Privacy policy
1. Data Controller
The Data Controller is BARISOFT S.R.L.S., with its registered office at Via della Stazione di Ottavia, 21 – 00135 Rome (Italy), represented by its legal representative Mr Matteo Barison.
2. Types of Data Processed and Purposes
a) Browsing data
During normal operation, IT systems collect data whose transmission is inherent in the use of Internet protocols. This data is used in anonymous form for statistical purposes and to verify that the website is functioning correctly. The data is retained for a maximum of 7 days.
b) Data provided voluntarily
The voluntary submission of personal data via forms or email results in such data being collected by the Data Controller for the purpose of responding to enquiries.
c) Specific purposes
- Contact form: for enquiries, quotes or further information.
- Comments: Free publication (including anonymously) of comments containing details such as name, email address and website.
- Statistics – Google Analytics: anonymous web traffic analysis, with anonymised IP addresses.
- Cookies: We use only technical session cookies; no profiling cookies.
3. Legal Basis for Processing
The treatment is based on:
- Consent of the data subject (Article 6(1)(a) of the GDPR);
- Performance of contractual or pre-contractual obligations (point (b));
- Compliance with legal obligations (point (c));
- Legitimate interests of the data controller (point (f)).
4. Methods of processing
Personal data is processed using automated tools for the time necessary to achieve the stated purposes. Technical and organisational measures are in place to prevent unlawful processing or unauthorised access.
5. Voluntary Provision of Data
With the exception of browsing data, you are free to provide the personal data requested. Failure to provide such data may mean that you are unable to obtain the services requested.
6. Place of processing
Data processing takes place at the Data Controller’s premises or at the premises of external data processors (e.g. hosting providers). The data is processed exclusively by authorised personnel. No data is disclosed.
7. Disclosure to Third Parties
Data may be disclosed to third parties solely for the purpose of complying with legal obligations or providing the service requested by the user. It will never be disclosed without authorisation.
8. Rights of the data subject
Data subjects may exercise the rights set out in Articles 15–22 of the GDPR, including:
- Right of access, rectification, updating and erasure;
- Right to restrict or object to processing;
- Right to data portability;
- Right to lodge a complaint with the Data Protection Authority.
Requests should be sent to the Data Controller’s contact details published on this website.
9. Updates
This Privacy Policy may be subject to updates. Any changes will be published on this page.