Privacy Policy
PRIVACY POLICY (pursuant to Article 13 of Regulation (EU) 2016/679)
This page describes the methods of managing this website with reference to the processing of personal data of users who consult it. The processing of data is carried out in accordance with the criteria established by the European Regulation on the protection of personal data (Regulation (EU) 2016/679) and any other national legislation, provision, or authorization issued by the competent Authority. According to the aforementioned legislation, data processing must be based on principles of fairness, lawfulness, and transparency, as well as the protection of your privacy and your rights.
This notice applies only to this website and not to other websites that may be consulted by the user through links. Through navigation on the portal, the following services are available:
- to allow navigation of the website (IP address);
- to respond to your requests for information regarding the products sold by the Data Controller and/or requests for quotations related to any of the products offered;
- to register for the website’s reserved area.
DATA CONTROLLER
The Data Controller is Unex Scambio Termico S.r.l., with registered office at Via Del Lavoro no. 26/A, 37012 Bussolengo (VR), Italy, represented by its legal representative pro tempore, tel.: +39 0456717709, VAT no.: 03139180230.
You may contact the Data Controller by e-mail at: amministrazione@unexsrl.com.
PLACE OF DATA PROCESSING, DISCLOSURE AND DISSEMINATION
The processing operations connected to the web services of this site are carried out at the above-mentioned headquarters of the Company and are handled by internal staff or, where necessary, by external personnel duly appointed (e.g. for maintenance and updating of IT systems).
No data deriving from the web service is disclosed or disseminated.
The Data Controller also informs users that no fully automated decision-making processes, including profiling, are used for the purposes outlined in this policy.
PURPOSES AND LEGAL BASIS OF PROCESSING
Personal data provided by users who submit requests for information regarding:
- the products offered by the Controller (e.g. gasketed plate heat exchangers, brazed plate heat exchangers, compact tube bundles, condensers, dry coolers, etc.);
- the initiatives or events organized by the Controller;
will be used solely to respond to the content of such requests.
The legal bases for processing are as follows:
- Article 6(1)(b) GDPR – “performance of contractual or pre-contractual obligations”;
- Article 6(1)(f) GDPR – “legitimate interest of the Data Controller”, consisting in keeping customers and potential customers informed about the services offered.
CATEGORIES OF DATA PROCESSED
Browsing Data
The computer systems and software procedures used to operate this website acquire, during their normal operation, certain personal data whose transmission is implicit in the use of Internet communication protocols.
This information is not collected to be associated with identified individuals, but, by its very nature, could—through processing and association with data held by third parties—allow users to be identified. This category of data includes IP addresses or domain names of the computers used by users connecting to the site, URI (Uniform Resource Identifier) addresses of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the server’s response (success, error, etc.), and other parameters relating to the user’s operating system and IT environment.
This type of data is used exclusively to obtain anonymous statistical information about the use of the site and to verify its correct functioning. The data may also be used to ascertain responsibility in the event of hypothetical cybercrimes against the site. For this type of processing, explicit consent is not required.
Data Voluntarily Provided by the User
Personal data such as name, telephone number, and e-mail address are collected for the purpose of handling information or quotation requests.
This type of data is provided voluntarily by the user. Consent is not required for such processing since the data are necessary to respond to the user’s request.
Should newsletter services and/or other direct or indirect marketing activities be implemented in the future, specific and explicit consent will be obtained for such activities.
Cookies
The cookie policy is available in the dedicated section entitled “Cookie Policy.”
TRANSFER OF DATA OUTSIDE THE EU
The Data Controller does not transfer (and does not store) personal data collected from this website in countries outside the European Union.
DATA RETENTION PERIOD
The Data Controller will retain personal data for as long as necessary to fulfil the purposes pursued by the Company and, in any case, no longer than 10 years after the termination of the contractual relationship. Contact data collected for the information request service will be deleted immediately upon exercise of the right to object or the right to erasure (“right to be forgotten”).
DATA SUBJECTS’ RIGHTS
Pursuant to Articles 15–22 of the GDPR, the data subject has the right to request from the Data Controller access to his/her personal data, rectification or erasure thereof, restriction of processing, or to object to processing, as well as the right to data portability.
Requests may be sent by e-mail or registered mail with the subject line: “Request from the Data Subject”, specifying in the request which right the data subject intends to exercise (erasure, rectification, portability, right to be forgotten), and including a valid e-mail/PEC address to which a reply may be sent.
The Data Controller or a person appointed thereby shall respond to the request within 30 days of receipt. If the request is complex, this period may be extended by a further 30 days, with prior notification to the data subject.
If the data subject believes that his or her rights have been violated, he or she has the right to lodge a complaint with the competent supervisory authority: Garante per la Protezione dei Dati Personali Piazza Venezia, 11 – 00187 Rome, Italy E-mail: protocollo@gpdp.it