Privacy policy
PRIVACY NOTICE FOR WEBSITE USERS
As envisaged by the law in force (art. 13 of the General Data Protection Regulation, hereafter also GDPR), users who access the website are provided with information relating to the processing of their data.
On the site there are forms with which the user can send specific requests. For the processing of data carried out through these forms, please refer to the privacy policies that the user can view via the link at the bottom of the individual forms of interest.
WHO IS THE CONTROLLER AND HOW TO CONTACT THEM
The Data Controller is BKT Europe Srl, in the person of its pro tempore legal representative, with registered office in Viale Bianca Maria 25, 20122 Milan, and operational headquarters in Viale della Repubblica 133, 20831 Seregno (MB), VAT number 05404270968. The Company can be contacted through the email address [email protected].
WHAT DATA IS PROCESSED
The data processed is browsing data and data voluntarily provided by the user.
Browsing data
The IT systems and software procedures used to operate this website acquire, in the course of their normal operation, some personal data whose transmission is implicit in the use of Internet communication protocols.
It is not information collected to be associated with specific data subjects, but by its very nature it could enable identification of users, by its processing and association with data held by third parties.
This category of data includes IP addresses or domain names of the computers used by users connecting to the website, the URI (Uniform Resource Identifier) addresses of the resources requested, the time of the request, the method used to send the request to the server, the size of the file obtained in reply, the numerical code indicating the status of the reply given by the server (successful, error, etc.) and other parameters relating to the user’s operating system and IT environment.
Cookies and other tracking systems
With regard to cookies, please refer to the information contained in the cookie notice that can be accessed via a link in the footer of the website.
Google Tag Manager
The site uses Google Tag Manager, a service provided by Google Inc.
Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code snippets, collectively known as tags, on the Company’s website. By adding the small code segment of Tag Manager, you can securely and easily deploy analytics and measurement tag configurations.
Google Tag Manager does not set cookies on its own, with one exception: when someone uses its preview and debug mode. Only in this specific case, Google Tag Manager sets first-party cookies, allowing users to observe which tags are activated on each page.
These cookies only affect the user who has activated the preview and debug mode and do not affect regular visitors to the website. Importantly, once the user exits preview mode, these cookies are deleted.
To learn more about the use of Google Tag Manager data, please refer to Google’s privacy policy:
https://policies.google.com/privacy?hl=it#whycollect.
Data provided directly by the user
This category includes all the personal data provided voluntarily by the user (so, for example, when information is requested by writing to email addresses given on the website).
WHAT ARE THE PURPOSES AND LEGAL BASES OF THE PROCESSING?
Navigation data
The navigation data is used to collect statistical information on the use of the website, for security purposes and to check the correct functioning of the website and could be used to ascertain liability in the case of any IT crimes to the harm of the website.
The legal basis of the processing of such data is the legitimate interest and, in the case of requests from the Authorities, the legal obligation.
Cookies and other tracking systems
With regard to cookies, please refer to the information contained in the cookie notice that can be accessed via a link in the footer of the website.
Google Tag Manager
Google Tag Manager allows you to quickly and easily update measurement codes and related code snippets, collectively known as tags, on the Company’s website. By adding the small code segment of Tag Manager, you can securely and easily deploy analytics and measurement tag configurations.
The legal basis for this processing is the legitimate interest of the data controller to optimize the management of the marketing tools it uses on the site itself.
The use of this tool is in any case subject to contractual obligations between the Data Controller and Google.
Data provided directly by the user
The personal data provided voluntarily by the user by contacting the Controller is used only to follow up any requests made.
The legal basis for the processing of such data is therefore the execution of pre-contractual measures and the obligations arising from the contract or the legitimate interest of the data controller to respond to the data subject’s request.
Should it be necessary, the data can also be used given the Controller’s legitimate interest in undertaking defensive initiatives or enforcing or defending a right in the courts.
HOW IS THE DATA MANAGED?
The data collected is processed with IT tools. Adequate security measures are adopted to prevent the loss of data, illegal or incorrect use and unauthorized access.
Transferring data abroad
The Tag Manager service and the e-mail box transfer data outside the European Union, transferring them to the USA with adequate guarantees: In particular, the transfer takes place in the presence of an adequacy decision of the EU Commission (Data Privacy Framework).
For the e-mail service, the data will also be transferred to non-EU countries (India), in the absence of adequacy decisions by the EU Commission, but the transfer will be assisted by adequate safeguards; in particular, the standard contractual clauses will be used.
Storage period
The browsing data is stored for no longer than 7 days before being deleted, unless needed for criminal investigations by the judicial authority.
Data conferred directly by the user is retained for the time strictly necessary to follow up the requests and is then cancelled, without prejudice to any defensive needs (which could make longer retention necessary).
WHAT HAPPENS IF THE DATA IS NOT PROVIDED?
Except for navigation data which is necessary to implement IT and online protocols, the conferment of data by users through the various means made available is free and optional.
However, failure to confer the data will make it impossible to proceed with the requests forwarded or which the user intends to forward.
WHO CAN SEE THE DATA?
The data will be processed by employees of the Controller who are authorized to process it.
The data can be seen by the competent Authorities in cases of specific requests with which the Controller is required by law to comply, by the Parent company for the email service, by consultants or by companies which provide IT supply and assistance services for the activities undertaken on behalf of the Controller and by consultants to manage disputes and for legal assistance in the case of any disputes which make their involvement necessary.
Please note that some of the indicated subjects act as data processors and that communication to those who operate as independent controllers is carried out since required by legal obligations or is necessary to fulfil the obligations arising from the contractual relationship or the legitimate interest of the Controller in maintaining the security of the IT systems with maintenance work by competent personnel and in adopting defensive initiatives through legal consultants.
The data subject may request a detailed list of data recipients from the Data Controller, to the extent that to the extent to which they can be identified specifically.
Communication is limited, in any event, to the data categories the transmission of which is necessary to undertake the activities and purposes being pursued.
WHAT ARE THE DATA SUBJECT’S RIGHTS?
The law recognizes for the data subject the right to ask the Processing controller for access to the personal data and its rectification or cancellation or limitation of the processing regarding them or to object to its processing, as well as the right to data portability.
The data subject may assert their rights at any time, without formalities, by contacting the Controller through the email [email protected].
Here below is a breakdown of the rights recognized by the law in force on the protection of personal data.
Please note the il right to object, in particular, i.e., the right of the data subject to object at any time, on grounds relating to their particular situation, to the processing of their personal data as required for the performance of a task carried out in the public interest or in connection with the exercise of the official authority vested in the controller or for the furtherance of the legitimate interests of the Data Controller or of a third party. Should the personal data be processed for direct marketing purposes, the data subject has the right to oppose at any time the processing of the personal data regarding them undertaken for these purposes, including profiling to the extent this is connected to such direct marketing.
Based on the provisions of art. 22 of the GDPR, then, the data subject has the right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning them or similarly significantly affects them, unless the decision a) is necessary for the conclusion or signing of a contract between the data subject and a processing controller; b) is authorized by Union or Member State law that the processing controller must observe, which also specifies appropriate measures to protect the rights, freedoms and legitimate interests of the data subject; c) is based on the explicit consent of the data subject.
The data subject is then informed that if they believe that the processing of their personal data is violating the provisions of the GDPR, they have the right to file a complaint with a Supervisory Authority (Art. 77 of the Regulation) or to take appropriate legal action (Art. 79 of the Regulation).
This privacy policy was last updated on 20 February 2026