In compliance with Articles 12 et seq. of Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (General Data Protection Regulation, GDPR), and in observance of the transparency principle set forth therein, the following information is provided on the processing of Personal Data in connection with the use of www.nomadargentario.com ("Site").

The information applies to data processed during navigation as well as any communication or use of services, including via the reserved area, chat, or messages exchanged with Paradiso srl.

Should the User follow links to third parties (e.g., social media), those entities act as autonomous Data Controllers and the User is invited to read their privacy notices.

Availability checks and bookings are handled through Simplebooking.it, managed by Zucchetti Group as an independent Controller; request data are forwarded to the company on whose behalf the User submitted the request.

Summary table of key information

Purpose Categories of data Legal basis Duration Communications
Functioning and security of the site Browsing data Legitimate interest of the Controller in the activity of the enterprise and security No later than 24 hours No
Contractual (contact and use of services on the Site) Common data such as master data, contact data, referring company, login credentials, etc. Need to initiate pre-contractual measures at the request of the Data Subject or execute contracts of which the Data Subject is a party; legitimate interest in legal protection Prescription of rights; if the request is not followed by a stipulation, the personal data will be deleted by the end of the tourist season No
Direct marketing Common data such as name, telephone number, email address Consent No later than 48 months after consent or its renewal No

For personal data processed via cookies, please refer to the dedicated cookie policy.

1. Data controller

The controller is Paradiso srl, via Aquileia 47 – 58100 Grosseto, Tax Code and VAT number 00608810537, pec paradisosrlgr@pec.it. For queries related to data protection and the exercise of rights, write to info@nomadargentario.com.

2. Purposes of processing

2.1 Site functioning and security

Ensuring the correct operation of the Site, securing access, and monitoring for abuses or suspicious behavior.

2.2 Service management and support

Processing serves to answer information requests, offer installation and maintenance support, and assist customers, installers, and resellers.

2.3 Direct marketing

Includes promotional messages sent via letters, phone calls, automated systems, emails, and customer satisfaction surveys.

3. Types of data collected and collection methods

Systems and programs used by the Site automatically collect browsing data (e.g., IP addresses, request URIs, timestamps, request methods, response sizes, status codes, and other parameters related to the operating system and computing environment). While not collected to identify a person, these data could identify users when combined with third-party data.

We also process data provided directly by the User or resulting from interactions with the Site (contact section, chat, messages), such as first and last name, contact details, number and age of family members or other travelers.

4. Mandatory nature of data provision and legal basis

Browsing data are inherent to Site usage; the legal basis for processing aimed at functionality and security is the Controller’s legitimate interest. Omitting other requested data prevents the provision of services or responses.

Data needed for Site services rely on the need to follow up on pre-contractual or contractual requests (Art. 6.b GDPR). Direct marketing processing is based solely on the Data Subject’s consent (also required for legal persons) and can be revoked at any time (including partially for automated or traditional channels) as detailed in section 8.

5. Processing methods and retention periods

  • Processing via manual and automated systems.
  • Only properly authorized and trained personnel handle personal data.
  • Appropriate safeguards ensure confidentiality and prevent unauthorized access.
  • Marketing data may be processed through automated calling systems, emails, SMS, WhatsApp, instantaneous messaging, push notifications, phone operators, and postal mail.
  • Browsing data are deleted within 24 hours of collection unless unlawful activity is detected.
  • Marketing data are processed for no more than 48 months from consent or its renewal.
  • Site service data are retained as long as necessary for provision and verification, usually not exceeding 6 months after the service use.
  • Data linked to a contractual relationship are kept for the duration of the contract and, for the data still needed, up to 10 years after termination to fulfill legal obligations or protect contractual rights.

6. Data communication

Data may be disclosed only to subjects required for the aforementioned purposes: authorities entitled to access data by law, collaborators, and suppliers (e.g., banks, insurers, legal advisors, shippers, software vendors). Cookiebot (cookies) and Mailchimp (newsletter) act as Data Processors; a complete list of Processors can be requested at the contacts below.

Data are not subject to distribution.

7. Data processing location

Personal data are processed within the European Union and are not transferred outside the territory.

8. Rights of the Data Subject

  • Access to personal data and a copy in an accessible format.
  • Rectification of incorrect or incomplete personal data.
  • Deletion of personal data (right to be forgotten) when requirements are met.
  • Restriction of processing in certain cases (contest accuracy, contest lawfulness, defense, opposition).
  • Objection in whole or in part for reasons related to the Data Subject's particular situation when processing is based on legitimate interest; for marketing or profiling no justification is required.
  • Data portability when the processing relies on consent or a contract and is carried out by automated means.
  • Revocation of consent at any time without affecting the lawfulness of processing carried out before the revocation; it is possible to revoke only specific communication channels.
  • Lodge a complaint with the Guarantor for the Protection of Personal Data (www.garanteprivacy.it) and contact us at info@nomadargentario.com for any clarification.

Revoking consent does not affect the lawfulness of processing prior to revocation. You can withdraw consent through links in communications, the reserved area, or by emailing info@nomadargentario.com.

The Data Subject also has the right to lodge a complaint with the Guarantor for the Protection of Personal Data (www.garanteprivacy.it).