Legal

Legal Policies

Categories

Last Updated

August 2026

GDPR Compliant

Privacy Policy

1. Data Controller

The data controller responsible for your personal data is privacysecurelab, registered at Corso Vittorio Emanuele II 181, Casarano, Lecce, Italy. For any questions regarding data processing, contact us at [email protected] or call +39 343 1829047.

2. Data We Collect

We collect the following categories of personal data:

  • Identity Data: Full name, job title, organization
  • Contact Data: Email address, phone number, physical address
  • Technical Data: IP address, browser type, operating system, cookies
  • Service Data: Details regarding your data protection requirements and consultations

3. Legal Basis for Processing

We process your data based on: (a) performance of a contract; (b) legitimate interest in providing data protection services; (c) compliance with legal obligations; and (d) your explicit consent where required.

4. Data Retention

Personal data is retained for the duration necessary to fulfill the purposes for which it was collected, or as required by applicable Italian and EU law. Contract data is retained for 10 years post-termination.

5. Your Rights Under GDPR

Under the General Data Protection Regulation (EU) 2016/679, you have the right to:

  • Access your personal data
  • Rectify inaccurate data
  • Erase your data ("right to be forgotten")
  • Restrict processing of your data
  • Port your data to another controller
  • Object to processing based on legitimate interest
  • Withdraw consent at any time

6. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including encryption, access controls, regular security assessments, and employee training in accordance with ISO 27001 standards.

7. Contact for Data Protection

To exercise your rights or for data protection inquiries, contact our Data Protection Officer at [email protected] or write to Corso Vittorio Emanuele II 181, Casarano, Lecce, Italy. You also have the right to lodge a complaint with the Italian Data Protection Authority (Garante per la protezione dei dati personali).

Binding

Terms of Service

1. Acceptance of Terms

By accessing or using the services provided by privacysecurelab, located at Corso Vittorio Emanuele II 181, Casarano, Lecce, Italy, you agree to be bound by these Terms of Service. If you do not agree, do not use our services.

2. Services Description

privacysecurelab provides data protection consulting, GDPR compliance audits, privacy impact assessments, Data Protection Officer services, and related privacy architecture services. All services are delivered in accordance with applicable Italian and European Union regulations.

3. Client Obligations

Clients must: (a) provide accurate and complete information required for service delivery; (b) designate authorized representatives for communication; (c) maintain confidentiality of all proprietary methodologies shared during engagements; (d) comply with all applicable data protection laws in their own operations.

4. Intellectual Property

All methodologies, frameworks, templates, and proprietary tools developed by privacysecurelab remain the exclusive intellectual property of privacysecurelab. Clients receive a non-exclusive, non-transferable license to use deliverables for their internal operations only.

5. Limitation of Liability

privacysecurelab's liability is limited to the fees paid for the specific service giving rise to the claim. We shall not be liable for indirect, incidental, consequential, or punitive damages. Our services do not constitute legal advice.

6. Governing Law

These Terms are governed by Italian law. Any disputes shall be resolved before the competent courts of Lecce, Italy. The United Nations Convention on Contracts for the International Sale of Goods (CISG) does not apply.

7. Modifications

privacysecurelab reserves the right to modify these Terms at any material changes will be communicated via email to registered clients at least 30 days prior to taking effect.

8. Contact

For questions regarding these Terms, contact [email protected] or visit us at Corso Vittorio Emanuele II 181, Casarano, Lecce, Italy.

Transparency

Cookies Policy

1. What Are Cookies

Cookies are small text files placed on your device when you visit our website. They help us provide you with a better experience and allow certain features to work properly.

2. Types of Cookies We Use

Essential Cookies

Required for the website to function. Cannot be disabled. Used for session management, security, and load balancing.

Analytics Cookies

Help us understand how visitors interact with our website. Data is aggregated and anonymized.

Preference Cookies

Remember your settings and choices to provide a personalized experience.

3. Managing Cookies

You can control and manage cookies through your browser settings. Disabling essential cookies may affect website functionality. For more information on managing cookies, visit aboutcookies.org.

4. Third-Party Cookies

Some cookies are placed by third-party services that appear on our pages. We do not control these cookies. Please refer to the respective third-party privacy policies for more information.

5. Updates to This Policy

We may update this Cookies Policy from time to time. Changes will be posted on this page with an updated revision date. Continued use of our website constitutes acceptance of the updated policy.

6. Contact

For questions about our use of cookies, contact [email protected] or write to Corso Vittorio Emanuele II 181, Casarano, Lecce, Italy.

Fair Terms

Refund Policy

1. General Policy

At privacysecurelab, we are committed to delivering high-quality data protection services. This Refund Policy outlines the conditions under which refunds may be issued for services provided from our offices at Corso Vittorio Emanuele II 181, Casarano, Lecce, Italy.

2. Service Initiation

Once a service engagement has been initiated and work has commenced, no full refund will be issued. A partial refund may be considered based on the percentage of work completed at the time of cancellation request.

3. Pre-Initiation Cancellation

If you cancel a service engagement before work has commenced, you are entitled to a full refund minus any administrative fees (maximum 10% of the service fee). Refund requests must be submitted within 14 days of payment.

4. Dissatisfaction with Deliverables

If you are dissatisfied with the deliverables, you must notify us within 10 business days of delivery. We will review the concern and, at our discretion, may: (a) revise the deliverables at no additional cost; (b) provide a partial refund proportional to the unresolved portion; or (c) offer credit toward future services.

5. Recurring Services (DPO)

For recurring services such as Data Protection Officer retainers, cancellation requires 30 days' written notice. Refunds for prepaid periods will be calculated on a pro-rata basis for unused full weeks.

6. Refund Processing

Approved refunds will be processed within 14 business days to the original payment method. You will receive confirmation via email once the refund has been initiated.

7. Exceptions

No refunds will be issued for: (a) completed services that meet the agreed scope; (b) third-party fees incurred on your behalf; (c) training sessions attended in full; (d) rush or expedited services once commenced.

8. Contact

To request a refund or for questions about this policy, contact [email protected] or call +39 343 1829047. You may also visit us at Corso Vittorio Emanuele II 181, Casarano, Lecce, Italy.