Privacy Policy

Introduction

We at ZAVAII srl a socio unico (“we”, “us”, “our”) take user privacy very seriously (“users” or “you”) of our website www.zavaii.com (the “Site”) and are committed to protecting the information you provide in connection with your use of our Site. Furthermore, we are committed to protecting and using your information in compliance with applicable law.

This Privacy Policy explains our practices regarding the collection, use, and disclosure of your information through your use of our Site (the “Services”) when you access the Services via your devices. Please read this Privacy Policy carefully and ensure that you fully understand our practices regarding your information before using our Services. If you have read this policy, understand it fully, and disagree with our practices, you must stop using our Services. By using our Services, you accept the terms of this Privacy Policy. Your continued use of the Services constitutes acceptance of this Privacy Policy and any changes to it.

In this Privacy Policy you will learn:

● How we collect data
● What data we collect
● Why we collect this data
● With whom we share the data
● Where the data is stored
● How long the data is stored
● How we protect the data
● How we handle minors
● Updates or changes to the Privacy Policy

What data do we collect?
Below is an overview of the data we may collect:

  • Non-identified and non-identifiable information that you provide during the registration process or that is collected through the use of our services (“non-personal data”). Non-personal data does not identify who has been collected. The non-personal data we collect mainly consists of technical and aggregated usage information.
  • Personally identifiable information, which is any information that can be used to identify you or that could be used to identify you with reasonable effort (“personal data”). The personally identifiable data we collect through our Services may include information requested from time to time, such as names, email addresses, physical addresses, phone numbers, IP addresses, and more. When we combine personal data with non-personal data, as long as they are combined, we will treat them as personal data.

How do we collect data?
Below are the main methods we use to collect data:

  • We collect data when you use our services. Therefore, when you visit our digital assets and use the services, we may collect, record, and store usage, session, and related information.
  • We collect data that you provide to us directly, such as when you contact us through a communication channel (such as an email with a comment or feedback).
  • We may collect data from third-party sources as described below.
  • We collect data you provide when you sign up for our services via a third-party provider such as Facebook or Google.

Why do we collect this data?
We may use your data for the following purposes:

  • To provide and manage our services;
  • To develop, customize, and improve our services;
  • To respond to your feedback, questions, and requests, and provide assistance;
  • To analyze requests and usage patterns;
  • For other internal, statistical, and research purposes;
  • To improve our data security and fraud prevention capabilities;
  • To investigate violations and enforce our terms and policies, and to comply with applicable law, regulations, or government requests;
  • To provide you with updates, news, promotional materials, and other information related to our services. For promotional emails, you can decide whether to continue receiving them. Otherwise, simply click the unsubscribe link in these emails.

With whom do we share this data?
We may share your information with our service providers to operate our services (e.g., storing data through third-party hosting services, providing technical support, etc.). We may also disclose your information in the following circumstances: (i) to investigate, detect, prevent, or take action regarding illegal activities or other unlawful conduct; (ii) to establish or exercise our defense rights; (iii) to protect our rights, property, or personal safety, or the safety of our users or the public; (iv) in the event of a change in control of us or any of our affiliates (through merger, acquisition, or purchase of substantially all assets, etc.); (v) to collect, maintain, and/or manage your information through authorized third-party service providers (e.g., cloud service providers) as appropriate for business purposes; (vi) to work with third-party service providers to enhance your user experience. To avoid any doubt, we may transfer or disclose non-personal data to third parties or use it in any other manner at our discretion.

 

 

Cookies and Similar Technologies
When you visit or access our Services, we authorize third parties to use web beacons, cookies, pixel tags, scripts, and other tracking technologies and analytics services (“Tracking Technologies”). These Tracking Technologies may allow third parties to automatically collect your information to enhance your browsing experience on our digital assets, optimize their performance, and provide a tailored user experience, as well as for security and fraud prevention purposes.
To learn more, read our Cookie Policy.

Where do we store the data?
Note that our operations and our trusted partners and service providers are located worldwide. For the purposes outlined in this Privacy Policy, we store and process any non-personal data we collect in various jurisdictions.

Personal Data
Personal data may be retained, processed, and stored in the United States, Ireland, South Korea, Taiwan, Israel, and to the extent necessary for the proper provision of our services and/or as required by law (as further explained below) in other jurisdictions.

How long is the data stored?
Note that we will retain the data we collect for as long as necessary to provide our services, to fulfill our legal and contractual obligations to you, to resolve disputes, and to enforce our agreements. We may correct, modify, or delete inaccurate or incomplete data at any time at our sole discretion.

How do we protect the data?
The hosting service for our digital assets provides us with the online platform through which we can offer you our services. Your data may be stored via data storage, databases, and general applications of our hosting provider. It stores your data on secure servers behind a firewall and provides secure HTTPS access to most areas of its services.

 

Online Payments
All payment options offered by us and our hosting provider for our digital assets comply with the PCI-DSS (Payment Card Industry Data Security Standard) regulations of the PCI Security Standards Council. This includes collaboration from brands like Visa, MasterCard, American Express, and Discover. PCI-DSS requirements help ensure the secure management of credit card data (including physical, electronic, and procedural measures) by our store and service providers.

Despite the measures and efforts taken by us and our hosting provider, we cannot and do not guarantee the absolute protection and security of the data you upload, post, or share with us or others. For this reason, we ask you to establish strong passwords and, when possible, not to provide us or others with confidential information that you believe could cause you significant or lasting harm if disclosed. Additionally, since emails and instant messages are not considered secure forms of communication, we ask you not to disclose confidential information via any of these communication channels.

How do we handle minors?

1 – The user DOES NOT collect data from minors.
The Services are not intended for users under the legal age of majority. We will not knowingly collect data from children. If you are under the legal age of majority, you should not download or use the Services nor provide us with any information.

We reserve the right to request proof of age at any time to verify if minors are using our Services. If we become aware that a minor is using our Services, we may prohibit such users from accessing our Services and block them, and we may delete any information we have on that user. If you have reason to believe that a minor has disclosed data to us, please contact us as explained below.

2- The user collects data from minors
Children may use our services. However, if they wish to access certain features, they may be required to provide some information. The collection of certain data (including those collected through cookies, web beacons, and other similar technologies) may be automatic. If we knowingly collect, use, or disclose information collected from a child, we will indicate this in compliance with applicable law and obtain parental consent. We do not condition a child’s participation in an online activity on providing additional contact information beyond what is reasonably necessary to participate in that activity. We will only use the information collected in relation to the services requested by the child.

We may also use a parent’s contact information to communicate about the child’s activities in the Services. Parents can review the data we have collected from their child, prohibit further data collection from their child, and request that any collected data be deleted from our records.

To view, update, or delete your child’s information, please contact us. For the protection of your child, we may ask you to provide proof of your identity. We may deny you access to the data if we believe your identity is questionable. Please note that certain data may not be deleted due to other legal obligations.

Category: Always
We will use your personal data only for the purposes stated in the Privacy Policy and only if we are satisfied that:

  • The use of your personal data is necessary to perform or enter into a contract (e.g., to provide you with the Services themselves or customer assistance or technical support);
  • The use of your personal data is necessary to support our legitimate business interests (provided this is done in a proportionate manner, respecting relevant legal or regulatory obligations regarding your rights and protecting the data). As a resident of the EU, you may:
  • Request confirmation if the personal data concerning you is being processed and request access to your personal data stored and additional information;
  • Obtain the personal data you have provided in a structured, commonly used, and machine-readable format;
  • Request correction of your personal data that we have stored;
  • Request the deletion of your personal data;
  • Object to the processing of your personal data by us;
  • Request the restriction of the processing of your personal data, or
  • File a complaint with a supervisory authority.

However, please note that these rights are not unlimited and may be subject to our legitimate interests and regulatory requirements. If you have general questions about the personal data we collect and how we use it, please contact us as indicated below.
In the course of providing the Services, we may transfer data across borders to affiliates or other third parties and from your country/jurisdiction to other countries/jurisdictions around the world. By using the Services, you consent to the transfer of your data outside the European Economic Area (EEA).
If you are located in the EEA, your personal data will be transferred to locations outside the EEA only if we are satisfied that there is an adequate or comparable level of protection for personal data. We will take appropriate measures to ensure that we have adequate contractual arrangements with our third parties to ensure that adequate safeguards are in place to minimize the risk of unlawful use, alteration, deletion, loss, or theft of your personal data and that these third parties always act in accordance with applicable laws.

 

Rights under the California Consumer Privacy Act
If you are a resident of California using the Services, you may have the right, under the California Consumer Privacy Act (“CCPA”), to request access and deletion of your information.
To exercise your right of access and deletion of your information, please refer to the contact methods below.

The website does not sell user data
We do not sell personal information of users for purposes and with the intent of the CCPA.

Updates or changes to the privacy policy
We may review this Privacy Policy from time to time at our sole discretion; the version published on the Site is always the current one (see the “Status” statement). We encourage you to periodically review this Privacy Policy for any changes. In case of significant changes, we will post a notice regarding this on our website. Your continued use of the Services after notification of changes to our Site will constitute your acknowledgment and acceptance of the changes to the Privacy Policy and your agreement to be bound by the terms of such changes.

Contact
If you have general questions about the Services or the information we collect about you and how we use it, please contact us at:

Name: ZAVAII srl a socio unico (Mattia Fanti).
Legal address: Via Rodolfo Audinot, 34 – 40134 Bologna BO – Italy

Email address: info@zavaii.com