PRIVACY NOTICE AND COOKIE POLICY - Alessandro Noto
(Prepared pursuant to EU Regulation 2016/679 - GDPR and applicable national legislation)
Dear User, welcome to alessandronoto.com. This page describes how the website is managed with regard to the processing of the personal data of its visitors. The website is purely informational and professional in nature, with a focus on protecting your privacy.
1. Data Controller
The Data Controller is: Alessandro Noto
Address: Via Resistenza Partigiana 59, 97015 Modica (Rg)
VAT number: 01360170888
Email: [email protected]
2. Categories of data processed, purposes and legal bases
Only the following categories of data are processed through this website:
A) Browsing, security and diagnostic data:
When you visit the website, the systems required for its operation may process technical data such as your IP address, pages requested, date and time of your visit, browser and device information, and the outcome of requests. These data are used to make the pages accessible, ensure the security of the website and identify any technical problems. Browsing data and any operational logs are separate from cookies.
- Cloudflare Network Error Logging (NEL) diagnostics: NEL remains active to diagnose connection problems and website reliability issues. Compatible browsers may send Cloudflare (endpoint a.nel.cloudflare.com) network error reports that may include URLs, connection information, browser, server address, error type, status and request timings. Cloudflare also receives the device's IP address when the report is sent; it is used solely to derive network and geographic information (ASN, country and metropolitan area), without being recorded in the NEL pipeline. For more information, see Cloudflare's Privacy Policy.
- Legal basis: The controller's legitimate interest in ensuring the operation and protection of the website (Art. 6(1)(f) GDPR).
B) Data voluntarily provided by the user (email contacts):
There are no direct contact forms on the website. If you write to or call the controller, your email address, phone number, any identifying data and the content of your message and attachments are processed. Providing these data is voluntary, but without the necessary information it may not be possible to respond. Please avoid sending unnecessary sensitive information. Email is managed through Aruba Business. Only the controller accesses the mailbox; emails are not forwarded to third parties or used for marketing purposes.
- Purpose: To respond to requests for information, advice or collaboration.
- Legal basis: Performance of pre-contractual or contractual measures taken at your request (Art. 6(1)(b) GDPR); legitimate interest in managing correspondence (Art. 6(1)(f) GDPR); legal obligations (Art. 6(1)(c) GDPR).
3. Cookie Policy and external links
This website is designed to respect your privacy as much as possible.
- Technical and security cookies: The website does not use profiling, advertising or optional analytics scripts. Cookies strictly necessary for the security of the service may be used in specific situations, such as when traffic protection measures managed by Cloudflare are applied. NEL diagnostics do not set cookies.
- Internal resources: Fonts, images, stylesheets and libraries are served directly from the website's domain.
- External links: Links to social media and other websites are simple links, not embedded widgets. If you open them, the respective services' privacy notices apply. The email link opens the user's chosen email program.
4. Processing and retention.
Data are processed using electronic tools in compliance with data security requirements.
- Technical browsing and security data are retained for no longer than is strictly necessary to ensure the operation of the website, identify malfunctions and prevent abuse.
- Data contained in communications (emails or phone calls) are retained for no longer than is strictly necessary to handle and respond to your request.
5. Service providers, data sharing and transfers
Data will not be made public or sold. Data may be processed by the following IT service providers:
- AWS (Amazon Web Services): For website hosting (S3), located in the Ireland region (eu-west-1).
- Cloudflare Inc.: For traffic management, security (DDoS protection, email obfuscation) and NEL diagnostics.
- Aruba Business: For email management.
Data are not transferred outside the European Economic Area (EEA) without safeguards.
Some processing by service providers (e.g. Cloudflare) may involve international transfers: these transfers take place in compliance with the GDPR through the Data Privacy Framework (for the United States) or Standard Contractual Clauses (SCCs).
6. Your rights
Under Articles 15 et seq. of the GDPR, you have the right to request access to, rectification or erasure of your data, restriction of processing, objection to processing or data portability. You can exercise these rights by writing to [email protected]. You also have the right to lodge a complaint with the Italian Data Protection Authority (www.garanteprivacy.it).
Last updated: