Complete Cookie Policy
Who are we, and how do we handle your personal data?
CY4GATE S.p.A., with headquarters at Via Coponia 8, 00131 Rome (RM) (hereinafter also referred to as “the Data Controller”), in its capacity as data controller, is committed to protecting the confidentiality of your personal data and ensuring that it is adequately protected against any event that could put it at risk of a breach.
The Data Controller implements policies and practices regarding the collection and use of personal data and the exercise of the rights granted to you under applicable law. The Data Controller ensures that the policies and practices adopted for the protection of personal data are updated whenever necessary and, in any case, in the event of regulatory or organizational changes that may affect the processing of your personal data.
The Data Controller has appointed a Data Protection Officer (DPO) whom you can contact at dpo@cy4gate.com if you have any questions about the policies and practices in place.
How does the Data Controller collect and process your data?
Your personal information will be processed for the following purposes:
- Browsing the www.cy4gate.com website
Your personal data—such as browsing data (e.g., your IP address) and cookies generated while browsing the www.cy4gate.com website—are processed by the Data Controller to manage the website and to collect information, including aggregated data.
Your personal data will not be disclosed or shared with unspecified third parties in any way. - Disclosure to Third Parties and Recipients
Your personal data is primarily disclosed to third parties and/or recipients whose activities are necessary for the performance of tasks related to the aforementioned purposes, as well as to comply with certain legal obligations. Any disclosure that does not serve these purposes will be subject to your consent. Specifically, your data will be disclosed to third parties/recipients for:
1. the provision of the service (e.g., IT service providers);
2. communications with tax authorities and public supervisory and regulatory bodies toward which the Data Controller must fulfill specific obligations arising from the nature of the business conducted;The personal data that the Data Controller processes for this purpose are:
1. browsing data (IP address) - Cybersecurity Reasons
The Data Controller processes, including through its service providers (third parties and/or recipients), your personal data (e.g., IP address) or traffic data collected or obtained in connection with the services provided on the website, to the extent strictly necessary and proportionate to ensure the security and the ability of a network or the servers connected to it to withstand, at a given security level, to withstand unforeseen events or unlawful or malicious acts that compromise the availability, authenticity, integrity, and confidentiality of the personal data stored or transmitted.
For these purposes, the Data Controller has established procedures for managing personal data breaches.
What Are Cookies and What Are They Used For?
A “cookie” is a small text file created by certain websites on the user’s computer when the user accesses a particular site, for the purpose of storing and transmitting information. Cookies are sent from a web server (the computer on which the visited website is running) to the user’s browser (Microsoft Edge, Mozilla Firefox, Google Chrome, etc.) and stored on the user’s computer; they are then sent back to the website during subsequent visits.
Some operations could not be performed without the use of cookies, which are therefore technically necessary in some cases. In other cases, the website uses cookies to make it easier and more convenient for users to navigate the site or to allow them to use specifically requested services.
Cookies can remain on the system for long periods of time and may also contain a unique identifier. This allows websites that use them to track the user’s browsing activity on the site for statistical or advertising purposes—that is, to create a personalized profile of the user based on the pages they have visited and then display and/or send them targeted advertisements (so-called “behavioral advertising”).
What cookies are used and for what main purposes
The Data Controller lists below the specific categories of cookies used, their purpose, and the consequences of opting them out:
|
COOKIE TYPES |
PART ONE/PART THREE |
PURPOSE |
SHELF LIFE |
CONSEQUENCES IF UNCHECKED |
|
Technical cookies |
FIRST |
Website Management. These cookies enable the website to function and allow for safe and efficient browsing. |
12 mesi |
Si tratta dei cookie necessari per l’utilizzo del sito, bloccarli non ne permette il funzionamento |
|
These are cookies that are necessary for using the site; blocking them will prevent the site from functioning properly |
FIRST |
To facilitate navigation and improve the service provided to the user based on a set of criteria selected by the user |
12 mesi |
Would it not be possible to retain the choices users make while browsing? |
|
Analytics cookies |
FIRST |
To collect aggregated information about users’ browsing behavior in order to optimize the browsing experience and the services themselves. |
12 mesi |
It would no longer be possible for the Data Controller to obtain the aggregated information |
|
Experience Cookies |
THIRD |
|
|
|
|
Essential Cookies |
THIRD |
|
|
|
|
Measurement Cookies |
THIRD |
|
|
Social buttons
The website www.cy4gate.com features specific “buttons” (referred to as “social buttons/widgets”) that display the icons of social networks and other web services. These allow users browsing the Data Controller’s website to access the relevant social networks with a single “click.” In such cases, the social networks and web services collect data about the user, while the Data Controller will not share any browsing information or user data collected through its website with the social networks and web services accessible via the social buttons/widgets. These services set “third-party cookies.” Below are links to the privacy policies of the most commonly used social networks and the websites to which the buttons link:
What happens if you don’t provide your information?
We invite you to review the consequences of deselecting individual cookies, as shown in the table above.
How, where, and for how long is your data stored?
How We Process Your Data
Personal data is processed using computerized procedures by specifically authorized and trained internal personnel. These individuals are granted access to your personal data only to the extent and within the limits necessary to carry out the processing activities that concern you.
The Data Controller periodically reviews the tools used to process your data and the security measures in place for them, ensuring that these are constantly updated; verifies, including through the entities authorized to process the data, that no personal data is collected, processed, stored, or retained unless its processing is necessary; and verifies that the data is stored in a manner that guarantees its integrity and authenticity and ensures it is used solely for the purposes of the processing actually carried out.
Where We Process Your Data
Your personal data may also be processed outside the European Economic Area. In such circumstances, the Data Controller implements all necessary safeguards to ensure the security of your data, including, in particular, the application of the EU-U.S. Privacy Shield Framework and the use of standard contractual clauses approved by the European Commission.
How long do we retain your data?
-Cookie:
We invite you to review the retention periods for personal data as indicated in the table above.
-Site Navigation:
Personal data is retained for as long as necessary to enable navigation of the website and, in any case, for no longer than 12 months, except in cases where events occur that require the intervention of the competent authorities—including in collaboration with third parties or recipients entrusted with the Data Controller’s data security—to conduct any investigations into the causes of such events, as well as to protect the Data Controller’s interests regarding any liability related to the use of the website and its services.
What are your rights?
Essentially, at any time, free of charge, and without any special requirements or formalities related to your request, you can:
- to obtain confirmation of the processing carried out by the Data Controller;
- access your personal data and learn about its source (when the data is not obtained directly from you), the purposes and grounds for processing, the details of the parties to whom it is disclosed, the retention period for your data, or the criteria used to determine it;
- update or correct your personal information so that it is always accurate and up-to-date;
- to have your personal data erased from the Data Controller’s databases and/or archives, including backup archives, in cases where, among others, the data is no longer necessary for the purposes of the processing or if the processing is deemed unlawful, provided that the conditions set forth by law are met; and in any case, if the processing is not justified by another equally legitimate reason;
- to restrict the processing of your personal data under certain circumstances—for example, if you have contested its accuracy—for the period necessary for the Data Controller to verify its accuracy. You must also be informed, within a reasonable time, when the suspension period has ended or the reason for the restriction on processing no longer applies, and the restriction is therefore lifted;
- to obtain your personal data, if it has been received or processed by the Data Controller with your consent and/or if its processing is based on a contract and is carried out using automated means, in electronic format, including for the purpose of transmitting it to another data controller.
The Data Controller must act accordingly without delay and, in any case, no later than one month after receiving your request. This deadline may be extended by two months, if necessary, taking into account the complexity and number of requests received by the Data Controller. In such cases, the Data Controller will notify you within one month of receiving your request and inform you of the reasons for the extension. To exercise your rights, please write to dpo@cy4gate.com
How and when can you object to the processing of your personal data?
For reasons related to your specific situation, you may object at any time to the processing of your personal data if it is based on a legitimate interest by sending your request to the Data Controller at dpo@cy4gate.com
You have the right to have your personal data erased if there is no legitimate reason that outweighs the reason that prompted your request.
Who can you file a complaint with?
Without prejudice to any other administrative or judicial action, you may file a complaint with the competent supervisory authority—that is, the authority that performs its duties and exercises its powers in Italy, where you have your habitual residence or work, or, if different, in the Member State where the violation of Regulation (EU) 2016/679 occurred.