Privacy Policy

Last updated: October 2025

1. Data Controller

The data controller of personal data is:

Oleificio Pianura del Maestrale
Zona Artigianale lots 18-19 – 09080 Siamanna (OR) – Italy
Email: pianuradelmaestrale@gmail.com
Phone: 0783 405028
VAT: 00028680957 – Tax Code: MRTRLB46I791R


2. Types of Data Collected

The site https://www.pianuradelmaestrale.it collects, independently or through third parties, the following types of personal data:

  • Browsing data: IP address, browser type, access time, pages visited, geographical origin, device used.
  • Data voluntarily provided by the user: first name, last name, email, shipping and billing address, phone number, any order notes.
  • Payment data: managed securely through external services (Stripe, SardexPay); the site does not store or directly process payment card data.
  • Cookies and tracking tools: used for technical, statistical, and marketing purposes (see Cookie Policy).

3. Purpose of Data Processing

The personal data collected are processed for the following purposes:

  1. Order and online purchase management
    • order fulfillment, shipping, post-sale assistance.
  2. Contact and information request management
    • response to messages sent via forms or email.
  3. Payment management
    • through external providers (Stripe, SardexPay).
  4. Statistical analysis and site improvement
    • through Google Analytics and similar tools.
  5. Legal and tax compliance
    • accounting, tax, and administrative obligations.
  6. Security purposes
    • prevention of fraud or unauthorized access.

4. Legal Basis for Processing

Data are processed according to the following legal bases:

  • Performance of a contract (art. 6, par. 1, lett. b GDPR): for orders, payments, and deliveries.
  • Legal obligation (art. 6, par. 1, lett. c GDPR): for tax and accounting compliance.
  • Consent of the data subject (art. 6, par. 1, lett. a GDPR): for marketing and statistical analysis purposes.
  • Legitimate interest of the controller (art. 6, par. 1, lett. f GDPR): for IT security and fraud prevention.

5. Data Processing Methods

Data processing is carried out using IT and/or telematic tools, with organizational and logical methods strictly related to the purposes indicated.
Adequate security measures are adopted to prevent unauthorized access, disclosure, modification, or destruction of data.


6. Place of Processing

Data are processed at the operational headquarters of the controller and on the servers of third-party providers involved (e.g., hosting providers, payment and analysis services).
In some cases, data may be transferred to non-EU countries, but always in compliance with the guarantees provided by the GDPR (e.g., EU standard contractual clauses).


7. Third-Party Services Used

🔹 Stripe (Online Payments)

Service provided by Stripe Inc. or Stripe Payments Europe Ltd.
Payment data are processed directly by their servers.
Privacy Policy: https://stripe.com/privacy

🔹 SardexPay

Payment and commercial credit system.
Privacy Policy: https://www.sardexpay.net/privacy-policy/

🔹 Google Analytics

Web analysis service provided by Google Ireland Limited.
Uses cookies to collect anonymous data on site usage.
Privacy Policy: https://policies.google.com/privacy

🔹 Google Fonts and Google Maps

Display services provided by Google Ireland Limited.
May collect technical data (e.g., IP address) to ensure proper functioning.
Privacy Policy: https://policies.google.com/privacy

🔹 Hosting and Infrastructure

The site is hosted on servers of reliable providers with data centers located in the EU.


8. Data Retention Period

Personal data are retained for the time necessary for the purposes for which they were collected, and in particular:

  • Order-related data: 10 years (tax and accounting obligations).
  • Data collected for contacts or requests: up to 12 months from the closure of the communication.
  • Data for marketing purposes: until consent is withdrawn.
  • Cookies: as specified in the Cookie Policy.

9. Rights of the Data Subject

The user may, at any time, exercise the following rights:

  • Access to their personal data
  • Rectification or updating of data
  • Erasure (“right to be forgotten”)
  • Restriction of processing
  • Data portability
  • Objection to processing
  • Withdrawal of consent

Requests should be sent to the controller at the address:
📧 pianuradelmaestrale@gmail.com

The user also has the right to lodge a complaint with the Italian Data Protection Authority (www.garanteprivacy.it).


10. Changes to this Policy

The controller reserves the right to modify this Privacy Policy at any time.
Changes will be published on this page with the date of update.


Last updated: October 2025
Oleificio Pianura del Maestrale – All rights reserved.

0
    0
    Carrello
    Il tuo carrello è vuotoRitorna al negozio