Privacy Policy
Privacy Policy of Sportnet
This Privacy Policy describes how NET s.r.l., with its registered office at C.so Trieste 111, 82037 Telese Terme (BN), VAT no. IT00443690623 (hereinafter the "Controller"), collects, uses, and protects the personal data of users of the e-commerce websites sportnet.it and sportnetit.com (hereinafter the "Website").
For any questions or clarifications regarding data processing, you can contact the Controller at the email address: [email protected].
1. Types of Personal Data Collected
The Controller collects the following personal data:
Data provided directly by the user:
Purchase and shipping data: name, surname, shipping and billing address, email address, phone number, and payment information.
Account registration data: username, password, and, if provided, date of birth.
Data for marketing: email address and marketing preferences if the user subscribes to the newsletter or consents to profiling.
Browsing data:
Information collected automatically during the use of the Website, such as IP address, browser type, operating system, pages visited, and time spent on the site. This data is collected through cookies, as described in our [Cookie Policy].
2. Purposes and Legal Basis for Processing
Personal data is processed for the following purposes and based on the respective legal bases:
Order fulfillment and management of the sales contract: Data is processed to handle and ship items, manage payments, and provide post-sale assistance.
Legal Basis: Performance of a contract to which the user is a party.
Customer support: Data is used to respond to requests for information, complaints, or other communications from the user.
Legal Basis: Performance of a contract (in the case of post-sale requests) or our legitimate interest in providing efficient support.
Direct marketing and newsletter: Data is processed to send commercial communications, promotions, and updates on our products and services.
Legal Basis: Explicit consent from the user. The user can withdraw consent at any time.
Profiling for personalized marketing: Data, including browsing data, is used to analyze user preferences and offer personalized advertising.
Legal Basis: Explicit consent from the user.
Compliance with legal obligations: Data is stored to comply with legal requirements, such as maintaining accounting and tax records.
Legal Basis: Compliance with a legal obligation.
Technical operation of the Website: Browsing data is processed to ensure the correct functioning and security of the site.
Legal Basis: Our legitimate interest and the user's consent for non-essential cookies.
3. Sharing Data with Third Parties
Personal data may be shared with the following third parties who act as Data Processors (under the Controller's instructions) or Autonomous Controllers (for their own purposes):
Couriers and shippers: for product delivery.
Payment service providers: for secure transaction processing (e.g., Stripe, PayPal).
Marketing service providers: for managing advertising campaigns and sending newsletters (e.g., Mailchimp, Google Ads, Facebook Ads).
Hosting providers: for the Website's technological infrastructure.
External consultants and professionals: for compliance with tax and legal obligations (e.g., accountants, lawyers).
4. Data Retention Period
Personal data is retained for the time strictly necessary to achieve the purposes mentioned above:
Purchase data: for a period of 10 years, as required by tax and civil law.
User account data: until the user requests the deletion of their account.
Marketing data: until the user withdraws their consent.
5. User Rights
As a data subject, the user has the right to:
Access their personal data and request a copy.
Rectify incomplete or inaccurate data.
Erase their data (the "right to be forgotten").
Restrict the processing of their data.
Object to the processing, particularly for direct marketing purposes.
Request data portability to another controller.
To exercise these rights, the user can send a request to the email address: [email protected].
6. Data of Minors
The Website does not knowingly collect personal data from children under 16. Should this occur, the Controller undertakes to delete such data immediately upon becoming aware of it.