Privacy Policy and Cookie Policy

––––––––––
Website:
www.nottedifiaba.it
Last updated: 01/07/2026
––––––––––

1. Data Controller

The data controller for personal data collected through this website is:

Associazione Manifestazioni Rivane APS
Viale della Liberazione 7 – C.P. 54, 38066 Riva del Garda (TN)
VAT / Tax ID: 01376410229
PEC: nottedifiaba@pec.it
Email: info@nottedifiaba.it

For any enquiry relating to the processing of personal data, users may contact the Data Controller at the details provided above.

2. Types of data processed

This website does not use statistical analytics tools, tracking pixels, or integrated contact forms. As a result, the data processed is limited to the following.

2.1 Browsing data

During normal browsing, the computer systems and software procedures used to operate the website automatically collect, in the course of their normal operation, certain personal data whose transmission is implicit in the use of internet communication protocols (e.g. IP address, browser and operating system type, pages requested, time of request).

This data is collected automatically by the technical infrastructure of the hosting provider (Webflow, Inc. — see section 5) solely for the purposes of technical operation and website security (e.g. prevention of cyber attacks), and is not used to identify users or cross-referenced with other data held by the Data Controller.

2.2 Data provided voluntarily

Should the user choose to write to info@nottedifiaba.it or to the PEC address nottedifiaba@pec.it, the personal data voluntarily provided (e.g. name, email address, message content) will be processed solely for the purpose of responding to the request received. The website does not include an integrated contact form: all communications take place via the standard email/PEC channels indicated.

2.3 Cookies

See section 7 — Cookie Policy.

3. Purposes and legal basis of processing

Purpose: Technical operation and security of the website
Legal basis: Legitimate interest of the Data Controller (Art. 6(1)(f) GDPR)

Purpose: Handling requests submitted via email/PEC
Legal basis: Performance of a request by the data subject / legitimate interest of the Data Controller (Art. 6(1)(b)/(f) GDPR)

4. Retention period

  • Browsing data is retained for the period strictly necessary for technical and security purposes, in accordance with the hosting provider’s retention policies.
  • Data voluntarily submitted via email/PEC is retained for the time necessary to handle the request and, thereafter, for the period required by any applicable legal obligations.

5. Third parties and transfers of data outside the EU

The website is built and hosted on the Webflow platform (Webflow, Inc., based in the United States), which acts as the hosting service provider. Webflow, Inc. is certified under the EU-US Data Privacy Framework (and its Swiss-US and UK extensions), recognised by the European Commission as providing an adequate level of protection for the transfer of personal data outside the European Economic Area; in addition, Webflow applies Standard Contractual Clauses (SCCs) as a further contractual safeguard.

No third-party tools are used for analytics, advertising, social plugins or profiling, and therefore no other third party receives data relating to users of the website.

6. Data subject rights

As a data subject, you have the right to request from the Data Controller, within the limits provided by applicable law:

  • access to your personal data (Art. 15 GDPR);
  • rectification of inaccurate data (Art. 16 GDPR);
  • erasure of data (Art. 17 GDPR);
  • restriction of processing (Art. 18 GDPR);
  • data portability (Art. 20 GDPR);
  • objection to processing (Art. 21 GDPR).

Requests may be sent to the contacts listed in the “Data Controller” section.

You also have the right to lodge a complaint with the Italian Data Protection Authority (www.garanteprivacy.it) if you believe that the processing of your data is in breach of applicable law.

7. Cookie Policy

7.1 What are cookies

Cookies are small text files that visited websites send to the user’s device, where they are stored and then retransmitted to the same websites on subsequent visits.

7.2 Cookies used by this website

This website does not use statistical analytics, profiling or marketing cookies, nor any third-party cookies.

Only technical cookies are used, necessary for the correct functioning and security of the website, generated by the Webflow hosting platform. These include, in particular, anti-CSRF cookies (e.g. wf-csrf, wf-csrf.sig), which protect the website from cross-site request forgery (CSRF) attacks and are not used for tracking or profiling purposes.

7.3 Consent requirements

As only technical cookies strictly necessary for the operation of the website are used, in accordance with the guidelines of the Italian Data Protection Authority on cookies, prior consent from the user is not required, nor is it necessary to display a banner allowing users to accept or reject cookies. This notice is nonetheless made available for transparency purposes.

7.4 How to manage cookies via your browser

Cookie preferences can be managed directly through your browser settings, which allow you to remove or block already installed cookies. Please note that disabling technical cookies may prevent certain parts of the website from functioning correctly.

8. Changes to this notice

The Data Controller reserves the right to modify or update this notice, in whole or in part, including as a result of changes in applicable law. Users are therefore invited to consult this page periodically, referring to the last updated date shown at the top of the document.

9. Contacts

For any enquiry regarding the processing of personal data: