Privacy Policy

This page describes how this website is managed with regard to the processing of the personal data of the users who visit it. This notice is provided pursuant to Art. 13 of EU Regulation 2016/679 (hereinafter, the “GDPR”).

1. Data Controller

The Data Controller is Better Ipsum srl sb socio unico, a company with registered office in Bologna, Via S. Gervasio 6, VAT no. 04153621208 (hereinafter, the “Controller”), certified email (PEC) betteripsum@pec.it; email privacy@betteripsum.com.

This notice applies only to the website https://betteripsum.com, and the information provided herein does not concern other websites, pages or online services that may be reached via hypertext links published on the site but referring to resources outside of it.

Your personal data may be processed by employees and collaborators of the Controller, authorised by the Controller and trained for the purpose of processing such data in compliance with the law and with the principles of lawfulness, fairness, transparency, purpose limitation, storage limitation, data minimisation, accuracy, integrity and confidentiality.

2. Legal basis and purposes of the processing

Personal data will be processed for the following purposes:

  1. To allow proper navigation of the site and optimal use of its contents, on the basis of the Controller’s legitimate interest in the correct functioning of the Site pursuant to Art. 6(1)(f) GDPR;
  2. To comply with the legal obligations to which the Controller is subject, pursuant to Art. 6(1)(c) GDPR;
  3. To allow the Controller to follow up on requests for information and contact, including the booking of the “Better Check-up” service through the dedicated form, as well as the possible performance of a contract or pre-contractual measures taken at the data subject’s request, pursuant to Art. 6(1)(b) GDPR;
  4. To provide information, training or advertising materials, including the sending of the newsletter following subscription through the dedicated form, pursuant to Art. 6(1)(a) GDPR.

Providing your data for the purposes set out above is optional; however, failure to provide such data may compromise the optimal use of the website, prevent the Controller from responding to your contact requests, or prevent you from viewing the information and materials available on the site.

3. Data collected and processed

Personal data

The personal data collected through the request form and/or any email contact are: first name, last name and email address.

Through the dedicated newsletter subscription form, the email address (and possibly the name) is collected and managed through the Brevo platform. Through the booking form for the “Better Check-up” service, the following data are collected: first name, last name, email address, appointment date and time, and any additional information provided during the booking process, managed through the Cal.com scheduling platform in its European-hosted version (cal.eu).

The optional, explicit and voluntary sending of messages to the Controller’s contact addresses, private messages sent to institutional profiles/pages on social media (where this option is available), as well as the completion and submission of the forms available on the site, entail the acquisition of the sender’s contact details, necessary to reply, as well as of all the personal data included in the communications.

Specific privacy notices will be provided for the delivery of certain services or for participation in specific initiatives.

Browsing data

The computer systems and software procedures used to operate this site acquire, during their normal operation, certain personal data whose transmission is implicit in the use of Internet communication protocols.

This category of data includes the IP addresses or domain names of the computers and terminals used by users, the URI/URL (Uniform Resource Identifier/Locator) addresses of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the response given by the server (successful, error, etc.) and other parameters relating to the user’s operating system and computing environment.

These data, which are necessary for the use of web services, are also processed in order to:

  • obtain statistical information on the use of the services (most visited pages, number of visitors per time slot or day, geographical areas of origin, etc.);
  • check the correct functioning of the services offered.

Browsing data are not retained for more than fifteen days (except for any need to investigate criminal offences by the judicial authorities).

4. Use of cookies

Cookies are small text files that the websites visited by users send to their terminals (usually to the browser), where they are stored and then transmitted back to the same sites on each subsequent visit through the same terminal. In addition, each site may allow the transmission of so-called “third-party” cookies, i.e. those generated by websites other than the one the user is visiting (through objects present on it such as banners, images, maps, sounds, specific links to web pages of other domains). Depending on their duration, they are distinguished into session cookies (i.e. temporary cookies that are automatically deleted from the terminal at the end of the browsing session, when the browser is closed) and persistent cookies (i.e. those that remain stored on the terminal until they expire or are deleted by the user).

Some of the functions of cookies may also be performed by other technologies. Therefore, in the context of this privacy policy, the term “cookies” refers to cookies and all similar technologies. This Site may use session cookies and persistent cookies.

Essential technical (or functional) cookies

Cookies serve various purposes. They are primarily used for the transmission of the communication or to provide the service requested by the user. More precisely, they make it possible to enable and optimise the functioning of the website, perform computer authentication and prevent abuse, monitor sessions, and improve users’ browsing experience, for example by keeping the connection to restricted areas active while browsing through the pages of the site without the need to re-enter login credentials, and by storing specific information about the users themselves (including preferences, the type of browser and computer used). The above cookies are called “technical” cookies (their use does not require the user’s consent), since without them some of the aforementioned operations could not be carried out or would be more complex and/or less secure.

Profiling cookies

Conversely, if cookies are used for further purposes, typically for behavioural analysis and the sending of personalised promotional and advertising messages (so-called “profiling” cookies), or even just to obtain, through services provided by third parties, information in aggregate form on the number of users and on how they visit the site (so-called “analytics cookies”), the user’s consent is required. In fact, before these cookies are sent to the terminal, from the moment the home page or any other page of the site is accessed, a banner is immediately displayed in the foreground with an initial concise notice on the use of cookies and on the collection of consent, which the user may give by continuing to browse by selecting an element below the banner or by closing the banner itself. In any case, cookies can be read or modified only by the website that generated them; they cannot be used to retrieve any data from the user’s terminal and cannot transmit computer viruses.

Third-party cookies

This Site allows the transmission to the user’s terminal of cookies from third parties with which the Controller collaborates. The Controller, acting as a mere technical intermediary, limits itself to sending such cookies but does not manage their operation (and therefore has no control over or access to the information provided/acquired), as their functioning is the responsibility of the third parties. For these cookies, you can access the third parties’ privacy notices and consent forms by clicking on the links below.

The third parties are:

  1. parties whose services the Controller uses to collect aggregate/statistical information on the users who visit this Site. The google.com/analytics service provided by Google Inc. is used for this purpose.
  2. parties whose services the Controller uses to provide specific features of the Site: the newsletter management and sending service provided by Brevo (privacy policy) and the online booking service provided by Cal.com (privacy policy), whose forms embedded in the Site may install technical and/or functional cookies;
  3. “technical” cookies, used for authentication and the management of a browsing session (for example, to identify and validate the user for access to the Reserved Area).

The types of cookies directly generated by this Site are:

“Technical” cookies, used for:

  1. authentication and the management of a browsing session (for example, to identify and validate the user for access to the Reserved Area);
  2. security purposes (e.g. to keep track of the number of failed logins, identifying possible authentication abuse and preventing fraud);
  3. the personalisation of the user interface (e.g. to record the preferences expressed by the user, such as language, currency, page display format, connection area);
  4. better usability of the site and its audio-visual content (e.g. through the execution of flash player-type programs);
  5. the correct functioning of the connection (e.g. by appropriately routing the user’s requests among multiple servers).

“Profiling” cookies, used for:

  1. analysis of user behaviour;
  2. sending personalised promotional and advertising messages;
  3. obtaining information in aggregate form on the number of users visiting the Site.

How to disable cookies through your browser settings

You can disable cookie functionalities through this page, or you can disable them directly from your browser settings by following the instructions provided at these links:

5. Duration of the processing

Browsing data processed for the purposes referred to in point 2a) are retained for a maximum of fifteen days, except for any need for investigation and/or verification by the judicial authorities.

Data processed for the purposes referred to in point 2b) are retained for the period required by the applicable legal provisions.

Data processed for the purposes referred to in point 2c) are retained for the time necessary to fulfil your request and, in the case of a booking of the “Better Check-up” service, for the time necessary to deliver the requested service.

Data processed for the purposes referred to in point 2d), including those collected through the newsletter subscription, are retained until the data subject withdraws their consent or requests erasure.

You may request the erasure of your data at any time by sending an email to privacy@betteripsum.com

6. Recipients of the data

Your data will be shared by the Controller, in the course of its activities, with third parties duly authorised and/or appointed as Data Processors.

Such third parties may include parties delegated and/or appointed by the Controller to carry out the activities referred to in point 3 of this notice, as well as any public bodies and public authorities in compliance with applicable laws, regulations and rules.

The Data Processors appointed pursuant to Art. 28 GDPR include, in particular, the technical service providers used by the Controller for the operation of the Site, including the hosting provider, Brevo (newsletter management and sending service) and Cal.com (online booking service for the “Better Check-up” service).

7. Transfer of data to non-EU countries

This Site may share some of the data collected with services located outside the European Union. In particular, with Google, Facebook (Meta) and Microsoft (LinkedIn) through social plugins and the Google Analytics service. Transfers to the United States are carried out on the basis of the European Commission’s adequacy decision of 10 July 2023 concerning the EU-U.S. Data Privacy Framework (DPF), to which the companies mentioned above have adhered, or, failing that, on the basis of the Standard Contractual Clauses (SCCs) approved by the European Commission pursuant to Art. 46 GDPR.

Data collected through the newsletter subscription form are processed by Brevo, a company based in the European Union (France), with data stored on servers located within the European Union. Data collected through the booking form for the “Better Check-up” service are processed through Cal.com in its European data residency version (cal.eu), with storage and processing within the European Union.

8. Security measures

This Site processes users’ data lawfully and fairly, adopting appropriate security measures aimed at preventing unauthorised access, disclosure, modification or unauthorised destruction of the data. The processing is carried out using computer and/or telematic tools, with organisational methods and logic strictly related to the purposes indicated. In addition to the Controller, in some cases, access to the data may be granted to categories of authorised persons involved in the organisation of the Site (administrative, sales, marketing and legal staff, system administrators) or to external parties (such as third-party technical service providers, postal carriers, hosting providers, IT companies, communication agencies).

9. User rights pursuant to Arts. 15-21 GDPR

Under the GDPR, you may, in the manner and within the limits provided for by current legislation, exercise the following rights:

  • request confirmation of the existence of personal data concerning you (right of access);
  • know their origin;
  • receive intelligible communication of them;
  • obtain information about the logic, methods and purposes of the processing;
  • request their updating, rectification, integration, erasure, transformation into anonymous form, or the blocking of data processed in breach of the law, including data that are no longer necessary for the purposes for which they were collected;
  • in cases of processing based on consent, receive — at the sole cost of any medium used — the data you have provided to the controller, in a structured, machine-readable form and in a format commonly used by electronic devices;
  • the right to lodge a complaint with the supervisory authority (Italian Data Protection Authority, “Garante Privacy” – link to the Garante’s page);
  • as well as, more generally, exercise all the rights granted to you by the applicable provisions of law.

Requests should be addressed to the Data Controller.

Where data are processed on the basis of legitimate interests, the rights of data subjects are in any case guaranteed, in particular the right to object to the processing, which may be exercised by sending a request to the Data Controller.

10. How to exercise your rights

You may exercise your rights at any time by sending an email to privacy@betteripsum.com

11. Changes to this privacy notice

This notice may be subject to changes over time in relation to the processing activities carried out and/or in relation to any necessary regulatory updates.

Subscribe to Our Newsletter