Key Technologies S.p.A. (hereinafter "Key Technologies" or "Company"), as Data Controller, provides the following specific information about the methods of managing the site (www.keytech.it) about the processing of personal data of users that access it. It is also a privacy notice pursuant to art. 13 of EU Regulation 2016/679 ("GDPR" or "Regulation").
Directive 2002/58/EC – concerning the “processing of personal data and the protection of privacy in the electronic communications sector”. Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (“General Data Protection Regulation”). Legislative Decree 30 June 2003 n. 196 “Code regarding the protection of personal data", as amended by Legislative Decree 10 August 2018 n. 101. DATA CONTROLLER The Data Controller is Key Technologies S.p.A., Via Edison n. 4, 20082 Binasco (MI).
DATA PROCESSING PLACE
The process related to the web services of this web site is realized at the seat of Key Technologies.
TYPE OF DATA PROCESSED
Browsing data The information systems and the software procedures needed for the running of this web site acquire, during their normal operation, some personal data the transmission of which is implicit in the use of the internet communication protocols. Such data is not collected to be associated to identified Data Subjects, but – due to its nature – it could, allow to identify the users, through processing and association with data held by third parties.
To this category of data belong the IP addresses and or the domain names of the PC used by the users who connect to the web site, the URI (Uniform Resource Identifier) notation addresses of the required resources, the time of the request, the method used while sending the request to the server, the size of the file obtained in response, the numeric code specifying the status of the response given by the server (successful, error, etc.) and other parameters concerning the operation system and the user’s information environment.
Such data are used only to obtain anonymous statistic information on the use of the web site and to control the correct operation and is cancelled immediately after processing.
The data could be used to ascertain the liability in case of possible cybercrimes damaging the web site.
Data provided freely by the user
Key Technologies can collect personal data voluntary sanded by the user in order to request information.
PURPOSES AND LEGAL BASIS OF THE PROCESS
Personal data will be processed for the following purposes:
(I) To allow users to browse and consult the website.
The legal base of the process is the consent that is clearly given by consulting the site (art. 6, first paragraph, let. a) of the GDPR).
(II) Purposes related to the provision of responses to request of information. The legal basis of the process is the consent that is expressly given by sending the request (art. 6, first paragraph, let. a) of the GDPR).
(III) Defensive purposes in the event of abuses in the use of the site or attempts at fraud.
The legal base of the process is the legitimate interest (art. 6, first paragraph, let. f) of the GDPR).
OPTIONAL SUPPLY OF DATA
Apart from what has been specified for browsing data, users are free to supply their personal data or not. However, in case of request of information the non-supply of data may entail the impossibility to provide the service requested.
Personal data is processed, even with the aid of automated devices, for the time strictly necessary to achieve the purposes for which it was collected.
Specific security measures are taken in order to prevent the loss of data, its unlawful or wrongful use and unauthorized access. Key Technologies, following the principal international standards, adopted all adequate security measures to minimize the risks concerning confidentiality, availability and integrity of personal data collected and processed.
SHARING, COMMUNICATION AND CIRCULATION OF DATA
The collected data will not be shared, transferred or communicated to anyone, unless there is a contractual or legal provision, or upon specific consent by the data subject. In this sense, personal data may be transmitted to third parties, but only and exclusively if:
a) there is explicit consent to share the data with third parties;
b) there is a need to share information with third parties in order to provide the service required by the data subject;
c) it’s necessary in order to meet a request by the judicial or public security authorities. No data deriving from the web service is disseminated.
TRANSFER OF PERSONAL DATA
Personal data will not be transferred to Third Countries, meaning countries not belonging to the European Union or to the European Economic Area. Should this occur, the Data Controller declares and guarantees to comply with the provisions of the articles 44 et seq. of the GDPR.
RIGHTS OF INTERESTED PARTIES
The regulation protecting the personal data provides some rights for the subject to whom the data refers (the so-called data subject). In particular, pursuant to art. 15 and subsequent of the EU Regulation 2016/679, each data subject has the right to obtain confirmation as to whether or not personal data concerning him or her are being processed, and, where that is the case, access to the personal data, to obtain rectification, erasure or restriction of processing concerning the data subject or to object to processing as well as the right to data portability.
To exercise the aforementioned rights, the user can contact the Data Controller by sending a registered letter with return receipt to the address indicated or an email to this email address
RIGHT TO LODGE A COMPLAINT WITH A SUPERVISORY AUTHORITY
Every data subject who believes that the processing of personal data relating to him or her, through the web site, infringes the Regulation, shall have the right to lodge a complaint with a supervisory authority, as provided by the article 77 of GDPR, or to put in place any other administrative or judicial remedy.
CHANGMENT TO THIS PRIVACY POLICIES
Key Technologies periodically verifies its own privacy and security policies and, if necessary, revises them according to regulatory, organizational or technological changes. In the event of a change in policies, the new version will be published on this page of the site.
LAW AND JURISDICTION
The interpretation and execution of these conditions are governed by Italian law. The Court of Verona (VR) (Italy), will be exclusively competent for any dispute connected with these conditions. The Data Controller reserves the right to obtain urgent remedies in any Court, even abroad, to protect his interests and enforce his rights.