foodlosophyideas.it

Privacy Policy pursuant to Articles 13 and 14 of Regulation (EU) 2016/679 (“GDPR”)

Data Controller

The Controller of the personal data collected through the website foodlosophyideas.it (the “Site”) is:

Sole proprietorship: Foodlosophy Ideas Consulting di Nicolo Melloni

VAT number: 04354121206

Registered office: Via della Tecnica, 51, San Lazzaro di Savena, Emilia Romagna 40068, Italy

Privacy contact email: info@foodlosophyideas.it

For any request concerning the processing of personal data, data subjects may contact the Controller at the addresses indicated above.

Categories of data collected

The Site collects personal data exclusively through the contact form on the homepage, built with the native form feature of the Bricks builder for WordPress. The data requested through the form are:

First and last name

Email address

Message / request entered freely by the user

The Site does not include forms for unsolicited job applications or CVs, nor newsletter sign-up forms.

In addition to the data provided voluntarily, during normal browsing certain technical data (IP address, browser type, operating system) may be collected automatically as necessary for the Site to function, as described in the Cookie Policy.

Purposes and legal basis of processing

The personal data collected through the contact form are processed for the following purposes:

To respond to requests for information or consulting submitted by the user through the contact form;

To manage any pre-contractual steps aimed at establishing a consulting relationship;

To comply with any legal obligations.

The legal basis for processing is the data subject’s consent, expressed through the acceptance checkbox on the contact form (Art. 6(1)(a) GDPR), as well as, where applicable, the need to perform pre-contractual measures requested by the data subject (Art. 6(1)(b) GDPR).

Processing methods

Personal data are processed using IT and/or telematic tools, with organizational and logical procedures strictly related to the stated purposes, so as to ensure the security and confidentiality of the data, in compliance with the technical and organizational measures required by the GDPR.

Nature of data provision

Providing the data requested in the contact form is optional, but necessary to allow the Controller to respond to the submitted request. Failure to provide the data will make it impossible to process the request.

Data retention period

Personal data collected through the contact form are retained for the time strictly necessary to handle the user’s request and, subsequently, for the possible establishment and management of the consulting relationship, as well as for the period required by applicable tax, civil, and accounting regulations. Once these periods have elapsed, the data will be deleted or anonymized.

Recipients and data processors

Personal data may be processed, on behalf of the Controller, by the following parties, appointed where necessary as Data Processors pursuant to Art. 28 GDPR:

The Site’s hosting provider, Aruba S.p.A., which stores the data on its own servers located in Italy/European Union;

Any collaborators, consultants, or technical suppliers of the Controller, authorized to process data to the extent necessary for the performance of their respective functions.

The data are in no way disclosed or communicated to third parties for marketing or advertising purposes. The Site does not use statistical analysis tools (e.g., Google Analytics), nor social network pixels or plugins.

Transfer of data outside the EU

Personal data are processed and stored on servers located in Italy/European Union. The Controller does not transfer personal data to countries outside the EU. Should this become necessary in the future, the transfer will take place in compliance with the safeguards provided for in Articles 44 et seq. of the GDPR, and this policy will be updated accordingly.

Rights of the data subject

As a data subject, the user has the right to request from the Controller, at any time, using the contact details indicated in Section 1:

Access to their personal data (Art. 15 GDPR);

Rectification of inaccurate data or completion of incomplete data (Art. 16 GDPR);

Erasure of data, in the cases provided for by law (Art. 17 GDPR);

Restriction of processing (Art. 18 GDPR);

Data portability (Art. 20 GDPR);

Objection to processing (Art. 21 GDPR);

Withdrawal of consent at any time, without prejudice to the lawfulness of processing based on consent given before its withdrawal (Art. 7(3) GDPR).

The data subject also has the right to lodge a complaint with the Italian Data Protection Authority (Garante per la protezione dei dati personali, www.garanteprivacy.it), if they believe their data has been processed in violation of applicable law.

Changes to this policy

The Controller reserves the right to modify or update this policy, in whole or in part, including as a result of regulatory changes. Any changes will be published on this page; users are therefore advised to check it periodically.

Last updated: 18/08/2026