About Us
The address of our website is: https://hlifepreferredcustomer.com
Data Controller: Emiliano Pasquazzo
Controller’s email address: info@hlifepreferredcustomer.com
Types of Data Collected
Among the personal data collected by this application and listed on this privacy policy page, either independently or through third parties, are: cookies and usage data. Complete details on each type of data collected are provided in the dedicated sections of this privacy policy or through specific information displayed before the collection of the data.
Personal data may be freely provided by the user or, in the case of usage data, collected automatically during the use of this application. All data requested by this application is mandatory and, if not provided, it may be impossible for this application to provide the service. In cases where this application indicates certain data as optional, users are free to refrain from communicating such data without any consequence on the availability or operation of the service.
Users who have doubts about which data is mandatory are encouraged to contact the controller. Any use of cookies – or other tracking tools – by this application or by third-party service owners used by this application, unless otherwise specified, is for the purpose of providing the service requested by the user, in addition to the other purposes described in this document and in the cookie policy, if available.
The user is responsible for the personal data of third parties published or shared through this application and guarantees that they have the right to communicate or disclose them, releasing the controller from any liability to third parties.
- Methods and place of processing the collected data
- Processing methods
The controller processes users’ personal data by adopting appropriate security measures to prevent unauthorized access, disclosure, modification, or destruction of personal data. Processing is carried out using IT and/or telematic tools, with organizational methods and logic strictly related to the stated purposes.
In addition to the controller, in some cases, the data may be accessible to categories of persons involved in the organization of the site (administrative, sales, marketing, legal staff, system administrators) or external parties (such as third-party technical service providers, mail carriers, hosting providers, IT companies, communication agencies) also appointed, if necessary, as data processors by the controller.
The updated list of processors can always be requested from the data controller.
What Personal Data We Collect and Why We Collect It
On our site we collect the following personal data from users and visitors to the site:
- first name
- last name
- email address
- phone number
- technical data (information about cookies)
We do not collect or store sensitive personal data, such as health-related data.
Personal data is created by the user’s interactions with the site and is also generated by technical processes such as contact forms, comments, cookies, analytics, and third-party embeds.
WordPress does not collect any personal data about visitors and only collects the data shown on the User Profile screen from registered users. Some plugins may collect personal data. To check which plugins and how they manage data, see the section Who We Share Your Data With.
Legal Basis for Processing
The Controller processes personal data relating to the user in the event that one of the following conditions exists:
the user has given consent for one or more specific purposes; Note: in some jurisdictions, the controller may be authorized to process personal data without the user’s consent or another of the legal bases specified below, until the user objects (“opt-out”) to such processing. However, this is not applicable if the processing of personal data is regulated by European data protection law.
- Processing is necessary for the performance of a contract with the user and/or for the execution of pre-contractual measures;
- Processing is necessary for compliance with a legal obligation to which the controller is subject;
- Processing is necessary for the performance of a task carried out in the public interest or in the exercise of official authority vested in the controller;
- Processing is necessary for the purposes of the legitimate interests pursued by the controller or by third parties.
It is always possible to request the controller to clarify the specific legal basis for each processing and in particular to specify whether the processing is based on the law, required by a contract, or necessary to conclude a contract.
Location
Data is processed at the operational offices of the controller and in any other place where the parties involved in the processing are located. For further information, contact the controller.
The user’s personal data may be transferred to a country other than the one in which the user is located. To obtain further information about the place of processing, users may refer to the section containing details on the processing of personal data.
The user has the right to obtain information regarding the legal basis for data transfers outside the European Union or to an international organization of public international law or consisting of two or more countries, such as the UN, as well as regarding the security measures adopted by the Controller to protect the data.
If one of the transfers described above takes place, the user may refer to the respective sections of this document or request information from the controller by contacting them at the contact details provided at the beginning.
Contact Form
Through the contact form on the page (https://hlifepreferredcustomer.com), the following data is collected: first name, last name, email.
Contact form submissions are kept for a certain period for customer service purposes, and the information sent through them is used for marketing purposes if the user has consented to receive the newsletter.
Cookies – Retention Period
This Website uses cookies.
If you leave a comment on our site, you may choose to save your name, email address, and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year.
If you have an account and log in to this site, a temporary cookie will be set to determine if your browser accepts cookies. This cookie contains no personal data and is discarded when you close your browser.
When you log in, several cookies will be set up to save your login information and your screen display choices. Login cookies last for two days while screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.
If you edit or publish an article, an additional cookie will be saved in your browser. This cookie does not include personal data but simply indicates the post ID of the article you just edited. It expires after 1 day.
To learn more and read the detailed information notice, users can consult the Cookie Policy
Embedded content from other websites
Articles on this site may include embedded content (e.g., videos, images, articles, etc.). Embedded content from other websites behaves exactly the same as if the visitor had visited the other website.
These websites may collect data about you, use cookies, integrate additional third-party tracking, and monitor interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.
Analytics
Within the site, we use the following software as a visit analysis service: Slimstat and Google Analytics. WordPress does not collect statistical data.
- Google Analytics (Google Inc.)
Google Analytics is a web analysis service provided by Google Inc. (“Google”). Google uses the collected Personal Data for the purpose of tracking and examining the use of this Application, compiling reports and sharing them with other services developed by Google.
Google may use Personal Data to contextualize and personalize ads in its advertising network.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy – Opt Out - Google Analytics with anonymized IP (Google Inc.)
Google Analytics is a web analysis service provided by Google Inc. (“Google”). Google uses the collected personal data for the purpose of tracking and examining the use of this website, compiling reports and sharing them with other services developed by Google.
Google may use personal data to contextualize and personalize ads in its network advertising.
This Google Analytics integration anonymizes your IP address. Anonymization works by shortening the IP address within the borders of European Union member states or other countries adhering to the European Economic Area agreement. Only in exceptional cases, the IP address will be sent to Google servers and shortened within the United States. Personal data collected: cookies and usage data.
Place of processing: United States – Privacy Policy – Opt Out. Subject adhering to Privacy Shield. - Brevo (Sendinblue SAS)
Brevo is a marketing automation platform we use to send you some emails for the purpose of fulfilling the request you made by filling out the contact form.
Place of processing: France.
Purpose of processing collected data
User data is collected to enable the controller to provide its Services, as well as for the following purposes: access to accounts on third-party services, interaction with social networks and external platforms, display of content from external platforms, and traffic optimization and distribution.
For more detailed information on the purposes of processing and the personal data specifically relevant to each purpose, the user may refer to the relevant sections of this document.
- Google Analytics (Google Inc.)
Google Analytics is a web analysis service provided by Google Inc. (“Google”). Google uses the collected Personal Data for the purpose of tracking and examining the use of this Application, compiling reports and sharing them with other services developed by Google.
Google may use Personal Data to contextualize and personalize ads in its advertising network.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy – Opt Out - Like Button and Facebook social widgets (Facebook, Inc.)
- The “Like” button and Facebook social widgets are interaction services with the Facebook social network, provided by Facebook, Inc.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy - Google Friend Connect (Google Inc.)
Google Friend Connect is a social interaction service provided by Google Inc.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy - Tweet Button and Twitter social widgets (Twitter, Inc.)
The Tweet button and Twitter social widgets are interaction services with the Twitter social network, provided by Twitter, Inc.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy - +1 Button and Google+ social widgets (Google Inc.)
The +1 button and Google+ social widgets are interaction services with the Google+ social network, provided by Google Inc.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy - Mailchimp
Mailchimp is an address management and email sending service provided by Mailchimp.
Personal data collected: name, surname, email, phone, company, province, business sector, message, IP address.
Place of processing: USA https://mailchimp.com/legal/ - Facebook Comments (Facebook, Inc.)
Facebook Comments is a service managed by Facebook, Inc. that allows the User to leave their comments and share them within the Facebook platform.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy - Facebook Custom Audience (Facebook, Inc.)
Facebook Custom Audience is a Remarketing and Behavioral Targeting service provided by Facebook, Inc. that connects this Application’s activity with the Facebook advertising network.
Personal data collected: Cookies and Email.
Place of processing: USA – Privacy Policy – Opt Out - Facebook Remarketing (Facebook, Inc.)
Facebook Remarketing is a Remarketing and Behavioral Targeting service provided by Facebook, Inc. that connects this Application’s activity with the Facebook advertising network.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy – Opt Out - Google Fonts (Google)
Google Fonts is a font style display service managed by Google Inc. that allows this Application to integrate such content within its pages.
Personal data collected: Cookies and Usage Data.
Place of processing: USA – Privacy Policy
How long we keep your data
For users who register on our website, we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except their username which they cannot change). Website administrators can also see and edit this information.
What rights you have over your data
If you have an account on this site, or have left comments, you can request to receive an exported file from the site with the personal data we have about you, including the data you have provided. You can also request that we delete all personal data concerning you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.
Where we send your data
Visitor comments may be checked through an automatic spam detection service.
Your contact information
The Data Protection Officer (DPO) of this site is Emiliano Pasquazzo.
Additional information on the sale of goods and online services
The personal data collected is used to provide services to the user or for the sale of products, including payment and possible delivery. Personal data collected to complete the payment may include credit card details, current account used for transfer, or other payment methods provided. Payment data collected by this website depends on the payment system used.
How we protect your data
We protect the site against brute force attacks and unauthorized logins through WordFence software and include technical data protection measures such as two-factor authentication software; moreover, our staff has been trained on data protection.
What procedures against data breaches are in place
In the event of an external attack on our site, such as a brute force attack or unauthorized login attempts, we will instantly receive an email message from WordFence software, through which we will block: IP address from which the attack originates, IP Address Range, Hostname, Browser User Agent or Referrer up to temporary Country block.
From which third parties we receive data
This website does not receive user data from third parties.
What automated decision-making and/or profiling process we do with user data
Our website does not provide services that include automated decision-making processes.
Industry regulatory disclosure requirements
We are not members of a regulated industry, and we are not subject to additional privacy laws.
User rights
Users may exercise certain rights with reference to the data processed by the controller.
In particular, the user has the right to:
- Withdraw consent at any time. The user may withdraw consent to the processing of their personal data previously given.
- Object to the processing of their data. The user may object to the processing of their data when it occurs on a legal basis other than consent. Further details on the right to object are indicated in the section below.
- Access their data. The user has the right to obtain information on the data processed by the Controller, on certain aspects of the processing, and to receive a copy of the processed data.
- Verify and request rectification. The user may verify the accuracy of their data and request its update or correction.
- Obtain limitation of processing. When certain conditions are met, the user may request the limitation of processing of their data. In such case, the controller will not process the data for any other purpose than their storage.
- Obtain the deletion or removal of their personal data. When certain conditions are met, the user may request the deletion of their data by the controller.
- Receive their data or have it transferred to another controller. The user has the right to receive their data in a structured, commonly used, and machine-readable format and, where technically feasible, to obtain its transfer without hindrance to another controller. This provision applies when the data are processed by automated means and the processing is based on the user’s consent, a contract of which the user is a party, or contractual measures connected to it.
- File a complaint. The user may file a complaint with the competent data protection authority or act in court.
Details on the right to object
When personal data are processed in the public interest, in the exercise of public powers vested in the controller, or to pursue the controller’s legitimate interest, users have the right to object to processing for reasons connected to their particular situation. Users are informed that, if their data were processed for direct marketing purposes, they may object to processing without providing any motivation. To find out if the controller processes data for direct marketing purposes, Users may refer to the respective sections of this document.
How to exercise rights
To exercise user rights, Users may direct a request to the controller’s contact details indicated in this document. Requests are handled free of charge and processed by the controller as quickly as possible, in any case within one month.
Further information on processing
Legal defense
User’s personal data may be used by the Controller in court or in the preparatory stages of its possible establishment for defense against abuses in the use of this website or connected Services by the user. The user declares to be aware that the Controller may be required to disclose data by order of public authorities.
Specific information
Upon user request, in addition to the information contained in this privacy policy, this website may provide the user with additional and contextual notices regarding specific services, or the collection and processing of personal data.
System log and maintenance
For needs related to operation and maintenance, this website and any third-party services used by it may collect system logs, i.e., files that record interactions and may also contain personal data, such as the user’s IP address.
Information not contained in this policy
Further information relating to the processing of personal data may be requested at any time from the Data Controller using the contact details.
Response to “Do Not Track” requests
This website supports “Do Not Track” requests. To find out if any third-party services used support them, the user is invited to consult their respective privacy policies.
Changes to this Privacy Policy
The Data Controller reserves the right to make changes to this privacy policy at any time, informing Users on this page.
Please consult this page regularly, taking the date of last modification indicated at the bottom as reference.
In case of non-acceptance of the changes made to this privacy policy, the user is required to cease use of this Website and may request the controller to remove their personal data. Unless otherwise specified, the previous privacy policy will continue to apply to personal data collected up to that point.
Definitions and legal references
Personal Data (or Data)
Any information that, directly or indirectly, even in connection with any other information, including a personal identification number, makes an individual identified or identifiable.
Usage Data
Information collected automatically through this website (even from third-party applications integrated into this Website), including: IP addresses or domain names of the computers used by the User connecting with this Website, URI (Uniform Resource Identifier) notation addresses, time of the request, method used to submit the request to the server, size of the file obtained in response, numerical code indicating the status of the server response (success, error, etc.), country of origin, characteristics of the browser and operating system used by the visitor, various temporal connotations of the visit (e.g., time spent on each page) and details relating to the itinerary followed within the application, with particular reference to the sequence of pages consulted, parameters relating to the user’s operating system and IT environment.
User
The individual using this website who, unless otherwise specified, coincides with the data subject.
Data Subject
The natural person to whom the personal data refer.
Processor (or processor)
The natural person, legal entity, public administration, and any other entity that processes personal data on behalf of the controller, as described in this privacy policy. Controller (or controller) The natural or legal person, public authority, service, or other body that, singly or together with others, determines the purposes and means of processing personal data and the tools adopted, including security measures relating to the operation and use of this Website. The controller, unless otherwise specified, is the owner of this website.
This website (or this application)
The hardware or software tool by which users’ personal data are collected and processed.
Service
The service provided by this website as defined in the related terms (if any) on this site/application.
European Union (or EU)
Unless otherwise specified, any reference to the European Union contained in this document is intended to extend to all current member states of the European Union and the European Economic Area.
Cookie
Small portion of data stored within the user’s device.
Legal references
This privacy notice is drafted on the basis of multiple legislative provisions, including Articles 13 and 14 of Regulation (EU) 2016/679.