to offer commercial proposals on other affiliated websites (retargeting). We do not control the information provided by third-party cookies nor do we have access to such data. This information is fully controlled by the third-party companies as described in their respective policies.
Most browsers are configured to accept, control, or possibly disable cookies through settings. However, please note that disabling browsing or functionality cookies may cause the site to function unsatisfactorily and/or limit the service we offer. Below are the paths to manage cookies in the following browsers: HOW CAN I MANAGE COOKIES IN MY BROWSER?
- Internet Explorer: http://windows.microsoft.com/it-it/windows7/block-enable-or-allow-cookies;
- Safari: http://support.apple.com/kb/PH19255;
- Chrome: https://support.google.com/chrome/answer/95647?hl=it-IT&hlrm=fr&hlrm=en;
- Firefox: https://support.mozilla.org/it/kb/Attivare%20e%20disattivare%20i%20cookie;
SHARING CONTENT ON SOCIAL NETWORKS
The content of the FRUITSANDJEWELS website can be shared on the following social networks: Facebook, Twitter, Pinterest, YouTube, using an integrated social media button. All social media buttons that facilitate content sharing are integrated using a simple hyperlink rather than the social plugins developed by social network providers.
This ensures that your information is not automatically transmitted to social media servers as soon as you access our website. In addition, when you share content from our website, we will transmit to the social network only the information necessary to share the relevant content. We do not transmit personal data to social networks.
You may also find simple links to our social network pages, or if you log into your social networks in order to share content from our website, your data will be processed by the provider of the social network in question.
For information on the purposes and scope of data collection, further processing or use by the social network provider, as well as your related rights and privacy settings options, please refer to the data protection notice provided by the respective social network providers.