Privacy Policy

PRIVACY POLICY

1. Data Controller

The Data Controller is TEDIEL S.r.l. (VAT: IT10787620961), with its registered office located at Via Alberico Albricci 8, 20122 – Milan (MI), Italy (hereinafter referred to as the “Controller”).
Controller contact email: info@tediel.com

2. Personal Data Collected and Purposes of Processing


The Controller collects and processes common personal data (e.g., first name, last name, email address, telephone number) voluntarily submitted by the user (“User”) through the website www.tediel.com (“Website”).

The purposes and legal bases for data processing are as follows:

Handling Information Requests: To respond to inquiries sent by the User regarding products or services offered.

Legal Basis: Execution of pre-contractual or contractual measures (Art. 6(1)(b) GDPR). Prior explicit consent is not required for this purpose.

Newsletter Subscription: To periodically send promotional and informative communications concerning the Controller’s activities.

Legal Basis: The User’s free and explicit consent (Art. 6(1)(a) GDPR).

Data will not be processed for purposes other than those specified above, nor will it be publicly disclosed.

3. Processing Methods and Security

Data processing is carried out using automated and/or electronic tools, following procedures strictly limited to the stated purposes. The Controller implements appropriate technical and organizational security measures (Art. 32 GDPR) to prevent data loss, unlawful use, unauthorized access, or accidental destruction. Personal data is stored on secure servers located within the European Union.

4. Data Retention Period

Personal data will be stored only for the duration strictly necessary to handle the User’s request or to provide the requested service:

Information Requests: Data is retained for the time necessary to fulfill the request and for a maximum period of [e.g., 12 months], unless longer retention is required to fulfill statutory or tax obligations.

Newsletter: Data will be processed until consent is withdrawn by the User (via the unsubscribe link included in every email or by contacting the Controller directly).

5. Disclosure and Transfer of Data to Third Parties


User data may be shared with third-party service providers (e.g., technical support providers, hosting providers, IT consultants) acting, where necessary, as Data Processors pursuant to Art. 28 GDPR.

6. Statutory Disclosure and Legal Compliance

The Controller reserves the right to retain or disclose personal data to judicial or public authorities where required by law, to enforce legal rights, or to prevent fraud and security issues.

7. Corporate Reorganization

In the event of a merger, acquisition, insolvency, or sale of the Controller’s corporate assets, personal data may be transferred to the acquiring entity, which will continue to process the data in accordance with this Privacy Policy.

8. Rights of the User

Pursuant to Articles 15–22 of the GDPR, the User has the right to:

Access: Confirm whether personal data concerning them is being processed and obtain a copy of such data.

Rectification: Request the correction of inaccurate data or completion of incomplete data.

Erasure (“Right to be Forgotten”): Request the deletion of personal data where legal conditions apply.

Restriction and Objection: Request the restriction of processing or object to the processing on legitimate grounds.

Data Portability: Receive their personal data in a structured, commonly used, and machine-readable format.

Withdrawal of Consent: Withdraw consent for newsletter processing at any time without affecting the lawfulness of processing based on consent before its withdrawal.

Lodge a Complaint: Submit a complaint to a supervisory authority (in Italy, the Garante per la protezione dei dati personali – www.garanteprivacy.it).

To exercise these rights, requests can be sent directly to the Controller’s contact email provided in Section 1.

9. Data Breach

In the event of a personal data breach posing a risk to the rights and freedoms of individuals, the Controller will notify the competent supervisory authority without undue delay and, where feasible, within 72 hours of becoming aware of it. If required by Art. 34 GDPR, affected Users will also be notified promptly.

10. Changes to this Privacy Policy

The Controller reserves the right to modify this Privacy Policy at any time. Users will be informed of any material changes through updates published on the Website.

 

 

Last updated: September 2026

Scroll to top