Privacy Policy

damettoluca.com

Your privacy is respected at the base of our agency, our business model doesn't include data selling.

Last update: January 1, 2023

This Privacy Policy describes how damettoluca.com, its affilates ("we", "our", "us") and its projects collect, use, and share information in connection with your use of our websites, services, applications, api, and support (collectively, the "Services").
This Privacy Policy ("Policy") doesn't apply to information our Customers ("users") or our partners ("third-party integrations") may process when using our services. Check what data our partners know.

This policy is complaint to Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 ("Regulation"), we recommend you to read this entire document to understand how we manage your data. For further questions, please contact [email protected]

Expressions which begin with an upper-case letter and which are not defined in this DPA shall have the meaning as set out in the Agreement. “Binding Corporate Rules”, “Controller”, “Personal Data”, “Personal Data Breach”, “Processing”, “Processor”, “Supervisory Authority” are interpreted as defined in the protection of natural persons with regard to the processing of personal data and on the free movement of such data ("General Data Protection Regulation", "GDPR").

Data Owner and Data Protection Officer

In our company those roles are managed by the same person, Dametto Luca.

Contact information:
E-mail: [email protected]

1. Information we collect

Navigation data

Our Systems, during their normal ativity, collect some essential personal data that are implicit in the Internet's protocols of communication.
This category contains: IP address, User Agent, URI/URLs of the requested content, time, Method, Request Body Size, Status Code, Answer time.
Those data, needed to use web services, are exclusively and only used to guarantee more security and stability for our systems, and so, for our users.
Sometimes, our systems can proceed to record more data than needed, but that doesn't apply to normal traffic, and so, to fair Users (Correct and allowed website usage). We define it "Security Mode". When our systems detect something strange (by analyzing the data mentioned above) in someone's traffic (generated as example by Bots, Botnets, Malwares, unallowed Scrapers, Malicious Users, Security Issues Scanners, Port Scanners), they start to collect all the data that will be useful in case of future Legal Actions or Security Patches. When this is enabled, all the data available from the malicious User is stored until needed.

Information you provide

Our Services may save data intentionally provided by you.
In any data-request form you will be able to read the reason of the data request.

Cookies

Our Services may use cookies to guarantee the best experience using our website.
We don't use tracking cookies, we don't like them at all.
We use just cookies needed to guarantee Services integrity and functionalities, like Login.
All the cookies are managed client-side, due to that you can choose how to manage them in your browser settings.
Note that disabling technical cookies may make our Services unable to work properly for you.

2. How we use/share information

Data usage

We use your data only to provide a better service, so, to provide better support, to provide custom solutions to fit your needs and develop new products for our customers.

Data share

We may also share your data with others, just in the following conditions:
1. With your consent - We may share your data with external entities to provide you the best service. We will explicitly ask your consent and you will be free to refuse.

3. Security

We're obliged by law to protect your information with a level of security appropriate to the risk of your data, and we do that in the best way possible.
We use the best security standards, trying to provide you the best in-class security for your data.
All your important data is hashed or encrypted in a cryptographically secure way. However, nothing in the universe can be guaranteed as 100% safe.

4. Involved rights

Rights under GDPR

All the users of our Services resident in the EEA can excercise their rights granted by the Article 15 GDPR in the expected cases.
To exercise your rights you can send an email with the appropriate form at the Data Owner.

Data Access

If you're registered on one of our Services you can access some of the information linked to your Account from the Customer panel. You can also email the Data Owner to have more information about your account that are not normally visible with the Customer panel. Remember that some information, as the password hash, will never be shared.
To protect your privacy and your security we may ask you to confirm your identity before sharing any kind of PPI with you.

Data deletion

After the Termination of your Account your data becomes inaccessible and remains stored in our Systems for 30 days, this period allows Authorities to get in touch with us. After that time period your data will be, in the most cases, definitely deleted from our systems. Some of your data may remain in our Systems to guarantee continuity, prevent sanctions bypass and other technical reasons. You will be notified during the process about which data will remain stored.

5. Data Transfer out of UE

Our company data remains in Europe.
No data is being shared outside the EEA territory.

6. Partners

We share some of your data with third party agencies in order to ensure the security of our Systems.
Below you can read the list of all our partners that may have access to unanonymized data:
Cloudflare (Cloudflare inc.) - DDoS Protection, CDN and traffic optimization