Privacy & Policy
This Privacy Policy is made pursuant to Article 13 of the European Regulation No. 679/2016 and applies exclusively to the Data collected through the Website www.rickdothings.com This document may be subject to updates that will be published within the aforementioned Website.
The function of this Privacy Policy is, together with the Cookie Policy, to regulate the contractual and legal modalities on the basis of which the User’s Personal Data will be processed.
Data Controller.
The Data Controller of the Data collected from this Web Site is Indastria Creative studio, with operational headquarters in Via Corte 8, Neviano Degli Arduini, and may be contacted, in order to know how their data is processed and exercise their rights at the following email address: rick@rickdothings.com
Modalities of Processing of Personal Data
The Personal Data provided directly or acquired through the website will be processed in accordance with the principles of fairness, lawfulness, transparency and protection of confidentiality in accordance with the current regulations. The Data Controller processes Users’ Personal Data by adopting the most appropriate security measures aimed at preventing access, disclosure, modification or destruction by unauthorized individuals or entities. The Processing is carried out by means of computer and/or telematic tools, with organizational methods and logics strictly related to the indicated purposes.
Category of Personal Data processed
The Personal Data processed through this Website, either independently or through third parties, mainly but not exclusively concern: Cookies, Usage Data, Bank Data, Email, Phone Number and Name.
Personal Data may be collected autonomously by the Owner or through third parties. Personal Data may also be provided voluntarily by the User when using the Website, through the completion of the Contact Form, when communicating with the Data Controller via email and/or via telephone. Additional Personal Data collected may be indicated in other sections of this Privacy Policy or through informational texts displayed at the same time as the collection of the Data. The optional, explicit and voluntary sending of electronic mail through the Contact Form or by means of the addresses indicated on this Website, entails the subsequent acquisition of the sender’s address, necessary to respond to requests, as well as any other Personal Data included in the email.
The provision of Data by the User is necessary for inclusion in the Owner’s databases, for the purposes of the establishment and proper conduct of what the same offers to its Users, as well as to third parties for the fulfillment of the individual activity requested.
Failure to provide it therefore prevents registration in the Owner’s databases, the completion of any contracts, as well as the execution of the same and any other possible activity.
Purpose of the Processing of Personal Data and Legal Basis.
The Personal Data being processed may be collected autonomously by the Data Controller or through third parties.
The computer systems and software procedures in charge of the operation of this Website automatically acquire specific types of Users’ Personal Data, having a technical-informatics nature (e.g. IP address, type of browser used, operating system, domain name and addresses of websites from which access or exit was made, etc.), the transmission of which is inherent and fundamental to the normal operation of the Internet, therefore, their deactivation may result in a reduction in the quality of the service offered or a limitation thereof. Such Data will be processed for the sole purpose of obtaining anonymous statistical information on the use of the site and/or to check its correct functioning and will be deleted immediately after processing.
The Data that the User chooses to voluntarily provide, on the other hand, are collected to enable the Data Controller to provide its services, as well as for the following Purposes:
1) in order to fulfill any type of obligation contemplated and provided for by current laws, regulations, related rules and business customs, especially in tax matters. This processing is mandatory for the fulfillment of legal obligations to which the Data Controller is subject;
2) in order to provide ad hoc services requested by the User. As this processing is optional, it is based on the User’s contractual consent and, as such, failure to provide one or more Data will result in the impossibility of providing the service offered by the Data Controller;
3) in order to exercise the other purposes ancillary or related to those indicated above and in any case falling within the scope of the Website’s activities;
4) in order to follow up on specific requests addressed to the Data Controller by the User for communications of an informative nature relating to the Services of the same Data Controller, by means of e-mail messages or filling in the Contact Form and other communication tools such as telephone. Since this processing is also optional and based on the User’s consent, failure to communicate one or more Data will result in the impossibility of responding to the request for information and to use the services offered by the Owner;
5) in order to send information and promotional offers also through the newsletter service. This processing is based on the consent freely expressed by the User and is revocable at any time;
6) in order to carry out statistical analysis on aggregated and anonymous data to analyze the User’s behavior in order to improve the products and services provided by the Owner as well as to meet the User’s expectations
7) in order to carry out profiling activities for the purpose of marketing. Such Processing is based on the consent freely expressed by the User and is revocable at any time.
8) in order to fulfill the obligations arising from the contract concluded between the User and the Controller for the sale of the Services on the Website and to provide the information requested by the User. This processing is obligatory for the execution of the contract to which the User is a party, for the execution of pre-contractual measures or to fulfill a legal obligation to which the Data Controller is subject, so failure to grant consent to the processing prevents the execution of the contract.
Specifically, the following processing does not require the express consent of the data subject:
– conclusion of contracts with the Data Controller;
– fulfillment of pre-contractual, contractual and fiscal obligations arising from existing relationships;
– fulfillment of obligations under the law, a regulation, EU legislation or an order of the Authority;
– fulfillment of a legitimate interest of the Data Controller or a third party, provided that the interests or fundamental rights and freedoms of the data subject, for which the protection of personal data is required, do not prevail (e.g., the data controller’s right of defense in court).
Place of Processing and Transfer of Data Abroad
The Data are processed at the operational headquarters of the Data Controller. The Data may be processed by individuals and/or legal entities operating on behalf of the Data Controller and under specific contractual obligations and based in EU member countries. Should the Data be transferred outside the European Union, the Data Controller will take all appropriate measures to ensure adequate protection for said data.
Communication of Data
In addition to the Data Controller, it is possible that in certain situations third parties, included in the corporate structure or external, may have access to the Data:
1) categories of specially trained Appointees involved in the organization of the Website (administrative, sales, marketing, legal, system administrators);
2) external parties (example: third party technical service providers, hosting providers, IT companies) as Data Processors appointed by the Data Controller pursuant to Article 28 GDPR. The updated list of Data Processors, if appointed, may in any case be requested, at any time, from the Data Controller;
3) public or private entities that have access to the Data in compliance with legal obligations;
4) subjects that carry out accessory and instrumental activities with respect to the activities of the Data Controller;
Duration of Processing
On the basis of the combined provisions of the articles of the reference regulations, and specifically on the basis of art. 5, co. 1, letter e) of the GDPR, the Data collected or provided by the Users are kept limitedly for the time necessary for the Processing of the same, in relation to the performance of the service requested by the User, or otherwise required by the Purposes described in this Privacy Policy, specifically:
– Data collected for Purposes attributable to the legitimate interest of the Data Controller will be retained until such interest is satisfied and in any case not beyond the limits established by law;
– Data collected based on the User’s Consent may be retained until such Consent is revoked;
– Data collected for fiscal/administrative or contractual obligations will be kept for the time necessary to fulfill the specific purposes and in accordance with the law, for a period not exceeding that dictated by civil law and in any case for a period not exceeding 10 (ten) years;
– Data collected for marketing and profiling purposes will be retained for a period not exceeding 12 (twelve) months from the acquisition of consent;
Data may be retained by the Data Controller for a longer period in compliance with legal obligations or by order of an authority. However, the User is always allowed to request the interruption of the Processing or the deletion of the Data whose processing is based on the legal basis of consent.
Cookies
This Website may use cookies. Cookies are small text files that can be used by Websites either to make the experience more efficient for the User, or to personalize content and ads, provide social network functions, and analyze traffic. To learn about the types of cookies potentially active within this site, please refer to the Cookie Policy
Tools used for the Processing of Personal Data
Address management and email delivery
These services allow you to manage a database of email contacts, telephone contacts or contacts of any other kind used to communicate with the User. These services may also allow for the collection of Data related to the date and time of the User’s viewing of messages, as well as the User’s interaction with them, such as information about clicks on links included in messages.
Contact forms
The User, by completing the Contact Form with their Data, consents to their use to respond to requests for information, or any other purpose indicated by the header of the form. Personal Data collected through Contact Form: Email, First Name and Last Name
Security Measures Taken
This Website, to secure the moment when Personal Data is entered, has an SSL certificate and uses the HTTPS protocol. With the use of this protocol, the transactions and data that are transmitted in the Websites take place with maximum security and the content of the communication is not read or manipulated in any way by third parties.
Statistics
Statistical services allow the Data Controller to exclusively monitor and analyze traffic data and serve to track User behavior. This Website uses the following services:
1. Google Analytics (Google Ireland Limited)
Google Analytics is an analytics service provided by Google Ireland Limited. Google uses the Personal Data collected for the purpose of tracking and examining the use of this Website, compiling reports and sharing them with other services developed by Google. Google may use Personal Data to contextualize and personalize ads in its advertising network. Google may also transfer this information to third parties where required to do so by law or where such third parties process this information on Google’s behalf. IP address anonymization is enabled on this site. The IP address transmitted by your browser for purposes related to Google Analytics will not be merged with other data already held by Google.
A browser add-on for deactivating Google Analytics is made available by Google at the following link. Personal Data Collected: Cookies and Usage Data. Place of processing: Ireland – Privacy Policy
2. Meta pixel conversion monitoring (Meta Platforms Ireland Limited).
Meta’s conversion tracking (Meta pixel) is a statistics service provided by Meta. The purpose of the Meta pixel is to track conversions that can be attributed to Meta’s advertisements. Personal data collected: Cookies; Usage data. Place of processing: Ireland – Privacy Policy.
2. Meta Remarketing (Meta Platforms Ireland Limited).
Meta Remarketing is a Remarketing and Behavioral Targeting service provided by Meta, which links this Website’s activity with the Meta advertising network. This Web Site makes use of the Meta Pixel tool in order to measure conversions. Thanks to the Meta Pixel, we can understand the actions that people perform on the Website.
The information collected is anonymous to the operators of this Website and cannot be used to identify an individual user. However, the information is saved and analyzed by Meta, which could link the action back to an individual profile and use this information for Meta’s internal advertising purposes, as outlined by Meta’s privacy policy. This will allow Meta to show advertisements on both Facebook and third-party sites. The Site Owner has no control over how this data is used. Place of processing: Ireland – Privacy Policy.
Interaction with Social Networks.
These services enable interactions with social networks or other external platforms directly from the pages of this Website. Interactions and information captured by this Website are in each case subject to the User’s privacy settings related to each social network. In the event that a social network interaction service is installed, it is possible that, even if Users do not use the service, it will collect traffic data related to the pages where it is installed.
1. Facebook (Meta Platforms Ireland Limited)
Facebook buttons are services for interaction with the social network Facebook, provided by Facebook Ireland Ltd. Personal Data Collected: Cookies and Usage Data. Place of processing: Ireland – Privacy Policy
2. Instagram (Meta Platforms Ireland Limited)
Instagram buttons are interaction services with the social network Instagram, provided by Facebook. Personal Data Collected: Cookies and Usage Data. Place of processing: Ireland – Privacy Policy
Content on external platforms
These services allow you to view content hosted on external platforms directly from the pages of this Website and interact with them.
Where such a service is installed, it is possible that, even if Users do not use the service, it may collect Traffic Data related to the pages where it is installed.
This Website uses:
1. Youtube (Google Ireland Limited)
Youtube is a video content display service operated by Google that allows this Website to integrate such content within its pages. Personal Data collected: Cookies and Usage Data. Place of Processing: Ireland – Privacy Policy
Payment Management.
Payment processing services allow this Website to process payments by credit card, bank transfer or other means. The Data used for payment is acquired directly from the operator of the requested payment service without being processed in any way by this Website. Some of these services may also allow the scheduled sending of messages to the User, such as emails containing invoices or notifications regarding payment.
This Website uses the following service:
1. PayPal (Paypal Europe S.à.r.l. et Cie, S.C.A Inc.).
PayPal is a payment service provided by PayPal Europe S.à.r.l. et Cie, S.C.A Inc., which allows the User to make online payments using their PayPal credentials. Personal Data collected: Cookies and various types of Data as specified by the privacy policy of the service. Place of processing: Luxembourg – Privacy Policy
2. Stripe (Stripe Payments Europe Ltd.).
Stripe is a payment service provided by Stripe Payments Europe, Ltd. that enables Users to make online payments using their Stripe credentials. Personal Data collected: Various types of Data as specified by the privacy policy of the service. Place of processing: USA – Privacy Policy
Exercise of the data subject’s rights
The Data Subject has the right to exercise the faculties provided for in Articles 7, 15-22 of European Reg. 679/2016. In particular, he/she has the right to:
– revoke his/her consent at any time
– access the Personal Data upon simple request to the Data Controller
– receive the Personal Data provided to the Data Controller and where possible transmit it to another Data Controller without hindrance (so-called portability),
– obtain the updating, limitation of the processing, rectification of the Data and the deletion of those processed in breach of the regulations in force.
– object to the Processing of Personal Data concerning him/her and to the Processing for the purpose of sending advertising material, direct sales and for carrying out market research.
– to lodge a complaint with the Privacy Guarantor as the supervisory authority for the protection of personal data.
Data subjects may exercise their rights by contacting the Data Controller by email at: rick@rickdothings.com
Changes to this Privacy Policy
The Data Controller reserves the right to make changes to this Privacy Policy at any time by giving notice to Users on this page. Therefore, please consult this page often, taking as reference the date of last modification indicated at the bottom. If you do not accept the changes made to this Privacy Policy, you must cease using this Website and may request the Data Controller to remove your Personal Data. Unless otherwise specified, the previous Privacy Policy will continue to apply to the Personal Data collected up to that point. The Data Controller is not responsible for updating all links viewable in this Privacy Policy, so whenever a link is not working and/or updated, Users acknowledge and agree that they should always refer to the document and/or section of the websites referred to by that link.
Privacy Policy updated as of January 2025