Privacy Policy
Data Controller
This Privacy Policy describes how personal data is collected, used, and shared when you visit or make a purchase from GILDA.
The data controller is:
GILDA
Gilda Predolin
Milan (Mi) – Italy
For any privacy-related request:
info@gildaofficial.com
Personal data collected
We may collect the following personal data:
- Identification data: name, surname, address, phone number, email address, date of birth (for birthday offers)
- Order data: billing and shipping address, purchased items
- Payment data: processed securely via third-party providers (such as Applepay and Googlepay), without direct access by GILDA
- Technical data: IP address, browser type, device identifiers, and cookies
Purpose of processing
Your personal data is processed for the following purposes:
- To manage and fulfill orders, including shipping
- To comply with legal and tax obligations
- To manage customer accounts
- To send marketing communications and newsletters (with explicit consent)
- To provide personalized offers (such as birthday discounts)
- To perform remarketing and advertising activities via third-party cookies (e.g. Meta, Google)
- To analyze website traffic and usage
Legal basis
Processing of personal data is based on:
- Contractual obligations: for order processing and delivery
- Legal obligations: for tax and accounting requirements
- Consent: for marketing communications, profiling, and personalized offers
Data collection methods
Data is collected through:
- Account registration and checkout process
- Contact forms
- Newsletter subscription
- Cookies and tracking tools (with user consent)
Data sharing
Personal data may be shared with trusted third parties acting as data processors, including:
- Payment providers (e.g. Applepay, Googlepay)
- Shipping carriers
- Hosting and website maintenance providers
- Email marketing services
- Advertising and analytics platforms (e.g. Meta, Google)
If data is transferred outside the European Union, appropriate safeguards are applied in accordance with GDPR (e.g. Standard Contractual Clauses).
Data retention
- Order-related data is retained for the period required by law (up to 10 years)
- Marketing data is retained until the user withdraws consent or requests deletion
User rights
Under GDPR, users have the right to:
- Access their personal data
- Request correction or deletion
- Restrict or object to processing
- Withdraw consent at any time
- Request data portability
To exercise these rights, contact:
info@gildaofficial.it
Users also have the right to lodge a complaint with the Italian Data Protection Authority: www.garanteprivacy.it
Cookies
This website uses cookies to enhance the browsing experience and for analytical and marketing purposes.
Cookies are managed through a consent banner (Cookie Notice & Compliance for GDPR/CCPA).
Users can manage or withdraw their cookie preferences at any time.
Data security
The website uses secure HTTPS connections and protected servers.
Appropriate technical and organizational measures are implemented to ensure data security,
including encrypted payments, restricted access, and regular backups.