Privacy Policy

PRIVACY POLICY – www.aione.it

Dear User,

This privacy policy is provided by Podere L’Aione in accordance with Regulation 679/2016 (GDPR) on the protection of personal data to describe how personal data of users visiting this website is processed.

While browsing the website www.aione.it (“Site”), information about users may be collected, which constitutes personal data as defined by the GDPR. This policy is provided exclusively for the Site and does not apply to any external sites that may be accessed via links on the Site.


DATA CONTROLLER

The Data Controller, as defined by applicable law, is:
Podere L’Aione
P. IVA 01695590537
Registered office: Località Tenuta Aione, 58054 Scansano – Grosseto, Italy
Contactable via email: info@aione.it


DATA PROCESSOR

The web hosting provider Kreita S.r.l.s (Via Salvio Giuliano, 5, 20146 Milan, Italy) is appointed as the Data Processor, processing data on behalf of the Data Controller. Since the web hosting provider is located within the European Economic Area, it operates in compliance with European regulations.


TYPES OF DATA PROCESSED

Browsing Data

The computer systems and software procedures responsible for the operation of this website acquire certain personal data during their normal operation, the transmission of which is implicit in the use of Internet communication protocols.

This information is not collected to identify users but, by its very nature, could lead to identification through processing and association with data held by third parties. Such data includes:

  • domain names of the computers used to access the site,
  • URI (Uniform Resource Identifier) addresses of requested resources,
  • the time of the request,
  • the method used to submit the request to the server,
  • the size of the file obtained in response,
  • the numerical code indicating the server’s response status (success, error, etc.), and
  • other parameters related to the user’s operating system and IT environment.

This data is used solely to obtain anonymous statistical information about the site’s usage and to ensure its proper functioning.

For security purposes (spam filters, firewalls, virus detection), the automatically recorded data may include personal data such as IP addresses. These may be used, in accordance with applicable laws, to block attempts to damage the site, harm other users, or engage in harmful or criminal activities. Such data is never used to identify or profile users but solely to protect the site and its users.

Data Provided by the User

Data voluntarily provided by users when requesting information through the contact form includes:

  • Name
  • Surname
  • Email address
  • Phone number
  • Arrival date
  • Departure date
  • Number of guests (adults and children)
  • Any additional requests (content of the user’s message)

Data Provided via the Booking Page

Data voluntarily provided by users when booking accommodations through the “Krossbooking.com” platform includes:

  • Name
  • Surname
  • Email
  • Check-in / Check-out dates
  • Room type
  • Number of people
  • Additional information or requests

These data are used exclusively for the requested service and are processed only as long as necessary to provide it. Data collected through the booking platform will not be disclosed to third parties unless required by judicial authorities or necessary for the requested service (e.g., billing, security checks, or site optimization).


DATA PROCESSING METHODS

Personal data is processed using automated and non-automated tools for the time strictly necessary to achieve the purposes for which it was collected.

Personal data provided by users may be accessed by employees and collaborators performing ancillary or instrumental services for the company. These individuals are designated as Data Processors in accordance with Article 28 of the GDPR.

Data is not shared with third parties except in cases required by judicial authorities or public security. Data collected will not be disseminated under any circumstances.


DATA RETENTION PERIOD

Customer data is retained only for the time necessary to achieve the purposes for which it was collected.
Data automatically acquired by the system (as per Article 4, Section B) is retained for a maximum of 31 days from the time of collection.


DATA PROCESSING LOCATION

Data collected through the site is processed at the Data Controller’s office and at the web hosting provider’s data center.
The web hosting provider Kreita S.r.l.s (Via Salvio Giuliano, 5, 20146 Milan, Italy) acts as the Data Processor and operates within the European Economic Area in compliance with European regulations.


RIGHTS OF DATA SUBJECTS

Individuals whose personal data is processed have the right to:

  • Request and obtain information about the processing of their personal data and a copy of such data; for data processed through automated systems, the transfer of data to another controller can also be requested.
  • Request and obtain the modification and/or correction of inaccurate or incomplete personal data.
  • Request and obtain the deletion and/or limitation of the processing of personal data that is unnecessary or no longer needed for the purposes stated.
  • Request and obtain the cessation of all processing of personal data for direct marketing purposes.

Under Regulation 679/2016, users may lodge complaints with the Data Protection Authority. Requests should be addressed via email to info@aione.it.

Close
Close