Privacy e Cookie Policy

WHEREAS:
 

“bodyslimmer-concept.it” hereinafter referred to as “THE SITE”

“EU Regulation 2016/679” hereinafter referred to as “GDPR”

“Only Beauty srls” hereinafter referred to as “DATA CONTROLLER”

 

PRIVACY E COOKIE POLICY

 

Protecting your privacy is one of our primary objectives. We are constantly committed to this, and in this document we describe our privacy policy, explaining how your personal information is managed when you use our services and to allow you to provide your explicit and informed consent to the processing of your personal data in the sections of THE SITE where you are requested to provide personal data. Therefore, the content and services offered on THE SITE are provided only to those who explicitly request them, and in the various sections of THE SITE (where we collect personal data) specific notices pursuant to Article 13 of the GDPR are published for your review before providing the requested data.

 

DATA CONTROLLER

 

The DATA CONTROLLER is: Only Beauty srls Address: Via Carlo Farini, 70, Milan Phone: +39 340 905 6629 Email: info@onlybeauty.it Website: www.bodyslimmer-concept.it

 

INITIAL DECLARATION

 

It is hereby declared that the DATA CONTROLLER applies the GDPR and ensures the protection of individuals and other subjects with regard to the processing of personal data. According to the aforementioned legislation, the processing carried out by THE SITE will be based on the principles of lawfulness, fairness, transparency, purpose limitation, data minimization, accuracy, integrity, and confidentiality.

 

INDEX:

 

  • PERSONAL DATA SUBJECT TO PROCESSING
  • COOKIE POLICY
  • PURPOSE OF PROCESSING
  • RECIPIENTS OF PERSONAL DATA
  • DATA TRANSFER
  • DATA RETENTION
  • DATA SUBJECT RIGHTS
  • CHANGES

 

PERSONAL DATA SUBJECT TO PROCESSING

 

By “processing of personal data” we mean any operation or set of operations, carried out with or without the aid of automated processes and applied to personal data or sets of personal data, such as collection, recording, organization, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure, or destruction (Art. 4.2 of the GDPR).

Please note that the personal data subject to processing will consist—depending also on your choices regarding the use of the services offered by THE SITE—of identifiers such as name, email address, telephone number or other identification number, location data, online identifier, purchases made, and other data suitable to identify you or make you identifiable, depending on the type of services requested (hereinafter collectively referred to as "PERSONAL DATA"). The DATA CONTROLLER does not collect any special categories of data (such as religion, political opinions, health status, etc.) under any circumstances.

The categories of PERSONAL DATA processed through THE SITE are as follows:

 

  • Data voluntarily provided by the data subject When using certain areas of THE SITE, we may process PERSONAL DATA that you voluntarily provide in order to be contacted and/or receive a service in return, such as: information requests, personalized offers, newsletter subscription, or the purchase of products or services.

 

  • Browsing data The IT systems and software procedures used to operate THE SITE acquire, during their normal operation, some PERSONAL DATA whose transmission is implicit in the use of Internet communication protocols. This information is not collected to be associated with identified individuals, but by its very nature could, through processing and association with data held by third parties, allow users to be identified. This category of data includes IP addresses or domain names of the computers used by users who connect to THE SITE, URI (Uniform Resource Identifier) addresses of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numeric code indicating the status of the server's response (success, error, etc.), and other parameters related to the user's operating system and IT environment. This data is used solely for the purpose of obtaining anonymous statistical information about the use of THE SITE, ensuring its proper operation, and identifying anomalies and/or abuse. It is deleted immediately after processing. Such data may also be used to determine liability in the event of hypothetical cybercrimes against the site or third parties. THE SITE is currently hosted on the servers of Aruba.

 

  • Cookies While browsing this site, certain cookies are used. For detailed information, please refer to the dedicated COOKIE POLICY section.

 

COOKIE POLICY

 

WHAT ARE COOKIES

 

Cookies are small text files that store various types of information about the user visiting a website, such as their location, the device used to connect (PC, smartphone, tablet, etc.), the browser used, authentication data, browsing preferences, and more. They may also store data related to user habits and personal choices—information that can later be used to build a profile of the individual consumer.

More specifically, cookies are divided into two main categories:

 

"Technical" Cookies Strictly necessary for the operation and use of the website, these are used to collect aggregated information about visits. These include:

 

  • navigation cookies (or session cookies)
  • authentication cookies (e.g., username and password input)
  • customization cookies (e.g., saving user preferences)
  • functionality cookies (e.g., saving cart items or language/currency preferences)
  • analytics cookies (i.e., statistical cookies, considered technical if used by the website operator to collect aggregated data only (i.e., without collecting IP addresses) on the number of users and how they visit the site)
  • flash player cookies (if their duration does not exceed the session length)
  • ecc.

 

"Profiling" Cookies These are used to create a user profile and deliver targeted advertising, such as:

 

  • first- or third-party advertising profiling cookies
  • retargeting cookies
  • social media cookies
  • third-party statistical cookies (with exceptions: analytics cookies installed directly on the first party’s server or own server farm with no third-party interactions, such as Piwik; or cookies managed by third parties but anonymized, i.e., where the third party cannot access disaggregated analytics data like IP addresses)
  •  
SITE COOKIES

 

All cookies used on THE SITE do not allow the acquisition of users’ personal data, nor can they retrieve any other data from the user’s hard drive, transmit computer viruses, or access the user’s email address.

By browsing THE SITE, so-called technical cookies will be installed, which are necessary for the proper functioning of the website. In particular, the user consents to the installation of these types of cookies simply by continuing to browse the website—by selecting a link, scrolling the page, or confirming the brief information notice displayed in the banner upon the first access to the site.

By browsing THE SITE, third-party cookies may also be installed, linked to external websites that the user may access via embedded links. When redirected to third-party features or services, those websites may in turn use cookies according to their own cookie policies.

By continuing to use THE SITE, you consent to the use of cookies in accordance with this Cookie Policy. Please note that cookies stored on your device’s hard drive can be deleted at any time. If you do not agree with the use of cookies in this way, you may choose not to use THE SITE, or you may disable cookie usage by adjusting your browser settings (e.g., Internet Explorer, Chrome, Opera, Safari, etc.). However, please be aware that disabling cookies may affect your browsing experience on this and other websites.

 

THIRD-PARTY COOKIES

 

The third-party cookies used on THE SITE include:

 

Google: where services or content provided through Google platforms are present, please note that Google may install cookies in order to detect user preferences regarding the use of its services. For more information, please refer to Google’s policies, in particular:

  • privacy policy di Google
  • HOW GOOGLE USES COOKIES
  • HOW GOOGLE USES INFORMATION FROM SITES OR APPS THAT USE ITS SERVICES
  • When interactive Google Maps are present on the pages of THE SITE, cookies may be installed to detect user preferences and information related to the service. For more information, refer to the Google Privacy Policy.
  • YouTube. When videos published on YouTube are embedded on THE SITE, YouTube may install cookies to detect user preferences regarding the use of this service. In particular, when the user clicks “Play” to view the video, they consent to sharing their personal data with YouTube. For more information, consult the Google Privacy Policy and the YouTube Terms of Service.

 

Facebook If multimedia content from Facebook is embedded on THE SITE, Facebook may install cookies to detect user preferences related to the service. For more information, refer to the Facebook Privacy Policy.

 

Twitter If embedded tweets or widgets from Twitter are present on THE SITE, Twitter may install cookies to detect preferences regarding the use of this service. For more information, see the Twitter Privacy Policy.

 

LinkedIn If LinkedIn content is embedded on THE SITE, LinkedIn may install cookies to detect preferences related to its use. For more information, see the LinkedIn Privacy Policy.

The same applies to any other third-party links, for which the respective privacy policies will apply.

Google Tag Manager By browsing THE SITE, cookies from Google Tag Manager may also be installed. This tool allows the management of website tags through an interface. It only implements tags and does not collect personal data through cookies. Google Tag Manager may trigger other tags that might collect data, but it does not access this data. For more information, see the Google Tag Manager Use Policy.

Google Analytics THE SITE uses Google Analytics cookies solely for statistical purposes. These cookies collect information in aggregate form to monitor and analyze access to the website. The information generated by the cookie about the website’s use is transmitted to Google Inc. The user data retention period for Google Analytics is currently set to 14 months. For more information, refer to the Google Privacy Policy.

Facebook Pixel While browsing THE SITE, information is also shared with Facebook via its tracking pixel. The Facebook Conversion Tracking Pixel is a JavaScript code that places a nearly invisible 1x1 pixel image on THE SITE, which sends a signal to Facebook when a page is visited or a specific action is taken. This tells Facebook that a conversion has occurred, allowing it to match the conversion event with users who viewed or clicked on an ad—providing valuable data to the site owner to assess return on advertising investment.

The Facebook Pixel is therefore a tool for the collection, sharing, and usage of data across all Facebook Business tools, as outlined in Facebook Business Tools Terms, where it is specifically stated that: (a) Third parties, including Facebook, may use cookies, web beacons, and other storage technologies to collect or receive information from THE SITE and elsewhere on the internet, and use that information to provide measurement services and targeted ads. (b) Users can opt out of the collection and use of their information for ad targeting by various means, including via the websites http://www.aboutads.info/choices and http://www.youronlinechoices.eu/.

 

For more information, please consult the following resources:

 

COOKIE TABLE

 

When accessing THE SITE, a message is displayed (as shown below) in a banner or pop-up window, from which you can immediately deactivate specific categories of cookies. Below is the message shown upon first access, followed by the full list of cookies and the option to disable them.

DICHIARAZIONE INIZIALE e TABELLA DEI COOKIE Error: The domain WWW.BODYSLIMMER-CONCEPT.IT is not authorized to show the cookie declaration for domain group ID 74c5083c-566b-46de-9014-b49e3b880e1b. Please add it to the domain group in the Cookiebot Manager to authorize the domain.


 

PURPOSE OF PROCESSING

 

The data processing we intend to carry out, subject to your specific consent (where required), has the following purposes:

 

  • To improve website navigation: to enable browsing, consultation, and viewing of informational materials on THE SITE, as well as to enhance your overall user experience.
  • Legal obligations: to comply with legal, accounting, and tax obligations to which the CONTROLLER is subject. This constitutes a legitimate processing of PERSONAL DATA (pursuant to Art. 6.1(c) of the GDPR).
  • Responding to information requests: to respond to requests for information received by email, telephone, chat, or via the appropriate form, regarding the services and solutions offered on THE SITE.
  • Newsletter subscription: by expressly subscribing to the Newsletter service, you consent to your email address and other personal data voluntarily provided (when filling out the subscription form) being processed for the purpose of sending you the Newsletter periodically, as well as any other personalized services you may subscribe to, and to improve the effectiveness of advertising campaigns related to our services. By subscribing, you will periodically receive emails containing: updates on THE SITE’s news (new services, etc.), useful information for your activity, news from the CONTROLLER or its partners, and commercial offers related to the products and services of the CONTROLLER. You can unsubscribe at any time via the mechanism provided in the footer of each email.
  • Marketing purposes: to carry out direct marketing via email (soft spam) for services similar to those you have already subscribed to or purchased, based on the CONTROLLER's legitimate interest in promoting products or services you may reasonably be interested in. This applies unless you have initially objected to such processing or do so at a later time. Please note that processing for email marketing purposes related to products or services similar to those already purchased is legally based on the CONTROLLER’s legitimate interest (see Recitals 47 and 70 of the GDPR, Art. 6.1(f)), in a context where the data subject may reasonably expect such processing and can, in any case, object at any time. If you wish to object to marketing communications, you may do so at any time via the unsubscribe link in the email footer or by writing to the CONTROLLER at info@onlybeauty.it.
  • Statistical and market research purposes: to carry out studies, research, and market statistics; to send advertising and informative materials, commercial information, or surveys to improve service ("customer satisfaction") via email or SMS, and/or via phone with operator assistance, and/or through the official pages of THE SITE, social media, or other official channels of the CONTROLLER.
  • Fraud prevention: for security and fraud prevention purposes only, the CONTROLLER implements an automated control system involving the detection and analysis of user behavior on the site, including the processing of PERSONAL DATA such as the IP address. As a result, if a user attempts to engage in fraudulent behavior on THE SITE (e.g., attempting to repeatedly benefit from the same promotion without authorization), the CONTROLLER reserves the right to exclude the individual from the promotion or take other protective measures. This processing is also based on the CONTROLLER’s legitimate interest in detecting fraud (see Recital 47 of the GDPR, Art. 6.1(f)).
  • Use of the site’s services: to enable the provision of services requested on THE SITE (including online purchases) and the subsequent independent management of your personal dashboard, accessed via registration and profile creation. This includes the collection, storage, and processing of data for the establishment and ongoing operational, technical, and administrative management of the service relationship and any related communications. The legal basis for this processing of PERSONAL DATA (under Art. 6(1)(b) of the GDPR) is that it is necessary for the provision of contracted services. The provision of PERSONAL DATA for these purposes is optional, but failure to provide such data may result in the inability to activate the requested services on THE SITE.
  • Disclosure to third parties: for certain services, data may be processed for disclosure to third parties for their own marketing purposes—that is, to provide you with information and/or offers regarding products, services, or initiatives promoted by other companies of the CONTROLLER, or its affiliates and/or subsidiaries, or by other commercial partners and outsourcers acting as independent data controllers.

The provision of your PERSONAL DATA for processing activities based on your consent (pursuant to Art. 6.1(a) of the GDPR) is entirely optional and does not affect your ability to use other services offered on THE SITE.

 

RECIPIENTS OF PERSONAL DATA

 

Your PERSONAL DATA may be processed electronically with restricted access by authorized and appointed individuals designated by the CONTROLLER, who has implemented all necessary IT security measures to minimize the risk of privacy breaches by third parties and is always prepared to adopt additional safeguards if needed.

Your PERSONAL DATA may be shared, for the “Processing Purposes” outlined above, with the following:

  • Entities typically acting as data processors, i.e. individuals, companies or professional firms providing assistance and consulting services to the CONTROLLER in the areas of management, accounting, administration, legal affairs, tax, finance, and credit recovery, as well as individuals, companies or professional firms providing consulting or technical support required for the provision of services offered on THE SITE. The full list of data processors is available at the CONTROLLER’s registered office and may be requested at any time by sending an email to the CONTROLLER at info@onlybeauty.it.
  • Parties involved in the delivery of services offered by the CONTROLLER, or those with whom interaction is necessary for service provision, or parties assigned to carry out technical maintenance tasks (including maintenance of network equipment and electronic communication networks), or companies belonging to the CONTROLLER’s group or affiliates (in Italy or abroad) performing administrative or statistical functions (collectively referred to as "Recipients").
  • Individuals authorized by the CONTROLLER to process PERSONAL DATA as strictly necessary for the provision of services, who are bound by confidentiality agreements or legal obligations of confidentiality, such as employees of the CONTROLLER.
  • Commercial partners for their own separate and independent purposes, such as commercial information and market research, and only if you have given specific consent.
  • Public bodies, entities, or authorities to whom the communication of your PERSONAL DATA is legally required due to legal obligations or orders issued by authorities (e.g., requests from judicial authorities during criminal investigations).

 

DATA TRANSFER

 

Some of your PERSONAL DATA may be shared with Recipients located outside the European Economic Area. The CONTROLLER ensures that the processing of your PERSONAL DATA by such Recipients is carried out in compliance with the GDPR. Specifically, such transfers may be based on an adequacy decision or on the Standard Contractual Clauses approved by the European Commission.

Further information is available from the CONTROLLER, particularly to identify which processing activities involve the transfer of data outside the European Economic Area. As such transfer is necessary for the provision of the service, it is justified under the applicable privacy regulations pursuant to Articles 44 et seq. of Chapter V of the GDPR.

 

DATA RETENTION

 

In general, all PERSONAL DATA collected for the purposes described above will be processed for the time strictly necessary to achieve those purposes. In any case, the CONTROLLER will process the PERSONAL DATA for the period permitted under Italian law to protect its interests (Articles 2946 et seq. of the Civil Code). The retention period for PERSONAL DATA varies depending on the purpose for which the data were collected:

 

  • For Improving site navigation: since this involves data related to technical cookies, further details are available in the COOKIE POLICY.
  • For Compliance with legal obligations: data will be retained for the time required by the specific legal obligation or applicable regulation, and may be retained for a longer period if necessary to protect the CONTROLLER's interests against possible liabilities relating to the services provided.
  • For Responding to information requests: data will be used for the time strictly necessary to fulfill the request and will then be retained only for administrative purposes and to protect the CONTROLLER’s interests from possible liabilities arising from such processing.
  • For Newsletter delivery, Marketing purposes, or Statistical and market research purposes: data will be retained by the CONTROLLER until the consent given by the Data Subject is withdrawn. Once consent has been withdrawn, the use of data for these purposes will cease, although the CONTROLLER may retain them to defend against any claims arising from such processing.
  • For Use of site services, Customer support, or Disclosure to third parties: data will be used for the time strictly necessary to fulfill the stated purpose and, since such PERSONAL DATA are processed to provide products/services, they will subsequently be retained for a longer period where necessary to protect the CONTROLLER’s interests from potential liabilities relating to the services provided.

In any case, the CONTROLLER reserves the right to retain your PERSONAL DATA for the period allowed by Italian law to protect its own interests (Articles 2947(1)(3) of the Civil Code), particularly for protection against Fraudulent Conduct. Further information regarding the data retention period and the criteria used to determine it may be requested by emailing the CONTROLLER at info@onlybeauty.it.


 

DATA SUBJECT RIGHTS

 

You have the right to request from the CONTROLLER, at any time, access to your PERSONAL DATA (pursuant to Article 15 of the GDPR), correction (Article 16 of the GDPR), deletion (Article 17 of the GDPR), restriction of processing (Article 18 of the GDPR), or to object to their processing where applicable under Article 21 of the GDPR. You also have the right to obtain your data in a structured, commonly used, and machine-readable format (“data portability” pursuant to Article 20 of the GDPR). All requests can be addressed by sending an email to the CONTROLLER at info@onlybeauty.it, using the contact details provided at the beginning of this document.

In any case, you always have the right to lodge a complaint with the competent supervisory authority (Italian Data Protection Authority - Garante per la Protezione dei Dati Personali) pursuant to Article 77 of the GDPR, if you believe that the processing of your PERSONAL DATA violates applicable law.

CHANGES

 

This PRIVACY POLICY has been in effect since December 20, 2019. The CONTROLLER reserves the right to amend or update its contents, in whole or in part, also due to changes in applicable law. Should such changes involve substantial modifications to the processing or otherwise have a significant impact on data subjects, the CONTROLLER will take care to duly notify the data subjects.

en_GB