Privacy Policy.

About us

Our website is: wnvigilanza.it

The Data Controller responsible for Personal Data can be reached via email at:

dpo@wnvigilanza.it

Types of Data collected

The Data Controller does not provide a list of the types of Personal Data collected.
Full details of each type of Data collected are provided in the dedicated sections of this privacy policy or within specific informational texts displayed prior to the collection of the Data.
Personal Data may be freely provided by the User or, in the case of Usage Data, automatically collected during the use of this Application.
Unless otherwise specified, the provision of all Data requested by this Application is obligatory. If the User refuses to provide it, it may prove impossible for this Application to provide the Service.
Wherever this Application indicates that the provision of certain Data is optional, Users are free to refrain from providing said Data, without this having any consequence or effect on the availability of the Service or its proper functioning.
Any Users who are unsure as to which Data is obligatory are encouraged to contact the Data Controller for clarification. Any use of Cookies – or any other tracking tools – by this Application or by the owners of the third-party services used by this Application, unless otherwise specified, has the purpose of providing the Service requested by the User, as well as the additional purposes described in this document and in the Cookie Policy, if available.

The User assumes responsibility for any third-party Personal Data obtained, published or shared through this Application and guarantees that they have the right to communicate or disseminate it, releasing the Data Controller from any liability towards said third parties.

Method and location of processing for any Data collected

The Data Controller operates the appropriate security measures to prevent any unauthorised access to, or disclosure, modification or destruction of, Personal Data. Processing is carried out by means of computer and/or electronic tools, with organisational methods and principles that are strictly related to the purposes specified. In addition to the Data Controller, in some cases, other parties involved in the organisation of this Application (administrative, sales, marketing and/or legal staff, as well as system administrators) or external parties (such as third-party technical service providers, postal carriers, hosting providers, IT companies, communication agencies) who are also, if necessary, appointed as Data Processors by the Data Controller, may have access to the Data. A full and up-to-date list of the Data Processors can be requested from the Data Controller at any time.

Legal basis of processing

The Data Controller may only process Personal Data pertaining to the User if one of the following conditions is met:

  • the User has provided their consent for its processing for one or more specific purposes; please note: under some regulations, the Data Controller may be authorised to process Personal Data without requiring the User’s consent or another of the legal bases specified below, until the User specifically opts out of said processing. However, this is not applicable if the processing of Personal Data is regulated by the EU legislation on Personal Data protection;
  • the processing is necessary for the purposes of fulfilling a contract with the User and/or completing any pre-contractual measures;
  • the processing is necessary in order for the Data Controller to comply with a legal obligation they are subject to;
  • the processing is necessary in order to perform a task that is in the public interest or for the purpose of exercising public powers held by the Data Controller;
  • the processing is necessary in order to pursue the legitimate interest of the Data Controller or third parties.

It is, however, always possible to ask the Data Controller to clarify the concrete legal basis underlying each processing operation and, in particular, to specify whether the processing is based on the law, required by a contract, or necessary in order to enter into a contract.

Location

The Data is processed at the premises of the Data Controller and in any other location where the parties involved in the processing are located. For more information, please contact the Data Controller.
The User’s Personal Data may be transferred to a country other than the country where the User is located. In order to obtain further information on the location of the processing, the User may refer to the section explaining the details of the processing of Personal Data.

In case of a higher degree of protection, the User is entitled to obtain information about the legal basis for the transferral of their Data outside the European Union or to an international organisation operating under international public law or the jurisdiction of two or more countries, such as the UN, as well as about the security measures taken by the Data Controller to protect their Data.

In the event that the Data is transferred under one of the circumstances described above, the User may refer to the respective relevant sections of this document or request information from the Data Controller by contacting them using the details provided at the top of this document.

Retention period

Data is only processed and stored for as long as is required by the purposes for which it was collected. Therefore:

  • Personal Data collected for purposes relating to the execution of a contract between the Data Controller and the User will be retained until the execution of said contract is complete.
  • Personal Data collected for purposes attributable to the legitimate interest of the Data Controller will be retained until said interest is suitably fulfilled. The User may obtain further information regarding the legitimate interest pursued by the Data Controller in the relevant sections of this document or by contacting the Data Controller directly.

When the processing is based on the User’s consent, the Data Controller may keep the Personal Data for longer, specifically until said consent is withdrawn. Additionally, the Data Controller may be obliged to retain the Personal Data for a longer period in order to comply with a legal obligation or by order of an authority.

At the end of the retention period, the Personal Data will be deleted. As such, as of the end of this period, the User may no longer exercise their rights to access, delete, correct and/or transfer their Data.

Rights of the User

Users may exercise certain rights with regard to the Data processed by the Data Controller. In case of a higher degree of protection, the User may exercise all the rights specified below.

Otherwise, the User may contact the Data Controller to find out which rights are applicable in their case and how to exercise them. In particular, the User has the right to:

  • Withdraw their consent at any time. The User may withdraw any consent they had previously provided for the processing of their Personal Data.
  • Object to the processing of their Data. The User may object to the processing of their Data when it is performed on any legal basis other than their express consent. Further details on the right to object are provided in the section below.
  • Access their Data. The User has the right to obtain information on the Data being processed by the Data Controller and on certain aspects of said processing, as well as to receive a copy of any Data processed.
  • Review their Data and request its correction. The User may review their Data to ensure that it is correct and, if not, request that it be updated or corrected.
  • Obtain the deletion or removal of their Personal Data. When certain conditions are met, the User may request that the Data Controller deletes their Data.
  • Receive a copy of their Data or have it transferred to another Data Controller. The User has the right to receive a copy of their Data in a structured, commonly used and machine-readable format and, wherever technically feasible, to have it transferred to another Data Controller without obstruction or restriction. This provision is applicable when the Data is processed by automated means and the processing is based on the User’s consent, on a contract to which the User is party, or on contractual measures related to said contract.
  • Lodge a complaint. The User may lodge a complaint with the relevant data protection supervisory authority or take legal action.

Details on the right to object

Whenever Personal Data is processed in the public interest, for the purpose of exercising public powers held by the Data Controller, or in order to pursue the legitimate interest of the Data Controller, Users have the right to object to its processing on grounds relating to their specific situation.

Users are hereby informed that if their Data is processed for the purposes of direct marketing, they may object to its processing without specifying a reason. To find out whether the Data Controller processes Data for the purposes of direct marketing, Users may refer to the relevant sections of this document.

How to exercise your rights

In order for the User to exercise their rights, they may send a request to the Data Controller using the contact details provided at the top of this document. Requests can be submitted free of charge and shall be processed by the Data Controller as soon as possible, and in any case within one month of their submission.

Applicability of a higher degree of protection

Whilst most of the provisions of this document are applicable to all Users, some are expressly subject to the applicability of a higher degree of protection of the processing of a User’s Personal Data.

This higher degree of protection is always guaranteed when the processing:

  • is performed by a Data Controller based within the EU; or
  • relates to the Personal Data of Users located within the EU and is required for the purpose of offering goods or services to said Users, whether for payment or free of charge; or
  • relates to the Personal Data of Users located within the EU and enables the Data Controller to monitor the behaviour of said Users, insofar as said behaviour takes place within the EU.

Further information on data processing

Legal defence

The User’s Personal Data may be used by the Data Controller in legal proceedings or in the preparatory stages for its potential implementation in the Data Controller’s defence from any misuse by the User of this Application or any related Services.
The User hereby declares that they are aware that the Data Controller may be obliged to disclose their Data to comply with an order from public authorities.

Specific information

Upon the User’s request, in addition to the information contained in this privacy policy, this Application may provide the User with additional and contextual information regarding specific Services, or the collection and processing of Personal Data.

System logs and maintenance

For operational and maintenance purposes, this Application and any third-party services used by it may compile system logs, i.e. files containing records of interactions which may also contain Personal Data, such as the User’s IP address.

Information not contained in this policy

Further information in connection with the processing of Personal Data may be requested at any time from the Data Controller using the contact details provided at the top of this document.

Response to ‘Do Not Track’ requests

This Application does not support ‘Do Not Track’ requests.
To find out whether any third-party services used support such requests, the User is asked to consult the respective privacy policies of said services.

Changes to this privacy policy

The Data Controller reserves the right to make changes to this privacy policy at any time, notifying Users of any such changes on this page and, if possible, on this Application as well as, if technically and legally feasible, by sending a notification to Users by means of one of the contact details held for the User. As such, Users should consult this page frequently and refer to the last revision date specified at the bottom of the page.

If the changes affect any processing operations whose legal basis is consent, the Data Controller will request the User’s consent again, if required.

Definitions and legal references

Last revised: 22/04/2026