1. Introduction
This Privacy Policy describes how the website adlimen.com collects, uses, and protects users' personal data. We are committed to ensuring that your privacy is protected and that your personal data is processed in compliance with EU Regulation 679/2016 (GDPR) and Legislative Decree 196/2003 (Privacy Code).
2. Data Controller
- Identity: Cervelli Matteo
- Contact: [email protected]
2. Data Collected
- Navigation data: IP address, usage data (collected through Google Analytics, Umami Analytics, Ahrefs Analytics, Swiper.js)
- Personal data: email and newsletter profile data (newsletter via Ad Limen/Mercurius), name and contact information (Calendly)
- Payment data: transaction data (processed by Stripe)
- Technical data: browser type and version, timezone setting and location, operating system and platform
- Collection methods: automatic (cookies) and voluntary (forms, Calendly, payments)
3. Processing Purposes
- Statistical traffic analysis (Google Analytics, Umami Analytics, Ahrefs Analytics)
- Booking management (Calendly)
- Newsletter delivery with double opt-in (Ad Limen/Mercurius)
- Payment processing and fraud prevention (Stripe)
- Providing and improving Website services
- Compliance with legal obligations
4. Legal Basis for Processing
- Consent (Art. 6(1)(a) GDPR) for newsletter, non-technical cookies, and forms
- Contract execution (Art. 6(1)(b) GDPR) for payment processing
- Legitimate interest (Art. 6(1)(f) GDPR) for statistical analysis and Website operation
- Legal obligation (Art. 6(1)(c) GDPR) for fiscal and accounting requirements
5. Third Parties
- Google Analytics (Google LLC, USA)
- Umami Analytics (analytics.adlimen.dev — self-hosted instance on Ad Limen infrastructure)
- Ahrefs Analytics (Ahrefs Pte. Ltd.)
- Calendly (Calendly LLC, USA)
- Amazon Web Services SES (newsletter email delivery)
- Stripe (Stripe Inc., USA) for payment processing
In cases where personal data is transferred to countries outside the European Union or the European Economic Area (such as the United States, where Google LLC, Calendly LLC, and Stripe Inc. are based), we implement specific safeguards including:
- Standard Contractual Clauses approved by the European Commission that impose binding contractual obligations on data recipients
- Transfer Impact Assessments to verify destination country laws
- Supplementary measures such as encryption and data pseudonymization where necessary
- For some service providers (such as Google), we also rely on their adherence to the EU-US Data Privacy Framework, which provides adequate guarantees for data transfers
6. Data Retention
Data is retained until consent withdrawal by the user or according to third-party policies.
6. Data Subject Rights
You can exercise the following rights:
- Right to access your personal data (Art. 15 GDPR)
- Right to rectification (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to object (Art. 21 GDPR)
- Right to withdraw consent
To exercise these rights, contact the Controller at: [email protected]
8. Security
The Controller implements appropriate technical and organizational measures to protect personal data from loss, misuse, or unauthorized access, including encryption where appropriate.
9. Changes to Privacy Policy
The Controller reserves the right to modify this Privacy Policy at any time. Changes will be published on the Website and, if significant, a notification may be provided.
Regulatory Reference
- EU Regulation 679/2016 (GDPR), Art. 13 and 14 (Information obligations)
- California residents: rights under the California Consumer Privacy Act (CCPA)
Payment Data Processing
For payment processing, we use Stripe as our payment service provider. When processing payments:
- We never store complete payment card data on our servers
- Stripe processes payment data in compliance with PCI-DSS requirements
- Transaction data is processed for:
- Payment processing
- Fraud prevention
- Legal compliance
- Service improvement
- Stripe may collect:
- Payment card information
- Transaction details
- Billing information
- Device information for fraud prevention
For more information about how Stripe processes your data, please refer to Stripe's Privacy Policy.