Last updated on, and effective as of, May 13, 2025

Privacy Policy

This Privacy Policy explains how Marco Magni, operating as a sole proprietor with VAT number (P.IVA) 13970760966 ("we," "us," or "our"), collects, uses, and shares personal data through the website https://www.dilli.it/ (the "Website") and the services provided through Dilli (collectively, the "Services"). By using our Services, you agree to the terms of this Privacy Policy.

This Privacy Policy applies only to personal data collected through the Website and Services. It does not apply to data collected in other contexts, such as offline interactions.

1. Data Controller

Marco Magni, sole proprietor, VAT (P.IVA) 13970760966, is the data controller responsible for your personal data. You can contact us at:
Email: supporto@dilli.it

2. Personal Data We Collect

We collect personal data directly from you, automatically through your use of the Services, or from third parties. "Personal data" refers to any information relating to an identified or identifiable individual, as defined by the GDPR.

2.1 Data You Provide

  • Account Information: When you create an account or edit your profile, we collect your name, email address, and password. You may also provide optional information, such as your phone number or other profile details.
  • Transaction and Payment Information: We collect data related to your purchases, such as billing details. Payments are processed by third-party payment processors, and we do not store payment card details, though we may receive related information (e.g., transaction IDs or billing address).
  • Communications: When you contact us (e.g., for support, inquiries, or newsletter subscriptions), we collect your name, email address, phone number (if provided), and the content of your communication.
  • Surveys: If you participate in surveys, we may collect your responses, which may include personal data.
  • Interactive Features: If you use features like messaging, forums, or collaboration tools, we collect the data you submit. Content shared in public sections of these features is considered public and not subject to the protections in this Privacy Policy, unless required by law.
  • Job Applications: If you apply for opportunities we post, we collect your application details, such as your CV, cover letter, and contact information.

2.2 Data Collected Automatically

We use cookies, web beacons, and similar technologies to collect data about your interaction with the Services, including:

  • Device and Usage Data: Your IP address, browser type, operating system, device identifiers, Internet service provider, approximate location (e.g., city or region derived from IP address), pages visited, links clicked, and the frequency and duration of your activities.
  • Web Log Data: Information about your visit, such as the date and time, pages viewed, files downloaded, and referring URLs.
  • Cookies: Small files stored by your browser to recognize your device and store preferences. Cookies may track your activity during a session or over time. You can manage cookie preferences through your browser settings, but disabling cookies may affect Service functionality.
  • Web Beacons: Electronic files (e.g., single-pixel images) embedded in the Website or emails to track interactions, such as whether an email was opened.

2.3 Data from Third Parties

  • Third-Party Plugins: The Services may include plugins (e.g., social media buttons) that collect data about your activity, such as pages visited. These plugins are governed by the privacy policies of the third parties providing them.
  • Analytics Partners: We work with third parties to collect and analyze usage data, which may include personal data like IP addresses or cookie identifiers.
  • Other Users: We may receive data about you from other users, such as when they tag or mention you in interactive features.

2.4 Aggregated or Anonymized Data

We may collect and share aggregated or anonymized data (e.g., usage trends) that does not identify you personally, such as in reports on Service usage.

3. How We Use Your Personal Data

We process your personal data for the following purposes, based on the legal grounds outlined in Section 4:

  • To provide and operate the Services, including account management, transaction processing, and interactive features.
  • To respond to your inquiries, provide customer or technical support, and deliver newsletters or updates.
  • To improve the Services, analyze usage, and develop new features or products.
  • To send you marketing communications (e.g., promotional emails), where you have consented or as permitted by law.
  • To verify your identity and prevent fraud or unauthorized access.
  • To comply with legal obligations, such as tax or data protection laws.
  • To assess job applications, if applicable.
  • To protect our rights, property, or safety, or that of others, including investigating illegal activities.
  • To manage our business, including analytics, auditing, and reporting.

4. Legal Basis for Processing (GDPR)

Under the GDPR, we process your personal data based on the following legal grounds:

  • Consent: For marketing communications, certain cookies, or other non-essential processing, where you have given explicit consent (e.g., subscribing to a newsletter).
  • Contract: To fulfill our obligations under the Terms and Conditions, such as providing the Services or processing payments.
  • Legitimate Interests: For purposes like improving the Services, preventing fraud, or analyzing usage, where our interests are not overridden by your data protection rights.
  • Legal Obligation: To comply with applicable laws, such as tax reporting or responding to legal requests.

You may withdraw consent at any time (e.g., by unsubscribing from marketing emails), but this does not affect the lawfulness of prior processing.

5. How We Share Your Personal Data

We share your personal data with third parties only as necessary and under the following circumstances:

  • Service Providers: We use third-party providers (e.g., web hosting, payment processors, analytics tools) to perform services on our behalf. These providers may access your data to support the Services, subject to GDPR-compliant data processing agreements.
  • Analytics Partners: We share data with analytics providers to understand usage trends and improve the Services. These partners may use cookies or web beacons.
  • Legal Compliance: We may share data to comply with legal obligations, such as responding to court orders, subpoenas, or regulatory requests, or to protect our rights, property, or safety.
  • Business Transfers: If our business is sold, merged, or otherwise transferred, your data may be shared with the acquiring entity, subject to GDPR protections.
  • Interactive Features: Data you share in public sections (e.g., forums) may be visible to other users and is not protected by this Privacy Policy.

We do not sell your personal data to third parties for marketing or advertising purposes.

6. Cookies and Tracking Technologies

We use cookies and similar technologies to enhance your experience, analyze usage, and deliver personalized content. Categories include:

  • Essential Cookies: Necessary for the Services to function (e.g., maintaining your login session).
  • Analytics Cookies: Track usage to improve the Services (e.g., Google Analytics).
  • Marketing Cookies: Enable personalized ads or content, where consented.

You can manage cookie preferences through your browser settings or our cookie consent tool on the Website. Disabling cookies may limit Service functionality. For more details, see our Cookie Policy (if applicable, link to: https://www.dilli.it/cookie-policy).

7. Data Retention

We retain personal data only as long as necessary to fulfill the purposes for which it was collected, or as required by law (e.g., tax or accounting obligations). For example:

  • Account data is retained while your account is active and for a reasonable period after closure, unless you request deletion.
  • Transaction data is retained for at least 10 years, as required by Italian tax law.
  • Marketing data is retained until you unsubscribe or withdraw consent.

When data is no longer needed, we delete or anonymize it securely.

8. Data Security

We implement technical, organizational, and physical measures to protect your personal data, such as encryption, access controls, and secure servers. However, no system is completely secure, and we cannot guarantee absolute security. You share data with us at your own risk.

9. International Data Transfers

Your personal data is primarily processed within the European Economic Area (EEA). If we transfer data to countries outside the EEA (e.g., to service providers in the U.S.), we ensure appropriate safeguards, such as:

  • Standard Contractual Clauses approved by the European Commission.
  • Transfers to countries with an adequacy decision (e.g., recognized by the EU as providing equivalent data protection).

By using the Services, you consent to such transfers where applicable.

10. Your Data Protection Rights (GDPR)

If you are in the EEA, you have the following rights under the GDPR:

  • Access: Request a copy of your personal data.
  • Rectification: Correct inaccurate or incomplete data.
  • Erasure: Request deletion of your data, subject to legal exceptions (e.g., tax obligations).
  • Restriction: Limit how we process your data in certain cases.
  • Portability: Receive your data in a structured, machine-readable format or have it transferred to another controller.
  • Objection: Object to processing based on legitimate interests, including for marketing purposes.
  • Withdraw Consent: Revoke consent at any time, without affecting prior processing.
  • Lodge a Complaint: Contact your local data protection authority (in Italy, the Garante per la Protezione dei Dati Personali: https://www.garanteprivacy.it/).

To exercise these rights, contact us at supporto@dilli.it. We will respond within 30 days, or sooner if required by law. We may request identity verification to process your request.

11. Children’s Privacy

The Services are intended for users aged 18 and older. We do not knowingly collect personal data from children under 16. If we learn that we have collected such data, we will delete it promptly. If you believe we have collected data from a child under 16, contact us at supporto@dilli.it.

12. Third-Party Links

The Services may contain links to third-party websites or services. We are not responsible for their content, privacy practices, or security. You access third-party sites at your own risk.

13. Changes to This Privacy Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of material changes by posting the updated policy on the Website or via email. Your continued use of the Services after such changes constitutes acceptance of the updated policy.

14. Contact Us

For questions, concerns, or to exercise your data protection rights, contact:
Marco Magni
Owner, VAT: 13970760966
Email: supporto@dilli.it

You may also contact the Italian Data Protection Authority (Garante per la Protezione dei Dati Personali) at https://www.garanteprivacy.it/ for complaints.

© 2025 Dilli. All Rights Reserved.
Proudly bootstrapped in 🇮🇹