Privacy Policy di https://www.asanafioridibach.com/
This Application collects some Personal Data from its Users.
This document can be printed using the print command found in the settings of any browser.
Data Controller
Carmela Latorraca
Bologna
P.IVA : 04111301208
Data Controller’s email address: info@asanafioridibach.com
- Who I am and how to contact me
- What types of data I collect
- Purpose and legal basis
- How we use the collected data
- Mandatory nature of data provision
- Data recipients
- Data subjects’ rights
- Retention period
- Security safeguards for your data
- Additional information
- Record of changes
1. Who we are and how to contact us
I am Carmela Latorraca, the Data Controller of your personal data (hereinafter also referred to as the Controller). This privacy notice is drafted in compliance with EU Regulation 679/2016 (GDPR). For any doubts or needs, you can reach me at the following addresses:
Standard E-mail: info@asanafioridibach.com
2. What types of data I collect
2.1. The data required to send me an information request are your name and your email address, while your phone number and the URL of any website are optional.
2.2. When it is possible to send me a message through the website, the information and personal data you provide are freely given by you. For a first contact, I recommend that you do not provide so-called sensitive or judicial data, but only do so within the context of a consultation. In any case, such data will also be protected and treated confidentially as described in this privacy notice, in compliance with the GDPR and according to strict confidentiality criteria.
2.3. This site only installs technical cookies
3. Why I ask for this personal data (purpose) and on what legal basis
3.1. Your personal data are necessary to process your requests and to answer your questions.
3.2. If you are already one of my clients or you have already participated in one of my initiatives, I may send you news or marketing communications regarding services similar to those you have already used, without prejudice to your right to withdraw or limit your consent to such communications at any time by writing directly to info@asanafioridibach.com.
The legal basis for the processing lies in the consent you provide by selecting the appropriate checkbox in the contact form (Point & Click).
4. How we use the collected data
4.1. The processing is carried out through: collection, recording, organisation, storage, consultation, processing, modification, selection, extraction, comparison, use, interconnection, blocking, communication, deletion, and destruction of the data
4.2. Once your data are entered into the appropriate FORM, they are used to respond to the questions outlined in your request.
5. Mandatory nature of data provision
It is essential that you provide your name and email address in order to send your message. Otherwise, it is impossible to fulfil your request. Under no circumstances will I use your personal data for purposes other than those indicated in this notice. In any case, there is no obligation to provide data, and failure to do so will only prevent the processing of your request. For security reasons, you cannot send me any data without consenting to the processing. All forms are therefore designed so they cannot be submitted without your consent.
6. Data recipients
Your personal data may be shared with my collaborators who assist me in managing requests and in organising back-office activities. My collaborators are Data Processors and are bound by my specific instructions and policies, as well as confidentiality and secrecy obligations. Upon request, the list of our collaborators who act as data processors is available.
Data processing is partially automated, but all decision-making processes always involve human intervention.
Website hosting: All web servers providing our hosting and cloud hosting services are located in Italy, in the Milan and Frosinone data centres. Some critical data, such as backups and disaster recovery, are geographically distributed in a third data centre located in Amsterdam. You can review the regulations at the following links: Ergonet data center e Ergonet Privacy Policy.
7. Your rights and how to access, modify, delete, or obtain a copy of your data
Under European Regulation, you have the right to request:
- access to your personal data (to know which data we hold about you),
- lrectification of inaccurate data or completion of incomplete data (for example, if you have a new email address),
- deletion of personal data (when one of the conditions of Art. 17(1) GDPR applies, respecting the exceptions in paragraph 3 of the same article),
- objection to processing (for example, if you believe your data are being processed in a way that does not comply with this privacy notice),
- data portability.
- You may request and obtain your personal data in a structured, machine-readable format, also for the purpose of transmitting them to another data controller (right to portability).
- You may withdraw your consent at any time, limited to cases in which the processing is based on consent for one or more specific purposes and concerns common personal data (e.g., date and place of birth or residence) or special categories of data (e.g., data revealing racial origin, political opinions, religious beliefs, health status, or sexual life). Processing carried out prior to the withdrawal of consent remains lawful.
- The above rights regarding personal data of deceased persons may be exercised by those who have a personal interest, act to protect the data subject as authorised representatives, or act for family reasons deserving of protection, unless the data subject expressly prohibited this through a written statement delivered or communicated to the Data Controller.
- You may also lodge a complaint with a supervisory authority (Italian Data Protection Authority – www.garanteprivacy.it).
For any issue or need, write to info@asanafioridibach.com
8. Retention period
8.1. For promotional purposes, your data will be retained for a maximum of 24 months.
8.2 For information requests or questions, your data will be retained for 30 days after your request has been processed.
9. Security safeguards for your data
No IT system can be considered 100% secure. However, the Controller adopts all the most appropriate measures to safeguard security and prevent the risk of Data Breaches (unauthorised access to the IT network).
My business is related to the provision of services in the health and wellness sector and to training; in my work I observe deontological rules and obligations of confidentiality and secrecy regarding the information provided by users.
10. Additional information
All services and informational content from Studio ASANA are intended for individuals of legal age. The Controller does not intend to collect data from minors; if this should happen, such data will be immediately deleted. The Controller assumes no responsibility for inaccurate or false data provided by the data subject.
This Privacy Policy may be subject to future amendments and/or additions. We therefore invite you to consult it regularly according to your needs.
For any further information, refer to the legal notices on the website.
11. Record of changes
The Data Controller reserves the right to amend this Privacy Policy at any time by notifying Users on this page. Please therefore check this page frequently, referring to the date of the last modification indicated below.
If the changes concern processing operations whose legal basis is consent, the Controller will obtain the User’s consent again, where necessary.
22 October 2025: updated notice – GDPR compliance
