Privacy
Privacy Policy
Last updated: August 8, 2025
This Privacy Policy explains how we collect, use, and protect your personal data when you visit and interact with our website. We are committed to protecting your privacy in accordance with the EU General Data Protection Regulation (GDPR).
1. Data Controller
The data controller responsible for processing your personal data is:
via Defendi Semeghini 6, Mantova
2. Data We Collect
We only collect the information you voluntarily provide when:
- Filling out the contact form to request information
- Placing an order for a custom mask
The data we may collect includes:
- Your name
- Email address
- Shipping address (only if you purchase a mask)
- Photos of your face (required for the creation of your custom mask)
3. Purpose of Data Processing
Your personal data will be used exclusively for:
- Responding to your requests for information
- Processing and shipping your orders
- Creating your custom swimming mask (face photos are used only for this purpose)
We do not use your data for marketing purposes, we do not send newsletters, and we do not share your data with third parties for advertising.
4. Storage of Photos
The photos you send for the creation of your mask will be stored securely. These photos will never be shared, published, or used for any purpose other than the creation of your mask.
5. Legal Basis for Processing
We process your personal data based on:
- Contract performance (Article 6(1)(b) GDPR) – when processing your order
- Your consent (Article 6(1)(a) GDPR) – when you voluntarily provide photos and information
- Legitimate interest (Article 6(1)(f) GDPR) – to respond to your inquiries
6. Data Retention
We will retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy:
- Order-related data: up to 5 years (for legal and accounting obligations)
- Face photos: deleted 2 month after your mask is completed and delivered
- Contact inquiries without purchase: deleted after 12 months
7. Data Sharing
We do not sell, trade, or rent your personal data. Data may be shared only with service providers strictly necessary for fulfilling your order (e.g., shipping companies), who are bound by confidentiality agreements.
8. Your Rights (GDPR)
Under the GDPR, you have the right to:
- Access your personal data
- Request correction of inaccurate data
- Request deletion of your data ("right to be forgotten")
- Restrict processing of your data
- Object to the processing of your data
- Request data portability
- Withdraw consent at any time
9. Security
We implement appropriate technical and organizational measures to protect your personal data from unauthorized access, alteration, disclosure, or destruction.
10. Cookies
This website uses cookies and similar technologies, including Google Analytics and Facebook Pixel, to analyze website traffic and improve our marketing. These tracking tools may collect information about your browsing behavior. In compliance with the GDPR, non-essential cookies are only activated after you give your explicit consent via the cookie banner. You can change or withdraw your consent at any time through the "Manage Consent" link or your browser settings.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with the updated date.
12. Contact
If you have any questions about this Privacy Policy or how we handle your personal data, please contact us at our email address: info@naskamask.com