Privacy Policy
When you browse our website, we collect some of your personal data (hereinafter "Data"). We invite you to carefully read the information below: it describes the data we collect, the purposes for which it is used, and the rights you are entitled to as a Data Subject.
1. Data Controller
The Controller of your personal data (the party that determines the purposes and means of processing) is: NIT SOLUTIONS S.R.L.
The Controller can be contacted by sending a communication to the following e-mail address: info@nitsolutions.it
2. Types of Data Collected
Among the Personal Data collected by this Website, obtained by examining your interaction with us independently or through third parties, are Cookies and Usage Data.
We will process the personal data you provide us with solely for the purposes that are specific and strictly relevant to each individual service requested and used. We may use your data for further or different purposes only with your prior consent or, in limited cases, where we have a legitimate interest in doing so.
Full details on each type of data collected are provided in the dedicated sections of this privacy policy below.
We will never ask you for sensitive data (relating to racial or ethnic origin, religious, philosophical, or political beliefs, health status, sexual orientation, etc.) nor judicial data (data relating to criminal records, or to the status of defendant or person under investigation, etc.).
Unless otherwise specified, the Data requested by this Website is mandatory. If the User refuses to provide it, it may be impossible for this Website to provide the Service. Where this Website indicates certain Data as optional, Users are free to refrain from providing such Data, without this having any consequence on the availability of the Service or on its operation.
Browsing Data
The computer systems and software procedures used to operate this website acquire, during their normal operation, certain personal data whose transmission is implicit in the use of Internet communication protocols. This information is not collected in order to be associated with identified data subjects, but by its very nature could, through processing and association with data held by third parties, allow users to be identified. This category of data includes, for example, the IP addresses or domain names of the computers used by users connecting to the site, the URI (Uniform Resource Identifier) addresses of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file received in response, the numerical code indicating the status of the response given by the server (successful, error, etc.), and other parameters relating to the user's operating system and computing environment. This data is used solely to derive anonymous statistical information on the use of the site and to check its correct functioning, and is deleted immediately after processing.
Data Provided Voluntarily by the User
Sending e-mail to the addresses indicated on the Site — optional, explicit, and voluntary — results in the subsequent acquisition of your e-mail address, necessary to respond to requests, as well as any other personal data communicated. The Site contains forms accompanied by specific information notices on the personal data processing carried out and, where necessary, requests for consent: we therefore invite you to review them before proceeding to use the form.
Cookies
We ask you to review the Cookie Policy, to be read together with this notice, by accessing this link: Cookie Policy.
Social Networks
On our site you may also find social buttons/widgets, i.e. those particular "buttons" depicting social network icons (for example, LinkedIn, Facebook, Instagram, etc.) and interactive social walls (which display content from social networks). These "buttons" allow users browsing our site to interact directly with the social network with a single click, and the social network then collects data relating to your visit. In some areas of the site, so-called social login may also be available, allowing you to access your reserved area using your social network account. When you use social login, you accept the terms, conditions of use, and privacy policy of the social network itself.
3. Purposes and Legal Basis of Processing
The Controller will process your data to facilitate browsing and to provide any services requested through the forms specifically set up on the Site. Aside from what is specified for browsing data and technical cookies, within the sections of the Site set up for particular services at your request, you will be free to provide your personal data for the purposes set out in the respective notices, but failure to provide it may result in the inability to obtain the requested service.
4. How and Where Is the Collected Data Processed?
The Controller adopts appropriate security measures to prevent unauthorized access, disclosure, modification, or destruction of Personal Data. Processing is carried out using computer and/or telematic tools, with organizational methods and logic strictly related to the purposes indicated. In addition to the Controller, other parties involved in the organization of this Website (administrative, sales, marketing, legal staff, system administrators) may in some cases have access to the Data, as may external parties (such as third-party technical service providers, postal couriers, hosting providers, IT companies, communication agencies), also appointed, where necessary, as Data Processors by the Controller. The updated list of Processors can always be requested from the Data Controller.
Data is processed at the Controller's operating offices and in any other location where the parties involved in the processing are based. For further information, please contact the Controller. The User's Personal Data may be transferred to a country other than the one in which the User is located.
The User has the right to obtain information regarding the legal basis for any transfer of Data outside the European Union, as well as regarding the security measures adopted by the Controller to protect the Data.
5. Data Retention Period
Data is processed and stored for the time required by the purposes for which it was collected.
Therefore:
- Personal Data collected for purposes related to the Controller's legitimate interest will be retained until that interest is satisfied. The User can obtain further information regarding the legitimate interest pursued by the Controller in the relevant sections of this document.
- Where processing is based on the User's consent, the Controller may retain Personal Data for longer, until such consent is withdrawn.
- Furthermore, the Controller may be obliged to retain Personal Data for a longer period in compliance with a legal obligation or by order of an authority. At the end of the retention period, Personal Data will be deleted. Therefore, upon expiry of that period, the right of access, erasure, rectification, and the right to data portability can no longer be exercised.
6. Who Do We Share Your Data With?
To achieve the processing purposes indicated above, the personal data collected may be shared with:
- Company personnel responsible for managing the services available on the website;
- The company's suppliers and consultants, appointed as data processors pursuant to Art. 28 of EU Regulation 2016/679 (hereinafter also "GDPR");
- Parties to whom access is granted by law or regulation (e.g. public security authorities). The list of parties appointed as Data Processors can be requested by writing to info@nitsolutions.it
7. Do We Transfer Your Personal Data to Countries Outside the EU?
The personal data collected may be transferred outside the European Union. In such a case, the transfer will take place in compliance with the provisions of the GDPR (in particular, data will only be transferred following the signing of the Standard Contractual Clauses approved by the EU Commission with decision no. 2021/914/EU, or to countries capable of guaranteeing an adequate level of protection for personal data and therefore covered by an Adequacy Decision adopted by the EU Commission).
8. Rights of the Data Subject
Under the GDPR, you have the right at any time to:
- Request access to your personal data held by us.
- Obtain rectification or erasure of your data (right to be forgotten).
- Request restriction of processing or object to it.
- Request the portability of your data in a structured, machine-readable format.
- Withdraw previously given consent without affecting the lawfulness of processing based on consent given before its withdrawal.
To exercise these rights, you can send a written communication to: info@nitsolutions.it.
We will get back to you within 24 hours.