Privacy Policy

01/01/2026

Introduction

This privacy policy explains how we collect, use, share, and protect personal information in accordance with the General Data Protection Regulation (GDPR).

Administration

Data Controller, DPO, and Contact

  • Data Controller: Carlo Zanotto
  • Data Protection Officer (DPO): Carlo Zanotto
  • Address: Contrà Rivoltella 64, Bassano del Grappa, 36061, Italy
  • Email: carlo.zanotto+privacy@mailbox.org
Data Privacy

Data Collection

We collect personal data when you visit our website, use our services, or interact with us. This is limited to:

  1. Name and contact information
    When you send us a message via the website's contact form we collect your name and email address.
  2. Usage data and cookies
    We keep only data relevant to the language preference.

Purpose of Processing

We use your data strictly for communication purposes.

Data Transfer Outside the EU

Messages submitted through the contact form are processed by Formspree (Formspree Inc., USA), acting as a data sub-processor under a Data Processing Agreement. The transfer to the United States is covered by the European Commission's Standard Contractual Clauses (SCCs). Submissions are retained in Formspree's secure dashboard until manually deleted, and the resulting email is delivered to an EU-based mailbox provider (Mailbox.org, Germany). To request access to or deletion of your data, simply send an email to carlo.zanotto+privacy@mailbox.org — the request will be fulfilled via the Formspree dashboard within 30 days. Spam protection relies on Formspree's built-in rate-limiting — no third-party tracking captchas are used.

Use of Cookies and Other Trackers

Once again, no.

Data Subject Rights

Under GDPR, you have the right to:

  1. Access your personal data
    You can request a copy of all the personal information we hold about you.
  2. Rectify incorrect data
    If you notice an error in your personal details you can request that we correct it.
  3. Erase your data in certain circumstances
    You can request the deletion of your data if you no longer wish to use our services or if your data is no longer necessary for the purposes it was collected.
  4. Restrict or object to processing
    If you believe your data is being processed unlawfully you can request that we restrict or stop processing your personal data.
  5. Data portability
    You can request a copy of your data in a machine-readable format, which can be transferred to another service provider.

Data Security

We take appropriate measures to ensure data security, protect against unauthorized access, and comply with GDPR.


Technical Measures:
Your contact data is saved within an email account protected by multi-factor authentication and complete mailbox encryption.

Data Retention

Personal data is retained as long as necessary for the purposes stated, unless a longer retention period is required or permitted by law.

Changes to this Policy

We may update this policy. We will notify you of significant changes and update the "last updated" date at the top of the policy, such changes include new features on our website that require additional data collection or processing.

Contact Us

For questions or to exercise your data protection rights, please contact us at:

carlo.zanotto+privacy@mailbox.org