Privacy Policy - Treatment of personal data

1. DEFINITIONS

For the purposes of this Privacy Policy, the terms in capital letters have the same meaning attributed to them in the Conditions of Sale on the Site. Further definitions may be contained in this Privacy Policy.

2. SCOPE OF APPLICATION

2.1. This Privacy Policy binds any person who in any way accesses the Site, even in the case of a Consumer (hereinafter referred to as "User"), and in the event that the User simply browses the Site and does you use the services without purchasing any Products, both in the event that you purchase the Products.
2.2. NEST Srl respects the User's rights in relation to all information that identifies or makes the User identifiable and that can provide details on his habits, his lifestyle, his personal relationships, etc. (hereinafter, the "Personal Data").

3. OWNERS, RESPONSIBLE AND IN CHARGE OF THE TREATMENT

3.1. Pursuant to the European regulation 2016/679 on privacy, known by the acronym GDPR (General data protection regulation), NEST Srl, as indicated in the Conditions of Sale, is the owner of the processing of Personal Data (hereinafter jointly indicated also as "Owners").

3.2. The Data Controllers have the power and responsibility to decide the methods and purposes of processing, also from the point of view of security.

3.3. Furthermore, for organizational and functional needs, the Data Controllers, pursuant to the Privacy Code, may appoint data processors (hereinafter, the "Managers") and data processors (hereinafter, the "Persons in charge"), as better described. right away.

3.4. The User, where interested, can obtain the list of Managers and Officers by writing to the following email addresses: info@nestsrl.eu

4. COLLECTION OF PERSONAL DATA AND PURPOSES

4.1. As a result of this Privacy Policy, Personal Data may be collected and processed in the ways and for the purposes indicated below. a) Certain Personal Data (such as the User's e-mail address, personal data, password, etc.) are collected when the User registers on the Site by filling in the relevant form. registration; this collection is intended to allow the User access to reserved areas and services of the Site, to assistance services (Customer Care) and to communications services for technical / organizational reasons. b) Some Personal Data (such as postal address, credit card details and bank details, telephone number, etc ...) are collected when the User registers on the Site or proceeds to purchase the Products by filling in the relative order form; this collection has the purpose of allowing the conclusion of the sale and delivery of the Products and to give the User access to after-sales assistance and / or warranty services. c) Some Personal Data are collected as part of the creation of the so-called Wish List, in order to allow the User to purchase previously selected Products. d) The e-mail coordinates provided in the context of the sale of the Products may also be used for sending advertising regarding products similar to those already purchased, provided that the User himself has not refused such use at the time of conferment of the your e-mail or on subsequent occasions (Article 130, paragraph 4 of the Privacy Code).

4.2. In addition to the provisions of the previous point, the Personal Data may also be used, subject to the specific and separate consent of the User, also for the purposes indicated below: a) sending information and promotional communications, including commercial ones, in particular newsletters , advertising material, offers of goods and services, also concerning products and services not similar to those already purchased, by the Owners, of companies controlled by them and / or connected to them, or of physical or legal subjects who collaborate in marketing and commercial activities of the Owners; b) organization and conduct of events, including promotional events; c) elaboration of studies and statistical and market research.

4.3 In any case, even once authorized to send the User advertising communications via email, the Owners guarantee Users the right to exercise, at any time and without giving reasons, their right not to receive future communications. .

5. FAILURE TO PROVIDE PERSONAL DATA

5.1. The provision of Personal Data is optional. However, any refusal by the User or the provision of incorrect or incomplete information could make it impossible to register on the Site and to use the related contents and services, as well as the management or execution of purchase orders.

5.2. In any case, the failure to indicate the Personal Data or their incorrect or outdated indication may constitute a legitimate and justified reason for not executing the contract for the purchase of the Products or the provision of the related services.

6. PROCESSING METHOD

6.1. Personal Data are mainly processed in electronic format and in some cases also in paper format. Personal Data will be kept for the time strictly necessary for the purpose for which they were collected and, in any case, within the limits of the law.

6.2. It may happen that the Owners find themselves processing Personal Data of third parties communicated directly by their Users, for example in the event that the User has purchased a product to be delivered to a friend, or when the person who pays the price for the purchase of a Product is different from the person to whom the Product is intended. In all these cases, the User must ensure that he has obtained the consent of the person who owns the Personal Data provided before communicating them to the Data Controllers, and to inform that person of the contents of this Privacy Policy; the User will be the one and only responsible for the communication of information and Personal Data relating to third parties without the consent of the latter and for the incorrect use or contrary to the law of such Personal Data.

6.3. The Owners reserve the right to delete the accounts of the registered Users and all the related Personal Data, in the event that illegal contents are detected, damaging the image of www.nestetica.com or the products of the latter or of third parties, or in any case content that is offensive or promotes illegal or reprehensible activities.

7. COMMUNICATION OF PERSONAL DATA

7.1. Without prejudice to the communications made in compliance with the applicable laws, the Personal Data may be disclosed to natural and / or legal persons that the Owners use to allow the Site to function and the sale and delivery of the Products.

7.2. By way of example, the Data Controllers may communicate Personal Data to third parties belonging, among others, to the following categories: (i) subjects who perform tasks of a technical and organizational nature on behalf of the Data Controllers; (ii) subjects who carry out acquisition, processing and processing services of the data necessary for the supply of the Products; (iii) subjects who provide services for the management of the Site and the IT system of the Owners; (iv) subjects who carry out archiving and data entry activities; (v) banks or other entities involved in the payment procedures; (vi) subjects who operate in the field of assistance and consultancy relationships, also within the legal and / or accounting area; (vii) couriers and freight forwarders; (viii) public authorities and supervisory and control bodies.

7.3. The subjects indicated above operate, depending on the case, as separate data controllers, Managers or Appointees appointed for this purpose. The Personal Data may also be known by the employees and consultants of the Holders, if specifically appointed as Managers or Appointees.

7.4. Personal Data will not be used or disclosed to third parties for purposes other than those described in this Privacy Policy, without prior information to the User and without having obtained his consent, where required by law.

8. SECURITY

8.1. Pursuant to the Privacy Code, the Data Controllers take appropriate security measures to minimize the risk of destruction or loss of Personal Data, unauthorized access or processing that is not permitted or does not comply with this Privacy Policy.
8.2. However, the Controllers cannot guarantee that the security measures adopted will adequately limit or exclude any risk of unauthorized access or loss of Personal Data. Users are therefore advised to ensure that their computer and internet connection are equipped with adequate devices for the protection of the transmission of Personal Data over the network.

9. OTHER USER RIGHTS

9.1. In addition to the provisions of this Privacy Policy, the User can always exercise the rights attributed to him by art. 7 of the Privacy Code, which for completeness is reported in full below: “Art. 7 1. The interested party has the right to obtain confirmation of the existence or not of personal data concerning him, even if not yet recorded, and their communication in an intelligible form. 2. The interested party has the right to obtain information on: a) the origin of the personal data; b) the purposes and methods of the processing; c) of the logic applied in case of treatment carried out with the aid of electronic instruments; d) the identity of the owner, manager and the representative appointed under article 5, paragraph 2; e) the subjects or categories of subjects to whom the personal data may be communicated or who can learn about them as appointed representative in the State, managers or agents. 3. The interested party has the right to obtain: a) the updating, rectification or, when interested, the integration of personal data; b) the cancellation, transformation into anonymous form or blocking of personal data processed in violation of the law, including those that do not need to be kept for the purposes for which the personal data were collected or subsequently processed; c) the attestation that the operations referred to in letters a) and b) have been brought to the attention, also as regards their content, of those to whom the personal data have been communicated or disseminated, except in the case in which this fulfillment it proves impossible or involves the use of means that are manifestly disproportionate to the protected right. 4. The interested party has the right to object, in whole or in part: a) for legitimate reasons, to the processing of personal data concerning him, even if pertinent to the purpose of the collection; b) to the processing of personal data concerning him for the purpose of sending advertising or direct sales material or for carrying out market research or commercial communication. "

9.2. The User may freely and at any time exercise his rights, as long as within the limits of the law, with a request addressed to the Owners to the e-mail addresses info@nestsrl.eu

10. LINKS TO OTHER WEBSITES

10.1. The Site contains links to other websites that may have no connection with the Site and with NEST Srl
10.2. The Owners do not control or monitor such websites and their contents. The Owners cannot be held responsible for the contents of these sites and the rules adopted by them also with regard to privacy and the processing of personal data. The User must therefore pay attention when connecting to these websites through the links on the Site and must carefully read their terms of use and privacy regulations. This Privacy Policy does not apply to third party websites and the Owners are in no way responsible for the privacy rules applied by said websites.

10.3. The activation of the links does not imply any recommendation or report by the Owners for accessing and browsing these websites, nor any guarantee regarding their contents, services or goods supplied by them and sold to Internet users.

11. COOKIES

11.1. Cookies are small text files that some websites send to their users' computers while browsing the sites themselves and that are stored on the individual user's computer. Based on their function, some cookies are automatically deleted from the user's hard drive at the end of each browsing session, while other cookies remain stored on the hard drive for a certain time.

11.2. The User acknowledges and accepts that the Site uses the following cookies. (i) "Technical" cookies. These cookies allow the Site to function properly. By way of example, they allow the User to view the contents of the Site in a different language depending on the country from which the User connects, they allow the User to create their own account, to log in and manage their own orders (including the so-called "Shopping Cart" and "Wish List" functions), allow the identification of the User to be maintained during the browsing session and also allow the Site to recognize already registered Users at each new access. (ii) "Google Analytics" cookies. These cookies are used by the Google company to process statistical analysis on the browsing methods of the Users. The Owners use the results of these analyzes anonymously and exclusively for statistical purposes. For more information on the functioning of Google Analytics Cookies, also with reference to privacy, please visit the following web page: https://developers.google.com/analytics/devguides/collection/analyticsjs/cookie-usage?hl= it.

11.3. As a result of this Privacy Policy, the User agrees to the processing of his / her data carried out by means of the cookies described above.

11.4. The User can refuse the installation of cookies by setting the browser used accordingly. It should be noted, however, that in this way the User will not be able to take full advantage of some functions of the Site.

11.5. The User may modify the browser parameters relating to cookies in the manner specific to each individual browser. Here is the path to follow to change the parameters of the following browsers:

For Internet Explorer: http://windows.microsoft.com/it-it/windows7/block-enable-or-allow-cookies

For Safari: http://support.apple.com/kb/PH11913

For Chrome: https://support.google.com/chrome/answer/95647?hl=it-IT&hlrm=fr&hlrm=en

For Firefox: http://support.mozilla.org/it-IT/kb/enable-and-disable-cookies-website-preferences

For Opera: http://help.opera.com/Windows/12.10/it/cookies.html 2. To disable analytical cookies and choose not to be followed by Google Analytics on all websites, you can download the extension Google Analytics browser opt-out: https://tools.google.com/dlpage/gaoptout.

12. CONTACTS

To receive more information on how the Owners process Personal Data, the User can write to NEST Srl - Email: info@nestsrl.eu

13. CHANGES AND UPDATES TO THIS PRIVACY POLICY

The Owners may modify or simply update this Privacy Policy, in whole or in part, also in consideration of the changes in current legislation. Changes and updates to this Privacy Policy will be notified by publication on the Site and will be binding as soon as they are published there.