Privacy and Cookie Policy
Effective Date: September 25, 2025
Website: eleonorafisco.it
Data Controller Information
This website is operated by:
Eleonora Fisco
Address: Via dei Gelsomini 19, Sciacca (AG), Italy
Date of Birth: January 7, 1997
1. Introduction
This Privacy and Cookie Policy explains how we collect, use, process, and protect your personal information when you visit our website eleonorafisco.it (“the Website”). This policy complies with the EU General Data Protection Regulation (GDPR) and other applicable data protection laws.
By using our Website, you acknowledge that you have read, understood, and agree to be bound by this Privacy and Cookie Policy.
2. Information We Collect
2.1 Information You Provide Directly
We collect the following personal information when you voluntarily provide it through our contact form:
-
Name: To identify and address you properly
-
Email address: To respond to your inquiries and communicate with you
2.2 Information Collected Automatically
When you visit our Website, we may automatically collect certain information through cookies and similar technologies:
-
IP address: For security purposes and website analytics
-
Browser type and version: To ensure website compatibility
-
Operating system: For technical optimization
-
Pages visited and time spent: For website performance analysis
-
Referring website: To understand traffic sources
-
Device information: To optimize user experience across devices
3. Legal Basis for Processing
We process your personal data based on the following legal grounds under GDPR Article 6:
-
Consent (Article 6(1)(a)): When you submit our contact form or accept cookies
-
Legitimate interests (Article 6(1)(f)): For website security, performance optimization, and spam prevention
4. How We Use Your Information
We use your personal information for the following purposes:
-
Contact form submissions: To respond to your inquiries and provide requested information
-
Website analytics: To understand how visitors use our site and improve user experience
-
Security: To protect against spam, abuse, and security threats
-
SEO optimization: To improve our website’s search engine visibility
-
Performance monitoring: To ensure optimal website functionality
5. Third-Party Services and Data Sharing
Our Website uses the following third-party services that may process your personal data:
5.1 Google Analytics (via Site Kit)
-
Purpose: Website traffic analysis and performance monitoring
-
Data processed: IP address, browser information, pages visited, time spent on site
-
Legal basis: Legitimate interests
-
Data retention: 26 months
-
Privacy Policy: Google Privacy Policy
5.2 Yoast SEO
-
Purpose: Search engine optimization
-
Data processed: Website content and structure data
-
Legal basis: Legitimate interests
-
Data location: Processed locally on our server
5.3 Akismet (Spam Protection)
-
Purpose: Spam prevention for contact form submissions
-
Data processed: IP address, user agent, referrer, and content of contact form submissions
-
Legal basis: Legitimate interests
-
Privacy Policy: Automattic Privacy Policy
We do not sell, rent, or otherwise commercially exploit your personal information to third parties.
6. Data Retention
We retain your personal data for the following periods:
-
Contact form data: 2 years from the date of submission, or until you request deletion
-
Website analytics data: 26 months (Google Analytics default)
-
Server logs: 30 days for security purposes
7. Your Rights Under GDPR
You have the following rights regarding your personal data:
7.1 Right of Access (Article 15)
You can request information about what personal data we hold about you.
7.2 Right to Rectification (Article 16)
You can request correction of inaccurate or incomplete personal data.
7.3 Right to Erasure (Article 17)
You can request deletion of your personal data under certain circumstances.
7.4 Right to Restrict Processing (Article 18)
You can request limitation of processing under specific conditions.
7.5 Right to Data Portability (Article 20)
You can request transfer of your data in a structured, machine-readable format.
7.6 Right to Object (Article 21)
You can object to processing based on legitimate interests.
7.7 Right to Withdraw Consent (Article 7(3))
You can withdraw consent at any time where processing is based on consent.
To exercise any of these rights, please contact us via the contact form.
8. Cookies Policy
8.1 What Are Cookies?
Cookies are small text files that are placed on your device when you visit websites. They help websites remember information about your visit, which can make it easier to visit the site again and make the site more useful to you.
8.2 Types of Cookies We Use
8.2.1 Strictly Necessary Cookies
These cookies are essential for the website to function properly. They cannot be switched off in our systems.
-
Session cookies: To maintain your session during your visit
-
Security cookies: To protect against security threats
8.2.2 Analytics Cookies
These cookies help us understand how visitors interact with our website by collecting and reporting information.
-
Google Analytics cookies: To analyze website traffic and user behavior
-
_ga: Distinguishes unique users (expires after 2 years) -
_ga_*: Contains campaign related information (expires after 2 years) -
_gid: Distinguishes unique users (expires after 24 hours)
-
8.2.3 Functional Cookies
These cookies enable the website to provide enhanced functionality and personalization.
-
Yoast SEO cookies: To optimize search engine visibility and user experience
8.3 Managing Cookies
You can control and manage cookies in several ways:
8.3.1 Browser Settings
Most web browsers allow you to control cookies through their settings preferences. You can set your browser to:
-
Block all cookies
-
Allow only first-party cookies
-
Delete cookies when you close the browser
8.3.2 Opt-Out Tools
For Google Analytics, you can opt out by installing the Google Analytics Opt-out Browser Add-on.
8.4 Cookie Consent
By continuing to use our website, you consent to the use of cookies in accordance with this policy. You can withdraw your consent at any time by adjusting your browser settings.
9. Data Security
We implement appropriate technical and organizational security measures to protect your personal data against:
-
Unauthorized access
-
Alteration, disclosure, or destruction
-
Accidental loss
-
Unlawful processing
Security measures include:
-
SSL encryption for data transmission
-
Regular security updates and patches
-
Access controls and authentication
-
Regular backups and data integrity checks
10. International Data Transfers
Some of our third-party service providers may be located outside the European Economic Area (EEA). When we transfer your personal data outside the EEA, we ensure adequate protection through:
-
Adequacy decisions: Transfers to countries deemed adequate by the European Commission
-
Standard Contractual Clauses: EU-approved contracts ensuring adequate protection
-
Certification schemes: Services certified under appropriate privacy frameworks
11. Children’s Privacy
Our Website is not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal data from a child under 16, we will take steps to delete such information.
12. Changes to This Policy
We may update this Privacy and Cookie Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will:
-
Update the “Effective Date” at the top of this policy
-
Notify you of significant changes through email or website notice
-
Maintain previous versions for your reference
13. Contact Information
If you have any questions, concerns, or requests regarding this Privacy and Cookie Policy or our data practices, please contact us:
Email: via contact form here
Address: Via dei Gelsomini 19, Sciacca (AG), Italy
14. Supervisory Authority
You have the right to lodge a complaint with the relevant supervisory authority if you believe our processing of your personal data violates applicable law.
For Italy, the relevant authority is:
Garante per la protezione dei dati personali
Website: www.garanteprivacy.it
Email: garante@gpdp.it
15. Definitions
For the purposes of this policy:
-
Personal Data: Any information relating to an identified or identifiable natural person
-
Processing: Any operation performed on personal data, such as collection, recording, organization, storage, adaptation, alteration, retrieval, consultation, use, disclosure, or deletion
-
Data Controller: The entity that determines the purposes and means of processing personal data (Eleonora Fisco)
-
Data Subject: The individual to whom personal data relates
Last Updated: September 25, 2025
This Privacy and Cookie Policy is effective as of the date stated above and replaces any previous versions.